draft-ietf-trade-iotp-v1-errata-01.txt   rfc3504.txt 
Internet DRAFT Donald E. Eastlake 3rd Network Working Group D. Eastlake
UPDATES RFC 2801 Motorola Request for Comments: 3504 Motorola
Expires November 2002 May 2002 Category: Informational March 2003
Internet Open Trading Protocol (IOTP) Internet Open Trading Protocol (IOTP)
Version 1, Errata Version 1, Errata
<draft-ietf-trade-iotp-v1-errata-01.txt>
Status of this Memo Status of this Memo
Distribution of this document is unlimited. Comments should be sent This memo provides information for the Internet community. It does
to the authors or the IETF TRADE working group not specify an Internet standard of any kind. Distribution of this
<ietf-trade@lists.elistx.com>. memo is unlimited.
This document is an Internet-Draft and is in full conformance with
all provisions of Section 10 of RFC 2026. Internet-Drafts are
working documents of the Internet Engineering Task Force (IETF), its
areas, and its working groups. Note that other groups may also
distribute working documents as Internet-Drafts.
Internet-Drafts are draft documents valid for a maximum of six months
and may be updated, replaced, or obsoleted by other documents at any
time. It is inappropriate to use Internet- Drafts as reference
material or to cite them other than as "work in progress."
The list of current Internet-Drafts can be accessed at
http://www.ietf.org/ietf/1id-abstracts.txt
The list of Internet-Draft Shadow Directories can be accessed at
http://www.ietf.org/shadow.html.
Copyright Notice Copyright Notice
Copyright (C) 2002, The Internet Society. All Rights Reserved. Copyright (C) The Internet Society (2003). All Rights Reserved.
Abstract Abstract
Since the publication of the RFCs specifying Version 1.0 of the Since the publication of the RFCs specifying Version 1.0 of the
Internet Trading Protocol, some errors have been noted. This Internet Open Trading Protocol (IOTP), some errors have been noted.
informational document lists these errors and provides corrections This informational document lists these errors and provides
for them. corrections for them.
Acknowledgements
Thanks to the following people for reporting or responding to reports
of these errata:
Harald Barrera Dubois, Yoshiaki Kawatsura, Chun Ouyang
Table of Contents Table of Contents
Status of this Memo........................................1 1. Introduction.................................................... 2
Copyright Notice...........................................1 2. DTD Errata...................................................... 2
Abstract...................................................1 2.1 PackagedContent Element..................................... 2
2.2 The Element called Attribute................................ 3
Acknowledgements...........................................2 3. Other Errata.................................................... 3
Table of Contents..........................................2
1. Introduction............................................3
2. DTD Errata..............................................3
2.1 PackagedContent Element................................3
2.2 The Element called Attribute...........................3
3. Other Errata............................................4
3.1 Re: Combining Authentication Transactions with other 3.1 Re: Combining Authentication Transactions with other
Transactions4 Transactions................................................ 3
3.2 Type attribute of Element called Attribute.............4 3.2 Type attribute of Element called Attribute.................. 3
4. Security Considerations.................................5 4. Security Considerations......................................... 4
5. References...................................................... 4
References.................................................6 6. Acknowledgements................................................ 4
Author's Address...........................................6 7. Author's Address................................................ 5
8. Full Copyright Statement........................................ 6
Full Copyright Statement...................................7
File name and Expiration...................................7
1. Introduction 1. Introduction
The Internet Open Trading Protcol (IOTP), Version 1.0, is specified The Internet Open Trading Protocol (IOTP), Version 1.0, is specified
in [RFC 2801, 2802, 2803]. It provides a payment system independent in [RFC 2801, 2802, 2803]. It provides a payment system independent
framework for Internet commerce oriented to consumer to business framework for Internet commerce oriented to consumer to business
transactions. It provides mechaism for different portions of the the transactions. It provides mechanism for different portions of the
business function, such as fullfilment or payment handling, to be business function, such as fulfillment or payment handling, to be
distributed or outsourced. It does not require a prior relationship distributed or outsourced. It does not require a prior relationship
between the consumer and business. between the consumer and business.
Several errors have been noted in the IOTP v1.0 specification, Several errors have been noted in the IOTP v1.0 specification,
particularly RFC 2801, which was the largest RFC even issued. These particularly RFC 2801, which was the largest RFC ever issued. These
are listed, with their fix, in this document. are listed, with their fix, in this document.
2. DTD Errata 2. DTD Errata
2.1 PackagedContent Element 2.1 PackagedContent Element
Attribute types are swapped. Attribute types are swapped.
OLD/INCORRECT: OLD/INCORRECT:
!ELEMENT PackagedContent (#PCDATA) > !ELEMENT PackagedContent (#PCDATA) >
skipping to change at page 4, line 19 skipping to change at page 3, line 30
critical ( true | false ) #REQUIRED critical ( true | false ) #REQUIRED
> >
3. Other Errata 3. Other Errata
3.1 Re: Combining Authentication Transactions with other Transactions 3.1 Re: Combining Authentication Transactions with other Transactions
Section 9.1.13. page 234, restarted->continued: Section 9.1.13. page 234, restarted->continued:
OLD/INCORRECT: OLD/INCORRECT:
if the Authentication transaction is successful, then the if the Authentication transaction is successful, then the original
original IOTP Transaction is restarted IOTP Transaction is restarted
NEW/CORRECT: NEW/CORRECT:
if the Authentication transaction is successful, then the if the Authentication transaction is successful, then the original
original IOTP Transaction is continued IOTP Transaction is continued
3.2 Type attribute of Element called Attribute 3.2 Type attribute of Element called Attribute
Section 7.19.1, Page 150, insufficient list of signature types: Section 7.19.1, Page 150, insufficient list of signature types:
OLD/INCORRECT: OLD/INCORRECT:
There must be one and only one Attribute Element that contains There must be one and only one Attribute Element that contains a
a Type attribute with a value of IOTP Signature Type and with Type attribute with a value of IOTP Signature Type and with
content set to either: OfferResponse, PaymentResponse, content set to either: OfferResponse, PaymentResponse,
DeliveryResponse, AuthenticationRequest, DeliveryResponse, AuthenticationRequest, AuthenticationResponse,
AuthenticationResponse, PingReq or PingResponse; depending on PingReq or PingResponse; depending on the type of the signature.
the type of the signature.
NEW/CORRECT: NEW/CORRECT:
There must be one and only one Attribute Element that contains There must be one and only one Attribute Element that contains a
a Type attribute with a value of IOTP Signature Type and with Type attribute with a value of IOTP Signature Type and with
content set to either: OfferResponse, PaymentResponse, content set to either: OfferResponse, PaymentResponse,
DeliveryResponse, AuthenticationRequest, DeliveryResponse, AuthenticationRequest, AuthenticationResponse,
AuthenticationResponse, PingReq, PingResponse, PingReq, PingResponse, AuthenticationStatus, InquiryRequest, or
AuthenticationStatus, InquiryRequest, or InquiryResponse; InquiryResponse; depending on the type of the signature.
depending on the type of the signature.
AND a similar change exending the list of values in Section 12.1, AND a similar change extending the list of values in Section 12.1,
Page 262. Page 262.
And at Section 6.1.2, Page 82, add the following: And at Section 6.1.2, Page 82, add the following:
AuthenticationStatus any role AuthenticationStatus any role
InquiryRequest any role InquiryRequest any role
InquiryResponse any role InquiryResponse any role
4. Security Considerations 4. Security Considerations
The errata listed herein are not particularly security related. Never The errata listed herein are not particularly security related.
the less, incorrect implementations due to uncorrected errors in the Never the less, incorrect implementations due to uncorrected errors
specification may compromise security. in the specification may compromise security.
References 5. References
[RFC 2801] - "Internet Open Trading Protocol - IOTP Version 1.0", D. [RFC 2801] Burdett, D., "Internet Open Trading Protocol - IOTP
Burdett, April 2000. Version 1.0", RFC 2801, April 2000.
[RFC 2802] - "Digital Signatures for the v1.0 Internet Open Trading [RFC 2802] Davidson, K. and Y. Kawatsura, "Digital Signatures for the
Protocol (IOTP)", K. Davidson, Y. Kawatsura, April 2000. v1.0 Internet Open Trading Protocol (IOTP)", RFC 2802,
April 2000.
[RFC 2803] - "Digest Values for DOM (DOMHASH)", H. Maruyama, K. [RFC 2803] Maruyama, H., Tamura, K. and N. Uramoto, "Digest Values
Tamura, N. Uramoto, April 2000. for DOM (DOMHASH)", RFC 2803, April 2000.
Author's Address 6. Acknowledgements
Donald E. Eastlake 3rd Thanks to the following people for reporting or responding to reports
Motorola of these errata:
155 Beaver Street
Milford, MA 01757 USA
Phone: +1-508-851-8280 (w) Harald Barrera Dubois, Yoshiaki Kawatsura, Chun Ouyang
+1-508-634-2066 (h)
Email: Donald.Eastlake@motorola.com
Full Copyright Statement 7. Author's Address
Copyright (c) 2002 The Internet Society, All Rights Reserved. Donald E. Eastlake 3rd
Motorola
155 Beaver Street
Milford, MA 01757 USA
Phone: +1-508-851-8280 (w)
+1-508-634-2066 (h)
EMail: Donald.Eastlake@motorola.com
8. Full Copyright Statement
Copyright (C) The Internet Society (2003). All Rights Reserved.
This document and translations of it may be copied and furnished to This document and translations of it may be copied and furnished to
others, and derivative works that comment on or otherwise explain it others, and derivative works that comment on or otherwise explain it
or assist in its implementation may be prepared, copied, published or assist in its implementation may be prepared, copied, published
and distributed, in whole or in part, without restriction of any and distributed, in whole or in part, without restriction of any
kind, provided that the above copyright notice and this paragraph are kind, provided that the above copyright notice and this paragraph are
included on all such copies and derivative works. However, this included on all such copies and derivative works. However, this
document itself may not be modified in any way, such as by removing document itself may not be modified in any way, such as by removing
the copyright notice or references to the Internet Society or other the copyright notice or references to the Internet Society or other
Internet organizations, except as needed for the purpose of Internet organizations, except as needed for the purpose of
skipping to change at page 7, line 33 skipping to change at page 6, line 33
The limited permissions granted above are perpetual and will not be The limited permissions granted above are perpetual and will not be
revoked by the Internet Society or its successors or assigns. revoked by the Internet Society or its successors or assigns.
This document and the information contained herein is provided on an This document and the information contained herein is provided on an
"AS IS" basis and THE INTERNET SOCIETY AND THE INTERNET ENGINEERING "AS IS" basis and THE INTERNET SOCIETY AND THE INTERNET ENGINEERING
TASK FORCE DISCLAIMS ALL WARRANTIES, EXPRESS OR IMPLIED, INCLUDING TASK FORCE DISCLAIMS ALL WARRANTIES, EXPRESS OR IMPLIED, INCLUDING
BUT NOT LIMITED TO ANY WARRANTY THAT THE USE OF THE INFORMATION BUT NOT LIMITED TO ANY WARRANTY THAT THE USE OF THE INFORMATION
HEREIN WILL NOT INFRINGE ANY RIGHTS OR ANY IMPLIED WARRANTIES OF HEREIN WILL NOT INFRINGE ANY RIGHTS OR ANY IMPLIED WARRANTIES OF
MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE. MERCHANTABILITY OR FITNESS FOR A PARTICULAR PURPOSE.
File name and Expiration Acknowledgement
This file is draft-ietf-iotp-v1-errata-01.txt.
It expires November 2002. Funding for the RFC Editor function is currently provided by the
Internet Society.
 End of changes. 29 change blocks. 
105 lines changed or deleted 75 lines changed or added

This html diff was produced by rfcdiff 1.41. The latest version is available from http://tools.ietf.org/tools/rfcdiff/