[radext] [Technical Errata Reported] RFC7542 (5462)

RFC Errata System <rfc-editor@rfc-editor.org> Tue, 14 August 2018 13:17 UTC

Return-Path: <wwwrun@rfc-editor.org>
X-Original-To: radext@ietfa.amsl.com
Delivered-To: radext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 129A11277D2 for <radext@ietfa.amsl.com>; Tue, 14 Aug 2018 06:17:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.201
X-Spam-Level:
X-Spam-Status: No, score=-4.201 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id bQQrl5mXm79g for <radext@ietfa.amsl.com>; Tue, 14 Aug 2018 06:16:58 -0700 (PDT)
Received: from rfc-editor.org (rfc-editor.org [4.31.198.49]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B607A130DDA for <radext@ietf.org>; Tue, 14 Aug 2018 06:16:58 -0700 (PDT)
Received: by rfc-editor.org (Postfix, from userid 30) id 6C8BCB80AF1; Tue, 14 Aug 2018 06:16:50 -0700 (PDT)
To: aland@freeradius.org, ibagdona@gmail.com, warren@kumari.net, lionel.morand@orange.com, stefan.winter@restena.lu
X-PHP-Originating-Script: 30:errata_mail_lib.php
From: RFC Errata System <rfc-editor@rfc-editor.org>
Cc: aland@freeradius.org, radext@ietf.org, rfc-editor@rfc-editor.org
Content-Type: text/plain; charset="UTF-8"
Message-Id: <20180814131650.6C8BCB80AF1@rfc-editor.org>
Date: Tue, 14 Aug 2018 06:16:50 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/radext/s3bKddfgrQf7mhj4mWZId0h0MHc>
Subject: [radext] [Technical Errata Reported] RFC7542 (5462)
X-BeenThere: radext@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: RADIUS EXTensions working group discussion list <radext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/radext>, <mailto:radext-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/radext/>
List-Post: <mailto:radext@ietf.org>
List-Help: <mailto:radext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/radext>, <mailto:radext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 14 Aug 2018 13:17:00 -0000

The following errata report has been submitted for RFC7542,
"The Network Access Identifier".

--------------------------------------
You may review the report below and at:
http://www.rfc-editor.org/errata/eid5462

--------------------------------------
Type: Technical
Reported by: Alan DeKok <aland@freeradius.org>

Section: 3

Original Text
-------------
The "utf8-realm" SHOULD be supplied by the "next hop" or "home"
system that also supplies the routing information necessary for
packets to reach the next hop.

Corrected Text
--------------
The "utf8-realm" SHOULD be supplied by the "next hop" or "home"
system that also supplies the routing information necessary for
packets to reach the next hop.

The final home system SHOULD validate the NAI in the received packet
against the list of Realms hosted by the home system.  If no match
is found, the request SHOULD be rejected.

Notes
-----
It doesn't explicitly say that home systems only authenticate users for their own realms.  It may help to have this stated explicitly.

Some text will also be added to draft-ietf-radext-coa-proxy in order to make this clearer.

Instructions:
-------------
This erratum is currently posted as "Reported". If necessary, please
use "Reply All" to discuss whether it should be verified or
rejected. When a decision is reached, the verifying party  
can log in to change the status and edit the report, if necessary. 

--------------------------------------
RFC7542 (draft-ietf-radext-nai-15)
--------------------------------------
Title               : The Network Access Identifier
Publication Date    : May 2015
Author(s)           : A. DeKok
Category            : PROPOSED STANDARD
Source              : RADIUS EXTensions
Area                : Operations and Management
Stream              : IETF
Verifying Party     : IESG