Hi Murray, thank you for this review.
I’m currently collecting updates into https://github.com/cabo/ace-aif until the ID submission opens again. > On 2022-03-10, at 05:14, Murray Kucherawy via Datatracker <[email protected]> > wrote: > > Murray Kucherawy has entered the following ballot position for > draft-ietf-ace-aif-06: No Objection […] > > ---------------------------------------------------------------------- > COMMENT: > ---------------------------------------------------------------------- > > The shepherd writeup […] I’ll leave that part to shepherd and AD. (As an author, I always wonder how active my role in generating this writeup should be. Clearly, it is more useful if it has a strictly independent perspective. But that is maybe a different discussion.) > The Abstract seems to suggest very broad application. Should there be a > sentence in there that indicates the context of the work (specifically, ACE)? I don’t think the areas of application of this format are limited to the ACE protocols. (The intention, of course, also isn’t to push out all other authorization models in the IETF… I was hoping that should be obvious, but that is also why the title is “**An** Authorization Information Format (AIF) for ACE”.) > In Section 5.1, "Required Parameters" shouldn't be "none", but rather "N/A"; > see Section 5.6 of RFC 6838 for more information. Fixed in https://github.com/cabo/ace-aif/commit/0f53118 > The second paragraph of Section 6 (about default-deny) strikes me as something > that should really be up in Section 2 or Section 3; it's something fundamental > and ought to be called out up front. That is indeed the more correct way of doing this. I put a copy of that paragraph right as the second paragraph of Section 2 (Information Model). I’m not quite sure whether the redundancy of saying that again in Section 6 would be worse than not saying it again would be; I removed the copy in Section 6 though. Fixed in https://github.com/cabo/ace-aif/commit/21f3afe Grüße, Carsten _______________________________________________ Ace mailing list [email protected] https://www.ietf.org/mailman/listinfo/ace
