[core] Conclusion -- Endpoint Client Name / Endpoint Name in RD draft

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Mon, 07 May 2018 13:50 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: core@ietfa.amsl.com
Delivered-To: core@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B5F25124235 for <core@ietfa.amsl.com>; Mon, 7 May 2018 06:50:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.91
X-Spam-Level:
X-Spam-Status: No, score=-1.91 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, T_DKIMWL_WL_MED=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Rfmd9I_vvECN for <core@ietfa.amsl.com>; Mon, 7 May 2018 06:50:05 -0700 (PDT)
Received: from EUR01-DB5-obe.outbound.protection.outlook.com (mail-db5eur01on0068.outbound.protection.outlook.com [104.47.2.68]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C431D120227 for <core@ietf.org>; Mon, 7 May 2018 06:50:04 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector1-arm-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=fzTtexgSVmZucQsXpcfSiitUOje/PTFgdNtQwGACrjE=; b=WYWhO076JPOHawLI9FtlKwPGFS8TciNuYw60iRnTxv8hhqd7Bblg7qVLfXSGedRqTfftcznSewvmvw6MBxQO0VIWa1DWXD+L3HFySPdqO5Hv2O8o5k2eVdkUUYkDnSVYnhL76NSLCWeTrQl7u/bVToTglX0sbmItOeBvy5FLV2c=
Received: from VI1PR0801MB2112.eurprd08.prod.outlook.com (10.173.75.16) by VI1PR0801MB1261.eurprd08.prod.outlook.com (10.167.197.135) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.735.17; Mon, 7 May 2018 13:50:02 +0000
Received: from VI1PR0801MB2112.eurprd08.prod.outlook.com ([fe80::4004:973e:4b3:ef88]) by VI1PR0801MB2112.eurprd08.prod.outlook.com ([fe80::4004:973e:4b3:ef88%18]) with mapi id 15.20.0735.018; Mon, 7 May 2018 13:50:02 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: "core@ietf.org" <core@ietf.org>
Thread-Topic: Conclusion -- Endpoint Client Name / Endpoint Name in RD draft
Thread-Index: AdPmCfncz1IX5t6GRJaeO0C+mMHM9Q==
Date: Mon, 07 May 2018 13:50:02 +0000
Message-ID: <VI1PR0801MB2112B9A4410DA3EDE39183BEFA9B0@VI1PR0801MB2112.eurprd08.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
x-originating-ip: [80.92.121.75]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; VI1PR0801MB1261; 7:NrQTTfOY9GQbB8GeaQPk4/CtMGtcooeUavrqZE/bFG4PZKqAYIIv/HbiVcUHR9jTqPBmLv4Xq9gS7WUNbUwNJXotRKxqdYdidCmSgJSUaUbJ63lZPDrXYSAlka+RRcrcCxr4lE+Cr/r5q9r6AzZh0TOStH+s+m7Pr1htMEwsIfIo9A/3FNEBPBMUHeTTDgDPdfFuB72S1wNDT0cY4oGwUhLCNJMDpRVUstH+RVhaewTrRgXjEaUfkBeiVpdpg6Yy
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(5600026)(4534165)(4627221)(201703031133081)(201702281549075)(48565401081)(2017052603328)(7153060)(7193020); SRVR:VI1PR0801MB1261;
x-ms-traffictypediagnostic: VI1PR0801MB1261:
x-microsoft-antispam-prvs: <VI1PR0801MB12610FA77D4DF83857334C06FA9B0@VI1PR0801MB1261.eurprd08.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(28532068793085)(192374486261705)(21748063052155);
x-ms-exchange-senderadcheck: 1
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(8211001083)(6040522)(2401047)(5005006)(8121501046)(10201501046)(93006095)(93001095)(3002001)(3231254)(944501410)(52105095)(6055026)(149027)(150027)(6041310)(20161123562045)(20161123560045)(20161123564045)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123558120)(6072148)(201708071742011); SRVR:VI1PR0801MB1261; BCL:0; PCL:0; RULEID:; SRVR:VI1PR0801MB1261;
x-forefront-prvs: 066517B35B
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(39380400002)(396003)(376002)(366004)(346002)(39860400002)(189003)(53754006)(199004)(40434004)(5660300001)(8936002)(72206003)(316002)(2501003)(5250100002)(26005)(186003)(2900100001)(3846002)(5890100001)(6116002)(790700001)(7696005)(8676002)(478600001)(486006)(476003)(99286004)(14454004)(59450400001)(5630700001)(6916009)(1730700003)(81166006)(81156014)(102836004)(68736007)(6506007)(9686003)(97736004)(6306002)(3660700001)(86362001)(55016002)(5640700003)(54896002)(2351001)(66066001)(106356001)(105586002)(74316002)(2906002)(53936002)(7736002)(25786009)(3280700002)(6436002)(33656002); DIR:OUT; SFP:1101; SCL:1; SRVR:VI1PR0801MB1261; H:VI1PR0801MB2112.eurprd08.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: arm.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: 6Pc4UX/wBIZz3IHlI7RyPoPJ4U8v1aj0AdtGr1fdm860f4Pb478dbzMPUQm9gUGvXC9Uta6cngnZYmDr2gYHRR5+dZ1t+2pnbYcV6qKBFMlu2xBzBmHigxkCKx2HGZyqoiqDtndhZBihkY3a5y217ydWndo3OvAV3sZ8+mwLMysJjvg1XqfnbScPsctIi6kR
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_VI1PR0801MB2112B9A4410DA3EDE39183BEFA9B0VI1PR0801MB2112_"
MIME-Version: 1.0
X-MS-Office365-Filtering-Correlation-Id: 9be4f793-c902-459e-eea7-08d5b4216e77
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 9be4f793-c902-459e-eea7-08d5b4216e77
X-MS-Exchange-CrossTenant-originalarrivaltime: 07 May 2018 13:50:02.1973 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR0801MB1261
Archived-At: <https://mailarchive.ietf.org/arch/msg/core/92IPri3gVwjmbMrU0paGyg8Awzg>
Subject: [core] Conclusion -- Endpoint Client Name / Endpoint Name in RD draft
X-BeenThere: core@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Constrained RESTful Environments \(CoRE\) Working Group list" <core.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/core>, <mailto:core-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/core/>
List-Post: <mailto:core@ietf.org>
List-Help: <mailto:core-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/core>, <mailto:core-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 07 May 2018 13:50:08 -0000

Hi all,

I hope that all the discussion around the endpoint name / endpoint client name have helped to make you think about the security implications of sending an unauthenticated identifier.

I would like to come to a conclusion and here is my attempt.

Since we the RD document also defines the third party provisioning I would suggest to make the endpoint name optional in the draft.

I would also encourage the chairs to find out whether the third party provisioning is actually something in this group has gained some experience with.

Ciao
Hannes

IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.