RE: RE: [Geopriv] Consensus on changes to location-conveyance
"Dawson, Martin" <[email protected]>
| Newsgroups | gmane.ietf.sip,gmane.ietf.geopriv |
|---|---|
| Message-ID | <[email protected]> |
That's right - and those mechanisms by which the URI remains anonymous and temporary and access rights to the anonymous form of the location are controlled are quite extensive considerations. I understand the conveyance draft just says how to get the location object and/or reference from one signaling peer to another. It's asking to much of this specification to anticipate all the possible mechanisms for applying security to privacy in the by-reference form and thereby restricting the form of the reference to a particular protocol. This should be out of scope for the conveyance protocol. Cheers, Martin > -----Original Message----- > From: Jeroen van Bemmel [mailto:[email protected]] > Sent: Wednesday, 26 July 2006 4:46 PM > To: Brian Rosen; 'Marc Linsner'; Peterson, Jon; 'Andrew Newton'; Rosen, > Brian > Cc: [email protected]; [email protected] > Subject: Re: [Sip] RE: [Geopriv] Consensus on changes to location- > conveyance > > >I don't really understand why you think location by reference is so much > of > > a concern. > > Because location by reference involves storage of personal information on > a > server. That suddenly makes all sorts of regulations apply, the points I > mentioned address only a small part of that. Having an anonymous URL for > example often makes a difference, because then the information is no > longer > directly linked to a particular person. > > When an endpoint inserts location by value, you can reasonably argue that > opt-in consent requirements (which many countries have) are fulfilled, > provided the endpoint gives the user control over whether or not location > is > inserted. Same holds for the endpoint inserting a flag asking a proxy to > fill in the location (by value). > For location-by-reference this is much more fuzzy. You probably don't need > a > lecture on privacy regulations, but e.g. > http://www.isoc.org/briefings/015/index.shtml (from 2003 but still > applicable IMO) illustrates the mess. > > A while ago I submitted a draft on Temporarily Routable User Agent URIs > (http://www.ietf.org/internet-drafts/draft-jbemmel-sip-truu-02.txt), which > provides anonymous, temporary URIs that can be explicitly invalidated. You > may want to consider something similar for location-by-reference > > Regards, > > Jeroen > > > _______________________________________________ > Geopriv mailing list > [email protected] > https://www1.ietf.org/mailman/listinfo/geopriv ------------------------------------------------------------------------------------------------ This message is for the designated recipient only and may contain privileged, proprietary, or otherwise private information. If you have received it in error, please notify the sender immediately and delete the original. Any unauthorized use of this email is prohibited. ------------------------------------------------------------------------------------------------ [mf2] _______________________________________________ Sip mailing list https://www1.ietf.org/mailman/listinfo/sip This list is for NEW development of the core SIP Protocol Use [email protected] for questions on current sip Use [email protected] for new developments on the application of sip