[Date Prev][Date Next] [Chronological] [Thread] [Top]

Re: LDAP Access Control



Tim Howes wrote:
> QUESTION 1: Do you believe LDAPEXT should be trying to define
> requirements, framework, and/or a model for access control in
> LDAP directories?

Yes.

> QUESTION 2: Do you basically support the access control
> requirements draft (draft-ietf-ldapext-acl-reqts-00.txt)?

Yes.

> QUESTION 3: Do you basically support the access control model
> draft (draft-ietf-ldapext-acl-model-00.txt)?

Need to read it.

> QUESTION 4: Do you think we should adopt the X.500(1993)
> basic access control model as the starting point for the LDAP
> access control model?

Not sure. Need to see how X.500's approach maps to our agreed-upon reqs, once 
we get them firmed up.

> QUESTION 5: Do you think we should specify only a framework
> for identifying access control models, and not define a
> single standards-track model for LDAP at this time?

We need both.

Jeff