[Gen-art] Gen-ART review of draft-ietf-geopriv-policy-uri-03

<david.black@emc.com> Tue, 22 November 2011 22:51 UTC

Return-Path: <david.black@emc.com>
X-Original-To: gen-art@ietfa.amsl.com
Delivered-To: gen-art@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4A8531F0C5C; Tue, 22 Nov 2011 14:51:00 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -106.599
X-Spam-Level:
X-Spam-Status: No, score=-106.599 tagged_above=-999 required=5 tests=[AWL=0.000, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id SAF9iw3G0VBS; Tue, 22 Nov 2011 14:50:59 -0800 (PST)
Received: from mexforward.lss.emc.com (mexforward.lss.emc.com [128.222.32.20]) by ietfa.amsl.com (Postfix) with ESMTP id 9E6861F0C69; Tue, 22 Nov 2011 14:50:59 -0800 (PST)
Received: from hop04-l1d11-si02.isus.emc.com (HOP04-L1D11-SI02.isus.emc.com [10.254.111.55]) by mexforward.lss.emc.com (Switch-3.4.3/Switch-3.4.3) with ESMTP id pAMMop6G010644 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Tue, 22 Nov 2011 17:50:51 -0500
Received: from mailhub.lss.emc.com (mailhub.lss.emc.com [10.254.222.129]) by hop04-l1d11-si02.isus.emc.com (RSA Interceptor); Tue, 22 Nov 2011 17:50:40 -0500
Received: from mxhub13.corp.emc.com (mxhub13.corp.emc.com [128.222.70.234]) by mailhub.lss.emc.com (Switch-3.4.3/Switch-3.4.3) with ESMTP id pAMModPr005029; Tue, 22 Nov 2011 17:50:39 -0500
Received: from mx14a.corp.emc.com ([169.254.1.163]) by mxhub13.corp.emc.com ([128.222.70.234]) with mapi; Tue, 22 Nov 2011 17:50:39 -0500
From: david.black@emc.com
To: rbarnes@bbn.com, martin.thomson@andrew.com, james.winterbottom@andrew.com, Hannes.Tschofenig@gmx.net, gen-art@ietf.org
Date: Tue, 22 Nov 2011 17:50:38 -0500
Thread-Topic: Gen-ART review of draft-ietf-geopriv-policy-uri-03
Thread-Index: AcyQThPf3FuleDB1QVylnIzBDcIW0gZGSWdg
Message-ID: <7C4DFCE962635144B8FAE8CA11D0BF1E059E2709DA@MX14A.corp.emc.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-EMM-MHVC: 1
Cc: geopriv@ietf.org
Subject: [Gen-art] Gen-ART review of draft-ietf-geopriv-policy-uri-03
X-BeenThere: gen-art@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "GEN-ART: General Area Review Team" <gen-art.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/gen-art>, <mailto:gen-art-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/gen-art>
List-Post: <mailto:gen-art@ietf.org>
List-Help: <mailto:gen-art-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/gen-art>, <mailto:gen-art-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 22 Nov 2011 22:51:00 -0000

I am the assigned Gen-ART reviewer for this draft. For background on Gen-ART,
please see the FAQ at <http://wiki.tools.ietf.org/area/gen/trac/wiki/GenArtfaq>.

Please wait for direction from your document shepherd
or AD before posting a new version of the draft.

Document: draft-ietf-geopriv-policy-uri-03
Reviewer: David L. Black
Review Date: November 22, 2011
IESG Telechat date: December 1, 2011

Summary: This draft is basically ready for publication, but has nits that
should be fixed before publication.

This draft specifies policy URIs for management of privacy policy for location
information obtained and maintained by Location Configuration Protocols (LCPs).
The draft is clear and well written.

All of the topics raised by the GenART review of the -02 version are addressed
in the -03 version, except that an unfortunate sentence structure has neutered
one of the agreed-to resolutions (PUT and DELETE requests SHOULD always be
rejected for http: URIs).

The following changes should be made to correctly capture the intent (this is
a normative change):

Section 7.1:
OLD
   If other means of protection are available, an "http:" URI MAY be used.
NEW
   If other means of protection are available, an "http:" URI MAY be used,
   but location servers SHOULD reject all PUT and DELETE requests for policy
   URIs that use the "http:" URI scheme.
END

Section 7.2:
OLD
      When neither application-layer or network-
      layer security is provided, location servers MUST reject requests
      using the PUT and DELETE methods, and SHOULD reject PUT and DELETE
      requests for policy URIs that use the "http:" URI scheme.
NEW
      When neither application-layer or network-
      layer security is provided, location servers MUST reject requests
      using the PUT and DELETE methods.
END

idnits 2.12.12 did not find anything that needs attention.

Thanks,
--David
----------------------------------------------------
David L. Black, Distinguished Engineer
EMC Corporation, 176 South St., Hopkinton, MA  01748
+1 (508) 293-7953             FAX: +1 (508) 293-7786
david.black@emc.com        Mobile: +1 (978) 394-7754
----------------------------------------------------