Re: [Jwt-reg-review] [IANA #1352928] Request for Assignment (jwt, CTA-5009)

Brian Campbell <bcampbell@pingidentity.com> Tue, 06 February 2024 23:42 UTC

Return-Path: <bcampbell@pingidentity.com>
X-Original-To: jwt-reg-review@ietfa.amsl.com
Delivered-To: jwt-reg-review@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 345EBC14F680 for <jwt-reg-review@ietfa.amsl.com>; Tue, 6 Feb 2024 15:42:47 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.103
X-Spam-Level:
X-Spam-Status: No, score=-7.103 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=pingidentity.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id n0Zgi2pmvmcN for <jwt-reg-review@ietfa.amsl.com>; Tue, 6 Feb 2024 15:42:43 -0800 (PST)
Received: from mail-il1-x12d.google.com (mail-il1-x12d.google.com [IPv6:2607:f8b0:4864:20::12d]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 26059C14F6E2 for <jwt-reg-review@ietf.org>; Tue, 6 Feb 2024 15:42:43 -0800 (PST)
Received: by mail-il1-x12d.google.com with SMTP id e9e14a558f8ab-363c1829cfaso50835ab.3 for <jwt-reg-review@ietf.org>; Tue, 06 Feb 2024 15:42:43 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=pingidentity.com; s=google; t=1707262962; x=1707867762; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=0A3a7+TiuT+IHnqLHkNAkBsYDU3MJSG1YkPl6I9oZSA=; b=aJbm6ty9R9qYbNN2ym/cn0L8P2GbyziTjg5vtCPAUu1NSinPkN1qjWKhQfQxibtbNE 6LYJEYK/Hx1A0YsGqoyvtumF2tml77vd7ugeR/THik9pwvtrwpmrmHKq99gHL/R+W8Q4 Jl2dGrWqPUQ0Vso6CBpMgylOtahL8YjsTdtgUU0jJnFOKlNe1sXfYcinuePj0TpNXTRs PmNTznmbSB3EzF1HBNqkODZh/HLjT9J7gn20j9PqIiGUW/7P8100oR8QHrteO9bMk4Sp 60wSdUjzhynlbOlTLCweI8yBTiGZ1lF7KMEDgHbqoWiH1VbrvB3oi+ikvFp0r7HPuH8i QuRw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1707262962; x=1707867762; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=0A3a7+TiuT+IHnqLHkNAkBsYDU3MJSG1YkPl6I9oZSA=; b=d7q4NX5ZJ5KTj541p4Lx2l5uNQbxg6ME/ib9Xadwo43m5Z1THVLidYQS+HBm93zSHz +VFOLkjgHWFfmGBqU8NhGVAy+2yJA2GCYeRf8OEy2Nh2p+vva11VomSxGDQcqe8xBsz+ 9WN6v+DOvkkUXn1c42EFH9/96dgwApObzGzo/OFkCVvPsUE+BEdhF89GJ6Jp21iEY1Ol 8mWLwcbLZaSp+yngN0hH0MLfoPMCnRjBXCUQFanNV9kTFm5VfwBS1n1jKmAEDPzWl5Yn SelJmG25/l1N72ehiKDVXgA3XlrhdSJ6FCwBZF752QdvNyDwvN5EjsFjCdtAe8zcuIXe dNXA==
X-Gm-Message-State: AOJu0Yxax+mL9RQT0+ca+/GY//8KL/KNwvwXqQlx3H0D3xeLFbXGKdV6 NsXg4DXJQEwtPZ/XcE9+3m6aLU56oxu5drXNg/36oT4BQ8bLomf8hMF48Hm94770CT5zbPdTrgJ JH9NEWEJ5xNwVLF9RE3HFqcQEz582rCYpgLxUwumNgFHJvhHgo177XX8gexcveI+Uwv2nlSn4L6 W6YXf0ZaN1BbXsqsseVrXBoH+01OoKh08b
X-Google-Smtp-Source: AGHT+IGbBLpu1oLOtRmNefYh3/YDEx1ieD1zlLPNiFhQAyH19pKl6K77AtHj5XWIH2zNSnb6LBZw3TRAWj8bnd+G8QA=
X-Received: by 2002:a05:6e02:13f2:b0:363:c374:e829 with SMTP id w18-20020a056e0213f200b00363c374e829mr4140296ilj.5.1707262962263; Tue, 06 Feb 2024 15:42:42 -0800 (PST)
MIME-Version: 1.0
References: <RT-Ticket-1352928@icann.org> <rt-5.0.3-1104910-1706036005-376.1352928-9-0@icann.org> <rt-5.0.3-96476-1706119200-1688.1352928-9-0@icann.org> <rt-5.0.3-1120593-1706812087-1771.1352928-9-0@icann.org> <CA+k3eCSm3GwkzY0YgP4N-Pxu70tYvjwYy9y_dVFQi_5z35L6Fw@mail.gmail.com> <rt-5.0.3-1157285-1706825544-1322.1352928-9-0@icann.org> <rt-5.0.3-562144-1707245742-822.1352928-9-0@icann.org>
In-Reply-To: <rt-5.0.3-562144-1707245742-822.1352928-9-0@icann.org>
From: Brian Campbell <bcampbell@pingidentity.com>
Date: Tue, 06 Feb 2024 16:42:30 -0700
Message-ID: <CA+k3eCQEK0T-w1TyXUdCbtJD5kg=Z4ZTa4WVkMNzOio5M+mJWg@mail.gmail.com>
To: iana-prot-param-comment@iana.org
Cc: John Bradley <ve7jtb@ve7jtb.com>, Michael Jones <michael_b_jones@hotmail.com>, jwt-reg-review@ietf.org
Content-Type: multipart/alternative; boundary="0000000000006787a50610bf22f4"
Archived-At: <https://mailarchive.ietf.org/arch/msg/jwt-reg-review/hFUNVlHYHSkT6zex9IRWJ4MewZY>
Subject: Re: [Jwt-reg-review] [IANA #1352928] Request for Assignment (jwt, CTA-5009)
X-BeenThere: jwt-reg-review@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Expert review of proposed IANA registrations for JSON Web Token \(JWT\) claims." <jwt-reg-review.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jwt-reg-review>, <mailto:jwt-reg-review-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/jwt-reg-review/>
List-Post: <mailto:jwt-reg-review@ietf.org>
List-Help: <mailto:jwt-reg-review-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jwt-reg-review>, <mailto:jwt-reg-review-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Feb 2024 23:42:47 -0000

Thanks for the explanation, David. I don't intend to hold things up
unnecessarily so the registration is okay with me and I think just waiting
the week for others to chime in, if they feel differently, is okay too.

On Tue, Feb 6, 2024, 11:55 AM David Dong via RT <
iana-prot-param-comment@iana.org> wrote:

> Hi Brian,
>
> Apologies for the delay in my response, and thank you for the review.
> Thank you also for attaching a copy for the other reviewers.
>
> We plan to put [CTA-5009] as the reference, linking to <
> https://shop.cta.tech/collections/standards/products/fast-and-readable-geographical-hashing-cta-5009>.
>
>
> There are already some existing registrations with specifications either
> difficult to access or paywalled that we link to in the "Reference" field
> in other Specification Required registries (namely the ISO specs), for
> reference.
>
> Please let us know if this registration in JWT is okay, or if we should
> wait for other reviewers to respond (we will mark this as OK one week after
> approval otherwise).
>
> Best regards,
>
> David Dong
> IANA Services Sr. Specialist
>
> On Thu Feb 01 22:12:24 2024, bcampbell@pingidentity.com wrote:
> > I honestly don't have the knowledge to evaluate the semantics of this
> > "geohash" claim but don't  in general object to its registration. It
> seems
> > okay to add.
> >
> > I will note, however, that the registration request does not have the
> > "Specification Document(s):" part listed in the original registration
> > template <https://datatracker.ietf.org/doc/html/rfc7519#section-10.1.1>.
> > What does IANA plan to put in the corresponding "Reference" column of the
> > registry <https://www.iana.org/assignments/jwt/jwt.xhtml#claims>? I
> don't
> > think it can be omitted. The registry is supposed to "record the Claim
> Name
> > and a reference to the specification that defines it" according to the
> text
> > that establishes it
> > <https://datatracker.ietf.org/doc/html/rfc7519#section-10.1>
> (presumably so
> > that folks can find the corresponding specifications from the registry
> > entries). I suspect a similar question might arise for the CBOR and CWT
> > registration requests as well.
> >
> > This sort of speaks to the Fast and Readable Geographical Hashing
> CTA-5009
> > specification being unfortunately rather cumbersome to access. It is
> > available free of charge, as mentioned, but requires a shopping cart and
> a
> > checkout process that requests some personal information. I've attached a
> > copy here for the convenience of other reviewers.
> >
> > CTA-5009 Final.pdf
> >
> > On Thu, Feb 1, 2024 at 11:28 AM David Dong via RT <
> > iana-prot-param-comment@iana.org> wrote:
> >
> > > Dear John Bradley, Brian Campbell, and Michael B. Jones (cc:
> > > jwt-reg-review),
> > >
> > > Following up on this; as the designated experts for the JSON Web Token
> > > Claims registry, can you review the JWT Claim registration proposal
> below?
> > > If it's OK, we'll make the assignment at:
> > >
> > > https://www.iana.org/assignments/jwt/
> > >
> > > Unless you ask us to wait for the other reviewers, we’ll act one week
> > > after the first response we receive.
> > >
> > > The due date is February 14th.
> > >
> > > With thanks,
> > >
> > > David Dong
> > > IANA Services Sr. Specialist
> > >
> > > On Wed Jan 24 18:00:00 2024, david.dong wrote:
> > > > Dear John Bradley, Brian Campbell, and Michael B. Jones (cc: jwt-reg-
> > > > review),
> > > >
> > > > As the designated experts for the JSON Web Token Claims registry, can
> > > > you review the JWT Claim registration proposal below? If it's OK,
> > > > we'll make the assignment at:
> > > >
> > > > https://www.iana.org/assignments/jwt/
> > > >
> > > > Unless you ask us to wait for the other reviewers, we’ll act one week
> > > > after the first response we receive.
> > > >
> > > > The due date is February 14th.
> > > >
> > > > With thanks,
> > > >
> > > > David Dong
> > > > IANA Services Sr. Specialist
> > > >
> > > > On Tue Jan 23 18:53:25 2024, david.dong wrote:
> > > > > Contact Name:
> > > > > Chris Lemmons
> > > > >
> > > > > Contact Email:
> > > > > alficles@gmail.com
> > > > >
> > > > > Type of Assignment:
> > > > > Permanent
> > > > >
> > > > > Registry:
> > > > > CBOR Tag, JSON Web Token Claims, CBOR Web Token Claims
> > > > >
> > > > > Description:
> > > > > These tags and claims are defined in CTA-5009, which was recently
> > > > > published by the Consumer Technology Association. The specification
> > > > > is
> > > > > available free of charge at
> > > > > https://shop.cta.tech/collections/standards/products/fast-and-
> > > > > readable-geographical-hashing-cta-5009 , but a courtesy copy can be
> > > > > provided to IANA and any relevant experts on request if desired.
> > > > >
> > > > > Additional Info:
> > > > > These are defined in CTA-5009 as noted above. These define tags and
> > > > > claims for the storage of Geohash strings and arrays. As described
> in
> > > > > the document:
> > > > >
> > > > > Show quoted text
> > > > > article on Wikipedia. These are excellent resources, but they can
> > > > > change over time
> > > > > and are not generally suitable for building on in a consensus-based
> > > > > standards-making process.
> > > > > This document exists to remediate that. It describes the practice
> as
> > > > > it exists at the time of writing and
> > > > > provides general, straightforward algorithms for understanding and
> > > > > communicating with Geohashes. It
> > > > > also exists to serve as a stable reference document for a few IANA
> > > > > registrations.
> > > > >
> > > > > To that end, we request these numbers:
> > > > >
> > > > > CBOR Tag:
> > > > >
> > > > > Tag: 105
> > > > > Data Item: text string or array
> > > > > Semantics: Geohash String
> > > > > Point of Contact: Consumer Technology Association
> > > > >
> > > > > Tag: 279
> > > > > Data Item: array
> > > > > Semantics: Coordinate Reference System Wrapper
> > > > > Point of Contact: Consumer Technology Association
> > > > >
> > > > > JWT Claim:
> > > > >
> > > > > Claim Name: geohash
> > > > > Claim Description: Geohash String or Array
> > > > > Change Controller: Consumer Technology Association
> > > > >
> > > > > CWT Claim:
> > > > >
> > > > > Claim Name: geohash
> > > > > Claim Description: Geohash String
> > > > > JWT Claim Name: geohash
> > > > > Claim Key: 282
> > > > > Claim Value Type(s): text string or array
> > > > > Change Controller: Consumer Technology Association
> > >
> > >
> >
>
>

-- 
_CONFIDENTIALITY NOTICE: This email may contain confidential and privileged 
material for the sole use of the intended recipient(s). Any review, use, 
distribution or disclosure by others is strictly prohibited.  If you have 
received this communication in error, please notify the sender immediately 
by e-mail and delete the message and any file attachments from your 
computer. Thank you._