OASIS Mailing List ArchivesView the OASIS mailing list archive below
or browse/search using MarkMail.


Help: OASIS Mailing Lists Help | MarkMail Help

xacml message

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]

Subject: [xacml] Draft resolution for errata 3.17: unclear conversion from XPath tobag

This is the draft resolution for errata 3.17: Unclear how to convert
nodes from XPath expression into bag of attributes. The following
resolution explicitly states that we deals with only simpler cases such as
a text node and an attribute value which are obvious how to convert those
values to literals. It does not deal with a node or a set of nodes which
is much harder to handle.

Lines 2409--2413 should be replaced with the following:

Each selected node by the specified XPath expression MUST be either
a text node, an attribute node, a processing instruction node, or
a comment node. The string representation of the value of each selected
MUST be converted to an attribute value of the specified data type, and
the result of the AttributeSelector is the bag of the attribute values
generated from all the selected nodes.

If the selected node is different from the node types listed above, then
the result of that policy SHALL be "Indeterminate" with a StatusCode
value of "urn:oasis:names:tc:xacml:1.0:status:syntax-error".


                      Anne Anderson                                                                                                                 
                      <Anne.Anderson@Su        To:       XACML TC <xacml@lists.oasis-open.org>                                                      
                      n.com>                   cc:                                                                                                  
                                               Subject:  [xacml] Minutes of 5 June 2003 Focus Group meeting                                         
                      2003/06/06 05:21                                                                                                              
                      Please respond to                                                                                                             

Minutes of OASIS XACML Focus Group
05 June 2003

Present: Anne Anderson (scribe), Ed Coyne (SAIC, prospective),
Michiharu Kudo, Simon Godik, Carlisle Adams, Steve Crocker

Review Errata

1. Work Item G: Environment in Target

   [Lower priority for today than Errata.  We returned to this
   after discussing Errata.]

   Michiharu asked about why this was dropped from the 1.1 Work
   Item list at the last meeting.  Michiharu disagrees with
   dropping this, but he is not clear on when something is not
   appropriate for 1.1 (Hal's comment about why this item should
   be dropped from the 1.1 Work Items).

   RECOMMENDATION: All requirements for including this in 1.1
   have been met with the exception of agreeing on a solution by
   the end of June 2003.  Michiharu has followed the agreed upon
   process of submitting a proposal by a certain date, a detailed
   solution by a certain date, etc.

   Simon has an alternative proposal/solution for this that he
   will submit to the e-mail list for discussion.

2. Simon still having problems downloading the specification.

   Michiharu has checked with OASIS webmaster, who is aware of
   the problem since webmaster has same problem.

   Michiharu will put a note on the XACML TC web site saying
   there may be a problem with some browsers.

3. Errata review

   Simon published draft-xacml-errata-02.doc attached to

- 3.12 <Status> element MAY: include action and environment


- 3.13 <Status> element MUST NOT list action or environment


- 3.14 <AttributeValue> occurrence is inconsistent.

  Also remove minOccurs="0" from line 2644 in spec to agree with

- 3.15 Semantics of the <<AttributeDesignator> with MustBePresent
  attribute set to "true" is unclear when <Attribute> does not
  contain <AttributeValue>

**RECOMMENDATION: Needs more thought.  Might approve, except
  change text to say "result is not an empty bag, but one empty
  element that is added to the resulting bag."  But in the case
  of an empty <AttributeValue DataType="...#integer">, then the
  <AttributeValue> is schema-invalid.

- 3.16 MustBePresent attribute semantics for the
  <AttributeSelector> element.

  RECOMMENDATION: Approve.  Use status of "processing-error", not
  "missing-attribute" in the place where a question mark occurs.

- 3.17 Unclear how to convert nodes from XPath expression into
  bag of attributes.

**RECOMMENDATION: TBD.  [XF] defines how to convert nodes into
  LITERAL, but the processing is very complex.  Michiharu will
  investigate a solution.

Other items in the errata list have probably already been
disposed, but Simon has not yet found the relevant e-mails.

- 3.7 Obligations for the policy.

**RECOMMENDATION: Anne to look for e-mails where Polar? clarified
  to Satoshi that 7.11 refers to both <Policy> and <PolicySet>
  and then Satoshi said 7.11 was clear with that clarification,
  and so Erratum 3.7 could be dropped.

- 3.9 <XPathVersion> element

**RECOMMENDATION: Simon will look for discussion of this on the
  list.  No one can remember what the disposition was.

- Several new errata reported to Michiharu by Jim Fuller, but not
  put on xacml-comment.  Michiharu will forward to xacml-comment.

Anne H. Anderson             Email: Anne.Anderson@Sun.COM
Sun Microsystems Laboratories
1 Network Drive,UBUR02-311     Tel: 781/442-0928
Burlington, MA 01803-0902 USA  Fax: 781/442-1692

You may leave a Technical Committee at any time by visiting

[Date Prev] | [Thread Prev] | [Thread Next] | [Date Next] -- [Date Index] | [Thread Index] | [List Home]