Re: [regext] Alissa Cooper's No Objection on draft-ietf-regext-rdap-object-tag-04: (with COMMENT)

Alissa Cooper <alissa@cooperw.in> Wed, 01 August 2018 13:42 UTC

Return-Path: <alissa@cooperw.in>
X-Original-To: regext@ietfa.amsl.com
Delivered-To: regext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6D3F7130E8D; Wed, 1 Aug 2018 06:42:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.7
X-Spam-Level:
X-Spam-Status: No, score=-2.7 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=cooperw.in header.b=V77nGvvi; dkim=pass (2048-bit key) header.d=messagingengine.com header.b=u0QvS+GZ
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Wk3hTAFXphjk; Wed, 1 Aug 2018 06:42:03 -0700 (PDT)
Received: from wout3-smtp.messagingengine.com (wout3-smtp.messagingengine.com [64.147.123.19]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 54831128CFD; Wed, 1 Aug 2018 06:42:03 -0700 (PDT)
Received: from compute7.internal (compute7.nyi.internal [10.202.2.47]) by mailout.west.internal (Postfix) with ESMTP id 89259402; Wed, 1 Aug 2018 09:42:02 -0400 (EDT)
Received: from mailfrontend1 ([10.202.2.162]) by compute7.internal (MEProxy); Wed, 01 Aug 2018 09:42:03 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cooperw.in; h=cc :content-transfer-encoding:content-type:date:from:in-reply-to :message-id:mime-version:references:subject:to:x-me-sender :x-me-sender:x-sasl-enc; s=fm3; bh=rstAczwBtxtYpGiHemGp12TO1G3xq hVMOTSOKSx5ScQ=; b=V77nGvvivkBq2E2Q6TceVx8onak03Fo0mqKQ8BGVz8aez FBY4C/g9aRp4G6KJvoVuPjDiebHhpdQxzZMIRh3FYR+kkqW+9nadoERJiLfUqQh8 YBcuDIZxe+Wxfh/v3k3BGVXpFeyYJZ4SP5BtWvHpJ2oX1yAp4q9Vgyv6+0buBujK TctRLFYigDpuwFxSHvCh1Eiiyugv/ZWfIq9VndRMMued0fTA9s4xsd7/yyh0IE0n q+AI+tn54rNBEImh9JFXjZUKgJAv2eoDfjbD3HpQ3qJRc9rS38dnrspR37H6xFYE OwgsOFH+ca3+egPbCL83GL565BbuuuxG5SBBOMixw==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-transfer-encoding:content-type :date:from:in-reply-to:message-id:mime-version:references :subject:to:x-me-sender:x-me-sender:x-sasl-enc; s=fm3; bh=rstAcz wBtxtYpGiHemGp12TO1G3xqhVMOTSOKSx5ScQ=; b=u0QvS+GZSVhBwCikfRkGcE M+T/50Hoa2xIDb2gDPfVDiCYKrnmzewdOcLvWywbYVCjnw1m4yaRTIb5CYczdMAP CJKFGk5gIT8ze/A1cxeKdsShSi05n3oZna5LoJtEAshUaGpO3RKBtBeG/41it/qI lJ9V8r0Dyx6RVYAdzoB5p9XyPBxR6GmRqa81G8PUXh34roGZOP5F5MAQV30iijVU T64jxV8EDbz3vhE04mrrEhktsc96cAczroqN4wbvGOcStSP1yDjJkh0rUq2hHFye WQbjYqVkysrLduoiY2wSHwfqytNFY4pNOpiTR9yKb2zUWgHPfiWyR1bnHiKCGoAg ==
X-ME-Proxy: <xmx:qrhhW1o7pEo5ksZ96jShWwChK9z6ZCF6RzZYmQN0yv5QkK1NUExBJg> <xmx:qrhhW1Tc12XDUP_ItI8FQbavWHUlGU3aFYW9rrSval0OMjHAH_RQXw> <xmx:qrhhW5nZhBFvdkz_y8Bc4X9qVTgagtKVacxWVbolzxEa5fxzb8qiQg> <xmx:qrhhW5HoQ-pdN4VDHM7QzTIJZ3gLQKzbxx-d5v1ajRKdoSlxzv_-NA> <xmx:qrhhW8kDcO9z8wniAAXI7Ml_xaKbFcLF_Emrs95Jj-UWJCvtOA7-SA> <xmx:qrhhW0trlT42THQBlsY4uLmIlyGtFtR5S9EQNqNt_Pm7deObXkRYWg>
X-ME-Sender: <xms:qbhhW_7ZOKnZMOhepI3c1byNXdqkNCneLpy2gpMk_wx8A9K1AaqilA>
Received: from rtp-alcoop-nitro2.cisco.com (unknown [173.38.117.79]) by mail.messagingengine.com (Postfix) with ESMTPA id 6BCC3E4511; Wed, 1 Aug 2018 09:42:01 -0400 (EDT)
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 11.5 \(3445.9.1\))
From: Alissa Cooper <alissa@cooperw.in>
In-Reply-To: <f3f763fd36c3499093123cb19f881c9c@verisign.com>
Date: Wed, 01 Aug 2018 09:41:59 -0400
Cc: IESG <iesg@ietf.org>, "draft-ietf-regext-rdap-object-tag@ietf.org" <draft-ietf-regext-rdap-object-tag@ietf.org>, "Gould, James" <jgould@verisign.com>, "regext-chairs@ietf.org" <regext-chairs@ietf.org>, "regext@ietf.org" <regext@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <0432C33A-37D8-4481-A286-FB00B04E1D60@cooperw.in>
References: <153305805904.3273.14937489699671784628.idtracker@ietfa.amsl.com> <f3f763fd36c3499093123cb19f881c9c@verisign.com>
To: "Hollenbeck, Scott" <shollenbeck@verisign.com>
X-Mailer: Apple Mail (2.3445.9.1)
Archived-At: <https://mailarchive.ietf.org/arch/msg/regext/QVBBtlw1zdEZS7vowhr6vbSO_Xk>
Subject: Re: [regext] Alissa Cooper's No Objection on draft-ietf-regext-rdap-object-tag-04: (with COMMENT)
X-BeenThere: regext@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: Registration Protocols Extensions <regext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/regext>, <mailto:regext-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/regext/>
List-Post: <mailto:regext@ietf.org>
List-Help: <mailto:regext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/regext>, <mailto:regext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 01 Aug 2018 13:42:06 -0000


> On Aug 1, 2018, at 7:52 AM, Hollenbeck, Scott <shollenbeck@verisign.com> wrote:
> 
>> -----Original Message-----
>> From: Alissa Cooper <alissa@cooperw.in>
>> Sent: Tuesday, July 31, 2018 1:28 PM
>> To: The IESG <iesg@ietf.org>
>> Cc: draft-ietf-regext-rdap-object-tag@ietf.org; Gould, James
>> <jgould@verisign.com>; regext-chairs@ietf.org; Gould, James
>> <jgould@verisign.com>; regext@ietf.org
>> Subject: [EXTERNAL] Alissa Cooper's No Objection on draft-ietf-regext-
>> rdap-object-tag-04: (with COMMENT)
>> 
>> Alissa Cooper has entered the following ballot position for
>> draft-ietf-regext-rdap-object-tag-04: No Objection
>> 
>> When responding, please keep the subject line intact and reply to all
>> email addresses included in the To and CC lines. (Feel free to cut this
>> introductory paragraph, however.)
>> 
>> 
>> Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
>> for more information about IESG DISCUSS and COMMENT positions.
>> 
>> 
>> The document, along with other ballot positions, can be found here:
>> https://datatracker.ietf.org/doc/draft-ietf-regext-rdap-object-tag/
>> 
>> 
>> 
>> ----------------------------------------------------------------------
>> COMMENT:
>> ----------------------------------------------------------------------
>> 
>> I'm not sure why anyone would do this, but I'll ask anyway: is there no
>> concern about someone maliciously registering an identifier against an
>> existing RDAP URL, given that the registry is specified to be FCFS? Let's
>> say I have a grudge against MyLocalRIR and I go register "fubar" as the
>> service provider name together with an existing mylocalrir.org RDAP URL.
>> This maybe has little practical effect but surely MyLocalRIR would not be
>> too happy with it.
> 
> Thanks for the review, Alyssa. Yes, this is possible. We could specify another registration policy; perhaps expert review? Even with that policy, though, the expert would have to be able to distinguish a "legitimate" operator from a fake, and that wouldn't always be an easy task and there would still be a risk of a fake getting through. Perhaps we could add text to advice IANA that fakes are possible and IANA should be able to respond to a change request from a "legitimate" operator with assistance from an expert reviewer. Another possibility could be FCFS with email contact information provided so that IANA can attempt to verify the request. Looking at RFC 82126 again, I see that "a minimal amount of clerical information" is required, so adding contact information would be a good change.

Adding the email verification seems like a good step.

Thanks,
Alissa

> 
> Scott