[rpp] Re: Session / registrar mapping

Maarten Wullink <maarten.wullink@sidn.nl> Tue, 25 November 2025 13:54 UTC

Return-Path: <maarten.wullink@sidn.nl>
X-Original-To: rpp@mail2.ietf.org
Delivered-To: rpp@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id B64BC903DFD6 for <rpp@mail2.ietf.org>; Tue, 25 Nov 2025 05:54:28 -0800 (PST)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.1
X-Spam-Level:
X-Spam-Status: No, score=-2.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (1024-bit key) header.d=sidn.nl
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LgGDaDgrIQXW for <rpp@mail2.ietf.org>; Tue, 25 Nov 2025 05:54:28 -0800 (PST)
Received: from GVXPR05CU001.outbound.protection.outlook.com (mail-swedencentralazlp170130007.outbound.protection.outlook.com [IPv6:2a01:111:f403:c202::7]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-384) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id E9B5E903DFD1 for <rpp@ietf.org>; Tue, 25 Nov 2025 05:54:27 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=PshJrDUGKI/U1jwjzY9tZBu2DPGD7cSLkR/7VGVCsmT0DuZV+DaoeAV9GioOT1/d8sDyjGki0oUd8D5/k9BDn3c2iFmnr+eeBwkGAOTRwGWIxhfi6f+l5OtVt1tnUn9f3CmTwyZ3UNhqdEWX1MG1Mz/3+qZuuMZgwvU18YoIzGue7CC/1sM+I625dpflUBW3k+bZJ/ElHAxrmE4DnCohTmHQo7ium+BH+jUMoOZWXx8KqlgjbHUXt0Ku0h24+fUvbI2vjSVTGajpbhP62SpPZ1xQi1aaVDigupcppewUY5Y2ppyasjaDK8m9UVc/ZwNrSbdEAncGUI+jUbTAiWPYUQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=PgAsFaMTttHcjyaAUY1oQhloUvaEtOTjsZdh2b5jBa0=; b=WgrXxkY/a0dEdW48eix/VoZkpLrovrSDgsH53TZG3q7Ge3qvnSrfuO1mSlP9OF5EMWatTwFd67XQAwO4JCDe1HpkkrzPuw2zkM8uwqIvi80M0qCRoavmMZwm2AW/NLZr8O8JkVzuCCPWALHsSFG3GxE2dwnRauw8mAMIEnUVKsfAYl54C6G5/r7wRcPB6uZVyB6hpiu/Lbc12ZkINtNCVOsPPW3ZrMr99ICwiU6qilI0ZuUzg+xntSMXgX/TcTRz9pzuSzTQRaxWLU1SIv7i3lGTJ8gCp+x/d02AHO+K3G7XKhGHmctp5c6Hx7SlvI2F1k+38pKb6etehGz55FahtA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=sidn.nl; dmarc=pass action=none header.from=sidn.nl; dkim=pass header.d=sidn.nl; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=sidn.nl; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=PgAsFaMTttHcjyaAUY1oQhloUvaEtOTjsZdh2b5jBa0=; b=Y0/A8JQI1ddcfbAURtpJWNH4bQSSi3xGm6WmmRZ+1ZyMlK7EMY2oge991oQWzFJ0py0MvcPaXxiCbwYDAWry7PlmC/cV986TSKiC0EzyzEz5ryvRuBPMJcQD5T0/v/JvV072EMpDzaqQYr+K2zRj5mtdwAI9o70/OeG6/8vBSe8=
Received: from AM8P194MB1577.EURP194.PROD.OUTLOOK.COM (2603:10a6:20b:36c::16) by VE1P194MB0862.EURP194.PROD.OUTLOOK.COM (2603:10a6:800:168::8) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9343.17; Tue, 25 Nov 2025 13:54:03 +0000
Received: from AM8P194MB1577.EURP194.PROD.OUTLOOK.COM ([fe80::4f11:ad3b:dee4:457c]) by AM8P194MB1577.EURP194.PROD.OUTLOOK.COM ([fe80::4f11:ad3b:dee4:457c%5]) with mapi id 15.20.9343.016; Tue, 25 Nov 2025 13:54:02 +0000
From: Maarten Wullink <maarten.wullink@sidn.nl>
To: Ruth Trevor-Allen <fleeblewidget@gmail.com>
Thread-Topic: [rpp] Session / registrar mapping
Thread-Index: AQHcXhL0mhl8LXo53ESzEUuHXPvlbg==
Date: Tue, 25 Nov 2025 13:54:02 +0000
Message-ID: <4FDA2AB8-B88E-40FE-9B33-1494CFD1F829@sidn.nl>
References: <CAAVKzhHxrQGKdKWYknqyoM8V9zrOho_Sb0FjqQASHRqQiam7Lw@mail.gmail.com> <07110774-BECF-4194-A8A3-29E38BAEF692@denic.de> <CAAVKzhEcKr7zsssY40Ni_aNMoSBWiKcYtG2o-S7hfGHsQSu_VA@mail.gmail.com>
In-Reply-To: <CAAVKzhEcKr7zsssY40Ni_aNMoSBWiKcYtG2o-S7hfGHsQSu_VA@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-mailer: Apple Mail (2.3864.200.81.1.6)
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=sidn.nl;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: AM8P194MB1577:EE_|VE1P194MB0862:EE_
x-ms-office365-filtering-correlation-id: 058920f5-f412-4437-8cbf-08de2c2a1763
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|10070799003|376014|366016|1800799024|4022899009|19092799006|38070700021;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:AM8P194MB1577.EURP194.PROD.OUTLOOK.COM;PTR:;CAT:NONE;SFS:(13230040)(10070799003)(376014)(366016)(1800799024)(4022899009)(19092799006)(38070700021);DIR:OUT;SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-ID: <D91AFCA045878F4BB634ECE6B8FAE658@EURP194.PROD.OUTLOOK.COM>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: sidn.nl
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: AM8P194MB1577.EURP194.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 058920f5-f412-4437-8cbf-08de2c2a1763
X-MS-Exchange-CrossTenant-originalarrivaltime: 25 Nov 2025 13:54:02.5318 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: ab4d3626-c1c5-4a75-ab85-427f1a644a7d
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 4LdM7HHcuZiybpMxxZCgM7RZER5K+EuLWcbZdIvlJMSJFVj+X1v+TWpcxZWVOfb3zLiFYFTZc9chR6SlpnRQzA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VE1P194MB0862
Message-ID-Hash: F2FGOCC6XK7RH62T3SW3AK44S3QUP5JC
X-Message-ID-Hash: F2FGOCC6XK7RH62T3SW3AK44S3QUP5JC
X-MailFrom: maarten.wullink@sidn.nl
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Pawel Kowalik <kowalik@denic.de>, "rpp@ietf.org" <rpp@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [rpp] Re: Session / registrar mapping
List-Id: "This list discusses a provisioning protocol based on RESTful principles and corresponding data representations using JSON." <rpp.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/rpp/DEqyOZz9M5ZJchn1EJl7KvbHubc>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rpp>
List-Help: <mailto:rpp-request@ietf.org?subject=help>
List-Owner: <mailto:rpp-owner@ietf.org>
List-Post: <mailto:rpp@ietf.org>
List-Subscribe: <mailto:rpp-join@ietf.org>
List-Unsubscribe: <mailto:rpp-leave@ietf.org>

how about this text proposal, i slightly tweaked Pawels proposed text.


RPP MUST allow the registry operator to impersonate or to act on behalf of, any of the registry system accounts.
This includes having elevated access for provisioning objects, performing normal operations and as well as operations not available to regular clients.



Best,

Maarten



> Op 25 nov 2025, om 11:08 heeft Ruth Trevor-Allen <fleeblewidget@gmail.com> het volgende geschreven:
> 
> Ok, thanks Pawel, that makes sense.
> 
> To Jim's point, I don't want to start stuffing extra things into the
> core protocol and expanding the scope, but I do wonder whether
> automatically accepting the EPP model of an RPP user being exactly
> equivalent to a registrar could limit what we can do with RPP. I'm
> happy with Pawel's proposed wording for the requirements, I'll come
> back later if I think there are specific places in the core design
> where this could be an issue.
> 
> Thanks all!
> Ruth
> 
> On Fri, 21 Nov 2025 at 13:14, Pawel Kowalik <kowalik@denic.de> wrote:
>> 
>> Hi Ruth,
>> 
>> This is what I mean with impersonation, without going deeper on how it would be realised.
>> 
>> Viele Grüße / Kind regards
>> Pawel Kowalik
>> 
>>> On 21. Nov 2025, at 12:36, Ruth Trevor-Allen <fleeblewidget@gmail.com> wrote:
>>> 
>>> Thanks Pawel, that looks good. We may also want to consider adding a
>>> way of specifying the registrar ID on operations where it can't be
>>> inferred, such as create?
>>> 
>>>> On Fri, 21 Nov 2025 at 09:46, Pawel Kowalik <kowalik@denic.de> wrote:
>>>> 
>>>> Hi Ruth,
>>>> 
>>>> I think this is a very valid use case and covering internal usage by
>>>> registry was one of the added values of RPP.
>>>> This is something we are indeed missing in the requirements.
>>>> 
>>>> Proposal (in the Security section):
>>>> 
>>>> R9.x: RPP MUST support authorisation of registry operator power client
>>>> or user, being able to either impersonate any of the clients of the
>>>> registry, or act on behalf of registry with elevated access to
>>>> provisioning objects of all registry clients as well as operations
>>>> beyond of what is available to regular clients.
>>>> 
>>>> Would it cover this use case?
>>>> 
>>>> Kind Regards,
>>>> 
>>>> Pawel
>>>> 
>>>>> On 20.11.25 14:59, Ruth Trevor-Allen wrote:
>>>>> Hi all,
>>>>> 
>>>>> I've been working on a prototype RPP implementation for use with web
>>>>> apps, and something I'd like us to be able to support is use cases
>>>>> where a user is not necessarily exactly equivalent to a registrar. For
>>>>> example, they might be a superuser with access to carry out operations
>>>>> but no specific registrar ID, or an admin contact at multiple
>>>>> registrars with a single login to a web app which maps to multiple EPP
>>>>> logins. In order to offer a seamless experience to these users, it
>>>>> would be nice to be able to specify a registrar ID when carrying out
>>>>> operations where one is needed (for example domain: create), but it
>>>>> would also be nice not to have to identify the registrar for
>>>>> operations where it doesn't matter or can be inferred.
>>>>> 
>>>>> In particular, using EPP as a backend for apps like these, domain:
>>>>> check is an example of an operation where the actual registrar ID
>>>>> doesn't normally matter as long as the user has access to the TLD in
>>>>> general, and having to identify the appropriate user in order to
>>>>> submit the request can be undesirable overhead.
>>>>> 
>>>>> I don't know if this has implications for RPP design but wanted to
>>>>> flag it - is anyone else having these issues?
>>>>> 
>>>>> Thanks,
>>>>> Ruth
>>>>> 
>>>>> _______________________________________________
>>>>> rpp mailing list -- rpp@ietf.org
>>>>> To unsubscribe send an email to rpp-leave@ietf.org
>>> 
>>> _______________________________________________
>>> rpp mailing list -- rpp@ietf.org
>>> To unsubscribe send an email to rpp-leave@ietf.org
> 
> _______________________________________________
> rpp mailing list -- rpp@ietf.org
> To unsubscribe send an email to rpp-leave@ietf.org