Re: [regext] I-D Action: draft-ietf-regext-rdap-redacted-07.txt

Rick Wilhelm <Rwilhelm@PIR.org> Fri, 24 June 2022 14:32 UTC

Return-Path: <Rwilhelm@PIR.org>
X-Original-To: regext@ietfa.amsl.com
Delivered-To: regext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 10724C15D49F for <regext@ietfa.amsl.com>; Fri, 24 Jun 2022 07:32:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.806
X-Spam-Level:
X-Spam-Status: No, score=-1.806 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=pirorg.onmicrosoft.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dnwuavgTAyJn for <regext@ietfa.amsl.com>; Fri, 24 Jun 2022 07:32:09 -0700 (PDT)
Received: from NAM12-DM6-obe.outbound.protection.outlook.com (mail-dm6nam12lp2170.outbound.protection.outlook.com [104.47.59.170]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E8AFEC14F726 for <regext@ietf.org>; Fri, 24 Jun 2022 07:32:08 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=imCd0qx0g7UvoLVv8Wry4Z8iu0Jgt7GnST0AiukO/0Hco6MpAPvYg/XqXAJbVuyIYibdUCkX6ftMt2ca/i8XO1Q92dWiRwNiG8AoVvx6A+W5a5Vh4vNGGOmZrLZT2g/e5EOi9B7+I9AIW9Exmib9SvsjOTJqIgtK4+JuNJxq49/OheieihQwUxKo2x2dYwR6A1xjh0SIfobR1usSNZB8EsdFeRAHK7Ym44ZPHobH161KTF3ObiqEZH45vtFf9P7S9GxcMT0Ywj3l0S1oONH4SYtVaN3QSC/i19cLcInlGDLAw+/+6wiB2FGRIOgYMOD51kIFj/45bGASICDYzh6AGA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=LpviWuX0eSdq2/CBBhBYqMxriFMeY2+7bc47LeV2aFQ=; b=iUPP7G7IByxnXh0GbQdK9QfwN1ZBBtDjFrDOXd59lP0mmbec1Nvhic+WbKi8nMY9MlVLgma+xZ8fVnU8UDcE+tUSuXGoN73MqWliQ66iTkNnHLI988vY2YciBDJYQRmmFqd1X3kXVzPUGPSlh6O3WDOisjbVFMB5ffJMXPJQ4Wsd4mq+wQs6uEylltR9h9X2DOwltQAPOimBu68vTTYFbSZgpDVy9zXOtFuWdLchbeI//elXY0JO0VBreJI5mqHsZvu26ab5pS4CVTlHfHG2LX3i9kaeXJOgHXtAqI2SjMt5F6CJk4lDmbQQ+3fUTJTgGcLEvuccC28pKv7UhUk+tg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=pir.org; dmarc=pass action=none header.from=pir.org; dkim=pass header.d=pir.org; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=pirorg.onmicrosoft.com; s=selector2-pirorg-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=LpviWuX0eSdq2/CBBhBYqMxriFMeY2+7bc47LeV2aFQ=; b=I1OgfxSpvgKCke4npYnkgamrXytg+jh94suPQ+BbmbDAAj9i/IswXiltmv0rAdZnqkjuPjHjHcc8fe9/tH9f7BGVQjLyrEGldzUqJMDPauKH1MLL+l8p0giFX+PvtpleUBdlvEI5A08UNu7GY85um5GLN5GyLNzmvjK/CFXZ1tA=
Received: from BY5PR10MB4179.namprd10.prod.outlook.com (2603:10b6:a03:206::8) by CY4PR10MB1622.namprd10.prod.outlook.com (2603:10b6:910:8::8) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5353.20; Fri, 24 Jun 2022 14:32:04 +0000
Received: from BY5PR10MB4179.namprd10.prod.outlook.com ([fe80::840a:d0d9:d57:9f5f]) by BY5PR10MB4179.namprd10.prod.outlook.com ([fe80::840a:d0d9:d57:9f5f%7]) with mapi id 15.20.5373.015; Fri, 24 Jun 2022 14:32:03 +0000
From: Rick Wilhelm <Rwilhelm@PIR.org>
To: "Gould, James" <jgould@verisign.com>, "regext@ietf.org" <regext@ietf.org>
Thread-Topic: Re: [regext] I-D Action: draft-ietf-regext-rdap-redacted-07.txt
Thread-Index: AQHYh9PsaWHkj6I0nEy4jd7P0FANvq1emYsL
Date: Fri, 24 Jun 2022 14:32:03 +0000
Message-ID: <BY5PR10MB41793A56E8AA60BFE2CEAEDDC9B49@BY5PR10MB4179.namprd10.prod.outlook.com>
References: <AFB1AE68-1E67-453C-B92C-1AE806E771F1@verisign.com>
In-Reply-To: <AFB1AE68-1E67-453C-B92C-1AE806E771F1@verisign.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=PIR.org;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 5251384d-80a2-4978-7aae-08da55ee4eb9
x-ms-traffictypediagnostic: CY4PR10MB1622:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 6gw5OYa6NHww59fNEEo5Up3gmMicypAnowJFvW09Atg5rKg+ueKxjM4hUipwsEIdbFEsig5aKiVxQKtAndylFgZUmV3bzZDVIbiaY4FiIPyHQxKA5z7aBRetvXmNWwz7e2w87RErlTh+3omNXEM0709kikTsBux2UcwqXg2rJLgg5l38FIQz6TaHlSEvoAHbGR5t1vh8UL8LemY0HbWjmIzOhmjmpxVraRPTwFH2I/eaFfwgMObhwKh8s2X2nU8/Ad3QsWvf4xlTxbaokfJXHa5kCqhgK6LRor+zviulPiouYahlGmwrA1PDuhU6CTYqPgoKOnLbyugiLM4276O13Z6JCpQ4hVjpCCBXQBk9nTtockiZKR6YKCaII6BqOm8ILxJL0EcxoLgAvCsF/VTwzaTlU7IZtE09/IRK23RHJlyV08DEwB0U7EiN6NFsmwVj8ce5Sc2S1n/YVCPWERjFj+NZSrKfZBngg+5RkvDjkTqxxcqyypL2UqUlb8oJ17cGf1fiUHaxzxndm1VlPLkO/1vHeP+xSWBVviRnhNU3Tx91gQ5cjcHzRfyGMnZ2ZsZH6iO6sQq6p8FAeJOUW+cb/HQODgdOCznm8G5c9Qz3bdMsqz5SnEtckKBP9aebb1OyT3sJnmQUXBWKpnsNilY+8gRxaZOEHOKfov/4jPtgFWu+vOK34e4pPbR6U0npqLtq1MJl91MdFm26rab/ZJjBJYntr7xLmAE7JzpAzvc8ZALSPtHFIvaYEaCI0mTQdObMlRjPQ9puZZ7FLiT4tCzM5A43dXhe+voA4aN2Gtappy5RAd27L5umkOuSpNZ1xeqrnj0CGWpZbQc11KH48R2ElY1G3izMBw653C8x1GF4FyY=
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BY5PR10MB4179.namprd10.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(376002)(346002)(39840400004)(366004)(396003)(136003)(38100700002)(66446008)(2906002)(110136005)(6506007)(86362001)(8936002)(91956017)(5660300002)(66476007)(52536014)(316002)(76116006)(186003)(7696005)(64756008)(66946007)(9686003)(122000001)(966005)(66574015)(41300700001)(55016003)(166002)(8676002)(71200400001)(99936003)(33656002)(38070700005)(66556008)(53546011)(83380400001)(478600001)(40140700001)(26005); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/related; boundary="_004_BY5PR10MB41793A56E8AA60BFE2CEAEDDC9B49BY5PR10MB4179namp_"; type="multipart/alternative"
MIME-Version: 1.0
X-OriginatorOrg: pir.org
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BY5PR10MB4179.namprd10.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 5251384d-80a2-4978-7aae-08da55ee4eb9
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Jun 2022 14:32:03.7233 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 6c8ced78-b98f-4fa4-b6df-38beaa0d935d
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: PWfrNgk2dkyyn0Augl+QksYZcWR5umKlJ4KPOfF7UH2Aonw/isKBjRSvaR+fM3/HwjnwAT2eBScYX23Fy3+0dw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CY4PR10MB1622
Archived-At: <https://mailarchive.ietf.org/arch/msg/regext/uC2_blT81UCBCqoLH7JgxzyAVWM>
Subject: Re: [regext] I-D Action: draft-ietf-regext-rdap-redacted-07.txt
X-BeenThere: regext@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Registration Protocols Extensions <regext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/regext>, <mailto:regext-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/regext/>
List-Post: <mailto:regext@ietf.org>
List-Help: <mailto:regext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/regext>, <mailto:regext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 24 Jun 2022 14:32:13 -0000

Jim,

Responses embedded in the feedback below.  For ease of parsing, search for “RW”.

Thanks
Rick


From: Gould, James <jgould@verisign.com>
Date: Friday, June 24, 2022 at 10:08 AM
To: Rick Wilhelm <Rwilhelm@PIR.org>, regext@ietf.org <regext@ietf.org>
Subject: [EXTERNAL] Re: Re: [regext] I-D Action: draft-ietf-regext-rdap-redacted-07.txt
CAUTION: This email came from outside your organization. Don’t trust emails, links, or attachments from senders that seem suspicious or you are not expecting.
________________________________
Rick,

Thank you for doing a detailed review of the draft.  I include responses to your feedback embedded below.

--

JG

[cid:image001.png@01D887B5.A3DA1B40]

James Gould
Fellow Engineer
jgould@Verisign.com<applewebdata://13890C55-AAE8-4BF3-A6CE-B4BA42740803/jgould@Verisign.com>

703-948-3271
12061 Bluemont Way
Reston, VA 20190

Verisign.com<https://protect-us.mimecast.com/s/isIVC820GEt6Vy2SnmqvF?domain=verisigninc.com/>

From: Rick Wilhelm <Rwilhelm@PIR.org>
Date: Thursday, June 23, 2022 at 4:51 PM
To: "regext@ietf.org" <regext@ietf.org>, James Gould <jgould@verisign.com>
Cc: "regext@ietf.org" <regext@ietf.org>
Subject: [EXTERNAL] Re: [EXTERNAL] [regext] I-D Action: draft-ietf-regext-rdap-redacted-07.txt

Jim, et al,

While there is clearly work going on to determine a direction related to the conformance values, I wanted to invest some time to give a careful review of the current rdap-redacted draft to have it better prepared to progress after the WG comes to some consensus.

JG – I also want to get to a target approach for the conformance values.  Look at the mailing list posting https://mailarchive.ietf.org/arch/msg/regext/fIA70fb4qqQGD9G1u4rk7aKrFTc/<https://protect-us.mimecast.com/s/xHeHC9rPJgHkywlsEcvQL?domain=mailarchive.ietf.org/> for a break down and example of each of the approaches.  As noted in that message, I prefer Approach C, but I believe Approach B is a reasonable compromise for Approach A and C.  Please reply to that thread if you have a preference.

RW:  Will do.

Overall, I think that this draft looks really good.  I’m hoping that we can figure out the conformance thing soon.

In that context, and in the order of the document, here is some feedback.  Most of these are small, trending toward nit.


1. Introduction

Regarding:

A redacted RDAP field is one that has data
   removed from the RDAP response due to the lack of client privilege to
   receive the field.

As has been discussed elsewhere and is presented in this document, the concept of “redaction” is broader than “removal” and also includes “edit”.  Additionally, there may be any number of reasons why a response would be redacted (which would most certainly include “lack of client privilege”, but could also include other reasons.  To that end, I would suggest the following edit:

A redacted RDAP field is one that has data
   in the RDAP response edited due to policy, for example, the lack of client privilege to
   receive the field.

JG – I believe that edited is not descriptive enough.  How about including the case of replacement and incorporate your more generic language on the reason with:

A redacted RDAP field is one that has data
removed or replaced in the RDAP response due to server policy, such as the lack of client privilege to
receive the field.


RW:  Good upgrade.

3. Redaction Methods

Regarding:

   The redaction of RDAP fields fall into the two categories of
   Redaction by Removal Method (Section 3.1) and Redaction by Empty
   Value Method (Section 3.2), defined in the following sub-sections.

I think that this paragraph needs updating to account for (the recently added) Section 3.3.  As in:

   The redaction of RDAP fields fall into the two categories of
   Redaction by Removal Method (Section 3.1), Redaction by Empty
   Value Method (Section 3.2), and Redaction by Replacement Value
   Method (Section 3.3), defined in the following sub-sections.

JG – Good catch.  That does need to be updated to cover the three categories.  I believe it’s easy to remove the direct references and simply state:


The redaction of RDAP fields fall into the three categories defined in the following sub-sections.

RW:  Good upgrade.

3.1 Redaction by Removal Method

Nit:  Suggest putting a paragraph break before “An example of redacting…” in order to better separate the example from the normative text.

JG – Yes that can be done and it will be more consistent with the other examples.

4.2 “redacted member”

Regarding:

   The "redacted" member MUST be added to the RDAP response when there
   are redacted fields.

Suggest that this is updated to have the MUST unambiguously cover the case when there is exactly 1 redacted field

   The "redacted" member MUST be added to the RDAP response when there
   Is one or more redacted fields.

JG – That is fine.  The “Is” will be a lowercase “is” as in:


The "redacted" member MUST be added to the RDAP response when there

is one or more redacted fields.

RW:  Ah yes, that was an auto-correct glitch.  Good catch.

Regarding:

   "method":  OPTIONAL redaction method used with "removal" indicating
       the Redaction By Removal Method (Section 3.1), "emptyValue"
       indicating the Redaction by Empty Value Method (Section 3.2), and
       "replacementValue" indicating the Redaction by Replacement Value
       Method (Section 3.3).  The default value is "removal" when not
       provided.

I think that there is punctuation needed and a minor ed in the first line to improve clarity.  Suggested edit:

   "method":  OPTIONAL redaction method used; with one of the following values: "removal" indicating
       the Redaction By Removal Method (Section 3.1), "emptyValue"
       indicating the Redaction by Empty Value Method (Section 3.2), and
       "replacementValue" indicating the Redaction by Replacement Value
       Method (Section 3.3).  The default value is "removal" when not
       provided.

JG – Do you believe that the values should be included in a list?  I’m thinking that it should.

RW:  If you mean something like this, I think that would be a further improvement.  (If you are manipulating in-draft text, pls note that I replaced “and” with “or” between the last two items):

"method":  OPTIONAL redaction method used; with one of the following values:
    - "removal" indicating the Redaction By Removal Method (Section 3.1),
    - "emptyValue" indicating the Redaction by Empty Value Method (Section 3.2), or
    - "replacementValue" indicating the Redaction by Replacement Value
       Method (Section 3.3).
  The default value is "removal" when not provided.



Hope that helps.  Questions welcome.

Thanks
Rick


From: regext <regext-bounces@ietf.org> on behalf of internet-drafts@ietf.org <internet-drafts@ietf.org>
Date: Thursday, May 26, 2022 at 1:46 PM
To: i-d-announce@ietf.org <i-d-announce@ietf.org>
Cc: regext@ietf.org <regext@ietf.org>
Subject: [EXTERNAL] [regext] I-D Action: draft-ietf-regext-rdap-redacted-07.txt
CAUTION: This email came from outside your organization. Don’t trust emails, links, or attachments from senders that seem suspicious or you are not expecting.


A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Registration Protocols Extensions WG of the IETF.

Title : Redacted Fields in the Registration Data Access Protocol (RDAP) Response
Authors : James Gould
David Smith
Jody Kolker
Roger Carney
Filename : draft-ietf-regext-rdap-redacted-07.txt
Pages : 37
Date : 2022-05-26

Abstract:
This document describes an RDAP extension for explicitly identifying
redacted RDAP response fields, using JSONPath as the default
expression language.


The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-regext-rdap-redacted/<https://protect-us.mimecast.com/s/uAcDCgJNR2fAXzou3uEoR?domain=secure-web.cisco.com>

There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-regext-rdap-redacted-07.html<https://protect-us.mimecast.com/s/UCk0CkRNY7iOVJKF8-YWM?domain=secure-web.cisco.com>

A diff from the previous version is available at:
https://www.ietf.org/rfcdiff?url2=draft-ietf-regext-rdap-redacted-07<https://protect-us.mimecast.com/s/YiLZCmZg1yCjwQgf3AEGI?domain=secure-web.cisco.com>


Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts


_______________________________________________
regext mailing list
regext@ietf.org
https://www.ietf.org/mailman/listinfo/regext<https://protect-us.mimecast.com/s/7-F-Co2k3ytrNygI5voW1?domain=secure-web.cisco.com>