Re: [OPSEC] [IANA #1274499] expert review for draft-ietf-opsec-probe-attribution (well-known-uris)

Mark Nottingham <mnot@mnot.net> Fri, 09 June 2023 05:35 UTC

Return-Path: <mnot@mnot.net>
X-Original-To: opsec@ietfa.amsl.com
Delivered-To: opsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 44400C15198A for <opsec@ietfa.amsl.com>; Thu, 8 Jun 2023 22:35:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=mnot.net header.b="frDMumLs"; dkim=pass (2048-bit key) header.d=messagingengine.com header.b="gSDE5eKe"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sQS9A2a4LSqu for <opsec@ietfa.amsl.com>; Thu, 8 Jun 2023 22:35:05 -0700 (PDT)
Received: from wout4-smtp.messagingengine.com (wout4-smtp.messagingengine.com [64.147.123.20]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 833B4C151988 for <opsec@ietf.org>; Thu, 8 Jun 2023 22:35:05 -0700 (PDT)
Received: from compute4.internal (compute4.nyi.internal [10.202.2.44]) by mailout.west.internal (Postfix) with ESMTP id 3ACCB3200754; Fri, 9 Jun 2023 01:35:04 -0400 (EDT)
Received: from mailfrontend2 ([10.202.2.163]) by compute4.internal (MEProxy); Fri, 09 Jun 2023 01:35:04 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mnot.net; h=cc :cc:content-transfer-encoding:content-type:content-type:date :date:from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:sender:subject:subject:to:to; s=fm2; t= 1686288903; x=1686375303; bh=lHCwP/O3ykLq0aZKSbDFNXRzhC5xJ6kG/NG YEmtLU2Y=; b=frDMumLsLvcTrKwsmSlXklzih436elVGsOe1yC6BJJwkX4rrHTa asv/LguLNpsrYnk0GmvCZZ1U1tBfpnfCyn4FFpKUdrd6GYFAQNAx1sRP+QFKpZLQ MnWp6h984VllDFI8NaWmsZCNQSLNbJowEHfLEtCdcvB6ymxwO2Dw66PXspJC5COI PtBlOosVX5Cy5cqLacbytCGDxedlW6RpvpG3C0RAHZztkk7rb7QZY3kakZG92mHP LOrp7S1c6QXdQhlrcFv9FTX4UtuSxzgSiof7NDIJWvk5allkEXDh+bDvnny2f56I Y9mBcq7moBBhmesLmhEAIJJ6vt9uQ7v/IxQ==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:content-type:date:date:feedback-id:feedback-id :from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:sender:subject:subject:to:to:x-me-proxy :x-me-proxy:x-me-sender:x-me-sender:x-sasl-enc; s=fm1; t= 1686288903; x=1686375303; bh=lHCwP/O3ykLq0aZKSbDFNXRzhC5xJ6kG/NG YEmtLU2Y=; b=gSDE5eKe0Vvd7+AbmX9XuXpM+Iwu8xhpe63ElCyzfpEkoZxn39u B+rrsgoOpv9vk+D08pRECTFK/tHQ8I/jRi4NTZ1j0dB+aBvX4gN5yoS2qtnhNclG Chaa0CpGzfL2vDE8fyhR2jsTsKIjHXp+8fwOI0XUihyStUFeJ4LyNjbSz5SH+cux hX4Pz1Z1dqu+xRFDIJbiQ3pEj3KGYYzu1ZIEHgedV3ZXu1PjArF4g82y4cD4b3PQ wwMhOwHeWWflWeFFqkc/KHtLZdTu+7bLJ/4MbNOEvvtQJSdQYfVepogv6vEcCcsD vd4pKXpC7kujnJOujKb9+apNzHPF6Vwsw0Q==
X-ME-Sender: <xms:B7qCZEJ2xvgC7vFVPT6u10enkb76BozeIIBMxJq3-xKWUM5lxxqmuA> <xme:B7qCZELCjcPsNcHGlm_cHCEsZDvIiydTaPr3HNjPD5eyWamUS-UC4QQ06P7ceYDEC RArI5KxQZ2wf_cKcg>
X-ME-Received: <xmr:B7qCZEtaG-gfpFbGbiZsLEjivdzYRuhrHzRYDXRexNKfubElQ6DHbaAlY8A_arUQUtmyqY25TzVIuSpka8CwJb9PpYXu0sAbnndp1xozqHSFzspzLwVcXqZg>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrgedtjedgleejucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucesvcftvggtihhpihgvnhhtshculddquddttddmne cujfgurheptggguffhjgffvefgkfhfvffosehtqhhmtdhhtddvnecuhfhrohhmpeforghr khcupfhothhtihhnghhhrghmuceomhhnohhtsehmnhhothdrnhgvtheqnecuggftrfgrth htvghrnhepkedtueduteeiheehvdefleettdffudfhveeigfeuleffffevheetveffteej heejnecuffhomhgrihhnpegvgigrmhhplhgvrdhnvghtpdhivghtfhdrohhrghdpihgrnh grrdhorhhgpdhmnhhothdrnhgvthenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgr mhepmhgrihhlfhhrohhmpehmnhhothesmhhnohhtrdhnvght
X-ME-Proxy: <xmx:B7qCZBZAzPJlpUvPb8mee72bSE-wBuT3tQqnAtNDT7Bjr8JQ_cc_tQ> <xmx:B7qCZLbRFkdD9K03csCj2yHOWbo2671Hmdk40cRoNpTyWddirWVUnw> <xmx:B7qCZNBqz21unJ-zoRNY310jkBQ-m_UA3PF6KOZEYiXiAQh56poWIQ> <xmx:B7qCZCz4pjDwY6sJYFjVL2mCp79MdgFUVEjUsWNxeD0UDtk5Hk0XAQ>
Feedback-ID: ie6694242:Fastmail
Received: by mail.messagingengine.com (Postfix) with ESMTPA; Fri, 9 Jun 2023 01:35:01 -0400 (EDT)
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3731.600.7\))
From: Mark Nottingham <mnot@mnot.net>
In-Reply-To: <fbed81e1-8723-8f8e-2260-b03421c10bfa@uliege.be>
Date: Fri, 09 Jun 2023 15:34:59 +1000
Cc: drafts-expert-review@iana.org, opsec@ietf.org
Content-Transfer-Encoding: quoted-printable
Message-Id: <F924ABDE-8D59-4D78-834A-A38265F4A847@mnot.net>
References: <RT-Ticket-1274499@icann.org> <rt-5.0.3-2205261-1686155005-884.1274499-37-0@icann.org> <rt-5.0.3-2207827-1686155260-1464.1274499-37-0@icann.org> <35684062-23D9-46F9-9EAC-329FBE7F7B11@mnot.net> <fbed81e1-8723-8f8e-2260-b03421c10bfa@uliege.be>
To: Justin Iurman <justin.iurman@uliege.be>
X-Mailer: Apple Mail (2.3731.600.7)
Archived-At: <https://mailarchive.ietf.org/arch/msg/opsec/S6zpPn9AGRDJUhFD8EZ3PAAPXeg>
Subject: Re: [OPSEC] [IANA #1274499] expert review for draft-ietf-opsec-probe-attribution (well-known-uris)
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/opsec/>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 09 Jun 2023 05:35:10 -0000

Hi Justin,

> On 9 Jun 2023, at 6:32 am, Justin Iurman <justin.iurman@uliege.be> wrote:
> 
> Hi Mark,
> 
> Thanks for the review. Please see inline ([JI]).
> 
> On 6/8/23 05:07, Mark Nottingham wrote:
>> Hi Sabrina et al,
>> The registration is approved.
>> Feedback on the document:
>> * Section 2.2 says 'As defined in Section 8, the probe description file must be made available at "https://example.net/.well-known/probing.txt"'. This is not correct, as it hardcodes the domain 'example.net' and the scheme 'https'. If you want to only use the scheme 'https', that should be explicitly required (remember, Well-Known URIs are defined for many URI schemes).
> 
> [JI] Would "/.well-known/probing.txt" be better instead?

Yes.

>> * It would be helpful to more clearly state the purpose of the Probe Description up front; to a new reader, it's not clear whether it's describing a particular probe, or a policy for probing (which could be implied by the normative reference to RFC9116). It might help to more clearly and definitely describe what a probe is and is not.
> 
> [JI] We'll craft some text to make that clearer.
> 
>> * What is "URI inclusion" (mentioned in Section 3)?
> 
> [JI] "URI inclusion" is the in-band probe attribution (the mention was removed, it was rephrased based on Peter's review).
> 
> Thanks,
> Justin
> 
>> Cheers,
>>> On 8 Jun 2023, at 2:27 am, Sabrina Tanamal via RT <drafts-expert-review@iana.org> wrote:
>>> 
>>> Hi Mark (cc: opsec wg),
>>> 
>>> As the designated expert for the Well-Known URIs registry, can you review the proposed registration in draft-ietf-opsec-probe-attribution-05 for us? Please see
>>> 
>>> https://datatracker.ietf.org/doc/draft-ietf-opsec-probe-attribution/
>>> 
>>> The due date is June 21st.
>>> 
>>> If this is OK, when the IESG approves the document for publication, we'll make the registration at:
>>> 
>>> https://www.iana.org/assignments/well-known-uris
>>> 
>>> Thanks,
>>> 
>>> Sabrina Tanamal
>>> Lead IANA Services Specialist
>>> 
>> --
>> Mark Nottingham   https://www.mnot.net/
>> _______________________________________________
>> OPSEC mailing list
>> OPSEC@ietf.org
>> https://www.ietf.org/mailman/listinfo/opsec

--
Mark Nottingham   https://www.mnot.net/