[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
RE: Issue 196: User-Name Attribute
- To: "Bernard Aboba" <bernard_aboba@hotmail.com>, <radiusext@ops.ietf.org>
- Subject: RE: Issue 196: User-Name Attribute
- From: "Glen Zorn \(gwz\)" <gwz@cisco.com>
- Date: Sat, 3 Jun 2006 21:36:00 -0700
- Authentication-results: sj-dkim-1.cisco.com; header.From=gwz@cisco.com; dkim=pass ( sig from cisco.com verified; );
- Dkim-signature: a=rsa-sha1; q=dns; l=1639; t=1149395762; x=1150259762; c=relaxed/simple; s=sjdkim1001; h=From:Subject; d=cisco.com; i=gwz@cisco.com; z=From:=22Glen=20Zorn=20\(gwz\)=22=20<gwz@cisco.com> |Subject:RE=3A=20Issue=20196=3A=20=20User-Name=20Attribute; X=v=3Dcisco.com=3B=20h=3DBWsiToKE+hrHMN1SQmOkCEpNmy0=3D; b=Pq8yFAmi9IYlSYJ12JvMLFoBERcGIlSZPC+ozF5U/HQOdiHxVLtRNq/VaezVMF0XVbqVLs/m dfzv0QRI4rjPJuCa5Rv2WSte3eZgic7R/+w4gL8kx9ueO0SzEG0geGJh;
Bernard Aboba <> supposedly scribbled:
> Issue 196: User-Name Attribute
> Submitter names: Cristina Ruiz
> Submitter email address: cristina.ruiz@ericsson.com Date first
> submitted: June 2, 2006
> Reference: http://ops.ietf.org/lists/radiusext/2006/msg00527.html
> Document: DIGEST-09
> Comment type: 'T'echnical
> Priority: S
> Section: 5, 6
> Rationale/Explanation of issue:
>
> The User-Name attribute is mandatory in the RADIUS Access Request as
> indicated in the table of attributes (Section 5). But in the initial
> HTTP GET method, the user-name is not received, and in the example
> (Section 6) nothing is sent in the User-name attribute in the B->C
> comunication. What does the RADIUS client include in the User-Name
> attribute in this case? And what shall the RADIUS Server do when this
> dummy user-name is received?
Who cares? I'm not being facetious: if the value is unknown by the client & unused by the server, why does it matter what the value is?
>
> I think the "client nonce generation mode" removed from draft 07 was
> usefull to avoid inventing a user name in this HTTP case (where the
> nonce generation does not depend on the user and this is not received
> in the initial request). Why was it removed?
The answer would be known if the questioner had been paying attention during the lengthy discussion of this issue; otherwise, it could be found in the archives. I'm not sure why this qualifies as an "issue".
~gwz
Why is it that most of the world's problems can't be solved by simply
listening to John Coltrane? -- Henry Gabriel
--
to unsubscribe send a message to radiusext-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://psg.com/lists/radiusext/>