Re: [rtcweb] Nils comments [Was: WGLC for draft-ietf-rtcweb-ip-handling]

Justin Uberti <juberti@google.com> Tue, 01 May 2018 21:33 UTC

Return-Path: <juberti@google.com>
X-Original-To: rtcweb@ietfa.amsl.com
Delivered-To: rtcweb@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EC25712EACB for <rtcweb@ietfa.amsl.com>; Tue, 1 May 2018 14:33:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.709
X-Spam-Level:
X-Spam-Status: No, score=-2.709 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, T_DKIMWL_WL_MED=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=google.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 29Z0sENGjQFs for <rtcweb@ietfa.amsl.com>; Tue, 1 May 2018 14:33:22 -0700 (PDT)
Received: from mail-it0-x22a.google.com (mail-it0-x22a.google.com [IPv6:2607:f8b0:4001:c0b::22a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1C66B12EAD2 for <rtcweb@ietf.org>; Tue, 1 May 2018 14:33:22 -0700 (PDT)
Received: by mail-it0-x22a.google.com with SMTP id q4-v6so6731657ite.3 for <rtcweb@ietf.org>; Tue, 01 May 2018 14:33:22 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=qf6PyVqisEfCDJAisWsWBUrkA3RecvNvLk/AgJHYKCs=; b=QURX6R3Zz+ATUwaLsoq1tY0ZEcW03HYdKfFiwwGmGPJUCYgDDOFsXbk32NzfXuHIk0 8XQ4QId4MPF0zfoS38mtBuPykWh9dgpVNQbVvHx00W7cHuXIYFLESlMBW6QJ087eVCKi nbU4Rl4lzFDqaIfWHHJJv5Ee/bogDMS052wh/EDpM9J8kZUHtgSBhMwAuXc0jFj8u3t5 RwsxMjwZAu9BQ/M0lHji2sMhu43Z9PPbYBTsNGiThKwSVMFwegpmFE/gSy51WivYGYRD MaxhBViHDcQ1Wi0nnHg45nbAObpAlKHwBanAcPoqItm2ylIva30VBDuYek2GdzdpdzCA OLGQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=qf6PyVqisEfCDJAisWsWBUrkA3RecvNvLk/AgJHYKCs=; b=IabEvrl2fZgqQ4Dglo0ro/5XCHeC305/i9imuXdgBOyVMvIy84J8dkwzZVili614KU ZPG98OWo/dZDHrrpACUsvPCzjwoALYweGE9NziTcP/9ju09+rL5HJhol853aR9phl+9S 2d/pBQMYwXJBF7WqIFITgc5OepIRkfZvQupnCOOM6W8O8kqTGDrJMFnfBYXfR/L/DuqN FJ04zVsigoOVCCfeuy0hgwBtBtvitRg32cdYdyZoi2BAiLrMNQVO425BOy5y8DqM3m+W Pi4YjrD+eQkQyACPrUFgssiNmCKkRflG/uIgu6tOpEjpp+HvnkamtA9GDdiWDsSFOg7F 7Sug==
X-Gm-Message-State: ALQs6tALn1pkG57FyDD42nfkd8ClcrzlLu31YWENMY5C4elmpcDpWVCr Lfj91MM3N7jfjsRiw8RLbCD8Ky1pk1NdoH26XgrgaRr/
X-Google-Smtp-Source: AB8JxZoI+ZZpZim0N05V1Njfw083Mf/ugO3+nH+Qdw28a8XFrkrzCNAArpn1QyCxk/s1jDL1CSV3XIQlkvAdbtYZppM=
X-Received: by 2002:a24:df04:: with SMTP id r4-v6mr17528944itg.105.1525210400927; Tue, 01 May 2018 14:33:20 -0700 (PDT)
MIME-Version: 1.0
References: <1D5B431C-801E-4F8C-8026-6BCBB72FF478@sn3rd.com> <F9EB7388-9E76-43E0-8C9B-61D3E50357F7@mozilla.com> <CAOJ7v-38kH4peZVVJU8itve2P+93eGaVdJ60MVcaRo3Xu86uTQ@mail.gmail.com> <296F0D20-F716-4C6C-8ABB-9FC21FC8189D@mozilla.com> <CAOJ7v-3wBVdfacAvb=VOggMXWMD1-5Oq-GCb5cNSCy3_-ur3Gw@mail.gmail.com> <A58B5A3B-DF5E-484B-ADD5-EBA539D0F250@iii.ca> <CAOJ7v-3FbN7v00Lzc5kJV4Nsw5DD0c6zLDLY+x1AgSOEHSt_WA@mail.gmail.com> <D6DEE1F6-A105-4095-902D-CB6F5AA2D937@mozilla.com>
In-Reply-To: <D6DEE1F6-A105-4095-902D-CB6F5AA2D937@mozilla.com>
From: Justin Uberti <juberti@google.com>
Date: Tue, 01 May 2018 21:33:08 +0000
Message-ID: <CAOJ7v-2aXsQrwJ77+MsZ0cw-cx=VJTccFJwc9rxSFjdd+bCs-g@mail.gmail.com>
To: Nils Ohlmeier <nohlmeier@mozilla.com>
Cc: Cullen Jennings <fluffy@iii.ca>, RTCWeb IETF <rtcweb@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000002849ab056b2bb8bd"
Archived-At: <https://mailarchive.ietf.org/arch/msg/rtcweb/qqOP2p32w8WdpIZssR_5k4acvcc>
Subject: Re: [rtcweb] Nils comments [Was: WGLC for draft-ietf-rtcweb-ip-handling]
X-BeenThere: rtcweb@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Real-Time Communication in WEB-browsers working group list <rtcweb.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rtcweb/>
List-Post: <mailto:rtcweb@ietf.org>
List-Help: <mailto:rtcweb-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rtcweb>, <mailto:rtcweb-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 01 May 2018 21:33:25 -0000

Do you want to take a shot at the text? (either in email or as a PR)

On Mon, Apr 30, 2018 at 3:21 PM Nils Ohlmeier <nohlmeier@mozilla.com> wrote:

>
> On Apr 30, 2018, at 15:03, Justin Uberti <juberti@google.com> wrote:
>
> Any TURN server provided by the browser is in effect a proxy, and forcing
> use of said proxy can be done either through firewall config or explicit
> selection of Mode 4. (IOW, no new mode is needed.)
>
>
> I do agree that these two configurations result in a similar behavior.
> But I doubt that these use the same code path in implementations.
> And (thus) I doubt readers of the draft/RFC will automatically come to the
> same conclusion.
>
> It think it might be helpful to add another sentence explaining this
> scenario.
>
> The document originally pointed at RETURN as an example of how such TURN
> proxying could work, but was removed in order to avoid a dependency.
>
>
> Fair enough.
>
>   Nils
>
> On Fri, Apr 27, 2018 at 11:22 AM Cullen Jennings <fluffy@iii.ca> wrote:
>
>>
>>
>> On Apr 17, 2018, at 3:15 AM, Justin Uberti <
>> juberti=40google.com@dmarc.ietf.org> wrote:
>>
>> IMO "trusting the TURN relay but not the application" is not a
>> significant enough benefit to merit adding specific functionality for.
>>
>>
>> In the case were the TURN server is provided by the JS, I agree. But in
>> the case where the configuration of the browser provided the TURN server,
>> then I think it is as trusted as say a VPN server.
>>
>>
>>
>