Re: [Pearg] Adoption call for "Randomized Response Mechanisms in RRT Measurements for HTTP/3"

Mirja Kuehlewind <mirja.kuehlewind@ericsson.com> Mon, 02 November 2020 12:35 UTC

Return-Path: <mirja.kuehlewind@ericsson.com>
X-Original-To: pearg@ietfa.amsl.com
Delivered-To: pearg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4F6B33A0EB7 for <pearg@ietfa.amsl.com>; Mon, 2 Nov 2020 04:35:34 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.102
X-Spam-Level:
X-Spam-Status: No, score=-2.102 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0ZbUj6e_2Zu6 for <pearg@ietfa.amsl.com>; Mon, 2 Nov 2020 04:35:32 -0800 (PST)
Received: from EUR05-VI1-obe.outbound.protection.outlook.com (mail-vi1eur05on2074.outbound.protection.outlook.com [40.107.21.74]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BE1C33A0E9F for <pearg@irtf.org>; Mon, 2 Nov 2020 04:35:31 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Kb6NzEY3ZZw4kg4PA1xWLpyC3Ll1Bk6vr8a9M3GTAvGzDPtt/JDG30PqLi6MQM4y64J5DRTaqw1B+x8PuOGb6hNnLYrvraqJGReTKcuC+fgPhT78HtJAGskcKPmU60tMLMD0Njk8oc5sVANgZ+OEhjFem/tge4w0sQdhR18e0b8scQ1n8KzBl/CrXwMhOFLq+DVeFAERbhj5h8saUt2iM9bA/k8lTUp4O3lzdEEQR7TvQ2f/1K/ECCrOONQv/GwM9FZ7+qbQlfxiOi/XNa18UVDFf7GFRAq3Kwpfx+Si+cmOMFl2X5qbTqFEKAVkToMIClMC3S2y32OvkOB/yyKY8Q==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Ujx1r08NYyZegUpyDGFWKYJAWAK2qNa8MF+JjJmdbuc=; b=MTxpHjT4RGU/07buv9fRpGBAfqPAU/oVaL65EjX/xXjJeBvAXLY90vBnInC5+7tHNA90TV/pD5QGLIz4SKZDb9Xev3Dbj68LhAIPgFNde3ggjqn3Rn1NGneD5mIzupVznjidfiFNVi8ybYRD0/1pJ98CTYDsji59GpkVU/pVv0SQ6HBKLtDHUUE6UmGM2kjI1gZEiMrSBulNhy1CdLGcUSpvUsYRCWC1K2QQObhCIkNg0HQKoNawDRKhN1I+86YOHF5ylXTj/dj9dxRetpaV9SmI0quYsXW0w/hY46Xb2++qR3qplEQGTfR9/X03Yo6ysrJ26XDXYtzqLi2OVqSIcw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Ujx1r08NYyZegUpyDGFWKYJAWAK2qNa8MF+JjJmdbuc=; b=FCdCxekb6GPB+TqMWF3NvAI1yfEWxKHZiprfMoJm4p36Gxy/Nr+Ekd3Zr/lh3CHEcihm7txbkTcVTxYsiypvif5fcMQYX+N505FQKqOoFLvHi2fUZgyQKRmM53901uKlSdV9w7HtgGKeDBcqtoDlZvY/qMk1ACz0/5xqhiduVT0=
Received: from AM0PR0702MB3713.eurprd07.prod.outlook.com (2603:10a6:208:19::10) by AM8PR07MB7649.eurprd07.prod.outlook.com (2603:10a6:20b:244::15) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3541.10; Mon, 2 Nov 2020 12:35:26 +0000
Received: from AM0PR0702MB3713.eurprd07.prod.outlook.com ([fe80::9820:af8a:cdbc:73b0]) by AM0PR0702MB3713.eurprd07.prod.outlook.com ([fe80::9820:af8a:cdbc:73b0%7]) with mapi id 15.20.3541.011; Mon, 2 Nov 2020 12:35:26 +0000
From: Mirja Kuehlewind <mirja.kuehlewind@ericsson.com>
To: Christopher Wood <caw@heapingbits.net>, "pearg@irtf.org" <pearg@irtf.org>
Thread-Topic: [Pearg] Adoption call for "Randomized Response Mechanisms in RRT Measurements for HTTP/3"
Thread-Index: AQHWo79VCn7L/IVxwkWnQiABgBUWSqm08ouA
Date: Mon, 02 Nov 2020 12:35:26 +0000
Message-ID: <F27FD790-74CA-44CC-98FB-ED3B24E17B6D@ericsson.com>
References: <33ba4995-ea2d-45d8-9b01-05ea9b8ddbce@www.fastmail.com>
In-Reply-To: <33ba4995-ea2d-45d8-9b01-05ea9b8ddbce@www.fastmail.com>
Accept-Language: en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.42.20101102
authentication-results: heapingbits.net; dkim=none (message not signed) header.d=none;heapingbits.net; dmarc=none action=none header.from=ericsson.com;
x-originating-ip: [2003:de:e707:b600:a9e5:7aa1:80b0:8d15]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: ed8a8d3e-0404-4ed8-bb5b-08d87f2bc69b
x-ms-traffictypediagnostic: AM8PR07MB7649:
x-microsoft-antispam-prvs: <AM8PR07MB7649B07B19B75E505E4C85F9F4100@AM8PR07MB7649.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8882;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: zfvdcdo/NHgunJ+q+99fbwjqv+Gpr2bHC+85UJ+Q0AKFcnqCRnYKDSGhNZbBQ903Y2hG7uEnusjrLX+FiajqFTvuceVGc6Ase8MJSxaboDTRw+AyAZ/685mqdbYbEjoPYnAYFNqHqpjQRuMlqDuIMp2Q2reLpXJRh6Akp5YuOSebi7avEHikU/esaE/qcsRjq9EGQW4s/7TbqUGkgLuJX2nOQU/fjrKjKRKRKsugQrUAMaFJJeyTCeZ0tcPZUuaK6RkMzwCH/C1s1tDGHz4D7YFjxnNU0Dag6q52nan6sa07E3/5rItBZ51XwIuQfQoBhozLgaF85iOhUEP6pHQvl9M+lJuMZ2ILJh46L20trBY+5p+HV2GG1Gdy/kkg+kF+4zzHR0rZScbsw+PoPZJMHQ==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:AM0PR0702MB3713.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(346002)(376002)(396003)(366004)(39860400002)(136003)(110136005)(6512007)(44832011)(2616005)(966005)(316002)(478600001)(6506007)(33656002)(6486002)(66946007)(76116006)(66556008)(66446008)(64756008)(66476007)(83380400001)(36756003)(2906002)(5660300002)(186003)(8676002)(8936002)(86362001)(71200400001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <885D2FF2C2E9484CB7D821C5C71F6785@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: AM0PR0702MB3713.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: ed8a8d3e-0404-4ed8-bb5b-08d87f2bc69b
X-MS-Exchange-CrossTenant-originalarrivaltime: 02 Nov 2020 12:35:26.3150 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: xRa3YR5M5k5fimdJsyDrX/yBkQmj9/HkMZ4ySyuiKJtyTFwlE2GbG7qxvEyV1hCS8JELm2DpZmkQj8DKJK3HlbBhMgNqPoAl1AJXwUMxhyU=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM8PR07MB7649
Archived-At: <https://mailarchive.ietf.org/arch/msg/pearg/HRhLwAFhF-s0Hc3OaDBq-M8exKk>
Subject: Re: [Pearg] Adoption call for "Randomized Response Mechanisms in RRT Measurements for HTTP/3"
X-BeenThere: pearg@irtf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Privacy Enhancements and Assessment Proposed RG <pearg.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/pearg>, <mailto:pearg-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pearg/>
List-Post: <mailto:pearg@irtf.org>
List-Help: <mailto:pearg-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/pearg>, <mailto:pearg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Mon, 02 Nov 2020 12:35:34 -0000

Hi Chris, hi all,

sorry for my late reply. I finally found some time to review this draft.

First of all one quick question: why was the name changed from QUIC to HTTP/3 given the draft discusses a function of the QUIC...?

Then I'm not really in support for the adoption of this draft for two main technical reasons:

1) As stated in the draft, there are already proposed mechanisms QUIC specification to address the need to disable the spinbit:
"it is unclear whether RRM
   has advantages larger than already existing privacy mechanisms
   included in the QUIC draft (such as making the spin bit optional, or
   requiring that 1/8 of all streams are not measurable)"

2) Further the document says:
" But the whole point of differential
   privacy mechanisms, including RRM, is using statistical methods to
   ensure that data can be made more privacy-preserving while also
   preserving the data utility.  In the case of the spin bit, it is the
   utility of the data that allegedly violates privacy, which means
   differential privacy is an intuitively bad tool to address privacy
   concerns."
For this reason there is the option in QUIC to disable the spinbit entirely. Trying to add further fuzziness to the spinbit (when decided by the endpoint to enable) will in most cases simply make the signal unusable. This is because to measure the RTT you already need a certain amount of packets, also because there might network interfere that already make the signal noisy, and many transmission are short.

Further the draft actually does not discuss the privacy risk of this information. There was an extensive analysis in the QUIC working group that concluded that "[t]he geolocation threat appears negligible and no other threats were identified" (see https://www.ietf.org/proceedings/100/slides/slides-100-quic-sessa-spin-bit-evaluation-design-team-report-00). I don't think this group should adopt an document that is based on assumption which has been neglected by the working group that is actually specifying the protocol.

Mirja


On 16.10.20, 15:22, "Pearg on behalf of Christopher Wood" <pearg-bounces@irtf.org on behalf of caw@heapingbits.net> wrote:

    This message starts a two week adoption call for "Randomized Response Mechanisms in RRT Measurements for HTTP/3," located here:

       https://tools.ietf.org/html/draft-andersdotter-rrm-for-rrt-in-http3-00

    Please review the draft and indicate whether or not you would like to see this draft adopted by PEARG. 

    This call for adoption ends on October 30, 2020.

    Best,
    Chris, for the chairs

    -- 
    Pearg mailing list
    Pearg@irtf.org
    https://protect2.fireeye.com/v1/url?k=250a60b8-7baace75-250a2023-866132fe445e-bbbcd97773754954&q=1&e=53be6d3f-ae58-498c-beca-e2dba355cbfd&u=https%3A%2F%2Fwww.irtf.org%2Fmailman%2Flistinfo%2Fpearg