[dbound] First-Party sets proposal

Samuel Weiler <weiler@csail.mit.edu> Fri, 08 March 2019 20:38 UTC

Return-Path: <weiler@csail.mit.edu>
X-Original-To: dbound@ietfa.amsl.com
Delivered-To: dbound@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2141812AF83 for <dbound@ietfa.amsl.com>; Fri, 8 Mar 2019 12:38:47 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.235
X-Spam-Level:
X-Spam-Status: No, score=-1.235 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_SOFTFAIL=0.665] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id eCfE0Foni8Pr for <dbound@ietfa.amsl.com>; Fri, 8 Mar 2019 12:38:45 -0800 (PST)
Received: from cyrus.watson.org (cyrus.watson.org [204.107.128.30]) by ietfa.amsl.com (Postfix) with ESMTP id 2E9971277CE for <dbound@ietf.org>; Fri, 8 Mar 2019 12:38:45 -0800 (PST)
Received: from 31-38-175.wireless.csail.mit.edu (31-38-175.wireless.csail.mit.edu [128.31.38.175]) by cyrus.watson.org (Postfix) with ESMTPSA id ABC25CF9C2 for <dbound@ietf.org>; Fri, 8 Mar 2019 20:38:44 +0000 (UTC)
Date: Fri, 08 Mar 2019 15:38:44 -0500
From: Samuel Weiler <weiler@csail.mit.edu>
To: "dbound@ietf.org" <dbound@ietf.org>
Message-ID: <alpine.OSX.2.20.1903081512540.70761@macbook-air-8.local>
User-Agent: Alpine 2.20 (OSX 67 2015-01-07)
MIME-Version: 1.0
Content-Type: text/plain; format="flowed"; charset="US-ASCII"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dbound/CQ2gGj5OnjKn60puRlR-hx2YkaA>
Subject: [dbound] First-Party sets proposal
X-BeenThere: dbound@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DNS tree bounds <dbound.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dbound>, <mailto:dbound-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dbound/>
List-Post: <mailto:dbound@ietf.org>
List-Help: <mailto:dbound-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dbound>, <mailto:dbound-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Mar 2019 20:38:49 -0000

As long as we are looking at new ideas in this space...

Mike West has a proposal to address some of the webbier use cases. 
Rather than use the DNS, this uses JSON files served over HTTPS, so 
the trust is rooted in TLS.

https://github.com/mikewest/first-party-sets

Subscribers to this (DBOUND) list might be interested in commenting on 
Mike's proposal.  I suggest comments in GitHub or on the 
public-webappsec@w3.org list (which anyone may subscribe to - no W3C 
membership needed).

-- Sam