Re: [secdir] SecDir review of draft-ietf-appsawg-file-scheme-14

Larry Masinter <masinter@adobe.com> Wed, 07 December 2016 02:03 UTC

Return-Path: <masinter@adobe.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5A18312955B; Tue, 6 Dec 2016 18:03:17 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.022
X-Spam-Level:
X-Spam-Status: No, score=-2.022 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=adobe.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ir86h-_mHEtB; Tue, 6 Dec 2016 18:03:15 -0800 (PST)
Received: from NAM02-CY1-obe.outbound.protection.outlook.com (mail-cys01nam02on0046.outbound.protection.outlook.com [104.47.37.46]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1FA981293E1; Tue, 6 Dec 2016 18:03:14 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=adobe.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=j/uOZL8fKkUFTW0NaF2nL1ZDaYxOdXC4qcqwicl403g=; b=NX4bH12C+pVPidPi9+YP1SU0PLTssLgDazfKtM2WsJPRSyoQl816mi9YJ68M16yJLgiOLVneYC2lQpt3fnSEuDC6mXKMhvLMlp33gDk6pQqwmDUHFYx8F7TzvUVc+31/PD/YF2lBqotPJE/q64pqxgUhEgXs1p/gXiV+Av3VMWc=
Received: from CY1PR0201MB1530.namprd02.prod.outlook.com (10.163.139.21) by CY1PR0201MB1530.namprd02.prod.outlook.com (10.163.139.21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P384) id 15.1.761.9; Wed, 7 Dec 2016 02:03:13 +0000
Received: from CY1PR0201MB1530.namprd02.prod.outlook.com ([10.163.139.21]) by CY1PR0201MB1530.namprd02.prod.outlook.com ([10.163.139.21]) with mapi id 15.01.0761.017; Wed, 7 Dec 2016 02:03:13 +0000
From: Larry Masinter <masinter@adobe.com>
To: Matthew Kerwin <matthew.kerwin@qut.edu.au>, Barry Leiba <barryleiba@computer.org>, "draft-ietf-appsawg-file-scheme.all@ietf.org" <draft-ietf-appsawg-file-scheme.all@ietf.org>, "secdir@ietf.org" <secdir@ietf.org>
Thread-Topic: SecDir review of draft-ietf-appsawg-file-scheme-14
Thread-Index: AQHSSnFVunzqwIpXrEWQJ/jl2GkxXqD7tmcA//+KuYA=
Date: Wed, 07 Dec 2016 02:03:13 +0000
Message-ID: <76D997B0-226E-4994-B6D1-E42A7A6A8E43@adobe.com>
References: <CALaySJKTA9QXpm8JDzBdPKFuHGazqarHBryV7k3hZA+ObKjRCA@mail.gmail.com> <MWHPR01MB26702B8461E6E04ED1DEC5E9BE850@MWHPR01MB2670.prod.exchangelabs.com>
In-Reply-To: <MWHPR01MB26702B8461E6E04ED1DEC5E9BE850@MWHPR01MB2670.prod.exchangelabs.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/f.18.0.160709
authentication-results: spf=none (sender IP is ) smtp.mailfrom=masinter@adobe.com;
x-ms-exchange-messagesentrepresentingtype: 1
x-originating-ip: [192.150.10.207]
x-ms-office365-filtering-correlation-id: 821e9304-0229-446f-b6a5-08d41e4533c8
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(22001); SRVR:CY1PR0201MB1530;
x-microsoft-exchange-diagnostics: 1; CY1PR0201MB1530; 7:oB2C9uRAw3RPcc+YTac29fep4Dp92Y7JpP3U8mUC/wFEVOK+KQC14UfQT7tjIjqxVrC+3vNw9fzHLVaLRCSvepUgQ6izlAynl+zFC6zIOUiHbqEg+XsU6Nrum5LieXt579L4LxQX/Yamy2gHDaoxEKBzwUuRH3jTOFOpQeqhFLjlP2L4YZYEGEgDPxnmqhbH52uajP0AbVjrtW75R9YjOVevZFpfbRkWncM3w9KDgcY97Rk1DdrogXHKuSQUw0u5/0ik8HB7uZDk+ROLGnertzFWxtfX8wAnmOnbyXldGyAH+m0gba7anFniva+2LMxEB4gHKcOkdUR1FHrO49J4CybJW8ZXzxZsZ9dYgb6M8/wPX9NFKunDdvajttMFdjtzgc462Xq/+57s4tWBMLiaIMloEmcY85iE4i1Gd14m8ZcrqGw6x4juIjvdze6hVj9mQiwzidJ4qbsxlLLJxQ16jg==
x-microsoft-antispam-prvs: <CY1PR0201MB1530963D80A5D4C72E2908DBC3850@CY1PR0201MB1530.namprd02.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:;
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(61425038)(6040375)(601004)(2401047)(5005006)(8121501046)(3002001)(10201501046)(6055026)(61426038)(61427038)(6041248)(20161123560025)(20161123555025)(20161123562025)(20161123564025)(20161123558021)(6072148); SRVR:CY1PR0201MB1530; BCL:0; PCL:0; RULEID:; SRVR:CY1PR0201MB1530;
x-forefront-prvs: 01494FA7F7
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(6009001)(7916002)(189002)(199003)(82746002)(68736007)(83506001)(5660300001)(33656002)(101416001)(54356999)(229853002)(76176999)(50986999)(7736002)(305945005)(7846002)(4326007)(2906002)(189998001)(81166006)(92566002)(97736004)(2950100002)(10090500001)(4001350100001)(5001770100001)(36756003)(3280700002)(230783001)(81156014)(102836003)(3660700001)(6116002)(3846002)(2171001)(83716003)(66066001)(2900100001)(105586002)(99286002)(6506006)(39840400001)(8676002)(6512006)(106116001)(77096006)(6486002)(122556002)(39850400001)(39450400002)(86362001)(2501003)(2201001)(8936002)(39860400001)(39410400001)(38730400001)(106356001)(104396002); DIR:OUT; SFP:1101; SCL:1; SRVR:CY1PR0201MB1530; H:CY1PR0201MB1530.namprd02.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; MX:1; A:1; LANG:en;
received-spf: None (protection.outlook.com: adobe.com does not designate permitted sender hosts)
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-ID: <D654D5E6536E4547AB5ABEA7CF85904E@namprd02.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: adobe.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 07 Dec 2016 02:03:13.2758 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: fa7b1b5a-7b34-4387-94ae-d2c178decee1
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CY1PR0201MB1530
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/Nlli4Nt1OtIA1DP0FTKVhdC2xkU>
Cc: "art@ietf.org" <art@ietf.org>, IETF discussion list <ietf@ietf.org>, "paul.hoffman@vpnc.org" <paul.hoffman@vpnc.org>
Subject: Re: [secdir] SecDir review of draft-ietf-appsawg-file-scheme-14
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 07 Dec 2016 02:03:17 -0000

     It’s a tiny thing, but where the abstract says “replacing the
    definition in RFC 1738,” one may be led to think (I was) that 1738 has
    a more robust definition than it does.  D’you mind changing that to
    something like this: ‘This document provides a full specification of
    the "file" Uniform Resource Identifier (URI) scheme, replacing the
    very brief definition in Section 3.10 of RFC 1738.’
    
s/full/more complete/

A “full” specification of file: URIs might include a set of platform and file-system specific implementation advice about how to handle file naming, variations in Unicode normalization, case sensitivity, and so forth.