Re: [Trans] Removing the Preventing Tracking Clients section

Linus Nordberg <linus@sunet.se> Tue, 24 April 2018 19:52 UTC

Return-Path: <linus@sunet.se>
X-Original-To: trans@ietfa.amsl.com
Delivered-To: trans@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CE22D12D87B for <trans@ietfa.amsl.com>; Tue, 24 Apr 2018 12:52:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.3
X-Spam-Level:
X-Spam-Status: No, score=-4.3 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=sunet.se
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UOyoNm6l33Bu for <trans@ietfa.amsl.com>; Tue, 24 Apr 2018 12:52:54 -0700 (PDT)
Received: from e-mailfilter01.sunet.se (e-mailfilter01.sunet.se [IPv6:2001:6b0:8:2::201]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C71AD12D877 for <trans@ietf.org>; Tue, 24 Apr 2018 12:52:53 -0700 (PDT)
Received: from smtp1.sunet.se (smtp1.sunet.se [192.36.171.214]) by e-mailfilter01.sunet.se (8.14.4/8.14.4/Debian-8+deb8u2) with ESMTP id w3OJqfpp078402 (version=TLSv1/SSLv3 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=FAIL); Tue, 24 Apr 2018 21:52:43 +0200
Received: from datan (tor02.zencurity.dk [185.129.62.63]) (authenticated bits=0) by smtp1.sunet.se (8.15.2/8.14.9) with ESMTPSA id w3OJqY4C022678 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Tue, 24 Apr 2018 19:52:39 GMT
VBR-Info: md=sunet.se; mc=all; mv=swamid.se
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=sunet.se; s=default; t=1524599561; bh=y6Vpz9k3+Opsd6T6+H4s0YEW9OprhL94ZhnyRyx4Fhg=; h=From:To:Cc:Subject:References:Date:In-Reply-To; b=qTUlXhje9VvZP/w/stLPCv15fPAqj9aUIz2kD+9Ry+i651qkZjbAu6B06IGSpB40g l4XGdEWQENy1ClymSMcw6A27JukOXkWEIJLTZdOn0zm7JgmFYF9LBFAdrl7tVu0QAy d0oEc4r5enm+4rHADfF8eB+WnSqu/9leDzlWYsYI=
From: Linus Nordberg <linus@sunet.se>
To: Andrew Ayer <agwa@andrewayer.name>
Cc: Rob Stradling <Rob@ComodoCA.com>, "trans@ietf.org" <trans@ietf.org>
Organization: Sunet
References: <433531cf-87c6-f7ff-b476-f2210a681a52@ComodoCA.com> <20180424094310.22c8c8c856a3b223becf4b00@andrewayer.name>
Date: Tue, 24 Apr 2018 21:52:29 +0200
In-Reply-To: <20180424094310.22c8c8c856a3b223becf4b00@andrewayer.name> (Andrew Ayer's message of "Tue, 24 Apr 2018 09:43:10 -0700")
Message-ID: <87y3hcidqa.fsf@nordberg.se>
User-Agent: Gnus/5.13 (Gnus v5.13)
MIME-Version: 1.0
Content-Type: text/plain
X-Bayes-Prob: 0.001 (Score 0, tokens from: outbound, outbound-sunet-se:default, sunet-se:default, base:default, @@RPTN)
X-CanIt-Geo: ip=185.129.62.63; country=DK; latitude=55.7123; longitude=12.0564; http://maps.google.com/maps?q=55.7123,12.0564&z=6
X-CanItPRO-Stream: outbound-sunet-se:outbound (inherits from outbound-sunet-se:default, sunet-se:default, base:default)
X-Canit-Stats-ID: 09VCjQGWB - 204b30d80226 - 20180424
X-CanIt-Archive-Cluster: PfMRe/vJWMiXwM2YIH5BVExnUnw
X-Scanned-By: CanIt (www . roaringpenguin . com)
Archived-At: <https://mailarchive.ietf.org/arch/msg/trans/6MGUTP6_x4d68LhHmMTpUDFOAW8>
Subject: Re: [Trans] Removing the Preventing Tracking Clients section
X-BeenThere: trans@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Public Notary Transparency working group discussion list <trans.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/trans>, <mailto:trans-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/trans/>
List-Post: <mailto:trans@ietf.org>
List-Help: <mailto:trans-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/trans>, <mailto:trans-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 24 Apr 2018 19:52:58 -0000

Andrew Ayer <agwa@andrewayer.name> wrote
Tue, 24 Apr 2018 09:43:10 -0700:

> On Fri, 20 Apr 2018 22:13:54 +0100
> Rob Stradling <Rob@ComodoCA.com> wrote:
>
>> EKR had some concerns about this section 
>> (https://tools.ietf.org/html/draft-ietf-trans-rfc6962-bis-28#section-11.4).>   We (the authors) discussed it and concluded that this section
>> should probably be struck from 6962-bis.
>> 
>> PR here:
>> https://github.com/google/certificate-transparency-rfcs/pull/295> 
>> Anyone have any objections?
>
> Yes.  Developing a workable gossip solution will require experimentation
> to get it right.  If log artifacts (STHs and SCTs) can act as
> supercookies, it will limit the type of experimentation that can be done
> by TLS clients, as clients won't be able to store and transmit artifacts
> without potentially violating their users' privacy.

+1