
From leifj@sunet.se  Wed May  2 01:20:45 2012
Return-Path: <leifj@sunet.se>
X-Original-To: abfab@ietfa.amsl.com
Delivered-To: abfab@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B73C821F8AC8 for <abfab@ietfa.amsl.com>; Wed,  2 May 2012 01:20:44 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level: 
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kZiJN1-9b8Eg for <abfab@ietfa.amsl.com>; Wed,  2 May 2012 01:20:39 -0700 (PDT)
Received: from backup-server.nordu.net (backup-server.nordu.net [IPv6:2001:948:4:1::66]) by ietfa.amsl.com (Postfix) with ESMTP id 3D13E21F8AC5 for <abfab@ietf.org>; Wed,  2 May 2012 01:20:37 -0700 (PDT)
Received: from [192.36.125.219] (dhcp.pilsnet.sunet.se [192.36.125.219]) (authenticated bits=0) by backup-server.nordu.net (8.14.3/8.14.3) with ESMTP id q428KWEf006058 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO) for <abfab@ietf.org>; Wed, 2 May 2012 10:20:35 +0200 (CEST)
Message-ID: <4FA0EE50.8030007@sunet.se>
Date: Wed, 02 May 2012 10:20:32 +0200
From: Leif Johansson <leifj@sunet.se>
User-Agent: Mozilla/5.0 (X11; Linux i686; rv:11.0) Gecko/20120411 Thunderbird/11.0.1
MIME-Version: 1.0
To: "abfab@ietf.org" <abfab@ietf.org>
X-Enigmail-Version: 1.4.1
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
Subject: [abfab] the gss-eap WGLC has ended
X-BeenThere: abfab@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Application Bridging, Federated Authentication Beyond \(the web\)" <abfab.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/abfab>, <mailto:abfab-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/abfab>
List-Post: <mailto:abfab@ietf.org>
List-Help: <mailto:abfab-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/abfab>, <mailto:abfab-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 02 May 2012 08:20:45 -0000

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1


Sam has promised a new version of the comments that were
raised during the WGLC and the chairs feel that none of
those comments indicated a need to re-cycle the WGLC. The
version Sam will produce next (-07) will be submitted to
the IESG. The new version will be forthcoming in a couple
of weeks.

	Cheers Leif
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEYEARECAAYFAk+g7lAACgkQ8Jx8FtbMZnf1BwCfbbOMk8EV4zpfEC67pcKPLQM+
ccoAoKUo5kl3p39C0zch5MepjxcFtjy8
=ihA9
-----END PGP SIGNATURE-----

From hartmans@mit.edu  Thu May 24 01:33:22 2012
Return-Path: <hartmans@mit.edu>
X-Original-To: abfab@ietfa.amsl.com
Delivered-To: abfab@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 764F321F8611 for <abfab@ietfa.amsl.com>; Thu, 24 May 2012 01:33:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.265
X-Spam-Level: 
X-Spam-Status: No, score=-102.265 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, IP_NOT_FRIENDLY=0.334, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hjPtsCKdzSd6 for <abfab@ietfa.amsl.com>; Thu, 24 May 2012 01:33:22 -0700 (PDT)
Received: from permutation-city.suchdamage.org (permutation-city.suchdamage.org [69.25.196.28]) by ietfa.amsl.com (Postfix) with ESMTP id 06B5321F8603 for <abfab@ietf.org>; Thu, 24 May 2012 01:33:21 -0700 (PDT)
Received: from carter-zimmerman.suchdamage.org (unknown [217.28.191.162]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client CN "laptop", Issuer "laptop" (not verified)) by mail.suchdamage.org (Postfix) with ESMTPS id 1906A20576; Thu, 24 May 2012 04:33:17 -0400 (EDT)
Received: by carter-zimmerman.suchdamage.org (Postfix, from userid 8042) id 02FC841ED; Thu, 24 May 2012 04:33:16 -0400 (EDT)
From: Sam Hartman <hartmans-ietf@mit.edu>
To: Ken Raeburn <raeburn@MIT.EDU>
References: <tsl398goc0q.fsf@mit.edu> <BA1947A9-A96D-4AB0-A210-B86BB6910E84@MIT.EDU> <tslpqbghkr0.fsf@mit.edu>
Date: Thu, 24 May 2012 04:33:16 -0400
In-Reply-To: <tslpqbghkr0.fsf@mit.edu> (Sam Hartman's message of "Mon, 09 Apr 2012 13:34:43 -0400")
Message-ID: <tslhav6kmgj.fsf@mit.edu>
User-Agent: Gnus/5.110009 (No Gnus v0.9) Emacs/22.3 (gnu/linux)
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Cc: abfab@ietf.org
Subject: Re: [abfab] gss-eap: empty channel bindings
X-BeenThere: abfab@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Application Bridging, Federated Authentication Beyond \(the web\)" <abfab.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/abfab>, <mailto:abfab-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/abfab>
List-Post: <mailto:abfab@ietf.org>
List-Help: <mailto:abfab-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/abfab>, <mailto:abfab-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 May 2012 08:33:22 -0000

>>>>> "Sam" == Sam Hartman <hartmans@painless-security.com> writes:

    Sam> After reading Luke's mail and Ken's mail my preference is to
    Sam> chang ethe draft to do what the Moonshot code does.  In
    Sam> particular I propose that the channel binding code is critical
    Sam> but not required.  It MUSt be sent when non-empty application
    Sam> channel bindings are passed in and MUST NOT be sent when empty
    Sam> application channel bindings are passed into
    Sam> gss_init_sec_context.

The chairs informed me that WG discussion supports this conclusion, so
draft 07 will reflect the above change.

From hartmans@mit.edu  Thu May 24 01:40:15 2012
Return-Path: <hartmans@mit.edu>
X-Original-To: abfab@ietfa.amsl.com
Delivered-To: abfab@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 903AF21F849B for <abfab@ietfa.amsl.com>; Thu, 24 May 2012 01:40:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.265
X-Spam-Level: 
X-Spam-Status: No, score=-102.265 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, IP_NOT_FRIENDLY=0.334, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id u2xkIyCwX5kO for <abfab@ietfa.amsl.com>; Thu, 24 May 2012 01:40:15 -0700 (PDT)
Received: from permutation-city.suchdamage.org (permutation-city.suchdamage.org [69.25.196.28]) by ietfa.amsl.com (Postfix) with ESMTP id 2E88221F8499 for <abfab@ietf.org>; Thu, 24 May 2012 01:40:15 -0700 (PDT)
Received: from carter-zimmerman.suchdamage.org (unknown [217.28.191.162]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client CN "laptop", Issuer "laptop" (not verified)) by mail.suchdamage.org (Postfix) with ESMTPS id 8F6D020341; Thu, 24 May 2012 04:40:10 -0400 (EDT)
Received: by carter-zimmerman.suchdamage.org (Postfix, from userid 8042) id 7B97941ED; Thu, 24 May 2012 04:40:10 -0400 (EDT)
From: Sam Hartman <hartmans-ietf@mit.edu>
To: Simon Josefsson <simon@josefsson.org>
References: <4F8D3B3B.30506@sunet.se> <87aa2afyga.fsf@latte.josefsson.org> <tslliluf8nj.fsf@mit.edu>
Date: Thu, 24 May 2012 04:40:10 -0400
In-Reply-To: <tslliluf8nj.fsf@mit.edu> (Sam Hartman's message of "Tue, 17 Apr 2012 15:41:36 -0400")
Message-ID: <tsl62bmkm51.fsf@mit.edu>
User-Agent: Gnus/5.110009 (No Gnus v0.9) Emacs/22.3 (gnu/linux)
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Cc: "abfab@ietf.org" <abfab@ietf.org>
Subject: Re: [abfab] WGLC draft-ietf-abfab-gss-eap-06
X-BeenThere: abfab@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Application Bridging, Federated Authentication Beyond \(the web\)" <abfab.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/abfab>, <mailto:abfab-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/abfab>
List-Post: <mailto:abfab@ietf.org>
List-Help: <mailto:abfab-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/abfab>, <mailto:abfab-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 May 2012 08:40:15 -0000

>>>>> "Sam" == Sam Hartman <hartmans@painless-security.com> writes:


    Sam> Whatever we do I think it should be a MAY or SHOULD implement,
    Sam> not a MUSt implement.  It looks like on the acceptor we could
    Sam> support RADIUS session time limits (if there is such a
    Sam> thing). On the initiator there's not much we can do.

Since no one spoke up on this, I've removed the claim that lifetime
handling is an open issue. The behavior is unspecified. Future
specification can standardize behavior if desired. No one here
(including myself) seems to want to spend effort describing behavior
now.

From internet-drafts@ietf.org  Thu May 24 04:54:55 2012
Return-Path: <internet-drafts@ietf.org>
X-Original-To: abfab@ietfa.amsl.com
Delivered-To: abfab@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3E22C21F850C; Thu, 24 May 2012 04:54:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level: 
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MsczoyaSvBaH; Thu, 24 May 2012 04:54:54 -0700 (PDT)
Received: from ietfa.amsl.com (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D3EFA21F846F; Thu, 24 May 2012 04:54:54 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 4.02
Message-ID: <20120524115454.20189.93922.idtracker@ietfa.amsl.com>
Date: Thu, 24 May 2012 04:54:54 -0700
Cc: abfab@ietf.org
Subject: [abfab] I-D Action: draft-ietf-abfab-gss-eap-07.txt
X-BeenThere: abfab@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Application Bridging, Federated Authentication Beyond \(the web\)" <abfab.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/abfab>, <mailto:abfab-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/abfab>
List-Post: <mailto:abfab@ietf.org>
List-Help: <mailto:abfab-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/abfab>, <mailto:abfab-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 May 2012 11:54:55 -0000

A New Internet-Draft is available from the on-line Internet-Drafts director=
ies. This draft is a work item of the Application Bridging for Federated Ac=
cess Beyond web Working Group of the IETF.

	Title           : A GSS-API Mechanism for the Extensible Authentication Pr=
otocol
	Author(s)       : Sam Hartman
                          Josh Howlett
	Filename        : draft-ietf-abfab-gss-eap-07.txt
	Pages           : 40
	Date            : 2012-05-24

   This document defines protocols, procedures, and conventions to be
   employed by peers implementing the Generic Security Service
   Application Program Interface (GSS-API) when using the EAP mechanism.
   Through the GS2 family of mechanisms, these protocols also define how
   Simple Authentication and Security Layer (SASL, RFC 4422)
   applications use the Extensible Authentication Protocol.


A URL for this Internet-Draft is:
http://www.ietf.org/internet-drafts/draft-ietf-abfab-gss-eap-07.txt

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/

This Internet-Draft can be retrieved at:
ftp://ftp.ietf.org/internet-drafts/draft-ietf-abfab-gss-eap-07.txt

The IETF datatracker page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-abfab-gss-eap/


From internet-drafts@ietf.org  Thu May 24 11:07:26 2012
Return-Path: <internet-drafts@ietf.org>
X-Original-To: abfab@ietfa.amsl.com
Delivered-To: abfab@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EA13021F864D; Thu, 24 May 2012 11:07:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level: 
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5gqC1gon9Fpp; Thu, 24 May 2012 11:07:25 -0700 (PDT)
Received: from ietfa.amsl.com (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 15D2221F84C3; Thu, 24 May 2012 11:07:25 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 4.02
Message-ID: <20120524180725.2073.60116.idtracker@ietfa.amsl.com>
Date: Thu, 24 May 2012 11:07:25 -0700
Cc: abfab@ietf.org
Subject: [abfab] I-D Action: draft-ietf-abfab-arch-02.txt
X-BeenThere: abfab@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Application Bridging, Federated Authentication Beyond \(the web\)" <abfab.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/abfab>, <mailto:abfab-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/abfab>
List-Post: <mailto:abfab@ietf.org>
List-Help: <mailto:abfab-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/abfab>, <mailto:abfab-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 May 2012 18:07:26 -0000

A New Internet-Draft is available from the on-line Internet-Drafts director=
ies. This draft is a work item of the Application Bridging for Federated Ac=
cess Beyond web Working Group of the IETF.

	Title           : Application Bridging for Federated Access Beyond Web (AB=
FAB) Architecture
	Author(s)       : Josh Howlett
                          Sam Hartman
                          Hannes Tschofenig
                          Eliot Lear
                          Jim Schaad
	Filename        : draft-ietf-abfab-arch-02.txt
	Pages           : 40
	Date            : 2012-05-24

   Over the last decade a substantial amount of work has occurred in the
   space of federated access management.  Most of this effort has
   focused on two use-cases: network and web-based access.  However, the
   solutions to these use-cases that have been proposed and deployed
   tend to have few common building blocks in common.

   This memo describes an architecture that makes use of extensions to
   the commonly used security mechanisms for both federated and non-
   federated access management, including the Remote Authentication Dial
   In User Service (RADIUS) and the Diameter protocol, the Generic
   Security Service (GSS), the GS2 family, the Extensible Authentication
   Protocol (EAP) and the Security Assertion Markup Language (SAML).
   The architecture addresses the problem of federated access management
   to primarily non-web-based services, in a manner that will scale to
   large numbers of identity providers, relying parties, and
   federations.


A URL for this Internet-Draft is:
http://www.ietf.org/internet-drafts/draft-ietf-abfab-arch-02.txt

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/

This Internet-Draft can be retrieved at:
ftp://ftp.ietf.org/internet-drafts/draft-ietf-abfab-arch-02.txt

The IETF datatracker page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-abfab-arch/


From ietf@augustcellars.com  Thu May 24 11:38:57 2012
Return-Path: <ietf@augustcellars.com>
X-Original-To: abfab@ietfa.amsl.com
Delivered-To: abfab@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 248B411E80AF for <abfab@ietfa.amsl.com>; Thu, 24 May 2012 11:38:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level: 
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[AWL=0.000,  BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id DEVNkPb0AdrL for <abfab@ietfa.amsl.com>; Thu, 24 May 2012 11:38:56 -0700 (PDT)
Received: from smtp2.pacifier.net (smtp2.pacifier.net [64.255.237.172]) by ietfa.amsl.com (Postfix) with ESMTP id 5248911E8076 for <abfab@ietf.org>; Thu, 24 May 2012 11:38:55 -0700 (PDT)
Received: from Tobias (mail.augustcellars.com [50.34.17.238]) (using TLSv1 with cipher AES128-SHA (128/128 bits)) (No client certificate requested) (Authenticated sender: schaad@nwlink.com) by smtp2.pacifier.net (Postfix) with ESMTPSA id 4A50A2CA2B for <abfab@ietf.org>; Thu, 24 May 2012 11:38:55 -0700 (PDT)
From: "Jim Schaad" <ietf@augustcellars.com>
To: <abfab@ietf.org>
References: <20120524180725.2073.60116.idtracker@ietfa.amsl.com>
In-Reply-To: <20120524180725.2073.60116.idtracker@ietfa.amsl.com>
Date: Thu, 24 May 2012 11:37:31 -0700
Message-ID: <037901cd39dc$49eed670$ddcc8350$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 14.0
thread-index: AQEzVjJVYZGHZ61WdloNHW46i+D7IJgNC87g
Content-Language: en-us
Subject: [abfab] FW:  I-D Action: draft-ietf-abfab-arch-02.txt
X-BeenThere: abfab@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Application Bridging, Federated Authentication Beyond \(the web\)" <abfab.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/abfab>, <mailto:abfab-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/abfab>
List-Post: <mailto:abfab@ietf.org>
List-Help: <mailto:abfab-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/abfab>, <mailto:abfab-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 May 2012 18:38:57 -0000

This document update addressed most of the issues that I had previously
raised with the document.

The next round of edits is intended to look at the places where there are
holes in the document.  Please review the document for things that you
believe should be addressed and either mail me, the list or open issues in
the issue tracker about those issues.

Thanks

Jim


> -----Original Message-----
> From: abfab-bounces@ietf.org [mailto:abfab-bounces@ietf.org] On Behalf
> Of internet-drafts@ietf.org
> Sent: Thursday, May 24, 2012 11:07 AM
> To: i-d-announce@ietf.org
> Cc: abfab@ietf.org
> Subject: [abfab] I-D Action: draft-ietf-abfab-arch-02.txt
> 
> 
> A New Internet-Draft is available from the on-line Internet-Drafts
directories.
> This draft is a work item of the Application Bridging for Federated Access
> Beyond web Working Group of the IETF.
> 
> 	Title           : Application Bridging for Federated Access Beyond
Web
> (ABFAB) Architecture
> 	Author(s)       : Josh Howlett
>                           Sam Hartman
>                           Hannes Tschofenig
>                           Eliot Lear
>                           Jim Schaad
> 	Filename        : draft-ietf-abfab-arch-02.txt
> 	Pages           : 40
> 	Date            : 2012-05-24
> 
>    Over the last decade a substantial amount of work has occurred in the
>    space of federated access management.  Most of this effort has
>    focused on two use-cases: network and web-based access.  However, the
>    solutions to these use-cases that have been proposed and deployed
>    tend to have few common building blocks in common.
> 
>    This memo describes an architecture that makes use of extensions to
>    the commonly used security mechanisms for both federated and non-
>    federated access management, including the Remote Authentication Dial
>    In User Service (RADIUS) and the Diameter protocol, the Generic
>    Security Service (GSS), the GS2 family, the Extensible Authentication
>    Protocol (EAP) and the Security Assertion Markup Language (SAML).
>    The architecture addresses the problem of federated access management
>    to primarily non-web-based services, in a manner that will scale to
>    large numbers of identity providers, relying parties, and
>    federations.
> 
> 
> A URL for this Internet-Draft is:
> http://www.ietf.org/internet-drafts/draft-ietf-abfab-arch-02.txt
> 
> Internet-Drafts are also available by anonymous FTP at:
> ftp://ftp.ietf.org/internet-drafts/
> 
> This Internet-Draft can be retrieved at:
> ftp://ftp.ietf.org/internet-drafts/draft-ietf-abfab-arch-02.txt
> 
> The IETF datatracker page for this Internet-Draft is:
> https://datatracker.ietf.org/doc/draft-ietf-abfab-arch/
> 
> _______________________________________________
> abfab mailing list
> abfab@ietf.org
> https://www.ietf.org/mailman/listinfo/abfab


From internet-drafts@ietf.org  Wed May 30 07:49:11 2012
Return-Path: <internet-drafts@ietf.org>
X-Original-To: abfab@ietfa.amsl.com
Delivered-To: abfab@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 14F7621F86A3; Wed, 30 May 2012 07:49:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level: 
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KHbW8rneIzir; Wed, 30 May 2012 07:49:10 -0700 (PDT)
Received: from ietfa.amsl.com (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8149621F8661; Wed, 30 May 2012 07:49:10 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 4.02
Message-ID: <20120530144910.10980.24116.idtracker@ietfa.amsl.com>
Date: Wed, 30 May 2012 07:49:10 -0700
Cc: abfab@ietf.org
Subject: [abfab] I-D Action: draft-ietf-abfab-usecases-03.txt
X-BeenThere: abfab@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Application Bridging, Federated Authentication Beyond \(the web\)" <abfab.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/abfab>, <mailto:abfab-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/abfab>
List-Post: <mailto:abfab@ietf.org>
List-Help: <mailto:abfab-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/abfab>, <mailto:abfab-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 May 2012 14:49:11 -0000

A New Internet-Draft is available from the on-line Internet-Drafts director=
ies. This draft is a work item of the Application Bridging for Federated Ac=
cess Beyond web Working Group of the IETF.

	Title           : Application Bridging for Federated Access Beyond web (AB=
FAB) Use Cases
	Author(s)       : Rhys Smith
	Filename        : draft-ietf-abfab-usecases-03.txt
	Pages           : 15
	Date            : 2012-05-30

   Federated identity is typically associated with Web-based services at
   present, but there is growing interest in its application in non Web-
   based contexts.  The goal of this document is to document a selection
   of the wide variety of these contexts whose user experience could be
   improved through the use of technologies based on the ABFAB
   architecture and specifications.


A URL for this Internet-Draft is:
http://www.ietf.org/internet-drafts/draft-ietf-abfab-usecases-03.txt

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/

This Internet-Draft can be retrieved at:
ftp://ftp.ietf.org/internet-drafts/draft-ietf-abfab-usecases-03.txt

The IETF datatracker page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-abfab-usecases/


From smith@Cardiff.ac.uk  Wed May 30 09:42:00 2012
Return-Path: <smith@Cardiff.ac.uk>
X-Original-To: abfab@ietfa.amsl.com
Delivered-To: abfab@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 909BE21F859A for <abfab@ietfa.amsl.com>; Wed, 30 May 2012 09:42:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.598
X-Spam-Level: 
X-Spam-Status: No, score=-6.598 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5QyVCnfVo5+8 for <abfab@ietfa.amsl.com>; Wed, 30 May 2012 09:41:59 -0700 (PDT)
Received: from smtpout2.cf.ac.uk (smtpout2.cf.ac.uk [131.251.137.139]) by ietfa.amsl.com (Postfix) with ESMTP id D636621F859F for <abfab@ietf.org>; Wed, 30 May 2012 09:41:56 -0700 (PDT)
Received: from smtpauth.cf.ac.uk ([131.251.248.19]) by smtpout2.cf.ac.uk with esmtp (Exim 4.76) (envelope-from <smith@Cardiff.ac.uk>) id 1SZly7-0001Sl-3J for abfab@ietf.org; Wed, 30 May 2012 17:41:55 +0100
Received: from [141.170.71.135] (helo=[192.168.1.100]) by smtpauth.cf.ac.uk with esmtpsa (TLSv1:AES128-SHA:128) (Exim 4.69) (envelope-from <scmros@smtpauth.cf.ac.uk>) id 1SZly6-0006Nr-Pi for abfab@ietf.org; Wed, 30 May 2012 17:41:55 +0100
From: Rhys Smith <smith@cardiff.ac.uk>
Content-Type: multipart/alternative; boundary="Apple-Mail=_CBE16433-FE27-488F-AC47-2D9FA810FB18"
Date: Wed, 30 May 2012 16:57:27 +0100
Message-Id: <8B77DF99-4E1B-4700-B7ED-A97E26DDEF0F@cardiff.ac.uk>
To: abfab@ietf.org
Mime-Version: 1.0 (Apple Message framework v1278)
X-Mailer: Apple Mail (2.1278)
Sender: smith@Cardiff.ac.uk
X-Virus-Scanned: Cardiff University Virus Scanner
X-Virus-Scanned: Cardiff University Virus Scanner
Subject: [abfab] New use case draft
X-BeenThere: abfab@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Application Bridging, Federated Authentication Beyond \(the web\)" <abfab.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/abfab>, <mailto:abfab-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/abfab>
List-Post: <mailto:abfab@ietf.org>
List-Help: <mailto:abfab-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/abfab>, <mailto:abfab-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 May 2012 16:42:00 -0000

--Apple-Mail=_CBE16433-FE27-488F-AC47-2D9FA810FB18
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain;
	charset=us-ascii

Hi all,

New ABFAB use cases draft (-03) is at =
http://www.ietf.org/id/draft-ietf-abfab-usecases-03.txt.

Main changes are:
   1.  Changes to Cloud section.
   2.  Added PLASMA section.
   3.  Added Smart Objects section.
   4.  Removed Terminology section as terminology is introduced =
throughout the doc.
   5.  Minor changes in wording through the draft.

As discussed in Paris, this should now be getting pretty close to being =
ready to last call, hopefully. So please - any comments, however big or =
small, welcome...

Best,
R.
--
Dr Rhys Smith
Identity, Access, and Middleware Specialist
Cardiff University & Janet - the UK's education and research network

email: smith@cardiff.ac.uk / rhys.smith@ja.net
GPG: 0xDE2F024C


--Apple-Mail=_CBE16433-FE27-488F-AC47-2D9FA810FB18
Content-Transfer-Encoding: quoted-printable
Content-Type: text/html;
	charset=us-ascii

<html><head></head><body style=3D"word-wrap: break-word; =
-webkit-nbsp-mode: space; -webkit-line-break: after-white-space; ">Hi =
all,<div><br></div><div>New ABFAB use cases draft (-03) is at&nbsp;<a =
href=3D"http://www.ietf.org/id/draft-ietf-abfab-usecases-03.txt">http://ww=
w.ietf.org/id/draft-ietf-abfab-usecases-03.txt</a>.</div><div><br></div><d=
iv>Main changes are:</div><div><div>&nbsp; &nbsp;1. &nbsp;Changes to =
Cloud section.</div><div>&nbsp; &nbsp;2. &nbsp;Added PLASMA =
section.</div><div>&nbsp; &nbsp;3. &nbsp;Added Smart Objects =
section.</div><div>&nbsp; &nbsp;4. &nbsp;Removed Terminology section as =
terminology is introduced&nbsp;throughout the doc.</div><div>&nbsp; =
&nbsp;5. &nbsp;Minor changes in wording through the =
draft.</div></div><div><br></div><div>As discussed in Paris, this should =
now be getting pretty close to being ready to last call, hopefully. So =
please - any comments, however big or small, =
welcome...</div><div><br></div><div>Best,</div><div>R.<br><div =
apple-content-edited=3D"true">
<div style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-style: normal; font-variant: normal; font-weight: =
normal; letter-spacing: normal; line-height: normal; orphans: 2; =
text-align: -webkit-auto; text-indent: 0px; text-transform: none; =
white-space: normal; widows: 2; word-spacing: 0px; =
-webkit-border-horizontal-spacing: 0px; -webkit-border-vertical-spacing: =
0px; -webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; font-size: medium; "><div =
style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-style: normal; font-variant: normal; font-weight: =
normal; letter-spacing: normal; line-height: normal; orphans: 2; =
text-align: -webkit-auto; text-indent: 0px; text-transform: none; =
white-space: normal; widows: 2; word-spacing: 0px; =
-webkit-border-horizontal-spacing: 0px; -webkit-border-vertical-spacing: =
0px; -webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; font-size: medium; "><div =
style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; "><span class=3D"Apple-style-span" =
style=3D"border-collapse: separate; color: rgb(0, 0, 0); font-family: =
Helvetica; font-style: normal; font-variant: normal; font-weight: =
normal; letter-spacing: normal; line-height: normal; orphans: 2; =
text-align: -webkit-auto; text-indent: 0px; text-transform: none; =
white-space: normal; widows: 2; word-spacing: 0px; =
-webkit-border-horizontal-spacing: 0px; -webkit-border-vertical-spacing: =
0px; -webkit-text-decorations-in-effect: none; -webkit-text-size-adjust: =
auto; -webkit-text-stroke-width: 0px; font-size: medium; "><div =
style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; ">--<br>Dr Rhys Smith</div><div =
style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; =
-webkit-line-break: after-white-space; ">Identity, Access, and =
Middleware Specialist<br>Cardiff University &amp; Janet -&nbsp;the UK's =
education and research network</div><div style=3D"word-wrap: break-word; =
-webkit-nbsp-mode: space; -webkit-line-break: after-white-space; =
"><br>email:&nbsp;<a =
href=3D"mailto:smith@cardiff.ac.uk">smith@cardiff.ac.uk</a>&nbsp;/&nbsp;<a=
 href=3D"mailto:rhys.smith@ja.net">rhys.smith@ja.net</a><br>GPG: =
0xDE2F024C<br></div></span></div></span></div></span></div>
</div>
<br></div></body></html>=

--Apple-Mail=_CBE16433-FE27-488F-AC47-2D9FA810FB18--
