[Ace] ace-coap-est: unclear definition of /.well-known/est URI

Esko Dijk <esko.dijk@iotconsultancy.nl> Wed, 12 September 2018 15:10 UTC

Return-Path: <esko.dijk@iotconsultancy.nl>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 18B9E12F1A2 for <ace@ietfa.amsl.com>; Wed, 12 Sep 2018 08:10:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, T_DKIMWL_WL_MED=-0.01, T_SPF_PERMERROR=0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=iotconsultancynl.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ms3kvxYZNc29 for <ace@ietfa.amsl.com>; Wed, 12 Sep 2018 08:10:22 -0700 (PDT)
Received: from EUR01-HE1-obe.outbound.protection.outlook.com (mail-he1eur01on0105.outbound.protection.outlook.com [104.47.0.105]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 23770130DC6 for <ace@ietf.org>; Wed, 12 Sep 2018 08:10:22 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=iotconsultancynl.onmicrosoft.com; s=selector1-iotconsultancy-nl; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=YLxRlL0YWeRLCdG582HEo04Mgi3H9JLGmR6Bs5aVKS0=; b=X+Bd2tzPoI0i6uwWxDVw2MWSW/Dd6eZmVlCKJd/xYzF14aZ4xhllBi5ytzjrWWKQ+qMQf8n4hQ2UIyXe1IvLTyf4dPvjt+K7/Kft6+bMxCqumB65TP7OaZxNyRgEuaQZSyGdktReoXyZIga5SPX6e563mH0ewmlOEbZljl/mDzo=
Received: from DB6P190MB0054.EURP190.PROD.OUTLOOK.COM (10.172.229.12) by DB6P190MB0568.EURP190.PROD.OUTLOOK.COM (10.175.241.161) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1122.15; Wed, 12 Sep 2018 15:10:18 +0000
Received: from DB6P190MB0054.EURP190.PROD.OUTLOOK.COM ([fe80::74a4:5356:e25e:c0b1]) by DB6P190MB0054.EURP190.PROD.OUTLOOK.COM ([fe80::74a4:5356:e25e:c0b1%4]) with mapi id 15.20.1122.020; Wed, 12 Sep 2018 15:10:18 +0000
From: Esko Dijk <esko.dijk@iotconsultancy.nl>
To: "ace@ietf.org" <ace@ietf.org>
Thread-Topic: ace-coap-est: unclear definition of /.well-known/est URI
Thread-Index: AdRKqeFCUK1AzigFR5qvzUaQ2+R0Gg==
Date: Wed, 12 Sep 2018 15:10:18 +0000
Message-ID: <DB6P190MB005479015E3F02D4028541A9FD1B0@DB6P190MB0054.EURP190.PROD.OUTLOOK.COM>
Accept-Language: en-US, nl-NL
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=esko.dijk@iotconsultancy.nl;
x-originating-ip: [85.147.165.150]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; DB6P190MB0568; 6:jaHocmX8PE2DsN7LM3m7zwixfIrn6GPyln/I2UslvgHe1wHA59dXEJZKjV8ZigjzJfDsNjVBkTW5UGbT9VtXDh7ZD68THDBVPcSVBmOCEVraE/Sunf1fzcRLvZpKNC57/d9WtprB9dIKR7Knpe+EiSZi28rS8244galbCB8jwix067hBprHKC2zZ3QHbMhF4mZaTAO83p4WWbvqPMCCt//WRJKmPPAzPFoMFinC1IHSh/EDs9CpmUVTlN6Zd6VNJRN5SFuXLWiR8ILJ7WInZY1Y1s6mgtwpLaZEc7Q5tuNiz3uMFml8tqOpyyHQ++mTadsJsw8a2Usam+VUu58qWuUX5UaMqAuI02IMk/ayUNaP1I7AQZEofRYsIqCHCE4AC1VVhFWON3BpQ8+pwohuIxXAAichRgR8kAzL6HUeoXVg4xR+QhYUhHX9Y1s9u7sS+NufMhn4+UuZsVbL0DI5ojA==; 5:fk63c2rSN3AWlQL88Qw+s2vwcV/tbzC7dRqlbcgK7qPs0w47CHNMXM3Co7RZmCkRQpYQhNp3CMzpKPSQyDR9SoRfFzr0+gEDPkB5RLZfSP0Fsd345oX3n8K86cwx/eCEfBZgzwwkvZ0X/+XxaefAEmWXPTbNebZzLIujm4PP3zk=; 7:upkNsf+RfgHAUkq6qlKbOFzGHacGNTV3ReZYV5pDkFbYMCAw66pXCvImSCA/qwPVnXV4qlsI9nAO3tT+INkl4nWC+3+BUtLvvyA1x5yFXxHAFOEhTdYYJSOomHNPony4dO1B7AEcooVTAYzTBlHOaLWqEw0fFm83u96VMMzQ8EEBadurxiDl8v7Cq+T8gTYq9gn22RPYfjYu8T3Jc7R2WfG9YMZGHG8zf3JM+ekUR0vUiYXbmkiDtn6LuyEjQf0s
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-ms-office365-filtering-correlation-id: a7049bf1-e8d5-4dbd-b1df-08d618c1da20
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(7020095)(4652040)(7021125)(8989137)(4534165)(7022125)(4603075)(4627221)(201702281549075)(8990107)(7048125)(7024125)(7027125)(7028125)(7023125)(5600074)(711020)(2017052603328)(7153060)(7193020); SRVR:DB6P190MB0568;
x-ms-traffictypediagnostic: DB6P190MB0568:
x-microsoft-antispam-prvs: <DB6P190MB05680BA57502F71644FA3C98FD1B0@DB6P190MB0568.EURP190.PROD.OUTLOOK.COM>
x-exchange-antispam-report-test: UriScan:(28532068793085)(21748063052155)(79290750141951);
x-ms-exchange-senderadcheck: 1
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6040522)(2401047)(8121501046)(5005006)(3002001)(93006095)(93001095)(3231311)(944501410)(52105095)(10201501046)(149027)(150027)(6041310)(20161123564045)(2016111802025)(20161123562045)(20161123558120)(20161123560045)(6043046)(201708071742011)(7699050); SRVR:DB6P190MB0568; BCL:0; PCL:0; RULEID:; SRVR:DB6P190MB0568;
x-forefront-prvs: 07935ACF08
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(396003)(346002)(39830400003)(366004)(136003)(376002)(199004)(189003)(86362001)(3846002)(6916009)(105586002)(74316002)(26005)(8676002)(74482002)(33656002)(14454004)(7736002)(478600001)(68736007)(25786009)(6506007)(97736004)(486006)(476003)(81156014)(81166006)(1730700003)(8936002)(186003)(102836004)(14444005)(256004)(66066001)(316002)(6306002)(9686003)(5630700001)(53936002)(6436002)(5660300001)(2900100001)(54896002)(44832011)(6116002)(2906002)(5640700003)(5250100002)(790700001)(2501003)(99286004)(7696005)(2351001)(55016002)(106356001); DIR:OUT; SFP:1102; SCL:1; SRVR:DB6P190MB0568; H:DB6P190MB0054.EURP190.PROD.OUTLOOK.COM; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: iotconsultancy.nl does not designate permitted sender hosts)
x-microsoft-antispam-message-info: EKBkBi8Mwz70tun94Ppk3ZWsEPC2dhkE94xmvBybiec4gjNDvp1feEwfcLX6fxLs6fOo7w/7ASHsDOX/BbzYJY02mf3BX0uZIDumOpJtSG+XQ9chNKoC7gaV+EUE2I+3jrEx9Ste6FTDVE/Oqn3vbFahjpxnu0A/OpnTFFIzIQBF4C6B4FIzICwdNaolEeL7kIBX/jBlQJGc8FzUorQuciEux0icG4XBOo87NCCsorFMd0lM/wlSJIzE41GnMHtk5Xy/5+Nud8TJw+wvLmNooHM5oA/FMvl0shBc5dz3gc1ne1PTklVntrakbz+xq+Spsd8p4DI5uEY7hPp8YOjZfpHSLuBtU+ezSlgcjlnyKNQ=
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_DB6P190MB005479015E3F02D4028541A9FD1B0DB6P190MB0054EURP_"
MIME-Version: 1.0
X-OriginatorOrg: iotconsultancy.nl
X-MS-Exchange-CrossTenant-Network-Message-Id: a7049bf1-e8d5-4dbd-b1df-08d618c1da20
X-MS-Exchange-CrossTenant-originalarrivaltime: 12 Sep 2018 15:10:18.6053 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 58bbf628-15d2-46bc-820b-863b6774d44b
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB6P190MB0568
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/RKunGCk19fAF6ABkzPZ5jZE1FaQ>
Subject: [Ace] ace-coap-est: unclear definition of /.well-known/est URI
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 12 Sep 2018 15:10:25 -0000

Dear all/authors of ace-coap-est,

Section 5 of ace-coap-est-05 indicates URI discovery is possible to find the EST functions entry point URI. Also a well-known URI is defined:

coaps://www.example.com/.well-known/est/ArbitraryLabel/<short-est>.

This URI seems more complicated than needed? What if we simply define an always-available well-known URI, usable without any discovery:

coaps://www.example.com/.well-known/est/<short-est>

This re-uses the well-known EST namespace which is exactly defined to do EST functions. So using the short-est names within this namespace should be fine.
It is important that a well-known URI is available that is usable without discovery, just like EST RFC 7030 defines it for https.
The "ArbitraryLabel" only makes the URI longer.

best regards
Esko Dijk