Re: [Ace] draft-ietf-ace-oauth-authz-35 - unauthorized AS address, DoS, and privacy

2020-09-15 Thread Benjamin Kaduk
On Thu, Sep 10, 2020 at 02:46:43PM -0400, Michael Richardson wrote: > > John Mattsson wrote: > > - That RS shares the AS address with anybody that asks can be a severe > > privacy problem. If RS is a medical device, the AS address can reveal > > sensitive information. If RS is a

[Ace] ace - New Meeting Session Request for IETF 109

2020-09-15 Thread IETF Meeting Session Request Tool
A new meeting session request has just been submitted by Jim Schaad, a Chair of the ace working group. - Working Group Name: Authentication and Authorization for Constrained Environments Area Name: Security Area Session Requester: Jim

[Ace] WGLC review of draft-ietf-ace-mqtt-tls-profile-07

2020-09-15 Thread Francesca Palombini
Hi, Thank you for this work! Here is my review of the document. Thanks, Francesca The response includes the parameters described in Section 5.6.2 of the ACE framework [I-D.ietf-ace-oauth-authz]. The fact that the profile parameter with value "mqtt_tls" is included in this response