Re: [OAUTH-WG] Barry Leiba's No Objection on draft-ietf-oauth-resource-indicators-05: (with COMMENT)

Brian Campbell <bcampbell@pingidentity.com> Tue, 03 September 2019 19:48 UTC

Return-Path: <bcampbell@pingidentity.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 280DB120047 for <oauth@ietfa.amsl.com>; Tue, 3 Sep 2019 12:48:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=pingidentity.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CSX40OqWwbSQ for <oauth@ietfa.amsl.com>; Tue, 3 Sep 2019 12:48:01 -0700 (PDT)
Received: from mail-io1-xd30.google.com (mail-io1-xd30.google.com [IPv6:2607:f8b0:4864:20::d30]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EB9E812008B for <oauth@ietf.org>; Tue, 3 Sep 2019 12:48:00 -0700 (PDT)
Received: by mail-io1-xd30.google.com with SMTP id u185so34936305iod.10 for <oauth@ietf.org>; Tue, 03 Sep 2019 12:48:00 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=pingidentity.com; s=gmail; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=rkvNuMt4Gg2XQ5HbQ9Wv7AJfdnMVufz/V/EBW1/tmHc=; b=OhbQvnn04t7bvQ+jjoLgSc3LypoTiNQh1VRZbuLrFEFFm5+DpT+QmBay1ojeZ2F90y ozaa88GHEKomimJhzhQftugRzbTk3kpc7XJhvjr0TNGNRO4nAAx3cVpIBJLZeJodR2Tf pTIsARVKOllyoUlMMeLg4mjSlEKEoRFFYcPFE=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=rkvNuMt4Gg2XQ5HbQ9Wv7AJfdnMVufz/V/EBW1/tmHc=; b=E/L/J95WrdpODilbJhwxRvv5e9gK+JF3xw1Xiwod6yJ8ndgI9va6hjODj3gu7/Flsz c0PIf/mohcNf3kpgxJWSWsF1M1PYnL5JteYHFPZYXIz7RpGsiHJcWQpgT3IpIX/r137i ZA0zVTrVLUk1KCB9Qhfx28ycOTKgYYyWQ3hljV4p5LYzS4hgcODHouwrwHm7mZOy/POg PYsbdZnPiQPeOAYglI43H40uFLpZWhI8DM9oASiK+GLLWVGrdBcHVT2Gmj3MTX3oXwle WIcZWEavpwWwLS2bVs3QHVcqhAf5JNGhm/mA3HHMKQU+1xdWRAvt37srZvPZ5vxHxGyk egXA==
X-Gm-Message-State: APjAAAUUDa3bAbmIkBB4cBD7EipnWIhOAqfoA4+aYEqQyoUwdyjlBehs eQaBwdBaPFUmR4EVfOM01aRdrgeo2s8IeGDUbh3U2ctNVFcrUrbUHy90B6OyUM3i5NKeUmgwCuU mibIMfaFS7pzxCUBOxpk=
X-Google-Smtp-Source: APXvYqz5//iuWS30vVVGgVAuJ/BqrGp0AD5+mhVRdz2K5LF9CDjIe6/z5lpMqnw3jkRWb/9J8mXL8VAKuTixpPz+wEY=
X-Received: by 2002:a05:6638:6b2:: with SMTP id d18mr852198jad.61.1567540080100; Tue, 03 Sep 2019 12:48:00 -0700 (PDT)
MIME-Version: 1.0
References: <156753925185.20703.13187186658332421594.idtracker@ietfa.amsl.com>
In-Reply-To: <156753925185.20703.13187186658332421594.idtracker@ietfa.amsl.com>
From: Brian Campbell <bcampbell@pingidentity.com>
Date: Tue, 3 Sep 2019 13:47:34 -0600
Message-ID: <CA+k3eCRZpPMm+HQcyqQnk-xsXdG0tNasYdrAbCfdK6Ewm9Z_Lw@mail.gmail.com>
To: Barry Leiba <barryleiba@computer.org>
Cc: The IESG <iesg@ietf.org>, draft-ietf-oauth-resource-indicators@ietf.org, oauth <oauth@ietf.org>, oauth-chairs@ietf.org
Content-Type: multipart/alternative; boundary="000000000000a5604d0591ab5d35"
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/A7kfERljUrLTYm0yXkrlrHBMEg8>
Subject: Re: [OAUTH-WG] Barry Leiba's No Objection on draft-ietf-oauth-resource-indicators-05: (with COMMENT)
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth/>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Sep 2019 19:48:04 -0000

Barry, thanks for the review and ballot position.

On Tue, Sep 3, 2019 at 1:34 PM Barry Leiba via Datatracker <noreply@ietf.org>;
wrote:

> Barry Leiba has entered the following ballot position for
> draft-ietf-oauth-resource-indicators-05: No Objection
>
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
>
> -- Section 2 --
>
>    invalid_target
>       The requested resource is invalid, unknown, or malformed.
>
> For clarity, I suggest adding "missing" to the list, as specified in
> Section
> 2.1, '...and MAY fail requests that omit the parameter with an
> "invalid_target"
> error.'
>
>    The authorization server SHOULD audience restrict issued access
>    tokens to the resource(s) indicated by the "resource" parameter.
>

Makes sense, will do.



> I can't parse this sentence.  I see "audience" as a verb, and don't
> understand.
> AH.  I read later in the document and figured out my problem: I think it
> would
> help if you hyphenate "audience-restrict" (and "audience-restricted"
> later).
> No?
>

Yes? Short of Adam Roach stepping in here to teach me more about proper use
of hyphens [1], I think that would be helpful and will make the changes.


[1] https://mailarchive.ietf.org/arch/msg/oauth/IsoOa0jvabolUSzjzWHjk8b0aVY

-- 
_CONFIDENTIALITY NOTICE: This email may contain confidential and privileged 
material for the sole use of the intended recipient(s). Any review, use, 
distribution or disclosure by others is strictly prohibited.  If you have 
received this communication in error, please notify the sender immediately 
by e-mail and delete the message and any file attachments from your 
computer. Thank you._