Re: [arch-d] Proposed IAB program on Wholistic Human-Oriented Discussions on Identity Systems (WHODIS)

Rifaat Shekh-Yusef <rifaat.s.ietf@gmail.com> Tue, 27 June 2023 19:48 UTC

Return-Path: <rifaat.s.ietf@gmail.com>
X-Original-To: architecture-discuss@ietfa.amsl.com
Delivered-To: architecture-discuss@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D4CA7C14CE3F for <architecture-discuss@ietfa.amsl.com>; Tue, 27 Jun 2023 12:48:01 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.093
X-Spam-Level:
X-Spam-Status: No, score=-2.093 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qqEzxWAnIvZc for <architecture-discuss@ietfa.amsl.com>; Tue, 27 Jun 2023 12:47:59 -0700 (PDT)
Received: from mail-ej1-x62a.google.com (mail-ej1-x62a.google.com [IPv6:2a00:1450:4864:20::62a]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5DF84C14CF1F for <architecture-discuss@ietf.org>; Tue, 27 Jun 2023 12:47:59 -0700 (PDT)
Received: by mail-ej1-x62a.google.com with SMTP id a640c23a62f3a-98de21518fbso496626466b.0 for <architecture-discuss@ietf.org>; Tue, 27 Jun 2023 12:47:59 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20221208; t=1687895277; x=1690487277; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=vXjq/wOgUbDa+/jERt/rqrZPxNsgRbHpTePVgvSNLXw=; b=Pfcf5xY1fo077YJ3MmRPvCrsrY/HdNkwg75FpNuMniYk8zGxBN9rZrjrePTbth219N Ov9hOXu105q8lB4myKpK0m/ccb0pZk/8MbO+uc2Oti/jp5ank3BXZImJkXYiAAJHk3Ya LkuleaoLxgzWAexrLG21xWEKxt+RITRiK+EEs6XEEQeDAHr+LO9AGPSOTP7/7GU5naq/ 8rHziv7UAh69NdYHMk/wfdqTq4DKtCyro2cq7NZct88+GzhQCC4WSgLzawsnwgdbLS2q 9z+FeNWY8x7iQIGKNa3dg5Io3Zs3CshOPyl3yAxArSTSFDyzbu4AZq0gxeF1xIyU0oEl 9YuA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1687895277; x=1690487277; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=vXjq/wOgUbDa+/jERt/rqrZPxNsgRbHpTePVgvSNLXw=; b=ewtvdHWJv5m/xfO0tU6eT+cGlvHQQnsJXZk4+DVAlYyrSXy4KUrEt0r4p1WsBQ2xpG 4DSxazq3zyk0TXiqdsxOJxsLtvr1S6w8ObXPe8bYwiXpqkajjOZcqLC2b79u7caXxwEe rzlilmg/ZeJ8Z2U9NKK+l/DhezSn8BwtKT3k59tes/0AR2ibHqly1VsXDEKROnmqhb5G DkC6MGfi5hR+bbxGGgPYdCQa8rMlKoVKsiE+FOAlHvd8rQLqLAWYsVj9dUOvHP4nPFpm G9v4uJKYQ/HLxyR2IZ3uaknT5iwPrgNIiWAYlihmdFljVW9ORONPiP7H0fES+NNgq3MY 0bFw==
X-Gm-Message-State: AC+VfDxVStjsIeRj8zGE8UdW8k3THkqHUo+y0cEpJwhktgGAhiQ67d4I o1LRazki5evoffbxEFGbUJKXJ5VhM5O27gT/PX8T5za6za8=
X-Google-Smtp-Source: ACHHUZ47zS794jrKnMYDHBxujfNfDgpWebZkCDI1cjEh/EM3S1cG6KtnaBEukfwCDKWsQkz9De/dfAGkHYppRU3bpRA=
X-Received: by 2002:a17:906:eec9:b0:96b:e93:3aa8 with SMTP id wu9-20020a170906eec900b0096b0e933aa8mr27990462ejb.21.1687895277128; Tue, 27 Jun 2023 12:47:57 -0700 (PDT)
MIME-Version: 1.0
References: <17514E09-F39D-425C-970C-BC14C70F15B9@heapingbits.net> <d65583b8-7706-ddbd-1430-ba353e05bfee@lear.ch> <0439cbdf-fe23-4ffd-8b43-3d1494d7eb73@betaapp.fastmail.com> <47a9db87-9e08-4c7c-c213-68ee36aa0385@lear.ch> <f280e3ff-e498-47e8-aac5-1f320b47c827@betaapp.fastmail.com>
In-Reply-To: <f280e3ff-e498-47e8-aac5-1f320b47c827@betaapp.fastmail.com>
From: Rifaat Shekh-Yusef <rifaat.s.ietf@gmail.com>
Date: Tue, 27 Jun 2023 15:47:21 -0400
Message-ID: <CADNypP_csCfe1W4ZMUhtQkurDKS+=FBDiGY7OaW4b37ipoKckQ@mail.gmail.com>
To: Martin Thomson <mt@lowentropy.net>
Cc: Eliot Lear <lear@lear.ch>, Christopher Wood <caw@heapingbits.net>, architecture-discuss@ietf.org
Content-Type: multipart/alternative; boundary="00000000000069509405ff21bec4"
Archived-At: <https://mailarchive.ietf.org/arch/msg/architecture-discuss/85giHUYzaLNODzYPpuj0GZ_IUcI>
Subject: Re: [arch-d] Proposed IAB program on Wholistic Human-Oriented Discussions on Identity Systems (WHODIS)
X-BeenThere: architecture-discuss@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: open discussion forum for long/wide-range architectural issues <architecture-discuss.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/architecture-discuss>, <mailto:architecture-discuss-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/architecture-discuss/>
List-Post: <mailto:architecture-discuss@ietf.org>
List-Help: <mailto:architecture-discuss-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/architecture-discuss>, <mailto:architecture-discuss-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 27 Jun 2023 19:48:01 -0000

I do not see a reason to exclude device identity from this exercise at this
stage.
I think the goal of the program should be to collect, explore, and analyze
real-life identity use cases from the wider community.
This includes soliciting insights from both identity and non-identity
experts, ensuring thorough examination of all identity layers: user,
device, and workload.

Based on the findings, the program can then propose a set of actionable
recommendations, which may include process modifications, the establishment
of new working groups, and other relevant initiatives.

Regards,
 Rifaat

On Thu, Jun 22, 2023 at 3:24 AM Martin Thomson <mt@lowentropy.net> wrote:

> On Thu, Jun 22, 2023, at 16:52, Eliot Lear wrote:
> >>  From my perspective, devices are relevant only to the extent that they
> are agents of or proxies for people.
> >
> > They all are, and the program text indicated that they were in scope.
>
> Hi Eliot,
>
> I carefully worded this and I think that your conception of this is
> different than mine.
>
> My phone is a physical device that is, most of the time, acting as an
> agent for me.  Same as my laptop.  In many cases, the identity of that
> device also acts as a proxy for my identity (such as when sites track me
> using my IP address, but let's not get into that).
>
> I don't agree that a humidity sensor in an office building fits either of
> those categories.  Or the whatsit that regulates the speed of an
> escalator.  Or the doodad that regulates the temperature in heated car
> seats.  Or the numerous other "devices" that might exist.  Sure, these
> devices all work toward human goals, but they are not an agent for a human
> in the direct sense that I intended. It is not useful to consider these a
> proxy for a human either.
>
> I explicitly want those devices left out of any human-oriented discussion
> of identity systems, not because they aren't relevant in some ways, but
> because the narrower goal is helpful in focusing the discussion.  We can
> simultaneously recognize that the universe is all connected, but not let
> ourselves get paralyzed by bringing all the things into all the discussions.
>
> _______________________________________________
> Architecture-discuss mailing list
> Architecture-discuss@ietf.org
> https://www.ietf.org/mailman/listinfo/architecture-discuss
>