Re: [Ace] draft-ietf-ace-oauth-authz-10.txt: Leaving implementers in the dark

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Tue, 20 February 2018 16:43 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8ECBF127876 for <ace@ietfa.amsl.com>; Tue, 20 Feb 2018 08:43:36 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.92
X-Spam-Level:
X-Spam-Status: No, score=-1.92 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H4=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0EL4GH5n6WbX for <ace@ietfa.amsl.com>; Tue, 20 Feb 2018 08:43:33 -0800 (PST)
Received: from EUR01-VE1-obe.outbound.protection.outlook.com (mail-ve1eur01on0042.outbound.protection.outlook.com [104.47.1.42]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B297F127871 for <ace@ietf.org>; Tue, 20 Feb 2018 08:43:32 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector1-arm-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=CW5O6i4RFg9GyYJ6QS2ZJbXDjTgd1y7Lcv09xLTXOOQ=; b=o+9aIVCgHCkqe3fIRSzm1ABBBPA+DCfZ3mQ4O/uxjOceVKQ2mZsvSZRiUXmH3TJ1nGfZ3uIOZLcgyoSuR6WwEpn+HLk50hmQBliPVi8NpcoGkttnbDS3+4vhjOCoCG/at1zFYoNKosYwj7KcgYTSvUdnoKbuWkVkWXb30tvm92c=
Received: from AM4PR0801MB2706.eurprd08.prod.outlook.com (10.167.90.148) by AM4PR0801MB2738.eurprd08.prod.outlook.com (10.167.90.156) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.506.18; Tue, 20 Feb 2018 16:43:29 +0000
Received: from AM4PR0801MB2706.eurprd08.prod.outlook.com ([fe80::7954:44ac:aab4:bc2c]) by AM4PR0801MB2706.eurprd08.prod.outlook.com ([fe80::7954:44ac:aab4:bc2c%14]) with mapi id 15.20.0506.023; Tue, 20 Feb 2018 16:43:29 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: Michael Richardson <mcr+ietf@sandelman.ca>, Ludwig Seitz <ludwig.seitz@ri.se>
CC: "ace@ietf.org" <ace@ietf.org>
Thread-Topic: [Ace] draft-ietf-ace-oauth-authz-10.txt: Leaving implementers in the dark
Thread-Index: AQHTqM6IxAS77gQkjk+VU/b7JuvkYaOqWx3wgAAC+4CAARSsgIAAh6iAgAGHpmA=
Date: Tue, 20 Feb 2018 16:43:29 +0000
Message-ID: <AM4PR0801MB270626E98E4F698E6A7763DBFACF0@AM4PR0801MB2706.eurprd08.prod.outlook.com>
References: <A5100B3E-DBA2-4FBF-9AE4-8E54CE161BCB@tzi.org> <AM4PR0801MB2706F84DFA48E37BBED4C512FAC90@AM4PR0801MB2706.eurprd08.prod.outlook.com> <05040BBB-5E6E-4569-8F8C-944CA04BBA3C@tzi.org> <60d737e6-81f2-1c86-63b2-9b58a320bbb5@ri.se> <21896.1519060863@obiwan.sandelman.ca>
In-Reply-To: <21896.1519060863@obiwan.sandelman.ca>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
x-originating-ip: [193.92.70.80]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; AM4PR0801MB2738; 7:Apaf/cilq7i+lJldvRCy3mMngoRPcppWRs5wsryKqA3fcuWqGHL+ZJI0ltbfsLoyCAkxzQZa5JSBZ1pNBTkl6tLdtR1qszO8zdudia2ttEAirVqqSMzk0AhrEaGVMJDxM6wqW5ZcrAAlqb7H4vpwxIVElUamyU+jULQgAcRwKz5Sg96Ngqg4CWPf5id4dW3kos84+MGvJ639sMu+pZMwOWNCUvMQFJ5ZsE+iRXcx8K6deOmtmLlUSC8HALiqAhLa
x-ms-exchange-antispam-srfa-diagnostics: SSOS;
x-ms-office365-filtering-ht: Tenant
x-ms-office365-filtering-correlation-id: 7b7a76fc-7704-4740-8e3c-08d578811265
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(48565401081)(4534165)(4627221)(201703031133081)(201702281549075)(5600026)(4604075)(3008032)(2017052603307)(7153060)(7193020); SRVR:AM4PR0801MB2738;
x-ms-traffictypediagnostic: AM4PR0801MB2738:
x-microsoft-antispam-prvs: <AM4PR0801MB27387D201CE8E6F9DAC3C7C5FACF0@AM4PR0801MB2738.eurprd08.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:;
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6040501)(2401047)(5005006)(8121501046)(10201501046)(93006095)(93001095)(3231101)(944501161)(3002001)(6055026)(6041288)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123560045)(20161123558120)(20161123564045)(20161123562045)(6072148)(201708071742011); SRVR:AM4PR0801MB2738; BCL:0; PCL:0; RULEID:; SRVR:AM4PR0801MB2738;
x-forefront-prvs: 05891FB07F
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(39380400002)(39860400002)(376002)(366004)(396003)(346002)(13464003)(40434004)(189003)(199004)(478600001)(97736004)(33656002)(3660700001)(72206003)(966005)(2950100002)(59450400001)(316002)(6116002)(53546011)(4326008)(110136005)(6506007)(93886005)(55016002)(76176011)(9686003)(74316002)(66066001)(6436002)(3846002)(68736007)(7736002)(7696005)(106356001)(229853002)(6306002)(305945005)(14454004)(2906002)(5250100002)(6246003)(5660300001)(86362001)(5890100001)(8936002)(8676002)(3280700002)(2900100001)(25786009)(53936002)(102836004)(105586002)(99286004)(81166006)(81156014)(26005)(186003); DIR:OUT; SFP:1101; SCL:1; SRVR:AM4PR0801MB2738; H:AM4PR0801MB2706.eurprd08.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; MX:1; A:1; LANG:en;
received-spf: None (protection.outlook.com: arm.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: Ij75JozuAhgJUIAeh0zLUG4EXtuSd175BDZ82wnm/DOamzb78J5kq4QVY13Iw2EzBCxdLmKVupKvmDLi5RbVSpJyKg4DFZQwctfoJyYyjP2RLHE/5cj0f7lkPuPVXzZTM6+GfturJaugl8M2PjuwUrQXn9k6c5w8riIN9YJp+XA=
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 7b7a76fc-7704-4740-8e3c-08d578811265
X-MS-Exchange-CrossTenant-originalarrivaltime: 20 Feb 2018 16:43:29.6302 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM4PR0801MB2738
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/MjRdg7FYswSMXxOPUCBcDVQImUY>
Subject: Re: [Ace] draft-ietf-ace-oauth-authz-10.txt: Leaving implementers in the dark
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 20 Feb 2018 16:43:37 -0000

IMHO the biggest problem with "onboarding" is that people create new terms without specifying what they actually mean and thereby fail to see the relationship with existing work.

-----Original Message-----
From: Ace [mailto:ace-bounces@ietf.org] On Behalf Of Michael Richardson
Sent: 19 February 2018 19:21
To: Ludwig Seitz
Cc: ace@ietf.org
Subject: Re: [Ace] draft-ietf-ace-oauth-authz-10.txt: Leaving implementers in the dark


Ludwig Seitz <ludwig.seitz@ri.se> wrote:
    > I agree that onboarding is a valid concern (which is why I wrote
    > appendix B),
    > but lets not delay draft-ietf-ace-oauth-authz any further by adding a whole
    > new set of functionality in it.

Back at the beginning of ACE it was clear that onboarding was an entire project of itself.  That's why I argued to keep it out of the first charter.

Onboarding suffers from a tendancy to boil the ocean, combined with the
elephant/blind-men problem.    The way to tackle onboarding is not with
a single unifying ocean boiling protocol, but rather by letting each interested party define small protocols, and over time find commonality.
I get the vision of:  https://en.wikipedia.org/wiki/Nibbler

So while it is unfortunate if some implementers feel to be "in the dark", before we could rectify that situation, we'd have to know which implementers we are worried about.

--
Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works  -= IPv6 IoT consulting =-



IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.