Re: [clue] Stephen Farrell's Discuss on draft-ietf-clue-data-model-schema-15: (with DISCUSS and COMMENT)

Simon Pietro Romano <spromano@unina.it> Wed, 01 June 2016 22:56 UTC

Return-Path: <spromano@unina.it>
X-Original-To: clue@ietfa.amsl.com
Delivered-To: clue@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E158212D15A for <clue@ietfa.amsl.com>; Wed, 1 Jun 2016 15:56:20 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.556
X-Spam-Level:
X-Spam-Status: No, score=-2.556 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_SORBS_WEB=0.77, RP_MATCHES_RCVD=-1.426, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4NQCKlssbdqL for <clue@ietfa.amsl.com>; Wed, 1 Jun 2016 15:56:19 -0700 (PDT)
Received: from brc2.unina.it (brc2.unina.it [192.132.34.42]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7597312D0C7 for <clue@ietf.org>; Wed, 1 Jun 2016 15:56:19 -0700 (PDT)
X-ASG-Debug-ID: 1464821145-05f2756782943c0001-dOUo1C
Received: from smtp2.unina.it (smtp2.unina.it [192.132.34.62]) by brc2.unina.it with ESMTP id voovq7TglGohz2AL (version=TLSv1 cipher=AES256-SHA bits=256 verify=NO); Thu, 02 Jun 2016 00:45:45 +0200 (CEST)
X-Barracuda-Envelope-From: spromano@unina.it
X-Barracuda-Apparent-Source-IP: 192.132.34.62
Received: from [192.168.178.20] ([151.70.46.236]) (authenticated bits=0) by smtp2.unina.it (8.14.4/8.14.4) with ESMTP id u51MjhKN006981 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Thu, 2 Jun 2016 00:45:44 +0200
Content-Type: multipart/alternative; boundary="Apple-Mail=_1C595AD7-36AB-4345-9358-983CD68218F1"
Mime-Version: 1.0 (Mac OS X Mail 8.2 \(2104\))
From: Simon Pietro Romano <spromano@unina.it>
X-ASG-Orig-Subj: Re: Stephen Farrell's Discuss on draft-ietf-clue-data-model-schema-15: (with DISCUSS and COMMENT)
In-Reply-To: <3F791257-1EE1-4E07-9406-3E036293FC80@cooperw.in>
Date: Thu, 02 Jun 2016 00:45:43 +0200
Message-Id: <E5C66496-6BB3-431E-968D-01E4F8D5B5F2@unina.it>
References: <20160601193224.16192.23638.idtracker@ietfa.amsl.com> <3F791257-1EE1-4E07-9406-3E036293FC80@cooperw.in>
To: Alissa Cooper <alissa@cooperw.in>
X-Mailer: Apple Mail (2.2104)
X-Barracuda-Connect: smtp2.unina.it[192.132.34.62]
X-Barracuda-Start-Time: 1464821145
X-Barracuda-Encrypted: AES256-SHA
X-Barracuda-URL: http://192.132.34.42:8000/cgi-mod/mark.cgi
X-Virus-Scanned: by bsmtpd at unina.it
X-Barracuda-BRTS-Status: 1
X-Barracuda-Spam-Score: 0.82
X-Barracuda-Spam-Status: No, SCORE=0.82 using global scores of TAG_LEVEL=1000.0 QUARANTINE_LEVEL=1000.0 KILL_LEVEL=6.0 tests=BSF_SC0_MISMATCH_TO, HTML_MESSAGE, MIME_QP_LONG_LINE, MIME_QP_LONG_LINE_2
X-Barracuda-Spam-Report: Code version 3.2, rules version 3.2.3.30093 Rule breakdown below pts rule name description ---- ---------------------- -------------------------------------------------- 0.00 BSF_SC0_MISMATCH_TO Envelope rcpt doesn't match header 0.00 HTML_MESSAGE BODY: HTML included in message 0.00 MIME_QP_LONG_LINE RAW: Quoted-printable line longer than 76 chars 0.82 MIME_QP_LONG_LINE_2 RAW: Quoted-printable line longer than 76 chars
Archived-At: <http://mailarchive.ietf.org/arch/msg/clue/9yv8VM_8ryYQBMrScfrjh5tyybQ>
Cc: CLUE <clue@ietf.org>, IESG <iesg@ietf.org>, clue-chairs@ietf.org, Stephen Farrell <stephen.farrell@cs.tcd.ie>, draft-ietf-clue-data-model-schema@ietf.org
Subject: Re: [clue] Stephen Farrell's Discuss on draft-ietf-clue-data-model-schema-15: (with DISCUSS and COMMENT)
X-BeenThere: clue@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: CLUE - ControLling mUltiple streams for TElepresence <clue.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/clue>, <mailto:clue-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/clue/>
List-Post: <mailto:clue@ietf.org>
List-Help: <mailto:clue-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/clue>, <mailto:clue-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 01 Jun 2016 22:56:21 -0000

Hello everybody,

> In any event, I do not expect there to be any further mechanisms defined in CLUE to support what is written there. The expectation is that implementations can use SIP security mechanisms to establish sessions with other participants authorized to receive CLUE information, and they can use transport encryption to protect CLUE information in flight. WG folks should feel free to correct me but there has been no discussion of any kind of finer-grained protections applied to individual schema elements AFAIK.

Indeed! Your summary looks perfect to me. 

> Perhaps this would have been clearer if it said “authentication” rather than “authenticated access.” I think the point here is that it is advisable to authenticate the remote endpoint before sending a CLUE message containing <personalInfo> to that endpoint, in the same way it’s advisable to authenticate it before sending media to it.

Agreed.

Simon

                     					       _\\|//_
                           				      ( O-O )
   ~~~~~~~~~~~~~~~~~~~~~~o00~~(_)~~00o~~~~~~~~~~~~~~~~~~~~~~~~
                    				Simon Pietro Romano
             				 Universita' di Napoli Federico II
                		     Computer Engineering Department 
	             Phone: +39 081 7683823 -- Fax: +39 081 7683816
                                           e-mail: spromano@unina.it

		    <<Molti mi dicono che lo scoraggiamento è l'alibi degli 
		    idioti. Ci rifletto un istante; e mi scoraggio>>. Magritte.
               			                     oooO
  ~~~~~~~~~~~~~~~~~~~~~~~(   )~~~ Oooo~~~~~~~~~~~~~~~~~~~~~~~~~
					                 \ (            (   )
			                                  \_)          ) /
                                                                       (_/