[dnssd] dnssd privacy

Daniel Kaiser <daniel.kaiser@uni-konstanz.de> Wed, 22 July 2015 16:33 UTC

Return-Path: <daniel.kaiser@uni-konstanz.de>
X-Original-To: dnssd@ietfa.amsl.com
Delivered-To: dnssd@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A8BA51B2A89 for <dnssd@ietfa.amsl.com>; Wed, 22 Jul 2015 09:33:58 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.459
X-Spam-Level:
X-Spam-Status: No, score=-2.459 tagged_above=-999 required=5 tests=[BAYES_05=-0.5, HELO_EQ_DE=0.35, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wmliZFK7gKbx for <dnssd@ietfa.amsl.com>; Wed, 22 Jul 2015 09:33:56 -0700 (PDT)
Received: from purin.rz.uni-konstanz.de (purin.rz.uni-konstanz.de [134.34.240.45]) (using TLSv1 with cipher DHE-RSA-CAMELLIA256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D0B801B2A84 for <dnssd@ietf.org>; Wed, 22 Jul 2015 09:33:54 -0700 (PDT)
Received: from nkongsamba.rz.uni-konstanz.de ([134.34.240.62]) by viribus.rz.uni-konstanz.de with ESMTP; 22 Jul 2015 16:33:52 +0000
Received: from [10.55.1.17] (unknown [31.30.2.52]) (using TLSv1 with cipher DHE-RSA-AES128-SHA (128/128 bits)) (No client certificate requested) (Authenticated sender: daniel.kaiser) by nkongsamba.rz.uni-konstanz.de (Postfix) with ESMTPSA id 9739EA00A0; Wed, 22 Jul 2015 18:33:52 +0200 (CEST)
From: Daniel Kaiser <daniel.kaiser@uni-konstanz.de>
To: dnssd@ietf.org
Message-ID: <55AFC6B8.4030409@uni-konstanz.de>
Date: Wed, 22 Jul 2015 18:37:12 +0200
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:38.0) Gecko/20100101 Thunderbird/38.0.1
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="------------080503000704010707020508"
Archived-At: <http://mailarchive.ietf.org/arch/msg/dnssd/0fq6rKDYt4ADKue6N_k0yOhAmGA>
Cc: ietf@rozanak.com
Subject: [dnssd] dnssd privacy
X-BeenThere: dnssd@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Discussion of extensions to Bonjour \(mDNS and DNS-SD\) for routed networks." <dnssd.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnssd>, <mailto:dnssd-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnssd/>
List-Post: <mailto:dnssd@ietf.org>
List-Help: <mailto:dnssd-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnssd>, <mailto:dnssd-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 22 Jul 2015 16:33:58 -0000

Dear all,

i am a PhD student working in the field of privacy with respect to
service discovery protocols.
I attended today's dnssd meeting where you asked for contributions to
draft-rafiee-dnssd-mdns-threatmodel.
If you think the part on privacy problems is worth extending, I would be
glad to contribute.

Further I wanted to ask about possible solutions for the privacy problem,
which I think is especially relevant for services that carry sensitive
data in the TXT record (e.g. _presence).
RFC 7558 Section 6.6 proposes to give users an opt-in for scope selection.
What do you think about a possibility for users to choose whom service
information is offered to, while keeping the way it is now as a default
(we wrote a paper about that [1]).
Services which use sensitive TXT records tend to be relevant for only a
small group of users anyway.
This would demand the existence of pre-shared knowledge, which could be
transmitted over
an out-of band channel (e.g. Facebook or XMPP, giving users the
possibility to privately offer information about services
to an existing list of friends).

kind regards
Daniel

[1]  http://kops.uni-konstanz.de/handle/123456789/29817