Re: TLS access Re: Call for Community Feedback: Retiring IETF FTP Service

tom petch <daedulus@btconnect.com> Wed, 09 December 2020 13:00 UTC

Return-Path: <daedulus@btconnect.com>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BF1323A163F for <ietf@ietfa.amsl.com>; Wed, 9 Dec 2020 05:00:56 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.902
X-Spam-Level:
X-Spam-Status: No, score=-1.902 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, MSGID_FROM_MTA_HEADER=0.001, NICE_REPLY_A=-0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=btconnect.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0b81MGkOxPk4 for <ietf@ietfa.amsl.com>; Wed, 9 Dec 2020 05:00:54 -0800 (PST)
Received: from EUR04-VI1-obe.outbound.protection.outlook.com (mail-eopbgr80137.outbound.protection.outlook.com [40.107.8.137]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6CEE63A163C for <ietf@ietf.org>; Wed, 9 Dec 2020 05:00:54 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=IaOXX4Sn+5jVEVjx6wb/T+fADwiM4iRvjc0PLeENZ0aGRQt4xcVjkpVVGZE8UutGLBC1xNHt6rFxhMDKkV3XgHjlEsiH+GdSFPgLuiMUsH8D9V6N7WkdM2l6wuWj8DZFEOxJOMLIGxJHZcBHMavkGhE4wM0NE1ea6RPtxKIJeklbczdziW0reZhr+aGImcC0ASDAORW8JEDGcJY1iff8ftakKSsAUiaFK5jDd4PvGI/6Gi+c1FZFinwnxprxAtzYrZRBpcofy1Ih3NxZrOgDfvut7//aWX0N0XrJoc4fCFLR0CAhcwykYI0lmkJ6+3T5+rbNIALnilKEtawEvmgHUg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=JdblZlH7U+N7bToEu3Pho48fcwb3BZHD3CjoD0BPpI0=; b=MtxbVcGjASwtH2GNAp6OfEHgdO+H2tvgvrgYaHegcCTB2KTKf3rMRTI8RcdX+hp1dYaE9IiC+j+DfKJEfw5Ty+Df5RWbIut5qDr2uqHP38Ur2bsOHyMQMooQua81ebQVJ4N1Ic3WUoVRu9MpURt7Zzv3JDojP7o+pZFgM2Hxv2e3lKODw16Z/tqMupV4h1Wv91+FaPAYJptmNbvd95xXiASyzErRxHrsuI9GF17mlzFYhc56NGAoI9eNH66YH0QrD2kW5IX4zeC1GdzlmLCh8sUxQLac0cDurmzdT1fe7haJwf9NvTSsm1bZWcEnsVkoHYZQXjG8DPnmbr5Sr6gs4w==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=btconnect.com; dmarc=pass action=none header.from=btconnect.com; dkim=pass header.d=btconnect.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=btconnect.onmicrosoft.com; s=selector2-btconnect-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=JdblZlH7U+N7bToEu3Pho48fcwb3BZHD3CjoD0BPpI0=; b=MWnrtACWwLr39QKiH0j/v6VMpwEATHXgyu0MtPRANuT9FoXO8neEqmryEp/m8MzOKaJ0aROVI/DiJGtcCFdDtQUiKKAQCwhXZyxv21EkpfRj6oWk4dYbP30QhJ7jdlZIZTo30vh1l0z8yhHslA8uxoiSgK9CNh3tr715b8kZSmg=
Authentication-Results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=btconnect.com;
Received: from VI1PR07MB6704.eurprd07.prod.outlook.com (2603:10a6:800:18b::8) by VI1PR07MB4190.eurprd07.prod.outlook.com (2603:10a6:802:64::27) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3654.7; Wed, 9 Dec 2020 13:00:52 +0000
Received: from VI1PR07MB6704.eurprd07.prod.outlook.com ([fe80::6407:6ea2:f517:eeae]) by VI1PR07MB6704.eurprd07.prod.outlook.com ([fe80::6407:6ea2:f517:eeae%7]) with mapi id 15.20.3654.013; Wed, 9 Dec 2020 13:00:51 +0000
Subject: Re: TLS access Re: Call for Community Feedback: Retiring IETF FTP Service
To: Roman Danyliw <rdd@cert.org>, Russ Housley <housley@vigilsec.com>, IETF <ietf@ietf.org>
References: <af6ab231024c478bbd28bbec0f9c69c9@cert.org> <a02e15f2-34fb-4124-7ba0-c0ee0070b39f@network-heretics.com> <6a29096e-c76e-9bde-388c-bf411b235346@nostrum.com> <6ff3c8a8-57c9-a278-51ce-ce24fd2dfc0e@network-heretics.com> <01RS3W7DNPHA005PTU@mauve.mrochek.com> <7057e29825514008a06b749cb5c476f6@cert.org> <01RS3Y1AZ65A0085YQ@mauve.mrochek.com> <365930470c214fbd982da633c69b3b67@cert.org> <5172d442-6bb0-0e11-81fb-3da6e828166e@network-heretics.com> <c7afe761c0264c1daa533cec1895f1af@cert.org> <2088e835-86ef-1896-d307-fc4433ec3b65@network-heretics.com> <37e993ad382c423b90e11b4ca06a307e@cert.org> <f8e0951c-d655-31e4-63bc-357b1085b358@network-heretics.com> <5FB667B1.8000702@btconnect.com> <ee4a65123d7a4011be9b04b3408d1bea@cert.org> <1049FA76-DCB8-4735-8947-6D5CC0144C9F@akamai.com> <51819065ed01416181f85e333720d4d1@cert.org> <169D0283-F253-4E08-B50E-6E86BE333EBC@akamai.com> <46160C79-FAA7-40B1-A00A-0DAAF1470130@vigilsec.com> <8f49f6f057804c2e9bc199df5b7e7ec6@cert.org>
From: tom petch <daedulus@btconnect.com>
Message-ID: <5FD0CA80.7010507@btconnect.com>
Date: Wed, 09 Dec 2020 13:00:48 +0000
User-Agent: Mozilla/5.0 (Windows NT 5.1; rv:38.0) Gecko/20100101 Thunderbird/38.5.0
In-Reply-To: <8f49f6f057804c2e9bc199df5b7e7ec6@cert.org>
Content-Type: text/plain; charset="windows-1252"; format="flowed"
Content-Transfer-Encoding: 7bit
X-Originating-IP: [86.146.121.140]
X-ClientProxiedBy: LO2P265CA0289.GBRP265.PROD.OUTLOOK.COM (2603:10a6:600:a5::13) To VI1PR07MB6704.eurprd07.prod.outlook.com (2603:10a6:800:18b::8)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
Received: from [192.168.1.65] (86.146.121.140) by LO2P265CA0289.GBRP265.PROD.OUTLOOK.COM (2603:10a6:600:a5::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.20.3654.12 via Frontend Transport; Wed, 9 Dec 2020 13:00:51 +0000
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: b5c33846-dde7-4307-6a16-08d89c42750d
X-MS-TrafficTypeDiagnostic: VI1PR07MB4190:
X-Microsoft-Antispam-PRVS: <VI1PR07MB4190FE015680F50334E4C8D5C6CC0@VI1PR07MB4190.eurprd07.prod.outlook.com>
X-MS-Oob-TLC-OOBClassifiers: OLM:10000;
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: lqG1M7Kq+qntz1r03XASM2AB0cIM1peWJo29nkiapNb+Q4LGwU5yPZL1n3kNkvmBT7xoMHmu/+c5c20EbZVt9C9dZrmBBW9557Gfs6VediPgqgkC7X/XWQ778jk9b5RJ3QDzTqR4WpjFoJAg/I3GiE0oPc1Ens2H2XDhpFMQoPEye+bi1l086EtzkfeQmHjDOxCxaNUZz/2UuwqT46e2XE2MBz7QP0VTknHbAu8GVN4ZbVNeNkzXAsWyogUJT5eHjna8ZS6MGzoce1+HY8qJR7UslAgeehgFB5Hux9vV42YKu54au+JrauO14E5GLERMc0nnRQOQQbNuuP71qXeVIEoFX9Pql9AovssJMXKmNAOz3IGKLf3S5ks5iB6yAQE+KvuJ2HDqGHIWKD1++aPoCQ==
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:VI1PR07MB6704.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(346002)(136003)(366004)(376002)(186003)(87266011)(33656002)(53546011)(26005)(52116002)(45080400002)(8676002)(110136005)(16576012)(8936002)(83380400001)(66946007)(6486002)(966005)(66574015)(2616005)(956004)(5660300002)(508600001)(86362001)(66556008)(16526019)(6666004)(66476007)(36756003)(2906002); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData: 72gneTUhFTYnbbn9SNOqSsKuGHuq4hstEhbOvGp4OVzyPhHFpOpZMRCR/1Lwrt37XF47UvwmZDZSWTJIiGJBaafDDTWBceWpocLoMJ4uimSWBrzx2Qfyff68E6OuOvjW+oBysRQuf5g8ISi3oCGW9xQOkOEPhyQjyzc6SwiG4FJVRgxzpAPHahG5vBQSI87g6P3/UMKE4D4CBelgqZ3Kjizm7gjFqG2lDlA1EIIG+e41HEy53bwSAfCf9kdn6bRaFL/mdrphWF6fzeFg0F2sRmtc+QheBWpYb4aqdKvZJogkazg6Wmtn3MyFzfBRCLIho8qivPtOFu41FnO76sq9qwIQIKg27l89sqB08Pv5iEInbE65pReLbMgO1iCtYP+/Qfx8ub0Uk7nyser8zbHYdJIeKueFcZPUy67nX2NBqDyoRdkkNPV1q304JSN1FcHdKamdWkk4+WZZkaW9a9SqWJbkvVY2/SkhbBY1fJmUUB74S/SmnnGfJ/GWhWkK8LrKlDLjyAaBho2pdL7RfhxCHG3n54eKy8a+FKMYNMF69p/BjcHsIMoWi6HJYGmmDhOmeyPVBpRXMocLcv9NgsuWvZ3OvYtQ9qbMgz4VaKITd7cGZiSPZnJivW/POLQh0smUdPK+U9tMLdFzkbX+TkOPLnsq1t2JsGBYA5iiub12jXw9I+cSKlThEQxC9iMBRNipxosoQQLEL9ooAsjGyya20Lr+xu1pk9r3WcUX9W65tfD6REZ3pY8DHiqX4TZ/RujXRYklagZsAFlhUtSzaEC5BguWGG+fijq3CaDa5+8G4mAL7uu3OB3F3IawGMfIOXng2bZuqxNexnicRCKA7tkTtBiiDLv7gtbnQiigRkD5TzoDRltwKpg6908CBRD3zxUWNkLRg2xR+r2KW+yiVGRROhXH4uraNQYNsGZE7PcZwMAwkADVvurfEckVkBbldQ2fxjnsi2XozeehQM2i3n7hfdSVtOcj9E9HpKbOTKmZ47HrPLE1P0orV5JpyDBwhTSK
X-OriginatorOrg: btconnect.com
X-MS-Exchange-CrossTenant-AuthSource: VI1PR07MB6704.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 09 Dec 2020 13:00:51.7477 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: cf8853ed-96e5-465b-9185-806bfe185e30
X-MS-Exchange-CrossTenant-Network-Message-Id: b5c33846-dde7-4307-6a16-08d89c42750d
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: X1BPFKUDVEcYXcQgLDwFyhjwgwL5B+PscaMru3fQ6Ux4IbP4kQ/Kcf41scB99qOX6MV/OLRkskomj0OHDDrBhQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR07MB4190
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf/dm1N8557G6fDmn369grt0LBBHpU>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 09 Dec 2020 13:00:57 -0000

On 04/12/2020 15:18, Roman Danyliw wrote:
> Hi!
<snip>

> To contextualize access to this non-authoritative data set via FTP, I've provided another chart to the "12 Days in the life of an IETF FTP server" at https://docs.google.com/document/d/1JAXspeaMWFl8ML3hSezFSM0VsJsHI4uyDlQ2dHip8jo/edit#
>
> Access to RFCs is 27% of all FTP traffic and represents 37% of all unique IP addresses.
>
> This new chart in the "What information are the users requesting?" section provides a distribution of requests and IP address across the top level directories.  A few highlights:
> * 64% of all requests are for either an I-D or RFC (or 60% of all unique IP addresses, using no aggregation)
> * the next most popular category (28%) is /ietf which contains historic charter and minute information of WGs; most of the usage is syncing the directory
> * all other directories constitute < 8% of usage
> * multiple top-level directories (4) had only a single IP address access it in the sample period

Roman

I have belatedly accessed your Google document and query some of the 
interpretation.

It is unfortunate that it relates to August since I cannot recall what I 
was doing then and that is prime holiday season when not much happens. 
If you had chosen the week in July before the submission window closed 
for IETF108 you might have got much larger figures.

However, I wonder if I have been missed entirely (perhaps along with 
many others).  Being a small business I am behind an ISP-provided NAPT. 
  I could be sharing that NAPT with others.  I suspect that most often I 
get the same IPv4 IP address but perhaps a different port.  I am likely 
sharing the reverse DNS name with others, perhaps hundreds:-)  Thus I 
know that location tracking websites think that I am in Preston, UK, 
whereas in fact I am 50 miles away; IP-derived data can be plain wrong 
so when you conflate on the basis of reverse DNS, you could be missing a 
lot of small users and only counting the Microsoft or Cisco or such like 
and even then you could be missing a number of employees of such an 
organisation with a unique reverse DNS.

I do use the same ADSL modem for FTP for RFC and FTP for I-D (and HTTPS 
access to data-tracker) and will likely download an RFC or two most 
weeks and an I-D or two most working days, three or more days a week but 
I do use a different application for FTP RFC and FTP I-D.  So I am 
multiple download most working days from a UK ISP.  I struggle to see 
that in your data and suspect that you are missing many, perhaps most usage.

Tom Petch











>
> Regards,
> Roman
>
> .
>