Re: [scim] [Technical Errata Reported] RFC7643 (6011)

Shelley <randomshelley@gmail.com> Mon, 09 March 2020 17:21 UTC

Return-Path: <randomshelley@gmail.com>
X-Original-To: scim@ietfa.amsl.com
Delivered-To: scim@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1FFBF3A126D for <scim@ietfa.amsl.com>; Mon, 9 Mar 2020 10:21:34 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.097
X-Spam-Level:
X-Spam-Status: No, score=-1.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, FREEMAIL_REPLY=1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id S_bsQ3hisod7 for <scim@ietfa.amsl.com>; Mon, 9 Mar 2020 10:21:32 -0700 (PDT)
Received: from mail-ua1-x930.google.com (mail-ua1-x930.google.com [IPv6:2607:f8b0:4864:20::930]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2A4FF3A1243 for <scim@ietf.org>; Mon, 9 Mar 2020 10:21:32 -0700 (PDT)
Received: by mail-ua1-x930.google.com with SMTP id q17so3590174uao.12 for <scim@ietf.org>; Mon, 09 Mar 2020 10:21:32 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=kwCL++xcidhfUOBn38lzGhjbJBEBw1wv1at+mVpz4Ro=; b=t3G17t9JO7P2qPEwtIidsQF34pgWxzNYQ0PjZdF6vmnWWAg7BjWCtUQvXhX7ooInqZ 1U8Gj/hTARg+TlLZbQKBtZtmGGxHaptm0CB66R78NYfAPliPluDpAbCQ8ikOPRBDgSa5 aD6cCljuFN3aqq7edU4ED7eYu1Q9pGE+vfra41Aoy0XyOEHIKX9+ZVTgXWfKHVUcSEVm 1hcE9wHfzy4EglNmGqRcxnL1iix6TkVPqn1mgBxmD4FoG5HI8oRGFFWPPS8PS51mmB00 v6O25rqm9M7cSQfaA+K1KtKqAGNB4D/80FnPER2Ahf6u75fzuVLZc9/zCo5Kl+CAeeJP x/5g==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=kwCL++xcidhfUOBn38lzGhjbJBEBw1wv1at+mVpz4Ro=; b=AhEe3wpP3iH/L1aCw3bffUuU4brWeg9HHujzX20/2tKwtQdkaLBpxbOwrZJ9bwlivR KL7BxFMb9m9wrW9nqzCcnMohezb379OEivS8aKz74bxrDFY9vHGNKd1/n5PEN0ytmZOt 3OJxv6Ac+yo+WdJYTbqciG+BsAL52OWoSuNjpJ5RGjH9OqeI0wRiQYUvT3wuRlv/Pv/7 hVLVP5VtGKrifU7jrrn1iGtWP3RL5MWHrTu5fA51aC2DiHdWPDizE0i3q//PTelB1F/z PBdv0H1ymLLBwOZo/Qk9CSVHPuIldnt4bkJuFxt575vsAhnlVyh2gazBYsR9vTASqVFL GmUw==
X-Gm-Message-State: ANhLgQ2gerXs2avyRfbRQW34o9phL2a8mIRi3isyHEAvmaYqz2FNRpyK 6ywKHTLDrQv/kb6Yl7RACd8y/qf3onr4UD/vh4WScazoctA=
X-Google-Smtp-Source: ADFU+vvcoHbRWSqAtw+NVoyt25rOKdcR+eTeGMlLiQ9QyR3L0MOd2/lJYz/TvRsU9CY7+EArSOakp8baUJD7N3okWGY=
X-Received: by 2002:ab0:2991:: with SMTP id u17mr1701885uap.35.1583774491293; Mon, 09 Mar 2020 10:21:31 -0700 (PDT)
MIME-Version: 1.0
References: <20200309144726.4AE80F40720@rfc-editor.org> <149452C1-607B-4EDB-BF5C-647B662B73B8@yahoo.com>
In-Reply-To: <149452C1-607B-4EDB-BF5C-647B662B73B8@yahoo.com>
From: Shelley <randomshelley@gmail.com>
Date: Mon, 09 Mar 2020 12:21:20 -0500
Message-ID: <CAGUsYPw3OfTg_uRvBAz+rQsy6yTn+Xz4=4dK3fLE5kwJP18uew@mail.gmail.com>
To: Phil Hunt <phil.hunt@yahoo.com>
Cc: RFC Errata System <rfc-editor@rfc-editor.org>, Kelly Grizzle <kelly.grizzle@sailpoint.com>, Barry Leiba <barryleiba@computer.org>, Alexey Melnikov <aamelnikov@fastmail.fm>, Adam Roach <adam@nostrum.com>, Morteza Ansari <moransar@cisco.com>, leifj@sunet.se, scim@ietf.org
Content-Type: multipart/alternative; boundary="000000000000f53adf05a06f3b3b"
Archived-At: <https://mailarchive.ietf.org/arch/msg/scim/sTC-JU8cUNPUKYU5-Vr8ND--lbE>
Subject: Re: [scim] [Technical Errata Reported] RFC7643 (6011)
X-BeenThere: scim@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Simple Cloud Identity Management BOF <scim.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/scim>, <mailto:scim-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/scim/>
List-Post: <mailto:scim@ietf.org>
List-Help: <mailto:scim-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/scim>, <mailto:scim-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 09 Mar 2020 17:21:34 -0000

Thanks.

The use of "readOnly" for the "display" mutability overlaps a bit with a
question posted here:
https://mailarchive.ietf.org/arch/msg/scim/qI6J6ZwnlowstviRBMox41J_yo4/

Apologies for conflating these two issues.

On Mon, Mar 9, 2020 at 12:04 PM Phil Hunt <phil.hunt@yahoo.com> wrote:

> VERIFIED
>
> However, the correction needs a correction.  The display attribute is
> “immutable” not “readOnly”.
>
>          {
>            "name": "display",
>            "type": "string",
>            "multiValued": false,
>            "description": "A human-readable name for the group member,
> primarily used for display purposes.",
>            "required": false,
>            "caseExact": false,
>            "mutability": "readOnly”,
> —>. should be:
>            "mutability": “immutable”,
>
>            "returned": "default",
>            "uniqueness": "none"
>          }
>
> Phil Hunt
> phil.hunt@yahoo.com
>
>
>
> On Mar 9, 2020, at 7:47 AM, RFC Errata System <rfc-editor@rfc-editor.org>
> wrote:
>
> The following errata report has been submitted for RFC7643,
> "System for Cross-domain Identity Management: Core Schema".
>
> --------------------------------------
> You may review the report below and at:
> https://www.rfc-editor.org/errata/eid6011
>
> --------------------------------------
> Type: Technical
> Reported by: Shelley Baker <randomshelley@gmail.com>
>
> Section: 8.7.1
>
> Original Text
> -------------
>      {
>        "name" : "members",
>        "type" : "complex",
>        "multiValued" : true,
>        "description" : "A list of members of the Group.",
>        "required" : false,
>        "subAttributes" : [
>          {
>            "name" : "value",
>            "type" : "string",
>            "multiValued" : false,
>            "description" : "Identifier of the member of this Group.",
>            "required" : false,
>            "caseExact" : false,
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name" : "$ref",
>            "type" : "reference",
>            "referenceTypes" : [
>              "User",
>              "Group"
>            ],
>            "multiValued" : false,
>            "description" : "The URI corresponding to a SCIM resource
> that is a member of this Group.",
>            "required" : false,
>            "caseExact" : false,
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name" : "type",
>            "type" : "string",
>            "multiValued" : false,
>            "description" : "A label indicating the type of resource,
> e.g., 'User' or 'Group'.",
>            "required" : false,
>            "caseExact" : false,
>            "canonicalValues" : [
>              "User",
>              "Group"
>            ],
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          }
>        ],
>        "mutability" : "readWrite",
>        "returned" : "default"
>      }
>
> Corrected Text
> --------------
>      {
>        "name" : "members",
>        "type" : "complex",
>        "multiValued" : true,
>        "description" : "A list of members of the Group.",
>        "required" : false,
>        "subAttributes" : [
>          {
>            "name" : "value",
>            "type" : "string",
>            "multiValued" : false,
>            "description" : "Identifier of the member of this Group.",
>            "required" : false,
>            "caseExact" : false,
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name" : "$ref",
>            "type" : "reference",
>            "referenceTypes" : [
>              "User",
>              "Group"
>            ],
>            "multiValued" : false,
>            "description" : "The URI corresponding to a SCIM resource
> that is a member of this Group.",
>            "required" : false,
>            "caseExact" : false,
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name" : "type",
>            "type" : "string",
>            "multiValued" : false,
>            "description" : "A label indicating the type of resource,
> e.g., 'User' or 'Group'.",
>            "required" : false,
>            "caseExact" : false,
>            "canonicalValues" : [
>              "User",
>              "Group"
>            ],
>            "mutability" : "immutable",
>            "returned" : "default",
>            "uniqueness" : "none"
>          },
>          {
>            "name": "display",
>            "type": "string",
>            "multiValued": false,
>            "description": "A human-readable name for the group member,
> primarily used for display purposes.",
>            "required": false,
>            "caseExact": false,
>            "mutability": "readOnly",
>            "returned": "default",
>            "uniqueness": "none"
>          }
>        ],
>        "mutability" : "readWrite",
>        "returned" : "default"
>      }
>
> Notes
> -----
> The group "members" attribute should define a "display" sub-attribute.
>
> * Section 2.4 defines a standard multi-valued read-only attribute of
> "display".
> * The Group Representation example in Section 8.4 also includes the
> "members.display" sub-attribute.
> * This discussion in the SCIM mailing list [1] also indicates that this
> should be fixed.
>
> [1]
> https://mailarchive.ietf.org/arch/msg/scim/EH99Gxn-hDluihMNtWLIekuFCs8/
>
> Instructions:
> -------------
> This erratum is currently posted as "Reported". If necessary, please
> use "Reply All" to discuss whether it should be verified or
> rejected. When a decision is reached, the verifying party
> can log in to change the status and edit the report, if necessary.
>
> --------------------------------------
> RFC7643 (draft-ietf-scim-core-schema-22)
> --------------------------------------
> Title               : System for Cross-domain Identity Management: Core
> Schema
> Publication Date    : September 2015
> Author(s)           : P. Hunt, Ed., K. Grizzle, E. Wahlstroem, C. Mortimore
> Category            : PROPOSED STANDARD
> Source              : System for Cross-domain Identity Management
> Area                : Applications and Real-Time
> Stream              : IETF
> Verifying Party     : IESG
>
>
>