Re: [Id-event] WG Last Call for draft-ietf-secevent-http-poll-03 - until Aug. 28

Marius Scurtescu <marius.scurtescu@coinbase.com> Thu, 29 August 2019 04:39 UTC

Return-Path: <marius.scurtescu@coinbase.com>
X-Original-To: id-event@ietfa.amsl.com
Delivered-To: id-event@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D5617120288 for <id-event@ietfa.amsl.com>; Wed, 28 Aug 2019 21:39:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=coinbase.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0e2KCn2kbGRq for <id-event@ietfa.amsl.com>; Wed, 28 Aug 2019 21:39:20 -0700 (PDT)
Received: from mail-pf1-x433.google.com (mail-pf1-x433.google.com [IPv6:2607:f8b0:4864:20::433]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EA71512026E for <id-event@ietf.org>; Wed, 28 Aug 2019 21:39:19 -0700 (PDT)
Received: by mail-pf1-x433.google.com with SMTP id y200so1191998pfb.6 for <id-event@ietf.org>; Wed, 28 Aug 2019 21:39:19 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=coinbase.com; s=google; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=0zLur7k1NJ6ULqGXPg3tPbHQNderwtg6ZbKy+OvM67s=; b=aIS9VkHOqrfNN+iPlRtXSThSu3Clxpjj4hH8S4fA9hwNw8tLFenYQs7et3FnVSF062 FI3ZgPwJDE3Ydkepy5xlo3ihccU4dmnblPsYOtkRPA4B/P1O9+WESdflQXzOuoMCnjM/ IcNHluAnhe3VYzhNaleqDZO80Nn0ymARcgaAU=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=0zLur7k1NJ6ULqGXPg3tPbHQNderwtg6ZbKy+OvM67s=; b=tG2G4EgEfaE9OfOkgvVIo2yWpzVyQrD3aGHyafsB75fcqEURmeI4HxQ6ZNCmFB3rs2 7u8Q/Ij7Vm/5sljFN7qo96OaKTyr4Q5UmquTokWS2yCvmhyHyCaQj699bc7Rstzjd4VF DjXU9ADHfdU7REdpBh1ZHT/o41Xa9Fc9ydcHJK6pP/Ox1HSrdJlgWOGiT0WXU33YVP43 4PbABS3t2T0Gv/f/IlVCobrXwXMPFFlEuEdg/QiMo6YYNalxkl72gOramVTJdn3pgk4J QpJlMu45fqnjdXh/oGlZT5EfF2MMkgB2dgwOS1LadKs2onHwG61yFcqB/ozhuE/3XZnW zleA==
X-Gm-Message-State: APjAAAW1qmZGft5w/f/kbRyeKtNxDjG98+ysHvCJnR46rpaKrqPpPiSc Bxsllira/ToQTTLxaESrQ0ajhr4Ew4s3gbN5Ck2Bmw==
X-Google-Smtp-Source: APXvYqyJnF6OAVVGmFdH4DSW/CylnkUBK1oReC9dF3khd/dXrlsxTD14W3HgDcEoY5u00UOgrJC9IVmZbyIJKqCQWNQ=
X-Received: by 2002:a17:90a:fe07:: with SMTP id ck7mr7637123pjb.68.1567053559338; Wed, 28 Aug 2019 21:39:19 -0700 (PDT)
MIME-Version: 1.0
References: <8ea1d476-f5b4-f21c-f3d7-c01d699a1510@gmail.com> <BYAPR00MB0567FAC45376CAA9F74E58E2F5AC0@BYAPR00MB0567.namprd00.prod.outlook.com> <CAOJhRMbmkfuZCGqzJMVUNRfEeeJQvu77At6P1S3HscNidVgwuA@mail.gmail.com> <CA+k3eCSCPFYzHiBkdrrv6T_tHRtBL9ioB+fcN-2-0Nx0kasrVA@mail.gmail.com> <FC1372C9-5FD0-4A16-B643-10856001DC56@cisco.com> <fe91d016-b1ad-6793-039e-3e680bf38666@gmail.com> <CAD9ie-s0Y0UJRP6=mMnusLuMstZ89bZiVtHRXs9LYii8qA3UQA@mail.gmail.com> <E752FE11-2B25-41D1-863F-9104099A6B08@amazon.com>
In-Reply-To: <E752FE11-2B25-41D1-863F-9104099A6B08@amazon.com>
From: Marius Scurtescu <marius.scurtescu@coinbase.com>
Date: Wed, 28 Aug 2019 21:39:08 -0700
Message-ID: <CABpvcNuBbzCJDJh=-3wtUE-p8SO7ao=7hR13mS70rZD0YJqUyA@mail.gmail.com>
To: "Richard Backman, Annabelle" <richanna=40amazon.com@dmarc.ietf.org>
Cc: Dick Hardt <dick.hardt@gmail.com>, Yaron Sheffer <yaronf.ietf@gmail.com>, Adam Dawes <adawes=40google.com@dmarc.ietf.org>, Mike Jones <Michael.Jones=40microsoft.com@dmarc.ietf.org>, Brian Campbell <bcampbell=40pingidentity.com@dmarc.ietf.org>, "Morteza Ansari (moransar)" <moransar@cisco.com>, SecEvent <id-event@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000bfd05805913a16f0"
Archived-At: <https://mailarchive.ietf.org/arch/msg/id-event/VxPa-2Gn5hToSP43oVczpWzxrTY>
Subject: Re: [Id-event] WG Last Call for draft-ietf-secevent-http-poll-03 - until Aug. 28
X-BeenThere: id-event@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "A mailing list to discuss the potential solution for a common identity event messaging format and distribution system." <id-event.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/id-event>, <mailto:id-event-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/id-event/>
List-Post: <mailto:id-event@ietf.org>
List-Help: <mailto:id-event-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/id-event>, <mailto:id-event-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 29 Aug 2019 04:39:23 -0000

I support the publication of this draft.

On Wed, Aug 28, 2019 at 4:44 PM Richard Backman, Annabelle <richanna=
40amazon.com@dmarc.ietf.org> wrote:

> On my latest read-through I noticed a couple items that need to be
> addressed prior to publication:
>
>
>
>    1. The draft currently forbids static Bearer tokens (§4.4.1: “Bearer
>    tokens MUST have a limited lifetime…). There are legitimate use cases for
>    static tokens when dealing with less sophisticated clients/services. I
>    suggest changing the MUST to a SHOULD, or indicating the guidance applies
>    to dynamically generated tokens.
>
>    2. The draft does not describe error responses from the SET
>    Transmitter, e.g., in response to a malformed poll request. This requires a
>    separate set of error codes, since the existing ones are specific to SET
>    reception/processing errors. Additionally, §2.5 must be amended to allow
>    the SET Transmitter to immediately return an error response even when long
>    polling is requested by the SET Receiver.
>
>
>
> --
>
> Annabelle Richard Backman
>
> AWS Identity
>
>
>
>
>
> *From: *Id-event <id-event-bounces@ietf.org> on behalf of Dick Hardt <
> dick.hardt@gmail.com>
> *Date: *Friday, August 23, 2019 at 11:41 AM
> *To: *Yaron Sheffer <yaronf.ietf@gmail.com>
> *Cc: *Adam Dawes <adawes=40google.com@dmarc.ietf.org>, Brian Campbell
> <bcampbell=40pingidentity.com@dmarc.ietf.org>, "Morteza Ansari
> (moransar)" <moransar@cisco.com>, SecEvent <id-event@ietf.org>, Mike
> Jones <Michael.Jones=40microsoft.com@dmarc.ietf.org>
> *Subject: *Re: [Id-event] WG Last Call for
> draft-ietf-secevent-http-poll-03 - until Aug. 28
>
>
>
> Reminder per Yaron's note below.
>
>
>
> On Thu, Aug 15, 2019 at 9:47 PM Yaron Sheffer <yaronf.ietf@gmail.com>
> wrote:
>
> Thank you all for your support, but please use this opportunity to
> actually review the draft (even if you've read it in the past) and
> provide comments. Even if the draft is very good, it is probably not
> perfect.
>
> Thanks,
>         Yaron
>
> On 15/08/2019 15:07, Morteza Ansari (moransar) wrote:
> > I support publishing this draft.
> >
> > *From: *Id-event <id-event-bounces@ietf.org> on behalf of Brian
> Campbell
> > <bcampbell=40pingidentity.com@dmarc.ietf.org>
> > *Date: *Thursday, August 15, 2019 at 1:11 PM
> > *To: *Adam Dawes <adawes=40google.com@dmarc.ietf.org>
> > *Cc: *Yaron Sheffer <yaronf.ietf@gmail.com>, Mike Jones
> > <Michael.Jones=40microsoft.com@dmarc.ietf.org>, SecEvent <
> id-event@ietf.org>
> > *Subject: *Re: [Id-event] WG Last Call for
> > draft-ietf-secevent-http-poll-03 - until Aug. 28
> >
> > +1
> >
> > On Thu, Aug 15, 2019 at 2:00 PM Adam Dawes
> > <adawes=40google.com@dmarc.ietf.org
> > <mailto:40google.com@dmarc.ietf.org>> wrote:
> >
> >     I support the publication of this draft.
> >
> >     On Thu, Aug 15, 2019 at 12:52 PM Mike Jones
> >     <Michael.Jones=40microsoft.com@dmarc.ietf.org
> >     <mailto:40microsoft..com@dmarc.ietf.org
> <40microsoft..com@dmarc..ietf.org>>> wrote:
> >
> >         I support the publication of this draft.
> >
> >                                          -- Mike
> >
> >         -----Original Message-----
> >         From: Id-event <id-event-bounces@ietf.org
> >         <mailto:id-event-bounces@ietf.org>> On Behalf Of Yaron Sheffer
> >         Sent: Wednesday, August 7, 2019 6:29 AM
> >         To: SecEvent <id-event@ietf.org <mailto:id-event@ietf.org>>
> >         Subject: [Id-event] WG Last Call for
> >         draft-ietf-secevent-http-poll-03 - until Aug. 28
> >
> >         This is to announce working group last call on this draft
> >         (
> https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-secevent-http-poll%2F&amp;data=02%7C01%7CMichael.Jones%40microsoft.com%7C21e8c49267744dff8acd08d71b3b4550%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637007813697234665&amp;sdata=GpeOhfKoVYD5I%2F1n9ebDVKV%2F%2Bl0xNp9c%2BRfddOaxUuM%3D&amp;reserved=0
> ).
> >
> >
> >         Please send your comments to the list.. Even if you are perfectly
> >         happy
> >         with the draft, please let us know that you support its
> publication
> >         as-is by posting to the list.
> >
> >
> >         Because of the summer holidays, this last call is open for 3
> weeks,
> >         until Aug. 28.
> >
> >
> >         Thanks,
> >
> >
> >               Dick and Yaron
> >
> >         _______________________________________________
> >         Id-event mailing list
> >         Id-event@ietf.org <mailto:Id-event@ietf.org>
> >
> https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Fid-event&amp;data=02%7C01%7CMichael.Jones%40microsoft.com%7C21e8c49267744dff8acd08d71b3b4550%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637007813697234665&amp;sdata=rEcwirRhx4WvVxkdFHEAuoXME58ycYxQWod0tAzlT50%3D&amp;reserved=0
> >         _______________________________________________
> >         Id-event mailing list
> >         Id-event@ietf.org <mailto:Id-event@ietf.org>
> >         https://www.ietf..org/mailman/listinfo/id-event
> <https://www.ietf.org/mailman/listinfo/id-event>
> >
> >     _______________________________________________
> >     Id-event mailing list
> >     Id-event@ietf.org <mailto:Id-event@ietf.org>
> >     https://www.ietf.org/mailman/listinfo/id-event
> >
> >
> > */CONFIDENTIALITY NOTICE: This email may contain confidential and
> > privileged material for the sole use of the intended recipient(s). Any
> > review, use, distribution or disclosure by others is strictly
> > prohibited..  If you have received this communication in error, please
> > notify the sender immediately by e-mail and delete the message and any
> > file attachments from your computer. Thank you./*
> >
>
> _______________________________________________
> Id-event mailing list
> Id-event@ietf.org
> https://www.ietf.org/mailman/listinfo/id-event
>
> _______________________________________________
> Id-event mailing list
> Id-event@ietf.org
> https://www.ietf.org/mailman/listinfo/id-event
>