OASIS eXtensible Access Control Markup Language (XACML) TC

 View Only

Minutes 11 December 2025 TC Meeting

  • 1.  Minutes 11 December 2025 TC Meeting

    Posted 2 days ago
    Time: 2:30 PM EST
    Zoom Link: http://tinyurl.com/48n4yrzs
    Meeting ID: 850 9753 8468

    I. Roll Call & Minutes
    Voting members
    Bill Parducci (Chair)
    Steven Legg
    Voting Members: 2 of 3 (100% - quorum)

    Approve Minutes 13 November TC meeting
    minutes approved

    II. Administrivia
    Brief discussion on recent changes in Oasis.

    III. Issues
    Issues discussed:
    - Indeterminate processing (#66)
    DECISION: Processing order up to implementation, NOT mandated

    - Conflicting variable identifier scope (#65)
    Reviewed.

    - Argument Order of functions (#64)
    Reviewed XPATH references updated.

    - Simplify attribute-designator and attribute-selector functions (#49)
    DECISION: Using NamedAttributeDesignatorType

    - Bag size shortcuts (#23)
    Reviewed.

    - Aggregate functions (#22)
    PROPOSAL: All time is decided in local time, requiring PEP to provide Local Request
    Time in request.

    - Combiner parameters (#14)
    Reviewed.

    - Ternary conditional operator (#13)
    Reveiwed.

    - Global variables (#12)
    Discussion on versioning of variables.
    DECISION: Keep policy version only. MUST use pattern/matching in (#41, #43)

    - AttributesReference (#62)
    Proposal: Use `^_?[A-Za-z0-9]+([-_.]+[A-Za-z0-9]+)*$`
    Discussion: Explore variable ID Rule ID, ID parameter in a reference for consistency.

    JSON <> XML <> YAML conversion
    Ongoing conversation of the scope and details of various conversion topics, including
    Description, DecisionType, etc.

    One option to address this is to convert these elements in (XML v3.0) to
    attributes. No agreement on this option. Description is the uniqe case, due to
    formatting requirements.

    There was general consensus that the ACAL specification focuses on a single direction
    for conversion, while being aware that bidirectional cross language conversion will be
    likely (and should be a consideration in design decisions).

    An issue will be created on gitHub to discuss this further.

    Next meeting will be on 15 January 2026 (5 weeks)

    meeting adjourned.