Re: [stir] PASSPorT: "orig" and "dest" mandatory in all PASSPorTs?

Chris Wendt <chris-ietf@chriswendt.net> Tue, 23 January 2018 20:52 UTC

Return-Path: <chris-ietf@chriswendt.net>
X-Original-To: stir@ietfa.amsl.com
Delivered-To: stir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E19A912D779 for <stir@ietfa.amsl.com>; Tue, 23 Jan 2018 12:52:16 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_LOW=-0.7, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=chriswendt-net.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id x1VwAzgGSQMv for <stir@ietfa.amsl.com>; Tue, 23 Jan 2018 12:52:15 -0800 (PST)
Received: from mail-io0-x235.google.com (mail-io0-x235.google.com [IPv6:2607:f8b0:4001:c06::235]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E945C12D7EC for <stir@ietf.org>; Tue, 23 Jan 2018 12:52:14 -0800 (PST)
Received: by mail-io0-x235.google.com with SMTP id z6so2384516iob.11 for <stir@ietf.org>; Tue, 23 Jan 2018 12:52:14 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=chriswendt-net.20150623.gappssmtp.com; s=20150623; h=mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=OGBOhme2KYbr1UCMwxMlyzP7K0M/LMvKOIheAYHO9Jk=; b=sQcAF5xToInvBHaLndllmOPRV5Q63Ng3yI/vfeTP4ZmLt+ohTjWaHoDW0zseFZjabd ErdR2vu7QKYZlrC7Ji6irdIG8N2uiad7P1HzpdBLFXO2bqXgnvfP/3KCzXAlWENCFS75 At5iQ9eU2j072DfUsJoqLww8KvkZU7/OrIWCZmW/FHo7G4rwV7HXqCz9+5a6WVZ3/U6v jiaBLySBjUe+ZUPFn7hdvRHCh3qob2Im3aE9jDIj+dI8sv4CjjcB8xDj/vjsyHeDfgWu PMbi8l+X51J355vsFE3DnmhoP+3Wz+Bovc1KEez5/+ifUBvk3H95qH5qZ62EqM7aGQRq sX+g==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=OGBOhme2KYbr1UCMwxMlyzP7K0M/LMvKOIheAYHO9Jk=; b=hoAH7q+mWrlf6+rpmMh+/cpDcInL6+RmBZ/qgSEyJZ+yTtEJxaxGz4KVQgj+EVTzYB vmbcBxfSkrQHT7FRRfYLeYzCni6b50AFwHFQVCZ9BXCW0Px9J4SjIjzZEsvhUdHT2f1X y0/ywQ1gA3gWrdvip9eKmap0fbqgowR+9LzkkvL4oyJxEXtK0WUn4Q7JXZHF2naYfMnT +B4UEBrUoNrpZ1MAGCn+NA66xOywomZQU9Qz1oB4qAObkL6mMvwidJJYUI9eDqmXEzxF 2MncUG9ZxClDvpmSGc2Xtv9jx5AqVIEya+o0z/lp6cbO6hE37CPfh+4j7qPejNIGtNCc LYtg==
X-Gm-Message-State: AKwxytfDkWsiitlo3CiLm4+Tt5IITynCFRMR/zKlasojHIRjUrCxILEe OzaXMv2gSPRNFnBgXiRu+9RBEQ==
X-Google-Smtp-Source: AH8x227h9z9X/MDfOFbVXa1JwQM+Vhi5xfPNVvJguaN4p2WfiUkORp+QrrrEP4VeuhqO41MRdhiHLw==
X-Received: by 10.107.167.69 with SMTP id q66mr5337328ioe.130.1516740734292; Tue, 23 Jan 2018 12:52:14 -0800 (PST)
Received: from [172.30.40.187] ([67.133.97.98]) by smtp.gmail.com with ESMTPSA id v11sm5710616itf.6.2018.01.23.12.52.13 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 23 Jan 2018 12:52:13 -0800 (PST)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 11.2 \(3445.5.20\))
From: Chris Wendt <chris-ietf@chriswendt.net>
In-Reply-To: <7594FB04B1934943A5C02806D1A2204B6C13837A@ESESSMB109.ericsson.se>
Date: Tue, 23 Jan 2018 13:52:11 -0700
Cc: "stir@ietf.org" <stir@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <41C6125A-C90A-4187-9B6E-267DAE44DF8B@chriswendt.net>
References: <7594FB04B1934943A5C02806D1A2204B6C13837A@ESESSMB109.ericsson.se>
To: Christer Holmberg <christer.holmberg@ericsson.com>
X-Mailer: Apple Mail (2.3445.5.20)
Archived-At: <https://mailarchive.ietf.org/arch/msg/stir/4EquZBk5-iONbafnUJtsFgZ9TKQ>
Subject: Re: [stir] PASSPorT: "orig" and "dest" mandatory in all PASSPorTs?
X-BeenThere: stir@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Secure Telephone Identity Revisited <stir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/stir>, <mailto:stir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/stir/>
List-Post: <mailto:stir@ietf.org>
List-Help: <mailto:stir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/stir>, <mailto:stir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 23 Jan 2018 20:52:17 -0000

answers inline

> On Jan 22, 2018, at 11:03 PM, Christer Holmberg <christer.holmberg@ericsson.com> wrote:
> 
> Hi,
> 
> Question for clarification:
> 
> Section 5.2.1 of draft-passport says:
> 
>       "There MUST be exactly one "orig" claim with exactly one identity claim object in a PASSporT object."
> 
> Q1: Does the text above mean that 
> 
>       a) a passport must always contain one, one only one, "orig" claim; or 
>       b) that if a passport contains an "orig" claim, if can only contains one?

It can only contain one key value pair with the key “orig” and the claim value can only be one identity.

In other words you cannot claim to originate multiple identities with a single passport object.

> 
> Q2: If a), does it apply to passport extensions too?

All extensions must include the base passport claims and follow all rules of the claims, so yes.

> 
> Q3: Does Q1/Q2 apply to "dest" too?

For “dest" the only difference is we allow an array of identities to accommodate future use of passport with multiple party calling or messaging where you send a call or message to multiple destination parties.

> 
> Regards,
> 
> Christer       
> 
> 
> 
> 
> _______________________________________________
> stir mailing list
> stir@ietf.org
> https://www.ietf.org/mailman/listinfo/stir