Re: [OPSEC] [IANA #1274499] expert review for draft-ietf-opsec-probe-attribution (well-known-uris)

Mark Nottingham <mnot@mnot.net> Thu, 08 June 2023 03:07 UTC

Return-Path: <mnot@mnot.net>
X-Original-To: opsec@ietfa.amsl.com
Delivered-To: opsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 038CAC151535 for <opsec@ietfa.amsl.com>; Wed, 7 Jun 2023 20:07:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=mnot.net header.b="q1o7A8nx"; dkim=pass (2048-bit key) header.d=messagingengine.com header.b="vkPCiyyE"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id byZqVaFrwgSd for <opsec@ietfa.amsl.com>; Wed, 7 Jun 2023 20:07:25 -0700 (PDT)
Received: from wout1-smtp.messagingengine.com (wout1-smtp.messagingengine.com [64.147.123.24]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1223BC15107B for <opsec@ietf.org>; Wed, 7 Jun 2023 20:07:24 -0700 (PDT)
Received: from compute5.internal (compute5.nyi.internal [10.202.2.45]) by mailout.west.internal (Postfix) with ESMTP id 59BB63200937; Wed, 7 Jun 2023 23:07:20 -0400 (EDT)
Received: from mailfrontend2 ([10.202.2.163]) by compute5.internal (MEProxy); Wed, 07 Jun 2023 23:07:20 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mnot.net; h=cc :cc:content-transfer-encoding:content-type:content-type:date :date:from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:sender:subject:subject:to:to; s=fm2; t= 1686193639; x=1686280039; bh=Ab2BqA0l5+4pDf08l5FusNdcnh1K+mEtg/C jKSIKC+k=; b=q1o7A8nxZj3zoefmSrOx8vwIcnBKRM8SThr0bfs8gdMIeH2dCI+ BbO/4F6og1jZN9Uzxiz6IiutRLim9rkvGVG0yq7KjJv8o1217Kl5lrLbXGDOI3gb RvLqP4q2IEQS2dU0V7ahbk+2mE67wV4PZoe3Q4sahmTbyDDniWFrWqcxE7jtD1rq +sSTFtmJ8y+rHU71AMi7i7Lby5wKmp2vHUa31tI/Bt7Mf2g7sDoL5S+PgEbpMcZt 71WXLCLqFahI7nj/zE/rQyLkh7Ah7cQ9Z+z4fsJ6zBecM7hcNsSfd6QEqKQZG8h1 AtRFZZhjby+mCWpufWIKD3o0FOdVcHf7DrA==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:content-type:date:date:feedback-id:feedback-id :from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:sender:subject:subject:to:to:x-me-proxy :x-me-proxy:x-me-sender:x-me-sender:x-sasl-enc; s=fm1; t= 1686193639; x=1686280039; bh=Ab2BqA0l5+4pDf08l5FusNdcnh1K+mEtg/C jKSIKC+k=; b=vkPCiyyEf/QIHql9aO68d1MZtn1ikx4lgAqruZ0j521D/F5u2d5 94EcPZoBIzLdK3RTL6Txb+iLdACZZwSF/2SLzeAAB0iKHt7Mn5zibl3dJCgpTgG1 TvJhd6r+xjmNjBBr6E2cI26L0Lx2MuB1JQab4EePA1PvIjPNViLd3NYJCORxkYD9 VZWQqzhxXAiHKJae2yRLkp315mwng40Z4kf0peCLNErRciFgIChLReI9Wb4rqotV j60MAHjJG67pEVm2mJbY0eriC9h+wPg3j7xuODIf9M/phMjOFY0JiVT+5Mjr8XKu NbSJjR04MVXWt5AFBO2PD+zid9IY7OaQHKA==
X-ME-Sender: <xms:50WBZJwMLmLN4F9pMzILlj2hbTs34pP6s-LQIMQ6qK4XPgfAtvLYMA> <xme:50WBZJSitVxMuud6J5VrIOv_Xnt0ZsYroa19IEqaaZeqyiNgBHogrRWrqXMtqeKEh SP6fnbdoADZk1Ksmw>
X-ME-Received: <xmr:50WBZDWJN9n1uFdkaQ2PLjCFMgOhwV2Xbg-1dLzEoiBMpvHscjaE4KcKfQnXzXmKmgqdvxjYfO8XebvdFUEqwrzFcrzzMsAsjntIGR2fC2zUSgYYPSS1HVDD>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrgedthedgieeiucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucenucfjughrpegtggfuhfgjffevgffkfhfvofesth hqmhdthhdtvdenucfhrhhomhepofgrrhhkucfpohhtthhinhhghhgrmhcuoehmnhhothes mhhnohhtrdhnvghtqeenucggtffrrghtthgvrhhnpeektdeuudetieehhedvfeeltedtff duhfeviefgueelffffveehteevffetjeehjeenucffohhmrghinhepvgigrghmphhlvgdr nhgvthdpihgvthhfrdhorhhgpdhirghnrgdrohhrghdpmhhnohhtrdhnvghtnecuvehluh hsthgvrhfuihiivgeptdenucfrrghrrghmpehmrghilhhfrhhomhepmhhnohhtsehmnhho thdrnhgvth
X-ME-Proxy: <xmx:50WBZLh1qhkjcLG1I9p19X_Ij34TSsctmsG7ER5qw6L2ZQ4fXsFz_w> <xmx:50WBZLAzO2VRREzS6vmVOjeCYtJ_V1sJ0TYacSPXhGewzk5dM6BdmQ> <xmx:50WBZEK-yxEzXO0KlAtl24LjEMExp1XuhC4Yqn5X7qy2IknFaRbzqQ> <xmx:50WBZOq3VmaaqDGSzTNpmL7bmnYUGgwJCPAQuAbZC2moq-JWa7-Qmg>
Feedback-ID: ie6694242:Fastmail
Received: by mail.messagingengine.com (Postfix) with ESMTPA; Wed, 7 Jun 2023 23:07:18 -0400 (EDT)
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3731.600.7\))
From: Mark Nottingham <mnot@mnot.net>
In-Reply-To: <rt-5.0.3-2207827-1686155260-1464.1274499-37-0@icann.org>
Date: Thu, 08 Jun 2023 13:07:14 +1000
Cc: opsec@ietf.org
Content-Transfer-Encoding: quoted-printable
Message-Id: <35684062-23D9-46F9-9EAC-329FBE7F7B11@mnot.net>
References: <RT-Ticket-1274499@icann.org> <rt-5.0.3-2205261-1686155005-884.1274499-37-0@icann.org> <rt-5.0.3-2207827-1686155260-1464.1274499-37-0@icann.org>
To: drafts-expert-review@iana.org
X-Mailer: Apple Mail (2.3731.600.7)
Archived-At: <https://mailarchive.ietf.org/arch/msg/opsec/1UeQ8TCjIb3dHvNml2y2OLLkFqc>
Subject: Re: [OPSEC] [IANA #1274499] expert review for draft-ietf-opsec-probe-attribution (well-known-uris)
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/opsec/>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 08 Jun 2023 03:07:30 -0000

Hi Sabrina et al,

The registration is approved.

Feedback on the document:

* Section 2.2 says 'As defined in Section 8, the probe description file must be made available at "https://example.net/.well-known/probing.txt"'. This is not correct, as it hardcodes the domain 'example.net' and the scheme 'https'. If you want to only use the scheme 'https', that should be explicitly required (remember, Well-Known URIs are defined for many URI schemes).

* It would be helpful to more clearly state the purpose of the Probe Description up front; to a new reader, it's not clear whether it's describing a particular probe, or a policy for probing (which could be implied by the normative reference to RFC9116). It might help to more clearly and definitely describe what a probe is and is not.

* What is "URI inclusion" (mentioned in Section 3)?

Cheers,


> On 8 Jun 2023, at 2:27 am, Sabrina Tanamal via RT <drafts-expert-review@iana.org> wrote:
> 
> Hi Mark (cc: opsec wg),
> 
> As the designated expert for the Well-Known URIs registry, can you review the proposed registration in draft-ietf-opsec-probe-attribution-05 for us? Please see
> 
> https://datatracker.ietf.org/doc/draft-ietf-opsec-probe-attribution/
> 
> The due date is June 21st.
> 
> If this is OK, when the IESG approves the document for publication, we'll make the registration at:
> 
> https://www.iana.org/assignments/well-known-uris
> 
> Thanks,
> 
> Sabrina Tanamal
> Lead IANA Services Specialist
> 

--
Mark Nottingham   https://www.mnot.net/