Re: [sacm] [sacmwg/draft-ietf-sacm-information-model] remove the terms identification, identity, identifying (#21)

Henk Birkholz <notifications@github.com> Thu, 06 April 2017 15:14 UTC

Return-Path: <noreply@github.com>
X-Original-To: sacm@ietfa.amsl.com
Delivered-To: sacm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 52B7D1294B9 for <sacm@ietfa.amsl.com>; Thu, 6 Apr 2017 08:14:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.019
X-Spam-Level:
X-Spam-Status: No, score=-7.019 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=github.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id skhaBZAa2yE4 for <sacm@ietfa.amsl.com>; Thu, 6 Apr 2017 08:14:41 -0700 (PDT)
Received: from github-smtp2a-ext-cp1-prd.iad.github.net (github-smtp2-ext7.iad.github.net [192.30.252.198]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CEA31128768 for <sacm@ietf.org>; Thu, 6 Apr 2017 08:14:40 -0700 (PDT)
Date: Thu, 06 Apr 2017 08:14:39 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=github.com; s=pf2014; t=1491491679; bh=sEFnzF81c1N+0A4+sEU14OwQnfsv0QU2fKMuBJ4tI5s=; h=From:Reply-To:To:Cc:In-Reply-To:References:Subject:List-ID: List-Archive:List-Post:List-Unsubscribe:From; b=hyLNah2UVdtl1DwxMFj9ExmMbiH2NF25u8nXiiT23o01UdhJ+dfPDdD5GsRqKwgv/ 8P5cLgJ93zh0IQZTkfDNeLg1brsCRO3ehxAU5ZiiSJz4byBTYCz9ulHBQqNAokpp/b 36rO8ZfKXv9fJz2ZXR2zxcQd0yOcxTUrJKWeyfvM=
From: Henk Birkholz <notifications@github.com>
Reply-To: sacmwg/draft-ietf-sacm-information-model <reply+00a6c4d1f29248943ae34d590d357c042924e6e74c281cd092cf0000000114fe1d5f92a169ce05dd98e9@reply.github.com>
To: sacmwg/draft-ietf-sacm-information-model <draft-ietf-sacm-information-model@noreply.github.com>
Cc: Subscribed <subscribed@noreply.github.com>
Message-ID: <sacmwg/draft-ietf-sacm-information-model/issues/21/292206358@github.com>
In-Reply-To: <sacmwg/draft-ietf-sacm-information-model/issues/21@github.com>
References: <sacmwg/draft-ietf-sacm-information-model/issues/21@github.com>
Mime-Version: 1.0
Content-Type: multipart/alternative; boundary="--==_mimepart_58e65b5fd5255_2a173fa331d73c3c205283"; charset="UTF-8"
Content-Transfer-Encoding: 7bit
Precedence: list
X-GitHub-Sender: henkbirkholz
X-GitHub-Recipient: sacm
X-GitHub-Reason: subscribed
X-Auto-Response-Suppress: All
X-GitHub-Recipient-Address: sacm@ietf.org
Archived-At: <https://mailarchive.ietf.org/arch/msg/sacm/ZNfRraXuoUmD0ZUe5nKqjrnbZpU>
Subject: Re: [sacm] [sacmwg/draft-ietf-sacm-information-model] remove the terms identification, identity, identifying (#21)
X-BeenThere: sacm@ietf.org
X-Mailman-Version: 2.1.22
List-Id: SACM WG mail list <sacm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sacm>, <mailto:sacm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sacm/>
List-Post: <mailto:sacm@ietf.org>
List-Help: <mailto:sacm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sacm>, <mailto:sacm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 06 Apr 2017 15:14:43 -0000

Are there explicit pointers to the referenced thoughts posted?

Although the term identity allows for "Group identities", the SACM WG wants to refer to a specific target endpoint. If there is a NEA client or SACM component located on that target endpoint that is not a complicated task (assuming that that software component can provide guaranties about its authenticity). If a target endpoint is not "owned" by the domain, observation and profiling and resulting target endpoint characterization record might be the only way to refer to that target endpoint in the end.

I.e., keeping track of target endpoints that you "do not own" can be very privacy sensitive. In consequence, I would propose to refrain from using the terms identification and identity at least in that context ("not owned by you"). We should quickly create consensus in regard to this topic. 

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/sacmwg/draft-ietf-sacm-information-model/issues/21#issuecomment-292206358