Re: [Id-event] Erik Kline's No Objection on draft-ietf-secevent-http-push-12: (with COMMENT)

Mike Jones <Michael.Jones@microsoft.com> Thu, 25 June 2020 04:50 UTC

Return-Path: <Michael.Jones@microsoft.com>
X-Original-To: id-event@ietfa.amsl.com
Delivered-To: id-event@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DDB433A0061; Wed, 24 Jun 2020 21:50:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.101
X-Spam-Level:
X-Spam-Status: No, score=-2.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Xh1iETnefdHd; Wed, 24 Jun 2020 21:50:28 -0700 (PDT)
Received: from NAM06-DM3-obe.outbound.protection.outlook.com (mail-eopbgr640109.outbound.protection.outlook.com [40.107.64.109]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D8F203A005F; Wed, 24 Jun 2020 21:50:27 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=KUAJUUQLdyhEASReoonKU3sIrKnvOYWcZljePzYFJ69yV1tec1yjhCSmfnQS0Ad+4AkfsE/OF15WbiA7HPX6GRD0EJhF+adnkPgGQAfzdYtnAsEFa/QZJqyqDAbWYKHLCP0dYQHkKr4vu8rbKpDELs/3zRNnH4ONHsaCkPGTOvP8DeT489I+kS5ekcL87xOE6830r3cx2VcSyu1JQ9u5t0168+5ArLwpPTLTefAEZco9enUvv4pb28ePuZ9k4MAqGtX0efUK28OnI7yBqQz62NjP7hJ2gqA/HYALzmsrfuv6zc1dBalTym/w8CvL/gLelaR1l4sUBRjfACpzk96nEQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=6a6FvPO0OZ+N5j2u3P6mAEpXxlcR0XWg8UMgK7Opv6g=; b=e8et8+nBL5YTCudsXgtx+6CaX/7NrVTDNSfNy40zt6GRVzkM331bBww4LuxFw3W+496DDaW7ZTLu7WJR+SuaPfErVhqwqEitHOp7ud3Etnm3e2PcEnLVs6BZ3qfwqz5/KIjUMSSHtzJym0q1qmB/npQKQNyd06EmTMxk/mkAQ4MtkMPbb37TM+C+OnjJxgbAei1cnHEh9hmsAF7upyKPHL7+8fyl3U/DHclTh51stvu3PpPw8Z9Nsxhay/FosNVz735BypgCDysub99ndT3snON7WiR7KLqVKeYAOWn+cj6oVYZdN8Ln/OEQaS/SEhzaABbW5wOpCiR/yB6zNG+cuQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=microsoft.com; dmarc=pass action=none header.from=microsoft.com; dkim=pass header.d=microsoft.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=6a6FvPO0OZ+N5j2u3P6mAEpXxlcR0XWg8UMgK7Opv6g=; b=hgGBE6ovXy0fH1dwFD48FW8VqpFSanPOspHroNQwc0gvSaumyjbMv2wKq7h6I2UZQo6oSjsIfjmQCEUcvw1w1NTQe6BbHdru47urbDgB24R+NgoxV88m0fdMKTZ/9V+RHSZW0VfvIhWSbZrahvaaqVqeOrEEYFqHVZHn4OLlBRE=
Received: from CH2PR00MB0678.namprd00.prod.outlook.com (2603:10b6:610:a9::23) by CH2PR00MB0828.namprd00.prod.outlook.com (2603:10b6:610:6f::19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3170.0; Thu, 25 Jun 2020 04:50:22 +0000
Received: from CH2PR00MB0678.namprd00.prod.outlook.com ([fe80::3c44:1c81:e278:edb0]) by CH2PR00MB0678.namprd00.prod.outlook.com ([fe80::3c44:1c81:e278:edb0%2]) with mapi id 15.20.3173.000; Thu, 25 Jun 2020 04:50:22 +0000
From: Mike Jones <Michael.Jones@microsoft.com>
To: Erik Kline <ek.ietf@gmail.com>, The IESG <iesg@ietf.org>
CC: "draft-ietf-secevent-http-push@ietf.org" <draft-ietf-secevent-http-push@ietf.org>, "secevent-chairs@ietf.org" <secevent-chairs@ietf.org>, "id-event@ietf.org" <id-event@ietf.org>, Yaron Sheffer <yaronf.ietf@gmail.com>
Thread-Topic: Erik Kline's No Objection on draft-ietf-secevent-http-push-12: (with COMMENT)
Thread-Index: AdZKrB088MbejArcR1eSk4d/trYsSA==
Date: Thu, 25 Jun 2020 04:50:21 +0000
Message-ID: <CH2PR00MB067856036194553F9F4003A1F5920@CH2PR00MB0678.namprd00.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ActionId=02de24d1-c6f1-427d-914b-60712a11444e; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ContentBits=0; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=true; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Method=Standard; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=Internal; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2020-06-25T04:43:21Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47;
authentication-results: gmail.com; dkim=none (message not signed) header.d=none;gmail.com; dmarc=none action=none header.from=microsoft.com;
x-originating-ip: [50.47.87.252]
x-ms-publictraffictype: Email
x-ms-office365-filtering-ht: Tenant
x-ms-office365-filtering-correlation-id: 190d90d1-e25e-4965-274d-08d818c3449d
x-ms-traffictypediagnostic: CH2PR00MB0828:
x-microsoft-antispam-prvs: <CH2PR00MB0828603DD290439BE68C1EC1F5920@CH2PR00MB0828.namprd00.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8882;
x-forefront-prvs: 0445A82F82
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: r7c+uM4Su5MtctdVvd+JoqhCFz391FAbtNUXhv9xwGxfcX6t9TH9XttHTasMvxrcdHyMWLWCglL9qb17fBKlmdFRkU31/frBUf8+nvLdl+tQRgCZCFe0zNCxsh8z6ozbcoiWdpoQqszjNIjU3dISxnZxKhHy7RvXNdDfweS4Spn6Rbm03IaVlu6KiHyatJoj8vhnFbML2euGLgpSNwi5jhmQfAqAanwsokXCrdlPsTyz05x0c2FmybysWVm0/I/mseqYUkQzEA9E0qFchUIX0plmffWiJ6HG38L6reW/lBK6zPSeuwg6seVbus2PcV6uhS6txiTB10oHZDkdk1HJL+hhbDG/QFoeyHjwZEXC0Llo/iVY+D6CYvS5YlM1FhSFM70NNE1M+D8UHag6CtsLnA==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CH2PR00MB0678.namprd00.prod.outlook.com; PTR:; CAT:NONE; SFTY:; SFS:(4636009)(39860400002)(396003)(376002)(366004)(346002)(136003)(66556008)(54906003)(5660300002)(316002)(8990500004)(33656002)(86362001)(4326008)(82950400001)(66476007)(478600001)(82960400001)(110136005)(966005)(10290500003)(52536014)(76116006)(55016002)(7696005)(66446008)(64756008)(66946007)(9686003)(71200400001)(2906002)(83380400001)(26005)(53546011)(8676002)(8936002)(186003)(6506007); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata: 9gj3a1KIbUzHJodNUz+gQtR/nZek/E/vNjd9pmO1xHmHw88ZFb8m2oGksBdiUyO7Z8WhoEiBNctbdmP/RgN3xCEfT8fhcl5Xua0RXBmnBUYXFPEpDFpn3nHWeDWKf4tbnONpcAn1j6Mk22vR7VsWytfIFPv8AFRHtXHqAIyj9ImJZ6JK71xL+tVGxkB2wPcH6ln+agDPxNt1rVw4rV70/2FyNgAbExT0HpgYzDxeZIAszGMUf/WpBj30CRMNVJSEICGPn8G6vZq0nP0QOiqYtObfs2xr5q/3YxHuP1a5kfo+fNoEQ41t+nc6Ys+6Qp9RwUYKkecsWTijS52wpNsZTQbQF21c7FKYMk/Lnzenq3HEmArSn/w3l3sI2DntAtJfv4qfwVpl1qvQGqkFIHtzjYPSxvCo1oHBtqDu4O8rmLGoU+HwHO7a2clJCSg4pqAs2x5jiCkZnx0C/025F5qk5/7FDMy1E7k4CIca9AXR35I=
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CH2PR00MB0678.namprd00.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 190d90d1-e25e-4965-274d-08d818c3449d
X-MS-Exchange-CrossTenant-originalarrivaltime: 25 Jun 2020 04:50:22.0699 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: PXI7AbrEVZUrUHYH9c34NYD54GA0ll2Z6jBZ9vG2vQ64UiufdbrUAdCnGclNJAcMitxiHX6Gl2nK440ncsFhsQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CH2PR00MB0828
Archived-At: <https://mailarchive.ietf.org/arch/msg/id-event/Qog3i_A6DqXuwV5EG9t4k7Kt8gw>
Subject: Re: [Id-event] Erik Kline's No Objection on draft-ietf-secevent-http-push-12: (with COMMENT)
X-BeenThere: id-event@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "A mailing list to discuss the potential solution for a common identity event messaging format and distribution system." <id-event.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/id-event>, <mailto:id-event-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/id-event/>
List-Post: <mailto:id-event@ietf.org>
List-Help: <mailto:id-event-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/id-event>, <mailto:id-event-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 25 Jun 2020 04:50:30 -0000

Thanks for your review, Erik.  https://tools.ietf.org/html/draft-ietf-secevent-http-push-13 is intended to address your comments.  Detailed replies are inline, prefixed by "Mike>".

-----Original Message-----
From: Erik Kline via Datatracker <noreply@ietf.org> 
Sent: Saturday, June 20, 2020 11:09 PM
To: The IESG <iesg@ietf.org>
Cc: draft-ietf-secevent-http-push@ietf.org; secevent-chairs@ietf.org; id-event@ietf.org; Yaron Sheffer <yaronf.ietf@gmail.com>; yaronf.ietf@gmail.com
Subject: Erik Kline's No Objection on draft-ietf-secevent-http-push-12: (with COMMENT)

Erik Kline has entered the following ballot position for
draft-ietf-secevent-http-push-12: No Objection

When responding, please keep the subject line intact and reply to all email addresses included in the To and CC lines. (Feel free to cut this introductory paragraph, however.)


Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
for more information about IESG DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-secevent-http-push/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

[[ questions ]]

[ section 2.4 ]

* If the SET Issuer is not recognized as an issuer the recipient likes, what
  err string is best?  Most of the listed codes seem plausible in some small
  way, which lead me to think that either I'm confused or just a small bit of
  text might be added to one of the entry's description.

Mike> Thanks for pointing out this ambiguity.  I added two new error codes, invalid_issuer and invalid_audience, to address specific error cases.

[ section 5.4 ]

* Is rate-limiting problematic transmitters also a reasonable approach?

Mike> I added a description of this approach.

[ section 5.5 ]

* Would it not also suffice to record in storage the relevant information from
  from the transmission context?

Mike> I added a description of this approach.

				Thanks again,
				-- Mike