[Ideas] Public identity data

Tom Herbert <tom@herbertland.com> Fri, 22 September 2017 22:41 UTC

Return-Path: <tom@herbertland.com>
X-Original-To: ideas@ietfa.amsl.com
Delivered-To: ideas@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5AD7A13303F for <ideas@ietfa.amsl.com>; Fri, 22 Sep 2017 15:41:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.6
X-Spam-Level:
X-Spam-Status: No, score=-2.6 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_LOW=-0.7] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=herbertland-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sFMyqs4KoatH for <ideas@ietfa.amsl.com>; Fri, 22 Sep 2017 15:41:36 -0700 (PDT)
Received: from mail-qk0-x231.google.com (mail-qk0-x231.google.com [IPv6:2607:f8b0:400d:c09::231]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 61330132C32 for <ideas@ietf.org>; Fri, 22 Sep 2017 15:41:36 -0700 (PDT)
Received: by mail-qk0-x231.google.com with SMTP id s132so2389623qke.7 for <ideas@ietf.org>; Fri, 22 Sep 2017 15:41:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=herbertland-com.20150623.gappssmtp.com; s=20150623; h=mime-version:from:date:message-id:subject:to; bh=xdqFBjrXrYkfexltEWPNNq1KvWU18jSv42CBYfWcij8=; b=HORJ9uJIPVTacHtdwEFH9Bc1Nd2KEbFvIPFD39Vy9vQ86W5QGVM/T3WXl+PXKgynss FW9K0GyY5hOj0Kx9XsH0ujr0eXfpBtdKE67I6wtuyosh2a0YZRVIoDuA6e7xFPe/gfqd spoK0iOZCW0PXkYEXOCM1zon02V6rMWbuBlzfyz24r2viWAq/xHmvg7ifoidf7aUOspo Hc0SEUECnCThcdO3sF/tI1Knhe1oi8PM5Ykd5qkCnTGH3xO4Zp9uhn+B//t+jQvjq829 hJ+cPM5l605CV/Wujj2b/uGU3s73DptTZ5GXUkeE4iir9lxwNiO8255IMKfuioKrNte3 WPrw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:from:date:message-id:subject:to; bh=xdqFBjrXrYkfexltEWPNNq1KvWU18jSv42CBYfWcij8=; b=Sai64hDcLpcycqz2vrUE6rdsnWNT0nuzOU+AqbMRp0dnJNd+MPa+tNZ/rT5QJAQi8y ASUaoGR81ED0Q3wlZC5ft88dhCKz8diQ/o4/ocky+TTphL40YpQzOGfFwuvrJN0j/3Ll QVmWHauXLMKKMjRSgY+85nS6IzJsIJDhSIzG8Wy+ETzMOTEFKEtcqwfbj+GEi04/Amsw hbU6MthbItiSZ11zq/8OCP2dv9hV44nJZUmsGsg3wzc06TwUzU1jOpLQG2CYg02BoiTl +UMJvMA6lDjGAQa2Zj1GeWlyW+wEnpJ90oBjX68KY0rwYtWB9cFsSbfOWfw0eXAwewN9 W5tQ==
X-Gm-Message-State: AHPjjUjUpBweZ9C7CypYqKadjqERhVcEr/PwSpGEmHuJ3u+JbSUBXILz WCZW5VStQidc5BghE1AWnuNGgrfBvh1kfNy9X/hT7YFQ
X-Google-Smtp-Source: AOwi7QAjg1cAVsaY1f3LORJQos8qAnKdXKbIDrcL4POZ7EfzdXWT0AUgv4WoTzqYDxeAy80NbkA17nyRfLs/KoABmm8=
X-Received: by 10.55.113.67 with SMTP id m64mr916100qkc.51.1506120095262; Fri, 22 Sep 2017 15:41:35 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.237.61.196 with HTTP; Fri, 22 Sep 2017 15:41:34 -0700 (PDT)
From: Tom Herbert <tom@herbertland.com>
Date: Fri, 22 Sep 2017 15:41:34 -0700
Message-ID: <CALx6S36ZhVr_+0LK2jGCdGzG=3Ru3Qwg=x8+8Sm3RPsyV0wUSA@mail.gmail.com>
To: ideas@ietf.org
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/ideas/li_8o6ntxeCQlwY5nO0Kr6sm5yk>
Subject: [Ideas] Public identity data
X-BeenThere: ideas@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Discussions relating to the development, clarification, and implementation of control-plane infrastructures and functionalities in ID enabled networks." <ideas.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ideas>, <mailto:ideas-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ideas/>
List-Post: <mailto:ideas@ietf.org>
List-Help: <mailto:ideas-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ideas>, <mailto:ideas-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 22 Sep 2017 22:41:37 -0000

Hello,

>From draft-ccm-ideas-identity-use-cases-01 security:

"The IDy policy SHOULD be limited in scope and only public part of the
policy SHOULD be sharable to other GRIDS Providers.  Storage and
Security of the data itself at the GRIDS-provider is critical.  A
separate threat analysis for security aspects of private/public
portions of the IDy data SHOULD be done once the architecture is
evolved."

What part of identity data is considered public? In particular is the
mapping of identifier to identity public data?

Thanks,
Tom