[radext] saslprepbis and NAI

Alan DeKok <aland@deployingradius.com> Fri, 14 November 2014 14:17 UTC

Return-Path: <aland@deployingradius.com>
X-Original-To: radext@ietfa.amsl.com
Delivered-To: radext@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 045781A0143; Fri, 14 Nov 2014 06:17:13 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QmpJ8UAE96R0; Fri, 14 Nov 2014 06:17:11 -0800 (PST)
Received: from power.freeradius.org (power.freeradius.org [195.154.231.44]) by ietfa.amsl.com (Postfix) with ESMTP id 7ABCD1A0127; Fri, 14 Nov 2014 06:17:11 -0800 (PST)
Received: from localhost (localhost [127.0.0.1]) by power.freeradius.org (Postfix) with ESMTP id E775F22402AF; Fri, 14 Nov 2014 15:17:10 +0100 (CET)
X-Virus-Scanned: Debian amavisd-new at power.freeradius.org
Received: from power.freeradius.org ([127.0.0.1]) by localhost (power.freeradius.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id jQuS26huzq_7; Fri, 14 Nov 2014 15:17:10 +0100 (CET)
Received: from Thor.local (69-196-165-104.dsl.teksavvy.com [69.196.165.104]) by power.freeradius.org (Postfix) with ESMTPSA id 00B63224013A; Fri, 14 Nov 2014 15:17:09 +0100 (CET)
Message-ID: <54660EE5.50503@deployingradius.com>
Date: Fri, 14 Nov 2014 09:17:09 -0500
From: Alan DeKok <aland@deployingradius.com>
User-Agent: Thunderbird 2.0.0.24 (Macintosh/20100228)
MIME-Version: 1.0
To: precis@ietf.org, "radext@ietf.org" <radext@ietf.org>
X-Enigmail-Version: 0.96.0
Content-Type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: 7bit
Archived-At: http://mailarchive.ietf.org/arch/msg/radext/2AgfvYcEvilLHcf615a3VzEfnio
Subject: [radext] saslprepbis and NAI
X-BeenThere: radext@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: RADIUS EXTensions working group discussion list <radext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/radext>, <mailto:radext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/radext/>
List-Post: <mailto:radext@ietf.org>
List-Help: <mailto:radext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/radext>, <mailto:radext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 14 Nov 2014 14:17:13 -0000

  The RADEXT WG is in the last stages of publishing the updated NAI
document:

https://tools.ietf.org/html/draft-ietf-radext-nai-10

  This defines a standard for "username@realm" handling, where "realm"
is a fully qualified hostname.  It would be useful to reference that
from the saslprepbis document.

  The NAI is used for EAP (802.1X), AAA, 3GPP, and international roaming.

  The NAI is a subset of the "userpart" defined in Section 3.1 of the
saslprepbis document, in that it *requires* "username@realm", and the
"realm" part is a fully qualified domain name.

  Hmm... I've just noticed that the ABNF in the NAI allows for IP
addresses in the "realm" portion.  That's not the intent.  I'll have to
go fix that.

  I'd like to be sure that the NAI document is compatible with (or at
least not in violent disagreement with) the precis work.

  Alan DeKok.