Re: [calsify] Ben Campbell's No Objection on draft-ietf-calext-caldav-attachments-03: (with COMMENT)

Alexey Melnikov <aamelnikov@fastmail.fm> Thu, 17 August 2017 13:39 UTC

Return-Path: <aamelnikov@fastmail.fm>
X-Original-To: calsify@ietfa.amsl.com
Delivered-To: calsify@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0BE8B132400; Thu, 17 Aug 2017 06:39:50 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.719
X-Spam-Level:
X-Spam-Status: No, score=-2.719 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fastmail.fm header.b=SmREOs52; dkim=pass (2048-bit key) header.d=messagingengine.com header.b=XHyRIG67
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GT3ttmjOCQsC; Thu, 17 Aug 2017 06:39:47 -0700 (PDT)
Received: from out1-smtp.messagingengine.com (out1-smtp.messagingengine.com [66.111.4.25]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5D7B31323CE; Thu, 17 Aug 2017 06:39:47 -0700 (PDT)
Received: from compute7.internal (compute7.nyi.internal [10.202.2.47]) by mailout.nyi.internal (Postfix) with ESMTP id C480820A0C; Thu, 17 Aug 2017 09:39:46 -0400 (EDT)
Received: from web5 ([10.202.2.215]) by compute7.internal (MEProxy); Thu, 17 Aug 2017 09:39:46 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fastmail.fm; h= cc:content-transfer-encoding:content-type:date:from:in-reply-to :message-id:mime-version:references:subject:to:x-me-sender :x-me-sender:x-sasl-enc; s=fm1; bh=TaVQMiGTmFZfUQ+nq1XoSopSrT2yn uqWrh81rf0UhhY=; b=SmREOs52/EwiFdHTt3wLZykhKvbh2cnGaNfOOJCFxLce3 f9ocMduBqdCKQZlEfh1Kays1ZXsZPX4ihGxf7lzi2eEY0uFFDvaxaFeMuzdILLHD KdjK5fKGtsOPc9J0faf3VbepdF30ttZxQAIA8atDYida7HjkjuHUk1GJDi1Q/Wbi UF5bdRpWk7tq+SvKSAKcQ1KgPk3nbn7mv10UDFdUyOZ+VyIvy/d7dWMj7xK04fVt i+sCyMbwqLSIdEIX5u5rxSC39wRGPJ9mKmyFVr7CXY6AUkIvx9j0z0TsrTQ9GGKG b+E0Qvm40U0gywyZ6n8tRrtcXrK0PlR4Q3dNWDjyw==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-transfer-encoding:content-type :date:from:in-reply-to:message-id:mime-version:references :subject:to:x-me-sender:x-me-sender:x-sasl-enc; s=fm1; bh=TaVQMi GTmFZfUQ+nq1XoSopSrT2ynuqWrh81rf0UhhY=; b=XHyRIG67rMuj1LUE+/x5cc NvzZnqeAenMztQkU6WX5E2bx3cguuZRxT41BTAzWgM1RYWA600T/vavJ2NhxYnyp TOAZpQHJGd11yL07OiaCfdlj/tP1fZASmpZvqfYiDQJxqQ/suEi9XxhsdWaG/RMI MdrSGz4vjDKsyc7A9cugspCkOGk9rlB5Fdtph9UL5FSZbiHS6HHgO20dYGPQNaE8 FbjrmMOZJYFfYuSNwNvdz/BHs6pgYAz0p01BByNFoqVZPMVNI2xBii9kckJ9VfAO qPeUyVez8hptcKct52Rt2ek+BnEVzOsBaXT5rANWy/3/gdk/rKyRv7gL7hC2O7GQ ==
X-ME-Sender: <xms:opyVWSD4TYS7ho9A58qgazUfVl9XyVUA59FxVGEb6OXtbkjedHe32A>
Received: by mailuser.nyi.internal (Postfix, from userid 99) id A3FAF9E308; Thu, 17 Aug 2017 09:39:46 -0400 (EDT)
Message-Id: <1502977186.40303.1076432640.1CF2BC64@webmail.messagingengine.com>
From: Alexey Melnikov <aamelnikov@fastmail.fm>
To: Cyrus Daboo <cyrus@daboo.name>
Cc: calext-chairs@ietf.org, draft-ietf-calext-caldav-attachments@ietf.org, The IESG <iesg@ietf.org>, mozilla@kewis.ch, calsify@ietf.org
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="utf-8"
X-Mailer: MessagingEngine.com Webmail Interface - ajax-21c69044
In-Reply-To: <FD3A1D81-71F0-48D7-B6D3-C7DA63AD5400@nostrum.com>
References: <150292180466.12103.5598790566803871517.idtracker@ietfa.amsl.com> <AC41C565FCAA862101F32B29@cyrus.local> <FD3A1D81-71F0-48D7-B6D3-C7DA63AD5400@nostrum.com>
Date: Thu, 17 Aug 2017 14:39:46 +0100
Archived-At: <https://mailarchive.ietf.org/arch/msg/calsify/E7XDGJR1ltUaZeciEUQGMz7su1c>
Subject: Re: [calsify] Ben Campbell's No Objection on draft-ietf-calext-caldav-attachments-03: (with COMMENT)
X-BeenThere: calsify@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: <calsify.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/calsify>, <mailto:calsify-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/calsify/>
List-Post: <mailto:calsify@ietf.org>
List-Help: <mailto:calsify-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/calsify>, <mailto:calsify-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 17 Aug 2017 13:39:50 -0000

Cyrus,

On Thu, Aug 17, 2017, at 02:18 AM, Ben Campbell wrote:
> 
> > On Aug 16, 2017, at 6:02 PM, Cyrus Daboo <cyrus@daboo.name> wrote:
> > 
> > Hi Ben,
> > 
> > --On August 16, 2017 at 3:16:44 PM -0700 Ben Campbell <ben@nostrum.com> wrote:
> > 
> >> - 3.12.2: "Access to the managed attachments store in a calendar object
> >> resource    SHOULD be restricted to only those calendar users who have
> >> access to    that calendar object either directly, or indirectly (via
> >> being an    attendee who would receive a scheduling message)."
> >> 
> >> Why not MUST? When might it make sense to allow others to access
> >> attachments?
> > 
> > Well there are several different ways in which a calendar user might have access to another calendar users' data - such as delegation and sharing. But perhaps that is implied by the statement above. How about (with one typo fixed too):
> > 
> >  Access to the managed attachments stored in a calendar object resource
> >  MUST be restricted to only those calendar users who are authorized to
> >  access that calendar object either directly, or indirectly (via being
> >  an attendee who would receive a scheduling message).
> 
> That works for me. (Although I would have also been happy with a SHOULD
> along with some guidance on when it might make sense to do otherwise.)
> 
> > 
> > (If the above is acceptable I will leave it to Ken to make the change since he has the "edit token". Or Alexey can add as an RFC editor note.)

I am happy with your proposal as well.