
From nobody Mon Apr  1 02:58:09 2019
Return-Path: <goran.selander@ericsson.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6A0A6120146 for <ace@ietfa.amsl.com>; Mon,  1 Apr 2019 02:58:01 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.022
X-Spam-Level: 
X-Spam-Status: No, score=-1.022 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FROM_EXCESS_BASE64=0.979, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id nb2YCsywyyic for <ace@ietfa.amsl.com>; Mon,  1 Apr 2019 02:57:58 -0700 (PDT)
Received: from EUR03-DB5-obe.outbound.protection.outlook.com (mail-eopbgr40052.outbound.protection.outlook.com [40.107.4.52]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D0C0D120136 for <ace@ietf.org>; Mon,  1 Apr 2019 02:57:57 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=KPsDMaYby7jZIVcVBE0wfBGgqKJllx068i8W4ORruYI=; b=M6g/b5/qo7iKk25pEqr8sAaCg4EKw6WqyIFnCBmjO0rwa0gvIfdFpAlzhFUvT4vtkZ/okWPoN9ypB1OnUkSJ7MUC65ZYo/kKcmrobOrICsPZecv9p8Igxk3Ygbe/h3dMNO6BuYRlawF2+lrBBQsRDR3At2TjzEImtPrXaImsVWY=
Received: from HE1PR07MB4172.eurprd07.prod.outlook.com (20.176.166.25) by HE1PR07MB4155.eurprd07.prod.outlook.com (20.176.166.20) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1771.10; Mon, 1 Apr 2019 09:57:55 +0000
Received: from HE1PR07MB4172.eurprd07.prod.outlook.com ([fe80::2464:1071:5050:f397]) by HE1PR07MB4172.eurprd07.prod.outlook.com ([fe80::2464:1071:5050:f397%2]) with mapi id 15.20.1771.006; Mon, 1 Apr 2019 09:57:55 +0000
From: =?utf-8?B?R8O2cmFuIFNlbGFuZGVy?= <goran.selander@ericsson.com>
To: "ace@ietf.org" <ace@ietf.org>
Thread-Topic: EDHOC next steps
Thread-Index: AQHU6HFgPG4CzyhtzEqqlf3gjQR7ZA==
Date: Mon, 1 Apr 2019 09:57:55 +0000
Message-ID: <312DD7D1-A579-489D-B960-3ECD0692F4DC@ericsson.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
user-agent: Microsoft-MacOutlook/10.17.0.190309
authentication-results: spf=none (sender IP is ) smtp.mailfrom=goran.selander@ericsson.com; 
x-originating-ip: [192.176.1.87]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 209d95f9-7a73-431b-3b67-08d6b6888338
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(5600139)(711020)(4605104)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(2017052603328)(7153060)(7193020); SRVR:HE1PR07MB4155; 
x-ms-traffictypediagnostic: HE1PR07MB4155:
x-ms-exchange-purlcount: 1
x-microsoft-antispam-prvs: <HE1PR07MB4155449C8E48FA1792E16F40F4550@HE1PR07MB4155.eurprd07.prod.outlook.com>
x-forefront-prvs: 0994F5E0C5
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(376002)(346002)(39860400002)(366004)(136003)(396003)(189003)(199004)(82746002)(26005)(7736002)(6916009)(66574012)(186003)(4744005)(102836004)(256004)(2906002)(7116003)(14444005)(316002)(2351001)(6436002)(53936002)(58126008)(6486002)(14454004)(6506007)(413944005)(85202003)(966005)(478600001)(476003)(85182001)(5660300002)(97736004)(2616005)(71200400001)(71190400001)(106356001)(105586002)(6116002)(3846002)(81166006)(1730700003)(8936002)(86362001)(6306002)(68736007)(2501003)(83716004)(36756003)(5640700003)(6512007)(81156014)(3480700005)(33656002)(305945005)(486006)(99286004)(8676002)(66066001)(25786009); DIR:OUT; SFP:1101; SCL:1; SRVR:HE1PR07MB4155; H:HE1PR07MB4172.eurprd07.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1; 
received-spf: None (protection.outlook.com: ericsson.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: kRlpz+ryistBR4qaWE0NhILq5YHUOISILbWhlED2t5ll3vA4H/5mfRKbNh0kEJ5+IuHrj2cdHCE/jNKp2MV6mObfUY2m+6eczwY1kovHVTNP4nxs4uaYFarYhgJsdf2KEFAnqxPkQ3TPytOWapo+WGQhptH7QxN5I6cRvXmFHbElUysKRS+g0/jjMJuNi8nYVaIOPze6xoSnLUNO6AZWNcdTyBr+Y513+9diELjVSYd8FMnUWzlpia7ngUEZ7fc3EWULpL0gO5kOoa6yAUkyOrzCooZ9efp7MwddWCJJgfdPo3DGU5rQwgIjMHu/gQXsoxPsqghdLEOrNOxnvOO99M8LtbgkuUwgjLN//t0cfjxL8WIEQ+5cWT1al21sLLhomt/snC0Tez/jnp12r9mgAVNxXx0QutNUgoroW1PjGE4=
Content-Type: text/plain; charset="utf-8"
Content-ID: <BC74FCAE747F6646933C9412FDC2C29E@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 209d95f9-7a73-431b-3b67-08d6b6888338
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 Apr 2019 09:57:55.1230 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR07MB4155
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/CaSH5c_zCFaLkRXrKHN2SotdDtI>
Subject: [Ace] EDHOC next steps
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 01 Apr 2019 09:58:07 -0000
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From nobody Mon Apr  1 12:53:46 2019
Return-Path: <mglt.ietf@gmail.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7739A1204CD for <ace@ietfa.amsl.com>; Mon,  1 Apr 2019 12:53:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.648
X-Spam-Level: 
X-Spam-Status: No, score=-1.648 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FREEMAIL_FORGED_FROMDOMAIN=0.25, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id DHkgAxuqOAMe for <ace@ietfa.amsl.com>; Mon,  1 Apr 2019 12:53:42 -0700 (PDT)
Received: from mail-lj1-f178.google.com (mail-lj1-f178.google.com [209.85.208.178]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 179331204CF for <ace@ietf.org>; Mon,  1 Apr 2019 12:53:41 -0700 (PDT)
Received: by mail-lj1-f178.google.com with SMTP id j89so9373870ljb.1 for <ace@ietf.org>; Mon, 01 Apr 2019 12:53:40 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:from:date:message-id:subject:to; bh=JrqL5S20Xur9AgMSy7Y9mesWw7kDKfV+QU+Ugqfa3xU=; b=ugcFZiKeOfhw4hRBAd5W2DxtN3dsh3HUJc1yy35BODcut/+Cx9VaLRRrZNWdNI9qur 9Y81rLSjp/9lZzXNbZCZbLaftPegx+2eH69xM58FpxJeZgZCcbYhh9K4MBUdokJKr/vf Rr1HTMazzTkIJghBVxo0c4OO+vMkvIm2vsUnfCdqQVw0Z5t7ZjAR6oeByIlDLFjkJDeS yfT8icybrHlTDRZCWrR5A1CN/G6O68kxEeCgCn5GezO56Ugq3JTpEaD1Q24aVENAmzIq CmoktrQYIsUNtsX4fsCAgc99ZtELmGCJ6H1Lvht2n3KdGGAzOlxJ4V0jzM74s1lLVMVp iaag==
X-Gm-Message-State: APjAAAV+t0ZxjIgHb44tvWk6+BXT1nyrNcRjZlHOpcSKimsQjW2oOZkO 1qleRp0fev6oUEGUP0U5RZCc204rnVebuuNK9h+VcQ==
X-Google-Smtp-Source: APXvYqzeu5mQGFdyBZl4aAPLdUBQQIwzbj3qRm/ri5OOPHXegT9Gzn9LAJidwh9W9kvyp2zAYfYa96li7HndUSVZwPA=
X-Received: by 2002:a2e:1245:: with SMTP id t66mr36635587lje.18.1554148418665;  Mon, 01 Apr 2019 12:53:38 -0700 (PDT)
MIME-Version: 1.0
From: Daniel Migault <daniel.migault@ericsson.com>
Date: Mon, 1 Apr 2019 15:53:27 -0400
Message-ID: <CADZyTkmKPiMdEGgt=7BHx8J3orcgPxYGmxRbCFx7E9U-WW_Lww@mail.gmail.com>
To: ace@ietf.org
Content-Type: multipart/alternative; boundary="0000000000006c414905857d602c"
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/Lw4z0Eicfi6eI_mfZB1fQVk4kso>
Subject: [Ace] Minutes
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 01 Apr 2019 19:53:44 -0000

--0000000000006c414905857d602c
Content-Type: text/plain; charset="UTF-8"

Hi,

I cannot find the minutes of the ACE meeting in Prague in my mailbox, so we
kindly ask the minute taker to forward the minutes on the mailing list for
review.

I apology for to the minute taker, I exactly know who he is, but I am
realizing I am missing his email address.

Yours,
Daniel

--0000000000006c414905857d602c
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr">Hi,=C2=A0<div><br></div><div>I cannot find the minutes of =
the ACE meeting in Prague in my mailbox, so we kindly ask the minute taker =
to forward the minutes on the mailing list for review.=C2=A0</div><div><br>=
</div><div>I apology for to the minute taker, I exactly know who he is, but=
 I am realizing I am missing his email address.=C2=A0</div><div><br></div><=
div>Yours,=C2=A0</div><div>Daniel</div></div>

--0000000000006c414905857d602c--


From nobody Tue Apr  2 18:00:16 2019
Return-Path: <ietf@augustcellars.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 38CB91203FB; Tue,  2 Apr 2019 18:00:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.794
X-Spam-Level: 
X-Spam-Status: No, score=-0.794 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, LOCALPART_IN_SUBJECT=1.107, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id SM-Kaft8aFMG; Tue,  2 Apr 2019 18:00:13 -0700 (PDT)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CFFEF1203EF; Tue,  2 Apr 2019 18:00:12 -0700 (PDT)
Received: from Jude (73.180.8.170) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Tue, 2 Apr 2019 18:00:05 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: <draft-ietf-ace-key-groupcomm@ietf.org>
CC: <ace@ietf.org>
Date: Tue, 2 Apr 2019 18:00:02 -0700
Message-ID: <027e01d4e9b8$93397ea0$b9ac7be0$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AdTog2+RRDEhSuKnQTeDAzz1P2GXjw==
Content-Language: en-us
X-Originating-IP: [73.180.8.170]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/b5-INK5DZma1Qc-F3PUAMKmZe6o>
Subject: [Ace] draft-ietf-ace-key-groupcomm
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Apr 2019 01:00:15 -0000

I read this document on the flight back with the idea of thinking about
doing an implementation.  In the process I found that it does not seem to be
ready to start on an implementation.

1.  This document is written explicitly in terms of using CBOR as the
encoding format.  Should it be written such that either JSON or CBOR can be
used for the underlying encoding?  While I personally don't care, it may be
that either Hannes or the MQTT authors might find this to be something that
would be useful.

2.  Is there a content type that is planned for the messages used in this
document?  If the plan was to use application/ace+cbor then this both needs
to be stated and should be cleared with the group in general.  If there is
no plan to create one then it would be useful to state this.

3.  The document does not have a table which deals with abbreviations, does
this mean that the full text string is what is going to be the key?
Depending on the content type being considered, these values could be
assigned (new registry) or marked as TBD, but if this is supposed to happen
then it needs to be placed in the document.

4.  Should the references to RFC 7390 be replaced with the new document
being considered for the CoRE working group?

5.   Section 2 - In the last paragraph - should the word "further" be
omitted as there did not seem to be any previous communications discussed.

6.  Section 3.1 - Is there a reason why one cannot request access from the
AS for multiple groups/topics in the same request to the AS? 'scope'

7.  Section 3.1 - Is there a definition of the values for "role" that can be
requested.  What is the type of this field for a single value, or for
elements of the array?  Is there a default if role is omitted on the
request?

8.  Section 3.2 - IN the last paragraph did you mean to say that a new token
would be returned or that the existing token can be returned.

9.  Section 4.1 - If the 'client_cred' field in a request is filled in, and
it is not the same as the public key used to establish the TLS session
between the client and the KDC, what is the procedure to do a POP on this
key?

10.  Section 4.1 - What is the data structure for client_cred?

11. Section 4.1 - For 'pub_keys_repos' what is the format of this field?

12. Section 4.2 - I am not completely sure that I understand what
verification checking means in the first paragraph.

13. Section 4.2 - What is the profile that I am checking for the 'kty'
field?  Was I supposed to have a chance to request a profile someplace?

14. Section 4.2 - Put the fact that the 'key' field is profile dependent on
the 'kty' in the 'key' paragraph.  Is it legal to define a 'kty' which does
not have a 'key' field?  If so then should this field be defined by the
profile?  Ok, I just read the full next paragraph and now I am just
confused.

15. Section 4.2 - What is the type of profile?

16. Section 4.2 - Is exp supposed to be a UNIX time - if so then it should
say so.  Might be easier to reference this as CBOR Tag 1 w/o the tag.

17.  Section 4.2 - 'pub_keys  "In case public keys are represented as
COSE_KEYS"  Does this mean that other items are legal - if so then how am I
supposed to know this.

18.  Section 4.2 - What is the type of 'group_policies'?

19.  Section 4.2 - What is the type of 'mgt_key_material'?

20.  Section 4.2 - The last paragraph seems to be something of a
non-sequitur.   Perhaps this is better omitted and just put someplace else,
like the next section.

21. Section 5 - Is there some type of requirement for positive delivery of
new keys in the event of a KDC changing the key.  I put this here wrt a node
leaving, but it applies equally to a node getting itself added.

22.  Section 5.1 - There currently is no way for an AS to communicate to the
KDC that an authorization has been revoked.  There is only a way for a KDC
to ask the AS by introspection.  The first sentence is problematic.  Do we
need some type of extension to support this?

23.  Section 5.2 - If a topic is provided and the user is authorized for two
topics which use the same group, what happens if the user asks to leave one
of those two topics but wants to say on the other?  

24.  Section 5.2 - What is the purpose of providing the 'client_cred' in a
leave request.  It makes more sense to provide the id in the group than this
field.

25. Section 5.2 -  It is not clear to me that the correct answer to a badly
formatted leave request is to send a bad request error back.  I would think
that as long as the KDC can figure out what is being referred to then the
sender should be removed from the group.

26. Section 5.2 - It is not clear to me if the last paragraph means that the
KDC can remove the AS access token from it's database when a leave occurs,
or if it can only be removed when it expires.

27.  Section 6 - If the 'exp' parameter is not specified, when does keying
material expire?  This is not covered in the first paragraph.

28.  Section 6 - in the second paragraph it says that the problem is not
being able to decrypt a message, the correct condition is not being able to
find key material.  A corruption in the message should not require the
entity to looking for a rekey event to be checked.  This is a bad DOS vector
otherwise.

29. Section 6 - Should a KDC employ a best effort to keep the same kid value
when a group is rekeyed so that one could check the signature even if the
key material has moved on as this would provide a potential DOS attack to be
attenuated.

30.  Section 6 - should a client keep a the decryption failures so that they
can be decrypted after getting new key material or is this to be treated as
a loss of message?

31.  Section 6 - How does the event of sending the re-key material as a
multicast message in general lock out the entity that just left the group?
This should be discussed.

32.  Section 6 - There needs to be a method for a client to say that it
needs a new key id someplace in the protocol which may or may not cause a
new re-key operation in the event that it sends too many messages on the
current content. 

33.  Section 6.1 - What happens if I ask for a key re-distribution, but
supply a different scope than for the original message < assumes a
multi-topic scope>.  I am not sure what the purpose of the scope is at this
time given that you are not checking roles as well.

34.  OUT OF ORDER - Should a KDC have a single resource which allows for it
to return a group based on what the topic/scope is that is passed in without
the client first knowing what the group id is going to be?

35.  OUT OF ORDER - are all of the resource names required to be at the
root?  If I have a KDC which is shared with something else (say a Pub Sub
server) then it would make sense to have post to /KDC/group-id.

36.  Section 7.1 - what is the format of get_pub_keys when group member ids
are included?

37.  Section 7.2 - There is a race condition caused by the last paragraph in
this section.  Entity A sends a message, leaves the group, Entity B receives
the message and askes for the public key.  Is this an issue?

38. Section 91. - can the profile column have multiple values?

39.  It would be useful to have a section which describes all of the items
that a profile must cover in order to be used.

Jim








From nobody Tue Apr  2 18:29:26 2019
Return-Path: <ietf@augustcellars.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7F5BD1201D8; Tue,  2 Apr 2019 18:29:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.794
X-Spam-Level: 
X-Spam-Status: No, score=-0.794 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, LOCALPART_IN_SUBJECT=1.107, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id i2ypZc_JGsR1; Tue,  2 Apr 2019 18:29:23 -0700 (PDT)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6DC9C120047; Tue,  2 Apr 2019 18:29:23 -0700 (PDT)
Received: from Jude (73.180.8.170) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Tue, 2 Apr 2019 18:29:17 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: <draft-ietf-ace-key-groupcomm@ietf.org>
CC: <ace@ietf.org>
Date: Tue, 2 Apr 2019 18:29:15 -0700
Message-ID: <028001d4e9bc$a7c89190$f759b4b0$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AdTpvIDt3jsgvWgHQvGtYcGOePRK/A==
Content-Language: en-us
X-Originating-IP: [73.180.8.170]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/oQLIYFKs90OXRZej0MwL-T5CSG4>
Subject: [Ace] draft-ietf-ace-key-groupcomm
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Apr 2019 01:29:25 -0000

Should there be a case described where messages are relatively rare, but
confidentiality is rare.  In this case a simple question to the KDC about
the current group ID would be useful.

Jim



From nobody Wed Apr  3 05:42:13 2019
Return-Path: <ietf@augustcellars.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A571B120091; Wed,  3 Apr 2019 05:42:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.794
X-Spam-Level: 
X-Spam-Status: No, score=-0.794 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, LOCALPART_IN_SUBJECT=1.107, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id oaeoJRiByD5Y; Wed,  3 Apr 2019 05:42:10 -0700 (PDT)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7CDA71201B3; Wed,  3 Apr 2019 05:42:09 -0700 (PDT)
Received: from Jude (73.180.8.170) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Wed, 3 Apr 2019 05:42:03 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: <draft-ietf-ace-key-groupcomm-oscore@ietf.org>
CC: <ace@ietf.org>
Date: Wed, 3 Apr 2019 05:42:00 -0700
Message-ID: <029f01d4ea1a$a39e5920$eadb0b60$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AdTpuJsCmhoawGh3SlKBib5FzzT6Lg==
Content-Language: en-us
X-Originating-IP: [73.180.8.170]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/cZ-xr8KR6l-sKghcgMbuc-BZsDE>
Subject: [Ace] draft-ietf-ace-key-groupcomm-oscore
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Apr 2019 12:42:12 -0000

I was wandering through the document with a view to implementing and have
the following questions:

1.  Abstract: From the first paragraph I am not sure if the group
communications or the communications to the KDC are secured with OSCORE.

2.  Section 3.1 - "requester" seems to be an odd name for "sender" or
"publisher"

3. Section 3.1 - I am trying to figure out why a Gid would be a reasonable
value for the scope.  This means that the AS is going to be the one to
assign the Gid value in many cases as it needs to check the scope value
there.  Is that going to be a common case?  I.e. Are Gids going to be
assigned by administrators?

4. Section 3.1 - Is the form in Appendix C of the Gid in some respect
mandatory?  If it is not, then how does a receiver of a message distinguish
between two different groups that are using the same multicast address?  Is
that going to be a non-supported case?  The most common case of this would
be having two different groups on the default CoAP multicast address talking
to RDs with different permissions at the RD to see things.

5. Section 4.1 - I can understand things relative to the key_info blob that
is being returned.  I am not sure that I think that this is being defined
correctly however.  It makes more sense to me to have the following:
key_info = [ sign_alg: COSE_Algorithm, ?sign_parameters : map,
?key_parameters: map ] where the two maps are filled in from the required
fixed parameters from the two COSE registries.  This would end up with
something like the following as a potential value   [ sign_alg: ECDSA,
key_parameters: {'kty':'EC2', 'crv': 'P256'}]

6. Section 4.1.1 - why is the key info parameter format application
specific?  I would have assumed that it was the same as in the previous
section.

7.  Section 4.2 - for 'client_cred', I am unsure what the client is supposed
to do if the joining node does not know the countersignature algorithm.  Can
the include public key not be in a consistent format?  What does consistent
format even mean?

8. Section 4.3 - I don't understand why the GM is accepting the join request
if the client_cred passed in was not in the correct format.  Is this a typo?

9.  Section 6 - I don't know that the third bullet is in the list of cases
where the client_cred parameter is not required.

10.  Section 6 - What is the POP method for the fourth bullet method?

11. Section 6 - What happens if any of first three bullets is true, but the
cached key does not match the required key parameters for the signing
algorithm.  In some of these cases there is no check that any signature
algorithm parameters that might exist are going to be checked and enforced.

12.  Section 7 - This text implies to me that all users of a group key need
to be able to act as servers and have a fixed port number which was supplied
some how to the GM so that it can be notified.   This could be done by
keeping up the DTLS session, but that is still a little bit tricky and would
not work for OSCORE based messages.  This text might want to point to the
section in the ietf-ace-key-groupcomm that deals with this and require that
the query or subscribe methods be supported.  Although both of those suffer
from the lack of hard break on the part of publishers.

Jim



From nobody Wed Apr  3 06:35:25 2019
Return-Path: <francesca.palombini@ericsson.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4101612013C; Wed,  3 Apr 2019 06:35:12 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.101
X-Spam-Level: 
X-Spam-Status: No, score=-0.101 tagged_above=-999 required=5 tests=[DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aqI9pupa0PcG; Wed,  3 Apr 2019 06:35:09 -0700 (PDT)
Received: from EUR04-DB3-obe.outbound.protection.outlook.com (mail-eopbgr60060.outbound.protection.outlook.com [40.107.6.60]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5979D1200B5; Wed,  3 Apr 2019 06:35:09 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=91CCTFF1vHJE5HXiWZqmIBSPXbkQKTBvGbP8wXxndDU=; b=IepdIvdDXl/yHMyMcPr5nA1f9oMiA03NN7uQlYRviOq43m8AG+f0GQJOJ0uu3UfFCS3Aow53jkXCxloqnOlCnqWOfA6t6oeI7SCrAaQwPr1YhCDXP+kDsbjc/EaKxog3UynQuklX14joPEB0tw+aUL5BJLyeTslUQQchiF7qacU=
Received: from HE1PR0701MB2746.eurprd07.prod.outlook.com (10.168.185.17) by HE1PR0701MB2684.eurprd07.prod.outlook.com (10.168.183.140) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1771.8; Wed, 3 Apr 2019 13:35:06 +0000
Received: from HE1PR0701MB2746.eurprd07.prod.outlook.com ([fe80::2489:87b6:bfd8:727d]) by HE1PR0701MB2746.eurprd07.prod.outlook.com ([fe80::2489:87b6:bfd8:727d%6]) with mapi id 15.20.1771.011; Wed, 3 Apr 2019 13:35:06 +0000
From: Francesca Palombini <francesca.palombini@ericsson.com>
To: Ace Wg <ace@ietf.org>, "core@ietf.org" <core@ietf.org>
Thread-Topic: New Version Notification for draft-palombini-ace-coap-pubsub-profile-04.txt
Thread-Index: AQHU6iFUWr25cwLiJEGz6zrjLxGdy6YqkVyA
Date: Wed, 3 Apr 2019 13:35:06 +0000
Message-ID: <6F661F7B-8159-4253-B526-BA0BF4FF1ECF@ericsson.com>
References: <155429817346.5295.16132999392792189014.idtracker@ietfa.amsl.com>
In-Reply-To: <155429817346.5295.16132999392792189014.idtracker@ietfa.amsl.com>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
authentication-results: spf=none (sender IP is ) smtp.mailfrom=francesca.palombini@ericsson.com; 
x-originating-ip: [192.176.1.84]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: badcb3b4-6000-41dc-5ecc-08d6b8392f49
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(5600139)(711020)(4605104)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(2017052603328)(7193020); SRVR:HE1PR0701MB2684; 
x-ms-traffictypediagnostic: HE1PR0701MB2684:
x-ms-exchange-purlcount: 5
x-microsoft-antispam-prvs: <HE1PR0701MB26849492A0B3ED9BFA37E24598570@HE1PR0701MB2684.eurprd07.prod.outlook.com>
x-forefront-prvs: 0996D1900D
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(376002)(396003)(346002)(366004)(136003)(39860400002)(199004)(189003)(53754006)(25786009)(8676002)(6246003)(81156014)(36756003)(2501003)(7736002)(305945005)(8936002)(81166006)(6486002)(15650500001)(6116002)(3846002)(86362001)(11346002)(486006)(14454004)(478600001)(2616005)(14444005)(446003)(82746002)(476003)(186003)(2906002)(66066001)(316002)(105586002)(450100002)(6506007)(97736004)(229853002)(102836004)(966005)(256004)(33656002)(76176011)(6436002)(106356001)(110136005)(99286004)(44832011)(71200400001)(83716004)(71190400001)(5660300002)(6306002)(53936002)(6512007)(68736007)(26005)(66574012); DIR:OUT; SFP:1101; SCL:1; SRVR:HE1PR0701MB2684; H:HE1PR0701MB2746.eurprd07.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1; 
received-spf: None (protection.outlook.com: ericsson.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: b25Ig95HGLegdS5wVKjgAlUaINTH0nlVyBCzoY3Jvs3r4ICPyFfm88Zu/x0NiJFfFMij2LEBaGlybrc2q+EqwEbyACR1NOkWztq/9LQUY4n2jUoSKekMDgPYkJQ/FPCkPJWzSModf/3fQzqep0T8vFDTtkcrQbWBOwnsUdSEOKpp6QCssD8VfLvUgsRWbQMWmIL9zSe3mwqrybRiyi/K1wIHNFnL0rRui68cyoQmDJWBEpQHT502rFMl0DstgnM0ga+2rgSvciK+A/pazuFMNHG0V28PFjTw4/8nczcwJXvnZRNfmbuawCEjXebnNTVvicx0f51M/O04n5rC0FmjS/e/PNVP/7Vdor3VbJeHdYa0vMyvAZwwP+AG3fYc5jFA6nDamgcWIuzdj0bztDsFGPRU/fk2GOBY4JV6DjQ7eeY=
Content-Type: text/plain; charset="utf-8"
Content-ID: <1FA35918DEFEB449B7430668BE073E56@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-Network-Message-Id: badcb3b4-6000-41dc-5ecc-08d6b8392f49
X-MS-Exchange-CrossTenant-originalarrivaltime: 03 Apr 2019 13:35:06.4176 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0701MB2684
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/gqlXfK4Oj96jswx8Y8TgQv2p1_M>
Subject: Re: [Ace] New Version Notification for draft-palombini-ace-coap-pubsub-profile-04.txt
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Apr 2019 13:35:12 -0000

SGkgYWxsLA0KDQpBcyBJIG9ic2VydmVkIGludGVyZXN0IGFib3V0IHNlY3VyaXR5IGZvciBwdWJz
dWIgaW4gYm90aCBBY2UgYW5kIENvUkUgZHVyaW5nIGxhc3QgbWVldGluZywgSSB0aG91Z2h0IG5v
dyB3b3VsZCBiZSBhIGdvb2QgdGltZSB0byBzdWJtaXQgYSBuZXcgdmVyc2lvbiBvZiB0aGUgY29h
cC1wdWJzdWIgcHJvZmlsZSBvZiBBQ0UuDQoNClRoaXMgdXBkYXRlIGFsaWducyB0aGUgZG9jdW1l
bnQgdG8gdGhlIGxhdGVzdCB2ZXJzaW9uIG9mIGRyYWZ0LWlldGYtYWNlLWtleS1ncm91cGNvbW0g
YW5kIGZpeGVzIG1pbm9yIGVkaXRvcmlhbHMuDQoNCkZlZWRiYWNrIGlzIHdlbGNvbWUhDQoNClRo
YW5rcywNCkZyYW5jZXNjYQ0KDQrvu79PbiAwMy8wNC8yMDE5LCAxNToyOSwgImludGVybmV0LWRy
YWZ0c0BpZXRmLm9yZyIgPGludGVybmV0LWRyYWZ0c0BpZXRmLm9yZz4gd3JvdGU6DQoNCiAgICAN
CiAgICBBIG5ldyB2ZXJzaW9uIG9mIEktRCwgZHJhZnQtcGFsb21iaW5pLWFjZS1jb2FwLXB1YnN1
Yi1wcm9maWxlLTA0LnR4dA0KICAgIGhhcyBiZWVuIHN1Y2Nlc3NmdWxseSBzdWJtaXR0ZWQgYnkg
RnJhbmNlc2NhIFBhbG9tYmluaSBhbmQgcG9zdGVkIHRvIHRoZQ0KICAgIElFVEYgcmVwb3NpdG9y
eS4NCiAgICANCiAgICBOYW1lOgkJZHJhZnQtcGFsb21iaW5pLWFjZS1jb2FwLXB1YnN1Yi1wcm9m
aWxlDQogICAgUmV2aXNpb246CTA0DQogICAgVGl0bGU6CQlDb0FQIFB1Yi1TdWIgUHJvZmlsZSBm
b3IgQXV0aGVudGljYXRpb24gYW5kIEF1dGhvcml6YXRpb24gZm9yIENvbnN0cmFpbmVkIEVudmly
b25tZW50cyAoQUNFKQ0KICAgIERvY3VtZW50IGRhdGU6CTIwMTktMDQtMDMNCiAgICBHcm91cDoJ
CUluZGl2aWR1YWwgU3VibWlzc2lvbg0KICAgIFBhZ2VzOgkJMTYNCiAgICBVUkw6ICAgICAgICAg
ICAgaHR0cHM6Ly93d3cuaWV0Zi5vcmcvaW50ZXJuZXQtZHJhZnRzL2RyYWZ0LXBhbG9tYmluaS1h
Y2UtY29hcC1wdWJzdWItcHJvZmlsZS0wNC50eHQNCiAgICBTdGF0dXM6ICAgICAgICAgaHR0cHM6
Ly9kYXRhdHJhY2tlci5pZXRmLm9yZy9kb2MvZHJhZnQtcGFsb21iaW5pLWFjZS1jb2FwLXB1YnN1
Yi1wcm9maWxlLw0KICAgIEh0bWxpemVkOiAgICAgICBodHRwczovL3Rvb2xzLmlldGYub3JnL2h0
bWwvZHJhZnQtcGFsb21iaW5pLWFjZS1jb2FwLXB1YnN1Yi1wcm9maWxlLTA0DQogICAgSHRtbGl6
ZWQ6ICAgICAgIGh0dHBzOi8vZGF0YXRyYWNrZXIuaWV0Zi5vcmcvZG9jL2h0bWwvZHJhZnQtcGFs
b21iaW5pLWFjZS1jb2FwLXB1YnN1Yi1wcm9maWxlDQogICAgRGlmZjogICAgICAgICAgIGh0dHBz
Oi8vd3d3LmlldGYub3JnL3JmY2RpZmY/dXJsMj1kcmFmdC1wYWxvbWJpbmktYWNlLWNvYXAtcHVi
c3ViLXByb2ZpbGUtMDQNCiAgICANCiAgICBBYnN0cmFjdDoNCiAgICAgICBUaGlzIHNwZWNpZmlj
YXRpb24gZGVmaW5lcyBhIHByb2ZpbGUgZm9yIGF1dGhlbnRpY2F0aW9uIGFuZA0KICAgICAgIGF1
dGhvcml6YXRpb24gZm9yIHB1Ymxpc2hlcnMgYW5kIHN1YnNjcmliZXJzIGluIGEgcHViLXN1YiBz
ZXR0aW5nDQogICAgICAgc2NlbmFyaW8gaW4gYSBjb25zdHJhaW5lZCBlbnZpcm9ubWVudCwgdXNp
bmcgdGhlIEFDRSBmcmFtZXdvcmsuICBUaGlzDQogICAgICAgcHJvZmlsZSByZWxpZXMgb24gdHJh
bnNwb3J0IGxheWVyIG9yIGFwcGxpY2F0aW9uIGxheWVyIHNlY3VyaXR5IHRvDQogICAgICAgYXV0
aG9yaXplIHRoZSBwdWJsaXNoZXIgdG8gdGhlIGJyb2tlci4gIE1vcmVvdmVyLCBpdCByZWxpZXMg
b24NCiAgICAgICBhcHBsaWNhdGlvbiBsYXllciBzZWN1cml0eSBmb3IgcHVibGlzaGVyLWJyb2tl
ciBhbmQgc3Vic2NyaWJlci1icm9rZXINCiAgICAgICBjb21tdW5pY2F0aW9uLg0KICAgIA0KICAg
ICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAgICAg
ICAgICAgICAgICAgICAgICAgICAgICAgICANCiAgICANCiAgICANCiAgICBQbGVhc2Ugbm90ZSB0
aGF0IGl0IG1heSB0YWtlIGEgY291cGxlIG9mIG1pbnV0ZXMgZnJvbSB0aGUgdGltZSBvZiBzdWJt
aXNzaW9uDQogICAgdW50aWwgdGhlIGh0bWxpemVkIHZlcnNpb24gYW5kIGRpZmYgYXJlIGF2YWls
YWJsZSBhdCB0b29scy5pZXRmLm9yZy4NCiAgICANCiAgICBUaGUgSUVURiBTZWNyZXRhcmlhdA0K
ICAgIA0KICAgIA0KDQo=


From nobody Thu Apr  4 06:52:41 2019
Return-Path: <ietf@augustcellars.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2B80C120672 for <ace@ietfa.amsl.com>; Thu,  4 Apr 2019 06:52:40 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level: 
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Ye995XMxrRGW for <ace@ietfa.amsl.com>; Thu,  4 Apr 2019 06:52:38 -0700 (PDT)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BAB9F120671 for <ace@ietf.org>; Thu,  4 Apr 2019 06:52:37 -0700 (PDT)
Received: from Jude (73.180.8.170) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Thu, 4 Apr 2019 06:52:31 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: <ace@ietf.org>
References: 
In-Reply-To: 
Date: Thu, 4 Apr 2019 06:52:27 -0700
Message-ID: <005b01d4eaed$a59f8270$f0de8750$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 16.0
Content-Language: en-us
Thread-Index: AdTqhNNyNWeMmgN+Rsq71GPkqAXXZAAaLxnQ
X-Originating-IP: [73.180.8.170]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/MmUafPDi-DLI8bqXqHmmo3NLZew>
Subject: [Ace] FW: Mail regarding draft-ietf-ace-key-groupcomm
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 04 Apr 2019 13:52:40 -0000

I cc-ed this to the wrong list. 

-----Original Message-----
From: Jim Schaad <ietf@augustcellars.com> 
Sent: Wednesday, April 3, 2019 6:43 PM
To: 'draft-ietf-ace-key-groupcomm@ietf.org'
<draft-ietf-ace-key-groupcomm@ietf.org>
Cc: 'core@ietf.org' <core@ietf.org>
Subject: Mail regarding draft-ietf-ace-key-groupcomm

Some additional things that need to be thought about.

1.  Someplace as part of the re-key discussions there ought to be some
commentary on the wisdom of rate limiting the frequency of doing re-keying
operations.

2. I think that there should be an optional parameter that says "If this
much time has elapsed since the last time you checked, see if the group id
has changed."  This would be combined with a polling client to ensure that
they check for an updated key context before doing some operation.

3.  What happens in the following situations:
a) The key context is changed between a request being sent and the server
receiving the request.  This could just be because the sender did not get
the notification of the key context changing.

b) The response takes "a while" to generate and the key context is changed
after the request is received, but before the response is sent.

c)  The key context is changed in the middle of a block-wise transfer.

Jim



From nobody Mon Apr  8 06:14:41 2019
Return-Path: <mglt.ietf@gmail.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1BDCD1202F3 for <ace@ietfa.amsl.com>; Mon,  8 Apr 2019 06:14:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.648
X-Spam-Level: 
X-Spam-Status: No, score=-1.648 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FREEMAIL_FORGED_FROMDOMAIN=0.25, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hV0lbT3mucct for <ace@ietfa.amsl.com>; Mon,  8 Apr 2019 06:14:11 -0700 (PDT)
Received: from mail-lj1-f181.google.com (mail-lj1-f181.google.com [209.85.208.181]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6F7011202F6 for <ace@ietf.org>; Mon,  8 Apr 2019 06:14:11 -0700 (PDT)
Received: by mail-lj1-f181.google.com with SMTP id h21so11174416ljk.13 for <ace@ietf.org>; Mon, 08 Apr 2019 06:14:11 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to; bh=t9grvMGvkqdZOqUX4JqM/yGAiRxq/9dplebtZcaEOec=; b=oLF2Eg2UEcqhK7BQjA+lfqhIzV1/Tu/EhBRCcYGQt+MofMhXdAKeffmNxjecKWEZ8f kni7gmWZShk5HUAwrxNHUp+lBQUdmmBmzs6utb/eltL1aL5T1cZgXEv3bEGqnV16fbWY wu2wQ7Ce88Ai4VeDqZMJWZRWYLBAsJkOKmYMcvxON8cNTBtmIMyowwqRBG1lrWtGeQHu 5ENKW85lujNu9Cup92ODA35OxwL/eyeITRYinBzvMKBkOTv8c7HS1C93CjN3Hsd1dsAI THYXL203WF5p6ZLnLzrVDe6ft0yx/BY0dhnsyXVN+ptChkFYA0fxgKQXcCU5j3v2RwnK 3lKg==
X-Gm-Message-State: APjAAAUVpByZs/Oc7y1cY5ae2+UTC3LNas2CR2lN1Dnx9q0kRJKBT/lx h6dP/4vcdhPrKjYZ/bNGk2NIbYM08pDh8tEHnshDPwr1
X-Google-Smtp-Source: APXvYqwDmS85BCVTvY0/hUptcAXThkyh2lKa3xsKUSPsLiUJV2WoSrUTl55JVJ377cNJBwk3622GyI4T+Z5dqHjuv50=
X-Received: by 2002:a2e:2d02:: with SMTP id t2mr10384955ljt.148.1554729249105;  Mon, 08 Apr 2019 06:14:09 -0700 (PDT)
MIME-Version: 1.0
References: <CADZyTkmKPiMdEGgt=7BHx8J3orcgPxYGmxRbCFx7E9U-WW_Lww@mail.gmail.com>
In-Reply-To: <CADZyTkmKPiMdEGgt=7BHx8J3orcgPxYGmxRbCFx7E9U-WW_Lww@mail.gmail.com>
From: Daniel Migault <daniel.migault@ericsson.com>
Date: Mon, 8 Apr 2019 09:13:57 -0400
Message-ID: <CADZyTkk-opg7iOWOKTD_y79bxLj5w6j-34DRfr5XTdkn6SV-Pg@mail.gmail.com>
To: ace@ietf.org
Content-Type: multipart/alternative; boundary="0000000000009d6aee0586049c19"
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/_aWr1qWxP_PQzu0FL4ylirWgwbc>
Subject: Re: [Ace] Minutes
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Apr 2019 13:14:19 -0000

--0000000000009d6aee0586049c19
Content-Type: text/plain; charset="UTF-8"

Thank you Robin for providing the minutes. The minutes are online [1], if
you have any comment, feel free to let us know.

Yours,
Daniel
[1] https://datatracker.ietf.org/meeting/104/session/ace

On Mon, Apr 1, 2019 at 3:53 PM Daniel Migault <daniel.migault@ericsson.com>
wrote:

> Hi,
>
> I cannot find the minutes of the ACE meeting in Prague in my mailbox, so
> we kindly ask the minute taker to forward the minutes on the mailing list
> for review.
>
> I apology for to the minute taker, I exactly know who he is, but I am
> realizing I am missing his email address.
>
> Yours,
> Daniel
>

--0000000000009d6aee0586049c19
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr"><div dir=3D"ltr">Thank you Robin for providing the minutes=
. The minutes are online [1], if you have any comment, feel free to let us =
know.=C2=A0<div><br></div><div>Yours,=C2=A0</div><div>Daniel</div><div>[1]=
=C2=A0<a href=3D"https://datatracker.ietf.org/meeting/104/session/ace">http=
s://datatracker.ietf.org/meeting/104/session/ace</a></div></div></div><br><=
div class=3D"gmail_quote"><div dir=3D"ltr" class=3D"gmail_attr">On Mon, Apr=
 1, 2019 at 3:53 PM Daniel Migault &lt;<a href=3D"mailto:daniel.migault@eri=
csson.com">daniel.migault@ericsson.com</a>&gt; wrote:<br></div><blockquote =
class=3D"gmail_quote" style=3D"margin:0px 0px 0px 0.8ex;border-left:1px sol=
id rgb(204,204,204);padding-left:1ex"><div dir=3D"ltr">Hi,=C2=A0<div><br></=
div><div>I cannot find the minutes of the ACE meeting in Prague in my mailb=
ox, so we kindly ask the minute taker to forward the minutes on the mailing=
 list for review.=C2=A0</div><div><br></div><div>I apology for to the minut=
e taker, I exactly know who he is, but I am realizing I am missing his emai=
l address.=C2=A0</div><div><br></div><div>Yours,=C2=A0</div><div>Daniel</di=
v></div>
</blockquote></div>

--0000000000009d6aee0586049c19--


From nobody Mon Apr  8 17:18:08 2019
Return-Path: <ietf@augustcellars.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2E1381200E5 for <ace@ietfa.amsl.com>; Mon,  8 Apr 2019 17:18:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level: 
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Fyhk08ULiFGh for <ace@ietfa.amsl.com>; Mon,  8 Apr 2019 17:18:05 -0700 (PDT)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5100412000F for <ace@ietf.org>; Mon,  8 Apr 2019 17:18:05 -0700 (PDT)
Received: from Jude (50.248.212.131) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Mon, 8 Apr 2019 17:17:59 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: <ace@ietf.org>
References: <007e01d4ee52$34d796a0$9e86c3e0$@augustcellars.com>
In-Reply-To: <007e01d4ee52$34d796a0$9e86c3e0$@augustcellars.com>
Date: Mon, 8 Apr 2019 17:17:56 -0700
Message-ID: <009901d4ee69$aff2f8e0$0fd8eaa0$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AQFx6YjvQYg2xhqyBm0BZ7FTdtBC1qb5ADLw
Content-Language: en-us
X-Originating-IP: [50.248.212.131]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/aJEv5TMAo4iSBWyfAewnK4KZQ0E>
Subject: [Ace] FW: [core] Security Model and other issues for group messaging
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 09 Apr 2019 00:18:07 -0000

Discussion is for both lists, but only post to one please.

-----Original Message-----
From: core <core-bounces@ietf.org> On Behalf Of Jim Schaad
Sent: Monday, April 8, 2019 2:30 PM
To: core@ietf.org
Subject: [core] Security Model and other issues for group messaging

I have been going through the design process for getting software running
for Montreal and I have come across the following issues that I think need
some discussion.  Some of these may just need clarification in documents but
other are more substantive.

It took me a while to determine that one of the strange issues I was having
is that when looking just at the multicast case my mental model of who was
making the decisions on if access was allowed did not seem to make a good
match to what was being documented.  I rather expected that all of the ACL
decisions were going to be made on the AS and none on the KDC.  This meant
that the inclusion of scope in all of the messages was redundant if sending
messages to a per group resource.  Part of the questions involved here are
who does the configuration for what key groups are associated with what
application groups.  I was always thinking of a single key group which was
identified by the AS and sent to the KDC without the KDC needing to know the
details of multiple resources for that key group.  This of course does not
match the model in the document.  Some text on what model is being laid out
is probably worthwhile.

There was discussions for the ACE OAuth document about how to handle
multiple access tokens for a single entity that need to be looked at in the
context of a KDC.  The current rule is that a resource server needs only to
keep one token for any single supplicant.  This was mostly discussed in the
context of adding and subtracting privileges for the supplicant.  It may be
that this also needs to be viewed in the context of having completely
disjoint resources on a single RS which are going to have different AS
tokens issued.  Thus for example, if there is a KDC which is servicing two
different key groups.  The supplicant gets a token for group1, gets the keys
from the KDC.  It then asks for a token for group2.  Given that the
lifetimes of these different tokens could be radically different does it
really make sense to require that the two AS tokens be merged together
(assuming they are from the same source) or would it make more sense to
relax the RS only needs to keep one token rule.  An easy way out of this
might be to say one token per resource, but for constrained devices it could
be one token per RS.

Jim


_______________________________________________
core mailing list
core@ietf.org
https://www.ietf.org/mailman/listinfo/core


From nobody Tue Apr  9 00:59:31 2019
Return-Path: <stokcons@bbhmail.nl>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1C72D1200CE for <ace@ietfa.amsl.com>; Tue,  9 Apr 2019 00:59:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level: 
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=bbhmail.nl
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NEOtCG2JwB00 for <ace@ietfa.amsl.com>; Tue,  9 Apr 2019 00:59:27 -0700 (PDT)
Received: from smtprelay.hostedemail.com (smtprelay0090.hostedemail.com [216.40.44.90]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B4B80120021 for <ace@ietf.org>; Tue,  9 Apr 2019 00:59:27 -0700 (PDT)
Received: from filter.hostedemail.com (clb03-v110.bra.tucows.net [216.40.38.60]) by smtprelay07.hostedemail.com (Postfix) with ESMTP id 815DC181D341E for <ace@ietf.org>; Tue,  9 Apr 2019 07:59:26 +0000 (UTC)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bbhmail.nl; h= mime-version:content-type:date:from:to:subject:reply-to :message-id; s=key; bh=dSrHVs5t0UXbVDKP5828jnYgTwTqnGfoO9hIQf9or gc=; b=S+Qvmr7e6FwqLyG2I2Xx2qaH3zhm0HWYhSA48UqTZLiFHz8+ecVXYLdpr 0l+6h2ZVe8bVaoALgNudqhoEpX94J/afSIK05nuNjQehs+aRXNPZWBnCKzmfR50q Lirz0g5K1mTGu5Kb8u/YXf4A0y7LbrbjnjGNfnlfVMezBDghCc=
X-Session-Marker: 73746F6B636F6E73406262686D61696C2E6E6C
X-Spam-Summary: 50, 0, 0, , d41d8cd98f00b204, stokcons@bbhmail.nl, :, RULES_HIT:41:72:152:355:379:582:800:962:967:973:983:988:989:1152:1189:1208:1221:1260:1263:1313:1314:1345:1381:1431:1436:1437:1516:1517:1518:1534:1540:1566:1575:1588:1589:1592:1594:1711:1714:1730:1776:1792:2525:2561:2564:2682:2685:2693:2829:2859:2933:2937:2939:2942:2945:2947:2951:2954:3022:3138:3139:3140:3141:3142:3586:3865:3866:3867:3868:3871:3872:3934:3936:3938:3941:3944:3947:3950:3953:3956:3959:4321:4659:5007:6261:6298:6659:7903:8603:9015:9025:9177:9388:10004:10214:10400:10848:11232:11658:11914:12043:12555:12679:12895:12986:13071:13139:13199:13229:13439:13846:14096:14180:14181:14721:21060:21080:21433:21451:21625:21691:30048:30054, 0, RBL:216.40.42.5:@bbhmail.nl:.lbl8.mailshell.net-62.8.55.100 66.201.201.201,  CacheIP:none, Bayesian:0.5, 0.5, 0.5, Netcheck:none, DomainCache:0, MSF:not bulk, SPF:fn, MSBL:0, DNSBL:neutral, Custom_rules:0:0:0, LFtime:27, LUA_SUMMARY:none
X-HE-Tag: elbow09_6f80a6d94f711
X-Filterd-Recvd-Size: 2572
Received: from mail.bbhmail.nl (imap-ext [216.40.42.5]) (Authenticated sender: webmail@stokcons@bbhmail.nl) by omf17.hostedemail.com (Postfix) with ESMTPA for <ace@ietf.org>; Tue,  9 Apr 2019 07:59:26 +0000 (UTC)
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="=_135b083f707dce1da2d9bd410ca303c2"
Date: Tue, 09 Apr 2019 00:59:25 -0700
From: Peter van der Stok <stokcons@bbhmail.nl>
To: Ace <ace@ietf.org>
Organization: vanderstok consultancy
Reply-To: consultancy@vanderstok.org
Mail-Reply-To: consultancy@vanderstok.org
Message-ID: <47e2857aee73f1d9f16a97f141d7a810@bbhmail.nl>
X-Sender: stokcons@bbhmail.nl
User-Agent: Roundcube Webmail/1.2.7
X-Originating-IP: [5.206.216.229]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/ipMuGJdp6k9rq7QIz5Qpwyjsll0>
Subject: [Ace] groupcomm-oscore
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 09 Apr 2019 07:59:30 -0000

--=_135b083f707dce1da2d9bd410ca303c2
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset=US-ASCII

Hi co-authors of groupcomm-oscore,

It is not clear how valid groups are created and stored by the group
manager.
Is the request by a client to join a non-existing group honored by
creating the specified group?
If not, will there be additional group creation commands?

Peter
-- 
Peter van der Stok
vanderstok consultancy
mailto: consultancy@vanderstok.org, stokcons@bbhmail.nl
www: www.vanderstok.org [1]
tel NL: +31(0)492474673     F: +33(0)966015248 

Links:
------
[1] http://www.vanderstok.org
--=_135b083f707dce1da2d9bd410ca303c2
Content-Transfer-Encoding: quoted-printable
Content-Type: text/html; charset=UTF-8

<html><head><meta http-equiv=3D"Content-Type" content=3D"text/html; charset=
=3DUTF-8" /></head><body style=3D'font-size: 10pt; font-family: Verdana,Gen=
eva,sans-serif'>
Hi co-authors of groupcomm-oscore,<br /><br />It is not clear how valid gro=
ups are created and stored by the group manager.<br />Is the request by a c=
lient to join a non-existing group honored by creating the specified group?=
<br />If not, will there be additional group creation commands?<br /><br />=
Peter<br />
<div>-- <br />
<div class=3D"pre" style=3D"margin: 0; padding: 0; font-family: monospace">=
Peter van der Stok<br /> vanderstok consultancy<br /> mailto: <a href=3D"ma=
ilto:consultancy@vanderstok.org">consultancy@vanderstok.org</a>, <a href=3D=
"mailto:stokcons@bbhmail.nl">stokcons@bbhmail.nl</a><br /> www: <a href=3D"=
http://www.vanderstok.org" target=3D"_blank" rel=3D"noreferrer">www.vanders=
tok.org</a><br /> tel NL: +31(0)492474673 &nbsp;&nbsp;&nbsp;&nbsp;F: +33(0)=
966015248</div>
</div>
</body></html>

--=_135b083f707dce1da2d9bd410ca303c2--


From nobody Tue Apr  9 01:18:09 2019
Return-Path: <marco.tiloca@ri.se>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 96E731201DB for <ace@ietfa.amsl.com>; Tue,  9 Apr 2019 01:18:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level: 
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=risecloud.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id bbIuC4OEzeoB for <ace@ietfa.amsl.com>; Tue,  9 Apr 2019 01:18:04 -0700 (PDT)
Received: from EUR03-VE1-obe.outbound.protection.outlook.com (mail-ve1eur03on061d.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe09::61d]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CB6571201C3 for <ace@ietf.org>; Tue,  9 Apr 2019 01:18:03 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=RISEcloud.onmicrosoft.com; s=selector1-ri-se; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=d9G/H+ERfCssw1SuF8fkShXyLEWfnUf+UxpGsUjWJkc=; b=MUEwOMh+FxOd+S1XZDad5HQcJsNM0ClUGejxtQ51drinvw3F8NQsa+tHbCeIsNztVkVJ2oWPqe7cZEskO8PFkOI1ugg/rusa3d8+zf/Bg6T88LlmHF0cHwRMFIScbe9s3M7iCHwoVaS6o9xHwB2rr9/ZxbyX+LCKl6mNUqSVzR0=
Received: from DB6P189CA0003.EURP189.PROD.OUTLOOK.COM (2603:10a6:6:2e::16) by VI1P189MB0336.EURP189.PROD.OUTLOOK.COM (2603:10a6:802:35::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1771.16; Tue, 9 Apr 2019 08:18:01 +0000
Received: from HE1EUR02FT016.eop-EUR02.prod.protection.outlook.com (2a01:111:f400:7e05::200) by DB6P189CA0003.outlook.office365.com (2603:10a6:6:2e::16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.20.1792.14 via Frontend Transport; Tue, 9 Apr 2019 08:18:01 +0000
Authentication-Results: spf=pass (sender IP is 194.218.146.197) smtp.mailfrom=ri.se; ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=bestguesspass action=none header.from=ri.se;
Received-SPF: Pass (protection.outlook.com: domain of ri.se designates 194.218.146.197 as permitted sender) receiver=protection.outlook.com; client-ip=194.218.146.197; helo=mail.ri.se;
Received: from mail.ri.se (194.218.146.197) by HE1EUR02FT016.mail.protection.outlook.com (10.152.10.124) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256) id 15.20.1771.16 via Frontend Transport; Tue, 9 Apr 2019 08:17:59 +0000
Received: from [10.8.0.9] (10.116.0.226) by sp-mail-2.sp.se (10.100.0.162) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1713.5; Tue, 9 Apr 2019 10:17:59 +0200
From: Marco Tiloca <marco.tiloca@ri.se>
Openpgp: preference=signencrypt
Autocrypt: addr=marco.tiloca@ri.se; prefer-encrypt=mutual; keydata= mQENBFSNeRUBCAC44iazWzj/PE3TiAlBsaWna0JbdIAJFHB8PLrqthI0ZG7GnCLNR8ZhDz6Z aRDPC4FR3UcMhPgZpJIqa6Zi8yWYCqF7A7QhT7E1WdQR1G0+6xUEd0ZD+QBdf29pQadrVZAt 0G4CkUnq5H+Sm05aw2Cpv3JfsATVaemWmujnMTvZ3dFudCGNdsY6kPSVzMRyedX7ArLXyF+0 Kh1T4WUW6NHfEWltnzkcqRhn2NcZtADsxWrMBgZXkLE/dP67SnyFjWYpz7aNpxxA+mb5WBT+ NrSetJlljT0QOXrXMGh98GLfNnLAl6gJryE6MZazN5oxkJgkAep8SevFXzglj7CAsh4PABEB AAG0Nk1hcmNvIFRpbG9jYSAobWFyY28udGlsb2NhQHJpLnNlKSA8bWFyY28udGlsb2NhQHJp LnNlPokBNwQTAQgAIQUCWkAnkAIbAwULCQgHAgYVCAkKCwIEFgIDAQIeAQIXgAAKCRDuJmS0 DljaQwEvCACJKPJIPGH0oGnLJY4G1I2DgNiyVKt1H4kkc/eT8Bz9OSbAxgZo3Jky382e4Dba ayWrQRFen0aLSFuzbU4BX4O/YRSaIqUO3KwUNO1iTC65OHz0XirGohPUOsc0SEMtpm+4zfYG 7G8p35MK0h9gpwgGMG0j0mZX4RDjuywC88i1VxCwMWGaZRlUrPXkC3nqDDRcPtuEGpncWhAV Qt2ZqeyITv9KCUmDntmXLPe6vEXtOfI9Z3HeqeI8OkGwXpotVobgLa/mVmFj6EALDzj7HC2u tfgxECBJddmcDInrvGgTkZtXEVbyLQuiK20lJmYnmPWN8DXaVVaQ4XP/lXUrzoEzuQENBFSN eRUBCACWmp+k6LkY4/ey7eA7umYVc22iyVqAEXmywDYzEjewYwRcjTrH/Nx1EqwjIDuW+BBE oMLRZOHCgmjo6HRmWIutcYVCt9ieokultkor9BBoQVPiI+Tp51Op02ifkGcrEQNZi7q3fmOt hFZwZ6NJnUbA2bycaKZ8oClvDCQj6AjEydBPnS73UaEoDsqsGVjZwChfOMg5OyFm90QjpIw8 m0uDVcCzKKfxq3T/z7tyRgucIUe84EzBuuJBESEjK/hF0nR2LDh1ShD29FWrFZSNVVCVu1UY ZLAayf8oKKHHpM+whfjEYO4XsDpV4zQ15A+D15HRiHR6Adf4PDtPM1DCwggjABEBAAGJAR8E GAECAAkFAlSNeRUCGwwACgkQ7iZktA5Y2kPGEwf/WNjTy3z74vLmHycVsFXXoQ8W1+858mRy Ad0a8JYzY3xB7CVtqI3Hy894Qcw4H6G799A1OL9B1EeA8Yj3aOz0NbUyf5GW+iotr3h8+KIC OYZ34/BQaOLzdvDNmRoGHn+NeTzhF7eSeiPKi2jex+NVodhjOVGXw8EhYGkeZLvynHEboiLM 4TbyPbVR9HsdVqKGVTDxKSE3namo3kvtY6syRFIiUz5WzJfYAuqbt6m3TxDEb8sA9pzaLuhm fnJRc12H5NVZEZmE/EkJFTlkP4wnZyOSf/r2/Vd0iHauBwv57cpY6HFFMe7rvK4s7ME5zctO Ely5C6NCu1ZaNtdUuqDSPA==
To: <ace@ietf.org>
Message-ID: <7ccc6f5e-fdc2-95e2-b1b6-01f2708e0cd9@ri.se>
Date: Tue, 9 Apr 2019 10:17:53 +0200
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.6.1
MIME-Version: 1.0
Content-Type: multipart/signed; micalg=pgp-sha512; protocol="application/pgp-signature"; boundary="GimfQP4beDf32ywuxKjPVFPuo7QhYc8vV"
X-Originating-IP: [10.116.0.226]
X-ClientProxiedBy: sp-mail-1.sp.se (10.100.0.161) To sp-mail-2.sp.se (10.100.0.162)
X-EOPAttributedMessage: 0
X-Forefront-Antispam-Report: CIP:194.218.146.197; IPV:NLI; CTRY:SE; EFV:NLI; SFV:NSPM; SFS:(10009020)(376002)(396003)(39860400002)(136003)(346002)(2980300002)(189003)(199004)(106002)(356004)(33964004)(186003)(478600001)(104016004)(81166006)(26005)(71190400001)(336012)(3846002)(22746008)(58126008)(65956001)(65806001)(16526019)(77096007)(69596002)(6916009)(36756003)(2616005)(126002)(476003)(81156014)(2906002)(6306002)(7736002)(22756006)(966005)(40036005)(44832011)(97736004)(53936002)(2351001)(486006)(316002)(235185007)(31696002)(305945005)(6666004)(568964002)(5024004)(31686004)(5660300002)(64126003)(86362001)(74482002)(386003)(8936002)(8676002)(106466001)(66574012)(65826007)(84326002)(16586007)(16576012)(21480400003)(6116002)(14444005); DIR:OUT; SFP:1101; SCL:1; SRVR:VI1P189MB0336; H:mail.ri.se; FPR:; SPF:Pass; LANG:en; PTR:ErrorRetry; MX:1; A:1; 
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: f1ede4b9-df38-4e8b-032e-08d6bcc3e0dd
X-Microsoft-Antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600139)(711020)(4605104)(4709054)(2017052603328)(7193020); SRVR:VI1P189MB0336; 
X-MS-TrafficTypeDiagnostic: VI1P189MB0336:
X-Microsoft-Antispam-PRVS: <VI1P189MB03368609EC332FE2155ADD2D992D0@VI1P189MB0336.EURP189.PROD.OUTLOOK.COM>
X-Forefront-PRVS: 000227DA0C
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam-Message-Info: E0nMqkQ/Zv5vlSoIX6SJDKi2U8dTuQpVxjZPTFmYUEOVzYe40YQogxy8NJZdrfmznvmuQjDEecMbfz52fvobIde/qMx2l3MUHo0oDuTSpckx8k8kzOK0uj50DB1Fb0unBjhusPzY94K2BOKEEJZUQGhEk8xZ7jurOMy6qT8Rx50LmFA90cRccwzONgkXfJb9qI8e+EXLeYHDwNkfNc05USLngn55Wnooad6kXbvEPBA6tR0NlQlM6JSkBcz6DpbvmJVGMRDo4pmF/PkhlrKLf1EpzH5xn5UtQdIGeqS3NgQ4TU9uz9x1fgT6fd9gB3Te1+k8dw+PewWI2Wd8mbNp2BTfUVpGxPJ2hDi2U4osE4E6FLN61CvqTD8GAoYe8vynKBI3xDQYQUeJxIKlhYp3j7VEosbXalo7UJBVP7ZbxHk=
X-OriginatorOrg: ri.se
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 09 Apr 2019 08:17:59.5958 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: f1ede4b9-df38-4e8b-032e-08d6bcc3e0dd
X-MS-Exchange-CrossTenant-Id: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=5a9809cf-0bcb-413a-838a-09ecc40cc9e8; Ip=[194.218.146.197];  Helo=[mail.ri.se]
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1P189MB0336
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/sdwkNNXhoVo4ZAb1x_t6QRXL9AQ>
Subject: [Ace] Comments draft-palombini-ace-coap-pubsub-profile-04
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 09 Apr 2019 08:18:08 -0000

--GimfQP4beDf32ywuxKjPVFPuo7QhYc8vV
Content-Type: multipart/mixed; boundary="GdNLnjcWtGvLchXsJOBGQpL8miI6zd8wG";
 protected-headers="v1"
From: Marco Tiloca <marco.tiloca@ri.se>
To: ace@ietf.org
Message-ID: <7ccc6f5e-fdc2-95e2-b1b6-01f2708e0cd9@ri.se>
Subject: [Ace] Comments draft-palombini-ace-coap-pubsub-profile-04

--GdNLnjcWtGvLchXsJOBGQpL8miI6zd8wG
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: quoted-printable
Content-Language: en-US

Hi,

Please, find below some comments on this profile. I hope it helps!

Best,
/Marco

------------------------

[Abstract]

"This profile relies on transport layer or application layer security to
authorize the publisher to the broker" is due to the current profiles of
ACE, right? Otherwise, this can be (even) more general without
mentioning particular layers.


[Section 1]

Here the claimed scope is authorizing nodes, but it is actually also
about key provisioning (Section 3.1) and actual communication (Section 6.=
1).


[Section 2]

Here the claimed scope is protecting communication (in a broad sense),
while it can again mention also authorizing nodes (as per ACE) and key
provisioning (Section 3.1).

I believe that the paragraph "There are four phases, ..." and the
numbered list would read better if placed right before the final
paragraph "Note that AS1 and AS2 ..."


[Section 3.1]

I think this will also need a way for clients to agree with the AS2 on
the correct format of their own public key (if they don't know already),
similarly to what suggested in ace-key-groupcomm-oscore. The only type
of approach that would not work is the one embedded with a Token POST,
since that does not happen with AS2.

The text says: "... the AS2 is both the AS and the KDC, ... so the
Authorization Response and the Post Token message are not necessary" .
Shouldn't we then have the Token POST to the KDC defined as optional
already in ace-key-groupcomm ? See for instance its Figure 2.

In the Key Distribution Request, only one role can be indicated in
scope. What if a client wants to be both publisher and subscriber? This
seems allowed in Section 3.3 of core-coap-pubsub . Should a client
separately contact the AS2 multiple times?

In the Authorization Response, the 'profile' field can point at Section
8.1 where the profile value is defined.

In the Authorization Response, see above for the 'scope' field in case
of a client that wants two roles.


[Section 4]

Page 8, second bullet point, it can say "... protect the publication
end-to-end with the subscribers (see Section 6.1)".


[Section 5]

Page 9, it can say "... keying material to verify the publication
protected end-to-end with the publishers".


[Section 6]

It would be good to refer to core-coap-pubsub , and its usage of Observe
for subscriptions.

The text says: "The (F) message is ... , which is unprotected." ,
although Section 3 admitted the possibility of communication secured
also between Broker and Subscribers.


[Section 6.1]

In the unprotected headers of the COSE object, what is used as Partial IV=
?


[Section 8.2]

The value of 'Profile' should be "coap_pubsub' , consistently with the
name of the profile registered in Section 8.1.

--=20
Marco Tiloca
Ph.D., Senior Researcher

RISE Research Institutes of Sweden
Division ICT
Isafjordsgatan 22 / Kistag=C3=A5ngen 16
SE-164 40 Kista (Sweden)

Phone: +46 (0)70 60 46 501
https://www.ri.se



--GdNLnjcWtGvLchXsJOBGQpL8miI6zd8wG--

--GimfQP4beDf32ywuxKjPVFPuo7QhYc8vV
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: OpenPGP digital signature
Content-Disposition: attachment; filename="signature.asc"

-----BEGIN PGP SIGNATURE-----

iQEzBAEBCgAdFiEEOEo4cV326Z7GypVg7iZktA5Y2kMFAlysVTYACgkQ7iZktA5Y
2kOSOggAqdiVY9DrnhbfQnEoV0HMtOcZsQXYdTs1O3GFy7W7guA7FRUIOb+GQ2EP
6BA+OnYoO/22lEy5JlBQc8QPiECz/vk6yrQ8nkXK13o42JNEaPc9uR002okUhFO7
mMb+1AHwz5UvTBSs7By2aVNwbzPidrNA2HYSEN2GLLzyrDDr3oYw8mOZCtefZR2l
e3u/HaxnV0ucGHwuWgd+VvoTKM4AhxSdsrvvAo4qrkFV3A0faWVrR3nvo975RUS9
WwoPh1lSRmSZ2EvT6hLqJVX5ufVJ+M9f/F7zLJ7cmgkRnX7DOzxRztpc37ME2RSB
j1ItUizulX/zSPEU/x5RQsXu0Nm1Gw==
=cZWX
-----END PGP SIGNATURE-----

--GimfQP4beDf32ywuxKjPVFPuo7QhYc8vV--


From nobody Tue Apr  9 03:36:56 2019
Return-Path: <cigdem.sengul@gmail.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1B47E1202DD for <ace@ietfa.amsl.com>; Tue,  9 Apr 2019 03:36:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level: 
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6pdhPSXZGCfI for <ace@ietfa.amsl.com>; Tue,  9 Apr 2019 03:36:53 -0700 (PDT)
Received: from mail-qt1-x836.google.com (mail-qt1-x836.google.com [IPv6:2607:f8b0:4864:20::836]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D01341200D8 for <ace@ietf.org>; Tue,  9 Apr 2019 03:36:52 -0700 (PDT)
Received: by mail-qt1-x836.google.com with SMTP id v20so18999047qtv.12 for <ace@ietf.org>; Tue, 09 Apr 2019 03:36:52 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025;  h=mime-version:references:in-reply-to:from:date:message-id:subject:to;  bh=ZIUlHhCOxlWAcEvyIj4qnJ2xO80vT1MYS7usy9+XmyM=; b=l4ohCEEilcuojqhWf1fymdLfqnRX6r61NBKdgF5iYSNzJ4/A/POSUODidgw05NY0T/ SCEKyT2OZHBcWACYetYjd/AwT2RoJwcbfTURRdacWNNo+b1c1C85TgaYWc7vpAJDX2M3 O9H5yHrg1tw6ms0nnvHkSASadL+3K8Oz09CNQxKmqZvXFnPRvhLDf7Pevnc1eRXcV+Ot TShQPFBqHWzIs1b8j9DTNZLExCxTsf+PEY4NB9JYiYga9GwKSSui9zYG12KBV7mEMMSk y3hxWrxrPCBzNd0vp9p7WSNCwCzcT99tI88tnQd3lidEhljkQY16ymLjUdBnMJheyZCf FvmQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to; bh=ZIUlHhCOxlWAcEvyIj4qnJ2xO80vT1MYS7usy9+XmyM=; b=TH6VbYS0j5NmF//XJafZnBd8iIl6xj41JPPzV3DuzqVeuF2/CgFK5m/UCotRg763Y0 xVPb/HyO370pGd3br3yw4Jv2ks8wGYnyOy8d9w7sIvysAcT74S+6WQzaJfhqBsDdka/F 9g3bo1tcz3um957zrRigCKY7qoM/EkIOtl3T7qvvQPGHXZ7yZ9CrYSWHALrqzqZ+1AIX UdbBsmgWEm+eJtIBQLaGbL3dbf4E84y43471W4tIl9dT0ForBpO5WsH7VckP4sX4s6OE hdOFFwHKMnushxnY3LGhPZ+TRfgELInpua8H6CGIQ9B8VrnEnnlCEoHh+V1a49JSgDfR rOTQ==
X-Gm-Message-State: APjAAAUeDod/jGI6+B5XITQXBIsOKAwc/Q+mUuau6KUB9lWelAdibYqo JNLFy1AZcviXGzM2nwM1yEgkAREFSGmO/I4DorEaI4tEovp3gQ==
X-Google-Smtp-Source: APXvYqwPCbHCRIdgT2QnhVG3nPBpzjh7N48CHfIbxc3R32JuWqduc4F86bjZ0Q5Gew52iaiwsc2OFRKS4Q6GkgHKnz8=
X-Received: by 2002:ac8:37c7:: with SMTP id e7mr2427544qtc.46.1554806211751; Tue, 09 Apr 2019 03:36:51 -0700 (PDT)
MIME-Version: 1.0
References: <155458347611.21859.2064263186339722131.idtracker@ietfa.amsl.com> <4CA5F462-5E10-4626-A74E-C02FF3BD9255@nominet.uk>
In-Reply-To: <4CA5F462-5E10-4626-A74E-C02FF3BD9255@nominet.uk>
From: Cigdem Sengul <cigdem.sengul@gmail.com>
Date: Tue, 9 Apr 2019 11:36:40 +0100
Message-ID: <CAA7SwCPxPtQEk9MYUw+0hR3L8-511nq=k13RibRLUm=TwPwjcg@mail.gmail.com>
To: ace@ietf.org
Content-Type: multipart/alternative; boundary="000000000000f2322f05861687d5"
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/rWOTU_PZWZgDIfyYu-X-vJiDNCQ>
Subject: [Ace] Fwd: FW: New Version Notification for draft-sengul-ace-mqtt-tls-profile-04.txt
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 09 Apr 2019 10:36:55 -0000

--000000000000f2322f05861687d5
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

Hello ace,

We have updated the ace-mqtt-tls document:

Version 04 updates Version 03 as follows:

   o  Simplified protocol exchanges (e.g., eliminated alternatives) and
      added clarifications (e.g., PoP in CONNECT as discussed in WG meeting=
)

   o  Updated references to the ACE framework document

Please let us know if you have any questions.

Thanks,
--Cigdem

=EF=BB=BFOn 06/04/2019, 21:44, "internet-drafts@ietf.org" <internet-drafts@=
ietf.org>
wrote:


    A new version of I-D, draft-sengul-ace-mqtt-tls-profile-04.txt
    has been successfully submitted by Cigdem Sengul and posted to the
    IETF repository.

    Name:               draft-sengul-ace-mqtt-tls-profile
    Revision:   04
    Title:              MQTT-TLS profile of ACE
    Document date:      2019-04-06
    Group:              Individual Submission
    Pages:              23
    URL:
https://www.ietf.org/internet-drafts/draft-sengul-ace-mqtt-tls-profile-04.t=
xt
    Status:
https://datatracker.ietf.org/doc/draft-sengul-ace-mqtt-tls-profile/
    Htmlized:
https://tools.ietf.org/html/draft-sengul-ace-mqtt-tls-profile-04
    Htmlized:
https://datatracker.ietf.org/doc/html/draft-sengul-ace-mqtt-tls-profile
    Diff:
https://www.ietf.org/rfcdiff?url2=3Ddraft-sengul-ace-mqtt-tls-profile-04

    Abstract:
       This document specifies a profile for the ACE (Authentication and
       Authorization for Constrained Environments) to enable authorization
       in an MQTT-based publish-subscribe messaging system.  Proof-of-
       possession keys, bound to OAuth2.0 access tokens, are used to
       authenticate and authorize publisher and subscriber clients.  The
       protocol relies on TLS for confidentiality and server authentication=
.




    Please note that it may take a couple of minutes from the time of
submission
    until the htmlized version and diff are available at tools.ietf.org.

    The IETF Secretariat

--000000000000f2322f05861687d5
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr"><div dir=3D"ltr"><br><div class=3D"gmail_quote">Hello ace,=
=C2=A0</div><div class=3D"gmail_quote"><br></div><div class=3D"gmail_quote"=
>We have updated the ace-mqtt-tls document:<br></div><div class=3D"gmail_qu=
ote"><br></div><div class=3D"gmail_quote">Version 04 updates Version 03 as =
follows:</div><div class=3D"gmail_quote"><br></div><div class=3D"gmail_quot=
e">=C2=A0 =C2=A0o=C2=A0 Simplified protocol exchanges (e.g., eliminated alt=
ernatives) and</div><div class=3D"gmail_quote">=C2=A0 =C2=A0 =C2=A0 added c=
larifications (e.g., PoP in CONNECT as discussed in WG meeting)</div><div c=
lass=3D"gmail_quote"><br></div><div class=3D"gmail_quote">=C2=A0 =C2=A0o=C2=
=A0 Updated references to the ACE framework document=C2=A0<br><br></div><di=
v class=3D"gmail_quote">Please let us know if you have=C2=A0any questions.=
=C2=A0</div><div class=3D"gmail_quote"><br></div><div class=3D"gmail_quote"=
>Thanks,</div><div class=3D"gmail_quote">--Cigdem=C2=A0<br><br>=EF=BB=BFOn =
06/04/2019, 21:44, &quot;<a href=3D"mailto:internet-drafts@ietf.org" target=
=3D"_blank">internet-drafts@ietf.org</a>&quot; &lt;<a href=3D"mailto:intern=
et-drafts@ietf.org" target=3D"_blank">internet-drafts@ietf.org</a>&gt; wrot=
e:<br>
<br>
<br>=C2=A0 =C2=A0 A new version of I-D, draft-sengul-ace-mqtt-tls-profile-0=
4.txt<br>=C2=A0 =C2=A0 has been successfully submitted by Cigdem Sengul and=
 posted to the<br>=C2=A0 =C2=A0 IETF repository.<br>
<br>=C2=A0 =C2=A0 Name:=C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=
=A0draft-sengul-ace-mqtt-tls-profile<br>=C2=A0 =C2=A0 Revision:=C2=A0 =C2=
=A004<br>=C2=A0 =C2=A0 Title:=C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=
=A0 MQTT-TLS profile of ACE<br>=C2=A0 =C2=A0 Document date:=C2=A0 =C2=A0 =
=C2=A0 2019-04-06<br>=C2=A0 =C2=A0 Group:=C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0=
 =C2=A0 =C2=A0 Individual Submission<br>=C2=A0 =C2=A0 Pages:=C2=A0 =C2=A0 =
=C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 23<br>=C2=A0 =C2=A0 URL:=C2=A0 =C2=A0 =
=C2=A0 =C2=A0 =C2=A0 =C2=A0 <a href=3D"https://www.ietf.org/internet-drafts=
/draft-sengul-ace-mqtt-tls-profile-04.txt" rel=3D"noreferrer" target=3D"_bl=
ank">https://www.ietf.org/internet-drafts/draft-sengul-ace-mqtt-tls-profile=
-04.txt</a><br>=C2=A0 =C2=A0 Status:=C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0<a hr=
ef=3D"https://datatracker.ietf.org/doc/draft-sengul-ace-mqtt-tls-profile/" =
rel=3D"noreferrer" target=3D"_blank">https://datatracker.ietf.org/doc/draft=
-sengul-ace-mqtt-tls-profile/</a><br>=C2=A0 =C2=A0 Htmlized:=C2=A0 =C2=A0 =
=C2=A0 =C2=A0<a href=3D"https://tools.ietf.org/html/draft-sengul-ace-mqtt-t=
ls-profile-04" rel=3D"noreferrer" target=3D"_blank">https://tools.ietf.org/=
html/draft-sengul-ace-mqtt-tls-profile-04</a><br>=C2=A0 =C2=A0 Htmlized:=C2=
=A0 =C2=A0 =C2=A0 =C2=A0<a href=3D"https://datatracker.ietf.org/doc/html/dr=
aft-sengul-ace-mqtt-tls-profile" rel=3D"noreferrer" target=3D"_blank">https=
://datatracker.ietf.org/doc/html/draft-sengul-ace-mqtt-tls-profile</a><br>=
=C2=A0 =C2=A0 Diff:=C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0 =C2=A0<a href=3D"http=
s://www.ietf.org/rfcdiff?url2=3Ddraft-sengul-ace-mqtt-tls-profile-04" rel=
=3D"noreferrer" target=3D"_blank">https://www.ietf.org/rfcdiff?url2=3Ddraft=
-sengul-ace-mqtt-tls-profile-04</a><br>
<br>=C2=A0 =C2=A0 Abstract:<br>=C2=A0 =C2=A0 =C2=A0 =C2=A0This document spe=
cifies a profile for the ACE (Authentication and<br>=C2=A0 =C2=A0 =C2=A0 =
=C2=A0Authorization for Constrained Environments) to enable authorization<b=
r>=C2=A0 =C2=A0 =C2=A0 =C2=A0in an MQTT-based publish-subscribe messaging s=
ystem.=C2=A0 Proof-of-<br>=C2=A0 =C2=A0 =C2=A0 =C2=A0possession keys, bound=
 to OAuth2.0 access tokens, are used to<br>=C2=A0 =C2=A0 =C2=A0 =C2=A0authe=
nticate and authorize publisher and subscriber clients.=C2=A0 The<br>=C2=A0=
 =C2=A0 =C2=A0 =C2=A0protocol relies on TLS for confidentiality and server =
authentication.<br>
<br>
<br>
<br>
<br>=C2=A0 =C2=A0 Please note that it may take a couple of minutes from the=
 time of submission<br>=C2=A0 =C2=A0 until the htmlized version and diff ar=
e available at <a href=3D"http://tools.ietf.org" rel=3D"noreferrer" target=
=3D"_blank">tools.ietf.org</a>.<br>
<br>=C2=A0 =C2=A0 The IETF Secretariat<br>
<br>
<br>
<br>
</div></div></div>

--000000000000f2322f05861687d5--


From nobody Fri Apr 12 09:46:21 2019
Return-Path: <internet-drafts@ietf.org>
X-Original-To: ace@ietf.org
Delivered-To: ace@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id E8CAD120021; Fri, 12 Apr 2019 09:46:11 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: internet-drafts@ietf.org
To: <i-d-announce@ietf.org>
Cc: ace@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 6.95.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: ace@ietf.org
Message-ID: <155508757190.16703.9804696284167376773@ietfa.amsl.com>
Date: Fri, 12 Apr 2019 09:46:11 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/2JkQYDgqcyi5Sjj7CyzDjt8w2wI>
Subject: [Ace] I-D Action: draft-ietf-ace-dtls-authorize-08.txt
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 12 Apr 2019 16:46:12 -0000

A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Authentication and Authorization for Constrained Environments WG of the IETF.

        Title           : Datagram Transport Layer Security (DTLS) Profile for Authentication and Authorization for Constrained Environments (ACE)
        Authors         : Stefanie Gerdes
                          Olaf Bergmann
                          Carsten Bormann
                          Göran Selander
                          Ludwig Seitz
	Filename        : draft-ietf-ace-dtls-authorize-08.txt
	Pages           : 21
	Date            : 2019-04-12

Abstract:
   This specification defines a profile of the ACE framework that allows
   constrained servers to delegate client authentication and
   authorization.  The protocol relies on DTLS for communication
   security between entities in a constrained network using either raw
   public keys or pre-shared keys.  A resource-constrained server can
   use this protocol to delegate management of authorization information
   to a trusted host with less severe limitations regarding processing
   power and memory.


The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-ace-dtls-authorize/

There are also htmlized versions available at:
https://tools.ietf.org/html/draft-ietf-ace-dtls-authorize-08
https://datatracker.ietf.org/doc/html/draft-ietf-ace-dtls-authorize-08

A diff from the previous version is available at:
https://www.ietf.org/rfcdiff?url2=draft-ietf-ace-dtls-authorize-08


Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org.

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/


From nobody Fri Apr 12 09:49:34 2019
Return-Path: <bergmann@tzi.org>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F25031202E5 for <ace@ietfa.amsl.com>; Fri, 12 Apr 2019 09:49:32 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.199
X-Spam-Level: 
X-Spam-Status: No, score=-4.199 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QlS7qO6lVpyE for <ace@ietfa.amsl.com>; Fri, 12 Apr 2019 09:49:31 -0700 (PDT)
Received: from smtp.uni-bremen.de (gabriel-vm-2.zfn.uni-bremen.de [134.102.50.17]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 927DA120072 for <ace@ietf.org>; Fri, 12 Apr 2019 09:49:31 -0700 (PDT)
Received: from wangari.tzi.org (p508A471C.dip0.t-ipconnect.de [80.138.71.28]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.uni-bremen.de (Postfix) with ESMTPSA id 44gkQ15LMdzysT for <ace@ietf.org>; Fri, 12 Apr 2019 18:49:29 +0200 (CEST)
From: Olaf Bergmann <bergmann@tzi.org>
To: ace@ietf.org
References: <155508757190.16703.9804696284167376773@ietfa.amsl.com>
Date: Fri, 12 Apr 2019 18:49:28 +0200
In-Reply-To: <155508757190.16703.9804696284167376773@ietfa.amsl.com> (internet-drafts's message of "Fri, 12 Apr 2019 09:46:11 -0700")
Message-ID: <87wojz5ftz.fsf@wangari>
User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/26.1 (gnu/linux)
MIME-Version: 1.0
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/lNV4BfJ_p_B1LwDky20NjKkjmGM>
Subject: Re: [Ace] I-D Action: draft-ietf-ace-dtls-authorize-08.txt
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 12 Apr 2019 16:49:33 -0000

Dear ACE mailing list,

we have now submitted version -08 of the DTLS profile document for
ACE. The only changes are CBOR example syntax fixes and typos.

The authors think that the document is ready for publication.

Gr=C3=BC=C3=9Fe
Olaf

internet-drafts@ietf.org writes:

> A New Internet-Draft is available from the on-line Internet-Drafts direct=
ories.
> This draft is a work item of the Authentication and Authorization for Con=
strained Environments WG of the IETF.
>
>         Title           : Datagram Transport Layer Security (DTLS) Profil=
e for Authentication and Authorization for Constrained Environments (ACE)
>         Authors         : Stefanie Gerdes
>                           Olaf Bergmann
>                           Carsten Bormann
>                           G=C3=B6ran Selander
>                           Ludwig Seitz
> 	Filename        : draft-ietf-ace-dtls-authorize-08.txt
> 	Pages           : 21
> 	Date            : 2019-04-12


From nobody Sat Apr 13 07:46:38 2019
Return-Path: <hartke@projectcool.de>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2F51D1201CF; Sat, 13 Apr 2019 07:46:36 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level: 
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id DrFc88bBgp8m; Sat, 13 Apr 2019 07:46:34 -0700 (PDT)
Received: from wp382.webpack.hosteurope.de (wp382.webpack.hosteurope.de [IPv6:2a01:488:42:1000:50ed:8597::]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CD7C11201B8; Sat, 13 Apr 2019 07:46:30 -0700 (PDT)
Received: from mail-qt1-f178.google.com ([209.85.160.178]); authenticated by wp382.webpack.hosteurope.de running ExIM with esmtpsa (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) id 1hFJvG-0007sV-10; Sat, 13 Apr 2019 16:46:26 +0200
Received: by mail-qt1-f178.google.com with SMTP id k2so14595505qtm.1; Sat, 13 Apr 2019 07:46:25 -0700 (PDT)
X-Gm-Message-State: APjAAAUDlUxpbMNyCBwVOaCFYwH/vu5s23jFXDvXcPpkYs+hXz5C/GY5 POYVyeG0Qv/0dxCW2OCAuQ0MMJlA+1Xerg5NPaI=
X-Google-Smtp-Source: APXvYqxMUQ6S1XdElMSNLcKnMBrCyFyndiaMqrEiVVvuzDqs1JxeyXZdtBTZ0f7h8ipnl0H5mj49heAjoRUIxghOEaI=
X-Received: by 2002:ac8:2a54:: with SMTP id l20mr52037829qtl.193.1555166784978;  Sat, 13 Apr 2019 07:46:24 -0700 (PDT)
MIME-Version: 1.0
From: Klaus Hartke <hartke@projectcool.de>
Date: Sat, 13 Apr 2019 16:45:49 +0200
X-Gmail-Original-Message-ID: <CAAzbHvZbJCkj8Y=HegfFyGbXsQsTdxkr+YPHM+7Fu=t=RuU96Q@mail.gmail.com>
Message-ID: <CAAzbHvZbJCkj8Y=HegfFyGbXsQsTdxkr+YPHM+7Fu=t=RuU96Q@mail.gmail.com>
To: cose@ietf.org, "core@ietf.org WG" <core@ietf.org>, cbor@ietf.org, Ace@ietf.org
Content-Type: text/plain; charset="UTF-8"
X-bounce-key: webpack.hosteurope.de; hartke@projectcool.de; 1555166793; 96846234; 
X-HE-SMSGID: 1hFJvG-0007sV-10
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/BXxx5cleHAYR-IUwqEckry0fdqM>
Subject: [Ace] Doodle poll for virtual interims
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 13 Apr 2019 14:46:36 -0000

We are looking for a new time slot for the CoRE/CBOR/COSE virtual
interims until IETF 105.

Proposed options:

7am PDT / 10am EDT / 4pm CEST / 11pm JST
8am PDT / 11am EDT / 5pm CEST / 12midn JST
9am PDT / 12noon EDT / 6pm CEST / 1am JST
10am PDT / 1pm EDT / 7pm CEST / 2am JST

The interims are scheduled to be weekly, alternating between CoRE and
CBOR/COSE (and a dash of ACE).

Please use this doodle poll to indicate your preference:
https://doodle.com/poll/ve7rnyareri2kqer

Klaus


From nobody Mon Apr 15 08:44:30 2019
Return-Path: <francesca.palombini@ericsson.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DF4D8120382; Mon, 15 Apr 2019 08:44:20 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level: 
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id f-KUr6A-iG4c; Mon, 15 Apr 2019 08:44:18 -0700 (PDT)
Received: from EUR03-DB5-obe.outbound.protection.outlook.com (mail-eopbgr40072.outbound.protection.outlook.com [40.107.4.72]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F13D912001B; Mon, 15 Apr 2019 08:44:17 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=5dK1KGM6ccgp1ccVmzgQVP2jCMTUmZCcbB3n2MKu81Y=; b=Jf/o4uryFz29y+5le8OzhYGfwMgtZf1zccV+fOkddGUXOrv3jDLWajx7+xxh2FO8A5rDJvgQSIbQhq+VTKbWLJ4eNGVs1exkeCSW3lFlPoJyyMDPtNaOo2pu+8Wo1VxN7ba4My8U6iDZNdcT7YV83GZSpIrSiubOBb8IbsaAs3o=
Received: from HE1PR0701MB2746.eurprd07.prod.outlook.com (10.168.185.17) by HE1PR0701MB2874.eurprd07.prod.outlook.com (10.168.92.135) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1813.9; Mon, 15 Apr 2019 15:44:14 +0000
Received: from HE1PR0701MB2746.eurprd07.prod.outlook.com ([fe80::2489:87b6:bfd8:727d]) by HE1PR0701MB2746.eurprd07.prod.outlook.com ([fe80::2489:87b6:bfd8:727d%6]) with mapi id 15.20.1813.009; Mon, 15 Apr 2019 15:44:14 +0000
From: Francesca Palombini <francesca.palombini@ericsson.com>
To: "cose@ietf.org" <cose@ietf.org>, "core@ietf.org WG" <core@ietf.org>, "cbor@ietf.org" <cbor@ietf.org>, "Ace@ietf.org" <Ace@ietf.org>
Thread-Topic: [Ace] Doodle poll for virtual interims
Thread-Index: AQHU8gfB1xzeYR7XSk63xG16DiVzHaY9YBcv
Date: Mon, 15 Apr 2019 15:44:14 +0000
Message-ID: <0A9FF18D-5A9F-483A-B6CB-871CD25626F5@ericsson.com>
References: <CAAzbHvZbJCkj8Y=HegfFyGbXsQsTdxkr+YPHM+7Fu=t=RuU96Q@mail.gmail.com>
In-Reply-To: <CAAzbHvZbJCkj8Y=HegfFyGbXsQsTdxkr+YPHM+7Fu=t=RuU96Q@mail.gmail.com>
Accept-Language: en-GB, en-US
Content-Language: en-GB
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
authentication-results: spf=none (sender IP is ) smtp.mailfrom=francesca.palombini@ericsson.com; 
x-originating-ip: [158.174.219.143]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 5268253e-9e9b-402f-c4fa-08d6c1b93689
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(5600140)(711020)(4605104)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(2017052603328)(7193020); SRVR:HE1PR0701MB2874; 
x-ms-traffictypediagnostic: HE1PR0701MB2874:
x-ms-exchange-purlcount: 2
x-microsoft-antispam-prvs: <HE1PR0701MB2874A182CC5F412A72DD9CA5982B0@HE1PR0701MB2874.eurprd07.prod.outlook.com>
x-forefront-prvs: 000800954F
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(39860400002)(366004)(376002)(136003)(346002)(396003)(199004)(189003)(5660300002)(26005)(76176011)(97736004)(186003)(25786009)(8676002)(305945005)(102836004)(6246003)(53546011)(6506007)(110136005)(236005)(316002)(6306002)(450100002)(106356001)(6512007)(14454004)(53936002)(33656002)(105586002)(54896002)(2906002)(7736002)(66066001)(229853002)(6486002)(82746002)(2501003)(256004)(86362001)(606006)(966005)(81156014)(476003)(81166006)(11346002)(446003)(2616005)(68736007)(486006)(2201001)(44832011)(8936002)(36756003)(71190400001)(71200400001)(83716004)(478600001)(99286004)(6436002)(6116002)(3846002); DIR:OUT; SFP:1101; SCL:1; SRVR:HE1PR0701MB2874; H:HE1PR0701MB2746.eurprd07.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1; 
received-spf: None (protection.outlook.com: ericsson.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: 07xdM3ITsqNHly274pKCFl3HtDlc0PRK4vMImEiQmDkABrcz5Hmc2dFyIRhSD6YZIUTR8t6WrX2Kr8Y7C/H1VMx2NbhURMwSKeMoF9rVB6Vu+Ao+CZ/3idUFGvu8uCmGmEuHs+B8e7qCa1CBJchdlhwqlMNLReXiXgt4qL//8sMHn1koEa4+VujjoGEtO9vl36o+KFM29wcZrpwqu6DOvGYlbEzYhRVurFQAjVPR2sqrCgG7KJ//Q2fAqZe7vCM5iQ+cMWpUNj4z5PIQcrwcBXRNuC/1RDzTEV3f1gCsF3jvNYcqx17WcJm71oRty6SDxo/RW9+IZVDJKYvno5j5CB7NrhFL1aKgW0PzAY5LLgJOMZQSVzPYee1X/1nHKAw7qWUcNSqh/g+ijAIBLDLKWMVFmGaEwIDDhBnVRouvNvk=
Content-Type: multipart/alternative; boundary="_000_0A9FF18D5A9F483AB6CB871CD25626F5ericssoncom_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 5268253e-9e9b-402f-c4fa-08d6c1b93689
X-MS-Exchange-CrossTenant-originalarrivaltime: 15 Apr 2019 15:44:14.5491 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0701MB2874
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/dSvN56VpTdKvT3DJW6BpwN2yZkg>
Subject: Re: [Ace] Doodle poll for virtual interims
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 15 Apr 2019 15:44:21 -0000

--_000_0A9FF18D5A9F483AB6CB871CD25626F5ericssoncom_
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64

SGksDQoNClBsZWFzZSBlbnRlciB5b3VyIGF2YWlsYWJpbGl0eSBieSB0aGlzIEZyaWRheSwgQXBy
aWwgMTl0aDogaHR0cHM6Ly9kb29kbGUuY29tL3BvbGwvdmU3cm55YXJlcmkya3Flcg0KDQpBcyBL
bGF1cyBzYWlkLCB0aGUgdGltZSBzbG90cyBhcmUgdG8gY2hvc2UgZm9yIHdlZWtseSBtZWV0aW5n
cywgc28gZGlzcmVnYXJkIHRoZSBleGFjdCBkYXRlcyBpbiB0aGUgZG9vZGxlIHBvbGwsIGJ1dCBv
bmx5IGNvbnNpZGVyIHRoZSBkYXkgb2YgdGhlIHdlZWsuDQoNClRoZSBnb2FsIGlzIHRvIHJlc3Rh
cnQgdGhlIG1lZXRpbmdzIGJ5IHRoZSAybmQgd2VlayBvZiBNYXksIGFuZCB3ZSBuZWVkIGEgY291
cGxlIG9mIHdlZWtzIHRvIHNldCBpdCB1cCB3aXRoIHRoZSBTZWNyZXRhcmlhdC4NCg0KQWxzbyBu
b3RlIHRoYXQgdGhlIHRpbWVzbG90cyBhcmUgOTAgbWludXRlcyBsb25nLCB0byBhbGxvdyBmb3Ig
bG9uZ2VyIGludGVyaW0gdGltZSBpZiBuZWVkZWQuDQoNCg0KVGhhbmtzLA0KRnJhbmNlc2NhDQoN
Cg0KT24gMTMgQXByaWwgMjAxOSBhdCAxNjo0NzowMiBDRVNULCBLbGF1cyBIYXJ0a2UgPGhhcnRr
ZUBwcm9qZWN0Y29vbC5kZT4gd3JvdGU6DQpXZSBhcmUgbG9va2luZyBmb3IgYSBuZXcgdGltZSBz
bG90IGZvciB0aGUgQ29SRS9DQk9SL0NPU0UgdmlydHVhbA0KaW50ZXJpbXMgdW50aWwgSUVURiAx
MDUuDQoNClByb3Bvc2VkIG9wdGlvbnM6DQoNCjdhbSBQRFQgLyAxMGFtIEVEVCAvIDRwbSBDRVNU
IC8gMTFwbSBKU1QNCjhhbSBQRFQgLyAxMWFtIEVEVCAvIDVwbSBDRVNUIC8gMTJtaWRuIEpTVA0K
OWFtIFBEVCAvIDEybm9vbiBFRFQgLyA2cG0gQ0VTVCAvIDFhbSBKU1QNCjEwYW0gUERUIC8gMXBt
IEVEVCAvIDdwbSBDRVNUIC8gMmFtIEpTVA0KDQpUaGUgaW50ZXJpbXMgYXJlIHNjaGVkdWxlZCB0
byBiZSB3ZWVrbHksIGFsdGVybmF0aW5nIGJldHdlZW4gQ29SRSBhbmQNCkNCT1IvQ09TRSAoYW5k
IGEgZGFzaCBvZiBBQ0UpLg0KDQpQbGVhc2UgdXNlIHRoaXMgZG9vZGxlIHBvbGwgdG8gaW5kaWNh
dGUgeW91ciBwcmVmZXJlbmNlOg0KaHR0cHM6Ly9kb29kbGUuY29tL3BvbGwvdmU3cm55YXJlcmky
a3Flcg0KDQpLbGF1cw0KDQpfX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f
X19fX19fXw0KQWNlIG1haWxpbmcgbGlzdA0KQWNlQGlldGYub3JnDQpodHRwczovL3d3dy5pZXRm
Lm9yZy9tYWlsbWFuL2xpc3RpbmZvL2FjZQ0K

--_000_0A9FF18D5A9F483AB6CB871CD25626F5ericssoncom_
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: base64

PGh0bWw+DQo8aGVhZD4NCjxtZXRhIGh0dHAtZXF1aXY9IkNvbnRlbnQtVHlwZSIgY29udGVudD0i
dGV4dC9odG1sOyBjaGFyc2V0PXV0Zi04Ij4NCjwvaGVhZD4NCjxib2R5Pg0KPGRpdiBkaXI9Imx0
ciI+SGksDQo8ZGl2IGRpcj0ibHRyIj48YnI+DQo8L2Rpdj4NCjxkaXYgZGlyPSJsdHIiPlBsZWFz
ZSBlbnRlciB5b3VyIGF2YWlsYWJpbGl0eSBieSB0aGlzIEZyaWRheSwgQXByaWwgMTl0aDombmJz
cDs8c3Bhbj5odHRwczovL2Rvb2RsZS5jb20vcG9sbC92ZTdybnlhcmVyaTJrcWVyJm5ic3A7PC9z
cGFuPjwvZGl2Pg0KPGRpdiBkaXI9Imx0ciI+PGJyPg0KPC9kaXY+DQo8ZGl2IGRpcj0ibHRyIj5B
cyBLbGF1cyBzYWlkLCB0aGUgdGltZSBzbG90cyBhcmUgdG8gY2hvc2UgZm9yIHdlZWtseSBtZWV0
aW5ncywgc28gZGlzcmVnYXJkIHRoZSBleGFjdCBkYXRlcyBpbiB0aGUgZG9vZGxlIHBvbGwsIGJ1
dCBvbmx5IGNvbnNpZGVyIHRoZSBkYXkgb2YgdGhlIHdlZWsuPC9kaXY+DQo8ZGl2IGRpcj0ibHRy
Ij48YnI+DQo8L2Rpdj4NCjxkaXYgZGlyPSJsdHIiPlRoZSBnb2FsIGlzIHRvIHJlc3RhcnQgdGhl
IG1lZXRpbmdzIGJ5IHRoZSAybmQgd2VlayBvZiBNYXksIGFuZCB3ZSBuZWVkIGEgY291cGxlIG9m
IHdlZWtzIHRvIHNldCBpdCB1cCB3aXRoIHRoZSBTZWNyZXRhcmlhdC48YnI+DQo8L2Rpdj4NCjxk
aXYgZGlyPSJsdHIiPjxicj4NCjwvZGl2Pg0KPGRpdiBkaXI9Imx0ciI+QWxzbyBub3RlIHRoYXQg
dGhlIHRpbWVzbG90cyBhcmUgOTAgbWludXRlcyBsb25nLCB0byBhbGxvdyBmb3IgbG9uZ2VyIGlu
dGVyaW0gdGltZSBpZiBuZWVkZWQuPC9kaXY+DQo8L2Rpdj4NCjxzcGFuIGlkPSJkcmFmdC1icmVh
ayI+PC9zcGFuPjxicj4NCjxicj4NClRoYW5rcywNCjxkaXYgZGlyPSJsdHIiPkZyYW5jZXNjYTwv
ZGl2Pg0KPHNwYW4gaWQ9ImRyYWZ0LWJyZWFrIj48L3NwYW4+PGJyPg0KPGJyPg0KPGRpdj4NCjxk
aXYgY2xhc3M9Im51bGwiIGRpcj0iYXV0byI+T24gMTMgQXByaWwgMjAxOSBhdCAxNjo0NzowMiBD
RVNULCBLbGF1cyBIYXJ0a2UgJmx0O2hhcnRrZUBwcm9qZWN0Y29vbC5kZSZndDsgd3JvdGU6PGJy
IGNsYXNzPSJudWxsIj4NCjwvZGl2Pg0KPGJsb2NrcXVvdGUgdHlwZT0iY2l0ZSIgc3R5bGU9ImJv
cmRlci1sZWZ0LXN0eWxlOnNvbGlkO2JvcmRlci13aWR0aDoxcHg7bWFyZ2luLWxlZnQ6MHB4O3Bh
ZGRpbmctbGVmdDoxMHB4OyIgY2xhc3M9Im51bGwiPg0KPGRpdiBjbGFzcz0ibnVsbCIgZGlyPSJh
dXRvIj4NCjxkaXYgY2xhc3M9Im51bGwiPg0KPG1ldGEgbmFtZT0iR2VuZXJhdG9yIiBjb250ZW50
PSJNaWNyb3NvZnQgRXhjaGFuZ2UgU2VydmVyIiBjbGFzcz0ibnVsbCI+DQo8IS0tIGNvbnZlcnRl
ZCBmcm9tIHRleHQgLS0+DQo8ZGl2IGNsYXNzPSJudWxsIj48Zm9udCBzaXplPSIyIiBjbGFzcz0i
bnVsbCI+PHNwYW4gc3R5bGU9ImZvbnQtc2l6ZToxMXB0OyIgY2xhc3M9Im51bGwiPg0KPGRpdiBu
b3A9IlBsYWluVGV4dCIgY2xhc3M9Im51bGwiPldlIGFyZSBsb29raW5nIGZvciBhIG5ldyB0aW1l
IHNsb3QgZm9yIHRoZSBDb1JFL0NCT1IvQ09TRSB2aXJ0dWFsPGJyIGNsYXNzPSJudWxsIj4NCmlu
dGVyaW1zIHVudGlsIElFVEYgMTA1LjxiciBjbGFzcz0ibnVsbCI+DQo8YnIgY2xhc3M9Im51bGwi
Pg0KUHJvcG9zZWQgb3B0aW9uczo8YnIgY2xhc3M9Im51bGwiPg0KPGJyIGNsYXNzPSJudWxsIj4N
CjdhbSBQRFQgLyAxMGFtIEVEVCAvIDRwbSBDRVNUIC8gMTFwbSBKU1Q8YnIgY2xhc3M9Im51bGwi
Pg0KOGFtIFBEVCAvIDExYW0gRURUIC8gNXBtIENFU1QgLyAxMm1pZG4gSlNUPGJyIGNsYXNzPSJu
dWxsIj4NCjlhbSBQRFQgLyAxMm5vb24gRURUIC8gNnBtIENFU1QgLyAxYW0gSlNUPGJyIGNsYXNz
PSJudWxsIj4NCjEwYW0gUERUIC8gMXBtIEVEVCAvIDdwbSBDRVNUIC8gMmFtIEpTVDxiciBjbGFz
cz0ibnVsbCI+DQo8YnIgY2xhc3M9Im51bGwiPg0KVGhlIGludGVyaW1zIGFyZSBzY2hlZHVsZWQg
dG8gYmUgd2Vla2x5LCBhbHRlcm5hdGluZyBiZXR3ZWVuIENvUkUgYW5kPGJyIGNsYXNzPSJudWxs
Ij4NCkNCT1IvQ09TRSAoYW5kIGEgZGFzaCBvZiBBQ0UpLjxiciBjbGFzcz0ibnVsbCI+DQo8YnIg
Y2xhc3M9Im51bGwiPg0KUGxlYXNlIHVzZSB0aGlzIGRvb2RsZSBwb2xsIHRvIGluZGljYXRlIHlv
dXIgcHJlZmVyZW5jZTo8YnIgY2xhc3M9Im51bGwiPg0KPGEgaHJlZj0iaHR0cHM6Ly9kb29kbGUu
Y29tL3BvbGwvdmU3cm55YXJlcmkya3FlciIgdGFyZ2V0PSJfQkxBTksiIGNsYXNzPSJudWxsIj5o
dHRwczovL2Rvb2RsZS5jb20vcG9sbC92ZTdybnlhcmVyaTJrcWVyPC9hPjxiciBjbGFzcz0ibnVs
bCI+DQo8YnIgY2xhc3M9Im51bGwiPg0KS2xhdXM8YnIgY2xhc3M9Im51bGwiPg0KPGJyIGNsYXNz
PSJudWxsIj4NCl9fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f
PGJyIGNsYXNzPSJudWxsIj4NCkFjZSBtYWlsaW5nIGxpc3Q8YnIgY2xhc3M9Im51bGwiPg0KQWNl
QGlldGYub3JnPGJyIGNsYXNzPSJudWxsIj4NCjxhIGhyZWY9Imh0dHBzOi8vd3d3LmlldGYub3Jn
L21haWxtYW4vbGlzdGluZm8vYWNlIiB0YXJnZXQ9Il9CTEFOSyIgY2xhc3M9Im51bGwiPmh0dHBz
Oi8vd3d3LmlldGYub3JnL21haWxtYW4vbGlzdGluZm8vYWNlPC9hPjxiciBjbGFzcz0ibnVsbCI+
DQo8L2Rpdj4NCjwvc3Bhbj48L2ZvbnQ+PC9kaXY+DQo8L2Rpdj4NCjwvZGl2Pg0KPC9ibG9ja3F1
b3RlPg0KPC9kaXY+DQo8L2JvZHk+DQo8L2h0bWw+DQo=

--_000_0A9FF18D5A9F483AB6CB871CD25626F5ericssoncom_--


From nobody Mon Apr 22 10:32:17 2019
Return-Path: <ietf@augustcellars.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 82B5E120044 for <ace@ietfa.amsl.com>; Mon, 22 Apr 2019 10:32:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level: 
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EYuQyjXhSEAQ for <ace@ietfa.amsl.com>; Mon, 22 Apr 2019 10:32:13 -0700 (PDT)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3F657120108 for <ace@ietf.org>; Mon, 22 Apr 2019 10:32:13 -0700 (PDT)
Received: from Jude (73.180.8.170) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Mon, 22 Apr 2019 10:32:04 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: <ace@ietf.org>
Date: Mon, 22 Apr 2019 10:32:02 -0700
Message-ID: <00fc01d4f931$4dc225b0$e9467110$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AdT5MOoRmSih6TN6QsqUY7eFmxsJIA==
Content-Language: en-us
X-Originating-IP: [73.180.8.170]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/oV1acnYO4e7lJx7WzryNQ-lnFPI>
Subject: [Ace] Adoption call for draft-sengul-ace-mqtt-tls-profile
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 22 Apr 2019 17:32:15 -0000

At the meeting in Prague there was some discussion about adopting
https://datatracker.ietf.org/doc/draft-sengul-ace-mqtt-tls-profile/ as a
working group document.  The overall sense of the room was that this should
be done.  This message starts a 2 week adoption call for the document.  If
you have strong feelings one way or the other about adopting this document
please let us know.  Reasons for your position are appreciated.

ACE Chairs

Jim & Daniel



From nobody Mon Apr 22 10:34:48 2019
Return-Path: <ietf-secretariat-reply@ietf.org>
X-Original-To: ace@ietf.org
Delivered-To: ace@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id C2365120332; Mon, 22 Apr 2019 10:34:41 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: IETF Secretariat <ietf-secretariat-reply@ietf.org>
To: <draft-sengul-ace-mqtt-tls-profile@ietf.org>, <ace-chairs@ietf.org>, <ace@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 6.95.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <155595448178.21182.16998444844083888459.idtracker@ietfa.amsl.com>
Date: Mon, 22 Apr 2019 10:34:41 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/M_7D0Hcc0H3hJBG0v7BFhWkn3qk>
Subject: [Ace] The ACE WG has placed draft-sengul-ace-mqtt-tls-profile in state "Call For Adoption By WG Issued"
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 22 Apr 2019 17:34:48 -0000

The ACE WG has placed draft-sengul-ace-mqtt-tls-profile in state
Call For Adoption By WG Issued (entered by Jim Schaad)

The document is available at
https://datatracker.ietf.org/doc/draft-sengul-ace-mqtt-tls-profile/


From nobody Mon Apr 22 23:38:28 2019
Return-Path: <ludwig.seitz@ri.se>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 117961200CE for <ace@ietfa.amsl.com>; Mon, 22 Apr 2019 23:38:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level: 
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=risecloud.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vMZZFP6zpsu3 for <ace@ietfa.amsl.com>; Mon, 22 Apr 2019 23:38:21 -0700 (PDT)
Received: from EUR01-DB5-obe.outbound.protection.outlook.com (mail-eopbgr150041.outbound.protection.outlook.com [40.107.15.41]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7D35F12006F for <ace@ietf.org>; Mon, 22 Apr 2019 23:38:20 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=RISEcloud.onmicrosoft.com; s=selector1-ri-se; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=bDZZwvjSBT1++f2281fbhuLxWmqk1LdHMps2N/Lb8t8=; b=fQiob8iRaPFFRzpSGelgDj6G6DuIb2DAXM+sAfsF4PbyAkBuPvDNyK72mWf+ERkrsMlqEIOhsJWgvfFFJ9DaqyL/4Zg6+xbYTpARymltkg/+1JmlFQCF4xoNm5JCw6xaKadGW4E0YvH2ZSZ6yllhGmGdM/ln+tIlPYTjxyutMVs=
Received: from HE1P18901CA0002.EURP189.PROD.OUTLOOK.COM (2603:10a6:3:8b::12) by DB6P189MB0325.EURP189.PROD.OUTLOOK.COM (2603:10a6:6:31::29) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1813.16; Tue, 23 Apr 2019 06:38:17 +0000
Received: from VE1EUR02FT052.eop-EUR02.prod.protection.outlook.com (2a01:111:f400:7e06::206) by HE1P18901CA0002.outlook.office365.com (2603:10a6:3:8b::12) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.20.1835.12 via Frontend Transport; Tue, 23 Apr 2019 06:38:16 +0000
Authentication-Results: spf=pass (sender IP is 194.218.146.197) smtp.mailfrom=ri.se; ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=bestguesspass action=none header.from=ri.se;
Received-SPF: Pass (protection.outlook.com: domain of ri.se designates 194.218.146.197 as permitted sender) receiver=protection.outlook.com; client-ip=194.218.146.197; helo=mail.ri.se;
Received: from mail.ri.se (194.218.146.197) by VE1EUR02FT052.mail.protection.outlook.com (10.152.13.146) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256) id 15.20.1771.16 via Frontend Transport; Tue, 23 Apr 2019 06:38:16 +0000
Received: from [10.112.134.122] (10.100.0.158) by sp-mail-2.sp.se (10.100.0.162) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1713.5; Tue, 23 Apr 2019 08:38:16 +0200
To: <ace@ietf.org>
References: <00fc01d4f931$4dc225b0$e9467110$@augustcellars.com>
From: Ludwig Seitz <ludwig.seitz@ri.se>
Message-ID: <174d13cf-a48d-5e66-fbcb-0b05c1207790@ri.se>
Date: Tue, 23 Apr 2019 08:38:06 +0200
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.6.1
MIME-Version: 1.0
In-Reply-To: <00fc01d4f931$4dc225b0$e9467110$@augustcellars.com>
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg=sha-256; boundary="------------ms080602030609010806010008"
X-Originating-IP: [10.100.0.158]
X-ClientProxiedBy: sp-mail-2.sp.se (10.100.0.162) To sp-mail-2.sp.se (10.100.0.162)
X-EOPAttributedMessage: 0
X-Forefront-Antispam-Report: CIP:194.218.146.197; IPV:NLI; CTRY:SE; EFV:NLI; SFV:NSPM; SFS:(10009020)(346002)(39850400004)(376002)(396003)(136003)(2980300002)(199004)(189003)(74482002)(5000100001)(316002)(86362001)(71190400001)(70206006)(44832011)(69596002)(22746008)(70586007)(14444005)(53936002)(58126008)(36756003)(16586007)(16576012)(106002)(65826007)(5024004)(68736007)(8936002)(31686004)(2906002)(31696002)(126002)(76176011)(229853002)(6306002)(6116002)(486006)(22756006)(53546011)(2351001)(33964004)(386003)(65806001)(65956001)(84326002)(3846002)(6666004)(16526019)(966005)(356004)(6916009)(6246003)(235185007)(5660300002)(64126003)(81156014)(77096007)(186003)(81166006)(7736002)(305945005)(478600001)(40036005)(11346002)(336012)(2616005)(476003)(446003)(568964002)(8676002)(26005)(97736004); DIR:OUT; SFP:1101; SCL:1; SRVR:DB6P189MB0325; H:mail.ri.se; FPR:; SPF:Pass; LANG:en; PTR:InfoDomainNonexistent; A:1; MX:1; 
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: c3a68808-7bfc-457f-7cb4-08d6c7b64487
X-Microsoft-Antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600141)(711020)(4605104)(4709054)(2017052603328)(7193020); SRVR:DB6P189MB0325; 
X-MS-TrafficTypeDiagnostic: DB6P189MB0325:
X-Microsoft-Antispam-PRVS: <DB6P189MB0325287299867D2D2A010E8B82230@DB6P189MB0325.EURP189.PROD.OUTLOOK.COM>
X-Forefront-PRVS: 0016DEFF96
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam-Message-Info: /QFgClpcbmbifvDDvw5rjkcc2LYOZV2wlTr+QbWVODluJYlhrLturt9MJ9N/3zxGrn6LEbAWp8pTtQDDzdLBNtZxsB5mT/bvrgYQ/tsyyFc4by7NDRhRrHd9r7rZFPMH5tE69vmTJzya8KDZtRS+LjuiQXYOx9PXpNoqD3JQtbRCpChdh23OBrCT51oUuGcyZx+7J6ny4PAsxGKwk+87RyfzxbU7o/TnYp+gHWGo8uzo2gky0yu/uLKUrTPmttfliUM1pk3hPDqsWlwE3BJNtj5CO5i5bBUUy79fIQpLSOxhOaisp07bIzu4e6jukp89adsJGZRf9PQqiuDvk03xCOFu1Hc2EFjjObjVfTgMfiQ76onXW3jEWBNE+xPoifFSrDfpD8VHxFivSo4N2u9780ahtNrSYPCIahnguHfAcYY=
X-OriginatorOrg: ri.se
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 23 Apr 2019 06:38:16.6158 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: c3a68808-7bfc-457f-7cb4-08d6c7b64487
X-MS-Exchange-CrossTenant-Id: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=5a9809cf-0bcb-413a-838a-09ecc40cc9e8; Ip=[194.218.146.197];  Helo=[mail.ri.se]
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB6P189MB0325
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/b7iYL44iBOd1i2fsEjkaLphCdEc>
Subject: Re: [Ace] Adoption call for draft-sengul-ace-mqtt-tls-profile
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 23 Apr 2019 06:38:26 -0000

--------------ms080602030609010806010008
Content-Type: text/plain; charset=utf-8; format=flowed
Content-Language: en-US
Content-Transfer-Encoding: quoted-printable

On 22/04/2019 19:32, Jim Schaad wrote:
> At the meeting in Prague there was some discussion about adopting
> https://datatracker.ietf.org/doc/draft-sengul-ace-mqtt-tls-profile/ as =
a
> working group document.  The overall sense of the room was that this sh=
ould
> be done.  This message starts a 2 week adoption call for the document. =
 If
> you have strong feelings one way or the other about adopting this docum=
ent
> please let us know.  Reasons for your position are appreciated.
>=20
> ACE Chairs
>=20
> Jim & Daniel
>=20

I support adoption of this draft.

The reason is that MQTT is a very popular protocol in sensor networks,=20
and thus ACE would be very much less relevant if we didn't work on a=20
solution for MQTT as well.

Regards,

Ludwig



--=20
Ludwig Seitz, PhD
Security Lab, RISE
Phone +46(0)70-349 92 51


--------------ms080602030609010806010008
Content-Type: application/pkcs7-signature; name="smime.p7s"
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename="smime.p7s"
Content-Description: S/MIME Cryptographic Signature
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--------------ms080602030609010806010008--


From nobody Wed Apr 24 18:52:31 2019
Return-Path: <session-request@ietf.org>
X-Original-To: ace@ietf.org
Delivered-To: ace@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 0B10E12027B; Wed, 24 Apr 2019 18:52:28 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: IETF Meeting Session Request Tool <session-request@ietf.org>
To: <session-request@ietf.org>
Cc: ace-chairs@ietf.org, kaduk@mit.edu, mglt.ietf@gmail.com, ace@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 6.95.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <155615714797.32063.4389063235206464787.idtracker@ietfa.amsl.com>
Date: Wed, 24 Apr 2019 18:52:27 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/923B8M0ZEd8B2-K87UN_R6pEKFk>
Subject: [Ace] ace - New Meeting Session Request for IETF 105
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 25 Apr 2019 01:52:28 -0000

A new meeting session request has just been submitted by Daniel Migault, a Chair of the ace working group.


---------------------------------------------------------
Working Group Name: Authentication and Authorization for Constrained Environments
Area Name: Security Area
Session Requester: Daniel Migault

Number of Sessions: 1
Length of Session(s):  1.5 Hours
Number of Attendees: 50
Conflicts to Avoid: 
 First Priority: ipsecme  saag tls secdispatch  SAAG CBOR CORE LAMPS COSE 
 Second Priority: teep homenet cfrg lwig emu t2trg suit  oauth   
 Third Priority: anima 6tisch


People who must be present:
  Daniel Migault
  Jim Schaad
  Benjamin Kaduk

Resources Requested:

Special Requests:
  
---------------------------------------------------------


From nobody Mon Apr 29 09:02:06 2019
Return-Path: <kaduk@mit.edu>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 266131203F0 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:02:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level: 
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JYhGMhJOTjgi for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:02:02 -0700 (PDT)
Received: from outgoing.mit.edu (outgoing-auth-1.mit.edu [18.9.28.11]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9E775120362 for <ace@ietf.org>; Mon, 29 Apr 2019 09:01:34 -0700 (PDT)
Received: from kduck.mit.edu (24-107-191-124.dhcp.stls.mo.charter.com [24.107.191.124]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.14.7/8.12.4) with ESMTP id x3TG0cI6007522 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 29 Apr 2019 12:00:40 -0400
Date: Mon, 29 Apr 2019 11:00:38 -0500
From: Benjamin Kaduk <kaduk@mit.edu>
To: ace@ietf.org
Cc: mbj@microsoft.com, erik@wahlstromstekniska.se, erdtman@spotify.com, Hannes.Tschofenig@arm.com, rdd@cert.org, daniel.migault@ericsson.com, ietf@augustcellars.com, felipe@felipegasper.com
Message-ID: <20190429160038.GS60332@kduck.mit.edu>
References: <20190429155553.4F894B8217A@rfc-editor.org>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <20190429155553.4F894B8217A@rfc-editor.org>
User-Agent: Mutt/1.10.1 (2018-07-13)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/ctze-9ZUkMNOTUJWVGo6S8dYYyI>
Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 16:02:04 -0000

On Mon, Apr 29, 2019 at 08:55:53AM -0700, RFC Errata System wrote:
> The following errata report has been submitted for RFC8392,
> "CBOR Web Token (CWT)".
> 
> --------------------------------------
> You may review the report below and at:
> http://www.rfc-editor.org/errata/eid5710
> 
> --------------------------------------
> Type: Technical
> Reported by: Felipe Gasper <felipe@felipegasper.com>
> 
> Section: 1.1
> 
> Original Text
> -------------
> In JSON, maps are called objects and only have one kind of map key: a
>    string.  CBOR uses strings, negative integers, and unsigned integers
>    as map keys.
> 
> Corrected Text
> --------------
> In JSON, maps are called objects and only have one kind of map key:
> a string.  CBOR allows other data types, such as strings, negative
> integers, and unsigned integers, as map keys.
> 
> Notes
> -----
> The text as it stands risks an interpretation that CBOR limits map keys to integers and strings; per discussion on the CBOR mailing list, this is not the case.

I see the CBOR list traffic in the archive (e.g.,
https://mailarchive.ietf.org/arch/msg/cbor/LyndIfQipxUfx0cu6nlOwi6ceOY) and
agree with the sentiment that the CWT spec should not inadvertently
over-specify the behavior of CBOR

The proposed new text is itself flawed, though, as it claims that strings
are an "other data type" with respect to strings.

-Ben


From nobody Mon Apr 29 09:04:09 2019
Return-Path: <felipe@felipegasper.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 778B91203D1 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:04:03 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level: 
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9,  DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=felipegasper.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FRNXzTKfXNi2 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:04:01 -0700 (PDT)
Received: from web1.siteocity.com (web1.siteocity.com [67.227.147.204]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 84B701203BE for <ace@ietf.org>; Mon, 29 Apr 2019 09:04:01 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=felipegasper.com; s=default; h=To:References:Message-Id: Content-Transfer-Encoding:Cc:Date:In-Reply-To:From:Subject:Mime-Version: Content-Type:Sender:Reply-To:Content-ID:Content-Description:Resent-Date: Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=6JHqtGw5NynpGYmQ7yj+C30eZZV1s+kXaFCg0pB0O+4=; b=VoAc34FkI5dsYZNHOEB+6k7gM qhyRJL6tc+ztc8TOZEVSKao8gC3hEOnTKhjMKoEYx2HHuff3PVwXPGf7x9Zi7/vNr2/QxlUPEJQUZ NV1zoogxfOXOmjoiMeHZGlypFV/lmyszn/UvmF/JwxUqE2lmL4cKfltNHthfQxeG4WbRVtSwC/qhZ kCUH2vbbSoSmvyisjgskiH2a2BxdywKemB0ojmPfksoRXuoqvoqvRKOqwwYHoJXYGtONt+ib8ECCs JrhIhHBVvTmQ0yemvudvzDbS82oqh+6sz6QueNBQgSB9DZ853+JXcC8XPabNbZ10tQLsaM3RX2tXC QwVicxnkw==;
Received: from [149.248.87.38] (port=55969 helo=[192.168.86.20]) by web1.siteocity.com with esmtpsa (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.92) (envelope-from <felipe@felipegasper.com>) id 1hL8l4-0014hj-34; Mon, 29 Apr 2019 11:03:58 -0500
Content-Type: text/plain; charset=us-ascii
Mime-Version: 1.0 (Mac OS X Mail 12.4 \(3445.104.8\))
From: Felipe Gasper <felipe@felipegasper.com>
In-Reply-To: <20190429160038.GS60332@kduck.mit.edu>
Date: Mon, 29 Apr 2019 12:03:57 -0400
Cc: ace@ietf.org, mbj@microsoft.com, erik@wahlstromstekniska.se, erdtman@spotify.com, Hannes.Tschofenig@arm.com, rdd@cert.org, daniel.migault@ericsson.com, ietf@augustcellars.com
Content-Transfer-Encoding: quoted-printable
Message-Id: <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com>
References: <20190429155553.4F894B8217A@rfc-editor.org> <20190429160038.GS60332@kduck.mit.edu>
To: Benjamin Kaduk <kaduk@mit.edu>
X-Mailer: Apple Mail (2.3445.104.8)
X-OutGoing-Spam-Status: No, score=-1.0
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - web1.siteocity.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - felipegasper.com
X-Get-Message-Sender-Via: web1.siteocity.com: authenticated_id: fgasper/from_h
X-Authenticated-Sender: web1.siteocity.com: felipe@felipegasper.com
X-Source: 
X-Source-Args: 
X-Source-Dir: 
X-From-Rewrite: unmodified, already matched
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/v5n3loKrcYlfyAQi6ER94gxTRGk>
Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 16:04:04 -0000

> On Apr 29, 2019, at 12:00 PM, Benjamin Kaduk <kaduk@mit.edu> wrote:
>=20
> On Mon, Apr 29, 2019 at 08:55:53AM -0700, RFC Errata System wrote:
>> The following errata report has been submitted for RFC8392,
>> "CBOR Web Token (CWT)".
>>=20
>> --------------------------------------
>> You may review the report below and at:
>> http://www.rfc-editor.org/errata/eid5710
>>=20
>> --------------------------------------
>> Type: Technical
>> Reported by: Felipe Gasper <felipe@felipegasper.com>
>>=20
>> Section: 1.1
>>=20
>> Original Text
>> -------------
>> In JSON, maps are called objects and only have one kind of map key: a
>>   string.  CBOR uses strings, negative integers, and unsigned =
integers
>>   as map keys.
>>=20
>> Corrected Text
>> --------------
>> In JSON, maps are called objects and only have one kind of map key:
>> a string.  CBOR allows other data types, such as strings, negative
>> integers, and unsigned integers, as map keys.
>>=20
>> Notes
>> -----
>> The text as it stands risks an interpretation that CBOR limits map =
keys to integers and strings; per discussion on the CBOR mailing list, =
this is not the case.
>=20
> I see the CBOR list traffic in the archive (e.g.,
> =
https://mailarchive.ietf.org/arch/msg/cbor/LyndIfQipxUfx0cu6nlOwi6ceOY) =
and
> agree with the sentiment that the CWT spec should not inadvertently
> over-specify the behavior of CBOR
>=20
> The proposed new text is itself flawed, though, as it claims that =
strings
> are an "other data type" with respect to strings.

Ah, agreed. Is there a way I can update my proposed phrase? The editor =
only seems to allow submission of a new erratum.

It may be worth disambiguating between binary and UTF-8 strings, too; =
JSON only allows UTF-8 strings, while CBOR also allows binary.

-F=


From nobody Mon Apr 29 09:06:48 2019
Return-Path: <kaduk@mit.edu>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4CA6D1203ED for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:06:47 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level: 
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tOtEP213WzY1 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:06:45 -0700 (PDT)
Received: from outgoing.mit.edu (outgoing-auth-1.mit.edu [18.9.28.11]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 29AA91203F2 for <ace@ietf.org>; Mon, 29 Apr 2019 09:06:39 -0700 (PDT)
Received: from kduck.mit.edu (24-107-191-124.dhcp.stls.mo.charter.com [24.107.191.124]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.14.7/8.12.4) with ESMTP id x3TG5jm1009703 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 29 Apr 2019 12:05:47 -0400
Date: Mon, 29 Apr 2019 11:05:45 -0500
From: Benjamin Kaduk <kaduk@mit.edu>
To: Felipe Gasper <felipe@felipegasper.com>
Cc: ace@ietf.org, mbj@microsoft.com, erik@wahlstromstekniska.se, erdtman@spotify.com, Hannes.Tschofenig@arm.com, rdd@cert.org, daniel.migault@ericsson.com, ietf@augustcellars.com
Message-ID: <20190429160544.GV60332@kduck.mit.edu>
References: <20190429155553.4F894B8217A@rfc-editor.org> <20190429160038.GS60332@kduck.mit.edu> <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com>
User-Agent: Mutt/1.10.1 (2018-07-13)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/lFnpiEqvo3CYIgIBAeIvo_Le5gk>
Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 16:06:47 -0000

On Mon, Apr 29, 2019 at 12:03:57PM -0400, Felipe Gasper wrote:
> 
> > On Apr 29, 2019, at 12:00 PM, Benjamin Kaduk <kaduk@mit.edu> wrote:
> > 
> > On Mon, Apr 29, 2019 at 08:55:53AM -0700, RFC Errata System wrote:
> >> The following errata report has been submitted for RFC8392,
> >> "CBOR Web Token (CWT)".
> >> 
> >> --------------------------------------
> >> You may review the report below and at:
> >> http://www.rfc-editor.org/errata/eid5710
> >> 
> >> --------------------------------------
> >> Type: Technical
> >> Reported by: Felipe Gasper <felipe@felipegasper.com>
> >> 
> >> Section: 1.1
> >> 
> >> Original Text
> >> -------------
> >> In JSON, maps are called objects and only have one kind of map key: a
> >>   string.  CBOR uses strings, negative integers, and unsigned integers
> >>   as map keys.
> >> 
> >> Corrected Text
> >> --------------
> >> In JSON, maps are called objects and only have one kind of map key:
> >> a string.  CBOR allows other data types, such as strings, negative
> >> integers, and unsigned integers, as map keys.
> >> 
> >> Notes
> >> -----
> >> The text as it stands risks an interpretation that CBOR limits map keys to integers and strings; per discussion on the CBOR mailing list, this is not the case.
> > 
> > I see the CBOR list traffic in the archive (e.g.,
> > https://mailarchive.ietf.org/arch/msg/cbor/LyndIfQipxUfx0cu6nlOwi6ceOY) and
> > agree with the sentiment that the CWT spec should not inadvertently
> > over-specify the behavior of CBOR
> > 
> > The proposed new text is itself flawed, though, as it claims that strings
> > are an "other data type" with respect to strings.
> 
> Ah, agreed. Is there a way I can update my proposed phrase? The editor only seems to allow submission of a new erratum.

I can edit the "corrected text" field during the verification process...

> It may be worth disambiguating between binary and UTF-8 strings, too; JSON only allows UTF-8 strings, while CBOR also allows binary.

...so we can figure out the right phrasing here on the list, and then I'll
fix things up in the system.

-Ben


From nobody Mon Apr 29 09:15:40 2019
Return-Path: <felipe@felipegasper.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9D15C1200F4 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:15:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level: 
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9,  DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=felipegasper.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QigQCUpSPJ9u for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:15:37 -0700 (PDT)
Received: from web1.siteocity.com (web1.siteocity.com [67.227.147.204]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EACCE120086 for <ace@ietf.org>; Mon, 29 Apr 2019 09:15:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=felipegasper.com; s=default; h=To:References:Message-Id: Content-Transfer-Encoding:Cc:Date:In-Reply-To:From:Subject:Mime-Version: Content-Type:Sender:Reply-To:Content-ID:Content-Description:Resent-Date: Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=nKUvS6XX4g1NZXQVYIYP3orjC8dXdVfftSrWKKjF2bA=; b=ar3Rg4aEA2jbN+OwapZvAqAPI hQFHs6PzUoE9Oed3UUMTCtlnnJrduGSXo0ea4GubeEGhKBV+a+337XXYWFUUtAbrUSdk/veOvgPVY FV/D6vnczxXZfEHH3Y5bECuGm79kr9UDe8f+WAmMczczFxNPD6Oa8rAoZTbDt5qJbN8b87D+dwG4G zTmARSS1Q3XqNO6Q1HdC61lZDCCedKKbJZWQOUs4xKkj16qT7Rsw/5xMOEmu0xm9SQVF4YujQUUPJ C6JmQmF+E8MSaKlEbPsGmYXJiGYQ8UkFSGuUgZCKazmPkudUwVLVfMkLJ3KIReWjBbZPJsuriZXCO TYdERqxWg==;
Received: from [149.248.87.38] (port=55993 helo=[192.168.86.20]) by web1.siteocity.com with esmtpsa (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.92) (envelope-from <felipe@felipegasper.com>) id 1hL8wH-0017LJ-UA; Mon, 29 Apr 2019 11:15:34 -0500
Content-Type: text/plain; charset=us-ascii
Mime-Version: 1.0 (Mac OS X Mail 12.4 \(3445.104.8\))
From: Felipe Gasper <felipe@felipegasper.com>
In-Reply-To: <20190429160544.GV60332@kduck.mit.edu>
Date: Mon, 29 Apr 2019 12:15:32 -0400
Cc: ace@ietf.org, mbj@microsoft.com, erik@wahlstromstekniska.se, erdtman@spotify.com, Hannes.Tschofenig@arm.com, rdd@cert.org, daniel.migault@ericsson.com, ietf@augustcellars.com
Content-Transfer-Encoding: quoted-printable
Message-Id: <466A3BDA-1009-46C0-B4EC-579C8573438B@felipegasper.com>
References: <20190429155553.4F894B8217A@rfc-editor.org> <20190429160038.GS60332@kduck.mit.edu> <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com> <20190429160544.GV60332@kduck.mit.edu>
To: Benjamin Kaduk <kaduk@mit.edu>
X-Mailer: Apple Mail (2.3445.104.8)
X-OutGoing-Spam-Status: No, score=-1.0
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - web1.siteocity.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - felipegasper.com
X-Get-Message-Sender-Via: web1.siteocity.com: authenticated_id: fgasper/from_h
X-Authenticated-Sender: web1.siteocity.com: felipe@felipegasper.com
X-Source: 
X-Source-Args: 
X-Source-Dir: 
X-From-Rewrite: unmodified, already matched
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/fMcquCpHTNAGOb829d-Ms5WWXxo>
Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 16:15:39 -0000

> On Apr 29, 2019, at 12:05 PM, Benjamin Kaduk <kaduk@mit.edu> wrote:
>=20
> On Mon, Apr 29, 2019 at 12:03:57PM -0400, Felipe Gasper wrote:
>>=20
>>> On Apr 29, 2019, at 12:00 PM, Benjamin Kaduk <kaduk@mit.edu> wrote:
>>>=20
>>> On Mon, Apr 29, 2019 at 08:55:53AM -0700, RFC Errata System wrote:
>>>> The following errata report has been submitted for RFC8392,
>>>> "CBOR Web Token (CWT)".
>>>>=20
>>>> --------------------------------------
>>>> You may review the report below and at:
>>>> http://www.rfc-editor.org/errata/eid5710
>>>>=20
>>>> --------------------------------------
>>>> Type: Technical
>>>> Reported by: Felipe Gasper <felipe@felipegasper.com>
>>>>=20
>>>> Section: 1.1
>>>>=20
>>>> Original Text
>>>> -------------
>>>> In JSON, maps are called objects and only have one kind of map key: =
a
>>>>  string.  CBOR uses strings, negative integers, and unsigned =
integers
>>>>  as map keys.
>>>>=20
>>>> Corrected Text
>>>> --------------
>>>> In JSON, maps are called objects and only have one kind of map key:
>>>> a string.  CBOR allows other data types, such as strings, negative
>>>> integers, and unsigned integers, as map keys.
>>>>=20
>>>> Notes
>>>> -----
>>>> The text as it stands risks an interpretation that CBOR limits map =
keys to integers and strings; per discussion on the CBOR mailing list, =
this is not the case.
>>>=20
>>> I see the CBOR list traffic in the archive (e.g.,
>>> =
https://mailarchive.ietf.org/arch/msg/cbor/LyndIfQipxUfx0cu6nlOwi6ceOY) =
and
>>> agree with the sentiment that the CWT spec should not inadvertently
>>> over-specify the behavior of CBOR
>>>=20
>>> The proposed new text is itself flawed, though, as it claims that =
strings
>>> are an "other data type" with respect to strings.
>>=20
>> Ah, agreed. Is there a way I can update my proposed phrase? The =
editor only seems to allow submission of a new erratum.
>=20
> I can edit the "corrected text" field during the verification =
process...
>=20
>> It may be worth disambiguating between binary and UTF-8 strings, too; =
JSON only allows UTF-8 strings, while CBOR also allows binary.
>=20
> ...so we can figure out the right phrasing here on the list, and then =
I'll
> fix things up in the system.

So maybe something like:

-----
In JSON, maps are called objects and only have one kind of key:
a UTF-8 string. In CBOR, any valid CBOR item can be a map key.
CWT uses signed and unsigned integers, in addition to UTF-8 strings,
as map keys.
-----

-F=


From nobody Mon Apr 29 09:21:31 2019
Return-Path: <ietf@augustcellars.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1352012041B for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:21:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level: 
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TsjRdR8RJrMP for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:21:24 -0700 (PDT)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id AA6D21203D6 for <ace@ietf.org>; Mon, 29 Apr 2019 09:21:23 -0700 (PDT)
Received: from Jude (73.180.8.170) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Mon, 29 Apr 2019 09:21:16 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: 'Felipe Gasper' <felipe@felipegasper.com>, 'Benjamin Kaduk' <kaduk@mit.edu>
CC: <ace@ietf.org>, <mbj@microsoft.com>, <erik@wahlstromstekniska.se>, <erdtman@spotify.com>, <Hannes.Tschofenig@arm.com>, <rdd@cert.org>, <daniel.migault@ericsson.com>
References: <20190429155553.4F894B8217A@rfc-editor.org> <20190429160038.GS60332@kduck.mit.edu> <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com>
In-Reply-To: <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com>
Date: Mon, 29 Apr 2019 09:21:14 -0700
Message-ID: <004901d4fea7$93532400$b9f96c00$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 16.0
Content-Language: en-us
Thread-Index: AQI0tL8lCM8SoTMIiGXY6hzypI5jsQJ6EmiOAmUbGpOlbOuycA==
X-Originating-IP: [73.180.8.170]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/p0Q8W1ZOj8VoSJ2YQZ4lvJP2zGw>
Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 16:21:29 -0000

> -----Original Message-----
> From: Felipe Gasper <felipe@felipegasper.com>
> Sent: Monday, April 29, 2019 9:04 AM
> To: Benjamin Kaduk <kaduk@mit.edu>
> Cc: ace@ietf.org; mbj@microsoft.com; erik@wahlstromstekniska.se;
> erdtman@spotify.com; Hannes.Tschofenig@arm.com; rdd@cert.org;
> daniel.migault@ericsson.com; ietf@augustcellars.com
> Subject: Re: [Technical Errata Reported] RFC8392 (5710)
> 
> 
> > On Apr 29, 2019, at 12:00 PM, Benjamin Kaduk <kaduk@mit.edu> wrote:
> >
> > On Mon, Apr 29, 2019 at 08:55:53AM -0700, RFC Errata System wrote:
> >> The following errata report has been submitted for RFC8392, "CBOR Web
> >> Token (CWT)".
> >>
> >> --------------------------------------
> >> You may review the report below and at:
> >> http://www.rfc-editor.org/errata/eid5710
> >>
> >> --------------------------------------
> >> Type: Technical
> >> Reported by: Felipe Gasper <felipe@felipegasper.com>
> >>
> >> Section: 1.1
> >>
> >> Original Text
> >> -------------
> >> In JSON, maps are called objects and only have one kind of map key: a
> >>   string.  CBOR uses strings, negative integers, and unsigned integers
> >>   as map keys.
> >>
> >> Corrected Text
> >> --------------
> >> In JSON, maps are called objects and only have one kind of map key:
> >> a string.  CBOR allows other data types, such as strings, negative
> >> integers, and unsigned integers, as map keys.
> >>
> >> Notes
> >> -----
> >> The text as it stands risks an interpretation that CBOR limits map keys
to
> integers and strings; per discussion on the CBOR mailing list, this is not
the
> case.
> >
> > I see the CBOR list traffic in the archive (e.g.,
> > https://mailarchive.ietf.org/arch/msg/cbor/LyndIfQipxUfx0cu6nlOwi6ceOY
> > ) and agree with the sentiment that the CWT spec should not
> > inadvertently over-specify the behavior of CBOR
> >
> > The proposed new text is itself flawed, though, as it claims that
> > strings are an "other data type" with respect to strings.
> 
> Ah, agreed. Is there a way I can update my proposed phrase? The editor
only
> seems to allow submission of a new erratum.
> 
> It may be worth disambiguating between binary and UTF-8 strings, too; JSON
> only allows UTF-8 strings, while CBOR also allows binary.

I would agree that it would make sense to say that.  However CBOR uses the
term "byte string" not "binary string" so use the right term.

Jim

> 
> -F


From nobody Mon Apr 29 09:22:56 2019
Return-Path: <wwwrun@rfc-editor.org>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B504B120330 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 08:56:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level: 
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id IQG9bPtYGfdP for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 08:56:05 -0700 (PDT)
Received: from rfc-editor.org (rfc-editor.org [4.31.198.49]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1EFA81201BE for <ace@ietf.org>; Mon, 29 Apr 2019 08:56:04 -0700 (PDT)
Received: by rfc-editor.org (Postfix, from userid 30) id 4F894B8217A; Mon, 29 Apr 2019 08:55:53 -0700 (PDT)
To: mbj@microsoft.com, erik@wahlstromstekniska.se, erdtman@spotify.com, Hannes.Tschofenig@arm.com, rdd@cert.org, kaduk@mit.edu, daniel.migault@ericsson.com, ietf@augustcellars.com
X-PHP-Originating-Script: 30:errata_mail_lib.php
From: RFC Errata System <rfc-editor@rfc-editor.org>
Cc: felipe@felipegasper.com, ace@ietf.org, rfc-editor@rfc-editor.org
Content-Type: text/plain; charset=UTF-8
Message-Id: <20190429155553.4F894B8217A@rfc-editor.org>
Date: Mon, 29 Apr 2019 08:55:53 -0700 (PDT)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/WFzj0pkzceTV_wpH5TA1v1q5BS4>
X-Mailman-Approved-At: Mon, 29 Apr 2019 09:22:54 -0700
Subject: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 15:56:08 -0000

The following errata report has been submitted for RFC8392,
"CBOR Web Token (CWT)".

--------------------------------------
You may review the report below and at:
http://www.rfc-editor.org/errata/eid5710

--------------------------------------
Type: Technical
Reported by: Felipe Gasper <felipe@felipegasper.com>

Section: 1.1

Original Text
-------------
In JSON, maps are called objects and only have one kind of map key: a
   string.  CBOR uses strings, negative integers, and unsigned integers
   as map keys.

Corrected Text
--------------
In JSON, maps are called objects and only have one kind of map key:
a string.  CBOR allows other data types, such as strings, negative
integers, and unsigned integers, as map keys.

Notes
-----
The text as it stands risks an interpretation that CBOR limits map keys to integers and strings; per discussion on the CBOR mailing list, this is not the case.

Instructions:
-------------
This erratum is currently posted as "Reported". If necessary, please
use "Reply All" to discuss whether it should be verified or
rejected. When a decision is reached, the verifying party  
can log in to change the status and edit the report, if necessary. 

--------------------------------------
RFC8392 (draft-ietf-ace-cbor-web-token-15)
--------------------------------------
Title               : CBOR Web Token (CWT)
Publication Date    : May 2018
Author(s)           : M. Jones, E. Wahlstroem, S. Erdtman, H. Tschofenig
Category            : PROPOSED STANDARD
Source              : Authentication and Authorization for Constrained Environments
Area                : Security
Stream              : IETF
Verifying Party     : IESG


From nobody Mon Apr 29 09:45:49 2019
Return-Path: <cabo@tzi.org>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 50B87120424 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:45:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.199
X-Spam-Level: 
X-Spam-Status: No, score=-4.199 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Od-Carizaifh for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:45:47 -0700 (PDT)
Received: from smtp.uni-bremen.de (gabriel-vm-2.zfn.uni-bremen.de [134.102.50.17]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E31C912040F for <ace@ietf.org>; Mon, 29 Apr 2019 09:45:46 -0700 (PDT)
Received: from client-0080.vpn.uni-bremen.de (client-0080.vpn.uni-bremen.de [134.102.107.80]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.uni-bremen.de (Postfix) with ESMTPSA id 44t9Ws39LwzyXw; Mon, 29 Apr 2019 18:45:45 +0200 (CEST)
Content-Type: text/plain; charset=utf-8
Mime-Version: 1.0 (Mac OS X Mail 11.5 \(3445.9.1\))
From: Carsten Bormann <cabo@tzi.org>
In-Reply-To: <F2A9D0F9-CEA2-4C66-B016-5575DF58C7F6@tzi.org>
Date: Mon, 29 Apr 2019 18:45:44 +0200
Cc: Ace Wg <ace@ietf.org>
X-Mao-Original-Outgoing-Id: 578249142.890191-c493279829491c6feccdf205b1861d93
Content-Transfer-Encoding: quoted-printable
Message-Id: <C7932228-CB08-470A-82BB-3E04BE64808A@tzi.org>
References: <20190429155553.4F894B8217A@rfc-editor.org> <20190429160038.GS60332@kduck.mit.edu> <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com> <20190429160544.GV60332@kduck.mit.edu> <466A3BDA-1009-46C0-B4EC-579C8573438B@felipegasper.com> <F2A9D0F9-CEA2-4C66-B016-5575DF58C7F6@tzi.org>
To: Felipe Gasper <felipe@felipegasper.com>
X-Mailer: Apple Mail (2.3445.9.1)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/6d8U19BPiPU8g7BQkkfKA-88NNM>
Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 16:45:48 -0000

(Resending to ACE list with recipient list trimmed.)

> On Apr 29, 2019, at 18:40, Carsten Bormann <cabo@tzi.org> wrote:
>=20
> On Apr 29, 2019, at 18:15, Felipe Gasper <felipe@felipegasper.com> =
wrote:
>>=20
>> In JSON, maps are called objects and only have one kind of key:
>> a UTF-8 string. In CBOR, any valid CBOR item can be a map key.
>> CWT uses signed and unsigned integers, in addition to UTF-8 strings,
>> as map keys.
>=20
> s/CBOR item/CBOR data item/ (this is the term we use in 7049)
>=20
> Also, I think
> s/UTF-8 string/text string/g
> The fact that this is encoded in UTF-8 is somewhat on a different =
level of detail.
>=20
> Finally, s/signed/negative/ if you want to follow the CBOR terminology =
here.
> (Otherwise, all unsigned integers are also signed integers :-)
>=20
> Gr=C3=BC=C3=9Fe, Carsten
>=20
>=20
>=20


From nobody Mon Apr 29 09:48:16 2019
Return-Path: <felipe@felipegasper.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 846A9120466 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:48:14 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level: 
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9,  DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=felipegasper.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id OJVN30SKjjcq for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:48:13 -0700 (PDT)
Received: from web1.siteocity.com (web1.siteocity.com [67.227.147.204]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 26C0C120025 for <ace@ietf.org>; Mon, 29 Apr 2019 09:48:13 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=felipegasper.com; s=default; h=To:References:Message-Id: Content-Transfer-Encoding:Cc:Date:In-Reply-To:From:Subject:Mime-Version: Content-Type:Sender:Reply-To:Content-ID:Content-Description:Resent-Date: Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=F1ScAmq0mmPQLoizy2RzGinRV56lD6asUfsj8ZaXd1E=; b=ENsn/Qda3er0DfSsFU6mrMNm/ N4vJ8qgAcQITWy08CVMSse5Z0e8AM9v1q/v36lA45ZpZGlErb7ag1TMSp53+B2IHXTqhyecUSrA36 cyYMixGUDAKWyTBt7V+mqj/j/VqmsBnak8GJO5v42pu2RcheH7IYwfleUKswx5fyulU1WkVfiXXTn gik5cy+UeINJ1gnL7ePRFmRxjlgAi4Ec7qOEucYERP3YGKvUrlZQsgmMGIB+fcCcXb0DmJ/D5Owjl OGcfrZKCaw4tXrNv7TfKyEiD+oux6a3fF9e06QQ7eKYIEu+TqVQC99TwuUXq04H8a0uowXKU3FPmV GwCTmS8YA==;
Received: from [149.248.87.38] (port=56096 helo=[192.168.86.20]) by web1.siteocity.com with esmtpsa (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.92) (envelope-from <felipe@felipegasper.com>) id 1hL9Rr-001Dxj-1W; Mon, 29 Apr 2019 11:48:11 -0500
Content-Type: text/plain; charset=us-ascii
Mime-Version: 1.0 (Mac OS X Mail 12.4 \(3445.104.8\))
From: Felipe Gasper <felipe@felipegasper.com>
In-Reply-To: <F2A9D0F9-CEA2-4C66-B016-5575DF58C7F6@tzi.org>
Date: Mon, 29 Apr 2019 12:48:10 -0400
Cc: ace@ietf.org
Content-Transfer-Encoding: quoted-printable
Message-Id: <8ADC3CAB-4C10-487D-B98F-498DAE7083F5@felipegasper.com>
References: <20190429155553.4F894B8217A@rfc-editor.org> <20190429160038.GS60332@kduck.mit.edu> <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com> <20190429160544.GV60332@kduck.mit.edu> <466A3BDA-1009-46C0-B4EC-579C8573438B@felipegasper.com> <F2A9D0F9-CEA2-4C66-B016-5575DF58C7F6@tzi.org>
To: Carsten Bormann <cabo@tzi.org>
X-Mailer: Apple Mail (2.3445.104.8)
X-OutGoing-Spam-Status: No, score=-1.0
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - web1.siteocity.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - felipegasper.com
X-Get-Message-Sender-Via: web1.siteocity.com: authenticated_id: fgasper/from_h
X-Authenticated-Sender: web1.siteocity.com: felipe@felipegasper.com
X-Source: 
X-Source-Args: 
X-Source-Dir: 
X-From-Rewrite: unmodified, already matched
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/QNU-hqhLpFY7A7C-D-kueb7dqvc>
Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 16:48:14 -0000

> On Apr 29, 2019, at 12:40 PM, Carsten Bormann <cabo@tzi.org> wrote:
>=20
> On Apr 29, 2019, at 18:15, Felipe Gasper <felipe@felipegasper.com> =
wrote:
>>=20
>> In JSON, maps are called objects and only have one kind of key:
>> a UTF-8 string. In CBOR, any valid CBOR item can be a map key.
>> CWT uses signed and unsigned integers, in addition to UTF-8 strings,
>> as map keys.
>=20
> s/CBOR item/CBOR data item/ (this is the term we use in 7049)
>=20
> Also, I think
> s/UTF-8 string/text string/g
> The fact that this is encoded in UTF-8 is somewhat on a different =
level of detail.
>=20
> Finally, s/signed/negative/ if you want to follow the CBOR terminology =
here.
> (Otherwise, all unsigned integers are also signed integers :-)

Iteration #3:

-----
In JSON, maps are called objects and only have one kind of key:
a text string. CBOR allows any data item to be a map key.
CWT thus uses integers, in addition to text strings, as map keys.
-----

-FG=


From nobody Mon Apr 29 10:22:40 2019
Return-Path: <ietf@augustcellars.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C61DD120419 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:53:34 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level: 
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id W4JfeQyPMS73 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:53:32 -0700 (PDT)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5B21C12040F for <ace@ietf.org>; Mon, 29 Apr 2019 09:53:32 -0700 (PDT)
Received: from Jude (73.180.8.170) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Mon, 29 Apr 2019 09:53:03 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: 'Carsten Bormann' <cabo@tzi.org>, 'Felipe Gasper' <felipe@felipegasper.com>
CC: 'Benjamin Kaduk' <kaduk@mit.edu>, 'Roman Danyliw' <rdd@cert.org>, 'Daniel Migault' <daniel.migault@ericsson.com>, <erdtman@spotify.com>, <ace@ietf.org>, <mbj@microsoft.com>, <erik@wahlstromstekniska.se>, <Hannes.Tschofenig@arm.com>
References: <20190429155553.4F894B8217A@rfc-editor.org> <20190429160038.GS60332@kduck.mit.edu> <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com> <20190429160544.GV60332@kduck.mit.edu> <466A3BDA-1009-46C0-B4EC-579C8573438B@felipegasper.com> <F2A9D0F9-CEA2-4C66-B016-5575DF58C7F6@tzi.org>
In-Reply-To: <F2A9D0F9-CEA2-4C66-B016-5575DF58C7F6@tzi.org>
Date: Mon, 29 Apr 2019 09:53:01 -0700
Message-ID: <004d01d4feac$04310b20$0c932160$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
X-Mailer: Microsoft Outlook 16.0
Content-Language: en-us
Thread-Index: AQI0tL8lCM8SoTMIiGXY6hzypI5jsQJ6EmiOAmUbGpMAtCdV6AMU6EKiAVZ5RlelQ/g9AA==
X-Originating-IP: [73.180.8.170]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/rEVp83PekuwbZY-CV73-3VIhgwE>
X-Mailman-Approved-At: Mon, 29 Apr 2019 10:22:38 -0700
Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 16:53:35 -0000

> -----Original Message-----
> From: Carsten Bormann <cabo@tzi.org>
> Sent: Monday, April 29, 2019 9:41 AM
> To: Felipe Gasper <felipe@felipegasper.com>
> Cc: Benjamin Kaduk <kaduk@mit.edu>; Roman Danyliw <rdd@cert.org>;
> Daniel Migault <daniel.migault@ericsson.com>; erdtman@spotify.com;
> ietf@augustcellars.com; ace@ietf.org; mbj@microsoft.com;
> erik@wahlstromstekniska.se; Hannes.Tschofenig@arm.com
> Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
>=20
> On Apr 29, 2019, at 18:15, Felipe Gasper <felipe@felipegasper.com> =
wrote:
> >
> > In JSON, maps are called objects and only have one kind of key:
> > a UTF-8 string. In CBOR, any valid CBOR item can be a map key.
> > CWT uses signed and unsigned integers, in addition to UTF-8 strings,
> > as map keys.
>=20
> s/CBOR item/CBOR data item/ (this is the term we use in 7049)
>=20
> Also, I think
> s/UTF-8 string/text string/g
> The fact that this is encoded in UTF-8 is somewhat on a different =
level of
> detail.

+1 on this.  There is not really a restriction that UTF-8 strings be the =
key in JSON.  If you encoded the JSON as UTF-16 then it would be a =
UTF-16 string.

Jim

>=20
> Finally, s/signed/negative/ if you want to follow the CBOR terminology =
here.
> (Otherwise, all unsigned integers are also signed integers :-)
>=20
> Gr=C3=BC=C3=9Fe, Carsten



From nobody Mon Apr 29 10:22:46 2019
Return-Path: <kaduk@mit.edu>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DB8C8120419 for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:58:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level: 
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id g_Ue0aFdsa4n for <ace@ietfa.amsl.com>; Mon, 29 Apr 2019 09:57:58 -0700 (PDT)
Received: from outgoing.mit.edu (outgoing-auth-1.mit.edu [18.9.28.11]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 65DCD12040F for <ace@ietf.org>; Mon, 29 Apr 2019 09:57:58 -0700 (PDT)
Received: from kduck.mit.edu (24-107-191-124.dhcp.stls.mo.charter.com [24.107.191.124]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.14.7/8.12.4) with ESMTP id x3TGv0jr030744 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 29 Apr 2019 12:57:02 -0400
Date: Mon, 29 Apr 2019 11:57:00 -0500
From: Benjamin Kaduk <kaduk@mit.edu>
To: Jim Schaad <ietf@augustcellars.com>
Cc: "'Carsten Bormann'" <cabo@tzi.org>, "'Felipe Gasper'" <felipe@felipegasper.com>, "'Roman Danyliw'" <rdd@cert.org>, "'Daniel Migault'" <daniel.migault@ericsson.com>, erdtman@spotify.com, ace@ietf.org, mbj@microsoft.com, erik@wahlstromstekniska.se, Hannes.Tschofenig@arm.com
Message-ID: <20190429165700.GY60332@kduck.mit.edu>
References: <20190429155553.4F894B8217A@rfc-editor.org> <20190429160038.GS60332@kduck.mit.edu> <27E15D28-2659-41BC-A2EA-413EAC544F79@felipegasper.com> <20190429160544.GV60332@kduck.mit.edu> <466A3BDA-1009-46C0-B4EC-579C8573438B@felipegasper.com> <F2A9D0F9-CEA2-4C66-B016-5575DF58C7F6@tzi.org> <004d01d4feac$04310b20$0c932160$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
In-Reply-To: <004d01d4feac$04310b20$0c932160$@augustcellars.com>
User-Agent: Mutt/1.10.1 (2018-07-13)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/LBrVZC9AEO-xer16x7U2NwkpZ4Y>
X-Mailman-Approved-At: Mon, 29 Apr 2019 10:22:38 -0700
Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Apr 2019 16:58:01 -0000

On Mon, Apr 29, 2019 at 09:53:01AM -0700, Jim Schaad wrote:
> 
> 
> > -----Original Message-----
> > From: Carsten Bormann <cabo@tzi.org>
> > Sent: Monday, April 29, 2019 9:41 AM
> > To: Felipe Gasper <felipe@felipegasper.com>
> > Cc: Benjamin Kaduk <kaduk@mit.edu>; Roman Danyliw <rdd@cert.org>;
> > Daniel Migault <daniel.migault@ericsson.com>; erdtman@spotify.com;
> > ietf@augustcellars.com; ace@ietf.org; mbj@microsoft.com;
> > erik@wahlstromstekniska.se; Hannes.Tschofenig@arm.com
> > Subject: Re: [Ace] [Technical Errata Reported] RFC8392 (5710)
> > 
> > On Apr 29, 2019, at 18:15, Felipe Gasper <felipe@felipegasper.com> wrote:
> > >
> > > In JSON, maps are called objects and only have one kind of key:
> > > a UTF-8 string. In CBOR, any valid CBOR item can be a map key.
> > > CWT uses signed and unsigned integers, in addition to UTF-8 strings,
> > > as map keys.
> > 
> > s/CBOR item/CBOR data item/ (this is the term we use in 7049)
> > 
> > Also, I think
> > s/UTF-8 string/text string/g
> > The fact that this is encoded in UTF-8 is somewhat on a different level of
> > detail.
> 
> +1 on this.  There is not really a restriction that UTF-8 strings be the key in JSON.  If you encoded the JSON as UTF-16 then it would be a UTF-16 string.

I think I'm also +1 on that, but do recall that RFC 8529 mandates UTF-8 for
exchange among a non-closed ecosystem (i.e., all internet usage).

-Ben

