Re: [Model-t] Review of draft-thomson-tmi

Vittorio Bertola <vittorio.bertola@open-xchange.com> Thu, 09 December 2021 18:08 UTC

Return-Path: <vittorio.bertola@open-xchange.com>
X-Original-To: model-t@ietfa.amsl.com
Delivered-To: model-t@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3C3E13A04BB for <model-t@ietfa.amsl.com>; Thu, 9 Dec 2021 10:08:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=open-xchange.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Og_Aa3N2_pQ2 for <model-t@ietfa.amsl.com>; Thu, 9 Dec 2021 10:08:32 -0800 (PST)
Received: from mx3.open-xchange.com (mx3.open-xchange.com [87.191.57.183]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 33CD03A046E for <model-t@iab.org>; Thu, 9 Dec 2021 10:08:31 -0800 (PST)
Received: from imap.open-xchange.com (imap.open-xchange.com [10.20.28.81]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mx3.open-xchange.com (Postfix) with ESMTPSA id 795D06A110; Thu, 9 Dec 2021 19:08:24 +0100 (CET)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=open-xchange.com; s=201705; t=1639073304; bh=ro3OE0Ue6H/g2lZ70odhu+bTNLlfOOPrWVNm99pfAKI=; h=Date:From:To:In-Reply-To:References:Subject:From; b=Q9k59kZ3U0Abv1FzM6rzJxml1i0SrjoiuE00rdSC4/fi3/4a19yNIVFbyGWqS1NHi g/gyogqwmLcqcoDyK508lEszWq1+w7B2FhT/PgPLZLcjhNQU3b7mIQulNUSkhEUena DBYC3eFZQADGNq1218hLO7POdq1ysL5XWIXL9euf0G2Ysk5Y2cU2v+COLL4C14eVL1 vYRHp7MnHw4GjaXDB0skJ+VPY0xmjkAqjN1HuRTRgVTxh6mlhc8K8glOPJSdynHopM LOjaJldO3Db8yd2yNAtKHW2SWUK++R5dtOjNFzUxLn71scKl2lRMxdwYcYMRrxs7+y vxGjLW/iZXmBQ==
Received: from appsuite-gw1.open-xchange.com ([10.20.28.81]) by imap.open-xchange.com with ESMTPSA id muKGHRhGsmHsFQAA3c6Kzw (envelope-from <vittorio.bertola@open-xchange.com>); Thu, 09 Dec 2021 19:08:24 +0100
Date: Thu, 09 Dec 2021 19:08:24 +0100
From: Vittorio Bertola <vittorio.bertola@open-xchange.com>
To: Martin Thomson <mt@lowentropy.net>, model-t@iab.org
Message-ID: <501874723.72183.1639073304406@appsuite-gw1.open-xchange.com>
In-Reply-To: <bbe8fde9-6c2f-4923-8d1e-bd4fb0598883@www.fastmail.com>
References: <F2034CB3-D829-4C50-BC84-A89DE360FF7E@piuha.net> <1793552336.53819.1638947644889@appsuite-gw1.open-xchange.com> <bbe8fde9-6c2f-4923-8d1e-bd4fb0598883@www.fastmail.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: 7bit
X-Priority: 3
Importance: Normal
X-Mailer: Open-Xchange Mailer v7.10.5-Rev31
X-Originating-Client: open-xchange-appsuite
Autocrypt: addr=vittorio.bertola@open-xchange.com; prefer-encrypt=mutual; keydata= mQENBFhFR+UBCACfoywFKBRfzasiiR9/6dwY36eLePXcdScumDMR8qoXvRS55QYDjp5bs+yMq41qWV9 xp/cqryY9jnvHbeF3TsE5yEazpD1dleRbkpElUBpPwXqkrSP8uXO9KkS9KoX6gdml6M4L+F82WpqYC1 uTzOE6HPmhmQ4cGSgoia2jolxAhRpzoYN99/BwpvoZeTSLP5K6yPlMPYkMev/uZlAkMMhelli9IN6yA yxcC0AeHSnOAcNKUr13yXyMlTyi1cdMJ4sk88zIbefxwg3PAtYjkz3wgvP96cNVwAgSt4+j/ZuVaENP pgVuM512m051j9SlspWDHtzrci5pBKKFsibnTelrABEBAAG0NUJlcnRvbGEsIFZpdHRvcmlvIDx2aXR 0b3Jpby5iZXJ0b2xhQG9wZW4teGNoYW5nZS5jb20+iQFABBMBAgAqBAsJCAcGFQoJCAsCBRYCAwEAAp 4BAhsDBYkSzAMABQMAAAAABYJYRUflAAoJEIU2cHmzj8qNaG0H/ROY+suCP86hoN+9RIV66Ej8b3sb8 UgwFJOJMupZfeb9yTIJwE4VQT5lTt146CcJJ5jvxD6FZn1Htw9y4/45pPAF7xLE066jg3OqRvzeWRZ3 IDUfJJIiM5YGk1xWxDqppSwhnKcMOuI72iioWxX0nGQrWxpnWJsjt08IEEwuYucDkul1PHsrLJbTd58 fiMKLVwag+IE1SPHOwkPF6arZQZIfB5ThtOZV+36Jn8Hok9XfeXWBVyPkiWCQYVX39QsIbr0JNR9kQy 4g2ZFexOcTe8Jo12jPRL7V8OqStdDes3cje9lWFLnX05nrfLuE0l0JKWEg8akN+McFXc+oV68h7nu5A Q0EWEVH5QEIAIDKanNBe1uRfk8AjLirflZO291VNkOAeUu+dIhecGnZeQW6htlDinlYOnXhtsY1mK9W PUu+xshDq7lXn2G0LxldYwyJYZaJtDgIKqVqwxfA34Lj27oqPuXwcvGhdCgt0SW/YcalRdAi0/AzUCu 5GSaj2kaGUSnBYYUP4szGJXjaK2psP5toQSCtx2pfSXQ6MaqPK9Zzy+D5xc6VWQRp/iRImodAcPf8fg JJvRyJ8Jla3lKWyvBBzJDg6MOf6Fts78bJSt23X0uPp93g7GgbYkuRMnFI4RGoTVkxjD/HBEJ0CNg22 hoHJondhmKnZVrHEluFuSnW0wBEIYomcPSPB+cAEQEAAYkBMQQYAQIAGwUCWEVH5QIbDAQLCQgHBhUK CQgLAgUJEswDAAAKCRCFNnB5s4/KjdO8B/wNpvWtOpLdotR/Xh4fu08Fd63nnNfbIGIETWsVi0Sbr8i E5duuGaaWIcMmUvgKe/BM0Fpj9X01Zjm90uoPrlVVuQWrf+vFlbalUYVZr51gl5UyUFHk+iAZCAA0WB rsmACKvuV1P7GuiX3UV9b59T9taYJxN3dNFuftrEuvsqHimFtlekUjUwoCekTJdncFusBhwz2OrKhHr WWrEsXkfh0+pURWYAlKlTxvXuI7gAfHEQM+6OnrWvXYtlhd0M1sBPnCjbyG63Qws7Rek9bEWKtH6dA6 dmT2FQT+g1S9Mdf0WkPTQNX0x24dm8IoHuD3KYwX7Svx43Xa17aZnXqUjtj1
Archived-At: <https://mailarchive.ietf.org/arch/msg/model-t/_FsopE-9s9X_64CSzf_JOHFdiZ0>
Subject: Re: [Model-t] Review of draft-thomson-tmi
X-BeenThere: model-t@iab.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Discussions of changes in Internet deployment patterns and their impact on the Internet threat model <model-t.iab.org>
List-Unsubscribe: <https://www.iab.org/mailman/options/model-t>, <mailto:model-t-request@iab.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/model-t/>
List-Post: <mailto:model-t@iab.org>
List-Help: <mailto:model-t-request@iab.org?subject=help>
List-Subscribe: <https://www.iab.org/mailman/listinfo/model-t>, <mailto:model-t-request@iab.org?subject=subscribe>
X-List-Received-Date: Thu, 09 Dec 2021 18:08:37 -0000

> Il 09/12/2021 06:31 Martin Thomson <mt@lowentropy.net> ha scritto:
>  
> On Wed, Dec 8, 2021, at 18:14, Vittorio Bertola wrote:
> > Then, abruptly, recommendations start and they are all about avoiding intermediation at all costs. 
> 
> I can't see that as anything other than a straight up mischaracterization.

That was really not my intention, but the above is indeed how the document sounded to me.

> > "A protocol intermediary is an element that participates in 
> > communications. An intermediary is not the primary initiator or 
> > recipient of communications, but instead acts to facilitate 
> > communications." 
> 
> This definition is, I think, not really the right one.  I've been struggling with this for some time, but didn't have a good handle on it. 

I think that we need to do more work on mapping, conceptualizing and classifying all parties that take part in an online exchange of data "human-to-human", with "human-to-server" being an alternative case too. Once we have that clear, it could become easier to discuss the threats that each class of intermediaries may pose, and understand what could be done about it in terms of protocol design.

Also, I agree with what you were saying elsewhere, that in the end you need to let users trust some of these intermediaries, as users will naturally do so. My basic point is just that there are use cases in which people trust the network more than the protocol endpoints.

-- 
Vittorio Bertola | Head of Policy & Innovation, Open-Xchange
vittorio.bertola@open-xchange.com 
Office @ Via Treviso 12, 10144 Torino, Italy