Re: draft-gont-6man-managing-privacy-extensions-00.txt

Mark Townsley <mark@townsley.net> Fri, 11 March 2011 13:01 UTC

Return-Path: <mark@townsley.net>
X-Original-To: ipv6@core3.amsl.com
Delivered-To: ipv6@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 73B103A6BE4 for <ipv6@core3.amsl.com>; Fri, 11 Mar 2011 05:01:55 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level:
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[AWL=-0.001, BAYES_00=-2.599, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9YXffMMmzZHB for <ipv6@core3.amsl.com>; Fri, 11 Mar 2011 05:01:54 -0800 (PST)
Received: from mail-fx0-f44.google.com (mail-fx0-f44.google.com [209.85.161.44]) by core3.amsl.com (Postfix) with ESMTP id 004293A6BD6 for <ipv6@ietf.org>; Fri, 11 Mar 2011 05:01:53 -0800 (PST)
Received: by fxm15 with SMTP id 15so1041038fxm.31 for <ipv6@ietf.org>; Fri, 11 Mar 2011 05:03:12 -0800 (PST)
Received: by 10.223.65.196 with SMTP id k4mr1011298fai.9.1299848519259; Fri, 11 Mar 2011 05:01:59 -0800 (PST)
Received: from saturn.livebox.home (AMontsouris-159-1-12-106.w83-202.abo.wanadoo.fr [83.202.167.106]) by mx.google.com with ESMTPS id l3sm2624393fan.2.2011.03.11.05.01.57 (version=TLSv1/SSLv3 cipher=OTHER); Fri, 11 Mar 2011 05:01:57 -0800 (PST)
Subject: Re: draft-gont-6man-managing-privacy-extensions-00.txt
Mime-Version: 1.0 (Apple Message framework v1082)
Content-Type: multipart/alternative; boundary="Apple-Mail-9--581229240"
From: Mark Townsley <mark@townsley.net>
In-Reply-To: <22F6318E46E26B498ABC828879B08D4F0C15B1@TK5EX14MBXW653.wingroup.windeploy.ntdev.microsoft.com>
Date: Fri, 11 Mar 2011 14:01:57 +0100
Message-Id: <EF3F736B-777F-4F03-8AB5-62D46452B942@townsley.net>
References: <7111FC5F-BC3F-4242-9C3F-037E79894749@gmail.com> <alpine.DEB.1.10.1103091212570.7942@uplift.swm.pp.se> <4D77CBB9.1080702@gmail.com> <233b01cbdef5$8e214550$aa63cff0$@com> <25B3D469-F3DA-4A1D-A462-FEB71FA69485@gmail.com> <091D1284-99E4-450E-8AFF-7D4C6310D760@apple.com> <78B923726E7D59429936580CF127E943A13E758C27@eu1rdcrdc1wx032.exi.nxp.com> <262f01cbdf5d$607c69f0$21753dd0$@com> <22F6318E46E26B498ABC828879B08D4F0C15B1@TK5EX14MBXW653.wingroup.windeploy.ntdev.microsoft.com>
To: Christian Huitema <huitema@microsoft.com>
X-Mailer: Apple Mail (2.1082)
Cc: draft-brim-mobility-and-privacy@tools.ietf.org, ipv6@ietf.org
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipv6>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 11 Mar 2011 13:01:55 -0000

On Mar 11, 2011, at 3:32 AM, Christian Huitema wrote:

>> I'm saying the reasons people are tempted to disable RFC4941 are misplaced.  
> 
> +1
> 
> Consider that if I want privacy and you won't let me use RFC4941, I might just make up a new MAC address each time I connect.
> 
> Consider also the effect of unique identifiers on tracking. The MAC address follows you when you roam. By embedding it in the IPv6 address, we are effectively offering a "super cookie" to all web services. Is it really what we want? In addition to privacy issues, displaying the MAC address allows third parties to track hardware purchase, and enables other attacks by providing the data necessary for MAC spoofing. In short, it looked like a great idea at the time... but wasn't.

One person's attack is another's targeted ad business case ;-)

That aside, the considerations proposed in this document may be relevant to this discussion:

http://tools.ietf.org/html/draft-brim-mobility-and-privacy-00

- Mark



> 
> -- Christian Huitema
> 
> 
> 
> 
> --------------------------------------------------------------------
> IETF IPv6 working group mailing list
> ipv6@ietf.org
> Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
> --------------------------------------------------------------------