← Prev in month
← Prev in thread
Possible typos in XACML 3.0 Core specification (SubjectCategory, PolicyIdentifierList)
Hello, I just want to report two possible issues in the text of the XACML 3.0 Core specification. I suspect this may have been raised before but could not find any track of it, so I just want to make sure. 1) The mention of 'SubjectCategory' attribute in section 8.1: http://docs.oasis-open.org/xacml/3.0/xacml-3.0-core-spec-os-en.html#_Toc325047202 This attribute does not exist anymore in XACML 3.0 model, so I assume it should be removed from the list of extensible XML attribute types. 2) The definition of an applicable policy to be returned in <PolicyIdentifierList>, section 5.48: http://docs.oasis-open.org/xacml/3.0/xacml-3.0-core-spec-os-en.html#_Toc325047153 It says: "all policies where both the <Target> matched and the <Condition> evaluated to true...". Since <Condition> is only in a <Rule>, shouldn't the text say only this instead "all policies where the <Target> matched" (period) ? Thanks for any clarification if I'm wrong. Regards, Cyril -- Cyril Dangerville, CISSP Thales
← Prev in month
← Prev in thread