Re: [Ace] [Editorial Errata Reported] RFC8392 (5852)

Jim Schaad <ietf@augustcellars.com> Tue, 03 September 2019 19:26 UTC

Return-Path: <ietf@augustcellars.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 621A5120043 for <ace@ietfa.amsl.com>; Tue, 3 Sep 2019 12:26:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id je0sKboZsFRd for <ace@ietfa.amsl.com>; Tue, 3 Sep 2019 12:26:23 -0700 (PDT)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DAF3E120025 for <ace@ietf.org>; Tue, 3 Sep 2019 12:26:22 -0700 (PDT)
Received: from Jude (73.180.8.170) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Tue, 3 Sep 2019 12:26:14 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: 'RFC Errata System' <rfc-editor@rfc-editor.org>, mbj@microsoft.com, erik@wahlstromstekniska.se, erdtman@spotify.com, Hannes.Tschofenig@arm.com, rdd@cert.org, kaduk@mit.edu, daniel.migault@ericsson.com
CC: lgl@island-resort.com, ace@ietf.org
References: <20190903185647.4079CB81227@rfc-editor.org>
In-Reply-To: <20190903185647.4079CB81227@rfc-editor.org>
Date: Tue, 03 Sep 2019 12:26:12 -0700
Message-ID: <038f01d5628d$754821f0$5fd865d0$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AQJw+r7hjvrub8t9fG3appKLG17/2aXjJVnA
Content-Language: en-us
X-Originating-IP: [73.180.8.170]
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/KPQlz9CHsceuo3O1cNbBJn2TD0Q>
X-Mailman-Approved-At: Tue, 03 Sep 2019 12:35:11 -0700
Subject: Re: [Ace] [Editorial Errata Reported] RFC8392 (5852)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Sep 2019 19:26:26 -0000

Recommend hold for update.

-----Original Message-----
From: RFC Errata System <rfc-editor@rfc-editor.org> 
Sent: Tuesday, September 3, 2019 11:57 AM
To: mbj@microsoft.com; erik@wahlstromstekniska.se; erdtman@spotify.com; Hannes.Tschofenig@arm.com; rdd@cert.org; kaduk@mit.edu; daniel.migault@ericsson.com; ietf@augustcellars.com
Cc: lgl@island-resort.com; ace@ietf.org; rfc-editor@rfc-editor.org
Subject: [Editorial Errata Reported] RFC8392 (5852)

The following errata report has been submitted for RFC8392, "CBOR Web Token (CWT)".

--------------------------------------
You may review the report below and at:
https://www.rfc-editor.org/errata/eid5852

--------------------------------------
Type: Editorial
Reported by: Laurence Lundblade <lgl@island-resort.com>

Section: A.3

Original Text
-------------
   d28443a10126a104524173796d6d657472696345434453413235365850a701756
   36f61703a2f2f61732e6578616d706c652e636f6d02656572696b77037818636f
   61703a2f2f6c696768742e6578616d706c652e636f6d041a5612aeb0051a5610d
   9f0061a5610d9f007420b7158405427c1ff28d23fbad1f29c4c7c6a555e601d6f
   a29f9179bc3d7438bacaca5acd08c8d4d4f96131680c429a01f85951ecee743a5
   2b9b63632c57209120e1c9e30

Corrected Text
--------------
   d28443a10126a104524173796d6d657472696345434453413235365850a70175
   636f61703a2f2f61732e6578616d706c652e636f6d02656572696b7703781863
   6f61703a2f2f6c696768742e6578616d706c652e636f6d041a5612aeb0051a56
   10d9f0061a5610d9f007420b7158405427c1ff28d23fbad1f29c4c7c6a555e60
   1d6fa29f9179bc3d7438bacaca5acd08c8d4d4f96131680c429a01f85951ecee
   743a52b9b63632c57209120e1c9e30

Notes
-----
The ASCII representation of binary bytes in Figure 10 is wrapped on an odd number of ASCII characters. Since there are two ASCII characters per binary bytes this splits the last byte over two lines. 

The CBOR playground (http://cbor.me) cannot handle this and errors out. 

This is slightly confusing for readers.

The actual bytes values are correct by all the checks I did.

Instructions:
-------------
This erratum is currently posted as "Reported". If necessary, please use "Reply All" to discuss whether it should be verified or rejected. When a decision is reached, the verifying party can log in to change the status and edit the report, if necessary. 

--------------------------------------
RFC8392 (draft-ietf-ace-cbor-web-token-15)
--------------------------------------
Title               : CBOR Web Token (CWT)
Publication Date    : May 2018
Author(s)           : M. Jones, E. Wahlstroem, S. Erdtman, H. Tschofenig
Category            : PROPOSED STANDARD
Source              : Authentication and Authorization for Constrained Environments
Area                : Security
Stream              : IETF
Verifying Party     : IESG