Re: [saag] "Privacy in IETF Protocols" at IETF83

Hannes Tschofenig <hannes.tschofenig@gmx.net> Fri, 30 March 2012 06:52 UTC

Return-Path: <hannes.tschofenig@gmx.net>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6B0E321F856C for <saag@ietfa.amsl.com>; Thu, 29 Mar 2012 23:52:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.548
X-Spam-Level:
X-Spam-Status: No, score=-102.548 tagged_above=-999 required=5 tests=[AWL=0.051, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id e10t0xA86+ub for <saag@ietfa.amsl.com>; Thu, 29 Mar 2012 23:52:09 -0700 (PDT)
Received: from mailout-de.gmx.net (mailout-de.gmx.net [213.165.64.22]) by ietfa.amsl.com (Postfix) with SMTP id C442421E809F for <saag@ietf.org>; Thu, 29 Mar 2012 23:52:01 -0700 (PDT)
Received: (qmail invoked by alias); 30 Mar 2012 06:52:00 -0000
Received: from dhcp-431b.meeting.ietf.org (EHLO dhcp-431b.meeting.ietf.org) [130.129.67.27] by mail.gmx.net (mp012) with SMTP; 30 Mar 2012 08:52:00 +0200
X-Authenticated: #29516787
X-Provags-ID: V01U2FsdGVkX193WbAiLyt3AVrAqPNDdoBViQCqpcMv5qY9ESPYF3 PbMCDiyxsjvBOw
Mime-Version: 1.0 (Apple Message framework v1084)
Content-Type: text/plain; charset="us-ascii"
From: Hannes Tschofenig <hannes.tschofenig@gmx.net>
In-Reply-To: <45274861-99FA-470F-94F7-8CF765F8C4DE@bblfish.net>
Date: Fri, 30 Mar 2012 09:42:46 +0300
Content-Transfer-Encoding: quoted-printable
Message-Id: <2EA894F4-EC84-4BC4-BF73-26A0BEF6DE4D@gmx.net>
References: <45274861-99FA-470F-94F7-8CF765F8C4DE@bblfish.net>
To: Henry Story <henry.story@bblfish.net>
X-Mailer: Apple Mail (2.1084)
X-Y-GMX-Trusted: 0
Cc: saag@ietf.org
Subject: Re: [saag] "Privacy in IETF Protocols" at IETF83
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/saag>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 30 Mar 2012 06:52:10 -0000

Hi Henry, 

great to hear that you like this topic. 

The Internet Architecture Board (IAB) has spent some time thinking about how to consider privacy in the design of Internet protocols. We tried to take a structured approach to it. 

Here is it: 
http://tools.ietf.org/html/draft-iab-privacy-considerations-02

Looking forward to your comments.

Ciao
Hannes


On Mar 30, 2012, at 6:24 AM, Henry Story wrote:

> I very much appreciated Ian Walden's talk today at IETF83 meeting in 
> Paris [1] He mentioned that the EU directives made it a legal requirement 
> to make the use of cookies transparent to the users. In the questions 
> and answers session I mentioned work by Mozilla that gave a very good UI
> demonstration of how this could be done. You can find the blog post by 
> Azza Raskin where he developed this here:
> 
>  http://www.azarask.in/blog/post/identity-in-the-browser-firefox/
> 
> He was working on a more cookie oriented approach, but this would also work very
> well for TLS, and there is an issue open for this on Google Chrome for example
> 
>  http://code.google.com/p/chromium/issues/detail?id=29784
> 
> It is good to see that the legislation is now providing an extra incentive to
> for browser vendors to provide good clean transparent user interfaces.
> 
> Henry
> 
> [1] picture of Ian Walden http://instagr.am/p/IwxJJQvhf6/
> 
> Social Web Architect
> http://bblfish.net/
> 
> _______________________________________________
> saag mailing list
> saag@ietf.org
> https://www.ietf.org/mailman/listinfo/saag