[scim] Call for support on proposed SCIM/SINS (re)charter

"Nancy Cam-Winget (ncamwing)" <ncamwing@cisco.com> Thu, 09 September 2021 00:22 UTC

Return-Path: <ncamwing@cisco.com>
X-Original-To: scim@ietfa.amsl.com
Delivered-To: scim@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E15D73A0A03 for <scim@ietfa.amsl.com>; Wed, 8 Sep 2021 17:22:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.595
X-Spam-Level:
X-Spam-Status: No, score=-9.595 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=Bzo7TQEA; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=Yrs22DZR
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id axKT-giwW8q5 for <scim@ietfa.amsl.com>; Wed, 8 Sep 2021 17:22:00 -0700 (PDT)
Received: from rcdn-iport-4.cisco.com (rcdn-iport-4.cisco.com [173.37.86.75]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 48F7F3A0A02 for <scim@ietf.org>; Wed, 8 Sep 2021 17:22:00 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=26505; q=dns/txt; s=iport; t=1631146920; x=1632356520; h=from:to:subject:date:message-id:mime-version; bh=bnkWRiFF5Ttq9g0LkoOPQ1SyzAxzKSpaE7wz1Ym3SK8=; b=Bzo7TQEAjV70pxA5Hi2g2ZUaGpRP8y413OtnHcOBEB8ygaszmanqVXdp VdWwGbCruwgUJGq+qJ2MYd2jdM3sjcz8Lg5lQXfjB0AbfEi9ikuSqnvmb LyHp9Uqdemm1nSK5OLBOHKoH4RGn/cCtYnt1N5rC0uGqxZKg8iRznGen7 4=;
IronPort-PHdr: A9a23:zSElBBKTPNB6Zvr5G9mcuX0yDhhOgF28Fg8Y9pRhjKhBIeyv/JXnaUrY4/glzFrERp7S5P8Mje3K+7vhVmoN7dfk0jgCfZVAWgVDhZAQmAotU8+IFUO9K+TlPGQ2Gc1YXwpj+He2eUFeBMf5YQjUpXu/pT4fExnyL0x7POPwT4XTlM+wkeu1/s67Xg==
IronPort-HdrOrdr: A9a23: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
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0BwCQA4Ujlh/4wNJK1RCYJigSMwUQd3WjcxhEeDSAOFOYgFmmCBLoElA1QLAQEBDQEBNQwEAQGEchmCJQIlNQgOAQIEAQEBEgEBBQEBAQIBBgSBEROFaAEMhlsLBgoTAQEwCBEBQAoCBDAnBDWCTwGBflcDLwEOngEBgToCih96gTGBAoIIAQEGBASBSkFGgjkYgjQDBoE6gn+CdVNIAQGCbIQlHIINgRUnHIYGAQEBAQGBJA1DFoJqNoIuhnCBMCYBA1EBARQOP2wNCiUKAxYOAzgClQSIaJ9kCoMrBYo7lB8FLINmi2eXOJYcjESTOymBfoMJAgQCBAUCDgEBBoFiATmBWXAVZQGCPlEZD5IShRSFSnQCNgIGAQoBAQMJj0aCRwEB
X-IronPort-AV: E=Sophos;i="5.85,279,1624320000"; d="scan'208,217";a="906692699"
Received: from alln-core-7.cisco.com ([173.36.13.140]) by rcdn-iport-4.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 09 Sep 2021 00:21:58 +0000
Received: from mail.cisco.com (xbe-aln-001.cisco.com [173.36.7.16]) by alln-core-7.cisco.com (8.15.2/8.15.2) with ESMTPS id 1890LvLr010094 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=OK) for <scim@ietf.org>; Thu, 9 Sep 2021 00:21:58 GMT
Received: from xfe-rcd-001.cisco.com (173.37.227.249) by xbe-aln-001.cisco.com (173.36.7.16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.792.15; Wed, 8 Sep 2021 19:21:57 -0500
Received: from xfe-aln-001.cisco.com (173.37.135.121) by xfe-rcd-001.cisco.com (173.37.227.249) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.792.15; Wed, 8 Sep 2021 19:21:57 -0500
Received: from NAM11-DM6-obe.outbound.protection.outlook.com (173.37.151.57) by xfe-aln-001.cisco.com (173.37.135.121) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.792.15 via Frontend Transport; Wed, 8 Sep 2021 19:21:57 -0500
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=ci/lqip+9K15n5gx71Q4NeQt0HuEmjuBlBnrxI1xi2Pgn5oocsVFofdnE4vHLcHn5fuHFPukv5GkxDYCsyNVSqyphzuJmp8Ywg9+KMEkhfL8oi6BmZclk6Jgd31lTNGPcdF8+N1YBEp2y/C9+PijYsh6bN9eevVkfLQym/K6GRfLSrim2ocWhft26FAo9Y46MGPmVHwohr8jJi3leYyAffLJTaiP3+t+5pbb+k6hcTaIVQv7jKqIEv4PPBc861GO41BDhtb//MAzRfTMbnku84GGcRH8K9aRp5W84NIrniezCC9YACIj2CY+6sTF+Vt7LaKAsmwR9L+YjjrRKBG35w==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=bnkWRiFF5Ttq9g0LkoOPQ1SyzAxzKSpaE7wz1Ym3SK8=; b=THd4o20uDyTI0HQ5BeemsaOVWGsJMtoI8qVuXwV3kppuy6cGN2G9QjsrFfkP1YrHbvdYHztHEeACfLK5PIUmHiXySppRNJhhPtaxGMIgV4rhO1zZHdikbKGHx9s0XIZniAoH0xB1TRjCwyeudo2JDnOz+X8Z5yqYMjtG5GSTB1BbQDYDB03Wt0Xh/MRF9rFCj9GnNEb7WnR0hU6l9yuUqAgg2Kz3NdLOQHdsZhl5uUiaplAXXA5H92qJa5vWuQGZdzHZ+14MV4lJ8p8qbeHgynzknGT0HkqTk7PolBU3SKS1Y9nKv//hH5LDZuxF1dIPt0WpphAU57omQz9hBXnTig==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=bnkWRiFF5Ttq9g0LkoOPQ1SyzAxzKSpaE7wz1Ym3SK8=; b=Yrs22DZR/LKC9+KP3XIAdw7xermSGhcP9KcAFmm9VXvqD+Nc/RszO8hSc9vTX4b0rOlLbRmwx6iXQwGVEvx9yragRY89lHPCq93VAZi2naFmDTNaIUAeooAHeHg2dJEkrxVOzhLzbWDO0NH9MA4P2c1VGT4Ig3gzAfanzgphBiY=
Received: from SA2PR11MB4825.namprd11.prod.outlook.com (2603:10b6:806:111::17) by SA2PR11MB5049.namprd11.prod.outlook.com (2603:10b6:806:11b::8) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4500.16; Thu, 9 Sep 2021 00:21:56 +0000
Received: from SA2PR11MB4825.namprd11.prod.outlook.com ([fe80::fc30:4c0f:5894:d454]) by SA2PR11MB4825.namprd11.prod.outlook.com ([fe80::fc30:4c0f:5894:d454%9]) with mapi id 15.20.4478.026; Thu, 9 Sep 2021 00:21:56 +0000
From: "Nancy Cam-Winget (ncamwing)" <ncamwing@cisco.com>
To: "scim@ietf.org" <scim@ietf.org>
Thread-Topic: Call for support on proposed SCIM/SINS (re)charter
Thread-Index: AQHXpRCytxZmiLK1g0qdr9XxTq+Bzg==
Date: Thu, 09 Sep 2021 00:21:56 +0000
Message-ID: <9BCA478F-548E-4F6A-9F1B-6D8E15AE9373@cisco.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.10.1b.201012
authentication-results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=cisco.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 2102b4bc-2703-4df9-2dfa-08d97327d4fb
x-ms-traffictypediagnostic: SA2PR11MB5049:
x-microsoft-antispam-prvs: <SA2PR11MB5049C7CBE543B8A9645BCE00D6D59@SA2PR11MB5049.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SA2PR11MB4825.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(376002)(346002)(39860400002)(366004)(136003)(396003)(66446008)(64756008)(66556008)(91956017)(6512007)(76116006)(66946007)(478600001)(66476007)(8676002)(122000001)(6506007)(83380400001)(38100700002)(2616005)(38070700005)(86362001)(166002)(2906002)(6486002)(5660300002)(316002)(21615005)(36756003)(26005)(33656002)(66574015)(186003)(71200400001)(8936002)(6916009)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_9BCA478F548E4F6A9F1B6D8E15AE9373ciscocom_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SA2PR11MB4825.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 2102b4bc-2703-4df9-2dfa-08d97327d4fb
X-MS-Exchange-CrossTenant-originalarrivaltime: 09 Sep 2021 00:21:56.2790 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 1kFY/1zvDX4ZXcrb+m6OE4UixnyFfgTKhBym5Ehz773D7GaszH4Og57VaTiahtCfqoCNMHX2MKBtwMoU/wuU3w==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SA2PR11MB5049
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.36.7.16, xbe-aln-001.cisco.com
X-Outbound-Node: alln-core-7.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/scim/z8kdF9Tuw2Un5rJhlo6jb9vKasg>
Subject: [scim] Call for support on proposed SCIM/SINS (re)charter
X-BeenThere: scim@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Simple Cloud Identity Management BOF <scim.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/scim>, <mailto:scim-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/scim/>
List-Post: <mailto:scim@ietf.org>
List-Help: <mailto:scim-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/scim>, <mailto:scim-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 09 Sep 2021 00:22:05 -0000

Hello SCIM participants,

After some virtual meetings (thank you Pam for hosting these!) and discussion, there is a new proposed charter that addresses the points raised at the IETF 111 SINS session.
This is a call for support of the charter defined below, please provide your response by Sept. 24, 2021.

As you respond in support for the charter, please also specify if you are willing to produce, review and/or implement the resulting documents.
Otherwise, do provide feedback in the time window if there are concerns or issues you see with the charter below:

Charter

The System for Cross-domain Identity Management (SCIM) specification is an HTTP-based protocol that makes managing identities in multi-domain scenarios easier. SCIM was last published in 2015 and has seen growing adoption.

One goal for this working group is to shepherd SCIM, currently RFC series 7642<https://datatracker.ietf.org/doc/html/rfc7642>, 7643<https://datatracker.ietf.org/doc/html/rfc7643>, 7644<https://datatracker.ietf.org/doc/html/rfc7644>, through the Internet Standard process. The group will deliver revised specifications for the SCIM requirements as Informational, and for the SCIM protocol and base schema suitable for consideration as a Standard. This work will be based upon the existing RFCs, errata and interoperabilty feedback, and incorporate current security and privacy best practices.

In addition to revising the requirements, protocol and base schema RFCs, the group will also consider additional specifications as extensions to SCIM that have found broad adoption and are ready for standards track. This includes profiles and schemas for interoperability in additional scenarios. The working group will develop additional Proposed Standard RFCs based on outcomes of the following work:

  *   Revision of the informational RFC 7642 will:
     *   Focus on Use cases and implementation patterns
        *   Pull vs. Push based use cases
        *   Events and signals use cases
        *   Deletion use cases
     *   New use cases may be added to the revised RFC
  *   Revision of RFC 7643/44 will include:
     *   Profiling SCIM relationships with other identity-centric protocols such as OAuth 2.0, OpenID Connect, Shared Signals, and Fastfed
     *   Updates to the evolution of the externalid usage
  *   Document SCIM support for synchronization-related goals between domains focused on:
     *   Handling returning large result sets through paging, based on [draft-hunt-scim-mv-paging-00]
     *   Incremental approaches to synchronization
  *   Support for deletion-related goals including:
     *   Handling Deletes in SCIM Servers that don’t allow Deletes (Soft Deletes) - based on [draft-ansari-scim-soft-delete-00]
  *   Support for advanced automation scenarios such as:
     *   Discovery and negotiation of client credentials
     *   Attribute mapping
     *   Per-attribute schema negotiation
  *   Enhance the existing schema to support exchanging of HR, Enterprise group and privileged access management (using draft-grizzle-scim-pam<https://tools.ietf.org/id/draft-grizzle-scim-pam-ext-00.html> as a base)

Best, Nancy (as one of the BoF chairs)