Time/Place

This meeting is a hybrid teleconference and IRC chat. Anyone is welcome to join...here's the info:

Attendees

Agenda

  1. XACML design review 
    1. XACML attributes
    2. XACML authorization delegate
    3. XACML Authorization Module proposed CND
  2. IIIF and F4 - interest?
  3. Cancel next week's Committer call?
  4. ...

Minutes

Greg Jansen started with an overview of the XACML design.  Stubs are complete and other developers can work on implementing individual policies and finder modules.

Unknown User (bbpennel) walked us through the CND.

  • Michael Durbin: Is there a reason not to make them be datastreams? (image mixin's done seem appropriate)
  • Unknown User (escowles@ucsd.edu): Can locks and versioning apply?  (yes, and that's probably good.)
  • Greg Jansen: If they're not datastreams, can we still use the stuff we built for datastreams?  Wouldn't it be simpler if they were datastreams?
  • Decided to go with the current implementation, and change to a datastream implementation if there is an issue.
  • Eric James pointed out that the inclusion of the XACML should allow for references to allow reuse.

How should these CND changes be applied?

  • Programatically when the jar file is included?
  • Configured as part of a custom-built jar.

Greg Jansen walked us through the fcrepo-module-auth-xacml project. (org.fcrepo.auth.xaclml.XACMLAuthorizationDelegate)

Scott Prater asked about support for an external XACML PDP.  Greg Jansen said it might be best to write another AuthorizationDelegate, but might be able to reuse Attribute Finders.

Scott Prater suggested a rename to imply that it's a "local" PDP.  Greg Jansen and Andrew Woods suggested documentation and description might be sufficient to make the scope clear.

Andrew Woods suggested we might assign outstanding tickets.  We proceeded to order and assign these tickets in the backlog with the hope they'd be done before the in-person meeting where any issues can be hashed out.

We decided to retain the committer call next week. (LIVE FROM ASHEVILLE!)

Actions