Re: [arch-d] IAB Statement on Encryption and Mandatory Client-side Scanning of Content

Andrew Campling <andrew.campling@419.consulting> Mon, 18 December 2023 00:45 UTC

Return-Path: <andrew.campling@419.consulting>
X-Original-To: architecture-discuss@ietfa.amsl.com
Delivered-To: architecture-discuss@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DD180C14F5E8 for <architecture-discuss@ietfa.amsl.com>; Sun, 17 Dec 2023 16:45:31 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.131
X-Spam-Level:
X-Spam-Status: No, score=-6.131 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NEUTRAL=0.779, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=netorgft5189650.onmicrosoft.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id M6YJwnWQRqgD for <architecture-discuss@ietfa.amsl.com>; Sun, 17 Dec 2023 16:45:31 -0800 (PST)
Received: from GBR01-LO4-obe.outbound.protection.outlook.com (mail-lo4gbr01on2071.outbound.protection.outlook.com [40.107.122.71]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4D09CC14F5E0 for <architecture-discuss@ietf.org>; Sun, 17 Dec 2023 16:44:33 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=VHnp7gcwbOfodUnVSK95+A3MGu/EPtPtYtcxOKjbSiL0JUTctJjptYqRSKfgax4j2T/7iQYbwQitBiD7+GZmpq65CXESg3AX8GYv6wKcKfjBkvdFPZs61cg3c4w2tN5kh1H9clA/yCyIwUlfl6yN3maSexImqVkhILkRRElryXG9UGTTbwxSTEKn5yX4FBCd+2mrlH91NZzSYF1wlBQ5gf9EtZN3FnxNZouMc7zcF1XQDbsPHRBCC2YtacanDxO5Y30KfdJXwgmSyvnb8HCu4JuIDiQe8uh9Mb3KCHgu4phYpIZxcilq2DLs+9RKJAfq8C6vpo9sKlF7ejYMIdwoYA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=fLzRoMq4BMBQXp7VabKpLxqdOMy/pPkOd+08cIkGhA0=; b=dqQ5WliDVsfwCfM0+f+R8kMsgI/Vc4JIiTmHi+1aFeat9KP72LPKRPqRz3PTDfPSwnZunUCz/s9StPWsRrig+9tZj1DzyBDfbNbHqyz3T2ktWjGYan43W2Wyyjndo3K9fG68c/zB9OLPKWCBgZW5WslY8F/TVFgN3XlOQGjrjAGQJA+Mw4yL5TkHUYeOWCimhEPIykhTA7LSVlL2BFhb83y0D+ivCFtlacsa5aw7sc+FjsviB2121hKv8SnPWAzpspb7qE3ro6UeDszmRVKfb0TYl7p88ITf5hlzcC5jY5MmknNGTc1UD7eJn74rllk/V3vtBCD7LxTDSO0rG8M2vA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=419.consulting; dmarc=pass action=none header.from=419.consulting; dkim=pass header.d=419.consulting; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=NETORGFT5189650.onmicrosoft.com; s=selector1-NETORGFT5189650-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=fLzRoMq4BMBQXp7VabKpLxqdOMy/pPkOd+08cIkGhA0=; b=n7/H3B9Tcn/kiWncX8DOosVMQkTwDQdMt4hu6064nmpYQyxlyXI6AfHKinmq6FvxsP+a3h1rk18yhAyqNWQ6gLALk5jZbauXOK0iJTYNiAErLXgR338tJKFUTqp6nJvE6Fqf/LIhh53e0/0aE2XZKAC4WCe00jv6RCmMAIUBiP4=
Received: from CWXP265MB5153.GBRP265.PROD.OUTLOOK.COM (2603:10a6:400:196::5) by LOYP265MB1776.GBRP265.PROD.OUTLOOK.COM (2603:10a6:600:f2::11) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7091.37; Mon, 18 Dec 2023 00:44:31 +0000
Received: from CWXP265MB5153.GBRP265.PROD.OUTLOOK.COM ([fe80::18dd:1afd:740:1278]) by CWXP265MB5153.GBRP265.PROD.OUTLOOK.COM ([fe80::18dd:1afd:740:1278%5]) with mapi id 15.20.7091.034; Mon, 18 Dec 2023 00:44:31 +0000
From: Andrew Campling <andrew.campling@419.consulting>
To: "iab@iab.org" <iab@iab.org>
CC: "architecture-discuss@ietf.org" <architecture-discuss@ietf.org>, S Moonesamy <sm+ietf@elandsys.com>
Thread-Topic: [arch-d] IAB Statement on Encryption and Mandatory Client-side Scanning of Content
Thread-Index: AQHaMSOimVbsdaqogk+xffNwmDkfv7CuLn0w
Date: Mon, 18 Dec 2023 00:44:31 +0000
Message-ID: <CWXP265MB5153610FBB98A7B06AF81040C290A@CWXP265MB5153.GBRP265.PROD.OUTLOOK.COM>
References: <170266952162.33107.14325064798861197261@ietfa.amsl.com> <6.2.5.6.2.20231216110256.18d0acd0@elandnews.com>
In-Reply-To: <6.2.5.6.2.20231216110256.18d0acd0@elandnews.com>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=419.consulting;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CWXP265MB5153:EE_|LOYP265MB1776:EE_
x-ms-office365-filtering-correlation-id: bd0ce7ca-8784-4977-52c0-08dbff627f6c
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CWXP265MB5153.GBRP265.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230031)(396003)(376002)(136003)(346002)(366004)(39830400003)(230922051799003)(186009)(451199024)(64100799003)(1800799012)(38070700009)(55016003)(6916009)(66476007)(66556008)(64756008)(66446008)(76116006)(38100700002)(122000001)(33656002)(86362001)(66946007)(66574015)(5660300002)(26005)(9686003)(6506007)(7696005)(2906002)(316002)(8676002)(8936002)(54906003)(71200400001)(478600001)(44832011)(4744005)(41300700001)(4326008)(52536014); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 4Qa1nte+8kw2RPQffJokWEgY36TgriQjBt52xHveYm3rcdFthmznex5sdMxFkuj39huXJBtPj2kwsqIzDTH674i4wzhRfjDU0K3eeeCUR63Sm+QAqZoIIe7l6cTxhu5ZnHep9xMvdz/g5kpQOyB/muFgragA2Z5NWXYKuudr3dgi6GXgwcKDxULqMix692Zdan+HCtXfVCfm9jmnNkJ//y4HMtW3JelO9XVFxQQ3Xglq5Y/BafKw6HrQjdwTe8YGO3yS0xynpwVUOMP/PisQLdlR1d0EU0ebw3fRzwQKVLPQSoSvqLvnO12/pKDkLAecAEMF/sh27EcJSRAFYc/StYYTXkPnBkasYb+H4dcffWlY+Vt1iiCmx/f0aSsJv5lLTkfZJGeOqJEfSfNOSe5hwbITmYTY8KaVkzxLt55LoWn1uY1+khKmVIV5c8cObAf5Y9t5aqgwCpAczWsLe3pockuGjhUQ3CifojM2xTki5XECMIlmCj1W2T4c5RoRs9ber57BI6NLH8tE09/fR93DqKeQq2G+lI4SZRDZ72/BCFKngfSH6YOsiEsVDLJ9Bp8v1kT9H19J3/KheV7IL+IepaVdZU9qF+teVI6Of00fYJJDBftwNSxog1g3YafcVByljuUVZskqVe9cuGLBxQukoOJHAzCtEXjK86BgWO0LtF1hyUTn85jL3+JLP6/SjfRTQ3Kmwb/U9d4UqZK+AfJdK1D0lROMP8mGyDd4yXPfzTBG666oPo2FITkqo6ymSvk1YHzpPqLmzZTT0D2QK20OZj+/nFOZnIha8k54YSg5RU/SQbBWAlnjyJkofBTCM+Qe2nW4LQTdkvoV/c3Izojp/OEaiDSY1nxToFt6e0pL/SBT6baEP2infSBG3eTLs84UbMSPlIyio0q163qRdQBrMlB3dwhb4y9sPU6siL/C+SSaSSdTSv/+U3YrYenSPC3BFTzN1I2GRWDfr+3cs1H0vUtmw3UxtX5X7RZjI4uFvTS9RlPdH0AaVR32lnmpT1H37HrMnO1QLQtq2RgSHacivww5vC4Var3ARWJXlRG46MSmXq+KZiHeRA410MxdGmBQPyt57p+PkIu100CwUaWuDezD8ZnMDpNhqZ2hIU4nB3kIa8Wdy2I4cPLxk/B9mPcWOdxVpwuEAbRO4/YcU02h8S3eZb9m1glAMr2MopUxCkP+Mlh56z4iUW3/HHtqzDTWXsUJ5T80z8uO/NBO/TvkU1RrXvSt26onUfp4XLsktswJBO/FsV6kNSPWMvTX6o6zVXJO0VxgWvdc0j/hIKJdv/rNENGmSQnraj2VtruU1jqaO2X1bDNhNnEEE4Aj9sqcJwpsw0lOMu5lfVBjEeFZj5b9AfqHN32lDlzzgPqPVE9jqlgz3fse82UaH+oxOwjDPmK2dafKXY9o9Ykareiq08HLIqQ3kFcSjiy9n0p+F3u6/PJk0qeTIFsz09sHZj5nuKoWEY32FgSMOpoJhVgZCfFN7x8ZvXn0/fPa9aGvFaeqvzv3X+mhj2Ul/JFBZXCDxUQ+mUgf1NVjcEwFqH1DzOMiOrTvzFQrcNbif39ZHCOriUXY2Z7g3GNlbSbc7z7kZTPsKQB9DWtNKBQGIiiOIQ==
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: 419.consulting
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CWXP265MB5153.GBRP265.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: bd0ce7ca-8784-4977-52c0-08dbff627f6c
X-MS-Exchange-CrossTenant-originalarrivaltime: 18 Dec 2023 00:44:31.2231 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 9c2ced3e-7522-4755-87dc-f983abc66ec3
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: USxjvXYwcFsMJ/52vJq0Fpa1iAhPQziOF2jrjN1UotzqXFrKQKEjzPa+XA1Z3XYQVhdQO9C0QJCl0Hm/lQW5YeOW6QtKixmUV6UiRZq7p+8=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: LOYP265MB1776
Archived-At: <https://mailarchive.ietf.org/arch/msg/architecture-discuss/Ezy0vdMnY4BesNJfkpoE12Pvz8E>
Subject: Re: [arch-d] IAB Statement on Encryption and Mandatory Client-side Scanning of Content
X-BeenThere: architecture-discuss@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: open discussion forum for long/wide-range architectural issues <architecture-discuss.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/architecture-discuss>, <mailto:architecture-discuss-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/architecture-discuss/>
List-Post: <mailto:architecture-discuss@ietf.org>
List-Help: <mailto:architecture-discuss-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/architecture-discuss>, <mailto:architecture-discuss-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 18 Dec 2023 00:45:32 -0000

At 8:08 PM 16-12-2023, S Moonesamy <sm+ietf@elandsys.com> wrote:

> I would like to commend the members of the IAB for acknowledging the concern about societal harms.  

The document states that "The IAB shares concerns about societal harms through the distribution of illegal content and criminal action on the Internet and recognizes the need to protect Internet users from such threats".  Whilst the document rules out the use of client-side scanning (a definition of which could usefully be added), it does not go on to indicate how the IAB recommends Internet users should be protected from such threats; is there a plan to produce a separate document that addresses this important issue?


Andrew