document #284
NSI Authentication and Authorization
Status: | closed | Start date: | 07/03/2015 | |
---|---|---|---|---|
Priority: | Normal | Due date: | ||
Assignee: | Greg Newby | % Done: | 0% |
|
Category: | - | |||
Target version: | - | |||
Document Type: | Proposed Recommendation |
Description
This is the AA document that is part of the NSI suite of documents.
This document outlines security requirements placed on Network Service Agents (NSA) when participating in the Network Services Interface (NSI) Connection Service protocol. Also discussed are the impacts of end-user authentication and authorization mechanism on the NSA and the NSI CS protocol through the use of the existing NSI security attributes.
Richard, could you please take a look and let us know if this is ready for public comment?
Thanks,
Guy
History
Updated by Greg Newby over 7 years ago
- Status changed from submitted to AD review
Dear Guy,
Thanks for this. As you suggest, we are awaiting initial AD review, prior to presentation to the Standards Council.
Updated by Richard Hughes-Jones over 7 years ago
Reviewed the doc and passed to Jens for more detailed comments on AAI/ security aspects
Updated by Greg Newby almost 7 years ago
- Assignee changed from Richard Hughes-Jones to Jens Jensen
Status is that we are awaiting AD input on this document. Apologies for the delay.
Greg
Updated by Greg Newby almost 7 years ago
Status confirmed that Jens will give a security review, then back to Richard. We should then be ready for next steps, including public comment.
- Greg
Updated by Jens Jensen almost 7 years ago
- File draft-gwdi-trompert-nsi_aa-public-comment-v2-JJ.docx added
- Status changed from AD review to author action
- Assignee changed from Jens Jensen to Richard Hughes-Jones
I've finally managed to read the document and add my comments. I don't know if we should discuss over a call or something, in case I need to explain (or have something explained
Updated by Greg Newby almost 7 years ago
Dear Guy,
Please take a look at Jens' updates, and follow up as appropriate. For example, via a phone call with Jens. Or, by posting an updated document. We will await your further response. Thanks,
- Greg
Updated by Guy Roberts almost 7 years ago
Hello Jens,
Thanks for the comments on the AA doc, we will review these on our NSI call tomorrow.
I will let you know how we go.
Guy
Updated by Guy Roberts almost 7 years ago
Hello Jens,
Thanks for taking time out to discuss the NSI AA document with us.
John has gone through the document and added clarifications and revisions based on our discussion.
Could you please take a look and let us know if this is now ready to go out to public comment?
Thanks,
Guy
Updated by Guy Roberts almost 7 years ago
Jens,
I have just spotted that Richards comments have not been responded to yet. We will work on these and send through an updated document soon.
Guy
Updated by Guy Roberts almost 7 years ago
- File draft-gwdi-trompert-nsi_aa-public-comment-v5.docx added
- File draft-gwdi-trompert-nsi_aa-public-comment-pdf-v1.docx added
Hello Jens,
please find attached a marked up version of the NSI AA document including edits based on all of Richard's comments.
I have also included a cleaned up pdf version with the comments and markups removed.
Could you please take a look and let us know if you are happy with these changes?
Thanks,
Guy
Updated by Greg Newby over 6 years ago
Checking again with Richard... sorry for the delay.
Updated by Greg Newby over 6 years ago
Per the standards council telecon on May 17, there are remaining concerns from the Area Director (Richard). Awaiting further discussions, and perhaps a newly updated document.
Updated by Richard Hughes-Jones over 6 years ago
Most of the comments dealt with in a clear manner.
Only two points remain:
1. How does the OE know the path and hence the Auth servers in advance of path computation?
The assumption from John:
“It is my assumption that a user community like LHCONE would use one authorization system and anyone using, or providing resource as part of, would use the same system.” May be valid but it really limits the general use of the standard.
Somewhere in maybe section 7, or the intro, you need to have some lines outlining limitation/assumption and stating that the general case if for future study.
2. OAuth section seems to introduce new teminology.
Updated by Greg Newby over 6 years ago
- Status changed from author action to public comment
- Assignee changed from Richard Hughes-Jones to Andre Merzky
This will now go for 60-day public comment. Andre will create the tracker, then I will announce.
Updated by Guy Roberts over 6 years ago
Hello Greg, Andre,
Please find cleaned up version 7 of the public comment document.
This addresses Richards questions of v5 and should be ready to upload for public comment.
Guy
Updated by Guy Roberts over 6 years ago
Andre,
Here is a pdf version. I have checked it against the OGF doc template and updated to match.
Please let me know if you spot any problems.
Thanks,
Guy
Updated by Greg Newby over 6 years ago
This is now ready for public comment.
Andre, please create a new P.C. tracker, then I will announce. Thanks... Greg
Updated by Greg Newby about 6 years ago
- Assignee changed from Andre Merzky to Greg Newby
Greg will push this to public comment.
Updated by Greg Newby about 6 years ago
The public comment tracker:
https://redmine.ogf.org/projects/editor-pubcom/boards/38
Authors/editors: Please solicit comments, even brief affirmative "I have read this, and think it is good" comments from your stakeholders. Public comment is open until January 1, 2017.
Updated by Greg Newby almost 6 years ago
- Status changed from public comment to AD review
- Assignee changed from Greg Newby to Richard Hughes-Jones
Zero public comments were received. The standards council will discuss this at their next meeting.
Updated by Richard Hughes-Jones over 5 years ago
Please Publish
Updated by Greg Newby over 5 years ago
- Status changed from AD review to to be published
- Assignee changed from Richard Hughes-Jones to Greg Newby
Per the standards council telecon of May 12, this will be published as
GFD-R-P.232
Updated by Greg Newby about 5 years ago
- File GFD-R.232.pdf added
- File GFD-R.232.docx added
Final version document files.
Updated by Greg Newby about 5 years ago
- File gfd.232.docx added
- File gfd.232.pdf added
I spotted a typo. Updating.
Updated by Greg Newby over 4 years ago
- Status changed from to be published to closed
(Other formats not available in this archive.