RE: [Sipping] Security and privacy in <draft-schulzrinne-simple-rpids-01>

Markus.Isomaki@nokia.com Mon, 02 June 2003 10:18 UTC

Received: from www1.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id GAA00563 for <sipping-archive@odin.ietf.org>; Mon, 2 Jun 2003 06:18:17 -0400 (EDT)
Received: (from mailnull@localhost) by www1.ietf.org (8.11.6/8.11.6) id h52AHr431854 for sipping-archive@odin.ietf.org; Mon, 2 Jun 2003 06:17:53 -0400
Received: from ietf.org (odin.ietf.org [132.151.1.176]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h52AHrB31851 for <sipping-web-archive@optimus.ietf.org>; Mon, 2 Jun 2003 06:17:53 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id GAA00549 for <sipping-web-archive@ietf.org>; Mon, 2 Jun 2003 06:17:47 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 19MmMF-0001aj-00 for sipping-web-archive@ietf.org; Mon, 02 Jun 2003 06:16:03 -0400
Received: from ietf.org ([132.151.1.19] helo=www1.ietf.org) by ietf-mx with esmtp (Exim 4.12) id 19MmME-0001ag-00 for sipping-web-archive@ietf.org; Mon, 02 Jun 2003 06:16:02 -0400
Received: from www1.ietf.org (localhost.localdomain [127.0.0.1]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h52ADvB31724; Mon, 2 Jun 2003 06:13:57 -0400
Received: from ietf.org (odin.ietf.org [132.151.1.176]) by www1.ietf.org (8.11.6/8.11.6) with ESMTP id h52AD0B31674 for <sipping@optimus.ietf.org>; Mon, 2 Jun 2003 06:13:00 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id GAA00497 for <sipping@ietf.org>; Mon, 2 Jun 2003 06:12:53 -0400 (EDT)
From: Markus.Isomaki@nokia.com
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 19MmHV-0001a0-00 for sipping@ietf.org; Mon, 02 Jun 2003 06:11:09 -0400
Received: from mgw-x4.nokia.com ([131.228.20.27]) by ietf-mx with esmtp (Exim 4.12) id 19MmHU-0001Zx-00 for sipping@ietf.org; Mon, 02 Jun 2003 06:11:09 -0400
Received: from esvir03nok.nokia.com (esvir03nokt.ntc.nokia.com [172.21.143.35]) by mgw-x4.nokia.com (Switch-2.2.6/Switch-2.2.6) with ESMTP id h52ACnD17383 for <sipping@ietf.org>; Mon, 2 Jun 2003 13:12:49 +0300 (EET DST)
Received: from esebh002.NOE.Nokia.com (unverified) by esvir03nok.nokia.com (Content Technologies SMTPRS 4.2.5) with ESMTP id <T62950ec79cac158f23077@esvir03nok.nokia.com>; Mon, 2 Jun 2003 13:12:48 +0300
Received: from esebe018.NOE.Nokia.com ([172.21.138.57]) by esebh002.NOE.Nokia.com with Microsoft SMTPSVC(5.0.2195.6139); Mon, 2 Jun 2003 13:12:48 +0300
X-MimeOLE: Produced By Microsoft Exchange V6.0.6375.0
content-class: urn:content-classes:message
MIME-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Subject: RE: [Sipping] Security and privacy in <draft-schulzrinne-simple-rpids-01>
Date: Mon, 02 Jun 2003 13:12:47 +0300
Message-ID: <E392EEA75EC5F54AB75229B693B1B6A707E7A0A1@esebe018.ntc.nokia.com>
Thread-Topic: [Sipping] Security and privacy in <draft-schulzrinne-simple-rpids-01>
Thread-Index: AcMo3uQJFFvN8T9JR+e3ElIK/AI1SQADqQSQ
To: Henry.Sinnreich@mci.com, hgs@cs.columbia.edu, pkzivat@cisco.com, vkg@lucent.com, jdrosen@dynamicsoft.com, sipping@ietf.org
X-OriginalArrivalTime: 02 Jun 2003 10:12:48.0766 (UTC) FILETIME=[84D9B1E0:01C328EF]
Content-Transfer-Encoding: 8bit
X-MIME-Autoconverted: from quoted-printable to 8bit by www1.ietf.org id h52AD0B31675
Sender: sipping-admin@ietf.org
Errors-To: sipping-admin@ietf.org
X-BeenThere: sipping@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/sipping>, <mailto:sipping-request@ietf.org?subject=unsubscribe>
List-Id: SIPPING Working Group (applications of SIP) <sipping.ietf.org>
List-Post: <mailto:sipping@ietf.org>
List-Help: <mailto:sipping-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/sipping>, <mailto:sipping-request@ietf.org?subject=subscribe>
Content-Transfer-Encoding: 8bit
Content-Transfer-Encoding: 8bit

Hi Henry,

What you are requesting falls more in the area of SIMPLE data manipulation and XCAP work, see:
http://www.ietf.org/internet-drafts/draft-ietf-simple-data-req-02.txt 
(especially requirements in Chapter 5), and
http://www.ietf.org/internet-drafts/draft-rosenberg-simple-xcap-00.txt

It is true that there is still work to be done on how to actually address tuples and other parts of the PIDF/RPIDS documents in the authorization policy definitions. I guess this would be part of the "what is tuple" discussion in SIMPLE mailing list.

Markus

> -----Original Message-----
> From: ext Henry Sinnreich [mailto:Henry.Sinnreich@mci.com]
> Sent: 28 May, 2003 00:13
> To: Henning Schulzrinne; pkzivat@cisco.com; vkg@lucent.com;
> jdrosen@dynamicsoft.com; sipping@ietf.org
> Subject: [Sipping] Security and privacy in
> <draft-schulzrinne-simple-rpids-01>
> 
> 
> The I-D <draft-schulzrinne-simple-rpids-01> provides excellent rich
> presence information, but should expand on the required specifics for
> matching security and privacy protection.
> 
> Section 9, Security Considerations says
> 
> "Compared to PIDF, this presence document format reveals additional
> information that can be highly sensitive. Beyond traditional security
> measures to protect confidentiality and integrity, systems 
> should offer
> a means to selectively reveal information to particular 
> watchers and to
> inspect the information that is being published, particularly if it is
> generated automatically from other sources, such as calendars or
> sensors."
> 
> I believe expanding on this and providing some criteria to 
> differentiate
> between types of watchers, with detailed examples would fill the gap.
> 
> Thanks, Henry
> 
> Henry Sinnreich
> MCI
> 400 International Parkway
> Richardson, Texas 75081
> USA
>  
> 
> _______________________________________________
> Sipping mailing list  https://www1.ietf.org/mailman/listinfo/sipping
> This list is for NEW development of the application of SIP
> Use sip-implementors@cs.columbia.edu for questions on current sip
> Use sip@ietf.org for new developments of core SIP
> 
_______________________________________________
Sipping mailing list  https://www1.ietf.org/mailman/listinfo/sipping
This list is for NEW development of the application of SIP
Use sip-implementors@cs.columbia.edu for questions on current sip
Use sip@ietf.org for new developments of core SIP