[Agentproto] Re: New Version Notification for draft-xu-mcp-agent-did-framework-00.txt
Sumit Ahuja <sumit@mainlabs.ai> Mon, 31 August 2026 17:16 UTC
Return-Path: <sumit@mainlabs.ai>
X-Original-To: agentproto@mail2.ietf.org
Delivered-To: agentproto@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 27E2A13269639 for <agentproto@mail2.ietf.org>; Mon, 31 Aug 2026 10:16:39 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1788196599; bh=97mqK4knmF5OcWEBgYYpRcds834Cb3T/SLtY3avkisA=; h=From:Subject:Date:In-Reply-To:Cc:To:References; b=naIjw+CoY5nByblYDQWhs0PXesmIEXPEqhT2jPiISZGJklw7n5RrhrIi2RWdQ3KNF 4djvwSzoZvhlGOovuUABSRSj7Vf/2MRqcQxdSwTtggHnP3ocs0UT2hQ8aVgtyD7K0A CSMYAfCFAtLCto39SNT3PeZEXQomVaRIWL1m6ZOM=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=mainlabs-ai.20251104.gappssmtp.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id C_vZesJwGJc9 for <agentproto@mail2.ietf.org>; Mon, 31 Aug 2026 10:16:38 -0700 (PDT)
Received: from mail-ej1-x631.google.com (mail-ej1-x631.google.com [IPv6:2a00:1450:4864:20::631]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 1E2E11326962D for <agentproto@ietf.org>; Mon, 31 Aug 2026 10:16:38 -0700 (PDT)
Received: by mail-ej1-x631.google.com with SMTP id a640c23a62f3a-c25b3c641fbso46034966b.1 for <agentproto@ietf.org>; Mon, 31 Aug 2026 10:16:38 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mainlabs-ai.20251104.gappssmtp.com; s=20251104; t=1788196591; x=1788801391; darn=ietf.org; h=references:to:cc:in-reply-to:date:subject:mime-version:content-type :message-id:from:from:to:cc:subject:date:message-id:reply-to :content-type; bh=rpK5QPHV82+c06yq/qmACXW/A9UhS39LjdzXDF7ljA4=; b=oNk0n/ZQ06EfJRDshDXOl4/glmSIkslZwu1AQQE+/FDmgbGJV5DGVgHi5y2HmiItMt 9SGervhnblIs1Qy+2Zo4RlajRsHRp+vIcBtyOYyzDrx+mgCEj6RLLGkhUoBeeJ2pSs6s KtmWTmqW+F3MnuHldTjejooo5LgFOFOeW+5otaoSyyYf1lDDLMaIHRUR4YyXT00kplak JodUqmwrKkgvPW9VX+3lyOUHM+PCFc/e9ndajFUCKBfaO+cNbp4ShbYrcoKBmsQUhBPy eYOGB6PVmM9TGapGKZ/rOEZpgpA7zaroXzOCi8y0Oiw9hdQ/M8H2lqu775FCsbEml0QD Ko7A==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1788196591; x=1788801391; h=references:to:cc:in-reply-to:date:subject:mime-version:content-type :message-id:from:x-gm-gg:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to:content-type; bh=rpK5QPHV82+c06yq/qmACXW/A9UhS39LjdzXDF7ljA4=; b=m5uG8/S2PGWDZfXbXLHZzd6kAnR5gXBllZURio6MXki6y+PSFmDWv90kv4hq47I4PK aALfYXsXsqxOk8sulPIbPo4QdwhgzOuJ8JRHgiYa4M0pED+LnEevI7JTi1NgFXhBzihq B+CwaKNGPEpJHrc7H50wUXYuMhnjwIOk+mx+myVreKri3aXOuuP67RJPSofhM6oXVo4r n/CaF1Wl5SeYEtzP1PdQ9iZcEAhUDW7ORiiz3xZ8lcRrcnEqJgdx5/SFIoeAp9RPj79k XKSvnYjanyRanQhU2u/o5PGkt0m7DpsIm2+TfUfdveCwdyptvOzYZAjhIuQfL0SV6BV7 ZM5g==
X-Gm-Message-State: AFuF++m0QhyH0bd/SgbhZ+Zs9CmTcV5QUS/fJXwMerYnvqYAGXW2umnl sf01A1i2pxR9kL2ZIsO9vvHtTKeqlZLXXk4I1IC70sAGdD9H0LhdFInmDoc408iKmuwve2vkSSs EmQYaTAIb
X-Gm-Gg: AR+sD13NRgb1ki/E1taZyiueNGj/g9jXBvFqkv1Tuodx+Q02OFKyuF2EVKKMnaLq0nL TCzMPNm8zop9shwJdFfrsNG5RtYJ1QcWu2KGUz55Vw5rhUm/tvbpGM/p2x9IoCx8RWZO2bg9a1E 75aYzfbTZHgmSuSp4yPdcFhQbIEkkxWt2M6sPFfbBPf72WzdzwYIjKeMFxpLeObhqYAIxgSH1Ag BWxIcGNxi6ZbulfGdQN4zZiSjRKVBeMxOz7phjxCKIYAbxFO4LsH1SxREfKhicbgzVFzrRyXF2A OsPD6cvedzkjeYqcDC6Sk5+HsafQH9Vc4tzs2kEgMXeV2wwQk07idP61iPg+VUl4NqSbXScMLbO WxmcvACv/DgcbNCTeleZn0U1zN3RlUfICFkXRJqVbyeWRs9ZMW6W6dLBAzqBSEYedO2nT8n5j7/ xDpSoRAx62hok2WDv9ZCaW+PUV65cOtHrSIZzuhQ+wbt1sZzjyKKLCvf5yNx04ciLGiEpwVWpNx UcC
X-Received: by 2002:a17:907:3d56:b0:c25:47a4:fedc with SMTP id a640c23a62f3a-c25b3bb9089mr125530866b.2.1788196591058; Mon, 31 Aug 2026 10:16:31 -0700 (PDT)
Received: from smtpclient.apple ([156.146.61.39]) by smtp.gmail.com with ESMTPSA id a640c23a62f3a-c255f1b28f6sm437690566b.39.2026.08.31.10.16.29 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Mon, 31 Aug 2026 10:16:30 -0700 (PDT)
From: Sumit Ahuja <sumit@mainlabs.ai>
Message-Id: <0A574BBC-B285-4427-A4D8-32059E523799@mainlabs.ai>
Content-Type: multipart/alternative; boundary="Apple-Mail=_ECD238D1-E636-47C0-80EA-A875484DDBE0"
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3864.600.51.1.1\))
Date: Mon, 31 Aug 2026 13:16:24 -0400
In-Reply-To: <AM9P251MB00083EEB7DA86B03E5BE275D81AB2@AM9P251MB0008.EURP251.PROD.OUTLOOK.COM>
To: agentproto@ietf.org
References: <AM9P251MB00083EEB7DA86B03E5BE275D81AB2@AM9P251MB0008.EURP251.PROD.OUTLOOK.COM>
X-Mailer: Apple Mail (2.3864.600.51.1.1)
Message-ID-Hash: RBWIVKMDDZAV5IUVLICQAB2G64P7542W
X-Message-ID-Hash: RBWIVKMDDZAV5IUVLICQAB2G64P7542W
X-MailFrom: sumit@mainlabs.ai
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: xuxiaohu_ietf@hotmail.com
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Agentproto] Re: New Version Notification for draft-xu-mcp-agent-did-framework-00.txt
List-Id: Agent Communication Protocols <agentproto.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/agentproto/MoZvq7ADHWe8Var0uzyNu2orU3E>
List-Archive: <https://mailarchive.ietf.org/arch/browse/agentproto>
List-Help: <mailto:agentproto-request@ietf.org?subject=help>
List-Owner: <mailto:agentproto-owner@ietf.org>
List-Post: <mailto:agentproto@ietf.org>
List-Subscribe: <mailto:agentproto-join@ietf.org>
List-Unsubscribe: <mailto:agentproto-leave@ietf.org>
Tiger, One question about the three discovery mechanisms, from my intensive background in routing. The draft defines URL derivation from the DID, DNS-based discovery, and directory-based capability queries. I could not find what a client does when two of them answer differently for the same DID. Routers hit this constantly. The same prefix arrives from OSPF, from BGP, and from a static route, and the router must install one. The tie-break is a per-protocol preference, called administrative distance on some platforms and route preference on others, and it is local configuration rather than protocol state. The operational consequence is the one worth carrying across. Those default preferences were never standardised, so two routers holding identical inputs install different routes and neither is wrong. Every cross-vendor deployment that skips pinning them discovers this later, usually during a failure. Two MCP clients resolving one DID, one deriving the URL and one querying the directory, can reach different endpoints and both conform. Across a trust boundary that is an interoperability failure rather than a configuration choice, because neither party can see which mechanism the other used. So: does the framework intend a precedence among the three, or does it intend them to agree by construction? Either is defensible. Neither is currently stated. Sumit P. Ahuja Main Labs On Sat, Aug 29, 2026 01:27 AM, Tiger Xu <xuxiaohu_ietf@hotmail.com> wrote: > Hi all, > > The draft describes how MCP Clients and Servers can use did:web and did:key to establish mutual trust, discover service endpoints, and obtain fine-grained authorization. It defines DID Document extensions for MCP endpoint and directory discovery, a challenge-response authentication protocol, and integration with OAuth 2.0. The goal is to support open, multi-agent MCP deployments without requiring centralized client registration or shared secrets. > > Any comments or suggestions are welcome. > > Best regards, > Tiger > > 发件人: internet-drafts@ietf.org <mailto:internet-drafts@ietf.org> <internet-drafts@ietf.org <mailto:internet-drafts@ietf.org>> > 日期: 星期六, 2026年8月15日 23:37 > 收件人: Xiaohu Xu <xuxiaohu_ietf@hotmail.com <mailto:xuxiaohu_ietf@hotmail.com>> > 主题: New Version Notification for draft-xu-mcp-agent-did-framework-00.txt > > A new version of Internet-Draft draft-xu-mcp-agent-did-framework-00.txt has > been successfully submitted by Xiaohu Xu and posted to the > IETF repository. > > Name: draft-xu-mcp-agent-did-framework > Revision: 00 > Title: DID-Based Service Discovery, Authentication, and Authorization Framework for MCP Agents > Date: 2026-08-15 > Group: Individual Submission > Pages: 22 > URL: https://www.ietf.org/archive/id/draft-xu-mcp-agent-did-framework-00.txt > Status: https://datatracker.ietf.org/doc/draft-xu-mcp-agent-did-framework/ > HTMLized: https://datatracker.ietf.org/doc/html/draft-xu-mcp-agent-did-framework > > > Abstract: > > This document proposes a DID-based framework for service discovery, > authentication, and authorization of MCP (Model Context Protocol) > Agents, based on the W3C Decentralized Identifier (DID) standard. > The framework uses the did:web and did:key methods to provide > verifiable, decentralized identifiers for MCP Clients and Servers. > It defines DID method selection, DID Document extensions, service > discovery mechanisms (including URL derivation, DNS-based discovery, > and directory-based capability queries), and a challenge-response > mutual authentication protocol. The framework also describes > coexistence with OAuth 2.0 and enables trust establishment, dynamic > capability-based service discovery, and fine-grained authorization > with portable identities. > > > > The IETF Secretariat > > > _______________________________________________ > Agentproto mailing list -- agentproto@ietf.org <mailto:agentproto@ietf.org> > To unsubscribe send an email to agentproto-leave@ietf.org <mailto:agentproto-leave@ietf.org>
- [Agentproto] 转发: New Version Notification for dra… Tiger Xu
- [Agentproto] Re: New Version Notification for dra… Sumit Ahuja
- [Agentproto] STOP THREAD Re: New Version Notifica… Leslie Daigle (ThinkingCat)