Re: [Drip] PII use (was RE: The DRIP -arch revision 30)

Stu Card <stu.card@axenterprize.com> Thu, 02 March 2023 12:20 UTC

Return-Path: <stu.card@axenterprize.com>
X-Original-To: tm-rid@ietfa.amsl.com
Delivered-To: tm-rid@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8AD2DC1516F2; Thu, 2 Mar 2023 04:20:09 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.899
X-Spam-Level:
X-Spam-Status: No, score=-6.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=axenterprize.onmicrosoft.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Lxn4mTBUIHBz; Thu, 2 Mar 2023 04:20:05 -0800 (PST)
Received: from NAM12-MW2-obe.outbound.protection.outlook.com (mail-mw2nam12on2070e.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe5a::70e]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DEE03C15155A; Thu, 2 Mar 2023 04:20:04 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=KiwHhsUZBs9pmtk3u/pkJI60SVQUqOhRZ/70hREznF6wlMSI6BAyGhRwKMTW6T0VAEfLnUmVmR9cU00q7ISH75qyuBg1TdIEA0t6rnvZJU213q3IjohSONZhr3AJJvTlCwb5slLoYU5sVA3bwvWwX3nD3wJFudv9kv9qaV0cZgTvh2qhtHrjumQ7j60B9PYeYEqK2H/2Z4tBLEIzx5j81rEkS5MIZoULdpCerFvKqYCC3NL9/58K+n6TYXd4FQwaqKAo0fm8UKTsi1Nd2lwdvuNqVeBW47fNN1bN+djhmFDVLJQoC9w5eU2L17gfAOTGhd8k2hhlViH5d/L9m4UJHQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=ABkoB9hsUv0kf6OpNXVn2dsnk4wEhmd8sSCZ1xZr1Tw=; b=N5X+MST0sv26RzKvhjFalIdHVR8s1f/vEpBoCyCaHUe82rQHxgLWpwGkWLAkoDdZBzGIlZqDrfPWw/Xxjx9sDEH3fAXr9u/eVbtlOfEDW1FGXRy78arOJ/b2FPhsHOfFFGPx6LltVKHvyNPkX/m8+VpTrQgC6t+p3Yo5iEBzLS/CP2jXFC1ONcWZahDv1Zgkej8CVJr1Ky9TS9Za90rYBMg2w4kbYbvRt24OhzXm4jpXxX1mzGZz9KRKS9hFSE8JTo5YrCY2XsdHc2FihwbOd0FmBWbstBConTprKdVVvzOlN75GMdiNxmIFwLfnFIeiiPmOWva+vI8OlMxzS++bZw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=axenterprize.com; dmarc=pass action=none header.from=axenterprize.com; dkim=pass header.d=axenterprize.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=axenterprize.onmicrosoft.com; s=selector1-axenterprize-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ABkoB9hsUv0kf6OpNXVn2dsnk4wEhmd8sSCZ1xZr1Tw=; b=O0Ptuewq1jQnvNtwAPkFLehxW4yuMyY2uoCIpahqGgzS/jmEEM0EFEEL3WuhR5c6qrSx4x+53WatwtowPB+NkaymiPyM7LZrzJhRYh9YGNJF/twnjTYhnwKf1QeUXrZovGL/NBH+euZnTalrW711G9vRnIsyy9ydsSwB/cKSNfA=
Received: from MN2PR13MB4207.namprd13.prod.outlook.com (2603:10b6:208:39::22) by MW5PR13MB5584.namprd13.prod.outlook.com (2603:10b6:303:191::7) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6156.19; Thu, 2 Mar 2023 12:19:59 +0000
Received: from MN2PR13MB4207.namprd13.prod.outlook.com ([fe80::a2da:ab08:6fa:3334]) by MN2PR13MB4207.namprd13.prod.outlook.com ([fe80::a2da:ab08:6fa:3334%5]) with mapi id 15.20.6134.030; Thu, 2 Mar 2023 12:19:58 +0000
From: Stu Card <stu.card@axenterprize.com>
To: "mohamed.boucadair@orange.com" <mohamed.boucadair@orange.com>, "Eric Vyncke (evyncke)" <evyncke@cisco.com>, "draft-ietf-drip-arch.all@ietf.org" <draft-ietf-drip-arch.all@ietf.org>, Adam Wiethuechter <adam.wiethuechter@axenterprize.com>, "shuai.zhao@ieee.org" <shuai.zhao@ieee.org>, "rgm@labs.htt-consult.com" <rgm@labs.htt-consult.com>, "gurtov@acm.org" <gurtov@acm.org>
CC: Daniel Migault <mglt.ietf@gmail.com>, "tm-rid@ietf.org" <tm-rid@ietf.org>
Thread-Topic: PII use (was RE: The DRIP -arch revision 30)
Thread-Index: AQHZTNFEQpuWpSqCFEyDHMJMfhx68K7nXNPo
Date: Thu, 02 Mar 2023 12:19:58 +0000
Message-ID: <MN2PR13MB4207372B20F641E2EF2B987BF8B29@MN2PR13MB4207.namprd13.prod.outlook.com>
References: <F4B77686-C6C3-4E3C-A89C-FEC3C4FB905C@cisco.com> <9759_1677738958_640043CE_9759_350_2_93882c6049cd42ceaf2ae0d6890c7514@orange.com>
In-Reply-To: <9759_1677738958_640043CE_9759_350_2_93882c6049cd42ceaf2ae0d6890c7514@orange.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=axenterprize.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: MN2PR13MB4207:EE_|MW5PR13MB5584:EE_
x-ms-office365-filtering-correlation-id: 381805b6-4ccf-45c7-417b-08db1b1870a7
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MN2PR13MB4207.namprd13.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230025)(376002)(136003)(366004)(346002)(396003)(39830400003)(451199018)(41300700001)(8936002)(54906003)(52536014)(9686003)(55016003)(8676002)(66446008)(66476007)(66556008)(66946007)(64756008)(53546011)(186003)(4326008)(76116006)(33656002)(86362001)(2906002)(66574015)(83380400001)(44832011)(6506007)(26005)(5660300002)(478600001)(122000001)(71200400001)(316002)(110136005)(45080400002)(7696005)(166002)(38100700002)(38070700005); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: oRsdzCoGJBzVSt2EI9Z5UT9+GxsHYk1aoB3toJ1rCxqEfLORwV7T+72//FbqePdI94si7jyjdgxTYEn3bSNBlTAG5RW/4JwvuKaDVG3PANk1D/Qgt1pPORJTVJ8dfbhZNWF+1V4mkwQmWXbUB2Dim6saPUZaouHID+RcMHkipUs5XW9hROf5j7uAFJItiJpqLGsbRhZ/N8Oivu6+We1IRqKtmCsL7YbaujT9P/B+wJ26l0DhqfRGdbRC+dT/Jno2QmERy35bhEw3YtYsyFVd+0wRyXKSInJag++d1zDKEGOaMzULKX3CdYBYj1mbTZnpZyxhhgGrAfAYL5gIqn29FbfzLLYOcss2Z/wjRosbyt+tPb++M3LQobJ6+vaXl07YS84NWyDlNyE0hPioohaJ/6K0Jx5zy0fznld02Om2vP235VzjRSuqfy014bU/WjUa8JtPO8RWUHvSPJfQGTbAq6Hw/l5KpBT+zXIMWGAgYJ5Awx6mwZXNLLfJgSzNFsla04f1K7mWLTW23ggFKxW3AB4IFYzcAg86FcCbH8INtZFf1Be6Unye9Vip8xQPauVXqF3hd0yqvTw1Cm9ZpcGYPsHhWP28dqdEmMshaPqJ94qzhfNStQSCZxI0Ny/vUsdMBhYLYk9fbm40IZhVTxG9tqbuW/HCNTmmWnplDtjw+c6kEZ9RXnB+BoWiUQBeIBEw0CbXcOVVOiYV39R24vOCA2/T1apURmJcCdPaSw7fUg9bErS0UGEDnZVNkfG+pB1QOufxdfavJR5X4QQyXlAQf13t+DGOHmadLloTYT0mDpJxhghwT+xgUhM9VmMH2kQw+tiAZhGdF4lPRAoX+7W7tvZ/CfKYhS+dUrU7wllXCQwuTYlo0goAq7vhusGsCIzknfHmjq+N1JHxpMruN1TmkyMUcPH7XBGkVIjyJSBVTc/+X3mlK25As6iJqNF9zKhKxrTGtfHAtIT1gagHRFlnkf5AdVhxtpaiiDw4viOgDaEtPH0NYgT9qoegmMTr7aRVMQE8jb7fQ7qUxHXkpd/TqpymBvuT7eINVXSCwU46oivyKslO+ZXqFa9+uSVZfDByZUNwd6WqKBbJSg6ExeX9wVWFCfOlYqL+hMwVsVNf5Qw9EEPcJFdcJIChTyZVOBsYhORKGzk30EELi3w/3WeTOhpWRKN2Rj1boKfKMlFNW/9tJM11E+dwLCJVznnlcbGQo6d8J/HsJCg92Zp//ZXAVhYP0ik0TzIg9CqWpGKMmAnxGWcmcZPQSxCs6h6lpgDn+HtSDbMT/RJ4/KNVYxvKgA4dz5dtw2slhQfRGDooU7csLqco21tS0UIrNaaJW6WFjPQ6G4gBv4CeTqcc+yjPKxqAGCqLVbZhTNwDN3KkZ4NTgFl++wNbV3kcXaWqsqFaIfO0gFpCXuYorZ7lo3/OqqJAfpSKamB+k8El4lWlnjSqjamWo8Kjda5W2BNbm+hzx8HWYguPC7H24h4SX6/MBSv1lXfYmvIlk6+r7POuTCSdnMNhKV3Tk+3VtRedGy1epe8/RV1CFF7hdKR5x1LqbvPdBaqRxp2Nx7XDWHkw1xLMD0JdBmzOhF7k0UvnjJQlUDUjVh0HA2bQOC5PT6sBS1eq8pJm/hwMDr5nuO92yyE=
Content-Type: multipart/alternative; boundary="_000_MN2PR13MB4207372B20F641E2EF2B987BF8B29MN2PR13MB4207namp_"
MIME-Version: 1.0
X-OriginatorOrg: axenterprize.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MN2PR13MB4207.namprd13.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 381805b6-4ccf-45c7-417b-08db1b1870a7
X-MS-Exchange-CrossTenant-originalarrivaltime: 02 Mar 2023 12:19:58.5919 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 00ad0178-ead0-441e-96ff-0c72baf3a6fa
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: rxc8KhxMKhfut7BHopO8+LW2wXt01HXYoR5iGDYy0zeu8pcpTTt7kpe1kPCutjlyEWkxtFb/QSzNKvbpSgXIz+jhEG26EWdNs6EmHQwy4P4=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MW5PR13MB5584
Archived-At: <https://mailarchive.ietf.org/arch/msg/tm-rid/fNVPuOK7tOF-OauEXVHbyJJHIKI>
Subject: Re: [Drip] PII use (was RE: The DRIP -arch revision 30)
X-BeenThere: tm-rid@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Drone Remote Identification Protocol <tm-rid.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tm-rid>, <mailto:tm-rid-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tm-rid/>
List-Post: <mailto:tm-rid@ietf.org>
List-Help: <mailto:tm-rid-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tm-rid>, <mailto:tm-rid-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 02 Mar 2023 12:20:09 -0000

On the one hand, RFC 9153 is titled DRIP Requirements & Terminology, we both define and use "PII" therein, and we cite it in -arch as the primary source of our terms.

OTOH we admit in RFC 9153 that the term "PII" is used primarily in the US and that other terms are used elsewhere for essentially the same concept.

Also I have never liked the term "PII", as I find its denotation narrower than its connotation and general usage. I used it in RFC 9153 only because I was being driven more by the US FAA (which, when I began that draft, was leading the global charge for RID) than by other CAAs.

I note that:

RFC 6973 uses the term "personal information" once and the term "personal data" 12 times;

the latter term is defined therein in a way similar to "PII";

the latter term appears in the titles of the CoE & OECD docs cited therein;

the latter term is more specifically defined than the former.

So I agree with replacing "PII" by "personal data" in -arch and subsequent DRIP docs. None of these terms are used in -RID, fortunately.

I am viewing the diffs on my phone, making it hard to see. In line 427, I see this replacement is the only change. Is it also the only change in the very long line 633? Assuming so, I support this PR.

While here, I remind you that the other PR, on US specific timing analysis in Section 8.5, requires slight further tweaking of the wording, and editor Shuai has asked me to do it, which I will ASAP (but not on my phone).

Get Outlook for Android<https://aka.ms/AAb9ysg>

________________________________
From: mohamed.boucadair@orange.com <mohamed.boucadair@orange.com>
Sent: Thursday, March 2, 2023, 01:36
To: Eric Vyncke (evyncke) <evyncke@cisco.com>; draft-ietf-drip-arch.all@ietf.org <draft-ietf-drip-arch.all@ietf.org>; Adam Wiethuechter <adam.wiethuechter@axenterprize.com>; shuai.zhao@ieee.org <shuai.zhao@ieee.org>; rgm@labs.htt-consult.com <rgm@labs.htt-consult.com>; Stu Card <stu.card@axenterprize.com>; gurtov@acm.org <gurtov@acm.org>
Cc: Daniel Migault <mglt.ietf@gmail.com>; tm-rid@ietf.org <tm-rid@ietf.org>
Subject: PII use (was RE: The DRIP -arch revision 30)


Hi Éric, all,



(adding the WG list, fwiw)



I suggest we change it with “personal data” as per RFC6973.



A proposal to address this comment can be seen at: Eric's comment on PII by boucadair · Pull Request #56 · ietf-wg-drip/draft-ietf-drip-arch (github.com)<https://github.com/ietf-wg-drip/draft-ietf-drip-arch/pull/56/files>.



Would that be OK with you? Thanks.



Cheers,

Med



De : Eric Vyncke (evyncke) <evyncke@cisco.com>
Envoyé : mercredi 1 mars 2023 16:20
À : draft-ietf-drip-arch.all@ietf.org; adam.wiethuechter@axenterprize.com; shuai.zhao@ieee.org; rgm@labs.htt-consult.com; stu.card@axenterprize.com; gurtov@acm.org
Cc : Daniel Migault <mglt.ietf@gmail.com>; BOUCADAIR Mohamed INNOV/NET <mohamed.boucadair@orange.com>
Objet : The DRIP -arch revision 30



… In the same *USA-only* vein, section 9 is about 'PII', which is a US only term. Can the authors change 'PII' into personal information or any other generic term ?



Let's talk about this at the interim later today,



Regards



-éric



_________________________________________________________________________________________________________________________

Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.