Re: [hrpc] I-D Action: draft-irtf-hrpc-guidelines-02.txt

Gurshabad Grover <gurshabad@cis-india.org> Fri, 07 June 2019 08:48 UTC

Return-Path: <gurshabad@cis-india.org>
X-Original-To: hrpc@ietfa.amsl.com
Delivered-To: hrpc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9C8D112001A for <hrpc@ietfa.amsl.com>; Fri, 7 Jun 2019 01:48:20 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level:
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=cis-india.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id F1_EfQ0EXKzg for <hrpc@ietfa.amsl.com>; Fri, 7 Jun 2019 01:48:19 -0700 (PDT)
Received: from smarthost1.greenhost.nl (smarthost1.greenhost.nl [195.190.28.88]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DBEED12010D for <hrpc@irtf.org>; Fri, 7 Jun 2019 01:48:18 -0700 (PDT)
Received: from smtp.greenhost.nl ([213.108.110.112]) by smarthost1.greenhost.nl with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.89) (envelope-from <gurshabad@cis-india.org>) id 1hZAXJ-0003a8-QO; Fri, 07 Jun 2019 10:48:16 +0200
DKIM-Filter: OpenDKIM Filter v2.10.3 mail.cis-india.org 45CDF5813CBCA
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cis-india.org; s=6F901CFA-19A8-11E9-98F1-CB07954443DB; t=1559897196; bh=+mAEwRhtKI9o6W+Rd8z7Xx4lwoul2VP9JFE/vsY564k=; h=From:To:Message-ID:Date:MIME-Version; b=QcRuj1mWQiI0FNpk5bsalf9P0dypQYkgukdHV3RsXwpCuDvRZvq/nsFCF6a+6xVKH QjRXS9B9QSjdRsUp+8gmYgwbZGZQMHJyMfcSaok1Wf84kRIjZyxDY0kSNs0HyXBSc1 qsSOzBx/97K8yN/oQXpXqc11YdIw7iJ1JiVN+bwW8v9iij+vUcr1L0Uuc6YKrLT2Ec KmCRT/a7MkPvb35YI3RnLNSxQK6QYjAgGxNYXUI5mqBubZacQRqwfis43axRQX5u/N gul2RCV7ftte+yugelu1LVqAUETIqqXms1ft6bI6mpXLZSe8ceoidzsO58mGJd0wre NBR0tsjgc7QAQ==
From: Gurshabad Grover <gurshabad@cis-india.org>
To: Joseph Lorenzo Hall <joe@cdt.org>
Cc: Hrpc <hrpc@irtf.org>
References: <155230481684.16918.12310340882529699964@ietfa.amsl.com> <a2457f5e-f83f-04fa-7c2a-99aefc0a4a00@cis-india.org> <CABtrr-UMtbkGxmyikgeLtZk083P1vGZmy54WhNn7dwnbB9=otg@mail.gmail.com>
Openpgp: preference=signencrypt
Autocrypt: addr=gurshabad@cis-india.org; keydata= mQINBFriroIBEADfyDpCD8eborMUMXKtZzjo4t2KzrAlUVYgE/TFtrwUP+4Xw4dzakDIzST8 sVYmlXIWhM5NBBTZSQ190vsxrkbi0xxLcXYM2olZEtqkJ8zONZeZLBeGvcfMymtHqD4jHwYb Zm7OXnS45fWDL+HOoMP/VCwEn098rYfnllIkYQD1Gc28Ig+ywjGg8y5p0qMmmmhm2ckgLjnG MJX8t273MSc8wsn/UYH922yif3MQXmrzqgnRl9hRzf90SKqAw38bw7wccb55pIItloKYsi0r zYBKJSOPXn91Z21TpOSTy21M0MZYEAlDn1zeea+q8TggfHNWxOXoKrIm1pqZFRz0k+8i2siJ AHf8bRm/fhukA6szZ6b2nNPxjkAmOv9zvGu6RZGbmeLvQYVBSSnZ67ayZrkKwn7KIyAV6hQM /bVnD8eEZ2tZ0S8lxoZFYSNeMGt2b6WelFZO97/LbjxaJUHd9K8g5H0MwqN1NXoBxRwllVRC 3sVHVoWTBqnKo8qplzvQEAto69PpvuxxKTOFEJeQqmn1b/fo3sLRb4YiIg8Ax+Np7Huzzjk6 vKKgpIwIN7yEUj/ReWi/UA/W4wSg3XkcqTf7h73crnN/1At0PdgozbDV2UbcApaldStP4DfG UiQl0/7MiYLKapDDuSahmoeH3xrNnrzS9BAfuGHezzDbMyPLXQARAQABtCpHdXJzaGFiYWQg R3JvdmVyIDxndXJzaGFiYWRAY2lzLWluZGlhLm9yZz6JAj0EEwEIACcFAlriroICGyMFCQlm AYAFCwkIBwIGFQgJCgsCBBYCAwECHgECF4AACgkQrbl/X+ubfC7/bQ//YQv7zqQE433xxsN/ 3GYKoOFccBy3WvV4DxrTskJ3n3k5lfcZolbc8TQksQOTzyerNt2ZA7fsGZa7eFSW+xR4Yq3/ C9o+5FOoHGhyZhb+x17MILhmyvyUNSj7SdKrRISgurMbV2Vv8LxmTcdrK6CdFF6JLH+opzU1 NlRKwZqROPgbYZEB2QFIUbGfgh2I5AXNyV2XbT7fagfkHk+v9AUV7POP2H1+AZ1xq6iFTm2o 9ufNZsp2bInsDohcVBKC3aH2cnFMjvIXpNoUOx8vb5A2xW0aBUTTJDB/uZw53WOg3kehrCNb ZkML3FnDZLRuu1e8DSWmwk5YIoDzt5bMCgfUwb0C6Q+JuM8lC+8CEEa9qamLc+fhvFAzcrWp VWuSaVeLdhe5NxmtlRYNZdGuKy6sRHjwsEWlwzRylhm74fiDR3aA1eIFsfmYLd4z+i1Fp23Y dHJf7/Gor2CmOxphog9DEA9WCuORXfx4De7hoMKwW4gWKw1A8B12Cv4EOkXmCsWsOnfDEarr 2Yl6elxkhQRfKjAesXb0cezRzZgwsWIsbeYsuWFF7Xi6IzUJ27lxU3p5PcyY8O8aDYOn+pu0 YFJ7s3u2VRRgptVZJmkcN3WTApXSHY8fGl5xAakM/bqFJj9uj5zlMnFN2EplC6/mQkfYfy2f siaGTP/GQV4OSuOeuMK5Ag0EWuKuggEQAJ4lAzB72gHw4+rbyxmQNNVmvgYVZPjFtO/MQdYi x1QwRP/gxxqPqTd/ZwQvmPGzXRKw10B7uKSRk6YP12+IG0mXJwHGp9q5CWJE0XNGqX3UWbAc KIzxqPNpsf8e6Bv7jdW0YwLBxJ+RW0NNL6uAxz0sr2frbnS+EZB3cU+zOZzp/9YfTUZO2lxF NzgJoErKe/HLp7aBeJXBBcwO0LQlIT80rTZx2KihBa/Ww/y9E9gV/HacJu/Ncb6E/G3e4xGj 9w9L+UW43q01wy+FSUKy9FLc7D40WqQsj8SXZEpl84SyLcJRoX3mtj59bX2SAN2VB2BAksTu qCh00IcIUGfyHziu5PwUWYM96gOhDSocP4wSeiQ8TwLzaffllz2qhdI296a9lCIYIeWVytEd NU9jJ3RbzXAgE0pnDauNXDaQv1FS5jYi8rlslJUxKnrS69BFNjM5RqQ16Cm0C4rKL7/a8wHC r4VjcjSCM8Lzv8YOOitJ9Yt4Y8SVfO5s3YvxcdSr56nX0W3B1kGbG1GpqWTzOgXzGF5bIsbV 7SPecwUs9ShvmLmZzDUxIQ68n4zj3lMZn5I+pP+Ew6nAAiuSmKdr5cygnCH/NVJzil07t+X4 uR6oKHBhuMFYF1c6Wxk36m+EZz5ZHFaT4rN0WDIJdAEqRzD0Z56V6ansDF8y+ksh0SHlABEB AAGJAiUEGAEIAA8FAlriroICGwwFCQlmAYAACgkQrbl/X+ubfC50rhAAloTaq/fZC1gtiVtU wOB+00gEkjgmzt+rLkW+l2EySTST7tje57W83UZwzCX746B2O//Bqardxz9R1Vr0VFiwHA8g 3qeBqPqiv1WoQch/iZ5d/1MxK4A9xDag1uyqLR8RuGlZ8lATmcP3IabKiuiBV4MlFZ7V2Ib6 5ToPf28xxSyjMzTjQObIG0e009uHlu2z+iQVshLyoyVVAOWWa88D6iuBDC/EtBRjlpjLAjuR YhWVYX6KHdVUijKMHN2RqjpX5O2wPL7NcMY/wsTq7EteUeI75hxFvargRXkEt1XR8t52LC0u IE2OjpzY5re/ROUbfsqL8trjAOrSJ+Fx5H8AYl9JaoVxohhxDZgNtgNtPbh/8Nnlf9daj/bh lZcTBO98XLQwMnyHGPdyhIodpWPq2C09Ys3TkQsbcdMMB1pqnEK5Vz1zIKkEEX7QVsLdrz7C 2CFsauc/9PHj+4njCHslXtzBOiVu5FXTnbCwPrLJs5iEUkUCb6qtE/2mSCTrAanzOTTOmqiM cnNTI1Tj0ht462S9VypppQnKCv8shGxXG7BadZTv+pNCA/WfB2kk1sS3ZwB0wBWX4p41fxs+ ArM9ew2SzQ/vBrEfO7ljPfZZmBqH4t/vgAZBnOtTxCGlPEIJqiMqtGHRqIqpiR20QfxEUuXI MfMfa9QJpisdNmqoUyc=
Message-ID: <37d57588-1ed1-6001-8df4-c83b25d95a7a@cis-india.org>
Date: Fri, 07 Jun 2019 14:17:42 +0530
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.7.0
MIME-Version: 1.0
In-Reply-To: <CABtrr-UMtbkGxmyikgeLtZk083P1vGZmy54WhNn7dwnbB9=otg@mail.gmail.com>
Content-Type: text/plain; charset="utf-8"
Content-Language: en-US
Content-Transfer-Encoding: 7bit
X-Virus-Scanned: by clamav at smarthost1.samage.net
X-Scan-Signature: 27c1264e312f7e45ec0349526d776c80
Archived-At: <https://mailarchive.ietf.org/arch/msg/hrpc/0T3hZobB5z7AwxrfLy4rGBtAtXs>
Subject: Re: [hrpc] I-D Action: draft-irtf-hrpc-guidelines-02.txt
X-BeenThere: hrpc@irtf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "mail@nielstenoever.net" <hrpc.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/hrpc>, <mailto:hrpc-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/hrpc/>
List-Post: <mailto:hrpc@irtf.org>
List-Help: <mailto:hrpc-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/hrpc>, <mailto:hrpc-request@irtf.org?subject=subscribe>
X-List-Received-Date: Fri, 07 Jun 2019 08:48:21 -0000

Thanks a lot for the review!

I think the new version incorporates all the suggestions. If you'd like
to track something specific, please find in-line comments below.

On 28/03/19 1:15 PM, Joseph Lorenzo Hall wrote:
>       o
>         3.2: "Currently three five methods"

Fixed.

>       o
>         3.2.2, could be clearer: "seeking to understand how it might
>         provide a different ordering of the network or society."

Rephrased to "When reviewing an Internet-Draft, specific human rights
impacts might become apparent by doing a close reading of the draft and
seeking to understand how it might affect networks or society."

>       o
>         3.3.5, internet doesn't want anything: "If the Internet wants to
>         be a global network of networks, the protocols should work with
>         languages apart from English and character sets apart from Latin
>         characters."

Changed to "If IETF wants the Internet to be a global network of networks"

>       o
>         3.3.6, double reference: "[RFC4941] This is why Privacy
>         Extensions for Stateless Address Autoconfiguration in IPv6 have
>         been introduced. [RFC4941]"

Removed the first instance of the reference.

>       o
>         3.3.6, I would reorder those questions

Done, hope it reads better now.

>       o
>         3.3.8, the example seems unfinished?

That particular line is from RFC1958. It does feel a bit awkward. Not
sure what the original intent was in RFC1958, but have changed it to
"most complex such as commit protocols for distributed databases." Hope
that works.

>       o
>         3.3.10, talks about "the internet" like "hip hop" (throughout
>         the document, but especially apparent here)

Fixed by rephrasing to "The Internet should be designed [...]"

>       o
>         3.3.14, is this referring to encrypted intermediate storage? "or
>         the implementation uses an encrypted store"

Seems like it. This particular line is from RFC7624.

>       o
>         3.3.15, how is the difference here between accuracy and
>         consistency being thought out? Does consistency have a
>         temporal/stateful aspect? "Does your protocol maintain, assure
>         and/or verify the accuracy of payload data? Does your protocol
>         maintain and assure the consistency of data?"

Removed the second question; changed to "integrity" in each instance.

>       o
>         3.3.15, the MITM description should probably be improved and
>         bulleted? Should it hint at inactive MITM and should we call it
>         something other than "man"?

Right, thanks. Changed it to "on-path attacker" as
draft-knodel-terminology-01 suggests.

>       o
>         3.3.16, "man-in-the-middle-attacks" -> "man-in-the-middle
>         attacks"

Removed that phrase.

>       o
>         3.3.16, "Bob can see the data did not come from Alice but from
>         Corinne." remove "but by Corinne" as that may not be true.

Fixed.

>       o
>         3.3.16, what about non-authenticity or knowing when to not ask
>         for evidence of authenticity? E.g., attestation of hardware
>         security devices like yubikeys may lock out people who use a
>         different brand (Vanguard or Fidelity does this now).

Good point. Have added this to the Explanation: "At the same time,
authentication should not be used as a way to prevent heterogeneity
support, as is often done for vendor lock-in or digital rights
management." Please let me know if you would like any changes here, or
know papers/documents that act as good references to read about this
problem (great if in the IETF context).

>       o
>         3.3.18, impacts bullet list broken

Fixed.

>       o
>         3.3.19, typo "Does you protocol"

Fixed.

>       o
>         5, looks like this should be a bullet list? 
> 

Fixed.

Thank you.
-GG.