[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: Unicode string profiles for LDAP




"Kurt D. Zeilenga" wrote:

> Unassigned characters:  The output cannot contain any unassigned
> characters.  Hence, an assertion involving any unassigned character
> will be Undefined.  

Kurt

if the matching rule is an approximate match, then it should be a local
matter as to whether the assertion value matches true, false or
undefined.


> 
> IMO, the clarifications of attribute/assertion value handling in
> comparisions should be done in 2252bis where the syntaxes and matching
> rules are specified. 

The matching rules are currently defined in X.520, whereas 2252bis says
more about the LDAP syntax than the way assertion values are matched
against stored values. I would prefer it if the semantics of the
matching rules only occur in X.521, and that 22252bis points to X.520
(after all, the OIDs from X.520 are used, and we dont want two different
interpretations of how a particular matching rule should operate.) If
X.520 is ambiguous then we should submit a defect report on this (For
example, X.520 currently does not define a Fax matching rule - an
amazing oversight in my opinion - and at the last X.500 meeting we drew
up text for this new matching rule, and whilst doing so spotted several
ambiguities in telephone match, so these also will be fixed)

David


> It may also be appropriate to include in 2252bis
> (non-normative appendix?) a discussion of the design choices made as
> the choices may not obvious to the reader.
> 
> Kurt

-- 
*****************************************************************

David W. Chadwick, BSc PhD
Professor of Information Systems Security
IS Institute, University of Salford, Salford M5 4WT
Tel: +44 161 295 5351  Fax +44 161 745 8169
Mobile: +44 77 96 44 7184
Email: D.W.Chadwick@salford.ac.uk
Home Page:  http://www.salford.ac.uk/its024/chadwick.htm
Research Projects: http://sec.isi.salford.ac.uk
Understanding X.500:  http://www.salford.ac.uk/its024/X500.htm
X.500/LDAP Seminars: http://www.salford.ac.uk/its024/seminars.htm
Entrust key validation string: MLJ9-DU5T-HV8J
PGP Key ID is 0xBC238DE5

*****************************************************************
begin:vcard 
n:Chadwick;David
tel;cell:+44 77 96 44 7184
tel;fax:+44 1484 532930
tel;home:+44 1484 352238
tel;work:+44 161 295 5351
x-mozilla-html:FALSE
url:http://www.salford.ac.uk/its024/chadwick.htm
org:University of Salford;IS Institute
version:2.1
email;internet:d.w.chadwick@salford.ac.uk
title:Professor of Information Security
adr;quoted-printable:;;The Crescent=0D=0A;Salford;Greater Manchester;M5 4WT;England
note;quoted-printable:Research Projects: http://sec.isi.salford.ac.uk.......................=0D=0A=0D=0AUnderstanding X.500:  http://www.salford.ac.uk/its024/X500.htm .......................=0D=0A=0D=0AX.500/LDAP Seminars: http://www.salford.ac.uk/its024/seminars.htm...................=0D=0A=0D=0AEntrust key validation string: CJ94-LKWD-BSXB ...........=0D=0A=0D=0APGP Key ID is 0xBC238DE5
x-mozilla-cpt:;-4856
fn:David Chadwick
end:vcard