20 Oct 2010 15:20
Fwd: Request for LDAP expert review of PEC object identifier descriptors
Kurt Zeilenga <Kurt.Zeilenga <at> Isode.COM>
2010-10-20 13:20:09 GMT
2010-10-20 13:20:09 GMT
Any comments? If so, please direct them to directory <at> apps.ietf.org.
-- Kurt
Begin forwarded message:
From: Alba Shahin <alba.shahin <at> isti.cnr.it>
Date: October 4, 2010 8:37:48 AM PDT
Cc: Sean Turner <turners <at> ieca.com>, "Polk, William T." <william.polk <at> nist.gov>, draft-gennai-smime-cnipa-pec <at> tools.ietf.org
Subject: Request for LDAP expert review of PEC object identifier descriptors
x-spam-score: 1.882
x-spam-status: No, score=1.882 tagged_above=-999 required=5 tests=[BAYES_50=0.001, HELO_EQ_IT=0.635, HOST_EQ_IT=1.245, HTML_MESSAGE=0.001]
list-id: Discussion of issues related to directories <directory.ietf.org>
Hello,
We would like to request an expert review of the LDAP object identifier descriptors defined in PEC (Italian Certified Electronic Mail)
(Some minor changes were made below wrt what’s in the draft).
We look forward to your feedback on this.
Thank you.--Alba
----
8.2.1. Registration of Object Classes
Subject: Request for LDAP Descriptor Registration
Descriptor (short name): See commentsObject Identifier: See commentsPerson & email address to contact for further information:See "Author/Change Controller"
Usage: object classSpecification: (I-D)
Author/Change Controller:
Claudio PetrucciDigitPAViale Carlo Marx 31/4900137 RomaItalyEMail: PETRUCCI <at> digitpa.gov.it
Comments:
The following object identifiers and associated object classesare requested to be registered.OID Object Class------------------------- -----------------------1.3.6.1.4.1.16572.2.1.1 LDIFLocationURLObject1.3.6.1.4.1.16572.2.1.2 providerPlease also see the associated registration request for theproviderCertificateHash, providerCertificate, providerName,mailReceipt, managedDomains, LDIFLocationURL, and providerUnitattribute types.8.2.2. Registration of Attribute Types
Subject: Request for LDAP Descriptor Registration
Descriptor (short name): See commentsObject Identifier: See commentsPerson & email address to contact for further information:See "Author/Change Controller"
Usage: attribute typeSpecification: (I-D)
Author/Change Controller:
Claudio PetrucciDigitPAViale Carlo Marx 31/4900137 RomaItalyEMail: PETRUCCI <at> digitpa.gov.it
Comments:
The following object identifiers and associated attribute typesare requested to be registered.
OID Attribute Type------------------------- -------------------------1.3.6.1.4.1.16572.2.2.1 providerCertificateHash1.3.6.1.4.1.16572.2.2.2 providerCertificate1.3.6.1.4.1.16572.2.2.3 providerName1.3.6.1.4.1.16572.2.2.4 mailReceipt1.3.6.1.4.1.16572.2.2.5 managedDomains1.3.6.1.4.1.16572.2.2.6 LDIFLocationURL1.3.6.1.4.1.16572.2.2.7 providerUnit
Please also see the associated registration request for theLDIFLocationURLObject and provider object classes.
_______________________________________________ Ldapext mailing list Ldapext <at> ietf.org https://www.ietf.org/mailman/listinfo/ldapext
, I strongly advise
injecting a 'pec' prefix into every descriptor.
Lastly, I note the I-D suggests the use of naming context named "o=postacert" but no where details how this
name was properly delegated for the purposes discussed in the I-D. Presumedly this is because it's not
properly delegated. Traditionally, LDAP relies on X.500 delegation or DNS-based name delegation. That
is, names properly delegated in X.500 or DNS, each by an appropriate naming authority, are usable in LDAP
(via mechanical translation) without the need for any further registration requirement.
Traditionally, top level naming contexts of type o (organization) have been unregulated. However, this
may change in the future due to the popularity of top-level organization naming.
While "o=portacert" is not registrable (at this time), one could registered a domain namefor this purpose
of use in constructing an LDAP DN. (If the authors want to pursue this approach, I would suggest bringing in
a DNS expert.*) If the authors wish to continue to use "o=postacert", I recommend an IESG note be added that
this specification utilized unregistered LDAP DN name space which may lead to conflict with other
registered or unregistered names.
Regards, Kurt
(* At first, I was thinking of a domain under .arpa could be used, but it seems that this purpose likely met the
requirements for .arpa delegation).
On Oct 22, 2010, at 4:01 AM, Alba Shahin wrote:
> Hello Steven.
>
> Thank you for the comment. We agree that adding a "pec" prefix would make
> certain values less prone to misunderstandings, but we'd like to point out
> that there are currently several functioning implementations that use the
> values as defined in the draft. If possible we would like said draft to be
> representative of how things are right now, therefore maintain the values
> that are being used by those existing implementations.
> We think they should be unambiguous in any case, since those values are
> defined within the PEC context under the PEC tree.
>
> Do you think keeping the values as they are now is possible?
>
> Regards,
> --Alba
>
>
>
> -----Original Message-----
> From: Steven Legg [mailto:steven.legg <at> eNitiatives.com.au]
> Sent: giovedì 21 ottobre 2010 01:22
> To: directory <at> apps.ietf.org; alba.shahin <at> isti.cnr.it
> Cc: Kurt Zeilenga; ldapext <at> ietf.org
> Subject: Re: [ldapext] Fwd: Request for LDAP expert review of PEC object
> identifier descriptors
>
>
> I don't have a problem with any of the names requested in that they don't
> clash with anything I'm aware of. However, a name like "provider"
> is fairly generic and might clash with someone's local definition.
> I would suggest prefixing all the names with "pec" to reduce the chance of
> conflict (so pecProvider, pecProviderCertificateHash, etc.).
>
> Regards,
> Steven
>
> On 21/10/2010 12:20 AM, Kurt Zeilenga wrote:
>> Any comments? If so, please direct them to directory <at> apps.ietf.org
>> <mailto:directory <at> apps.ietf.org>.
>>
>> -- Kurt
>>
>> Begin forwarded message:
>>
>>> *From: *Alba Shahin <alba.shahin <at> isti.cnr.it
>>> <mailto:alba.shahin <at> isti.cnr.it>>
>>> *Date: *October 4, 2010 8:37:48 AM PDT
>>> *To: *directory <at> apps.ietf.org <mailto:directory <at> apps.ietf.org>
>>> *Cc: *Sean Turner <turners <at> ieca.com <mailto:turners <at> ieca.com>>,
>>> "Polk, William T." <william.polk <at> nist.gov
>>> <mailto:william.polk <at> nist.gov>>,
>>> draft-gennai-smime-cnipa-pec <at> tools.ietf.org
>>> <mailto:draft-gennai-smime-cnipa-pec <at> tools.ietf.org>
>>> *Subject: **Request for LDAP expert review of PEC object identifier
>>> descriptors*
>>> *x-spam-score: *1.882
>>> *x-spam-status: *No, score=1.882 tagged_above=-999 required=5
>>> tests=[BAYES_50=0.001, HELO_EQ_IT=0.635, HOST_EQ_IT=1.245,
>>> HTML_MESSAGE=0.001]
>>> *list-id: *Discussion of issues related to directories
>>> <directory.ietf.org <
RSS Feed