Re: [core] Tossing around URIs to use outside an application

Thomas Fossati <Thomas.Fossati@arm.com> Mon, 17 May 2021 16:05 UTC

Return-Path: <Thomas.Fossati@arm.com>
X-Original-To: core@ietfa.amsl.com
Delivered-To: core@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E8B9B3A3CC3 for <core@ietfa.amsl.com>; Mon, 17 May 2021 09:05:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=Z2W0A4v/; dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=Z2W0A4v/
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LU2jowDsKFSt for <core@ietfa.amsl.com>; Mon, 17 May 2021 09:05:52 -0700 (PDT)
Received: from EUR03-AM5-obe.outbound.protection.outlook.com (mail-eopbgr30063.outbound.protection.outlook.com [40.107.3.63]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 146863A3CC2 for <core@ietf.org>; Mon, 17 May 2021 09:05:51 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ySaaDKfKS90Jy47rNavEaHeksFC4GV0km21qyuh8M2A=; b=Z2W0A4v//hlzYkjTF5VPY4rGqrV92xnOE14VC8KKuvpQ+kPqMUmD7xbJsbJg23rUNKEzL8IY+tq8hDhX/OW8VHW4pD4WEFdwIb+VuW8ovSn2Pc5d1fZDuIHIpLDJ70Z72yEXtqmzhcvrFlSGhbTaB9REubrYlf+f6EXYE8NzulM=
Received: from AM5PR0201CA0008.eurprd02.prod.outlook.com (2603:10a6:203:3d::18) by AM0PR08MB4337.eurprd08.prod.outlook.com (2603:10a6:208:13d::23) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4129.28; Mon, 17 May 2021 16:05:48 +0000
Received: from AM5EUR03FT004.eop-EUR03.prod.protection.outlook.com (2603:10a6:203:3d:cafe::c1) by AM5PR0201CA0008.outlook.office365.com (2603:10a6:203:3d::18) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4108.25 via Frontend Transport; Mon, 17 May 2021 16:05:48 +0000
X-MS-Exchange-Authentication-Results: spf=pass (sender IP is 63.35.35.123) smtp.mailfrom=arm.com; ietf.org; dkim=pass (signature was verified) header.d=armh.onmicrosoft.com;ietf.org; dmarc=pass action=none header.from=arm.com;
Received-SPF: Pass (protection.outlook.com: domain of arm.com designates 63.35.35.123 as permitted sender) receiver=protection.outlook.com; client-ip=63.35.35.123; helo=64aa7808-outbound-1.mta.getcheckrecipient.com;
Received: from 64aa7808-outbound-1.mta.getcheckrecipient.com (63.35.35.123) by AM5EUR03FT004.mail.protection.outlook.com (10.152.16.163) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4129.25 via Frontend Transport; Mon, 17 May 2021 16:05:46 +0000
Received: ("Tessian outbound 3c287b285c95:v92"); Mon, 17 May 2021 16:05:45 +0000
X-CheckRecipientChecked: true
X-CR-MTA-CID: da01e6ce06922f85
X-CR-MTA-TID: 64aa7808
Received: from 78103e86074f.1 by 64aa7808-outbound-1.mta.getcheckrecipient.com id 33E1C8A1-ED99-4262-A760-53AFD4B07C45.1; Mon, 17 May 2021 16:05:32 +0000
Received: from EUR04-DB3-obe.outbound.protection.outlook.com by 64aa7808-outbound-1.mta.getcheckrecipient.com with ESMTPS id 78103e86074f.1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384); Mon, 17 May 2021 16:05:32 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=WnkV6Tuz4+vCYvm2G8qwQP1f/cQXrFUgPOOJGa8zwyLl23bM7guZe36fvm8bGzs0y28jftDJOQlYkljdbbkszE+zQeOsGVLoutvKv2CDKUW/+kgnhPP4zugQVXYizKsluj/GTy2tZyJ59ezs/kGxERS+2WgDhgbpCrJ4Mm6Axb/G5X2XapPpRseXPJB+HaN4NANX3evCFbln/VBtdkBQ9i5OVl4dhzSACQWe2eaILkeKg4VgCFdkXwB+232ADpAsqMK88XZ0E3GD50inVI6uqEb8F4p81ps6wA1u6BQTbt0Fh6deo5Rrbu43o2wnLg7VH/Ys9MO6ZcjjClkqOrJyug==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ySaaDKfKS90Jy47rNavEaHeksFC4GV0km21qyuh8M2A=; b=FBhwD+JoBc8oJDV3NsyVkFA05D4v+/8evxpz8o6Y8/TjMuJ11TpdrGHdccNYna911ex6pYkejCo0hekPeeXdDPJjxKZp9YoxV9NKrzS17314h25dtB3k/6A4TZRwW1QYqm5e25TRuUGr4vq+JqUspkmtojEhZWE26cA1Skb3qyOWXS/tJWaBfUdmHkoRxqGnZE/nkYU2mi2UL4/ZMr8OTMKplRsrdRtaim8DhBwVKWlTEeLSZ7srtxI16M01fbUoH67wNWXeBW/qpZmt+aolbXGxJutr1KPskrfyTYa9ZrZX+iU+c+iJLroBf301UuFUAjRw1o23BO7ZBNL3+UBcwA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ySaaDKfKS90Jy47rNavEaHeksFC4GV0km21qyuh8M2A=; b=Z2W0A4v//hlzYkjTF5VPY4rGqrV92xnOE14VC8KKuvpQ+kPqMUmD7xbJsbJg23rUNKEzL8IY+tq8hDhX/OW8VHW4pD4WEFdwIb+VuW8ovSn2Pc5d1fZDuIHIpLDJ70Z72yEXtqmzhcvrFlSGhbTaB9REubrYlf+f6EXYE8NzulM=
Received: from DB9PR08MB6524.eurprd08.prod.outlook.com (2603:10a6:10:251::8) by DB8PR08MB5436.eurprd08.prod.outlook.com (2603:10a6:10:111::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4129.26; Mon, 17 May 2021 16:05:31 +0000
Received: from DB9PR08MB6524.eurprd08.prod.outlook.com ([fe80::e9e7:ea3a:3bca:5b3c]) by DB9PR08MB6524.eurprd08.prod.outlook.com ([fe80::e9e7:ea3a:3bca:5b3c%7]) with mapi id 15.20.4129.031; Mon, 17 May 2021 16:05:30 +0000
From: Thomas Fossati <Thomas.Fossati@arm.com>
To: Michael Richardson <mcr+ietf@sandelman.ca>, Christian Amsüss <christian@amsuess.com>, "core@ietf.org" <core@ietf.org>
Thread-Topic: [core] Tossing around URIs to use outside an application
Thread-Index: AQHXSxrJSX9LH3/p2Eek61Y76fvwNqrnviKAgAAJEICAACBGAA==
Date: Mon, 17 May 2021 16:05:30 +0000
Message-ID: <10ED75C0-7D08-4E30-B7E0-6A837286E365@arm.com>
References: <YKJltpQ9l6k4tseH@hephaistos.amsuess.com> <FFC288E5-88B3-4AEE-A28E-BB6811EC678C@arm.com> <2433.1621264199@localhost>
In-Reply-To: <2433.1621264199@localhost>
Accept-Language: en-GB, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.48.21041102
Authentication-Results-Original: sandelman.ca; dkim=none (message not signed) header.d=none; sandelman.ca; dmarc=none action=none header.from=arm.com;
x-originating-ip: [82.12.10.179]
x-ms-publictraffictype: Email
X-MS-Office365-Filtering-Correlation-Id: ed82f209-1a2b-4860-2b6d-08d9194da19c
x-ms-traffictypediagnostic: DB8PR08MB5436:|AM0PR08MB4337:
x-ms-exchange-transport-forked: True
X-Microsoft-Antispam-PRVS: <AM0PR08MB433704EFF18D72A2DCD5BCE89C2D9@AM0PR08MB4337.eurprd08.prod.outlook.com>
x-checkrecipientrouted: true
nodisclaimer: true
x-ms-oob-tlc-oobclassifiers: OLM:8273;OLM:10000;
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam-Untrusted: BCL:0;
X-Microsoft-Antispam-Message-Info-Original: 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
X-Forefront-Antispam-Report-Untrusted: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB9PR08MB6524.eurprd08.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(366004)(8936002)(110136005)(4326008)(66574015)(8676002)(38100700002)(122000001)(66446008)(6486002)(66946007)(6512007)(71200400001)(66556008)(91956017)(76116006)(5660300002)(2906002)(6506007)(498600001)(26005)(2616005)(53546011)(66476007)(64756008)(33656002)(86362001)(36756003)(83380400001)(186003)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
Content-Type: text/plain; charset="utf-8"
Content-ID: <6F65E76EDC7EB8448A5A6E0CE419FF14@eurprd08.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB8PR08MB5436
Original-Authentication-Results: sandelman.ca; dkim=none (message not signed) header.d=none; sandelman.ca; dmarc=none action=none header.from=arm.com;
X-EOPAttributedMessage: 0
X-MS-Exchange-Transport-CrossTenantHeadersStripped: AM5EUR03FT004.eop-EUR03.prod.protection.outlook.com
X-MS-Office365-Filtering-Correlation-Id-Prvs: 277f62a7-d520-4ef0-7c2c-08d9194d985f
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:63.35.35.123; CTRY:IE; LANG:en; SCL:1; SRV:; IPV:CAL; SFV:NSPM; H:64aa7808-outbound-1.mta.getcheckrecipient.com; PTR:ec2-63-35-35-123.eu-west-1.compute.amazonaws.com; CAT:NONE; SFS:(4636009)(39840400004)(136003)(396003)(346002)(376002)(36840700001)(46966006)(47076005)(336012)(70206006)(186003)(26005)(86362001)(6512007)(6486002)(4326008)(70586007)(8676002)(53546011)(8936002)(2906002)(478600001)(83380400001)(66574015)(36756003)(316002)(33656002)(81166007)(5660300002)(82310400003)(6506007)(110136005)(356005)(36860700001)(2616005); DIR:OUT; SFP:1101;
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 17 May 2021 16:05:46.3574 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: ed82f209-1a2b-4860-2b6d-08d9194da19c
X-MS-Exchange-CrossTenant-Id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=f34e5979-57d9-4aaa-ad4d-b122a662184d; Ip=[63.35.35.123]; Helo=[64aa7808-outbound-1.mta.getcheckrecipient.com]
X-MS-Exchange-CrossTenant-AuthSource: AM5EUR03FT004.eop-EUR03.prod.protection.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Anonymous
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM0PR08MB4337
Archived-At: <https://mailarchive.ietf.org/arch/msg/core/en0Apy3cyv3915O8n9g7kcoK69Y>
Subject: Re: [core] Tossing around URIs to use outside an application
X-BeenThere: core@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Constrained RESTful Environments \(CoRE\) Working Group list" <core.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/core>, <mailto:core-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/core/>
List-Post: <mailto:core@ietf.org>
List-Help: <mailto:core-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/core>, <mailto:core-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 17 May 2021 16:05:58 -0000

On 17/05/2021, 16:10, "Michael Richardson" <mcr+ietf@sandelman.ca> wrote:
> Thomas Fossati <Thomas.Fossati@arm.com> wrote:
> > On 17/05/2021, 13:47, "Christian Amsüss" <christian@amsuess.com> wrote:
> > > * By comparison: on the WWW being tossed a URI is commonplace;
> > >   they are sent over all channels (text print, QR print, radio
> > >   announcements etc), and usable by virtue of DNS+PKI.
> > >
> > > They are usable without metadata. If a browser was given a URI of
> > > a lock, it may ask the user to go through some login service but
> > > then serve from that URI alone.
>
> > This was probably true before QUIC and ECH.  Now an HTTPS URI needs
> > more context to be successfully dereferenced.
>
> Uhm, that's not my understanding.
> If both ends support QUIC, then the HTTPS is replaced with QUIC,
> otherwise it continues with HTTPS.

Even if you support QUIC, the trouble with an HTTPS URI (i.e., one with
the 'https' scheme) that has been given to you is you can't know in
general whether the other end will successfully negotiate QUIC with you
or not before you actually try, which is inefficient.  The problem with
an HTTPS URI where the server endpoint is ECH capable is probably more
compelling.  In that case the client doesn't have the luxury of an
inefficient discovery that wastes a few round-trips to get the server's
public key via Alt-Svc or ALPN, it only has one shot :-)






IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.