Re: [scim] [Technical Errata Reported] RFC7643 (6011)

Phil Hunt <phil.hunt@yahoo.com> Mon, 09 March 2020 17:04 UTC

Return-Path: <phil.hunt@yahoo.com>
X-Original-To: scim@ietfa.amsl.com
Delivered-To: scim@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4D1793A1355 for <scim@ietfa.amsl.com>; Mon, 9 Mar 2020 10:04:03 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=yahoo.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id I5QWifayicbV for <scim@ietfa.amsl.com>; Mon, 9 Mar 2020 10:04:01 -0700 (PDT)
Received: from sonic310-24.consmr.mail.ne1.yahoo.com (sonic310-24.consmr.mail.ne1.yahoo.com [66.163.186.205]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 447933A13AE for <scim@ietf.org>; Mon, 9 Mar 2020 10:04:01 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo.com; s=s2048; t=1583773440; bh=olwwoP4QZQ6OoK0jaY6plM0OPH3BzvblPlxUx8nCPIQ=; h=From:Subject:Date:In-Reply-To:Cc:To:References:From:Subject; b=re9R3SEgy7qS/SZq/XmDc1dU3+OHhk9nJVmyu0FEI1QjOI98ycESJqoYPK4jmvvAon7u7ncsCf50h2pjLhnA++1A819AKSnfmTCix8NVrZT37snnfXjwsHUIssFbC+0FN/dRHt0Zsj3a2zV5a5TchtEY7PVjscmC40nzupoGPetsjpqj+4Yzflq9haOpvQW8+qFuHvBamFT9FOzs675lFbl9CCT+PvMRiKC9x2w00/fxiR2uloB/JtkpfZpSeWSkwQCXma78WpTqFk9ePwtF7GwJ7+ZZ0uYz0QxkJRkAH9l10qscs1DJibYx0VFNAXTbT2EfZu1QLlb5tCmfzxolAw==
X-YMail-OSG: _j14jqgVM1mKLSGceT.05_ii4suR2lNoWy5b27xGnPdX.M6h1.tuV.C7Dud5HoH 2Lu8OO_4dd6sc5Z9c9MjobUcpmcVDUx5MwLBXAsfHdUG.Vn6zzcBO06rUajyPPeAgxrmBOgLokMQ 0Duq7Ra7mRIU8sxXwjskdHGBTDkskvewjmFQguozslnUBVJJTjJVB_AhS4FoMKWfwy0YmivEKDb7 cVRy9eOdnRSQTjiUu6uB1w720Hvz48QOA5yOy.0Vhp_tswz6UTRKfv8hKIHw.6433JK4heM9tahJ Hgevoa2rV5Ssp9z6JHzAbNaLMxDqSncZd8tyz7mzmQ5lEFmXUiuj.njD8jd0jpOiqpQdUggQrnud YCq1x68MHS7i2NU0R8MtCaL6giB2BvdidIggup3lCTAUGzaXX7vaw9AFQDgdET6o.Et1fZrQrf60 SChg1pU_G0TD43R4mTgvTVqCp3AFFq3kpiOkk6jHz2lv6sKYHvy1WPNmKPZ0vPs6z3ZQ03ozgxPu qy0uikBPPY8izCF5H0ImhO5Eo0a2spEWuNKmRxorcY88iYe0T_x8Mticzg1Fd1mBV4bsqEdzTORn pUUfVKF4u091WzurF1lXfz1pyeeTYY5cLWKidjvPqsHfrwiB1FXio.EvXuwXNPMMK9.tBuvGs8Ut zHTf8qjkJNq62T6XngACfX7MWUQTudueQgmb28DT3hqrmT3c49mXIhBR3G_L9juV7Of5kNb9Q_YD k26xIc185V_u0lehPj63FhSiqvpKdrBL0I0vHLilK9nI9VHOEqpBJT4_KoNSBJHbTAUgB2CT7R2S 0kCTbylW0lSmVtF4aMcPhMC.yz5UZYcseM45lrDDFE.nweJdAEIYJ9sCpLxmxl1pOXiNU7wAa5Ak cxXOOlk5qEkNMma1rMafnBUWLB1KP1tCnXGe7TC_UUa1Fa1IfFSNrfAZ8WUWBingvAjHHfsByoGP 1B3WyRQIuEw1G3Wjr2g8AWAjEcGrH8gycucBSis.L8xAbeC3LA7MGxsyF434tU.7.hbjV27KunoJ hbvjL.3ECNnCQ0MUrhbNTaa96WwkGVd359mt0HvrJt8DX1RKLb32Zz1tflz9Q4YjQ9F2EHkezNVf RDrecMCH_78zCTB6xDJ8FHiXXLNO1wFBWB3azSNXr1lqiLhgZYBJMnSY6bTCs79dbejcJpWP5Opr REldhOozZeiAlGwbHDqG0u9ll_G8U5WBqUf3ygPmBS9TB_X3WlRSPWbs6sjtb3ZQ0Fd7j0Kj2BMq XXJDC8NEi2Z_vNkpWxkdzwdGcRXiSBUlgeOQM6Bnqnk_ms8FhfOji16QYVBR2STG9NLdl.csPLEU O4RYn6M4KB711Ah_aKWFl1qndLH9Cl1xamIXqkGV6wODdLD8aYuJygN8QNWSwSrSI7XjrXHZQfYs .mmrcrCVFe1iq_Ycgww--
Received: from sonic.gate.mail.ne1.yahoo.com by sonic310.consmr.mail.ne1.yahoo.com with HTTP; Mon, 9 Mar 2020 17:04:00 +0000
Received: by smtp423.mail.ne1.yahoo.com (Oath Hermes SMTP Server) with ESMTPA ID f6a17423d2aebe9802ac21341884bee2; Mon, 09 Mar 2020 17:03:59 +0000 (UTC)
From: Phil Hunt <phil.hunt@yahoo.com>
Message-Id: <149452C1-607B-4EDB-BF5C-647B662B73B8@yahoo.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_C2A748BF-5D6E-4D57-9660-C48C29ECBA7A"
Mime-Version: 1.0 (Mac OS X Mail 11.5 \(3445.9.1\))
Date: Mon, 09 Mar 2020 10:01:32 -0700
In-Reply-To: <20200309144726.4AE80F40720@rfc-editor.org>
Cc: Kelly Grizzle <kelly.grizzle@sailpoint.com>, Barry Leiba <barryleiba@computer.org>, Alexey Melnikov <aamelnikov@fastmail.fm>, Adam Roach <adam@nostrum.com>, Morteza Ansari <moransar@cisco.com>, leifj@sunet.se, Shelley <randomshelley@gmail.com>, scim@ietf.org
To: RFC Errata System <rfc-editor@rfc-editor.org>
References: <20200309144726.4AE80F40720@rfc-editor.org>
X-Mailer: Apple Mail (2.3445.9.1)
Archived-At: <https://mailarchive.ietf.org/arch/msg/scim/TLHynO0zDVNCDVcTZYuqNlSRlhg>
Subject: Re: [scim] [Technical Errata Reported] RFC7643 (6011)
X-BeenThere: scim@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Simple Cloud Identity Management BOF <scim.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/scim>, <mailto:scim-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/scim/>
List-Post: <mailto:scim@ietf.org>
List-Help: <mailto:scim-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/scim>, <mailto:scim-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 09 Mar 2020 17:04:07 -0000

VERIFIED

However, the correction needs a correction.  The display attribute is “immutable” not “readOnly”.

         {
           "name": "display",
           "type": "string",
           "multiValued": false,
           "description": "A human-readable name for the group member, primarily used for display purposes.",
           "required": false,
           "caseExact": false,
           "mutability": "readOnly”,
—>. should be: 
           "mutability": “immutable”,

           "returned": "default",
           "uniqueness": "none"
         }

Phil Hunt
phil.hunt@yahoo.com



> On Mar 9, 2020, at 7:47 AM, RFC Errata System <rfc-editor@rfc-editor.org> wrote:
> 
> The following errata report has been submitted for RFC7643,
> "System for Cross-domain Identity Management: Core Schema".
> 
> --------------------------------------
> You may review the report below and at:
> https://www.rfc-editor.org/errata/eid6011
> 
> --------------------------------------
> Type: Technical
> Reported by: Shelley Baker <randomshelley@gmail.com>
> 
> Section: 8.7.1
> 
> Original Text
> -------------
>      {
>        "name" : "members",
>        "type" : "complex",
>        "multiValued" : true,
>        "description" : "A list of members of the Group.",
>        "required" : false,
>        "subAttributes" : [
>          {
>            "name" : "value",
>            "type" : "string",
>            "multiValued" : false,
>            "description" : "Identifier of the member of this Group.",
>            "required" : false,
>            "caseExact" : false,
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name" : "$ref",
>            "type" : "reference",
>            "referenceTypes" : [
>              "User",
>              "Group"
>            ],
>            "multiValued" : false,
>            "description" : "The URI corresponding to a SCIM resource
> that is a member of this Group.",
>            "required" : false,
>            "caseExact" : false,
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name" : "type",
>            "type" : "string",
>            "multiValued" : false,
>            "description" : "A label indicating the type of resource,
> e.g., 'User' or 'Group'.",
>            "required" : false,
>            "caseExact" : false,
>            "canonicalValues" : [
>              "User",
>              "Group"
>            ],
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          }
>        ],
>        "mutability" : "readWrite",
>        "returned" : "default"
>      }
> 
> Corrected Text
> --------------
>      {
>        "name" : "members",
>        "type" : "complex",
>        "multiValued" : true,
>        "description" : "A list of members of the Group.",
>        "required" : false,
>        "subAttributes" : [
>          {
>            "name" : "value",
>            "type" : "string",
>            "multiValued" : false,
>            "description" : "Identifier of the member of this Group.",
>            "required" : false,
>            "caseExact" : false,
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name" : "$ref",
>            "type" : "reference",
>            "referenceTypes" : [
>              "User",
>              "Group"
>            ],
>            "multiValued" : false,
>            "description" : "The URI corresponding to a SCIM resource
> that is a member of this Group.",
>            "required" : false,
>            "caseExact" : false,
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name" : "type",
>            "type" : "string",
>            "multiValued" : false,
>            "description" : "A label indicating the type of resource,
> e.g., 'User' or 'Group'.",
>            "required" : false,
>            "caseExact" : false,
>            "canonicalValues" : [
>              "User",
>              "Group"
>            ],
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name": "display",
>            "type": "string",
>            "multiValued": false,
>            "description": "A human-readable name for the group member, primarily used for display purposes.",
>            "required": false,
>            "caseExact": false,
>            "mutability": "readOnly",
>            "returned": "default",
>            "uniqueness": "none"
>          }
>        ],
>        "mutability" : "readWrite",
>        "returned" : "default"
>      }
> 
> Notes
> -----
> The group "members" attribute should define a "display" sub-attribute.
> 
> * Section 2.4 defines a standard multi-valued read-only attribute of "display".
> * The Group Representation example in Section 8.4 also includes the "members.display" sub-attribute.
> * This discussion in the SCIM mailing list [1] also indicates that this should be fixed.
> 
> [1] https://mailarchive.ietf.org/arch/msg/scim/EH99Gxn-hDluihMNtWLIekuFCs8/
> 
> Instructions:
> -------------
> This erratum is currently posted as "Reported". If necessary, please
> use "Reply All" to discuss whether it should be verified or
> rejected. When a decision is reached, the verifying party  
> can log in to change the status and edit the report, if necessary. 
> 
> --------------------------------------
> RFC7643 (draft-ietf-scim-core-schema-22)
> --------------------------------------
> Title               : System for Cross-domain Identity Management: Core Schema
> Publication Date    : September 2015
> Author(s)           : P. Hunt, Ed., K. Grizzle, E. Wahlstroem, C. Mortimore
> Category            : PROPOSED STANDARD
> Source              : System for Cross-domain Identity Management
> Area                : Applications and Real-Time
> Stream              : IETF
> Verifying Party     : IESG