Re: Comments on <draft-cooper-privacy-policy-01.txt>

"Hannes Tschofenig" <Hannes.Tschofenig@gmx.net> Fri, 09 July 2010 15:24 UTC

Return-Path: <Hannes.Tschofenig@gmx.net>
X-Original-To: ietf@core3.amsl.com
Delivered-To: ietf@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id BFFA13A6A86 for <ietf@core3.amsl.com>; Fri, 9 Jul 2010 08:24:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.255
X-Spam-Level:
X-Spam-Status: No, score=-0.255 tagged_above=-999 required=5 tests=[AWL=0.384, BAYES_00=-2.599, RCVD_IN_BL_SPAMCOP_NET=1.96]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FQGTGQCefD-S for <ietf@core3.amsl.com>; Fri, 9 Jul 2010 08:23:59 -0700 (PDT)
Received: from mail.gmx.net (mail.gmx.net [213.165.64.20]) by core3.amsl.com (Postfix) with SMTP id 782C83A6849 for <ietf@ietf.org>; Fri, 9 Jul 2010 08:23:59 -0700 (PDT)
Received: (qmail 19033 invoked by uid 0); 9 Jul 2010 15:24:03 -0000
Received: from 213.162.68.138 by www111.gmx.net with HTTP; Fri, 09 Jul 2010 17:24:02 +0200 (CEST)
Content-Type: text/plain; charset="utf-8"
Date: Fri, 09 Jul 2010 17:24:02 +0200
From: Hannes Tschofenig <Hannes.Tschofenig@gmx.net>
In-Reply-To: <4C3733F4.2020604@earthlink.net>
Message-ID: <20100709152402.107930@gmx.net>
MIME-Version: 1.0
References: <7022DEA1-7FC0-4D77-88CE-FA3788720B43@cdt.org> <47076F01-CC4C-45E6-803E-8E2516BE15AC@gmail.com> <20100709113224.123900@gmx.net> <m2tyo8hneu.wl%randy@psg.com> <20100709121550.123890@gmx.net> <4C3733F4.2020604@earthlink.net>
Subject: Re: Comments on <draft-cooper-privacy-policy-01.txt>
To: todd glassey <tglassey@earthlink.net>, ietf@ietf.org
X-Authenticated: #29516787
X-Flags: 0001
X-Mailer: WWW-Mail 6100 (Global Message Exchange)
X-Priority: 3
X-Provags-ID: V01U2FsdGVkX18uZJ8qmfcu6BE9xit7dWicJw3MfELxiwOfxtpxDW 9UILHCdyTce3PMUKPEUHS7HFhmwmQXUaQsPg==
Content-Transfer-Encoding: 8bit
X-GMX-UID: IAYPeRVZbmwofIERqjZLJrtPUzc4cpEk
X-FuHaFi: 0.54000000000000004
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 09 Jul 2010 15:24:00 -0000

Very good question, Todd. 
Nowadays everyone claims to be open and transparent. 

As an example, here is what the Madrid Resolution 
http://www.gov.im/lib/docs/odps//madridresolutionnov09.pdf
has to say about the "openness principle": 

1. Every responsible person shall have transparent
policies with regard to the processing of personal
data.
2. The responsible person shall provide to the
data subjects, as a minimum, information about
the responsible person’s identity, the intended
purpose of processing, the recipients to whom
their personal data will be disclosed and how
data subjects may exercise the rights provided in
this Document, as well as any further information
necessary to guarantee fair processing of such
personal data.
3. When personal data have been collected directly
from the data subject, the information must
be provided at the time of collection, unless it has
already been provided.
4. When personal data have not been collected
directly from the data subject, the responsible
person must also inform him/her about the
source of personal data. This information must be
given within a reasonable period of time, but may
be replaced by alternative measures if compliance
is impossible or would involve a disproportionate
effort by the responsible person.
5. Any information to be furnished to the data
subject must be provided in an intelligible form,
using a clear and plain language, in particular for
any processing addressed specifically to minors.
6. Where personal data are collected on line by
means of electronic communications networks,
the obligations set out in the first and second paragraphs
of this section may be satisfied by posting
privacy policies that are easy to access and
identify and include all the information mentioned
above.

Ciao
Hannes

-------- Original-Nachricht --------
> Datum: Fri, 09 Jul 2010 07:36:36 -0700
> Von: todd glassey <tglassey@earthlink.net>
> An: ietf@ietf.org
> Betreff: Re: Comments on <draft-cooper-privacy-policy-01.txt>

>  On 7/9/2010 5:15 AM, Hannes Tschenig wrote:
> 
> 
> 
> WHAT specifically does "Openness and Transparency" mean - not in
> nebulous namby pamby terms but specific sets of "use rules and their
> oversight" - what exactly does this mean?
> >
> >> as far as i know
> >>
> >>   o data collection has been done very rarely.  and when it has been,
> it
> >>     has been widely announced.
> > Openness and transparency is one of the privacy principles. 
> > (but there are others...)
> >
> >
> >>   o there is no plan known by the net ops to do so in maastricht or
> >>     beijing at either of those meetings.
> > I don't know. There is no central place where I could lookup any of this
> info. 
> >
> >>   o aside from issues in the wireless deployment, the data about net
> use
> >>     at ietf meeings seems pretty boring to me from a research view
> > Maybe boring for you. 
> > Some consider it a very large WLAN network, some others test their
> favorite tunneling technology with it, etc.  
> >
> >>   o but i am sure there are wifi spies snooping and playing.  and i
> >>     suspect that they will not be very respectful of any policy put in
> >>     place.
> > You have to see all privacy principles in combination in order for them
> to make sense. 
> >
> >
> >> given the latter, i focus more on prudent personal net hygene and less
> >> on prose.
> > That's fine. 
> >
> > Ciao
> > Hannes
> >
> >> randy
> > _______________________________________________
> > Ietf mailing list
> > Ietf@ietf.org
> > https://www.ietf.org/mailman/listinfo/ietf
> >
> 
> _______________________________________________
> Ietf mailing list
> Ietf@ietf.org
> https://www.ietf.org/mailman/listinfo/ietf