Re: [regext] I-D Action: draft-harrison-regext-rdap-mirroring-00.txt

Stephane Bortzmeyer <bortzmeyer@nic.fr> Mon, 25 March 2019 09:55 UTC

Return-Path: <stephane@laperouse.bortzmeyer.org>
X-Original-To: regext@ietfa.amsl.com
Delivered-To: regext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2905E12037F for <regext@ietfa.amsl.com>; Mon, 25 Mar 2019 02:55:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HEADER_FROM_DIFFERENT_DOMAINS=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id zUUNkawdhaBZ for <regext@ietfa.amsl.com>; Mon, 25 Mar 2019 02:55:23 -0700 (PDT)
Received: from ayla.bortzmeyer.org (ayla.bortzmeyer.org [92.243.4.211]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EE9EC120381 for <regext@ietf.org>; Mon, 25 Mar 2019 02:55:22 -0700 (PDT)
Received: by ayla.bortzmeyer.org (Postfix, from userid 10) id 50764A0531; Mon, 25 Mar 2019 10:55:20 +0100 (CET)
Received: by godin (Postfix, from userid 1000) id 79407EC0B0E; Mon, 25 Mar 2019 10:53:03 +0100 (CET)
Date: Mon, 25 Mar 2019 10:53:03 +0100
From: Stephane Bortzmeyer <bortzmeyer@nic.fr>
To: Registration Protocols Extensions <regext@ietf.org>
Message-ID: <20190325095303.GA20313@laperouse.bortzmeyer.org>
References: <154902365612.28545.4161838707261421530@ietfa.amsl.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <154902365612.28545.4161838707261421530@ietfa.amsl.com>
X-Transport: UUCP rules
X-Operating-System: Ubuntu 18.04 (bionic)
X-Charlie: Je suis Charlie
User-Agent: Mutt/1.9.4 (2018-02-28)
Archived-At: <https://mailarchive.ietf.org/arch/msg/regext/5i9i-fIfFs1XF9dAb-X0RHAJ8Lk>
Subject: Re: [regext] I-D Action: draft-harrison-regext-rdap-mirroring-00.txt
X-BeenThere: regext@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Registration Protocols Extensions <regext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/regext>, <mailto:regext-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/regext/>
List-Post: <mailto:regext@ietf.org>
List-Help: <mailto:regext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/regext>, <mailto:regext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 25 Mar 2019 09:55:26 -0000

On Fri, Feb 01, 2019 at 04:20:56AM -0800,
 internet-drafts@ietf.org <internet-drafts@ietf.org> wrote 
 a message of 44 lines which said:

>         Title           : RDAP Mirroring Protocol (RMP)
>         Authors         : Tom Harrison
>                           George G. Michaelson
>                           Andrew Lee Newton
> 	Filename        : draft-harrison-regext-rdap-mirroring-00.txt

Since it is in the agenda of the WG this afternoon...

The Security Considerations are too weak. Unlike the RPKI (which was
the inspiration for this protocol), RDAP data may be
sensitive/personal. So, it requires a more thought-of privacy
analysis.

The current text just refers to RFC 7481, which do not seem to
consider bulk access. Mirroring all the data is very different from
having access for specific requests.