[Ace] Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs) spec addressing review comments

Mike Jones <Michael.Jones@microsoft.com> Sat, 01 July 2017 02:06 UTC

Return-Path: <Michael.Jones@microsoft.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3C80E131503 for <ace@ietfa.amsl.com>; Fri, 30 Jun 2017 19:06:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.02
X-Spam-Level:
X-Spam-Status: No, score=-2.02 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UaEktCCPuNP2 for <ace@ietfa.amsl.com>; Fri, 30 Jun 2017 19:06:20 -0700 (PDT)
Received: from NAM01-SN1-obe.outbound.protection.outlook.com (mail-sn1nam01on0134.outbound.protection.outlook.com [104.47.32.134]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 31E4F131511 for <ace@ietf.org>; Fri, 30 Jun 2017 19:06:18 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=UCk25aEDcirIEvy9Aah0Ii9mSPjKADjbUJPqxoIjzQ0=; b=THmcNg8CY/jcAaOBTG91i6fVSbR63KU00w13aNcGuxMnfKp/OAFgebJiU62tobq2MG/+LFImv7yTyPPoz/UYjsfo1q3gispyxZtuNFryQpTjiG5ycreiOW2RcODqHaqmYnSgP9pDoSHqLgGItQ3dQFDLJeILOEZn8zceOyIn8Sg=
Received: from BN6PR21MB0500.namprd21.prod.outlook.com (10.172.112.10) by BN6PR21MB0628.namprd21.prod.outlook.com (10.175.131.14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1240.4; Sat, 1 Jul 2017 02:06:15 +0000
Received: from BN6PR21MB0500.namprd21.prod.outlook.com ([10.172.112.10]) by BN6PR21MB0500.namprd21.prod.outlook.com ([10.172.112.10]) with mapi id 15.01.1240.006; Sat, 1 Jul 2017 02:06:15 +0000
From: Mike Jones <Michael.Jones@microsoft.com>
To: "ace@ietf.org" <ace@ietf.org>
Thread-Topic: Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs) spec addressing review comments
Thread-Index: AdLyCpPQiHCGZlkCQ/+P8qcd/FvqXw==
Date: Sat, 01 Jul 2017 02:06:15 +0000
Message-ID: <BN6PR21MB0500DF608C2B6635B34650E2F5D00@BN6PR21MB0500.namprd21.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=True; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Ref=https://api.informationprotection.azure.com/api/72f988bf-86f1-41af-91ab-2d7cd011db47; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Owner=mbj@microsoft.com; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2017-06-30T19:06:13.1439987-07:00; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=General; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Application=Microsoft Azure Information Protection; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Extended_MSFT_Method=Automatic; Sensitivity=General
authentication-results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=microsoft.com;
x-originating-ip: [50.47.93.167]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; BN6PR21MB0628; 7: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
x-ms-office365-filtering-correlation-id: 9dc27ec4-c68d-4695-5da3-08d4c025c13c
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(300000500095)(300135000095)(300000501095)(300135300095)(22001)(300000502095)(300135100095)(2017030254075)(300000503095)(300135400095)(48565401081)(2017052603031)(201703131423075)(201703031133081)(300000504095)(300135200095)(300000505095)(300135600095)(300000506095)(300135500095); SRVR:BN6PR21MB0628;
x-ms-traffictypediagnostic: BN6PR21MB0628:
x-microsoft-antispam-prvs: <BN6PR21MB06283D1E132A812745860127F5D00@BN6PR21MB0628.namprd21.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(151999592597050)(26388249023172)(236129657087228)(31418570063057)(148574349560750)(21748063052155);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(100000700101)(100105000095)(100000701101)(100105300095)(100000702101)(100105100095)(61425038)(6040450)(601004)(2401047)(8121501046)(2017060910020)(5005006)(3002001)(10201501046)(93006095)(93001095)(100000703101)(100105400095)(6055026)(61426038)(61427038)(6041248)(20161123560025)(20161123562025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123555025)(20161123558100)(20161123564025)(6072148)(100000704101)(100105200095)(100000705101)(100105500095); SRVR:BN6PR21MB0628; BCL:0; PCL:0; RULEID:(100000800101)(100110000095)(100000801101)(100110300095)(100000802101)(100110100095)(100000803101)(100110400095)(100000804101)(100110200095)(100000805101)(100110500095); SRVR:BN6PR21MB0628;
x-forefront-prvs: 0355F3A3AE
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(39840400002)(39860400002)(39400400002)(39850400002)(39410400002)(39450400003)(209900001)(51914003)(5660300001)(189998001)(2351001)(54356999)(5640700003)(99286003)(1730700003)(10290500003)(66066001)(236005)(10090500001)(3280700002)(6916009)(790700001)(3846002)(110136004)(38730400002)(7696004)(53936002)(54896002)(53376002)(50986999)(6306002)(606006)(2906002)(55016002)(8676002)(3660700001)(9686003)(81166006)(86362001)(7736002)(86612001)(6116002)(2501003)(5005710100001)(72206003)(6506006)(478600001)(966005)(8936002)(5630700001)(6436002)(77096006)(8990500004)(230783001)(14454004)(33656002)(74316002)(102836003)(25786009)(2900100001)(6606295002); DIR:OUT; SFP:1102; SCL:1; SRVR:BN6PR21MB0628; H:BN6PR21MB0500.namprd21.prod.outlook.com; FPR:; SPF:None; MLV:ovrnspm; PTR:InfoNoRecords; LANG:en;
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_BN6PR21MB0500DF608C2B6635B34650E2F5D00BN6PR21MB0500namp_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 Jul 2017 02:06:15.2489 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN6PR21MB0628
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/ZsRIm0betCz-tGfL0XnXElH2PXE>
Subject: [Ace] Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs) spec addressing review comments
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 01 Jul 2017 02:06:22 -0000

The Proof-of-Possession Key Semantics for CBOR Web Tokens (CWTs) specification has been updated to address comments received since its initial publication.  Changes were:

  *   Tracked CBOR Web Token (CWT) Claims Registry updates.
  *   Addressed review comments by Michael Richardson and Jim Schaad.
  *   Added co-authors Ludwig Seitz, Göran Selander, Erik Wahlström, Samuel Erdtman, and Hannes Tschofenig.

Thanks for the feedback received to date!

The specification is available at:

  *   https://tools.ietf.org/html/draft-jones-ace-cwt-proof-of-possession-01

An HTML-formatted version is also available at:

  *   http://self-issued.info/docs/draft-jones-ace-cwt-proof-of-possession-01.html

                                                       -- Mike

P.S.  This notice was also posted at http://self-issued.info/?p=1711 and as @selfissued<https://twitter.com/selfissued>.