Document Details - IPNNI-2021-00108R004.docx


Document Details
Share |
Name IPNNI-2021-00108R004.docx (181K)
Revision 4
Description ATIS-1000074 contribution:
1. Changes ".cer" to ".pem" in "x5u" examples (".cer" is for binary certificates, which we are not using)
2. Requires the STI-VS to implement the Cache-Control header
3. Requires the STI-VS to only accept URLs that limit the likelihood of SSRF attacks
4. Requires the STI-VS to not follow redirects
5. Clarifies that the "orig" claim be canonicalized (already required, just clarifying)

R1: Change "non-public" to "special-purpose" IP address and reference RFC 6890

R2: Use a minimum of 24 hours of caching for STI-CR responses. Allow port 8443 fro STI-CRs. Removed duplicated text from ATIS-1000080 contribution.

R3: Correct version number. Add missing orig canonicalization text.

R4: Contains edits from the IP-NNI TF meeting on November 3, 2021.
Document State Contribution ((e.g., text to progress Issues))
Group / Folder ATIS/SIP Forum IP-NNI Task Force / IPNNI / 2021
Submitter By Anna Karditzas on Wednesday, 03 November 2021 10:09am
Technical Contact None Selected
Public URL https://access.atis.org/apps/group_public/document.php?document_id=62469&wg_abbrev=ipnni

Document Revisions
Name # State Submitter Date Action
4
Contribution
Anna Karditzas
2021-11-03
This doc
3
Contribution
Alec Fenichel
2021-11-02
2
Contribution
Alec Fenichel
2021-11-01
1
Contribution
Alec Fenichel
2021-11-01
0
Contribution
Alec Fenichel
2021-11-01