Re: [secdir] SECDIR review of draft-melnikov-sasl-scram-ldap-03

Chris Lonvick <clonvick@cisco.com> Thu, 15 October 2009 21:39 UTC

Return-Path: <clonvick@cisco.com>
X-Original-To: secdir@core3.amsl.com
Delivered-To: secdir@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 4602D3A67E2; Thu, 15 Oct 2009 14:39:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.299
X-Spam-Level:
X-Spam-Status: No, score=-6.299 tagged_above=-999 required=5 tests=[AWL=0.300, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GRBoDvoFm5hU; Thu, 15 Oct 2009 14:39:23 -0700 (PDT)
Received: from rtp-iport-2.cisco.com (rtp-iport-2.cisco.com [64.102.122.149]) by core3.amsl.com (Postfix) with ESMTP id F239C3A62C1; Thu, 15 Oct 2009 14:39:22 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=clonvick@cisco.com; l=1787; q=dns/txt; s=rtpiport02001; t=1255642767; x=1256852367; h=from:sender:reply-to:subject:date:message-id:to:cc: mime-version:content-transfer-encoding:content-id: content-description:resent-date:resent-from:resent-sender: resent-to:resent-cc:resent-message-id:in-reply-to: references:list-id:list-help:list-unsubscribe: list-subscribe:list-post:list-owner:list-archive; z=From:=20Chris=20Lonvick=20<clonvick@cisco.com>|Subject: =20Re:=20[secdir]=20SECDIR=20review=20of=20draft-melnikov -sasl-scram-ldap-03|Date:=20Thu,=2015=20Oct=202009=2014:3 9:24=20-0700=20(PDT)|Message-ID:=20<Pine.GSO.4.63.0910151 438060.6529@sjc-cde-011.cisco.com>|To:=20barryleiba@compu ter.org|cc:=20alexey.melnikov@isode.com,=20pasi.eronen@no kia.com,=20iesg@ietf.org,=0D=0A=20=20=20=20=20=20=20=20se cdir@ietf.org|MIME-Version:=201.0|In-Reply-To:=20<6c9fcc2 a0910151344o41516489ufd9b132d398f94d2@mail.gmail.com> |References:=20<Pine.GSO.4.63.0910131301090.17359@sjc-cde -007.cisco.com>=0D=0A=20<6c9fcc2a0910151344o41516489ufd9b 132d398f94d2@mail.gmail.com>; bh=EmO9DBzVLvTvlcn0OGZ66DvwiAot3cA8VqKJ9XTzVUo=; b=fxPhCoV2CuWn6xL9LKZdXQJAdeq4lzqxGyO+6CPsL9bBvwIXwOL+gHq+ +CpcdAAE6gyE+xnELE+Y7lRRx2vpqsD5vnl+4aM9+Bh9DIK5/kzjBpzAE Bu3/aR/QG5bUB4hEbMNnHHlOMVz2vmsoXYYzJwI1GiDvH2MVnClte0ESN M=;
Authentication-Results: rtp-iport-2.cisco.com; dkim=neutral (message not signed) header.i=none
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: ApoEAMoz10qtJV2Z/2dsb2JhbADBHZg3hDAE
X-IronPort-AV: E=Sophos;i="4.44,568,1249257600"; d="scan'208";a="63335486"
Received: from rcdn-core-2.cisco.com ([173.37.93.153]) by rtp-iport-2.cisco.com with ESMTP; 15 Oct 2009 21:39:25 +0000
Received: from sjc-cde-011.cisco.com (sjc-cde-011.cisco.com [171.69.16.68]) by rcdn-core-2.cisco.com (8.14.3/8.14.3) with ESMTP id n9FLdOoA010463; Thu, 15 Oct 2009 21:39:25 GMT
Date: Thu, 15 Oct 2009 14:39:24 -0700
From: Chris Lonvick <clonvick@cisco.com>
To: barryleiba@computer.org
In-Reply-To: <6c9fcc2a0910151344o41516489ufd9b132d398f94d2@mail.gmail.com>
Message-ID: <Pine.GSO.4.63.0910151438060.6529@sjc-cde-011.cisco.com>
References: <Pine.GSO.4.63.0910131301090.17359@sjc-cde-007.cisco.com> <6c9fcc2a0910151344o41516489ufd9b132d398f94d2@mail.gmail.com>
MIME-Version: 1.0
Content-Type: MULTIPART/MIXED; BOUNDARY="-559023410-1423418003-1255642764=:6529"
Cc: iesg@ietf.org, secdir@ietf.org
Subject: Re: [secdir] SECDIR review of draft-melnikov-sasl-scram-ldap-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 15 Oct 2009 21:39:24 -0000

Hi Barry,

I like that better as well.

Best regards,
Chris

On Thu, 15 Oct 2009, Barry Leiba wrote:

> On Tue, Oct 13, 2009 at 5:57 PM, Chris Lonvick <clonvick@cisco.com> wrote:
>> I'd also recommend that you revise the abstract a bit for clarity.
>> CURRENT:
>>   This memo describes how authPassword LDAP attribute can be used for
>>   storing secrets used by Salted Challenge Response (SCRAM) Simple
>>   Authentication and Security Layer (SASL) Mechanism.
>> SUGGESTED:
>>   This memo describes how the LDAP attribute of authPassword can be used
>>   for storing secrets used by the Salted Challenge Response (SCRAM)
>>   mechanism in the Simple Authentication and Security Layer (SASL)
>>   framework.
>
> I agree that strings of attributive nouns and noun-phrases can be
> confusing, especially when they're long and also shown as acronyms.  I
> think the second half of your suggested change is good.  But I think
> the first half actually makes it worse, by making it look like there's
> some attribute of authPassword that's called "LDAP".  The best way to
> clarify that part is just to put the attribute name in quotes:
> SUGGESTED++:
>  This memo describes how the "authPassword" LDAP attribute can be used
>  for storing secrets used by the Salted Challenge Response (SCRAM)
>  mechanism in the Simple Authentication and Security Layer (SASL)
>  framework.
>
> Barry
>