Re: [Pearg] IRTF Chair review of draft-irtf-pearg-censorship-06

"Dr. Joseph Lorenzo Hall" <hall@isoc.org> Thu, 15 December 2022 17:49 UTC

Return-Path: <hall@isoc.org>
X-Original-To: pearg@ietfa.amsl.com
Delivered-To: pearg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B2B75C1524B4 for <pearg@ietfa.amsl.com>; Thu, 15 Dec 2022 09:49:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.998
X-Spam-Level:
X-Spam-Status: No, score=-6.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, TRACKER_ID=0.1, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=isoc.org
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id IgcSQhqMa8cC for <pearg@ietfa.amsl.com>; Thu, 15 Dec 2022 09:49:33 -0800 (PST)
Received: from NAM04-MW2-obe.outbound.protection.outlook.com (mail-mw2nam04on2050.outbound.protection.outlook.com [40.107.101.50]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EB997C1522D9 for <pearg@irtf.org>; Thu, 15 Dec 2022 09:49:32 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=ZtMrBJNBwhJszcAcVKR/AtzrAESHf0ZwC7xabiKX9TLI2kPEZXCRTfSDSQrOt5xiNkW7cWjE38Eld8ESpMewV62vMEu1XOpBDzHLV1u5/Kog+iishJ4ytZ0EgEiDsGBSqjKf8ht66d6GeJ/PSEQcEADEBwzwWUsNvTokHRE36wfHBK+uQSV1bOMf776+QDaOpTo7YDoTUe4mn0Coa0h8pPf8/fYRWqCWx+fA+r0RsKQuTKypekTdsdqr4oUfNxS27AlekDbhoDcJv9jcoaeozrR+w/jCD9E1YkZ58mIsRs4NV8D9fQuxT4xUxBaeoEw+quO5nM9dwG+/FwZSDp2/yw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=cvyRuxV3hID85+6sMHdWBFv7X3GpRby5kiLpyUMhi1M=; b=TXiG/yUrjjN5eBeYqGaFsbYVhE+kYKkclIGheeflPes2YfEgEPYzHBrDJT1gPT44jiGikQVEJsdv20f7CL5SNxUE8LwgldUG3FhGKDC69PutHGK2qyhRy+/1sAiJnD6yEIn0A4n1wjYcXXC7oekz9dXBnh+8WDNMt4c9nM/YhW3T3VRAaXUd9dd5iNDjSscuFgrkqjstyvbo6o5/RdDTqeBoaffhoSF1A7T6idPt5PHKIFBPRjix0UlKHsAEbio/u8fHiIJer9OVjWoFn+77oEaN9+xu1RsYOwT87GUTljw8rLF2FuMQvMJQ6JfT8BFwI9ULvkpvCWtr2RIlty/sLQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=isoc.org; dmarc=pass action=none header.from=isoc.org; dkim=pass header.d=isoc.org; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=isoc.org; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=cvyRuxV3hID85+6sMHdWBFv7X3GpRby5kiLpyUMhi1M=; b=uwEy7o9wI5fcLD+V7erOZbGUGpfoRTEyZIJXHuhbFPzllYfLkIm6oJvYQRlq2zLgdQTOxfi1qKKw9saKSfE/uolSO8EX2Xzdt1H9qnoufBdFUpMfFNsLwyPwOFJPhcekHFe8KVOBwvBuSr/naWUaXkH2bFED/xGS2beaVjggsXw=
Received: from MN2PR06MB6302.namprd06.prod.outlook.com (2603:10b6:208:e0::17) by CO6PR06MB7043.namprd06.prod.outlook.com (2603:10b6:5:343::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5924.12; Thu, 15 Dec 2022 17:49:27 +0000
Received: from MN2PR06MB6302.namprd06.prod.outlook.com ([fe80::7802:67bb:8ba2:8ea0]) by MN2PR06MB6302.namprd06.prod.outlook.com ([fe80::7802:67bb:8ba2:8ea0%4]) with mapi id 15.20.5924.011; Thu, 15 Dec 2022 17:49:26 +0000
From: "Dr. Joseph Lorenzo Hall" <hall@isoc.org>
To: Mallory Knodel <mknodel@cdt.org>, Colin Perkins <csp@csperkins.org>, "pearg@irtf.org" <pearg@irtf.org>
CC: "pearg-chairs@ietf.org" <pearg-chairs@ietf.org>, "draft-irtf-pearg-censorship@ietf.org" <draft-irtf-pearg-censorship@ietf.org>
Thread-Topic: [Pearg] IRTF Chair review of draft-irtf-pearg-censorship-06
Thread-Index: AQHZBnO0MeL/POVzZk6cpAEhDQFj2q5vS8EAgAACaiI=
Date: Thu, 15 Dec 2022 17:49:26 +0000
Message-ID: <MN2PR06MB6302F761A23E9146B44EFD95B1E19@MN2PR06MB6302.namprd06.prod.outlook.com>
References: <EEB94C0D-88B8-4AE2-BF71-93E370D4A3C8@csperkins.org> <3e99a9e7-bf20-dada-d04f-8341217fdb01@cdt.org>
In-Reply-To: <3e99a9e7-bf20-dada-d04f-8341217fdb01@cdt.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=isoc.org;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: MN2PR06MB6302:EE_|CO6PR06MB7043:EE_
x-ms-office365-filtering-correlation-id: 377e1e78-758a-41b3-39ea-08dadec4b5b1
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MN2PR06MB6302.namprd06.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230022)(346002)(136003)(366004)(39840400004)(376002)(396003)(451199015)(122000001)(166002)(38100700002)(83380400001)(26005)(66574015)(52536014)(6506007)(53546011)(9686003)(186003)(7696005)(110136005)(41300700001)(66946007)(64756008)(66446008)(76116006)(66556008)(8676002)(66476007)(4326008)(71200400001)(5660300002)(966005)(316002)(91956017)(54906003)(478600001)(86362001)(33656002)(8936002)(2906002)(40140700001)(38070700005)(55016003)(73022008)(41612003); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: ob5IOwoG1nJZ/wL6n3I5RiJl7nWcwpMCgOgkyzokujh6Ri/m3R2AwZPh3MUYJjVxshrHOpmu+LaqIYcRhodiHde5n37/FX/VqDKuUJ6kWDmzFVvmIL+L6E5PY548G4O5jIkCt9jhCtSkUwAvMbdHjuyYGWWV88NnVCI/soJQILyOxfNXq60m+A9uNGyGcgL9qvVqEdpG1XsgCN1hHbgbYZgRUFKThzXwnODh0uSVBj+pPSpiKOOPk4PbjLGhbHjVFtBpKGOSxRuF/cABu7jMMxgIJNrVhVixMNz3vUU17H5bmz8mg1IJCNzEnq4NeXr0FFXQjZtsH0TlgGNTlZBQkipBueukCQIdW8m3tVVlaTyUCZL+1GgaqfI8DHnryCjqad46tOps+MGSbYRRYW3Vzfpity1O5WEe1cYaAqDILB74Sb3mbnGFH/HLY4vZPOePvv+vEgFFT4oKoAoK9bWvPoIZQeIzLl8xTef5pZMhw+3YcLuOM/vdeTGbRX9Ol4wqNWohXgrKNjMu+QllMKaVmOQuRbB5xnQYAvffhcbTcottKFpiRGuolyE2j+be3/DIGfh14Mis8zBcu9wrMmjVVS5wyENVa8cqzIgCsnchnvLGqqW+mjNH2t8fV56EMINJ3h+ul2u+omFuIkPn6p8vxml+qfHEKFeiCrTLTidDBTsyCgIjfD2D520IYL4N6hZsNiCyEnrztPDr/gxvWXdNHmFsDCrQpP02UC8St6TX35m4r9rbmw3gln4Z+/IvjjOBS7c3S9QNb8E+9bEqMCN/47WPFx2APff64vFHBelnCqRope2Zlmkyysg1q5SlNdu6y1kWzlpDbA3SLZIa/Gw7zff/+jR5npyuYaS0ro7xgpKGS3Th9PjMruJY63FzzEhxXYFXN/BR+i4zkYVwPrUqg65rXVByVqUpXU0MFaPONRmZJ+jHuprVO/T7vrT8zD2F5eOjlkNq85WSc+z5bI6rtp+KR91vNhQKaG7Y+otaJtbg279L7Eo5NlMiJygqVvmqGPUcZI4U+wLc46eVMBi+fERAqumzVEdKVHHDx7ipjJuGfxn9oxfhJCedZ5829dK2xfyNQZeW71WBZ1ZV8HQ5SwpJijaDC4se1pcxeluusJbjIq6xrvbQQMOToeljvwAIjAvufkkXMyMBnriFC4nRxexc4W6qhj0i/PdyToBmi9pdMoAgsdeqb7kPyii23W87MwjgScrxNxRfH0YmBMcb4Tth3DxxOcWew90oD3YJzJfBLsBcwPj/yqO1UmfOIPN1/gYXLNyFTKR87PWe6blOz4DLjcj3VuU9OmN4vaFsbWd8SAq6Gy2Ad6wCLo7AkmCd3KK4xLo0f7fxZV+m6cZytbA/5p6GUSUu92fC8xD75AGKztWQoNkeoEiieYwUeLs1VlaWE5/xfdUqPhD9W4+TdRKWj9dn/rA51w3XuPGaOxDAXOVX989IIq6bzZjDmFP/yO4KDeudZaeqyh3CTTRg2mbTYBOWbE2E8JAq+287QcAcYIGl+nJeSWjcyMWlz34SjygFK2KT33h/xIJ5tuhovFLLM6bHbqTOFSsZYL8cFAJbLbMR51ghdrbhGV89IKcU
Content-Type: multipart/alternative; boundary="_000_MN2PR06MB6302F761A23E9146B44EFD95B1E19MN2PR06MB6302namp_"
MIME-Version: 1.0
X-OriginatorOrg: isoc.org
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MN2PR06MB6302.namprd06.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 377e1e78-758a-41b3-39ea-08dadec4b5b1
X-MS-Exchange-CrossTenant-originalarrivaltime: 15 Dec 2022 17:49:26.9437 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 89f84dfb-7285-4810-bc4d-8b9b5794554f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: jQ9hTs0NIYSTGjHAJrHUHIIScCNbfrqpCIcphrbOynvSvF9NyX5RYZVJQ+V7ad5Q
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CO6PR06MB7043
Archived-At: <https://mailarchive.ietf.org/arch/msg/pearg/U4JCp5RLUZCK3CjaFzOAgOKnSAU>
Subject: Re: [Pearg] IRTF Chair review of draft-irtf-pearg-censorship-06
X-BeenThere: pearg@irtf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Privacy Enhancements and Assessment Proposed RG <pearg.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/pearg>, <mailto:pearg-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pearg/>
List-Post: <mailto:pearg@irtf.org>
List-Help: <mailto:pearg-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/pearg>, <mailto:pearg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Thu, 15 Dec 2022 17:49:37 -0000

Thank you, Mallory!

--
Joseph Lorenzo Hall, Distinguished Technologist, Internet Society
hall@isoc.org | +1-703-483-9504
internetsociety.org | @internetsociety
pgp: https://josephhall.org/gpg-key.txt
3CA28D7B9F6DDBD34B1016075F86698740A9A871
________________________________
From: Pearg <pearg-bounces@irtf.org> on behalf of Mallory Knodel <mknodel@cdt.org>
Sent: Thursday, December 15, 2022 12:40:32 PM
To: Colin Perkins <csp@csperkins.org>; pearg@irtf.org <pearg@irtf.org>
Cc: pearg-chairs@ietf.org <pearg-chairs@ietf.org>; draft-irtf-pearg-censorship@ietf.org <draft-irtf-pearg-censorship@ietf.org>
Subject: Re: [Pearg] IRTF Chair review of draft-irtf-pearg-censorship-06

Hi Colin and all,

I made some changes in the new version thusly:

On 12/2/22 12:29 PM, Colin Perkins wrote:
> RFC 5743 compliance: The draft does not follow the guidelines in RFC 5743
Fixed.
> There are two places where specific censorship products are mentioned, along with citations of their use (SmartFilter in §3 and §4.2.1, NetSweeper in §4.2.1). Given that the set of such products changes over time, and is likely to become rapidly obsolete, I wonder if the draft might better just list the classes of products and leave the specifics to the cited sources?
Agree-- and since those sections included enough description of those
technologies it was easy to remove them. However I did have to change
the citation for NarusInsight because the former citation (directly to
the EFF blog post about the AT&T lawsuit) didn't mention it. I use the
Wikipedia article about the lawsuit instead, which gives a better
overview of the techniques in question.
> §4.2.3: “Note that TLS 1.3 acts as a security component of QUIC” – do the differences in the way TLS integrates with QUIC affect censorship as described in this draft?

My interpretation of the intention of this sentence is to point out that
various parts of TLS 1.3 are used for blocking, but that each of these
parts then can be used to block QUIC in the same way. So rather than
having a QUIC subsection, they are combined. I checked the subsequent
sections and have confirmed that the subsections where relevant indicate
where QUIC can be blocked or where QUIC cannot be blocked with the same
method given that it is, still, different from TLS.

Additional note! Another major change that I should note here is that
I've now added some text throughout about image hash matching.
Essentially anywhere keyword or URL blocklist is mentioned in a way that
is adjacent to content filtering, I felt it appropriate to note the way
that images and videos can also be detected and actioned with removal.
The very brief text is cited to an excellent description of Apple's
proposed NeuralHash scheme written up by ekr, and can be found under
3.0. Technical prescription and 4.2.4. Instrumenting Content Distributors.

Thanks for the review, Colin,

-Mallory

--
Mallory Knodel
CTO, Center for Democracy and Technology
gpg fingerprint :: E3EB 63E0 65A3 B240 BCD9 B071 0C32 A271 BD3C C780

--
Pearg mailing list
Pearg@irtf.org
https://www.irtf.org/mailman/listinfo/pearg