Hi, all
-v02 is available now (https://www.ietf.org/archive/id/draft-ma-opsawg-ucl-acl-02.txt). Based on the valuable comments from Joe (thanks a lot!), the main updates are following: · Add enumeration values for typedef weekday · Provide examples in sec.5.1.1 to illustrate the use of the period and recurrence formats; · Provide examples in Appendix A to show how both the controller and PEP could be configured using group or address based ACL · Other editorial updates for readability Any other further comments and suggestions are welcome. Thanks. Best Regards, Qiufang -----Original Message----- From: [email protected] [mailto:[email protected]] Sent: Friday, March 10, 2023 2:46 PM To: Daniel King <[email protected]>; Mohamed Boucadair <[email protected]>; Qin Wu <[email protected]>; Qin Wu <[email protected]>; maqiufang (A) <[email protected]> Subject: New Version Notification for draft-ma-opsawg-ucl-acl-02.txt A new version of I-D, draft-ma-opsawg-ucl-acl-02.txt has been successfully submitted by Qiufang Ma and posted to the IETF repository. Name: draft-ma-opsawg-ucl-acl Revision: 02 Title: A Policy-based Network Access Control Document date: 2023-03-10 Group: Individual Submission Pages: 42 URL: https://www.ietf.org/archive/id/draft-ma-opsawg-ucl-acl-02.txt Status: https://datatracker.ietf.org/doc/draft-ma-opsawg-ucl-acl/ Htmlized: https://datatracker.ietf.org/doc/html/draft-ma-opsawg-ucl-acl Diff: https://author-tools.ietf.org/iddiff?url2=draft-ma-opsawg-ucl-acl-02 Abstract: This document defines a YANG module for policy-based network access control, which provides consistent and efficient enforcement of network access control policies based on group identity. Moreover, this document defines a mechanism to ease the maintenance of the mapping between a user-group identifier and a set of IP/MAC addresses to enforce policy-based network access control. Also, the document defines a common schedule YANG module which is designed to be applicable for policy activation based on date and time conditions. In addition, the document defines a RADIUS attribute that is used to communicate the user group identifier as part of identification and authorization information. The IETF Secretariat
_______________________________________________ OPSAWG mailing list [email protected] https://www.ietf.org/mailman/listinfo/opsawg
