Re: [sipcore] Éric Vyncke's No Objection on draft-ietf-sipcore-locparam-05: (with COMMENT)

"Eric Vyncke (evyncke)" <evyncke@cisco.com> Wed, 19 February 2020 14:43 UTC

Return-Path: <evyncke@cisco.com>
X-Original-To: sipcore@ietfa.amsl.com
Delivered-To: sipcore@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A260212011F; Wed, 19 Feb 2020 06:43:00 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.501
X-Spam-Level:
X-Spam-Status: No, score=-14.501 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=NENL8z0B; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=VABD6R3U
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LJbZfUIUDfaz; Wed, 19 Feb 2020 06:42:58 -0800 (PST)
Received: from rcdn-iport-1.cisco.com (rcdn-iport-1.cisco.com [173.37.86.72]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2CEEE1200B5; Wed, 19 Feb 2020 06:42:58 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=3548; q=dns/txt; s=iport; t=1582123378; x=1583332978; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-id:content-transfer-encoding: mime-version; bh=TtJI3kXfAC0SYXcmZuvg9i9aKycVqRGj6a2CaKi2Qxw=; b=NENL8z0BfpIDAp9Ml0edAzUL57bxjPlEznMwDMnG5L6sdDtvLM8PnBOq XiZUA5Ild1iOGbh499OPwoTiGgzVgtAHAmFomD0OOYJ7tr1+0pF0cOsuc GYMTQ7aFRv9tRWFc82izxSCk8sxmMQfop1sNFxOLq9EyMEt59unx26lFD w=;
IronPort-PHdr: 9a23:ULGrdhFFxayAV0bwFMl1951GYnJ96bzpIg4Y7IYmgLtSc6Oluo7vJ1Hb+e4z1A3SRYuO7fVChqKWqK3mVWEaqbe5+HEZON0pNVcejNkO2QkpAcqLE0r+efP0fioxH8lqX15+9Hb9Ok9QS47z
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0AHCADVSE1e/4QNJK1mHQEBAQkBEQUFAYF7gVRQBWxYIAQLKoQUg0YDinGCX5gRgUKBEANUCQEBAQwBASMKAgQBAYRAAheBbSQ4EwIDDQEBBQEBAQIBBQRthTcMhWcCAQMSEREMAQE3AQ8CAQgaAiYCAgIwFQULAgQBDQUigwQBgkoDLgEOolECgTmIYnWBMoJ/AQEFgUNBgzMYggwDBoEOKowkGoFBP4ERJyCCTD6CZAIBAgGBLAESASEXIQKCVjKCLI1KJIJ1j3WPPQqCO4dPil+EMhyCSYgbhEyLe4NLiySIeZJMAgQCBAUCDgEBBYFpImdYEQhwFWUBgkFQGA2OHTiDO4UUhT90AoEniziCMgEB
X-IronPort-AV: E=Sophos;i="5.70,459,1574121600"; d="scan'208";a="719676093"
Received: from alln-core-10.cisco.com ([173.36.13.132]) by rcdn-iport-1.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 19 Feb 2020 14:42:57 +0000
Received: from XCH-ALN-005.cisco.com (xch-aln-005.cisco.com [173.36.7.15]) by alln-core-10.cisco.com (8.15.2/8.15.2) with ESMTPS id 01JEgvo8031735 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Wed, 19 Feb 2020 14:42:57 GMT
Received: from xhs-rcd-001.cisco.com (173.37.227.246) by XCH-ALN-005.cisco.com (173.36.7.15) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Wed, 19 Feb 2020 08:42:56 -0600
Received: from xhs-aln-003.cisco.com (173.37.135.120) by xhs-rcd-001.cisco.com (173.37.227.246) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Wed, 19 Feb 2020 08:42:56 -0600
Received: from NAM12-BN8-obe.outbound.protection.outlook.com (173.37.151.57) by xhs-aln-003.cisco.com (173.37.135.120) with Microsoft SMTP Server (TLS) id 15.0.1473.3 via Frontend Transport; Wed, 19 Feb 2020 08:42:56 -0600
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=AFuIc6vAjilK4+jn/dXZX+hR4ZDT96pLjUmqZQ/4wZEX9GNaIRCyv7FEh+wbtr/FUVffm2qnCzomxalruFgiXfrmgqWVL3cIgyrf4Ikm6T+cC7sEj2x6Q2PhZn3t9TqC/dseuZ3vONPvPDjxlIwtA13T2E2TDr2Xmq1azJd9jH7xe11O9rbfJqZiRkEYStKn3HLWBQUqVzXl/8hcG8utx0Nvi659HP2NYeYzKTknNNxfMw1whOsczgJ2KEbR89ZAYWzDdA18Hfz0kSToAPbjpS7RuQO9WNJmioiV0eD9hVNY0msY7Gyg43i0q04XHoUX9bTiPan1sBgzd96okvuyCg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=TtJI3kXfAC0SYXcmZuvg9i9aKycVqRGj6a2CaKi2Qxw=; b=Eh2gIoMQ+XzELMlmScQ5V0IUp+b7AhrlehwWb9lbBJDKi6RUMrs3BDYUQeKB/YbBjqBRiTUbOCwSfPj4QHvxFBduxgrGGlA4zZNQJ+COHXRhgh1wHgZ9sRtgr267XVlRpxyMkwQiYzNNISUdSJ5z2gIt8a/WAH/slYf8cg7xCVE40SWhCjaQ6J5Ul8EysZSDtL4rZFxnisusNty1nBz+pxvUW0mgoDyGcokNI4BLomst537t0LBPzLY1oEjyuzbzA6Jyk/7TzzJbv+WZbc8E+cJPbbUjikYPAI242Gen8KAgNhio5QxycRG5/1/f7jb6bhLiYYFfB+CFTecjUc8Pjw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=TtJI3kXfAC0SYXcmZuvg9i9aKycVqRGj6a2CaKi2Qxw=; b=VABD6R3UczE/QDyBa7J39+7SoSqYo7WaouuTZaGKapCzRAuXreYvmI5p5b3ELS3p7EFjvwI1Ak6RfWhc0xqzAnsZqCQxkze4GcjdW5E96CCLXxvMp28xQQCbpdj8Wm1uIIrtnlr0d8xPp5+S5Hpyjl0PbdJcS34xu+QRPrRQcyI=
Received: from DM5PR11MB1753.namprd11.prod.outlook.com (10.175.88.141) by DM5PR11MB1546.namprd11.prod.outlook.com (10.172.38.147) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2729.34; Wed, 19 Feb 2020 14:42:55 +0000
Received: from DM5PR11MB1753.namprd11.prod.outlook.com ([fe80::680d:e22e:72d5:67ca]) by DM5PR11MB1753.namprd11.prod.outlook.com ([fe80::680d:e22e:72d5:67ca%3]) with mapi id 15.20.2729.032; Wed, 19 Feb 2020 14:42:55 +0000
From: "Eric Vyncke (evyncke)" <evyncke@cisco.com>
To: "R.Jesske@telekom.de" <R.Jesske@telekom.de>, "iesg@ietf.org" <iesg@ietf.org>
CC: "draft-ietf-sipcore-locparam@ietf.org" <draft-ietf-sipcore-locparam@ietf.org>, "mahoney@nostrum.com" <mahoney@nostrum.com>, "sipcore-chairs@ietf.org" <sipcore-chairs@ietf.org>, "sipcore@ietf.org" <sipcore@ietf.org>
Thread-Topic: Éric Vyncke's No Objection on draft-ietf-sipcore-locparam-05: (with COMMENT)
Thread-Index: AQHV2d/Ehz2FpSvyf0CBoKpKaOIPyagUNgZggA6MugA=
Date: Wed, 19 Feb 2020 14:42:55 +0000
Message-ID: <C8934410-A297-4A7F-BB25-5154AEF4034B@cisco.com>
References: <158065831114.11329.8030540381864270982.idtracker@ietfa.amsl.com> <FRXPR01MB063190A6D42A0DB1A3FDCB1DF9190@FRXPR01MB0631.DEUPRD01.PROD.OUTLOOK.DE>
In-Reply-To: <FRXPR01MB063190A6D42A0DB1A3FDCB1DF9190@FRXPR01MB0631.DEUPRD01.PROD.OUTLOOK.DE>
Accept-Language: fr-BE, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.22.0.200209
authentication-results: spf=none (sender IP is ) smtp.mailfrom=evyncke@cisco.com;
x-originating-ip: [2001:420:c0c1:36:f842:aaed:6557:3770]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 15e2121c-d6b8-4e15-9d77-08d7b54a0166
x-ms-traffictypediagnostic: DM5PR11MB1546:
x-microsoft-antispam-prvs: <DM5PR11MB15462DF3BEFCECAA3C5676B6A9100@DM5PR11MB1546.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-forefront-prvs: 0318501FAE
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(4636009)(39860400002)(366004)(396003)(136003)(346002)(376002)(189003)(199004)(66476007)(66446008)(66946007)(5660300002)(66556008)(64756008)(33656002)(81166006)(81156014)(8936002)(186003)(71200400001)(36756003)(224303003)(478600001)(91956017)(110136005)(76116006)(54906003)(2906002)(316002)(66574012)(86362001)(6512007)(2616005)(4326008)(6486002)(966005)(6506007); DIR:OUT; SFP:1101; SCL:1; SRVR:DM5PR11MB1546; H:DM5PR11MB1753.namprd11.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: cisco.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-ms-exchange-antispam-messagedata: +x2oISlIYRPyGPqqQkAS46cs5BHrHvidBLUEq6dIHittYIwZIN0Bhbo2tFcPved/aS6k053oOaUm7MeaoBsXNEDse8IhbC/7Kd3WmGOgwaAqH/ia+CeKLm78fht5K90ZrP0hWwqzyKVB3xvYAgeyaY/yfve2KUs5v5yzM1qe4KxYap7VUYPhEKgoY6Bt7GwDcy5UREphlSpYwcGa1Xo6oA==
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <BD5E52BE4612CF4184B46A45C2666B0F@namprd11.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-Network-Message-Id: 15e2121c-d6b8-4e15-9d77-08d7b54a0166
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 Feb 2020 14:42:55.1024 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: CKSGCkYFfCwNdtpybShav0Xv5EUkW9eOASdbp2ADme+pMd0kPw8MTqUsxpFuhgqbXnGiE9o8t/s8FdpUnE8kXQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM5PR11MB1546
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.36.7.15, xch-aln-005.cisco.com
X-Outbound-Node: alln-core-10.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/sipcore/zmScmS0crNnB_4Z0CZjkT1ac1fk>
Subject: Re: [sipcore] Éric Vyncke's No Objection on draft-ietf-sipcore-locparam-05: (with COMMENT)
X-BeenThere: sipcore@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: SIP Core Working Group <sipcore.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sipcore>, <mailto:sipcore-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sipcore/>
List-Post: <mailto:sipcore@ietf.org>
List-Help: <mailto:sipcore-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sipcore>, <mailto:sipcore-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 19 Feb 2020 14:43:01 -0000

Roland

Sorry for the belated reply but my excuse was a white sand beach and blue sky... more attractive than your document even if interesting and useful ;-)

I am trusting you and my security / ART AD colleagues on this one.

Regards and thank you for your reply

-éric


On 10/02/2020, 10:56, "R.Jesske@telekom.de" <R.Jesske@telekom.de> wrote:

    Hi,
    Thank you for your comment.
    This document updates RFC6442. We are using the security and privacy considerations within RFC6442 which is also addressing encryption. We have not repeated all security considerations and ruling as stated in RFC6442 to avoid duplication.
    
    I hope this is OK for you.
    
    Best Regards
    
    Roland 
    
    -----Ursprüngliche Nachricht-----
    Von: Éric Vyncke via Datatracker <noreply@ietf.org> 
    Gesendet: Sonntag, 2. Februar 2020 16:45
    An: The IESG <iesg@ietf.org>
    Cc: draft-ietf-sipcore-locparam@ietf.org; Jean Mahoney <mahoney@nostrum.com>; sipcore-chairs@ietf.org; mahoney@nostrum.com; sipcore@ietf.org
    Betreff: Éric Vyncke's No Objection on draft-ietf-sipcore-locparam-05: (with COMMENT)
    
    Éric Vyncke has entered the following ballot position for
    draft-ietf-sipcore-locparam-05: No Objection
    
    When responding, please keep the subject line intact and reply to all email addresses included in the To and CC lines. (Feel free to cut this introductory paragraph, however.)
    
    
    Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
    for more information about IESG DISCUSS and COMMENT positions.
    
    
    The document, along with other ballot positions, can be found here:
    https://datatracker.ietf.org/doc/draft-ietf-sipcore-locparam/
    
    
    
    ----------------------------------------------------------------------
    COMMENT:
    ----------------------------------------------------------------------
    
    Thank you for the work put into this document. I found the document easy to read even for a non SIP-fluent person like me.
    
    I have just one non-blocking comment/question. Your reply will be appreciated.
    
    -- Section 7 --
    If the source of location is critical, then I wonder why this source is not cryptographically authenticated... Having hop-by-hop TLS protection is not enough probably as the UE (or any adverse proxy on the path) could insert a fake Geoloc with a fake loc-src.
    
    I hope that this helps to improve the document,
    
    Regards,
    
    -éric