Re: [Sidrops] Heads-up, almost all caches are about to follow draft-spaghetti-sidrops-rrdp-same-origin

Tom Harrison <tomh@apnic.net> Thu, 11 April 2024 23:04 UTC

Return-Path: <tomh@apnic.net>
X-Original-To: sidrops@ietfa.amsl.com
Delivered-To: sidrops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 16449C14F70B for <sidrops@ietfa.amsl.com>; Thu, 11 Apr 2024 16:04:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=apnic.net
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XXdd5SKpyMxR for <sidrops@ietfa.amsl.com>; Thu, 11 Apr 2024 16:04:13 -0700 (PDT)
Received: from AUS01-ME3-obe.outbound.protection.outlook.com (mail-me3aus01on2126.outbound.protection.outlook.com [40.107.108.126]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 43C1EC14F6A0 for <sidrops@ietf.org>; Thu, 11 Apr 2024 16:04:12 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=eZnXjs2YIQXLRUNNHjqviKL5v/1/iFj5oenlzsAglEmWKFz2qGZM0G3e6/GIbYuSuDAhKVzH0QUB/DUdKnxtIU/tpYoQf48CxPF5hrKmdXB2MWvd5WNtawATUcLScm5S5oY53fceA13No6WW9XJsrEPmOUBfYwCboBIy9Fb9kVoig5EeHlQBL3j/GXF+IcOgmCV2Yhq2Yrvk0gMt8dpAN2PFtBUeqEzG1+vPWOxYpwNaPiuWDoAlKsOmcny5RDJWUwUoy/E5J+zfuVJ34WRkk5ssVWnP/Fpb2EX6Uf5clIOf6k8tBpyXIuyHksZHjZXvXus2sHRSpDTvztYfpoGH0g==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=iNIhNtJzkakbP/9az7+QK9mkaNMJ+iISEtVL64cO0mU=; b=OQ8CQXD1FJJLv3hO9L1GHQz/fAsbMov87dpvQXQNCoaYIDWAaNMcFInkn/UNUHAcc2bKQqeZ+jBUua8oT18bEjeV679pV8Bry8JFDVPxpvYehBfXON0/kBeIWlwQ5E6BeYFecBxdAzxIfcvl5ia2lnfgbqKSqyH24B/c/7csNr+JUF60AYr8qXLLwQQ2ffDYTsFAW43jAbTLXVnA+bw+iiun7GGHMtlLVtqTfLWJTWQKRLSloSzFx7FOD6sDOvXt4QI4AnT1TXIdZaYmjTOTlIl3XyZmWo+M45c9Kr8S92/TT/IdnQl9p47uCWoV89L/TTg0bOlicQ0wQO0rdfJ7Ig==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=apnic.net; dmarc=pass action=none header.from=apnic.net; dkim=pass header.d=apnic.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=apnic.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=iNIhNtJzkakbP/9az7+QK9mkaNMJ+iISEtVL64cO0mU=; b=DvwROKXvtjJrj41D857/TyF1tjG+kr9JjsTDaU8aZuKySOmQ7TOFWcqXcU/9Lr/IWqjW7xDx+karNclmmt5Qy+hJZ14D9I3t6MkAn3C17Cj9Ofxp1+n1r1M6QIM50Dg80GwJwmDZ62pMCqWa5cADisC4o4bu3qOdvrHhg6Eysmw=
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=apnic.net;
Received: from SY7P282MB4761.AUSP282.PROD.OUTLOOK.COM (2603:10c6:10:273::5) by SY4P282MB0890.AUSP282.PROD.OUTLOOK.COM (2603:10c6:10:a8::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7409.46; Thu, 11 Apr 2024 23:04:07 +0000
Received: from SY7P282MB4761.AUSP282.PROD.OUTLOOK.COM ([fe80::9551:44e2:c0cb:9c49]) by SY7P282MB4761.AUSP282.PROD.OUTLOOK.COM ([fe80::9551:44e2:c0cb:9c49%7]) with mapi id 15.20.7386.017; Thu, 11 Apr 2024 23:04:04 +0000
Date: Fri, 12 Apr 2024 09:04:48 +1000
From: Tom Harrison <tomh@apnic.net>
To: Job Snijders <job=40fastly.com@dmarc.ietf.org>
Cc: sidrops@ietf.org
Message-ID: <ZhhskMytIRytEHIP@TomH-498551.lan>
Mail-Followup-To: Job Snijders <job=40fastly.com@dmarc.ietf.org>, sidrops@ietf.org
References: <ZhgC8e6xzEIRGCUz@snel>
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <ZhgC8e6xzEIRGCUz@snel>
X-ClientProxiedBy: SY5P282CA0014.AUSP282.PROD.OUTLOOK.COM (2603:10c6:10:208::6) To SY7P282MB4761.AUSP282.PROD.OUTLOOK.COM (2603:10c6:10:273::5)
MIME-Version: 1.0
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: SY7P282MB4761:EE_|SY4P282MB0890:EE_
X-MS-Office365-Filtering-Correlation-Id: c0370291-f46a-4a42-f754-08dc5a7baf23
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SY7P282MB4761.AUSP282.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230031)(1800799015)(376005)(366007); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: XsUFwa6exlckA5m2QBtm29moNfqP1F2bHI1HEOrXBnwEhlNWnkpqhc11cXCe/GOBluAMuFrzeH/xighT1E4aCYe/JTWInFxjEhAGlegg2CC35nexr7q6DugDQwPP1lYvZVyu8pUYYToGDBmWj3X7Glk0WmnhXdJRXP2UvJ+fbwSmByW6nSURiF3yGDObGfrmSBD8Tvt/EMLoXg2l6TfezlXhC9tXStNx1F0TIRd7Cp8LtuX6xuHP/YOZgHuL2zont08tSw8c0mvycFvtoAhKD7hafAm+gGPtS1nLd7B1GZ95LVyiMW29ZMV9Lrz5z1ZVnF0e7rWYRwhdJy5NjhS6Fpf61TOC8v2yfS/t1iu/C3sdY+EEsdw914B3HRSViEl5WRqUHV+fwnn3VRigY5ErFqfZK8O0a65ShLnKDo21mG2oK2vUF0BOBE6li/m6Va5pfEjm3xdRPNy8d0CymMkj3PmQq+R1PIETfagqOVAsAu8TI1D/HEOMIKcz2yfsRjnCedRrwk+d2Ish/ZWn1IrRv8V37fROXk0IEbeqqFPZhPYvMip/WcBbh4KSoTVe3AIiwQmJirEmh/xIxgGfbKN3ku5UP4oqB1msm3g/1yEfpmLKDCQGTS1Eb1BU7xCsEv2ddMOYCNwaNNgK+y5o2aXbZVSaVAKaTI4C+thLeysGXvANWLbhAMVPZxweoy1gDlKaEz/O8ayWh4vl7wQrMfEarq5wN/W8lZqM8R4OkBBAk9O4tf/dACquKHpMxFxLQvqsIZKkCl3KqP53DuN1edJOwcqy2sx9Y09kk9OGa3adguJ7S6QK0plLHM4fIYnUIs1XUhWYNyGwkDX4Tw/69f7cBYcce9N1+HJCktckHcjvmAnqr8xZbEpYr3b/7yt2QZjVPbHWj/RUHeYkCdPupzREUllDyuzlrMvJ6us/DdYpZnPFjPMBFnWvUmGRxqEyJjr5qrV1HzRRGAFYv3eA1WJV2Nmid4HCHvqe/JFrpJTEh1ugqAAdMfZsKqsO2cQ3k6el/2kdn8iR4GCqhzxVif4C2Aq2/REMROvTxrV93LlgTzevQap9SdZzRw8h5PP6oyT9PH9bfVuHO8CUbQV26vF8W5+EN4RJYOy86MaVtXO/Ml3sFtTnnAfudFfZv9hE5dx3jAZT9AyCvt53sHGvKiHHva4H7w+jmWkonrWfti16NtJ6wJLq096TsOSCwOC+hUv3eMSF/3KiLuW/SNmzqd4AX+rbA2ZRaaw7qXsOooHyq0w3YroFDooRPJbp2h1y8RN/VKI4IkuSDaL7rXVIjuJaSgXYEHzLJG7nImfS9lNFfLFImTsYpAsAcm3epY0OjafQ5yAn+vtooa5AY05E/VYD9inwHIU748UXvuplPRVeptfQV96xfnBpCramWmzY2PIAi15bdblD3NI8JYNO+hzWfxF25NKyKU3Q/nEAbf83Ze532mkOvfzkhL1r8YDDVOlsQWmn1sKXW6eOTcmT13tt/SXeZNEiZHCmOFIGjHeUGc1F+Qnefw8jbdKK0ABUc3RBGUA1nFfYXX41ajNKuCQdq6AER641nlCIRiUlOVA+CeKJAm/dGcoOBw8JWqfpuJ7WIc6uGL0s6ImCsIXB4JhxtH669/yhe2jlBFy+U2artIh3cvQr4XMkmxTv2e3ETibO
X-OriginatorOrg: apnic.net
X-MS-Exchange-CrossTenant-Network-Message-Id: c0370291-f46a-4a42-f754-08dc5a7baf23
X-MS-Exchange-CrossTenant-AuthSource: SY7P282MB4761.AUSP282.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 11 Apr 2024 23:04:04.6536 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: 127d8d0d-7ccf-473d-ab09-6e44ad752ded
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: MZTOVXoLzNHCrftfqhRu6qbOxERpJcILe8EdNHz2epaf/bpbfkkdlE00zbA2xw3V
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SY4P282MB0890
Archived-At: <https://mailarchive.ietf.org/arch/msg/sidrops/Cctcg3dXnmZqmY1Ub_q9Zc8wgAs>
Subject: Re: [Sidrops] Heads-up, almost all caches are about to follow draft-spaghetti-sidrops-rrdp-same-origin
X-BeenThere: sidrops@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: A list for the SIDR Operations WG <sidrops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidrops>, <mailto:sidrops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidrops/>
List-Post: <mailto:sidrops@ietf.org>
List-Help: <mailto:sidrops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidrops>, <mailto:sidrops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 11 Apr 2024 23:04:18 -0000

On Thu, Apr 11, 2024 at 05:34:09PM +0200, Job Snijders wrote:
> This is an opportunity for RRDP Publishers and other stakeholders to
> consider the implications and provide feedback on the problem &
> choosen solution.

This appears to be a real problem, and the suggested solution makes
sense.

The draft notes that "In the past 2.5 years no RRDP Repository Servers
have employed cross-origin URIs in Update Notification Files".  Was
there some record of cross-origin URIs being used in that way before
that time, or is the period here just that for which relevant
logs/records exist?

-Tom