[saag] Model-T summary

Jari Arkko <jari.arkko@piuha.net> Thu, 24 March 2022 08:19 UTC

Return-Path: <jari.arkko@piuha.net>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CB9273A14D3 for <saag@ietfa.amsl.com>; Thu, 24 Mar 2022 01:19:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.905
X-Spam-Level:
X-Spam-Status: No, score=-1.905 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xtL-94edSfeH for <saag@ietfa.amsl.com>; Thu, 24 Mar 2022 01:19:31 -0700 (PDT)
Received: from p130.piuha.net (p226.piuha.net [193.234.219.226]) by ietfa.amsl.com (Postfix) with ESMTP id 667FA3A14D4 for <saag@ietf.org>; Thu, 24 Mar 2022 01:19:31 -0700 (PDT)
Received: from smtpclient.apple (dhcp-9af6.meeting.ietf.org [31.133.154.246]) by p130.piuha.net (Postfix) with ESMTPSA id B76086600E3; Thu, 24 Mar 2022 10:19:28 +0200 (EET)
From: Jari Arkko <jari.arkko@piuha.net>
Content-Type: multipart/alternative; boundary="Apple-Mail=_E1186BFE-7C51-446A-B194-DC2246984741"
Mime-Version: 1.0 (Mac OS X Mail 14.0 \(3654.120.0.1.13\))
Message-Id: <105B91CD-1488-482E-A2E7-2D1DCE7B3E2A@piuha.net>
Date: Thu, 24 Mar 2022 09:19:27 +0100
Cc: russ@riw.us
To: saag@ietf.org
X-Mailer: Apple Mail (2.3654.120.0.1.13)
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/OB-CQRZTk6jN1TiePFUOmIuPJkY>
Subject: [saag] Model-T summary
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 Mar 2022 08:19:34 -0000

Since the December virtual meeting the group has had some amount of discussion on the list, and three drafts have been posted this year. I think we also have at one other document being worked that could be posted soon.

In the December meeting, we divided potentially useful things we could do in two categories:

1/ documenting specific design principles motivated by evolving situation, to be published as short IAB RFCs
2/ proposing a way forward to document a change in the threat model, and bring/send it to the IETF

Documents relating to item 1 have been discussed on the mailing list, and revised. Two drafts discussed in this category currently: draft-thomson-tmi on careful use of intermediaries, and draft-arkko-iab-data-minimization-principle on careful release of data to other parties (“only do it on a need-to-know-basis”). The idea for these documents is that whatever we produce should not be an all-encompassing-cover-everything documents, but address specific, narrow issues that we believe are reasonable guidance at present time.

A design team was formed for item 2 that has worked on a proposal and organised a meeting. Specific proposal to be published though.

There’s an ongoing doodle poll for a meeting of the model-t program, sometime in the weeks after the IETF. See the model-t mailing list archives for more information in https://mailarchive.ietf.org/arch/browse/model-t/ <https://mailarchive.ietf.org/arch/browse/model-t/> 

Jari