Re: [apps-discuss] Last Call: <draft-ietf-appsawg-http-forwarded-06.txt> (Forwarded HTTP Extension) to Proposed Standard

Andreas Petersson <andreas@sbin.se> Tue, 10 July 2012 11:28 UTC

Return-Path: <andreas@sbin.se>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D784C21F86E5; Tue, 10 Jul 2012 04:28:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level:
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id auXTmqOtmwgZ; Tue, 10 Jul 2012 04:28:07 -0700 (PDT)
Received: from smtp.opera.com (smtp.opera.com [213.236.208.81]) by ietfa.amsl.com (Postfix) with ESMTP id 869A921F8533; Tue, 10 Jul 2012 04:28:05 -0700 (PDT)
Received: from hetzer (oslo.jvpn.opera.com [213.236.208.46]) by smtp.opera.com (8.14.3/8.14.3/Debian-5+lenny1) with ESMTP id q6ABSUcP027586; Tue, 10 Jul 2012 11:28:31 GMT
Date: Tue, 10 Jul 2012 13:28:25 +0200
From: Andreas Petersson <andreas@sbin.se>
To: SM <sm@resistor.net>
Subject: Re: [apps-discuss] Last Call: <draft-ietf-appsawg-http-forwarded-06.txt> (Forwarded HTTP Extension) to Proposed Standard
Message-ID: <20120710132825.5141babe@hetzer>
In-Reply-To: <6.2.5.6.2.20120709134136.0ad9ae18@resistor.net>
References: <20120709162848.23418.51856.idtracker@ietfa.amsl.com> <22B6DCC8-3BBF-4C64-876E-13ABFBE6CB2F@cdt.org> <6.2.5.6.2.20120709134136.0ad9ae18@resistor.net>
X-Mailer: Claws Mail 3.7.9 (GTK+ 2.24.6; i686-pc-linux-gnu)
Mime-Version: 1.0
Content-Type: multipart/signed; micalg="PGP-SHA1"; boundary="Sig_/x./DVWCrO2BOpqozsj9whkc"; protocol="application/pgp-signature"
Cc: IETF Discussion Mailing List <ietf@ietf.org>, apps-discuss@ietf.org
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 10 Jul 2012 11:28:08 -0000

On Mon, 09 Jul 2012 13:59:43 -0700
SM <sm@resistor.net> wrote:
> >Also, this statement in 8.3 is not really true and probably better left out:
> >
> >"Proxies using this extension will preserve the information of a
> >    direct connection, which has an end-user privacy impact, if the end-
> >    user or deployer does not know or expect that this is the case."
> 
> I suggest removing that statement.  The wording is not entirely 
> clear.  I read it as diluting end-user privacy impact.

I interpret it the other way around. 
It makes a deployer aware that there is also end user expectations
to take into considerations.
Removing it may work as well, but I think that less well reflects the
discussion on the apps-list.

> In Section 6.3:
> 
>    'To distinguish the obfuscated identifier from other identifiers,
>     it MUST have a leading underscore "_".'
> 
> I suggest removing the requirement and using "can".  The implementer 
> can decide what to put in that field.

I think that will make parsing harder, and give no benefit at all.

Cheers,
 Andreas