[Ace] Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs) spec addressing Area Director review comments

Mike Jones <Michael.Jones@microsoft.com> Thu, 19 September 2019 08:20 UTC

Return-Path: <Michael.Jones@microsoft.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B9580120180 for <ace@ietfa.amsl.com>; Thu, 19 Sep 2019 01:20:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ZS6Y7C7Ior6K for <ace@ietfa.amsl.com>; Thu, 19 Sep 2019 01:19:58 -0700 (PDT)
Received: from NAM06-BL2-obe.outbound.protection.outlook.com (mail-eopbgr650100.outbound.protection.outlook.com [40.107.65.100]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 433A712008C for <ace@ietf.org>; Thu, 19 Sep 2019 01:19:58 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=LQLga07WQ26FPfS9qJiE7m/UQZ0k2Sj/9wM8PIyHrI5bNTTm1x7cy+rdkF5dqKMS1R048/3GBbbU7qqsd875u8R+mMhNmhtkGYH7I4HtyX0c5NYGH581R1JYeGgn4iQukM+6BGKJqpFZFzZYNlF2uzwZpaIfDhZkvS6ywbIMqTdDW6LYNkibwK9gpZFfnHO9yzxv6qA8zp0QTf5162t7sfJdserZQKp0sk0p8/mvXTrrUZ0ROt66NGrJ6pPjZHR1eDPsQ3CSv/vssQlmwZH/jCTw0YgZQbLxXavgfsG+HWphmZHyY/JNz3GS03UI1AjXTymawUOaQ56ZgSc2i3kwrg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=t47t35FP67k1s4unSgfRrducI+pzAjwMNpQ5sjTLovE=; b=kW9cbCsnKLipL275Znl+WpwpJ56lL5VUW599+ydn0HXGrOT/TmKC0M+2Vcm/ykXkwpw/kv2zSnf5Ndws11WHhgqoBGcYPArKTGmQYoNyq4bpGSv/bdktcMqKQLMybd71+Xe19LKOUWTbufybrUN1DoXi4O3P1xtgi75v79ALlKnIMphEzuscISoe1lg6cfUQZreGGCCuAOTJFGXey7StLHezdXleOSUu/sj4iSiRkqoqnTEI+unr472JUTkVwxI8FCdnKIqE9T/WGfw9uRcfKmy7Cby28OXt1ewphUkiBFi0Kw8vFimqb7hDBEyOGDDaBX1sElzMStDWgIjqYNKaUw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=microsoft.com; dmarc=pass action=none header.from=microsoft.com; dkim=pass header.d=microsoft.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=t47t35FP67k1s4unSgfRrducI+pzAjwMNpQ5sjTLovE=; b=J+Op6/Z4UBGGFq/jnbTRBd7+8FJJ+SW4aBmcMjpPV55cGn7l8vVUH/6x88Wpv6ziijx7WawEd6unrwu7TjpCk4MHBBNb9PNFQNmrgb1q+ZneGav/3DlFV2Gtt9itlmMXb/v9u/CshJOXJ1May6emrbBTyiz8zuyRDuVRbPaUo4Q=
Received: from MN2PR00MB0576.namprd00.prod.outlook.com (20.178.255.149) by MN2PR00MB0621.namprd00.prod.outlook.com (20.179.20.33) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2326.0; Thu, 19 Sep 2019 08:19:51 +0000
Received: from MN2PR00MB0576.namprd00.prod.outlook.com ([fe80::acd1:824c:663:f0da]) by MN2PR00MB0576.namprd00.prod.outlook.com ([fe80::acd1:824c:663:f0da%7]) with mapi id 15.20.2326.000; Thu, 19 Sep 2019 08:19:51 +0000
From: Mike Jones <Michael.Jones@microsoft.com>
To: "ace@ietf.org" <ace@ietf.org>
Thread-Topic: Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs) spec addressing Area Director review comments
Thread-Index: AdVuwBTHIdtwbLnLQheAGYJ5FZXAWA==
Date: Thu, 19 Sep 2019 08:19:51 +0000
Message-ID: <MN2PR00MB05763FF4AF3418C8B451A53AF5890@MN2PR00MB0576.namprd00.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ActionId=ff5df345-75c3-441b-99a3-000026ef1243; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ContentBits=0; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=true; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Method=Standard; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=Internal; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2019-09-19T07:57:04Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47;
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Michael.Jones@microsoft.com;
x-originating-ip: [113.36.2.10]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 42ff25d8-8759-4bbf-7268-08d73cda24e9
x-ms-office365-filtering-ht: Tenant
x-ms-traffictypediagnostic: MN2PR00MB0621:
x-ms-exchange-purlcount: 4
x-microsoft-antispam-prvs: <MN2PR00MB0621604D6FD0C4F7619B7D05F5890@MN2PR00MB0621.namprd00.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8882;
x-forefront-prvs: 016572D96D
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(4636009)(396003)(39860400002)(346002)(136003)(366004)(376002)(209900001)(189003)(199004)(66066001)(10090500001)(236005)(81166006)(81156014)(1730700003)(8676002)(9686003)(6306002)(54896002)(6916009)(14454004)(99286004)(52536014)(55016002)(2501003)(790700001)(6116002)(3846002)(2906002)(6436002)(8936002)(22452003)(7736002)(606006)(5640700003)(316002)(74316002)(66946007)(33656002)(76116006)(256004)(186003)(14444005)(21615005)(66476007)(66446008)(64756008)(86362001)(966005)(8990500004)(66556008)(5660300002)(26005)(10290500003)(71200400001)(71190400001)(7696005)(478600001)(476003)(102836004)(6506007)(2351001)(486006)(4744005)(25786009)(6606295002); DIR:OUT; SFP:1102; SCL:1; SRVR:MN2PR00MB0621; H:MN2PR00MB0576.namprd00.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: microsoft.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 9a7tFXbW18ZT71q5WvlWg5R3RDpNCzLl3qibiNAqkaUGTOACndIkXnnYhlFPlZdz6Dzk3Sn7n/FvkydX03ung4TenCZHlweCfeI+KYvyd6erGpnPkufPofpVLWBIeIoyaWpMfPZutxdXueIZmpE+Qv3uHP7Loeg6QGqmtIkIPG4/ECkBCKPoTAynMWA/1kyFlYgf5tEMYeFgQx717mig1Au8uTZjMvjxfvi1CB7+YNMoqmbnicwH+A0mdI+2fiD6efhL2tESGZX+hTeepwiDo3VMaCi7LUpwFYuhacq3lCXC0Beq7Exzp65aCC76E6CY0pdQRiCioubxDw+MLVifShwQgbfElCOcJp+zgapTTV0D74vmhWyZWiYxaSChACz/an8Y+7Ah80wLqu/p/W9Ee1vU7R+pVJozeqsq0afggy0=
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_MN2PR00MB05763FF4AF3418C8B451A53AF5890MN2PR00MB0576namp_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 42ff25d8-8759-4bbf-7268-08d73cda24e9
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 Sep 2019 08:19:51.2972 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 54r3JvYxGBZRSzni2Vkb7pBSgfC2nZ8ZhIaJCeS/teMp1fody0P1hBhVW3LVnhqinuR4mVVSXULtdl7HfVyJnw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MN2PR00MB0621
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/3lwMvM8nDD4b7xlUYJC6I6o_gKQ>
Subject: [Ace] Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs) spec addressing Area Director review comments
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 19 Sep 2019 08:20:01 -0000

The Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs) specification has been updated to address the Area Director review comments by Benjamin Kaduk.  Thanks to Ludwig Seitz and Hannes Tschofenig for their work on resolving the issues raised.

The specification is available at:

  *   https://tools.ietf.org/html/draft-ietf-ace-cwt-proof-of-possession-07

An HTML-formatted version is also available at:

  *   http://self-issued.info/docs/draft-ietf-ace-cwt-proof-of-possession-07.html

                                                       -- Mike

P.S.  This notice was also posted at http://self-issued.info/?p=2004 and @selfissued<https://twitter.com/selfissued>.