RE: RE: PCELS position
John Strassner <[email protected]> Tue, 23 Sep 2003 11:03:16 -0600
| Newsgroups | gmane.ietf.policy |
|---|---|
| Message-ID | <[email protected]> |
This message is in MIME format. Since your mail reader does not understand this format, some or all of this message may not be legible. ------_=_NextPart_001_01C381F4.94D7A670 Content-Type: text/plain Again, you are trying to determine the validity of an information model based on the concerns of one specific data model. This is backwards. Furthermore, the argument that you are "reusing" an attribute foo in a new class bar is completely specious, because the new class bar is different than the original class baz that defined foo. The differences are very fundamental - different hierarchies, different attributes, and worse (e.g., the definition of priority). This isn't reuse, this is simply stealing an OID. So, how about defining a NEW set of classes and attributes? And if you prefixes the new classes and attributes, this would also get around the schema problem that I stated earlier. regards, John John C. Strassner Chief Strategy Officer Intelliden Inc. 90 South Cascade Avenue Colorado Springs, CO 80906 USA phone: +1.719.785.0648 fax: +1.719.785.0644 email: [email protected] -----Original Message----- From: Pana, Mircea [mailto:[email protected]] Sent: Monday, September 22, 2003 8:21 AM To: 'Wijnen, Bert (Bert)'; 'David McTavish'; Pana, Mircea; '[email protected]' Cc: 'John Strassner'; 'Joel M. Halpern' Subject: RE: [Policy] RE: PCELS position Maybe there is no need for such drastic measures. Maybe it is only a matter of interpretation of the PCIMe recommendations. After all PCIMe is quite lenient wrt. that is and what is not used in submodels (see PCIMe section 5.10.). Some of the structural changes proposed by PCIMe make it difficult for PCELS to be interoperable with PCLS. These are as follows: 1. PCIMe defines a new abstract class, PolicySet, and makes it a superclass of the already defined PolicyRule and PolicyGroup 2. In PCIMe the PolicyRule.Priority property has been deprecated in favor of a new relative priority mechanism. 3. PolicyRepository is deprecated in favor of the new ReusablePolicyContainer. PCELS could be interoperable with PCLS if it was to interpret these PCIMe changes as follows: A. there is no need to have an explicit LDAP mapping of the abstract PolicySet. (see also B.) B. there is no need to have an explicit LDAP mapping of the modified PolicyGroup. Implementations can use (the equivalent of) a PolicyRule with no Actions or Conditions for PolicyGroup objects. C. implementations SHOULD (as opposed to MUST) use the relative priority mechanism instead of the absolute priority attribute of PolicyRule D. PolicyRepository SHOULD not be used directly but it is acceptable for instances of this class to occur through inheritance. So, the question is whether the statements A. through D. violate PCIMe or not. Opinions? Thanks, Mircea. -----Original Message----- From: Wijnen, Bert (Bert) [mailto:[email protected] <mailto:[email protected]> ] Sent: Sunday, September 21, 2003 6:14 AM To: 'David McTavish'; 'Pana, Mircea'; '[email protected]' Cc: 'John Strassner'; 'Joel M. Halpern' Subject: RE: [Policy] RE: PCELS position W.r.t. > Is PCIMe considered so complete, that it is beyond modification, if such > modification could preserve its intent while also adhering to the desires > of maintaining consistency with PCIM and PCLS? PCIMe is at Proposed Standard. If, for example because of this effort to try and MAP it onto LDAP, we find that we did some things in PCIMe that we should not have done, then, with WG consensus, we can make incompatible changes to PCIMe and then recycle at Proposed Standard. That is part of the normal standars track process. That is, we get something to PS, then we start using/implementing (the "using" part is reusing PCIMe definitions in otehr CIM docs (like the other docs we did in Policy, and like the IPsec work, the "implementing" is sort of mapping onto for example LDAP I think)... and if we find major issues, then we fix and recycle at PS. If we do not find major issues, we may advance to DS. Hope this helps. Bert ------_=_NextPart_001_01C381F4.94D7A670 Content-Type: text/html <!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 3.2//EN"> <html> <head> <META HTTP-EQUIV="Content-Type" CONTENT="text/html; charset=us-ascii"> <meta name=Generator content="Microsoft Word 10 (filtered)"> <title>RE: [Policy] RE: PCELS position</title> <style> <!-- /* Font Definitions */ @font-face {font-family:Wingdings; panose-1:5 0 0 0 0 0 0 0 0 0;} @font-face {font-family:Tahoma; panose-1:2 11 6 4 3 5 4 4 2 4;} /* Style Definitions */ p.MsoNormal, li.MsoNormal, div.MsoNormal {margin:0in; margin-bottom:.0001pt; font-size:12.0pt; font-family:"Times New Roman";} a:link, span.MsoHyperlink {color:blue; text-decoration:underline;} a:visited, span.MsoHyperlinkFollowed {color:blue; text-decoration:underline;} p {margin-right:0in; margin-left:0in; font-size:12.0pt; font-family:"Times New Roman";} p.Numbered, li.Numbered, div.Numbered {margin-top:0in; margin-right:0in; margin-bottom:0in; margin-left:.8in; margin-bottom:.0001pt; text-indent:-.25in; line-height:200%; font-size:10.0pt; font-family:"Times New Roman";} p.Bulletted, li.Bulletted, div.Bulletted {margin-top:0in; margin-right:0in; margin-bottom:0in; margin-left:1.5in; margin-bottom:.0001pt; text-indent:-.25in; line-height:200%; font-size:10.0pt; font-family:"Times New Roman";} span.EmailStyle20 {font-family:Arial; color:navy;} @page Section1 {size:8.5in 11.0in; margin:1.0in 1.25in 1.0in 1.25in;} div.Section1 {page:Section1;} /* List Definitions */ ol {margin-bottom:0in;} ul {margin-bottom:0in;} --> </style> </head> <body lang=EN-US link=blue vlink=blue> <div class=Section1> <p class=MsoNormal><font size=2 color=navy face=Arial><span style='font-size: 10.0pt;font-family:Arial;color:navy'>Again, you are trying to determine the validity of an information model based on the concerns of one specific data model. This is backwards.</span></font></p> <p class=MsoNormal><font size=2 color=navy face=Arial><span style='font-size: 10.0pt;font-family:Arial;color:navy'> </span></font></p> <p class=MsoNormal><font size=2 color=navy face=Arial><span style='font-size: 10.0pt;font-family:Arial;color:navy'>Furthermore, the argument that you are "reusing" an attribute foo in a new class bar is completely specious, because the new class bar is <i><span style='font-style:italic'>different</span></i> than the original class baz that defined foo. The differences are very fundamental - different hierarchies, different attributes, and worse (e.g., the definition of priority). This isn't reuse, this is simply stealing an OID.</span></font></p> <p class=MsoNormal><font size=2 color=navy face=Arial><span style='font-size: 10.0pt;font-family:Arial;color:navy'> </span></font></p> <p class=MsoNormal><font size=2 color=navy face=Arial><span style='font-size: 10.0pt;font-family:Arial;color:navy'>So, how about defining a NEW set of classes and attributes? And if you prefixes the new classes and attributes, this would also get around the schema problem that I stated earlier. </span></font></p> <p class=MsoNormal><font size=2 color=navy face=Arial><span style='font-size: 10.0pt;font-family:Arial;color:navy'> </span></font></p> <div> <p><font size=3 color=navy face="Times New Roman"><span style='font-size:12.0pt; color:navy'>regards,<br> John </span></font></p> <p><font size=3 color=navy face="Times New Roman"><span style='font-size:12.0pt; color:navy'>John C. Strassner <br> Chief Strategy Officer <br> Intelliden Inc. <br> 90 South Cascade Avenue <br> Colorado Springs, CO 80906 USA <br> phone: +1.719.785.0648 <br> fax: +1.719.785.0644 <br> email: [email protected] </span></font></p> </div> <div style='border:none;border-left:solid blue 1.5pt;padding:0in 0in 0in 4.0pt'> <p class=MsoNormal><font size=2 face=Tahoma><span style='font-size:10.0pt; font-family:Tahoma'>-----Original Message-----<br> <b><span style='font-weight:bold'>From:</span></b> Pana, Mircea [mailto:[email protected]] <br> <b><span style='font-weight:bold'>Sent:</span></b> Monday, September 22, 2003 8:21 AM<br> <b><span style='font-weight:bold'>To:</span></b> 'Wijnen, Bert (Bert)'; </span></font><font size=2 face=Tahoma><span style='font-size:10.0pt;font-family:Tahoma'>'David McTavish'</span></font><font size=2 face=Tahoma><span style='font-size:10.0pt; font-family:Tahoma'>; Pana, Mircea; </span></font><font size=2 face=Tahoma><span style='font-size:10.0pt;font-family:Tahoma'>'[email protected]'</span></font><font size=2 face=Tahoma><span style='font-size:10.0pt;font-family:Tahoma'><br> <b><span style='font-weight:bold'>Cc:</span></b> </span></font><font size=2 face=Tahoma><span style='font-size:10.0pt;font-family:Tahoma'>'</span></font><font size=2 face=Tahoma><span style='font-size:10.0pt;font-family:Tahoma'>John Strassner</span></font><font size=2 face=Tahoma><span style='font-size:10.0pt; font-family:Tahoma'>'</span></font><font size=2 face=Tahoma><span style='font-size:10.0pt;font-family:Tahoma'>; </span></font><font size=2 face=Tahoma><span style='font-size:10.0pt;font-family:Tahoma'>'Joel M. Halpern'</span></font><font size=2 face=Tahoma><span style='font-size:10.0pt; font-family:Tahoma'><br> <b><span style='font-weight:bold'>Subject:</span></b> RE: [Policy] RE: PCELS position</span></font></p> <p class=MsoNormal><font size=3 face="Times New Roman"><span style='font-size: 12.0pt'> </span></font></p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>Maybe there is no need for such drastic measures. Maybe it is only a matter of interpretation of the PCIMe recommendations. After all PCIMe is quite lenient wrt. that is and what is not used in submodels (see PCIMe section 5.10.).</span></font></p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>Some of the structural changes proposed by PCIMe make it difficult for PCELS to be interoperable with PCLS. These are as follows:</span></font></p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>1. PCIMe defines a new abstract class, PolicySet, and makes it a superclass of the already defined PolicyRule and PolicyGroup</span></font></p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>2. In PCIMe the PolicyRule.Priority property has been deprecated in favor of a new relative priority mechanism.</span></font> <br> <font size=2><span style='font-size:10.0pt'>3. PolicyRepository is deprecated in favor of the new ReusablePolicyContainer.</span></font> <br> <font size=2><span style='font-size:10.0pt'> </span></font> <br> <font size=2><span style='font-size:10.0pt'>PCELS could be interoperable with PCLS if it was to interpret these PCIMe changes as follows:</span></font> <br> <font size=2><span style='font-size:10.0pt'>A. there is no need to have an explicit LDAP mapping of the abstract PolicySet. (see also B.)</span></font> <br> <font size=2><span style='font-size:10.0pt'>B. there is no need to have an explicit LDAP mapping of the modified PolicyGroup. Implementations can use (the equivalent of) a PolicyRule with no Actions or Conditions for PolicyGroup objects.</span></font></p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>C. implementations SHOULD (as opposed to MUST) use the relative priority mechanism instead of the absolute priority attribute of PolicyRule</span></font></p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>D. PolicyRepository SHOULD not be used directly but it is acceptable for instances of this class to occur through inheritance.</span></font></p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>So, the question is whether the statements A. through D. violate PCIMe or not. Opinions?</span></font> </p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>Thanks,</span></font> <br> <font size=2><span style='font-size:10.0pt'>Mircea.</span></font> <br> <font size=2><span style='font-size:10.0pt'>-----Original Message-----</span></font> <br> <font size=2><span style='font-size:10.0pt'>From: Wijnen, Bert (Bert) [<a href="mailto:[email protected]">mailto:[email protected]</a>]</span></font> <br> <font size=2><span style='font-size:10.0pt'>Sent: Sunday, September 21, 2003 6:14 AM</span></font> <br> <font size=2><span style='font-size:10.0pt'>To: 'David McTavish'; 'Pana, Mircea'; '[email protected]'</span></font> <br> <font size=2><span style='font-size:10.0pt'>Cc: 'John Strassner'; 'Joel M. Halpern'</span></font> <br> <font size=2><span style='font-size:10.0pt'>Subject: RE: [Policy] RE: PCELS position</span></font> </p> <p class=MsoNormal><font size=3 face="Times New Roman"><span style='font-size: 12.0pt'> </span></font></p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>W.r.t.</span></font> <br> <font size=2><span style='font-size:10.0pt'>> Is PCIMe considered so complete, that it is beyond modification, if such </span></font><br> <font size=2><span style='font-size:10.0pt'>> modification could preserve its intent while also adhering to the desires </span></font><br> <font size=2><span style='font-size:10.0pt'>> of maintaining consistency with PCIM and PCLS? </span></font></p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>PCIMe is at Proposed Standard. If, for example because of this effort to try and MAP it onto LDAP, we</span></font> <br> <font size=2><span style='font-size:10.0pt'>find that we did some things in PCIMe that we should not have done, then, with WG consensus,</span></font> <br> <font size=2><span style='font-size:10.0pt'>we can make incompatible changes to PCIMe and then recycle at Proposed Standard.</span></font> <br> <font size=2><span style='font-size:10.0pt'>That is part of the normal standars track process. That is, we get something to PS, then we start</span></font> <br> <font size=2><span style='font-size:10.0pt'>using/implementing (the "using" part is reusing PCIMe definitions in otehr CIM docs (like the</span></font> <br> <font size=2><span style='font-size:10.0pt'>other docs we did in Policy, and like the IPsec work, the "implementing" is sort of mapping onto for </span></font><br> <font size=2><span style='font-size:10.0pt'>example LDAP I think)... and if we find major issues, then we fix and recycle at PS. If we do not</span></font> <br> <font size=2><span style='font-size:10.0pt'>find major issues, we may advance to DS.</span></font> </p> <p><font size=2 face="Times New Roman"><span style='font-size:10.0pt'>Hope this helps.</span></font> <br> <font size=2><span style='font-size:10.0pt'>Bert</span></font> </p> </div> </div> </body> </html> ------_=_NextPart_001_01C381F4.94D7A670--