RE: LDAP ACM in security considerations (RE: I-D ACTION:draft-iet f-ldup-replica-req-11.txt)
John Strassner <[email protected]>
| Newsgroups | gmane.ietf.ldup |
|---|---|
| Message-ID | <[email protected]> |
Kurt, The text that you changed doesn't make sense. Here it is again: Security- related and general LDAP interoperability will be significantly impacted by the degree of consistency with which implementations existing and future standards detailing LDAP security models, such as a future standard access control model. Please rewrite just this part. regards, John John Strassner Chief Strategy Officer Intelliden Corporation 90 South Cascade Avenue Colorado Springs, CO 80903 USA phone: +1.719.785.0648 FAX: +1.719.785.0644 email: [email protected] -----Original Message----- From: Kurt D. Zeilenga [mailto:[email protected]] Sent: Monday, March 11, 2002 10:12 AM To: [email protected] Cc: [email protected] Subject: Re: LDAP ACM in security considerations (RE: I-D ACTION:draft-ietf-ldup-replica-req-11.txt) As noted in previous discussions, the access control model is only one of the security models which impacts the replication. To address this, I suggest the security consideration section be replaced with: This document includes security requirements (listed in section 4.8 above) for the replication model and protocol. As noted in Section 3, interoperability may be impacted when replicating among servers that implement non-standard extensions to basic LDAP semantics. Security- related and general LDAP interoperability will be significantly impacted by the degree of consistency with which implementations existing and future standards detailing LDAP security models, such as a future standard access control model. Other future standard security models could be listed as well, but one example is sufficient. Kurt