[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]
Subject: RE: [xacml-comment] Invitation to comment on XACML V3.0 Errata 01 - ends June 16th
Error 1 was corrected in the Errata by changing the sentence to read:
"policies which were found to be fully applicable, whether or not the <Effect> (after rule combining) was the same or different from the <Decision>".
Unfortunately this change did not make it into the core spec with errata applied and hence not into the redline version.
The fix will be applied to the core.
Error 2 does not seem to be present in either the Errata or the updated core or redline version.
Error 3 was missed in the previous pass and is not corrected in any of the documents.
This will be added to the Errata and updated core.
As previously noted, Cyril’s name will be added to the Acknowledgements section of the Errata document.
I would like to report a few remaining issues (I’m using the redlined version for line numbers):
1) Section 5.48, line 2939: "policies which were found to be fully applicable, whether or not the <Effect> was the same or different from the <Decision>". This sentence is wrong (or cryptic at the least) since policies do not have/return an <Effect> element. What is this <Effect> referring to?
2) Section 5.48, line 2941: typo: "policies".
3) Section 10.2.9, line 3996: typo: "policies".
In addition, may I ask to be mentioned somehow in the spec for such contribution? In Acknowledgement or Revision History sections maybe. I’d really appreciate, plus that would be a good way to “value feeback” from non-members in general. But I would understand if it is a privilege of TC members.
Security Engineer, CISSP
From: Chet Ensign [mailto:email@example.com]
OASIS Members and other interested parties,
We are pleased to announce that eXtensible Access Control Markup Language (XACML) Version 3.0 Errata 01 from the OASIS eXtensible Access Control Markup Language (XACML) TC is now available for public review and comment.
This document lists Errata for the OASIS Standard eXtensible Access Control Markup Language (XACML) Version 3.0. A copy of the complete Standard with the errata applied, both red-lined and clean, is included. This is the errata's second public review.
The documents and related files are available here:
eXtensible Access Control Markup Language (XACML) Version 3.0 Errata 01
Committee Specification Draft 02 / Public Review Draft 02
11 May 2017
Editable source (Authoritative):
eXtensible Access Control Markup Language (XACML) Version 3.0 Plus Errata 01
OASIS Standard incorporating Public Review Draft 02 of Errata 01
11 May 2017
Editable source (red-lined):
Editable source (clean):
ZIP distribution files (complete):
For your convenience, OASIS provides a complete package of the prose specification and related files in a ZIP distribution file. You can download the ZIP file here:
Public Review Period:
OASIS and the XACML TC value your feedback. We solicit feedback from potential users, developers and others, whether OASIS members or not, for the sake of improving the interoperability and quality of this technical work.
The public review starts 02 June 2017 at 00:00 UTC and ends 16 June 2017 at 11:59 UTC.
Comments may be submitted to the TC by any person through the use of the OASIS TC Comment Facility which can be accessed by following the instructions found via the button labeled "Send A Comment" at the top of the TC public home page, or directly at:
Feedback submitted by TC non-members for this work and for other work of this TC is publicly archived and can be viewed at:
All comments submitted to OASIS are subject to the OASIS Feedback License, which ensures that the feedback you provide carries the same obligations at least as the obligations of the TC members. In connection with this public review of 'eXtensible Access Control Markup Language (XACML) Version 3.0 Errata 01', we call your attention to the OASIS IPR Policy  applicable especially  to the work of this technical committee. All members of the TC should be familiar with this document, which may create obligations regarding the disclosure and availability of a member's patent, copyright, trademark and license rights that read on an approved OASIS specification.
OASIS invites any persons who know of any such claims to disclose these if they may be essential to the implementation of the above specification, so that notice of them may be posted to the notice page for this TC's work.
Additional information about this specification and the XLIFF TC may be found on the TC's public home page located at:
========== Additional references:
 Previous public reviews:
15-day public review, 23 February 2017:
- Comment resolution log:
RF on Limited Terms Mode