Re: RE: [Geopriv] Consensus on changes to location-conveyance
"Jeroen van Bemmel" <[email protected]>
| Newsgroups | gmane.ietf.sip,gmane.ietf.geopriv |
|---|---|
| Message-ID | <001101c6b041$171edfe0$31713b51@BEMBUSTER> |
Brian, > Would you not agree that if a proxy is allowed to insert > location-by-value, > the concerns would be the same? That would depend whether the URL dereferences the current location, or the location at a particular moment in time. The value of a URI with up2date location info is much higher and much more privacy invading than a one-time snapshot of a user's location. So perhaps same concerns, but much stronger For location-by-reference, you'd probably want some additional requirements: - URL must be valid for a limited amount of time - URL must be cryptographically hard to guess - URL must not contain any information that identifies the user / device / AoR - for whatever transport protocol is used: response must be marked as 'no cache' - user must be able to remove the information at the URL, ie explicit invalidation - user must be able to verify correctness of the issued information (ie user can access the URL himself) - user must be able to control who accesses the URL, both upfront and history of accesses (for a reasonable period) - there must be explicit consent before a proxy would insert user location For the latter point: except for emergency scenario's, the UAC should include some flag in the INVITE saying "proxy: please append location". You'd probably also want some feedback (eg proxy or UAS adding a header to the response saying 'this is the URL that I appended/got' Regards, Jeroen _______________________________________________ Sip mailing list https://www1.ietf.org/mailman/listinfo/sip This list is for NEW development of the core SIP Protocol Use [email protected] for questions on current sip Use [email protected] for new developments on the application of sip