Re: [scim] Question on the use of attributes from schema extensions

Keith Hazelton <keith.hazelton@wisc.edu> Tue, 11 August 2015 17:07 UTC

Return-Path: <keith.hazelton@wisc.edu>
X-Original-To: scim@ietfa.amsl.com
Delivered-To: scim@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6F1301ACDCE for <scim@ietfa.amsl.com>; Tue, 11 Aug 2015 10:07:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.21
X-Spam-Level:
X-Spam-Status: No, score=-4.21 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id S-9lpOxf8hX4 for <scim@ietfa.amsl.com>; Tue, 11 Aug 2015 10:07:23 -0700 (PDT)
Received: from smtpauth3.wiscmail.wisc.edu (wmauth3.doit.wisc.edu [144.92.197.226]) (using TLSv1 with cipher DHE-RSA-AES128-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8C7BB1ACDCB for <scim@ietf.org>; Tue, 11 Aug 2015 10:07:23 -0700 (PDT)
MIME-version: 1.0
Content-type: multipart/alternative; boundary="Boundary_(ID_qhUzZRBassAEzun7pKRtfA)"
Received: from avs-daemon.smtpauth3.wiscmail.wisc.edu by smtpauth3.wiscmail.wisc.edu (Oracle Communications Messaging Server 7.0.5.33.0 64bit (built Aug 27 2014)) id <0NSX00F00G7NJB00@smtpauth3.wiscmail.wisc.edu> for scim@ietf.org; Tue, 11 Aug 2015 12:07:22 -0500 (CDT)
X-Spam-PmxInfo: Server=avs-3, Version=6.1.1.2430161, Antispam-Engine: 2.7.2.2107409, Antispam-Data: 2015.8.11.165716, SenderIP=0.0.0.0
Received: from na01-bl2-obe.outbound.protection.outlook.com (mail-bl2lp0204.outbound.protection.outlook.com [207.46.163.204]) by smtpauth3.wiscmail.wisc.edu (Oracle Communications Messaging Server 7.0.5.33.0 64bit (built Aug 27 2014)) with ESMTPS id <0NSX00C91GW89540@smtpauth3.wiscmail.wisc.edu> for scim@ietf.org; Tue, 11 Aug 2015 12:07:21 -0500 (CDT)
Received: from DM2PR0601MB1230.namprd06.prod.outlook.com (10.160.220.20) by DM2PR0601MB1293.namprd06.prod.outlook.com (10.160.221.20) with Microsoft SMTP Server (TLS) id 15.1.225.19; Tue, 11 Aug 2015 17:07:20 +0000
Received: from DM2PR0601MB1231.namprd06.prod.outlook.com (10.160.220.21) by DM2PR0601MB1230.namprd06.prod.outlook.com (10.160.220.20) with Microsoft SMTP Server (TLS) id 15.1.225.19; Tue, 11 Aug 2015 17:07:19 +0000
Received: from DM2PR0601MB1231.namprd06.prod.outlook.com ([10.160.220.21]) by DM2PR0601MB1231.namprd06.prod.outlook.com ([10.160.220.21]) with mapi id 15.01.0225.018; Tue, 11 Aug 2015 17:07:19 +0000
Received-SPF: None (protection.outlook.com: wisc.edu does not designate permitted sender hosts)
Date: Tue, 11 Aug 2015 17:07:19 +0000
From: Keith Hazelton <keith.hazelton@wisc.edu>
In-reply-to: <BN1PR04MB39292911CB883FC04ADB06BE27F0@BN1PR04MB392.namprd04.prod.outlook.com>
X-Originating-IP: [128.104.18.177]
To: SCIM WG <scim@ietf.org>
Message-id: <79955440-1957-492D-B815-54E5FC3B228C@wisc.edu>
Content-language: en-US
Accept-Language: en-US
Thread-topic: Question on the use of attributes from schema extensions
Thread-index: AQHQ1FK56KvsUaCh00CJq2Szj2pZpp4HAdLg//+yEQA=
spamdiagnosticoutput: 1:23
spamdiagnosticmetadata: NSPM
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-messagesentrepresentingtype: 1
x-microsoft-exchange-diagnostics: 1; DM2PR0601MB1230; 5:DV3OJ4sZUt4UAyDe8MXlm7yZ0b8xS1CVsihS21YERuhNDY0tmq3uHo/5ypATHoS3HnnY3RJQkfPAwGJEuVt/Bari1xPpc9ehYhZyU5XR2BDMX/88RJk8k+4SjRhfJBKdVOYnAvxBsr55LreTtU8peg==; 24:uPSbtvBGIwTTQmPLg3BisjAFY0qx9geGiXsa8go5rDk8OiyfFTfpjIiajGv8U2wXkxbz/wk8H4vWKd2/BpwltQDgcTdXMRKDsGu/ijyMEiU=; 20:rf1HHy1I6yxEoXP8wlafa+9fEZAz2X6sILs6FTsQEuaO9+NqRGe1n65dYYOhqFC4QykBQ3vwwu9zToS+mlWdvA==
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:; SRVR:DM2PR0601MB1230; UriScan:; BCL:0; PCL:0; RULEID:; SRVR:DM2PR0601MB1293;
x-microsoft-antispam-prvs: <DM2PR0601MB1230A2BF9B0BF944DDE2DDF4F47F0@DM2PR0601MB1230.namprd06.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:;
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(601004)(5005006)(3002001); SRVR:DM2PR0601MB1230; BCL:0; PCL:0; RULEID:; SRVR:DM2PR0601MB1230;
x-forefront-prvs: 066517B35B
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(199003)(189002)(83716003)(89122001)(88552001)(105586002)(110136002)(19617315012)(5001960100002)(10400500002)(66066001)(106356001)(106116001)(2950100001)(2656002)(15975445007)(92566002)(68736005)(77096005)(64706001)(102836002)(5002640100001)(75432002)(46102003)(107886002)(4001540100001)(33656002)(54356999)(50986999)(101416001)(189998001)(19580395003)(2900100001)(19580405001)(77156002)(36756003)(82746002)(76176999)(99286002)(62966003)(122556002)(5001830100001)(40100003)(90282001)(450100001)(97736004)(87936001)(5001860100001)(86362001)(81156007)(16236675004)(104396002); DIR:OUT; SFP:1101; SCL:1; SRVR:DM2PR0601MB1230; H:DM2PR0601MB1231.namprd06.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
X-MS-Exchange-CrossTenant-originalarrivaltime: 11 Aug 2015 17:07:19.7427 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 2ca68321-0eda-4908-88b2-424a8cb4b0f9
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM2PR0601MB1230
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0601MB1293; 2:pX5qz2EVYMfWhjblI2BD9dkuI6C9gmBbHNdl/XtdPfibd7pGoxrouCEF1IKEcUBMMlH+sckH48eqVAGGdY8M7sZVoUK4M0oPKssG6e7jxQSjhnrrF2Ai9e1UN6c1F+ocw1yCsawoWnRKGWc2k/FJsaHKRn++YBNI1WbfrGsCOSE=; 3:NTUxa2S30FNSoS4xnQ1n5bssSsp3wVU6TbRZEa5Kycq4GLhKtOS68PLbveyeHUpK/8glfnj2mLC6YkOSduoDNfTSXuxfReYG6NkNI+hsAM8B0dYpwNOd7vgWuLBoEyUnKqo/ztX7gkJ1ZxUlDarYdg==; 25:Jz4dOPmcl5p8NNrbs3PoEIGMKXYeLl5ZPYPkUSFrhns0wQGKVM1h/zypnbO1RYh1BRkXVKdJjEA79iMqgqTuUOXrA8uhNr6XBebK2cfW3nT+thbnmXth0pMD0nzma1h12wn4djWKAX24rkfOrJvVgqtsE32AOCXl6p3XBTHlFcYicbnzSGl0oD7zRCQM6xbfX7uaxUPJoZDvkznp1AFOeBX+hOGw4rK//+XBVYlmM/2eOMxM6zVFkVSG45+lS0sd; 23:HoDqFgzuFl4Yaydters+fwgh7bPMn3cUH+maCiDXlj8LX3O69xkFOWwoM3r9fHkxBV3Q5jq3lmRRQ06NM2nPfHo2aJVAUWzz2t8TpszbAB4QixSr4Qq1TMn1hNhZNR0m/2Y4wHX6guVg3c9pyVYxtzmPn+2AypIzJRGYQXf/dJFRP/JdeUlQ4bFD0XMb6ed05XhoyiQHgWa/hF3HBURJKzNdRC9k+Jwq/NBkHBMmRfbFC9/jxaPj8p6Eu7nOCS31
X-OriginatorOrg: wisc.edu
References: <3FBCDECF-424B-4C8D-AE4F-7C2BADEC91F2@wisc.edu> <BN1PR04MB39292911CB883FC04ADB06BE27F0@BN1PR04MB392.namprd04.prod.outlook.com>
Authentication-results: spf=none (sender IP is ) smtp.mailfrom=keith.hazelton@wisc.edu;
Archived-At: <http://mailarchive.ietf.org/arch/msg/scim/dtVIJHJY3GZkrkWtfr_zr4V7ur4>
Subject: Re: [scim] Question on the use of attributes from schema extensions
X-BeenThere: scim@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Simple Cloud Identity Management BOF <scim.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/scim>, <mailto:scim-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/scim/>
List-Post: <mailto:scim@ietf.org>
List-Help: <mailto:scim-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/scim>, <mailto:scim-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 11 Aug 2015 17:07:25 -0000

Kelly,

Thanks for your quick response.

So does 'the sub-attribute must be named using the schema extension URI” mean that all the enterprise user attributes have to appear together in a uri-container as indicated in draft-22, Figure 5: Example Enterprise User JSON Representation:

…

 "urn:ietf:params:scim:schemas:extension:enterprise:2.0:User": {
    "employeeNumber": "701984",
    "costCenter": "4130",
    "organization": "Universal Studios",
    "division": "Theme Park",
    "department": "Tour Operations",
    "manager": {
      "value": "26118915-6090-4610-87e4-49d8ca9f808d",
      "$ref": "../Users/26118915-6090-4610-87e4-49d8ca9f808d",
      "displayName": "John Smith"
    }
  },

…


Or could the extended attributes be interleaved with the User schema attributes by putting each one in that form, e.g.,


…

"userName": "bjensen@example.com",

"urn:ietf:params:scim:schemas:extension:enterprise:2.0:User": {"employeeNumber": "701984",},

"displayName": "Babs Jensen",

…

--
email & jabber: keith.hazelton@wisc.edu<mailto:keith.hazelton@wisc.edu>
calendar: http://go.wisc.edu/i6zxx0

From: Kelly Grizzle
Date: Tuesday, August 11, 2015 at 11:48
To: Keith Hazelton, SCIM WG
Subject: RE: Question on the use of attributes from schema extensions

named using th