Re: [Ace] WGLC review of draft-ietf-ace-mqtt-tls-profile-07

Seitz Ludwig <ludwig.seitz@combitech.se> Wed, 30 September 2020 12:29 UTC

Return-Path: <ludwig.seitz@combitech.se>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 24C493A086B for <ace@ietfa.amsl.com>; Wed, 30 Sep 2020 05:29:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gthQqOgcOnhp for <ace@ietfa.amsl.com>; Wed, 30 Sep 2020 05:29:45 -0700 (PDT)
Received: from weald.air.saab.se (weald.air.saab.se [136.163.212.3]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F1A313A084D for <ace@ietf.org>; Wed, 30 Sep 2020 05:29:43 -0700 (PDT)
Received: from mailhub1.air.saab.se ([136.163.213.4]) by weald.air.saab.se (8.14.4/8.14.4) with ESMTP id 08UCTffH005592 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL); Wed, 30 Sep 2020 14:29:41 +0200
DKIM-Filter: OpenDKIM Filter v2.11.0 weald.air.saab.se 08UCTffH005592
Received: from corpappl16256.corp.saab.se (corpappl16256.corp.saab.se [10.12.13.175]) by mailhub1.air.saab.se (8.13.8/8.13.8) with ESMTP id 08UCTSH6022824 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL); Wed, 30 Sep 2020 14:29:28 +0200
Received: from corpappl16595.corp.saab.se (10.12.12.127) by corpappl16256.corp.saab.se (10.12.13.175) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.1979.3; Wed, 30 Sep 2020 14:29:28 +0200
Received: from corpappl16595.corp.saab.se ([fe80::3c3e:6470:4c56:a86f]) by corpappl16595.corp.saab.se ([fe80::3c3e:6470:4c56:a86f%4]) with mapi id 15.01.1979.006; Wed, 30 Sep 2020 14:29:28 +0200
From: Seitz Ludwig <ludwig.seitz@combitech.se>
To: Olaf Bergmann <bergmann@tzi.org>
CC: Ace Wg <ace@ietf.org>
Thread-Topic: [Ace] WGLC review of draft-ietf-ace-mqtt-tls-profile-07
Thread-Index: AQHWi2Vt4kA8WzEEoEqqVXT3Bt2veqlyC+WAgAXnuAD//+IsYIAIUeuWgAEKsqA=
Date: Wed, 30 Sep 2020 12:29:28 +0000
Message-ID: <006821fd603f45d1ab0691c3b4c11cdc@combitech.se>
References: <D68C212C-FD3A-4900-86DE-B138DD0CFCD0@ericsson.com> <CAA7SwCPQjY7fwJrJyfK=kmcmPP3i-6mevwP+64yjc4S_8ezoww@mail.gmail.com> <06BB230C-FEDF-46F2-8B54-525BD9675A27@ericsson.com> <a5a83e6943cb4f2f8ee8dde4cd987b7e@combitech.se> <87mu18ba3n.fsf@wangari>
In-Reply-To: <87mu18ba3n.fsf@wangari>
Accept-Language: en-SE, sv-SE, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.12.13.198]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-Saab-MailScanner-Information: Please contact the ISP for more information
X-Saab-MailScanner-ID: 08UCTSH6022824
X-Saab-MailScanner: Found to be clean
X-Saab-MailScanner-SpamCheck: not spam, SpamAssassin (not cached, score=-0.845, required 5, ALL_TRUSTED -1.00, BAYES_00 -0.50, KAM_NUMSUBJECT 0.50, TW_MQ 0.08, TW_QT 0.08, URIBL_BLOCKED 0.00)
X-Saab-MailScanner-From: ludwig.seitz@combitech.se
X-Saab-MailScanner-Watermark: 1602073769.00287@4cpvKOX1rIctq/j/JpO1CQ
X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.6.2 (weald.air.saab.se [136.163.212.3]); Wed, 30 Sep 2020 14:29:41 +0200 (CEST)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/IelNARBBf8-Au-ufB_fs8WweFjQ>
Subject: Re: [Ace] WGLC review of draft-ietf-ace-mqtt-tls-profile-07
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 Sep 2020 12:29:48 -0000

Hello Olaf,

The AS is supposed to have this information from the registration of the clients and RSs (see Appendix D).

The underlying assumption was that if the AS does not have this information it could not generate the right kind of access tokens anyways (e.g. selecting the right kind of pop-keys, the right kind of COSE wrapper).

/Ludwig

> I wonder how the AS is supposed to know which ace profiles the client
> implements?
> 
> [1] https://tools.ietf.org/rfcmarkup?doc=draft-ietf-ace-oauth-aut#section-5.6.3
> 
> Grüße
> Olaf