[netconf] Re: RFC 8040/8527: ETags on /ds/operational?
Tomáš Pecka <tomas.pecka@cesnet.cz> Wed, 07 October 2026 08:26 UTC
Received: from office2.cesnet.cz (office2.cesnet.cz [78.128.248.237]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange x25519 server-signature ECDSA (prime256v1 raw public key) server-digest SHA256) (No client certificate requested) by mx.ietf.org (Postfix) with ESMTPS id E28BE30 for <netconf@ietf.org>; Wed, 07 Oct 2026 08:26:07 +0000 (UTC)
Authentication-Results: mx.ietf.org; dkim=pass header.d=cesnet.cz header.s=office2-2020 header.b=R4hXXMUu; spf=pass (mx.ietf.org: domain of tomas.pecka@cesnet.cz designates 78.128.248.237 as permitted sender) smtp.mailfrom=tomas.pecka@cesnet.cz; dmarc=pass (policy=quarantine) header.from=cesnet.cz
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cesnet.cz; s=office2-2020; t=1791361560; bh=DE9nZ2PvF423J9/rWtJbNmFZUExhLL+m9+mq0R7mMkg=; h=Date:Subject:To:References:From:In-Reply-To; b=R4hXXMUu/1FRR+i/repOW+zry0PwjCgFefnYavXDvqk8DdIIaJa2/T/9pb7+/7VO1 SOBpJyUmzsTZMVeeYwBtXafbi5G8HmCiLIzkfjXPuCAYwZnDcAAOZ7KXNrd3WAzXH5 BotdE/bO0F6SDtYI4r9vw8ycI98zHpqkBn/uX17l3xVV+BX9jaW6kjEmdH2z3XLiwh 99exAUWbIl1Bpj+WBE6PltjW3vWpsjGGFgwhNXlRtKVsAeK/+Ymlsiq15T0I+9yXFc e8W3vM7NEn8q1nZU4djz3uNTv6TBNim3N14oZDCUNlHZgQYDGUuiDx+iYuSY9r73DN BHO2+ksCHGQMQ==
Received: from [10.155.35.228] (unknown [146.70.129.150]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange x25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by office2.cesnet.cz (Postfix) with ESMTPSA id 96A801180072 for <netconf@ietf.org>; Wed, 07 Oct 2026 10:26:00 +0200 (CEST)
Message-ID: <01cff6c5-7cdf-4313-a77e-a98029214081@cesnet.cz>
Date: Wed, 07 Oct 2026 10:26:00 +0200
MIME-Version: 1.0
User-Agent: Mozilla Thunderbird
To: netconf@ietf.org
References: <8efeb723-c870-4a61-918a-5c4b903c5cc1@cesnet.cz> <010001a1139c9bd0-33534e35-8c48-4648-ac35-b3654136da6f-000000@email.amazonses.com>
Content-Language: en-US, cs, cs-Cestina
From: Tomáš Pecka <tomas.pecka@cesnet.cz>
In-Reply-To: <010001a1139c9bd0-33534e35-8c48-4648-ac35-b3654136da6f-000000@email.amazonses.com>
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg="sha-256"; boundary="------------ms010709070304020804090300"
X-Spamd-Bar: -------
Message-ID-Hash: WINFWF6WVMVXYGO46XUSKTVVK43BH3XL
X-Message-ID-Hash: WINFWF6WVMVXYGO46XUSKTVVK43BH3XL
X-MailFrom: tomas.pecka@cesnet.cz
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; loop; banned-address; header-match-netconf.ietf.org-0; emergency; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.10
Precedence: list
Subject: [netconf] Re: RFC 8040/8527: ETags on /ds/operational?
List-Id: NETCONF WG list <netconf.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/netconf/IeO_j2Eb-e6WM81U19qa71XnWDQ>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netconf>
List-Help: <mailto:netconf-request@ietf.org?subject=help>
List-Owner: <mailto:netconf-owner@ietf.org>
List-Post: <mailto:netconf@ietf.org>
List-Subscribe: <mailto:netconf-join@ietf.org>
List-Unsubscribe: <mailto:netconf-leave@ietf.org>
Hello Kent,
thanks for the reply and the intended interpretation.
I understand the mechanisms are used in place of locking. I was confused
that RFC 8527 does not say anything about not supporting them on
read-only datastores (as it does, for instance, in Section 3.2 about
write operations on <intended>), while RFC 8040 says the server MUST
support them for the datastore resource. I probably read the document
too literally, hence the confusion.
Re {+restconf}/data (not) being available: I think that removing it
would contradict Section 1 (Introduction) of RFC 8527. It explicitly
says that RFC 8527 is backwards compatible with RFC 8040.
Best,
Tomas
Dne 07. 10. 26 v 1:46 Kent Watsen napsal(a):
> Hi Tomáš,
>
> HTTP ETags and Last-Modified are primarily, if not exclusively, for optimistic locking, used by RESTCONF in lieu of the explicit locking mechanism used by NETCONF. It only makes sense to use them on read/write datastores, e.g., running, candidate, startup, and system (if supported by the server). It doesn't make sense for a server to support ETags on a read-only datastores, e.g., factory-default, intended, and operational.
>
> PS: if supporting NMDA, I wouldn't expect {+restconf}/data to be available. That said, I do not see support for that statement in RFC 8527.
>
> Kent
>
>
>> On Oct 6, 2026, at 3:17 PM, Tomáš Pecka <tomas.pecka=40cesnet.cz@dmarc.ietf.org> wrote:
>>
>> Hi all,
>>
>> We are implementing entity-tag and Last-Modified support in rousette [1], a RESTCONF server built on top of sysrepo. We have NMDA support, and RFC 8527 is silent on entity-tags for the {+restconf}/ds/<datastore> resources.
>>
>> RFC 8040 (Section 3.4.1.2) says the server MUST maintain an entity-tag for the datastore resource that tracks only configuration data, and that it is for running when co-located with a NETCONF server, which is our case. RFC 8527 (Section 3.1) defines {+restconf}/ds/<datastore> as datastore resources.
>>
>> We therefore plan to return running's ETag and Last-Modified on {+restconf}/ds/ietf-datastores:operational, the same as on {+restconf}/data. Intuitively, though, such an ETag and Last-Modified seem to be of limited use there, because the operational datastore contains mostly state data. Is returning running's ETag there the intended reading?
>>
>> Thanks,
>> Tomas Pecka
>>
>> [1] https://github.com/CESNET/rousette
>> _______________________________________________
>> netconf mailing list -- netconf@ietf.org
>> To unsubscribe send an email to netconf-leave@ietf.org
>
> _______________________________________________
> netconf mailing list -- netconf@ietf.org
> To unsubscribe send an email to netconf-leave@ietf.org
- [netconf] RFC 8040/8527: ETags on /ds/operational? Tomáš Pecka
- [netconf] Re: RFC 8040/8527: ETags on /ds/operati… Kent Watsen
- [netconf] Re: RFC 8040/8527: ETags on /ds/operati… Tomáš Pecka
- [netconf] Re: RFC 8040/8527: ETags on /ds/operati… Kent Watsen
- [netconf] Re: RFC 8040/8527: ETags on /ds/operati… Kent Watsen
- [netconf] Re: RFC 8040/8527: ETags on /ds/operati… Per Andersson
- [netconf] Re: RFC 8040/8527: ETags on /ds/operati… Kent Watsen