Re: [stir] [EXTERNAL] DATA: URL in draft-ietf-stir-passport-rcd-26

Chris Wendt <chris-ietf@chriswendt.net> Mon, 07 August 2023 14:02 UTC

Return-Path: <chris-ietf@chriswendt.net>
X-Original-To: stir@ietfa.amsl.com
Delivered-To: stir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6412EC153CA0 for <stir@ietfa.amsl.com>; Mon, 7 Aug 2023 07:02:36 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.106
X-Spam-Level:
X-Spam-Status: No, score=-2.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=chriswendt.net
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9mBCrnJccid4 for <stir@ietfa.amsl.com>; Mon, 7 Aug 2023 07:02:31 -0700 (PDT)
Received: from aye.elm.relay.mailchannels.net (aye.elm.relay.mailchannels.net [23.83.212.6]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9CD40C153CA8 for <stir@ietf.org>; Mon, 7 Aug 2023 07:02:30 -0700 (PDT)
X-Sender-Id: dreamhost|x-authsender|chris-ietf@chriswendt.net
Received: from relay.mailchannels.net (localhost [127.0.0.1]) by relay.mailchannels.net (Postfix) with ESMTP id 1E59B2C14F4; Mon, 7 Aug 2023 14:02:20 +0000 (UTC)
Received: from pdx1-sub0-mail-a264.dreamhost.com (unknown [127.0.0.6]) (Authenticated sender: dreamhost) by relay.mailchannels.net (Postfix) with ESMTPA id 3B0032C12E2; Mon, 7 Aug 2023 14:02:19 +0000 (UTC)
ARC-Seal: i=1; s=arc-2022; d=mailchannels.net; t=1691416939; a=rsa-sha256; cv=none; b=uL28rws+I5c8TlMxCiCVEtPDx3epsIO+vH3OLhG5gHRtaDwlmeeUrWEnfxsiEeivnp1CyT /zWqfH/JONKuBIAV/yQWLUhjN957Myz/wW8/UMLp66puoX8i92oo6t2EdvNp45X685HCaS XRIGMkCKKT5KsWh3+Nv84FBHNMJQIIdeDya782KiS02ljJWvtOKjVAfqNVvoO1DVFxatFv hHIBCfnjHT2IBEZ9+mQ2AcWCVlfloVfQhnrSMlhISGks+qzPNpDpE8YcVd6fBeLiNnEeak NzyjLXL+d/kDZP3y+D/R9/HiqQ9tqPAscQUl2hz26XFt3Y3RWWl4dKf6WC2mEg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=mailchannels.net; s=arc-2022; t=1691416939; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: in-reply-to:in-reply-to:references:references:dkim-signature; bh=8cNXPOuNkIN7VCWPdyJp5iuCqz7fey3rk0CCGbqJj0Q=; b=TPK/c8m/xPI3Qj79viFRirwMlpyU40kkyRlT46mJ3eKEHJnczmzA450omAGF7MMlhPSt+R UhXIM8d9bERvHiib81AWYlLl3yEFBPJNhf3/fr9/rkec4LgHq20hXj1Q7LpS7/42SNoCW7 4fcek0VF6014ZQXkMSe7cY9kMyU3n3/rT0IUGki3Mh+I5j0pAJ2nWAqNjL310gPNSxhaIM wgLrh8PlHMzkludsOJpicdrPYrhySITgtwolxmkCWLGu1Yms3B5J52YGF/H/ySsbGh3OhY iXAxtKpadScC7P9ctYrUDBRzV9+KZzqqa+BmzoX0h5+1x9Ot0Zi4AZNbjz5Tng==
ARC-Authentication-Results: i=1; rspamd-6588fd49b-mfl7d; auth=pass smtp.auth=dreamhost smtp.mailfrom=chris-ietf@chriswendt.net
X-Sender-Id: dreamhost|x-authsender|chris-ietf@chriswendt.net
X-MC-Relay: Neutral
X-MailChannels-SenderId: dreamhost|x-authsender|chris-ietf@chriswendt.net
X-MailChannels-Auth-Id: dreamhost
X-Little-Broad: 480abbb076c410bb_1691416939924_262465867
X-MC-Loop-Signature: 1691416939924:2238462978
X-MC-Ingress-Time: 1691416939924
Received: from pdx1-sub0-mail-a264.dreamhost.com (pop.dreamhost.com [64.90.62.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384) by 100.121.23.53 (trex/6.9.1); Mon, 07 Aug 2023 14:02:19 +0000
Received: from smtpclient.apple (c-68-82-121-63.hsd1.pa.comcast.net [68.82.121.63]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) (Authenticated sender: chris-ietf@chriswendt.net) by pdx1-sub0-mail-a264.dreamhost.com (Postfix) with ESMTPSA id 4RKJ0n518Xz9r; Mon, 7 Aug 2023 07:02:16 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=chriswendt.net; s=dreamhost; t=1691416939; bh=8cNXPOuNkIN7VCWPdyJp5iuCqz7fey3rk0CCGbqJj0Q=; h=From:Content-Type:Subject:Date:To; b=T3v8fV71t2xFEUOt9iWqEsSE/yCTcFqKkO65YH1xpcHCYm3VmQl/lJPco2IrFLQj9 Xs5kyuL9JuR4dJkXgHf+1Gpf4cXBd4DsngDNm6WpMlIf9Xl1q5icRAHsO0qu9nNxRZ eNcgAEqYYTvYvUwtljTPHR2ANx70qgc94uKxkSfKN+MwE0f0xovUfoDEXR2+J4gOGK dHWUG/sLFH9ZGK4OE/bBGm/CmbG2tVKWMlDWzwYtoeRDi+OFK3lkcavcKAHO/1i5q6 I6wy1WZsLBJUr3y5T5/NFXQwxzwyxvPvwMU80EbjMYSaAyCgreN1WRAeAlHdlZIFPT G8Gqta3vNqb7w==
From: Chris Wendt <chris-ietf@chriswendt.net>
Content-Type: multipart/alternative; boundary="Apple-Mail=_04F1466C-3B54-4412-A497-6A44CB434423"
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3731.700.6\))
Date: Mon, 07 Aug 2023 10:02:05 -0400
References: <0D73E0E4-83D2-4143-941F-E330E5E9B827@nostrum.com> <BL3PR07MB8882AC5B0012B4538656CFBED70CA@BL3PR07MB8882.namprd07.prod.outlook.com>
To: Ben Campbell <ben@nostrum.com>, stir@ietf.org, jon.peterson@transunion.com
In-Reply-To: <BL3PR07MB8882AC5B0012B4538656CFBED70CA@BL3PR07MB8882.namprd07.prod.outlook.com>
Message-Id: <78AB6DDE-7E82-4619-86FD-C919E6D818D4@chriswendt.net>
X-Mailer: Apple Mail (2.3731.700.6)
Archived-At: <https://mailarchive.ietf.org/arch/msg/stir/8Efp6212GaXhLy8dQepFbgIiJEE>
Subject: Re: [stir] [EXTERNAL] DATA: URL in draft-ietf-stir-passport-rcd-26
X-BeenThere: stir@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Secure Telephone Identity Revisited <stir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/stir>, <mailto:stir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/stir/>
List-Post: <mailto:stir@ietf.org>
List-Help: <mailto:stir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/stir>, <mailto:stir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 07 Aug 2023 14:02:36 -0000

Hi Ben,

Yes we can make it an HTTPS URL example.

-Chris

> 
> (as individual)
> 
> Hi,
> 
> I just noticed a possible bug in draft-ietf-stir-passport-rcd-26. I understand that the wg agreed to limit “icn” cvalues to HTTPS URLs at IETF 116. Indeed, section 5.1.3 only defines the “icn” claim to be an HTTPS URL.
> 
> But the third example in 8.3 still uses a DATA: URL. Am I correct to assume that this is no longer a valid example?
> 
> Thanks!
> 
> Ben.
>