← Prev in month ← Prev in thread

Possible typos in XACML 3.0 Core specification (SubjectCategory, PolicyIdentifierList)

From
Cyril DANGERVILLE <>
Date
2016-05-10T00:13:00+00:00
ID
CA++gBtG+Z+XOm_HCS=
Thread
Possible typos in XACML 3.0 Core specification (SubjectCategory, PolicyIdentifierList)
Hello,
I just want to report two possible issues in the text of the XACML 3.0 Core specification. I suspect this may have been raised before but could not find any track of it, so I just want to make sure.

1) The mention of 'SubjectCategory' attribute in section 8.1:

http://docs.oasis-open.org/xacml/3.0/xacml-3.0-core-spec-os-en.html#_Toc325047202

This attribute does not exist anymore in XACML 3.0 model, so I assume it should be removed from the list of extensible XML attribute types.

2) The definition of an applicable policy to be returned in <PolicyIdentifierList>, section 5.48:

http://docs.oasis-open.org/xacml/3.0/xacml-3.0-core-spec-os-en.html#_Toc325047153

It says: "all policies
where both the <Target> matched and the <Condition> evaluated to true...". Since <Condition> is only in a <Rule>, shouldn't the text say only this instead "all policies where the <Target> matched" (period) ?

Thanks for any clarification if I'm wrong.

Regards,

Cyril

--

Cyril Dangerville, CISSP

Thales
← Prev in month ← Prev in thread