Re: [100attendees] Side Meeting on considerations on using short-term certificates.

Robert Moskowitz <rgm@labs.htt-consult.com> Mon, 13 November 2017 03:17 UTC

Return-Path: <rgm@labs.htt-consult.com>
X-Original-To: 100attendees@ietfa.amsl.com
Delivered-To: 100attendees@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4177A127077 for <100attendees@ietfa.amsl.com>; Sun, 12 Nov 2017 19:17:31 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.75
X-Spam-Level:
X-Spam-Status: No, score=-2.75 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_BRBL_LASTEXT=1.449, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TrYBnPrghn7x for <100attendees@ietfa.amsl.com>; Sun, 12 Nov 2017 19:17:28 -0800 (PST)
Received: from z9m9z.htt-consult.com (z9m9z.htt-consult.com [50.253.254.3]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3AF9612700F for <100attendees@ietf.org>; Sun, 12 Nov 2017 19:17:28 -0800 (PST)
Received: from localhost (localhost [127.0.0.1]) by z9m9z.htt-consult.com (Postfix) with ESMTP id 6932762198; Sun, 12 Nov 2017 22:17:26 -0500 (EST)
X-Virus-Scanned: amavisd-new at htt-consult.com
Received: from z9m9z.htt-consult.com ([127.0.0.1]) by localhost (z9m9z.htt-consult.com [127.0.0.1]) (amavisd-new, port 10024) with LMTP id dJZ77iDMDxiy; Sun, 12 Nov 2017 22:17:19 -0500 (EST)
Received: from lx120e.htt-consult.com (dhcp-926a.meeting.ietf.org [31.133.146.106]) (using TLSv1.2 with cipher DHE-RSA-AES128-SHA (128/128 bits)) (No client certificate requested) by z9m9z.htt-consult.com (Postfix) with ESMTPSA id A346F6212F; Sun, 12 Nov 2017 22:17:17 -0500 (EST)
To: Yoav Nir <ynir.ietf@gmail.com>, 100attendees@ietf.org
References: <7AEE0333-EF1B-49CF-A9D6-88D0A491C541@gmail.com>
From: Robert Moskowitz <rgm@labs.htt-consult.com>
Message-ID: <6242d566-37bb-a81b-5ed5-1b50b2d0eff7@labs.htt-consult.com>
Date: Mon, 13 Nov 2017 11:17:13 +0800
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.2.1
MIME-Version: 1.0
In-Reply-To: <7AEE0333-EF1B-49CF-A9D6-88D0A491C541@gmail.com>
Content-Type: multipart/alternative; boundary="------------4CE0852AFAA1BF5B4F1ED113"
Content-Language: en-US
Archived-At: <https://mailarchive.ietf.org/arch/msg/100attendees/NUkNYHAAB9LAIe_n-qIPa-8wJPg>
Subject: Re: [100attendees] Side Meeting on considerations on using short-term certificates.
X-BeenThere: 100attendees@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Mailing list of IETF 100 attendees that have opted in on this list." <100attendees.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/100attendees>, <mailto:100attendees-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/100attendees/>
List-Post: <mailto:100attendees@ietf.org>
List-Help: <mailto:100attendees-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/100attendees>, <mailto:100attendees-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 13 Nov 2017 03:17:31 -0000

Conflicts with CBOR and ACME.  And Melinda's TRANS conflicts with SUIT.

Always conflicts.  This is way in the old days of BAR BOFS, they were 
held around 10pm...

Bob

On 11/13/2017 10:45 AM, Yoav Nir wrote:
> Hi, all
>
> In recent years there’s been growing interest in short-term automatically-renewed (STAR) certificates.  The idea is to renew certificates often and forego revocation checking.
>
> ACME has a draft for such certificate, and STIR has a candidate among others.
>
> STAR certificates have somewhat different operational and security properties compared to regular PKI.  I’ve tried to document some of them in a draft:
> https://tools.ietf.org/html/draft-nir-saag-star-00
> This draft is in a very initial state, and I’m looking for input about this.
>
> I’ve reserved the Hullet room on Thursday at 18:00.  Anyone who’s interested is invited.
>
> Hope to see you there
>
> Yoav
>
> _______________________________________________
> 100attendees mailing list
> 100attendees@ietf.org
> https://www.ietf.org/mailman/listinfo/100attendees

-- 
Standard Robert Moskowitz
Owner
HTT Consulting
C:248-219-2059
F:248-968-2824
E:rgm@labs.htt-consult.com

There's no limit to what can be accomplished if it doesn't matter who 
gets the credit