OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.

 


Help: OASIS Mailing Lists Help | MarkMail Help

xacml message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [Elist Home]


Subject: RE: [xacml] Proposed semantics for operations involving INDETERMI NATE


> The client shouldn't know what the operational errors of the PDP actually
> are. It it does, it breaks encapsulation of the PDP, and causes the
> clients of a PDP to worry about a lot more than Access Decisions, but also
> problems with the PDP.

indeed! we break encapsulation at this level and we abandon all hope of
interoperability (we teeter perilously close to the abyss as it is...)

> I personally would like to restrict the policy to only evaluate the
> evidence in the Context, and therefore all data is considered
> available.
> Then there is no question, and no Errors.

agreed.

b



[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [Elist Home]


Powered by eList eXpress LLC