[Ietf-krb-wg] RFC-Editor Note for draft-ietf-krb-wg-naming-07

Jeffrey Hutzelman <jhutz@cmu.edu> Wed, 27 October 2010 17:31 UTC

Return-Path: <ietf-krb-wg-bounces@lists.anl.gov>
X-Original-To: ietfarch-krb-wg-archive@core3.amsl.com
Delivered-To: ietfarch-krb-wg-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 3D41C3A6964 for <ietfarch-krb-wg-archive@core3.amsl.com>; Wed, 27 Oct 2010 10:31:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -106.566
X-Spam-Level:
X-Spam-Status: No, score=-106.566 tagged_above=-999 required=5 tests=[AWL=0.033, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id c3P-vJaco1AO for <ietfarch-krb-wg-archive@core3.amsl.com>; Wed, 27 Oct 2010 10:31:21 -0700 (PDT)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by core3.amsl.com (Postfix) with ESMTP id 3D17F3A69FB for <krb-wg-archive@lists.ietf.org>; Wed, 27 Oct 2010 10:31:09 -0700 (PDT)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by localhost.anl.gov (Postfix) with ESMTP id 887B946; Wed, 27 Oct 2010 12:32:58 -0500 (CDT)
Received: from lists.anl.gov (katydid.it.anl.gov [146.137.96.32]) by mailhost.anl.gov (Postfix) with ESMTP id 414023B; Wed, 27 Oct 2010 12:32:55 -0500 (CDT)
Received: from katydid.it.anl.gov (localhost [127.0.0.1]) by lists.anl.gov (Postfix) with ESMTP id 1A26380035; Wed, 27 Oct 2010 12:32:55 -0500 (CDT)
X-Original-To: ietf-krb-wg@lists.anl.gov
Delivered-To: ietf-krb-wg@lists.anl.gov
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by lists.anl.gov (Postfix) with ESMTP id B117C80030 for <ietf-krb-wg@lists.anl.gov>; Wed, 27 Oct 2010 12:32:53 -0500 (CDT)
Received: by mailhost.anl.gov (Postfix) id AB0E31A; Wed, 27 Oct 2010 12:32:53 -0500 (CDT)
Delivered-To: ietf-krb-wg@anl.gov
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by localhost.anl.gov (Postfix) with ESMTP id 9F2CD45 for <ietf-krb-wg@anl.gov>; Wed, 27 Oct 2010 12:32:53 -0500 (CDT)
Received: from mailrelay.anl.gov (mailrelay.anl.gov [130.202.101.22]) by mailhost.anl.gov (Postfix) with ESMTP id 7FC7A1A for <ietf-krb-wg@anl.gov>; Wed, 27 Oct 2010 12:32:53 -0500 (CDT)
Received: from localhost (localhost [127.0.0.1]) by localhost.it.anl.gov (Postfix) with ESMTP id 697377CC0AC; Wed, 27 Oct 2010 12:32:53 -0500 (CDT)
Received: from mailrelay.anl.gov ([127.0.0.1]) by localhost (mailrelay.anl.gov [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 24462-09; Wed, 27 Oct 2010 12:32:53 -0500 (CDT)
Received: from mailgateway.anl.gov (mailgateway.anl.gov [130.202.101.28]) by mailrelay.anl.gov (Postfix) with ESMTP id 5386C7CC0A5 for <ietf-krb-wg@anl.gov>; Wed, 27 Oct 2010 12:32:52 -0500 (CDT)
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: Al8AALL+x0yAAtnGkWdsb2JhbACTTI15FQEBAgkLCgcRBR23C4hngnSCVASNWw
X-IronPort-AV: E=Sophos;i="4.58,247,1286168400"; d="scan'208";a="49671153"
Received: from smtp03.srv.cs.cmu.edu ([128.2.217.198]) by mailgateway.anl.gov with ESMTP; 27 Oct 2010 12:32:52 -0500
Received: from [18.111.89.246] (SIRIUS.FAC.CS.CMU.EDU [128.2.216.216]) (authenticated bits=0) by smtp03.srv.cs.cmu.edu (8.13.6/8.13.6) with ESMTP id o9RHWpGE029741 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Wed, 27 Oct 2010 13:32:51 -0400 (EDT)
Date: Wed, 27 Oct 2010 13:32:51 -0400
From: Jeffrey Hutzelman <jhutz@cmu.edu>
To: ietf-krb-wg@anl.gov
Message-ID: <E3BBF7707F91758ECDB95A32@atlantis.pc.cs.cmu.edu>
X-Mailer: Mulberry/4.0.8 (Linux/x86)
MIME-Version: 1.0
Content-Disposition: inline
X-Scanned-By: mimedefang-cmuscs on 128.2.217.198
X-Virus-Scanned: Debian amavisd-new at frigga.it.anl.gov
Cc: jhutz@cmu.edu
Subject: [Ietf-krb-wg] RFC-Editor Note for draft-ietf-krb-wg-naming-07
X-BeenThere: ietf-krb-wg@lists.anl.gov
X-Mailman-Version: 2.1.13
Precedence: list
List-Id: "This is a list for the IETF Kerberos Working Group. {WORLDPUB, EXTERNAL}" <ietf-krb-wg.lists.anl.gov>
List-Unsubscribe: <https://lists.anl.gov/mailman/options/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=unsubscribe>
List-Archive: <https://lists.anl.gov/pipermail/ietf-krb-wg>
List-Post: <mailto:ietf-krb-wg@lists.anl.gov>
List-Help: <mailto:ietf-krb-wg-request@lists.anl.gov?subject=help>
List-Subscribe: <https://lists.anl.gov/mailman/listinfo/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=subscribe>
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="us-ascii"; Format="flowed"
Sender: ietf-krb-wg-bounces@lists.anl.gov
Errors-To: ietf-krb-wg-bounces@lists.anl.gov

In order to address issues raised during IETF Last Call and/or IESG review, 
we're attaching the following Notes to the RFC Editor to naming.  Modulo 
these changes, this document has been approved and should enter the RFC 
Editor's queue shortly.

-- Jeff

  Please make the following changes prior to publication:

  In Section 1:
  OLD:
     This document is to remedy these issues by defining well-known
     Kerberos names and the protocol behavior when a well-known name is
     used but not supported.
  NEW:
     This document remedies these issues by defining well-known
     Kerberos names and the protocol behavior when a well-known name is
     used but not supported.

  OLD:
     In the case of the anonymity support, it is critical that
     deployed Kerberos implementations that do not support anonymity MUST
     fail the authentication if the anonymity name pair is used, therefore
     no access is granted accidentally to a principal who's name happens
     to match with that of the anonymous identity.
  NEW:
     In the case of the anonymity support, it is critical that
     deployed Kerberos implementations that do not support anonymity
     fail the authentication if the anonymity name pair is used, therefore
     no access is granted accidentally to a principal who's name happens
     to match with that of the anonymous identity.
  (deleting the word "MUST")


  In Section 3.1 (case change):
  OLD:
     A well-known principal name MUST have at least two or more
     KerberosString components, and the first component must be the string
     literal "WELLKNOWN".
  NEW:
     A well-known principal name MUST have at least two or more
     KerberosString components, and the first component MUST be the string
     literal "WELLKNOWN".

  Also in Section 3.1, replace "KDC" by "Key Distribution Center (KDC)".

  In Section 4:
  OLD:
     It is possible to have name collision with well-known names because
     Kerberos as defined in [RFC4120] does not reserve names that have
     special meanings, consequently care MUST be taken to avoid accidental
     reuse of names.

  NEW:
     It is possible to have name collision with well-known names because
     Kerberos as defined in [RFC4120] does not reserve names that have
     special meanings, accidental reuse of names MUST be avoided.

  In Section 6:
  OLD:
     "Specification Required".
  NEW:
     "Specification Required", as specified in [RFC5226]

  In Section 7.1, add the following normative reference:

     [RFC5226]  Narten, T. and H. Alvestrand, "Guidelines for Writing an
                IANA Considerations Section in RFCs", BCP 26, RFC 5226,
                May 2008.



_______________________________________________
ietf-krb-wg mailing list
ietf-krb-wg@lists.anl.gov
https://lists.anl.gov/mailman/listinfo/ietf-krb-wg