Re: [Standards] NEW: XEP-0359 (Unique and Stable Stanza IDs)

2015-07-15 Thread Dave Cridland
On 15 July 2015 at 16:12, Florian Schmaus wrote: > On 15.07.2015 10:12, Dave Cridland wrote: > > Can we add something into the security considerations for this document > > which discusses the exposure of the jid in "by", please? > > I had the same though, but then discarded adding such a conside

Re: [Standards] NEW: XEP-0359 (Unique and Stable Stanza IDs)

2015-07-15 Thread Florian Schmaus
On 15.07.2015 10:12, Dave Cridland wrote: > Can we add something into the security considerations for this document > which discusses the exposure of the jid in "by", please? I had the same though, but then discarded adding such a consideration because the only JIDs worth protecting are the ones o

Re: [Standards] NEW: XEP-0359 (Unique and Stable Stanza IDs)

2015-07-15 Thread Florian Schmaus
On 15.07.2015 00:31, Lance Stout wrote: >> - Why put the client-id in the stanza-id ? > > It has been suggested (but not yet incorporated into 359) that client-id be > replaced by the simple lack of a 'by' attribute. (If no 'by' is present, the > entity that stamped the ID is the stanza sender,

Re: [Standards] NEW: XEP-0359 (Unique and Stable Stanza IDs)

2015-07-15 Thread Dave Cridland
Can we add something into the security considerations for this document which discusses the exposure of the jid in "by", please? Dave.

Re: [Standards] NEW: XEP-0359 (Unique and Stable Stanza IDs)

2015-07-14 Thread Lance Stout
> I have some questions regarding the business rules: > > - Why enforce a single id at a time ? I think it can be useful to have > multiple ids in a message: > > >[...] > > > > This is allowed. The restriction here is that you can only have one with a given JID in the 'by' at

Re: [Standards] NEW: XEP-0359 (Unique and Stable Stanza IDs)

2015-07-14 Thread rakoo
Excerpts from Lance Stout's message of 2015-07-14 10:33:23 -0700: > > > Version 0.1 of XEP-0359 (Unique and Stable Stanza IDs) has been released. > > > \o/ > > > Some feedback on this new version: > > > 1. Disco feature is needed to discover that an entity generates ids, and that > it there

Re: [Standards] NEW: XEP-0359 (Unique and Stable Stanza IDs)

2015-07-14 Thread Lance Stout
> Version 0.1 of XEP-0359 (Unique and Stable Stanza IDs) has been released. \o/ Some feedback on this new version: 1. Disco feature is needed to discover that an entity generates ids, and that it therefore is able to assure that ids attributed to it are valid by stripping & overwriting ids

[Standards] NEW: XEP-0359 (Unique and Stable Stanza IDs)

2015-07-14 Thread XMPP Extensions Editor
Version 0.1 of XEP-0359 (Unique and Stable Stanza IDs) has been released. Abstract: This specification describes unique and stable IDs for stanzas. Changelog: Initial published version approved by the XMPP Council. (XEP Editor (mam)) Diff: http://xmpp.org/extensions/diff/api/xep/0359/diff/0.1/v