Re: [Ace] I-D Action: draft-ietf-ace-coap-est-15.txt

"Panos Kampanakis (pkampana)" <pkampana@cisco.com> Tue, 01 October 2019 15:32 UTC

Return-Path: <pkampana@cisco.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4B58F12091D; Tue, 1 Oct 2019 08:32:19 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.501
X-Spam-Level:
X-Spam-Status: No, score=-14.501 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=dl4s38nQ; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=Rc61m2/f
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JGjh_nyr8KZE; Tue, 1 Oct 2019 08:32:17 -0700 (PDT)
Received: from alln-iport-2.cisco.com (alln-iport-2.cisco.com [173.37.142.89]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E66431209BF; Tue, 1 Oct 2019 08:32:16 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=2347; q=dns/txt; s=iport; t=1569943937; x=1571153537; h=from:to:subject:date:message-id:references:in-reply-to: content-transfer-encoding:mime-version; bh=aGfJdAIXe2rZtwCNBn8JHxYWIzHGGoQDXtsLvZL8Djw=; b=dl4s38nQQ0ltCmeHtCJRkmQUokFf84zI06t6ZzGrlH9D3lkQam6tk17V CRj0+eEnd0Ad7bD5AKDbT/0cku4NGfrz1MF3UQb0mygjbHlC7XprCE069 pl2c8A7GYnkaPfw1xIwoxJgctrzXBJCWmlkElHdy3VuIsXrLkvWMn8866 c=;
IronPort-PHdr: =?us-ascii?q?9a23=3AwZ2X+xNawiGtRRORklYl6mtXPHoupqn0MwgJ65?= =?us-ascii?q?Eul7NJdOG58o//OFDEu6w/l0fHCIPc7f8My/HbtaztQyQh2d6AqzhDFf4ETB?= =?us-ascii?q?oZkYMTlg0kDtSCDBjjL/fvdyU8FexJVURu+DewNk0GUMs=3D?=
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: =?us-ascii?q?A0DtAAA+cZNd/49dJa1mHAEBAQQBAQw?= =?us-ascii?q?EAQGBVQUBAQsBgUpQA21WIAQLKodpA4pfTYIPl3eBLoEkA1QJAQEBDAEBGAs?= =?us-ascii?q?KAgEBhEACgi8jNgcOAgMJAQEEAQEBAgEFBG2FLQyFSwEBAQEDAQEQKAYBASw?= =?us-ascii?q?GBgsEAgEIEQQBAR8QJwsdCAIEARIIGoMBgWoDHQECDKQxAoE4iGGCJ4J9AQE?= =?us-ascii?q?FgTgCDkGCfhiCFwmBNAGFFYZ4GIFAP4FXgkw+gmEBAQIBARaBSYM9giatKQq?= =?us-ascii?q?CIoYiZI4mgjhyhlyPM44jiByRDQIEAgQFAg4BAQWBWQYsgVhwFRohgmwJRxA?= =?us-ascii?q?UgU+Dc4UUhT90gSmQRAEB?=
X-IronPort-AV: E=Sophos;i="5.64,571,1559520000"; d="scan'208";a="342590209"
Received: from rcdn-core-7.cisco.com ([173.37.93.143]) by alln-iport-2.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 01 Oct 2019 15:31:54 +0000
Received: from XCH-ALN-013.cisco.com (xch-aln-013.cisco.com [173.36.7.23]) by rcdn-core-7.cisco.com (8.15.2/8.15.2) with ESMTPS id x91FVsVR005105 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Tue, 1 Oct 2019 15:31:54 GMT
Received: from xhs-rtp-002.cisco.com (64.101.210.229) by XCH-ALN-013.cisco.com (173.36.7.23) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Tue, 1 Oct 2019 10:31:53 -0500
Received: from xhs-rtp-001.cisco.com (64.101.210.228) by xhs-rtp-002.cisco.com (64.101.210.229) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Tue, 1 Oct 2019 11:31:53 -0400
Received: from NAM01-SN1-obe.outbound.protection.outlook.com (64.101.32.56) by xhs-rtp-001.cisco.com (64.101.210.228) with Microsoft SMTP Server (TLS) id 15.0.1473.3 via Frontend Transport; Tue, 1 Oct 2019 11:31:53 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=A6K3yDGnA0kX4oedewLJplvQg9cL/8mS5R8s1jxdBjSJlpwiEfgKRXIDJuVBYjeYqRcZKRL+81WLQTo+nrykFGvIEgqH+zu5rOMXiU3XxF4A4Q4obBSvMzcMC1W21A1pMOh+N2GrN7P+USrpJm3400sVR5N+pUYvmcgPMXwsKtYxH5g7G4owSGiNFhXIc+Hef0xN6aoibKQ8yEPdSPhFIlb1weJGuQmeC1QeHKy/wUTaEajHEwOqzk0eHMlk1Z09eEYUhFxY+KnXCcfNIdZDpebEZOPieEKeVsc03MdWG90oLQ/VwWc+FKH0yEm9TCWeo7NBJXe5sC+EkWwK/7mWyA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=02q052pruXoAX6uSYp6Rb+oye8zBWogeqANjQuDdXJI=; b=WGMO64SjpEcVaTMOec+B8KrrwpIeou+2CYDlpGfTIcVWd1Vbl8P6+FyVCmGDJWmaWvQNlKOKRGBKQT3kaghMW95xUFkPhvVJFs75UU1GpEphMUWacm58rFnmYRYhH25MKkhza+oLnBNOmXZ2zgJ/+KdeEN/YhoWBZYOEmlgMHknFXpIdVPC6Rtjg7WLSCexWflH745CEVZWZpVrROe6cx3ZQsnvee67GxbBzE0pq19ywJ1oeMom9it6vgu7da981w9/OKDqFvUQ8HNqfaF4934Xe9nutgo+Ei8lTocOb0Y3JkI1/wolXHTZvZNciRPhc0Bb3wQdW5lh+VfYVhRq5Og==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=02q052pruXoAX6uSYp6Rb+oye8zBWogeqANjQuDdXJI=; b=Rc61m2/fQfzq8H+T8uLzRsIXGhV9tVDeu3lwVKAbfPabgXWDNfPQyX9BABxLE8F22lNvjmlg7q+Sm7MB4BumsXY7u5/kcYv1IEoTVsuuatzr0ogsrYVWrpWFgWmJLFdu6/I2IS3/OcwphL3FYyJmKTJMt+fJ/1knSa7xxMo5rUw=
Received: from BN7PR11MB2547.namprd11.prod.outlook.com (52.135.255.146) by BN7PR11MB2804.namprd11.prod.outlook.com (52.135.254.12) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2305.15; Tue, 1 Oct 2019 15:31:51 +0000
Received: from BN7PR11MB2547.namprd11.prod.outlook.com ([fe80::20df:b3df:537d:fd20]) by BN7PR11MB2547.namprd11.prod.outlook.com ([fe80::20df:b3df:537d:fd20%7]) with mapi id 15.20.2305.022; Tue, 1 Oct 2019 15:31:51 +0000
From: "Panos Kampanakis (pkampana)" <pkampana@cisco.com>
To: "ace@ietf.org" <ace@ietf.org>, "i-d-announce@ietf.org" <i-d-announce@ietf.org>
Thread-Topic: [Ace] I-D Action: draft-ietf-ace-coap-est-15.txt
Thread-Index: AQHVeGtaWoHFXfxTIE6isck77sNcFqdF5tdA
Date: Tue, 1 Oct 2019 15:31:51 +0000
Message-ID: <BN7PR11MB2547B058222D2B0AEAE8D0D4C99D0@BN7PR11MB2547.namprd11.prod.outlook.com>
References: <156994301193.23520.6251549566074022596@ietfa.amsl.com>
In-Reply-To: <156994301193.23520.6251549566074022596@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=pkampana@cisco.com;
x-originating-ip: [2001:420:c0c4:1006::151]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 6d710b8b-d357-4388-9f90-08d746847b5c
x-ms-traffictypediagnostic: BN7PR11MB2804:
x-ms-exchange-purlcount: 5
x-microsoft-antispam-prvs: <BN7PR11MB2804C26791D7346AE572D526C99D0@BN7PR11MB2804.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8273;
x-forefront-prvs: 0177904E6B
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(4636009)(396003)(376002)(366004)(136003)(346002)(39860400002)(189003)(199004)(13464003)(60444003)(7736002)(305945005)(76116006)(7696005)(71200400001)(66946007)(66476007)(8936002)(486006)(6246003)(186003)(450100002)(25786009)(71190400001)(74316002)(66446008)(64756008)(66556008)(102836004)(6506007)(53546011)(478600001)(81166006)(2501003)(81156014)(76176011)(52536014)(99286004)(5660300002)(66574012)(256004)(316002)(110136005)(6116002)(14454004)(46003)(966005)(86362001)(229853002)(6436002)(476003)(8676002)(11346002)(33656002)(446003)(6306002)(55016002)(9686003)(2906002); DIR:OUT; SFP:1101; SCL:1; SRVR:BN7PR11MB2804; H:BN7PR11MB2547.namprd11.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: cisco.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 17nb/Jc9kQJPKg+72ZS1s7bpoB6ALEuc5d3iu0rXzHCPHSaarWM2erPaA89xjNrb3cMLZa+Z4Hy/QcTTWElh7I/mi5i0yLyby+YLdo/TCfzXv7vBFZ8GzfvoX6xFhn42lwZZoL9u2/EqcQLLgYtpK+mxXE7ywWhOHNwBp/WoLi2cwlFyCMkzLv0S6NBBb0Jg/j6MP0WldM4pPyMOPh1Ga2ptPjbeppBECZF2DJ/8dYXFLgUsateO/6q9pfxhkQ2Y8ZbWOttgCAKUogca8m1HuHCUi8LnJniqXdAtM418VJt2rT8kbZ38rbb7Anows4BdO3RkZUwhq6DJsBKqlhElYYE1UEr7G5/gHw4y0+PQ1npoAr6VUThDY7DMpm1enXl1/pRK7Pl7p8Jv415Z7zHcELB6ThCqwhOh3et9eRiQMWuaxzb7dw/93pSZF+jI6AewIE43+9ubP5SkX7T6cswFKw==
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-Network-Message-Id: 6d710b8b-d357-4388-9f90-08d746847b5c
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 Oct 2019 15:31:51.4320 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: gJk++2iQDv+W7B1fRsRhdMut0XP3SUoVrPkg2Z/tdO22zl97CsC4S4YJauhX2wWXJTmm3VyS2RIv8AhJYLFjow==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN7PR11MB2804
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.36.7.23, xch-aln-013.cisco.com
X-Outbound-Node: rcdn-core-7.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/LhTgq5zVu9lWY8Qj_wrCsliXpfg>
Subject: Re: [Ace] I-D Action: draft-ietf-ace-coap-est-15.txt
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 01 Oct 2019 15:32:19 -0000

Hello, 

The v15 iteration addresses Ben K.'s latest feedback in response to the fixes that went in after his AD review. Thank you for the detailed feedback Ben. 
The diff from v14 is here https://www.ietf.org/rfcdiff?url2=draft-ietf-ace-coap-est-15 

I think it could move to the next stage now. 

Thanks,
Panos


-----Original Message-----
From: Ace <ace-bounces@ietf.org>; On Behalf Of internet-drafts@ietf.org
Sent: Tuesday, October 01, 2019 11:17 AM
To: i-d-announce@ietf.org
Cc: ace@ietf.org
Subject: [Ace] I-D Action: draft-ietf-ace-coap-est-15.txt


A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Authentication and Authorization for Constrained Environments WG of the IETF.

        Title           : EST over secure CoAP (EST-coaps)
        Authors         : Peter van der Stok
                          Panos Kampanakis
                          Michael C. Richardson
                          Shahid Raza
	Filename        : draft-ietf-ace-coap-est-15.txt
	Pages           : 50
	Date            : 2019-10-01

Abstract:
   Enrollment over Secure Transport (EST) is used as a certificate
   provisioning protocol over HTTPS.  Low-resource devices often use the
   lightweight Constrained Application Protocol (CoAP) for message
   exchanges.  This document defines how to transport EST payloads over
   secure CoAP (EST-coaps), which allows constrained devices to use
   existing EST functionality for provisioning certificates.


The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-ace-coap-est/

There are also htmlized versions available at:
https://tools.ietf.org/html/draft-ietf-ace-coap-est-15
https://datatracker.ietf.org/doc/html/draft-ietf-ace-coap-est-15

A diff from the previous version is available at:
https://www.ietf.org/rfcdiff?url2=draft-ietf-ace-coap-est-15


Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org.

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/

_______________________________________________
Ace mailing list
Ace@ietf.org
https://www.ietf.org/mailman/listinfo/ace