[regext] Re: WGLC: draft-ietf-regext-rdap-geofeed-05

Jasdip Singh <jasdips@arin.net> Tue, 16 July 2024 23:01 UTC

Return-Path: <jasdips@arin.net>
X-Original-To: regext@ietfa.amsl.com
Delivered-To: regext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3B9AFC15108D for <regext@ietfa.amsl.com>; Tue, 16 Jul 2024 16:01:34 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.907
X-Spam-Level:
X-Spam-Status: No, score=-1.907 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=arin365.onmicrosoft.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gF7NQvCYv23o for <regext@ietfa.amsl.com>; Tue, 16 Jul 2024 16:01:33 -0700 (PDT)
Received: from smtp3.arin.net (smtp3.arin.net [199.43.0.53]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7498CC16942E for <regext@ietf.org>; Tue, 16 Jul 2024 16:01:33 -0700 (PDT)
Received: from CAS01CHA.corp.arin.net (cas01cha.corp.arin.net [10.1.30.62]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by smtp3.arin.net (Postfix) with ESMTPS id 8C2941074742; Tue, 16 Jul 2024 19:01:32 -0400 (EDT)
Received: from EOR2201CHA.corp.arin.net (10.1.30.49) by CAS01CHA.corp.arin.net (10.1.30.62) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Tue, 16 Jul 2024 19:01:31 -0400
Received: from EOR2201CHA.corp.arin.net (10.1.30.49) by EOR2201CHA.corp.arin.net (10.1.30.49) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.1258.12; Tue, 16 Jul 2024 19:01:32 -0400
Received: from NAM12-DM6-obe.outbound.protection.outlook.com (192.136.136.37) by EOR2201CHA.corp.arin.net (10.1.30.49) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.1258.12 via Frontend Transport; Tue, 16 Jul 2024 19:01:32 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=SrGBV9Rn60MmjHOvugkwIQi2KkN3ehw4J3qEp8TnXSsu14h7Ypskp2kFi9yZNoVZvTanFqqvfBoYUOGUQMKgdjCR+9zx3gQNEh8Iv4FqL5Z1TyaeoIkRlm1VTFqZXXqpgnIW2UV7dU4Swx/hER93hsbVkbyGxb2cAOxqicw0nwnl4lQGiZzc6yofXU1KZs+sfm7FSIC5/He5RYNVt2DKidXLXb7sX0zn+wFTAwRogUaljHP2ycZy0smoxoUwCkXeAY41avfssyALupCPHdGFYDvoI6ib7m+TWMG5LhZeiwXQ32kLdC1W1yGeOVS15NLJJHtKBea+NK3PtgoidNFnKQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=H9KqrIandU2nwQi54ioifvIHmjd0SB7e7coHW60xWvQ=; b=VI+3J4ENFVEv2e6AbL1M/wqrd1trAjG9tdNFHEQnIXbSn185WlbzpaP+HdydZTDjVdPmZbQkpoGnP7dOtWtOm++BktxUok7ukbO2eRBbtkMe2d7qAz00sfHXhLtHPBZ1Wuc3DX7DsyHriGoDRZztvE9kbLNmoUeP5mb9Yg2oqJ2OwrYKEXE4o/LGHbXv9T+TgxHmUieMyLBVeKs0szBaGJvA2Dply85Y4+EsGi9o8elpzXyOFhXTZ96yiH5CYvUTGEMluarNYgLVE72SegILL2wxJCpM5eJBkIVbQsCGmZMX/SZyjiQ4JTD72x8nQl8vUao+/T+cXpmSKnqvllR4ZQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arin.net; dmarc=pass action=none header.from=arin.net; dkim=pass header.d=arin.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=arin365.onmicrosoft.com; s=selector1-arin365-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=H9KqrIandU2nwQi54ioifvIHmjd0SB7e7coHW60xWvQ=; b=utdWAC4PM3ZTFwxLfBrzM9eLitBc7ylQcoxv7uBZ7FNPRquwa7AvmlhNTVy9nrxgZMkpy4GGvIn35g5ve3aTGL2xCnUASic4KHB0i36n6mNkPV5it/h/LhHoD5NHgjL1OxoX7q0c8LbfyhBcCXG+w5vYxbdo1oZjiP5QgGU1QC650JTPTYMvt0brOVGnH2iS9kmXTxMyVDJNHldcghahg7ASC+N5gkjrYc6cabV9Yoq5OZlnKqmxzJRdETOXkzEZYFfATT+6pzNiRrC5p8QY3PPaYYCEfejok53DukS6Q2q7od1k16ZJXbyzZuprsJYTSLvLoYeABP0aWvvcOzyiDQ==
Received: from LV3PR15MB6453.namprd15.prod.outlook.com (2603:10b6:408:1a9::15) by SN7PR15MB6190.namprd15.prod.outlook.com (2603:10b6:806:2dd::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7784.14; Tue, 16 Jul 2024 23:01:29 +0000
Received: from LV3PR15MB6453.namprd15.prod.outlook.com ([fe80::caa0:465e:7a8c:b372]) by LV3PR15MB6453.namprd15.prod.outlook.com ([fe80::caa0:465e:7a8c:b372%3]) with mapi id 15.20.7762.027; Tue, 16 Jul 2024 23:01:29 +0000
From: Jasdip Singh <jasdips@arin.net>
To: Mario Loffredo <mario.loffredo=40iit.cnr.it@dmarc.ietf.org>, "regext@ietf.org" <regext@ietf.org>
Thread-Topic: [regext] Re: WGLC: draft-ietf-regext-rdap-geofeed-05
Thread-Index: AQHa14f44q74YDlMQE+E/FQM0h4lO7H59tR3
Date: Tue, 16 Jul 2024 23:01:29 +0000
Message-ID: <LV3PR15MB6453F84D0FD70105AB00EE51C9A22@LV3PR15MB6453.namprd15.prod.outlook.com>
References: <9AE89B13-D3D1-4D15-8EAA-105CCFA0F540@elistx.com> <95504da0-2733-4ace-9fb4-db3737018136@iit.cnr.it>
In-Reply-To: <95504da0-2733-4ace-9fb4-db3737018136@iit.cnr.it>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=arin.net;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: LV3PR15MB6453:EE_|SN7PR15MB6190:EE_
x-ms-office365-filtering-correlation-id: 17a03165-5586-4068-85af-08dca5eb3a30
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|376014|1800799024|366016|38070700018;
x-microsoft-antispam-message-info: T/j79EpLYKqiMddYF5EOjaIBBTqiczXpyu8b2ECq6uUWXem/PhKcZh71BK9kltYmeJOYLPFMZZMvIB0YjMv9CMr7/qNHxXi1Crvro9nZh/pCOqpw3FSMvVh6ivJpky2024IyHu+jy8MzmmnY7N586sKxJdlt/q/PKWPLVIEA81VtLFTGjNPFSrGwbJSWkTgfhxDsBzDjxHSU6RHk2fS9mTYKi2ce4pZ0XGxTDb9H0TstapxafVE4SfGsrFA5Nzk4VFTRFLdqeiWt8UpK7JlaHWxYZF1dr3f28qtWx0a2+GJ8fs5XhymV4d/+PPQRhO+tqeBw5G0+Rh1EyBjfC82ggffx1ycX0tqDRua5MI/UQ2EtNzb1Mw/TPTmH1VjiWCf/myyoIGr5dbGe2L5K8euI+XVfzMBQSem51+LJN8G0m6flZ+IgxDXkzRZIPMMojv+Q9njrAZnHQsMQQQmDeT6XE4OapOWUbuSWLBs68fQ35dOoVTriLGel2kuqIztO6xcqozcq69mykAX+bWo9ZVBWYC1nzSqtoKoRBnYu030zpiRNr783dwqAlBNpCzI+W2Q4OIZ1/qX3RaDGbiw0Zyk/U8RVHtomV8kDSgYDs5+sEITpjEAU/cEwZwPqeYD9fzVBp+8HM7MljPKD7vSsF2jfE6xzdyenX+da3vohyyEJmRFqVZFIg7k63C4nA5Y+09aBqTYvSq/lBD72yx6nY3a6w2za7aSIAuG1pKD4E90zAOp4SsZ4gOGZc0tV1O3J+AUoJec9vLLRPQWXJG9shSPfW+YHMjuYj/QgsSAr87gjXFa4o/g414zTkPXbkyXV7krr3KGJrwYdLqymHRAotgM4qzDEJgQKmRZVoKiorIaL4S82EexRbpS8yQgBDY0MgMIBW/lk6qtKAw8HDhXz7cRKqa0S7RaWYqM5V95qCuf3g/HyCh9VmUW+Py2YpJl/UI8kfoU14M62SqJQ0BzBxhAlr6e+GiMqImBzlKbmzkbvQmafTI6maLesqI5pMuN83xAzbTJuJxML25/r9xdbpGtkZtfPv+D1/EoXdL111zllXu8CN9HnILtsTcqr9C/jYn3vHhhpIk4Xi/NKnoOMjKW5owQlIVXt5cJJWBqnNeQ2afp4mDZWF7Ub6GvgRNo/06hxHng2/ze+zJqBnHOWDsv/44Nyr2no8a0aK7NXjfYMl2zB42wf0lhmSj9lxnPsa3+tvuJxaWLBbnm08bWoL4jEaMIZun+x3lRbJDW7VtTrQt+6qe5oDwBIXoWF9Nz3dXS2bjpoVUSHNkwbOL6VCXEk0qpcq/d2khn6oiY7iIiWHYkJ7WrXVxLXjaLVdQBWxjgwcV62Yw2DCV2jluQiZQFE6GEUd2a+2dsTr5re6YErGZkCxABrCGZznRmPY23cxN/VPrSV4UqcjzsrIAvCvOGFHg==
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:LV3PR15MB6453.namprd15.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(376014)(1800799024)(366016)(38070700018);DIR:OUT;SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: s4msXXFxXwAF/hmwE6sng+NDIy6ua//IYIdkz7V22GV70/8XkVS0pIB68DHeAAFE5j9YyomJgqVmL+VdygU0PKktIlyF7YGx6x8kDfQe/lOVz85h35VBUxU4xtLbnGEy1K2es2jsQxWVciaIm99+GkJvsCZpUdaaB3pQIEOw1y30eVTxmAkzDrZqJvf/sKJj23Kvbc4feHYQTCF70trqTBRYt4pdMB4pMUwh8co3JIIOvCUewm7ij1f2rpuWMw5aXLMuizA58pskBZI4agLcAGYnJNrBCjRHJ5/dQL8eQkB3oP5KEckrf8zJbgMVwczSRqY2T5Mr+UKk0ZVpffuegexf8B1YOWpv0lmnV6MJ07pTeZCLgk0oJwJsemAU1Yi+2Kolt3pzP0IywEwIo9SbSYgAfYtpRG7H+Vz/bH5qJNrc/NOktd81V0QxYkhBNqT78ybBcsyBWFrcEzbdGK6Hx67leJFUFMmNf0Pqsx8Vt6AN9J00Lj+NAKCTPami50IpW3B4jgH2CUKLSgT7y4OX+AF3PuTFBNm88i7r8xdMHDbxrZ5vfgclD5xU9OH+O8auAm3v3JHBKs5SUBkx2doWNKVB6AI6WVIMmQJNEHfVjZyTecbuEly1sUGp78Z86SbXJMYamPw/ex/DCtpzi7yz9Ec2TWzTp+hx7zdYCubeAg5lodl0m1SYO+u/YzkqMT3EfRHoiW5zz2ZJZcsvFtMGjxqZlnAGHkWtfTyghr9kXF+rbBDUm0cHnXa+Z07/dVq5Qdrpo1NwWLea008SVPZPXTrqUq7iJGrRtZ1vV4cOyGXzxUlUvGlSrhZTWYEmoqfCYUDXqkZgs3ECi0HNklwqaJ4+9sEZFv4qi7zp+EWBA//spf9GSUarDc56zwdcyarmA7ycvjayGfKu0K2h1Tnom07BaJKEZo3bPmOLsHqC3An38+7JUr0TWQzgN2n1kQFWso8mhReQwP2jnh9k46qTHOh/Z5iIJhAv87PNdoHXsw9OjFDvLw0AY/HVGnj0aOdTjgZt1gNnHvHprs7eO9xG++IfYTOx3NZfT/61+UQbA8C+E7m+cL1JVOhon9yBP/+soeBgVizgIZbNKXH4jDZ8/qL/dut3meC+qNwXpH0G16cfeNFrQ+YOCmucbRyqsmosMcw0+u+563Zrg8v9ssjoPYw8Er/3PEmxCg8IhXR0YYN4nr0+x6BmAB4iAFD/MPmJRrayyBfF/ROZ7oMgfLa6kJ4Ut6MwCg9oQfe9zDMJmJYcskAgxT0VubeMY6g+mgFeU2fmolAzDSgyDy/vmaz6Gg2mP9lj8g6FkJy/RNEhKmoRVcAi8LCtHA1nw8wKvHbzEgXDf+w8zjvoobNK2URRjDcjcx/GUO9OVhUYFGvv5dYCVeyOTPhylL5752R6eyopcnB1ON/lgymcZurhecN7IoeZGKF9gNBK2Gv5KgEx3UU+Lr4Of/vrc/xmnjZYRiT8B4L5L4q8O7nIRpEkY+QRYeqCeIOXtGfPuuMGf7+ecCWeYcVRTE562gJxdmkv20mkLqUS/PXtNzQDabilZIL4S7nIrvmdotmQcBRXQRXdJ0iuDczgxKeIUrxBvHXkooFiZHt4+vstqK6B4qWzELNxTg==
Content-Type: multipart/alternative; boundary="_000_LV3PR15MB6453F84D0FD70105AB00EE51C9A22LV3PR15MB6453namp_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: LV3PR15MB6453.namprd15.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 17a03165-5586-4068-85af-08dca5eb3a30
X-MS-Exchange-CrossTenant-originalarrivaltime: 16 Jul 2024 23:01:29.1548 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: cad70df5-eb75-43b7-adb3-12798d38d9b7
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 8vHiSerSz5ANcmCObrDf2OUC9oTJ0+w2D60YJVLgEwY0hl4n9fRF5anqHsTh18/WXeJkIXQ5yW2uQnmhR6fFuw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN7PR15MB6190
X-OriginatorOrg: arin.net
Message-ID-Hash: PPCEPHKZS6YDAQA24KJIN4IZD2PA5RQ3
X-Message-ID-Hash: PPCEPHKZS6YDAQA24KJIN4IZD2PA5RQ3
X-MailFrom: jasdips@arin.net
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-regext.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc4
Precedence: list
Subject: [regext] Re: WGLC: draft-ietf-regext-rdap-geofeed-05
List-Id: Registration Protocols Extensions Working Group <regext.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/regext/d6hOawNupwO5rjM9zTK1dy2EXJg>
List-Archive: <https://mailarchive.ietf.org/arch/browse/regext>
List-Help: <mailto:regext-request@ietf.org?subject=help>
List-Owner: <mailto:regext-owner@ietf.org>
List-Post: <mailto:regext@ietf.org>
List-Subscribe: <mailto:regext-join@ietf.org>
List-Unsubscribe: <mailto:regext-leave@ietf.org>

Hi Mario,

From: Mario Loffredo <mario.loffredo=40iit.cnr.it@dmarc.ietf.org>
Date: Tuesday, July 16, 2024 at 9:56 AM
To: regext@ietf.org <regext@ietf.org>
Subject: [regext] Re: WGLC: draft-ietf-regext-rdap-geofeed-05

Have reviewed this document.

Per what is stated in section 3, it's not clear to me what servers should do whenever the geofeed file exposes the location of an individual.

Neither Section 7 of [I-D.ietf-opsawg-9092-update] seems to clarify this point as it contains only a generic warning (see below):

... In publishing pointers to geofeed files as described in this document, the operator should be aware of this exposure in geofeed data and be cautious....

Should RDAP servers omit to present the geo link  or should they remove from the linked geofeed file the information related to the location of individuals ?
[JS] Since maintaining the public geofeed files from privacy angle, per the guidance from RFC 9092 update, is expected to be the concern of the ISPs,  and not the RDAP server operators, we should clarify this in section 3. How about updating the first paragraph in that section as follows?
“When including a geofeed file URL in an IP Network object, an RDAP server operator SHOULD follow the guidance from Section 7 of [I-D.ietf-opsawg-9092-update] to not accidentally expose the location of an individual.”
---->
“When including a geofeed file URL in an IP Network object, it is expected that the service provider publishing the geofeed file has followed the guidance from Section 7 of [I-D.ietf-opsawg-9092-update] to not accidentally expose the location of an individual.”

Does it mean that the geo link can be redacted ? If so, which redaction method should be used?
[JS] IIRC, we discussed this earlier and decided that redaction does not factor here since the geofeed files are public to start with. Please see section 7.3 change history.
Thanks for your review,
Jasdip