Return-Path: <ve7jtb@ve7jtb.com>
X-Original-To: apps-discuss@ietfa.amsl.com
Delivered-To: apps-discuss@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix)
 with ESMTP id C3DCB21F8570 for <apps-discuss@ietfa.amsl.com>;
 Mon, 18 Jun 2012 13:19:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.598
X-Spam-Level: 
X-Spam-Status: No, score=-3.598 tagged_above=-999 required=5 tests=[AWL=-0.000,
 BAYES_00=-2.599, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com
 [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pBob9V5ZEYVl for
 <apps-discuss@ietfa.amsl.com>; Mon, 18 Jun 2012 13:19:21 -0700 (PDT)
Received: from mail-gg0-f172.google.com (mail-gg0-f172.google.com
 [209.85.161.172]) by ietfa.amsl.com (Postfix) with ESMTP id AEBE221F856D for
 <apps-discuss@ietf.org>; Mon, 18 Jun 2012 13:19:20 -0700 (PDT)
Received: by ggnc4 with SMTP id c4so4477939ggn.31 for <apps-discuss@ietf.org>;
 Mon, 18 Jun 2012 13:19:20 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com;
 s=20120113;
 h=subject:mime-version:content-type:from:in-reply-to:date:cc
 :message-id:references:to:x-mailer:x-gm-message-state;
 bh=s7ILXvTL5qcl5MSQBnKhWuTgnM4Z03yy/ArJeO5G9kI=;
 b=C49O2syhwgTSGtYvMkgxf9j8xuUVNBD+RzaCR6wbIi+EBytCZkXeuG42MX/zhYZzEn
 5MZst/uP+hNG43C5GhOeAtJbiiaqJmsg+xx/Sk8UZri/QHODPfy32bi73Dq66V+GLqVd
 erhhxVqwcSfo82mvtK5nbU4RHVNr9UH77oIBHQAoOjckuHDw/AJdLzRWLnUPQdwk79H+
 7FpT85jKwu1LTIBJU5gEVFeEHifMPlQ5hnBNH7T3sy588aTsntFJmf2LbNUvKBdFp/sE
 QQqeFpdX3w5QZkKIGZrD/HYl1wTZydUHnHoCtjp2R5zglqOLiHZCv6W5touYIfEXCvTT Gq1g==
Received: by 10.236.190.6 with SMTP id d6mr19560950yhn.16.1340050759847;
 Mon, 18 Jun 2012 13:19:19 -0700 (PDT)
Received: from [192.168.1.213] (190-20-29-46.baf.movistar.cl. [190.20.29.46])
 by mx.google.com with ESMTPS id a64sm68705401yhe.11.2012.06.18.13.19.15
 (version=TLSv1/SSLv3 cipher=OTHER); Mon, 18 Jun 2012 13:19:18 -0700 (PDT)
Mime-Version: 1.0 (Apple Message framework v1278)
Content-Type: multipart/signed;
 boundary="Apple-Mail=_39FEC628-0BD5-4285-A37D-112E73554ECC";
 protocol="application/pkcs7-signature"; micalg=sha1
From: John Bradley <ve7jtb@ve7jtb.com>
In-Reply-To: <1340047154.69599.YahooMailNeo@web31803.mail.mud.yahoo.com>
Date: Mon, 18 Jun 2012 16:19:08 -0400
Message-Id: <24783551-C1B8-456B-8E94-9BF59A3CAC75@ve7jtb.com>
References: <64C6DF43A866F40437AF4CC3@cyrus.local>
 <059c01cd39c8$f3d027c0$db707740$@packetizer.com>
 <1339625839.48148.YahooMailNeo@web31816.mail.mud.yahoo.com>
 <4FD917ED.2050805@stpeter.im>
 <1339628098.85328.YahooMailNeo@web31812.mail.mud.yahoo.com>
 <4FD91AF7.5050107@stpeter.im>
 <1339630300.21499.YahooMailNeo@web31812.mail.mud.yahoo.com>
 <012401cd4cf4$6a465da0$3ed318e0$@packetizer.com>
 <1340040987.3036.YahooMailNeo@web31812.mail.mud.yahoo.com>
 <022801cd4d7f$644c4dc0$2ce4e940$@packetizer.com>
 <FB0F8557-7683-4F57-9495-37AFEFCA8083@ve7jtb.com>
 <1340047154.69599.YahooMailNeo@web31803.mail.mud.yahoo.com>
To: William Mills <wmills@yahoo-inc.com>
X-Mailer: Apple Mail (2.1278)
X-Gm-Message-State: ALoCoQk06sYPG2bWGdaUEr9LA2X9zxUxdOxRI8jyH6TdsOFm9ZGhVlhxH3B/Gk2zWKtkOQNFod9w
Cc: "apps-discuss@ietf.org" <apps-discuss@ietf.org>
Subject: Re: [apps-discuss] Aggregated service discovery
X-BeenThere: apps-discuss@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: General discussion of application-layer protocols
 <apps-discuss.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/apps-discuss>,
 <mailto:apps-discuss-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/apps-discuss>
List-Post: <mailto:apps-discuss@ietf.org>
List-Help: <mailto:apps-discuss-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/apps-discuss>,
 <mailto:apps-discuss-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 18 Jun 2012 20:19:22 -0000

--Apple-Mail=_39FEC628-0BD5-4285-A37D-112E73554ECC
Content-Type: multipart/alternative;
	boundary="Apple-Mail=_C0A35206-9E3E-4997-89CD-6EABDA051AA3"


--Apple-Mail=_C0A35206-9E3E-4997-89CD-6EABDA051AA3
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain;
	charset=windows-1252

That is not what I am saying.

I am saying that the user's discovery document has a link relation to =
the providers decryption of the service.   That is different from the =
imap endpoint providing the link relation.

If you can trust the user's information to provide the Oauth endpoint =
why can't you trust the user's information to link to the description of =
the service.

As I have pointed out before you probably don't want per user =
configuration for things like imap,  the simplest thing is to describe =
the service in host-meta and forget the extra user discovery steps and =
maintenance.

John B.

On 2012-06-18, at 3:19 PM, William Mills wrote:

> Unfortunately we came to the conclusion that letting a service =
endpoint define it's authenticators is probably wrong, this was in the =
context of discovery for SASL mechanisms.  The core problem is when the =
client supports the password grant if it then trusts the service =
endpoint to tell it who to give the username password pair then it's =
vulnerable.
>=20
> From: John Bradley <ve7jtb@ve7jtb.com>
> To: Paul E. Jones <paulej@packetizer.com>=20
> Cc: 'William Mills' <wmills@yahoo-inc.com>; 'Peter Saint-Andre' =
<stpeter@stpeter.im>; apps-discuss@ietf.org=20
> Sent: Monday, June 18, 2012 11:36 AM
> Subject: Re: [apps-discuss] Aggregated service discovery
>=20
> A user is likely to have a number of OAuth authorization services for =
different things. =20
>=20
> I suspect that the best way to organize it is to describe the services =
the user has:
> openID Connect
> imap
> portable contacts
> etc
>=20
> and let the service describe how it is authenticated and where the =
endpoints are.
>=20
> For Connect there is a single relation for the Connect issuer and that =
is then discovered to get the endpoint and other configuration =
information. =20
> Given that user identifiers may point to services in other domains it =
is best to leave it up to the service to describe itself rather than =
relying on individual user information to be correct.
>=20
> John B.
>=20
> On 2012-06-18, at 2:22 PM, Paul E. Jones wrote:
>=20
>> Bill,
>> =20
>> In the referenced draft below, I assume the =93grant-types=94 and =
=93token-types=94 should be contained inside a =93properties=94?  That =
is, I think you want this:
>> =20
>> {
>>   "subject" : "acct:carol@example.com",
>>   "links" :
>>   [
>>     {
>>       "rel" : "oauth2-athorize",
>>       "href" : "http://login.example.com/oauth2/authorize"
>>     },
>>     {
>>       "rel" : "oauth2-token",
>>       "href" : "https://login.example.com/oauth2/token",
>>      "properties" :
>>       {
>>        "grant-types" : "code password",
>>         "token-types" : "bearer"
>>       }
>>     }
>>   ]
>> }
>> =20
>> For auto-provisioning of email clients (which I understand was your =
goal), we can either define one link relation that points to a separate =
configuration document of some sort, or we define multiple link =
relations.  My previous example showed the single link relation and the =
email below shows use of multiple.  Both have pros and cons, but I tend =
to favor using multiple link relations, since this allows one to =
introduce new stuff without changing the one mail configuration file.  =
Also, it reduces the number of queries a mail client has to make to get =
config information.
>> =20
>> You indicate that IMAP already has a defined URI.  Where is that =
defined?  I could not find it in the IANA link relations registry, so I =
assume it=92s really a URI defined in a spec somewhere.  In any case, we =
could use URIs for these things (rather than defining single token link =
relation values and registering them).  I have no preference, but I =
would like an agreed approach to provisioning.  I hate configuring all =
the stuff manually on email clients. :-)
>> =20
>> Paul
>> =20
>> From: William Mills [mailto:wmills@yahoo-inc.com]=20
>> Sent: Monday, June 18, 2012 1:36 PM
>> To: Paul E. Jones; 'Peter Saint-Andre'
>> Cc: 'Cyrus Daboo'; apps-discuss@ietf.org
>> Subject: Re: [apps-discuss] Aggregated service discovery
>> =20
>> Paul,
>> =20
>> Thanks for the reply on this.  I do already have a separate doc for =
registering the OAuth specific =
relations,http://tools.ietf.org/id/draft-wmills-oauth-lrdd-01.html
>> =20
>> I don't think I like the thought of having to register a new link =
type for every service, but that might be the right way.  IMAP already =
has a URI defined for example so if we use a more general link relation =
then the URI scheme details the type.  The tradeoff is whether you can =
look for a specific link-type or if you have to scan list elements for =
the URI type you need.
>> =20
>> -bill
>> =20
>> =20
>> From: Paul E. Jones <paulej@packetizer.com>
>> To: 'William Mills' <wmills@yahoo-inc.com>; 'Peter Saint-Andre' =
<stpeter@stpeter.im>=20
>> Cc: 'Cyrus Daboo' <cyrus@daboo.name>; apps-discuss@ietf.org=20
>> Sent: Sunday, June 17, 2012 6:48 PM
>> Subject: RE: [apps-discuss] Aggregated service discovery
>> =20
>> Bill,
>> =20
>> My apologies for the belated reply.  I=92ve been busy this week and =
got rather behind on email.
>> =20
>> I do not personally like using SRV records, either.  SRV records =
could work for smaller domains, but I=92m not sure that they=92re the =
best solution for larger domains.  Personally, I would prefer putting =
users on specific servers or server clusters and SRV records will not =
differentiate users.
>> =20
>> To use WebFinger to find one=92s IMAP, SMTP, or POP server, we could =
do as I suggested in my email.  Now the question is what does one query? =
 Since these three services are email, I=92d suggest we query =
=93mailto:paulej@packetizer.com=94.  We could use another URI scheme =
(e.g., =93acct:=94), but mailto seems most appropriate given that you=92re=
 seeking info about mail services.
>> =20
>> I provided an example earlier that would simply point to a config =
file with server information.  We could do this directly via WebFinger =
like this:
>> =20
>> GET /.well-known/host-meta?resource=3Dmailto:paulej@packetizer.com
>> =20
>> This query would then return something like this:
>> =20
>> {
>>   "subject" : "mailto:paulej@packetizer.com",
>>   "links" :
>>   [
>>     {
>>       "rel" : "smtp-server",
>>       "properties" :
>>       {
>>         "host" : "smtp.packetizer.com",
>>         "port" : "587",
>>         "login-required" : "yes",
>>         "transport" : "starttls"
>>       }
>>     },
>>     {
>>       "rel" : "imap-server",
>>       "properties" :
>>       {
>>         "host" : "imap.packetizer.com",
>>         "port" : "993",
>>         "transport" : "ssl"
>>       }
>>     }
>>   ]
>> }
>> =20
>> We would need to standardize the link relation values (smtp-server =
and imap-server).  We would also need to document what the various =
properties would be.  If you would like to create such a configuration =
document based on WebFinger, I=92d be happy to help out.  In any case, =
you can see that WebFinger would serve quite nicely for conveying =
configuration information given a user=92s email ID.
>> =20
>> I=92m not sure exactly what you would need for OAuth endpoints, but I =
would suggest you make that a separate document since it is not mail =
related.  (At least I assume it=92s not.  Even if it were, the mail =
server information and OAuth information are still different animals.)
>> =20
>> Paul
>> =20
>> From: William Mills [mailto:wmills@yahoo-inc.com]=20
>> Sent: Wednesday, June 13, 2012 7:32 PM
>> To: Peter Saint-Andre
>> Cc: Paul E. Jones; 'Cyrus Daboo'; apps-discuss@ietf.org
>> Subject: Re: [apps-discuss] Aggregated service discovery
>> =20
>> In my use case it's a service/server.
>> =20
>> Not a terribly happy answer to say "DNS SRV records won't work for =
you, and there is no other solution.".  By the same token I could ask =
"Why do we need Webfinger and host meta at all if we have DNS SRV =
records?".
>> =20
>> If XMPP uses SRV records for discovery, that's fine.  IMAP and =
outbound SMTP services both lack a defined discovery method other than =
the ubiquitous "service documentation".  Is there a compelling reason to =
pick DNS over WF for this?  =46rom the app developer point of view I =
don't want to have N ways to discover M services.
>> =20
>> -bill
>> =20
>> =20
>> From: Peter Saint-Andre <stpeter@stpeter.im>
>> To: William Mills <wmills@yahoo-inc.com>=20
>> Cc: Paul E. Jones <paulej@packetizer.com>; 'Cyrus Daboo' =
<cyrus@daboo.name>; "apps-discuss@ietf.org" <apps-discuss@ietf.org>=20
>> Sent: Wednesday, June 13, 2012 3:57 PM
>> Subject: Re: [apps-discuss] Aggregated service discovery
>>=20
>> On 6/13/12 4:54 PM, William Mills wrote:
>> > As I said, I'm interested specifically in IMAP, SMTP and OAuth =
endpoints.=20
>>=20
>> What exactly is an "endpoint"? A client? An account? A server?
>>=20
>> > As a data point, DNS SRV records are not controllable in many =
hosted
>> > domain models.
>>=20
>> At the last XMPP Summit a few months ago, we learned that DNS SRV
>> records are unavailable in whole countries (e.g., Japan). That =
doesn't
>> mean we should define a replacement for DNS over HTTP. :)
>>=20
>> Peter
>>=20
>> --=20
>> Peter Saint-Andre
>> https://stpeter.im/
>>=20
>>=20
>>=20
>>=20
>> =20
>> _______________________________________________
>> apps-discuss mailing list
>> apps-discuss@ietf.org
>> https://www.ietf.org/mailman/listinfo/apps-discuss
>=20
>=20
>=20


--Apple-Mail=_C0A35206-9E3E-4997-89CD-6EABDA051AA3
Content-Transfer-Encoding: quoted-printable
Content-Type: text/html;
	charset=windows-1252

<html><head></head><body style=3D"word-wrap: break-word; =
-webkit-nbsp-mode: space; -webkit-line-break: after-white-space; ">That =
is not what I am saying.<div><br></div><div>I am saying that the user's =
discovery document has a link relation to the providers decryption of =
the service. &nbsp; That is different from the imap endpoint providing =
the link relation.</div><div><br></div><div>If you can trust the user's =
information to provide the Oauth endpoint why can't you trust the user's =
information to link to the description of the =
service.</div><div><br></div><div>As I have pointed out before you =
probably don't want per user configuration for things like imap, =
&nbsp;the simplest thing is to describe the service in host-meta and =
forget the extra user discovery steps and =
maintenance.</div><div><br></div><div>John B.</div><div><br><div><div>On =
2012-06-18, at 3:19 PM, William Mills wrote:</div><br =
class=3D"Apple-interchange-newline"><blockquote type=3D"cite"><div><div =
style=3D"color:#000; background-color:#fff; font-family:Courier New, =
courier, monaco, monospace, =
sans-serif;font-size:14pt"><div><span>Unfortunately we came to the =
conclusion that letting a service endpoint define it's authenticators is =
probably wrong, this was in the context of discovery for SASL =
mechanisms.&nbsp; The core problem is when the client supports the =
password grant if it then trusts the service endpoint to tell it who to =
give the username password pair then it's =
vulnerable.</span></div><div><span></span><br><blockquote =
style=3D"border-left: 2px solid rgb(16, 16, 255); margin-left: 5px; =
margin-top: 5px; padding-left: 5px;">  <div style=3D"font-family: =
Courier New, courier, monaco, monospace, sans-serif; font-size: 14pt;"> =
<div style=3D"font-family: times new roman, new york, times, serif; =
font-size: 12pt;"> <div dir=3D"ltr"> <font face=3D"Arial" size=3D"2"> =
<hr size=3D"1">  <b><span style=3D"font-weight:bold;">From:</span></b> =
John Bradley
 &lt;<a href=3D"mailto:ve7jtb@ve7jtb.com">ve7jtb@ve7jtb.com</a>&gt;<br> =
<b><span style=3D"font-weight: bold;">To:</span></b> Paul E. Jones =
&lt;<a href=3D"mailto:paulej@packetizer.com">paulej@packetizer.com</a>&gt;=
 <br><b><span style=3D"font-weight: bold;">Cc:</span></b> 'William =
Mills' &lt;<a =
href=3D"mailto:wmills@yahoo-inc.com">wmills@yahoo-inc.com</a>&gt;; =
'Peter Saint-Andre' &lt;<a =
href=3D"mailto:stpeter@stpeter.im">stpeter@stpeter.im</a>&gt;; <a =
href=3D"mailto:apps-discuss@ietf.org">apps-discuss@ietf.org</a> <br> =
<b><span style=3D"font-weight: bold;">Sent:</span></b> Monday, June 18, =
2012 11:36 AM<br> <b><span style=3D"font-weight: =
bold;">Subject:</span></b> Re: [apps-discuss] Aggregated service =
discovery<br> </font> </div> <br>
<div id=3D"yiv1198500501"><base><div>A user is likely to have a number =
of OAuth authorization services for different things. =
&nbsp;<div><br></div><div>I suspect that the best way to organize it is =
to describe the services the user has:</div><div>openID =
Connect</div><div>imap</div><div>portable =
contacts</div><div>etc</div><div><br></div><div>and let the service =
describe how it is authenticated and where the endpoints =
are.</div><div><br></div><div>For Connect there is a single relation for =
the Connect issuer and that is then discovered to get the endpoint and =
other configuration information. &nbsp;</div><div>Given that user =
identifiers may point to services in other domains it is best to leave =
it up to the service to describe itself rather than relying on =
individual user information to be correct.</div><div><br></div><div>John =
B.</div><div><br><div><div>On 2012-06-18, at 2:22 PM, Paul E. Jones =
wrote:</div><br =
class=3D"yiv1198500501Apple-interchange-newline"><blockquote =
type=3D"cite"><span class=3D"yiv1198500501Apple-style-span" =
style=3D"border-collapse:separate;font-family:Helvetica;font-style:normal;=
font-variant:normal;font-weight:normal;letter-spacing:normal;line-height:n=
ormal;orphans:2;text-indent:0px;text-transform:none;white-space:normal;wid=
ows:2;word-spacing:0px;font-size:medium;"><div lang=3D"EN-US"><div =
class=3D"yiv1198500501WordSection1" style=3D""><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);">Bill,</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);"> &nbsp;</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);">In the referenced draft below, I assume the =93grant-types=94 =
and =93token-types=94 should be contained inside a =93properties=94?&nbsp;=
 That is, I think you want this:</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);"> &nbsp;</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">{</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp; "subject" : "acct:carol@example.com",</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp; "links" :</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp; [</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp; {</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "rel" : =
"oauth2-athorize",</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "href" : "<a rel=3D"nofollow" =
target=3D"_blank" href=3D"http://login.example.com/oauth2/authorize" =
style=3D"color:blue;text-decoration:underline;">http://login.example.com/o=
auth2/authorize</a>"</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp; },</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier
 New';color:rgb(31, 73, 125);">&nbsp;&nbsp;&nbsp; {</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "rel" : =
"oauth2-token",</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "href" : "<a rel=3D"nofollow" =
target=3D"_blank" href=3D"https://login.example.com/oauth2/token" =
style=3D"color:blue;text-decoration:underline;">https://login.example.com/=
oauth2/token</a>",</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(0, 176,
 80);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;"properties" :</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(0, 176, =
80);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; {</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(0, 176, =
80);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;"grant-types" : "code =
password",</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(0, 176, =
80);">&nbsp;&nbsp; &nbsp;&nbsp;&nbsp;&nbsp;&nbsp;"token-types" : =
"bearer"</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(0, 176, =
80);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; }</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp; }</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp; ]</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">}</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);"> &nbsp;</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);">For auto-provisioning of email clients (which I understand =
was your goal), we can either define one link relation that points to a =
separate configuration document of some sort, or we define multiple link =
relations.&nbsp; My previous example showed the single link relation and =
the email below shows use of multiple.&nbsp; Both have pros and cons, =
but I tend to favor using multiple link relations, since this allows one =
to introduce new stuff without changing the one mail configuration =
file.&nbsp; Also, it reduces the number of queries a mail
 client has to make to get config information.</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);"> &nbsp;</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);">You indicate that IMAP already has a defined URI.&nbsp; Where =
is that defined?&nbsp; I could not find it in the IANA link relations =
registry, so I assume it=92s really a URI defined in a spec =
somewhere.&nbsp; In any case, we could use URIs for these things (rather =
than defining single token link relation values and registering =
them).&nbsp; I have no preference, but I would like an agreed approach =
to provisioning.&nbsp; I hate configuring all the stuff manually on =
email clients.
 :-)</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);"> &nbsp;</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);">Paul</span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><span =
style=3D"font-size:11pt;font-family:Calibri, sans-serif;color:rgb(31, =
73, 125);"> &nbsp;</span></div><div =
style=3D"border-top-style:none;border-right-style:none;border-bottom-style=
:none;border-color:initial;border-left-style:solid;border-left-color:blue;=
border-left-width:1.5pt;padding-top:0in;padding-right:0in;padding-bottom:0=
in;padding-left:4pt;"><div><div =
style=3D"border-right-style:none;border-bottom-style:none;border-left-styl=
e:none;border-color:initial;border-top-style:solid;border-top-color:rgb(18=
1, 196, =
223);border-top-width:1pt;padding-top:3pt;padding-right:0in;padding-bottom=
:0in;padding-left:0in;"><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"><b><span =
style=3D"font-size:10pt;font-family:Tahoma, =
sans-serif;">From:</span></b><span =
style=3D"font-size:10pt;font-family:Tahoma, sans-serif;"><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>William Mills =
[mailto:wmills@yahoo-inc.com]<span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><br><b>Sent:</b>=
<span class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Monday, =
June 18, 2012 1:36 PM<br><b>To:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Paul E. Jones; =
'Peter Saint-Andre'<br><b>Cc:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>'Cyrus Daboo'; =
<a rel=3D"nofollow" ymailto=3D"mailto:apps-discuss@ietf.org" =
target=3D"_blank" =
href=3D"mailto:apps-discuss@ietf.org">apps-discuss@ietf.org</a><br><b>Subj=
ect:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Re: =
[apps-discuss] Aggregated service discovery</span></div></div></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;"> &nbsp;</div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier =
New';color:black;">Paul,</span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier New';color:black;">
 &nbsp;</span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier New';color:black;">Thanks =
for the reply on this.&nbsp; I do already have a separate doc for =
registering the OAuth specific relations,<a rel=3D"nofollow" =
target=3D"_blank" =
href=3D"http://tools.ietf.org/id/draft-wmills-oauth-lrdd-01.html" =
style=3D"color:blue;text-decoration:underline;">http://tools.ietf.org/id/d=
raft-wmills-oauth-lrdd-01.html</a></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier New';color:black;"> =
&nbsp;</span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier New';color:black;">I don't =
think I like the thought of having to register a new link type for every =
service, but that might be the right way.&nbsp; IMAP already has a URI =
defined for example so if we use a more general link relation then the =
URI scheme details the type.&nbsp; The tradeoff is whether you can look =
for a specific link-type or if you have to scan list elements for the =
URI type you need.</span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier New';color:black;"> =
&nbsp;</span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier =
New';color:black;">-bill</span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier New';color:black;"> =
&nbsp;</span></div></div><div><blockquote =
style=3D"border-top-style:none;border-right-style:none;border-bottom-style=
:none;border-color:initial;border-left-style:solid;border-left-color:rgb(1=
6, 16, =
255);border-left-width:1.5pt;padding-top:0in;padding-right:0in;padding-bot=
tom:0in;padding-left:4pt;margin-left:3.75pt;margin-top:3.75pt;margin-botto=
m:5pt;"><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier New';color:black;"> =
&nbsp;</span></div><div><div><div><div class=3D"yiv1198500501MsoNormal" =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;text-align:center;background-color:=
white;" align=3D"center"><span style=3D"font-size:10pt;font-family:Arial, =
sans-serif;color:black;"><hr align=3D"center" size=3D"1" =
width=3D"100%"></span></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><b><span =
style=3D"font-size:10pt;font-family:Arial, =
sans-serif;color:black;">From:</span></b><span =
style=3D"font-size:10pt;font-family:Arial, =
sans-serif;color:black;"><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Paul E. Jones =
&lt;<a rel=3D"nofollow" ymailto=3D"mailto:paulej@packetizer.com" =
target=3D"_blank" href=3D"mailto:paulej@packetizer.com" =
style=3D"color:blue;text-decoration:underline;">paulej@packetizer.com</a>&=
gt;<br><b>To:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>'William =
Mills' &lt;<a rel=3D"nofollow" ymailto=3D"mailto:wmills@yahoo-inc.com" =
target=3D"_blank" href=3D"mailto:wmills@yahoo-inc.com" =
style=3D"color:blue;text-decoration:underline;">wmills@yahoo-inc.com</a>&g=
t;; 'Peter Saint-Andre' &lt;<a rel=3D"nofollow" =
ymailto=3D"mailto:stpeter@stpeter.im" target=3D"_blank" =
href=3D"mailto:stpeter@stpeter.im" =
style=3D"color:blue;text-decoration:underline;">stpeter@stpeter.im</a>&gt;=
<span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><br><b>Cc:</b><s=
pan class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>'Cyrus =
Daboo' &lt;<a rel=3D"nofollow" ymailto=3D"mailto:cyrus@daboo.name" =
target=3D"_blank" href=3D"mailto:cyrus@daboo.name" =
style=3D"color:blue;text-decoration:underline;">cyrus@daboo.name</a>&gt;;<=
span class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><a =
rel=3D"nofollow" ymailto=3D"mailto:apps-discuss@ietf.org" =
target=3D"_blank" href=3D"mailto:apps-discuss@ietf.org" =
style=3D"color:blue;text-decoration:underline;">apps-discuss@ietf.org</a><=
span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><br><b>Sent:</b>=
<span class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Sunday, =
June 17, 2012 6:48 PM<br><b>Subject:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>RE: =
[apps-discuss] Aggregated service discovery</span><span =
style=3D"color:black;"></span></div></div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"color:black;"> &nbsp;</span></div><div =
id=3D"yiv1198500501"><div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">Bill,</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">My apologies for the belated reply.&nbsp; I=92ve been busy this =
week and got rather behind on email.</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">I do not personally like using SRV records, either.&nbsp; SRV =
records could work for smaller domains, but I=92m not sure that they=92re =
the best solution for larger domains.&nbsp; Personally, I would prefer =
putting users on specific servers or server clusters and SRV records =
will not differentiate users.</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">To use WebFinger to find one=92s IMAP, SMTP, or POP server, we =
could do as I suggested in my email.&nbsp; Now the question is what does =
one query?&nbsp; Since these three services are email, I=92d suggest we =
query =93<a rel=3D"nofollow" ymailto=3D"mailto:paulej@packetizer.com" =
target=3D"_blank" href=3D"mailto:paulej@packetizer.com" =
style=3D"color:blue;text-decoration:underline;">mailto:paulej@packetizer.c=
om</a>=94.&nbsp; We could use another URI scheme (e.g., =93acct:=94), =
but mailto seems most appropriate given that you=92re seeking info about =
mail services.</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">I provided an example earlier that would simply point to a config =
file with server information.&nbsp; We could do this directly via =
WebFinger like this:</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">GET =
/.well-known/host-meta?resource=3Dmailto:paulej@packetizer.com</span><span=
 style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">This query would then return something like this:</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">{</span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp; "subject" : "<a rel=3D"nofollow" =
ymailto=3D"mailto:paulej@packetizer.com" target=3D"_blank" =
href=3D"mailto:paulej@packetizer.com" =
style=3D"color:blue;text-decoration:underline;">mailto:paulej@packetizer.c=
om</a>",</span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp; "links" :</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp; [</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;
 {</span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:serif;color:black;">&nbsp;&nbsp;&nbsp;=
&nbsp;&nbsp; "rel" : "smtp-server",</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "properties" :</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; {</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "host" : "<a =
rel=3D"nofollow" target=3D"_blank" href=3D"http://smtp.packetizer.com/" =
style=3D"color:blue;text-decoration:underline;">smtp.packetizer.com</a>",<=
/span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "port" : =
"587",</span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "login-required" : =
"yes",</span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "transport" : =
"starttls"</span><span style=3D"color:black;"></span></div></div><div><div=
 =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; }</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp; },</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp; {</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:serif;color:black;">&nbsp;&nbsp;&nbsp;=
&nbsp;&nbsp; "rel" : "imap-server",</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "properties" :</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; {</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "host" : "<a =
rel=3D"nofollow" target=3D"_blank" href=3D"http://imap.packetizer.com/" =
style=3D"color:blue;text-decoration:underline;">imap.packetizer.com</a>",<=
/span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "port" : =
"993",</span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; "transport" : =
"ssl"</span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; }</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp;&nbsp;&nbsp; }</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">&nbsp; ]</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:10pt;font-family:'Courier New';color:rgb(31, 73, =
125);">}</span><span style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">We would need to standardize the link relation values =
(smtp-server and imap-server).&nbsp; We would also need to document what =
the various properties would be.&nbsp; If you would
 like to create such a configuration document based on WebFinger, I=92d =
be happy to help out.&nbsp; In any case, you can see that WebFinger =
would serve quite nicely for conveying configuration information given a =
user=92s email ID.</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">I=92m not sure exactly what you would need for OAuth endpoints, =
but I would suggest you make that a separate document since it is not =
mail related.&nbsp; (At least I
 assume it=92s not.&nbsp; Even if it were, the mail server information =
and OAuth information are still different animals.)</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31, 73, =
125);">Paul</span><span =
style=3D"color:black;"></span></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:11pt;font-family:Arial, sans-serif;color:rgb(31,
 73, 125);">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div =
style=3D"border-top-style:none;border-right-style:none;border-bottom-style=
:none;border-color:initial;border-left-style:solid;border-left-color:blue;=
border-left-width:1.5pt;padding-top:0in;padding-right:0in;padding-bottom:0=
in;padding-left:4pt;"><div><div =
style=3D"border-right-style:none;border-bottom-style:none;border-left-styl=
e:none;border-color:initial;border-top-style:solid;border-top-color:rgb(18=
1, 196, =
223);border-top-width:1pt;padding-top:3pt;padding-right:0in;padding-bottom=
:0in;padding-left:0in;"><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><b><span =
style=3D"font-size:10pt;font-family:Arial, =
sans-serif;color:black;">From:</span></b><span =
style=3D"font-size:10pt;font-family:Arial, =
sans-serif;color:black;"><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>William
 Mills<span class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><a =
rel=3D"nofollow" ymailto=3D"mailto:[mailto:wmills@yahoo-inc.com]" =
target=3D"_blank" href=3D"mailto:[mailto:wmills@yahoo-inc.com]" =
style=3D"color:blue;text-decoration:underline;">[mailto:wmills@yahoo-inc.c=
om]</a><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><br><b>Sent:</b>=
<span class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Wednesday,=
 June 13, 2012 7:32 PM<br><b>To:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Peter =
Saint-Andre<br><b>Cc:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Paul E. Jones; =
'Cyrus Daboo';<span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><a =
rel=3D"nofollow" ymailto=3D"mailto:apps-discuss@ietf.org" =
target=3D"_blank" href=3D"mailto:apps-discuss@ietf.org" =
style=3D"color:blue;text-decoration:underline;">apps-discuss@ietf.org</a><=
br><b>Subject:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Re:
 [apps-discuss] Aggregated service discovery</span><span =
style=3D"color:black;"></span></div></div></div></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"color:black;">&nbsp;</span></div></div><div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier New';color:black;">In my =
use case it's a service/server.</span><span =
style=3D"color:black;"></span></div></div></div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier =
New';color:black;">&nbsp;</span><span =
style=3D"color:black;"></span></div></div></div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier New';color:black;">Not a =
terribly happy answer to say "DNS SRV records won't work for you, and =
there is no other solution.".&nbsp; By the same token I could ask "Why =
do we need Webfinger and host meta at all if we have DNS SRV =
records?".</span><span =
style=3D"color:black;"></span></div></div></div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier =
New';color:black;">&nbsp;</span><span =
style=3D"color:black;"></span></div></div></div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier
 New';color:black;">If XMPP uses SRV records for discovery, that's =
fine.&nbsp; IMAP and outbound SMTP services both lack a defined =
discovery method other than the ubiquitous "service =
documentation".&nbsp; Is there a compelling reason to pick DNS over WF =
for this?&nbsp; =46rom the app developer point of view I don't want to =
have N ways to discover M services.</span><span =
style=3D"color:black;"></span></div></div></div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier =
New';color:black;">&nbsp;</span><span =
style=3D"color:black;"></span></div></div></div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier =
New';color:black;">-bill</span><span =
style=3D"color:black;"></span></div></div></div><div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier =
New';color:black;">&nbsp;</span><span =
style=3D"color:black;"></span></div></div></div><div><blockquote =
style=3D"border-top-style:none;border-right-style:none;border-bottom-style=
:none;border-color:initial;border-left-style:solid;border-left-color:rgb(1=
6, 16, =
255);border-left-width:1.5pt;padding-top:0in;padding-right:0in;padding-bot=
tom:0in;padding-left:4pt;margin-left:3.75pt;margin-top:3.75pt;margin-botto=
m:5pt;"><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"font-size:14pt;font-family:'Courier =
New';color:black;">&nbsp;</span><span =
style=3D"color:black;"></span></div></div><div><div><div><div =
class=3D"yiv1198500501MsoNormal" =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;text-align:center;background-color:=
white;" align=3D"center"><span style=3D"font-size:10pt;font-family:Arial, =
sans-serif;color:black;"><hr align=3D"center" size=3D"1" =
width=3D"100%"></span></div><div><div =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:0.0=
001pt;font-size:12pt;font-family:serif;background-color:white;"><b><span =
style=3D"font-size:10pt;font-family:Arial, =
sans-serif;color:black;">From:</span></b><span =
style=3D"font-size:10pt;font-family:Arial, =
sans-serif;color:black;"><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Peter =
Saint-Andre &lt;<a rel=3D"nofollow" ymailto=3D"mailto:stpeter@stpeter.im" =
target=3D"_blank" href=3D"mailto:stpeter@stpeter.im" =
style=3D"color:blue;text-decoration:underline;">stpeter@stpeter.im</a>&gt;=
<br><b>To:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>William Mills =
&lt;<a rel=3D"nofollow" ymailto=3D"mailto:wmills@yahoo-inc.com" =
target=3D"_blank" href=3D"mailto:wmills@yahoo-inc.com" =
style=3D"color:blue;text-decoration:underline;">wmills@yahoo-inc.com</a>&g=
t;<span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><br><b>Cc:</b><s=
pan class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Paul E. =
Jones &lt;<a rel=3D"nofollow" ymailto=3D"mailto:paulej@packetizer.com" =
target=3D"_blank" href=3D"mailto:paulej@packetizer.com" =
style=3D"color:blue;text-decoration:underline;">paulej@packetizer.com</a>&=
gt;; 'Cyrus Daboo' &lt;<a rel=3D"nofollow" =
ymailto=3D"mailto:cyrus@daboo.name" target=3D"_blank" =
href=3D"mailto:cyrus@daboo.name" =
style=3D"color:blue;text-decoration:underline;">cyrus@daboo.name</a>&gt;; =
"<a rel=3D"nofollow" ymailto=3D"mailto:apps-discuss@ietf.org" =
target=3D"_blank" href=3D"mailto:apps-discuss@ietf.org" =
style=3D"color:blue;text-decoration:underline;">apps-discuss@ietf.org</a>"=
 &lt;<a rel=3D"nofollow" ymailto=3D"mailto:apps-discuss@ietf.org" =
target=3D"_blank" href=3D"mailto:apps-discuss@ietf.org" =
style=3D"color:blue;text-decoration:underline;">apps-discuss@ietf.org</a>&=
gt;<span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><br><b>Sent:</b>=
<span class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Wednesday,=
 June 13, 2012 3:57 PM<br><b>Subject:</b><span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span>Re: =
[apps-discuss] Aggregated service discovery</span><span =
style=3D"color:black;"></span></div></div></div><div =
style=3D"margin-bottom:12pt;"><div class=3D"yiv1198500501MsoNormal" =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:12p=
t;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"color:black;"><br>On 6/13/12 4:54 PM, William Mills =
wrote:<br>&gt; As I said, I'm interested specifically in IMAP, SMTP and =
OAuth
 endpoints.<span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><br><br>What =
exactly is an "endpoint"? A client? An account? A server?<br><br>&gt; As =
a data point, DNS SRV records are not controllable in many =
hosted<br>&gt; domain models.<br><br>At the last XMPP Summit a few =
months ago, we learned that DNS SRV<br>records are unavailable in whole =
countries (e.g., Japan). That doesn't<br>mean we should define a =
replacement for DNS over HTTP. :)<br><br>Peter<br><br>--<span =
class=3D"yiv1198500501Apple-converted-space">&nbsp;</span><br>Peter =
Saint-Andre<br><a rel=3D"nofollow" target=3D"_blank" =
href=3D"https://stpeter.im/" =
style=3D"color:blue;text-decoration:underline;">https://stpeter.im/</a><br=
><br><br><br><br></span></div></div></div></div></blockquote></div></div><=
/div></div></div></div><div class=3D"yiv1198500501MsoNormal" =
style=3D"margin-top:0in;margin-right:0in;margin-left:0in;margin-bottom:12p=
t;font-size:12pt;font-family:serif;background-color:white;"><span =
style=3D"color:black;"> =
&nbsp;</span></div></div></div></blockquote></div></div></div></div> =
_______________________________________________<br>apps-discuss mailing =
list<br><a rel=3D"nofollow" ymailto=3D"mailto:apps-discuss@ietf.org" =
target=3D"_blank" =
href=3D"mailto:apps-discuss@ietf.org">apps-discuss@ietf.org</a><br><a =
href=3D"https://www.ietf.org/mailman/listinfo/apps-discuss">https://www.ie=
tf.org/mailman/listinfo/apps-discuss</a></div></span></blockquote></div><b=
r></div></div></div><br><br> </div> </div> </blockquote></div>   =
</div></div></blockquote></div><br></div></body></html>=

--Apple-Mail=_C0A35206-9E3E-4997-89CD-6EABDA051AA3--

--Apple-Mail=_39FEC628-0BD5-4285-A37D-112E73554ECC
Content-Disposition: attachment;
	filename=smime.p7s
Content-Type: application/pkcs7-signature;
	name=smime.p7s
Content-Transfer-Encoding: base64

MIAGCSqGSIb3DQEHAqCAMIACAQExCzAJBgUrDgMCGgUAMIAGCSqGSIb3DQEHAQAAoIIPnzCCB7Uw
ggadoAMCAQICAh5cMA0GCSqGSIb3DQEBBQUAMIGMMQswCQYDVQQGEwJJTDEWMBQGA1UEChMNU3Rh
cnRDb20gTHRkLjErMCkGA1UECxMiU2VjdXJlIERpZ2l0YWwgQ2VydGlmaWNhdGUgU2lnbmluZzE4
MDYGA1UEAxMvU3RhcnRDb20gQ2xhc3MgMiBQcmltYXJ5IEludGVybWVkaWF0ZSBDbGllbnQgQ0Ew
HhcNMTIwMzE4MDQzMjQ4WhcNMTQwMzE5MTEwNzMyWjCBmzEZMBcGA1UEDRMQR3JUTTZMUzdYMzU3
NzhzOTELMAkGA1UEBhMCQ0wxIjAgBgNVBAgTGU1ldHJvcG9saXRhbmEgZGUgU2FudGlhZ28xFjAU
BgNVBAcTDUlzbGEgZGUgTWFpcG8xFTATBgNVBAMTDEpvaG4gQnJhZGxleTEeMBwGCSqGSIb3DQEJ
ARYPamJyYWRsZXlAbWUuY29tMIIBIjANBgkqhkiG9w0BAQEFAAOCAQ8AMIIBCgKCAQEAskrlBI93
rBTLOQGSwIT6co6dAw/rwDPrRXl6/F2oc4KDn+QN6CdFeHo08H846VJS9CDjLKvnK9jbxxs4wYqe
nKdPb3jgzt8oc7b9ZXtWkOgsxgMf6dBZ/IPm4lWBpCbSr3seDGDXEpiE2lTZXno7c25OguR4E6Qa
hcpHABZjeEWK65mMH25gmoRf5MY1k3quu5y+FCYCHE2iwU5jzq+mI3HmG59+UMFLx1fjV+zTslRw
26cQDC/uepwjeYSp8S26hfWipVWwQj4js/C7RoPtvt2iyeU+LSH81jG4wlAWntiOG1WtoXUuXWSc
ExhciKeKWCnemy9qqmxRfJqBROeGlQIDAQABo4IEDjCCBAowCQYDVR0TBAIwADALBgNVHQ8EBAMC
BLAwHQYDVR0lBBYwFAYIKwYBBQUHAwIGCCsGAQUFBwMEMB0GA1UdDgQWBBQ/A7/CxKEnzpqmZlLz
9iaQMy24eTAfBgNVHSMEGDAWgBSuVYNv7DHKufcd+q9rMfPIHeOsuzB+BgNVHREEdzB1gQ9qYnJh
ZGxleUBtZS5jb22BD2picmFkbGV5QG1lLmNvbYEQamJyYWRsZXlAbWFjLmNvbYERdmU3anRiQHZl
N2p0Yi5jb22BE2picmFkbGV5QHdpbmdhYS5jb22BF2pvaG4uYnJhZGxleUB3aW5nYWEuY29tMIIC
IQYDVR0gBIICGDCCAhQwggIQBgsrBgEEAYG1NwECAjCCAf8wLgYIKwYBBQUHAgEWImh0dHA6Ly93
d3cuc3RhcnRzc2wuY29tL3BvbGljeS5wZGYwNAYIKwYBBQUHAgEWKGh0dHA6Ly93d3cuc3RhcnRz
c2wuY29tL2ludGVybWVkaWF0ZS5wZGYwgfcGCCsGAQUFBwICMIHqMCcWIFN0YXJ0Q29tIENlcnRp
ZmljYXRpb24gQXV0aG9yaXR5MAMCAQEagb5UaGlzIGNlcnRpZmljYXRlIHdhcyBpc3N1ZWQgYWNj
b3JkaW5nIHRvIHRoZSBDbGFzcyAyIFZhbGlkYXRpb24gcmVxdWlyZW1lbnRzIG9mIHRoZSBTdGFy
dENvbSBDQSBwb2xpY3ksIHJlbGlhbmNlIG9ubHkgZm9yIHRoZSBpbnRlbmRlZCBwdXJwb3NlIGlu
IGNvbXBsaWFuY2Ugb2YgdGhlIHJlbHlpbmcgcGFydHkgb2JsaWdhdGlvbnMuMIGcBggrBgEFBQcC
AjCBjzAnFiBTdGFydENvbSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eTADAgECGmRMaWFiaWxpdHkg
YW5kIHdhcnJhbnRpZXMgYXJlIGxpbWl0ZWQhIFNlZSBzZWN0aW9uICJMZWdhbCBhbmQgTGltaXRh
dGlvbnMiIG9mIHRoZSBTdGFydENvbSBDQSBwb2xpY3kuMDYGA1UdHwQvMC0wK6ApoCeGJWh0dHA6
Ly9jcmwuc3RhcnRzc2wuY29tL2NydHUyLWNybC5jcmwwgY4GCCsGAQUFBwEBBIGBMH8wOQYIKwYB
BQUHMAGGLWh0dHA6Ly9vY3NwLnN0YXJ0c3NsLmNvbS9zdWIvY2xhc3MyL2NsaWVudC9jYTBCBggr
BgEFBQcwAoY2aHR0cDovL2FpYS5zdGFydHNzbC5jb20vY2VydHMvc3ViLmNsYXNzMi5jbGllbnQu
Y2EuY3J0MCMGA1UdEgQcMBqGGGh0dHA6Ly93d3cuc3RhcnRzc2wuY29tLzANBgkqhkiG9w0BAQUF
AAOCAQEAEcfD4PmHrX+W3zaP/KsR4gwLAL0UTaMz14SIng6a9F3kb8ZDbTUneS9ubgpqeJQP2IFc
0U5gQnJ3XeCH6p9I88mvm1NqKQw8WvfglS0aIS19vfpTgXJSPdIO2JJPRqaBtXf3zkdXJwckX9/d
NMrLGeGvaFT9fUNdQdHU4BI1pVUpgKr796T7LTc/ERfH8iFp1+CmdVkJ6Y2iJdWUp4h17XmbxbIT
0CdS4SSk/VW8LFsn/mVz6hB73VthwjGsIku54Wp4pRuq1KX+pATnRk3pHRa1z3mxJMmq7OEXENcC
Vm+bAnyUrYbUilNS9UVTYS8/3dVsKiNupBaOZO+vOgJqVDCCB+IwggXKoAMCAQICAQ4wDQYJKoZI
hvcNAQEFBQAwfTELMAkGA1UEBhMCSUwxFjAUBgNVBAoTDVN0YXJ0Q29tIEx0ZC4xKzApBgNVBAsT
IlNlY3VyZSBEaWdpdGFsIENlcnRpZmljYXRlIFNpZ25pbmcxKTAnBgNVBAMTIFN0YXJ0Q29tIENl
cnRpZmljYXRpb24gQXV0aG9yaXR5MB4XDTA3MTAyNDIxMDI1NFoXDTEyMTAyMjIxMDI1NFowgYwx
CzAJBgNVBAYTAklMMRYwFAYDVQQKEw1TdGFydENvbSBMdGQuMSswKQYDVQQLEyJTZWN1cmUgRGln
aXRhbCBDZXJ0aWZpY2F0ZSBTaWduaW5nMTgwNgYDVQQDEy9TdGFydENvbSBDbGFzcyAyIFByaW1h
cnkgSW50ZXJtZWRpYXRlIENsaWVudCBDQTCCASIwDQYJKoZIhvcNAQEBBQADggEPADCCAQoCggEB
AMsohUWcASz7GfKrpTOMKqANy9BV7V0igWdGxA8IU77L3aTxErQ+fcxtDYZ36Z6GH0YFn7fq5RAD
teP0AYzrCA+EQTfi8q1+kA3m0nwtwXG94M5sIqsvs7lRP1aycBke/s5g9hJHryZ2acScnzczjBCA
o7X1v5G3yw8MDP2m2RCye0KfgZ4nODerZJVzhAlOD9YejvAXZqHksw56HzElVIoYSZ3q4+RJuPXX
fIoyby+Y2m1E+YzX5iCZXBx05gk6MKAW1vaw4/v2OOLy6FZH3XHHtOkzUreG//CsFnB9+uaYSlR6
5cdGzTsmoIK8WH1ygoXhRBm98SD7Hf/r3FELNvUCAwEAAaOCA1swggNXMAwGA1UdEwQFMAMBAf8w
CwYDVR0PBAQDAgGmMB0GA1UdDgQWBBSuVYNv7DHKufcd+q9rMfPIHeOsuzCBqAYDVR0jBIGgMIGd
gBROC+8apEBbpRdphzDKNGhD0EGu8qGBgaR/MH0xCzAJBgNVBAYTAklMMRYwFAYDVQQKEw1TdGFy
dENvbSBMdGQuMSswKQYDVQQLEyJTZWN1cmUgRGlnaXRhbCBDZXJ0aWZpY2F0ZSBTaWduaW5nMSkw
JwYDVQQDEyBTdGFydENvbSBDZXJ0aWZpY2F0aW9uIEF1dGhvcml0eYIBATAJBgNVHRIEAjAAMD0G
CCsGAQUFBwEBBDEwLzAtBggrBgEFBQcwAoYhaHR0cDovL3d3dy5zdGFydHNzbC5jb20vc2ZzY2Eu
Y3J0MGAGA1UdHwRZMFcwLKAqoCiGJmh0dHA6Ly9jZXJ0LnN0YXJ0Y29tLm9yZy9zZnNjYS1jcmwu
Y3JsMCegJaAjhiFodHRwOi8vY3JsLnN0YXJ0c3NsLmNvbS9zZnNjYS5jcmwwggFdBgNVHSAEggFU
MIIBUDCCAUwGCysGAQQBgbU3AQEEMIIBOzAvBggrBgEFBQcCARYjaHR0cDovL2NlcnQuc3RhcnRj
b20ub3JnL3BvbGljeS5wZGYwNQYIKwYBBQUHAgEWKWh0dHA6Ly9jZXJ0LnN0YXJ0Y29tLm9yZy9p
bnRlcm1lZGlhdGUucGRmMIHQBggrBgEFBQcCAjCBwzAnFiBTdGFydCBDb21tZXJjaWFsIChTdGFy
dENvbSkgTHRkLjADAgEBGoGXTGltaXRlZCBMaWFiaWxpdHksIHJlYWQgdGhlIHNlY3Rpb24gKkxl
Z2FsIExpbWl0YXRpb25zKiBvZiB0aGUgU3RhcnRDb20gQ2VydGlmaWNhdGlvbiBBdXRob3JpdHkg
UG9saWN5IGF2YWlsYWJsZSBhdCBodHRwOi8vY2VydC5zdGFydGNvbS5vcmcvcG9saWN5LnBkZjAR
BglghkgBhvhCAQEEBAMCAAcwUAYJYIZIAYb4QgENBEMWQVN0YXJ0Q29tIENsYXNzIDIgUHJpbWFy
eSBJbnRlcm1lZGlhdGUgRnJlZSBTU0wgRW1haWwgQ2VydGlmaWNhdGVzMA0GCSqGSIb3DQEBBQUA
A4ICAQAe9xAX/vbphHkvkDdNrslXWdO7fD3JaqnTT3jmmDu55r7UpW1H/v/J40UBXsw9DKU8TylE
4RwZT5HDAMW42f1x498AzM4FOnL/pUTTvr6BiRlrify5ZovkDYVWjy1GYTJ+hPiBEv0HmHnDxjhn
JIIkEvJ+niMHLLEdpNMhZnxMiTFRAtIF4WeYcpgXBjAxsEDRKBvw40K+r3N4lykySQNp2ElIJ8H1
z2BmhxtppUdWpOVJ4Q1Gvn9jfV1qnMhFCDY+X1X8DrkKrTcpDExcGlefweQs7+DYUK3spiQkJpN7
qpPYlfy2GYHedv7lGa1ZAghMI/4882QVAK2zq6M60nHpOUMtYD61XtAs3ZD5L3yn9LCdeK2j4ZbQ
3uRdwvxAMFWwXyUK/ALP4lCu9QhxbnETOkBWT3FJul4/FUgzM0RRCEGhuQWiOFSoa35XJTcYf/4E
/ZuvOXhK04nUpe7DYTMWzRqL04yyoJQVHKHKSboytueydKuqFZKdJA9gi77OnPBYL/yxkXGgkLC9
tsi77oT4AgZry0/6lgX56ak+f/umQihNPgtKSQQjEYq9S8MlOHzpUM0vxsghATYsdUPBw6r6ZxDH
jXoUAD03DUMEbKsWvqFB7nJNVesngbu8miw1EYLA+fHfTaCidoV3CL75jKqM/KE87qrh9Fqti9bK
qnkvpTGCA2wwggNoAgEBMIGTMIGMMQswCQYDVQQGEwJJTDEWMBQGA1UEChMNU3RhcnRDb20gTHRk
LjErMCkGA1UECxMiU2VjdXJlIERpZ2l0YWwgQ2VydGlmaWNhdGUgU2lnbmluZzE4MDYGA1UEAxMv
U3RhcnRDb20gQ2xhc3MgMiBQcmltYXJ5IEludGVybWVkaWF0ZSBDbGllbnQgQ0ECAh5cMAkGBSsO
AwIaBQCgggGtMBgGCSqGSIb3DQEJAzELBgkqhkiG9w0BBwEwHAYJKoZIhvcNAQkFMQ8XDTEyMDYx
ODIwMTkwOVowIwYJKoZIhvcNAQkEMRYEFJp+0RrlA4Z7xFsas/s7UV+FHfeQMIGkBgkrBgEEAYI3
EAQxgZYwgZMwgYwxCzAJBgNVBAYTAklMMRYwFAYDVQQKEw1TdGFydENvbSBMdGQuMSswKQYDVQQL
EyJTZWN1cmUgRGlnaXRhbCBDZXJ0aWZpY2F0ZSBTaWduaW5nMTgwNgYDVQQDEy9TdGFydENvbSBD
bGFzcyAyIFByaW1hcnkgSW50ZXJtZWRpYXRlIENsaWVudCBDQQICHlwwgaYGCyqGSIb3DQEJEAIL
MYGWoIGTMIGMMQswCQYDVQQGEwJJTDEWMBQGA1UEChMNU3RhcnRDb20gTHRkLjErMCkGA1UECxMi
U2VjdXJlIERpZ2l0YWwgQ2VydGlmaWNhdGUgU2lnbmluZzE4MDYGA1UEAxMvU3RhcnRDb20gQ2xh
c3MgMiBQcmltYXJ5IEludGVybWVkaWF0ZSBDbGllbnQgQ0ECAh5cMA0GCSqGSIb3DQEBAQUABIIB
ACBl1QXeOpmoGaKEbwGs/Q/2K1H0SW4yYbL2BfQJynjEtsSwEbcB424poCGwb97A7FLqs5lSb5Gv
R8D6KhieYTXcoOKgD+rEZa2EdkIsS0C5zKJWlauFiNxV9XGNZKxflBKaMzUcK7AiacVrfR4/Yeas
FzefJkQ6ylb2ih68Lu4cISeymTALgbeO8PBOnvsfu2r4XI9Vr2humb2Kbt9g4mzkF5tgXSFZZ8u3
jFEbbo9qm+Qk+ROTtHdupUtfKqFkLDFbKQ3Q75jj0+1AGQY+63eoVSjtbT4NKlKBmc2SuyG6vZ64
V3JnQwwNaTvEt1DffxGdrlvuXBlC797c8ZSF8XoAAAAAAAA=

--Apple-Mail=_39FEC628-0BD5-4285-A37D-112E73554ECC--
