Re: [Geopriv] HUM: Adopt draft-winterbottom-geopriv-held-identity-extensions-10

Marc Linsner <mlinsner@cisco.com> Thu, 03 September 2009 14:23 UTC

Return-Path: <mlinsner@cisco.com>
X-Original-To: geopriv@core3.amsl.com
Delivered-To: geopriv@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id CC6AB3A6894 for <geopriv@core3.amsl.com>; Thu, 3 Sep 2009 07:23:31 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.034
X-Spam-Level:
X-Spam-Status: No, score=-6.034 tagged_above=-999 required=5 tests=[AWL=0.565, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ie3j4wuNGa+o for <geopriv@core3.amsl.com>; Thu, 3 Sep 2009 07:23:30 -0700 (PDT)
Received: from rtp-iport-1.cisco.com (rtp-iport-1.cisco.com [64.102.122.148]) by core3.amsl.com (Postfix) with ESMTP id 0A0943A68A8 for <geopriv@ietf.org>; Thu, 3 Sep 2009 07:22:32 -0700 (PDT)
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: ApoEAHNun0pAZnme/2dsb2JhbADCIIhBAZAnBYIzgWiIcg
X-IronPort-AV: E=Sophos;i="4.44,325,1249257600"; d="scan'208";a="56649992"
Received: from rtp-dkim-1.cisco.com ([64.102.121.158]) by rtp-iport-1.cisco.com with ESMTP; 03 Sep 2009 14:21:50 +0000
Received: from rtp-core-2.cisco.com (rtp-core-2.cisco.com [64.102.124.13]) by rtp-dkim-1.cisco.com (8.12.11/8.12.11) with ESMTP id n83ELon4019751; Thu, 3 Sep 2009 10:21:50 -0400
Received: from xbh-rtp-201.amer.cisco.com (xbh-rtp-201.cisco.com [64.102.31.12]) by rtp-core-2.cisco.com (8.13.8/8.14.3) with ESMTP id n83ELotm015474; Thu, 3 Sep 2009 14:21:50 GMT
Received: from xmb-rtp-205.amer.cisco.com ([64.102.31.59]) by xbh-rtp-201.amer.cisco.com with Microsoft SMTPSVC(6.0.3790.3959); Thu, 3 Sep 2009 10:21:50 -0400
Received: from [10.116.195.117] ([10.116.195.117]) by xmb-rtp-205.amer.cisco.com with Microsoft SMTPSVC(6.0.3790.3959); Thu, 3 Sep 2009 10:21:40 -0400
User-Agent: Microsoft-Entourage/12.20.0.090605
Date: Thu, 03 Sep 2009 10:21:38 -0400
From: Marc Linsner <mlinsner@cisco.com>
To: Richard Barnes <rbarnes@bbn.com>, 'GEOPRIV' <geopriv@ietf.org>
Message-ID: <C6C54932.1ADBF%mlinsner@cisco.com>
Thread-Topic: [Geopriv] HUM: Adopt draft-winterbottom-geopriv-held-identity-extensions-10
Thread-Index: AcosodlEcX3QDYWBZ0WaZ4h8MEZn4g==
In-Reply-To: <4A9F1312.1050500@bbn.com>
Mime-version: 1.0
Content-type: text/plain; charset="US-ASCII"
Content-transfer-encoding: 7bit
X-OriginalArrivalTime: 03 Sep 2009 14:21:40.0977 (UTC) FILETIME=[DB0B0610:01CA2CA1]
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; l=2203; t=1251987710; x=1252851710; c=relaxed/simple; s=rtpdkim1001; h=Content-Type:From:Subject:Content-Transfer-Encoding:MIME-Version; d=cisco.com; i=mlinsner@cisco.com; z=From:=20Marc=20Linsner=20<mlinsner@cisco.com> |Subject:=20Re=3A=20[Geopriv]=20HUM=3A=20Adopt=0A=20draft-w interbottom-geopriv-held-identity-extensions-10 |Sender:=20 |To:=20Richard=20Barnes=20<rbarnes@bbn.com>,=20=22'GEOPRIV' =22=20<geopriv@ietf.org>; bh=hD1UHQAaH1teB8UzyfflW/qbuvx70LMJ6NlAcSXiRls=; b=SbAY+6etsp1bMxu9Q+5Xt/3KWPfk2jf3l+qHr5u5rLhAcJfLmBvWO7C9No bRru2/bUXsbC0aYgq51xAg7Z8zfpyVv9v+fU9mEmYin/TRqZtuXNP4q85Pws GDjDwob2+g;
Authentication-Results: rtp-dkim-1; header.From=mlinsner@cisco.com; dkim=pass ( sig from cisco.com/rtpdkim1001 verified; );
Subject: Re: [Geopriv] HUM: Adopt draft-winterbottom-geopriv-held-identity-extensions-10
X-BeenThere: geopriv@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Geographic Location/Privacy <geopriv.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/geopriv>, <mailto:geopriv-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/geopriv>
List-Post: <mailto:geopriv@ietf.org>
List-Help: <mailto:geopriv-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/geopriv>, <mailto:geopriv-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 03 Sep 2009 14:23:31 -0000

This draft has certainly made changes for the better, IMO.

One of my major objections to previous versions of this idea centers around
the security and privacy aspects of LCP mechanisms vs. RuleMaker mechanisms.
I think this version of the draft makes headway in comparing the semantics
around each of these mechanisms.  But I think more changes are in order and
would help.

The semantics of LCP we've worked under calls for the protection of LCI to
take place at the communication protocol level.  All of the accepted
mechanisms to date do such.  Once you go past the communication protocol
security model, you now have policy and backend algorithms performing
security checks, i.e. verifying the requester is the target (or authorized
to receive the target's location).  This is the 'RuleMaker' model of
security.

It's fine to explain the semantics of LCP security within this document, but
that should be done for comparison the to RuleMaker model only.

I think the document needs to clearly state that this is NOT a mechanism for
LCP even though a target might use this mechanism to discover it's own
location.  Hence, this mechanism can support LCP-like use cases with the
additional baggage of RuleMaker security semantics.

In additions to the above changes, I think the document title should change
to 'Location Discovery by Third Parties' as this is the major use case,
especially from a security pov.

-Marc-



On 9/2/09 8:51 PM, "Richard Barnes" <rbarnes@bbn.com> wrote:

> This is a call for consensus to adopt the HELD identity extension
> document (draft-winterbottom-geopriv-held-identity-extensions-10) as a
> GEOPRIV work item.  At IETF 71, there was consensus in the room to adopt
> this draft, and IETF 75, there was continued interest in the topic.
> This call is to confirm that consensus.
> 
> Given the prior agreement on this question, this is an abbreviated
> consensus call.  Please send your response to the list no later than
> Friday, 4 September, 2009.
> 
> Thanks,
> --Richard
> _______________________________________________
> Geopriv mailing list
> Geopriv@ietf.org
> https://www.ietf.org/mailman/listinfo/geopriv