Re: [Ace] Review Comments on -03

Olaf Bergmann <bergmann@tzi.org> Tue, 31 July 2018 12:01 UTC

Return-Path: <bergmann@tzi.org>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8DF54130DC2; Tue, 31 Jul 2018 05:01:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level:
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id oKnyKAgJjYNf; Tue, 31 Jul 2018 05:01:30 -0700 (PDT)
Received: from smtp.uni-bremen.de (gabriel-vm-2.zfn.uni-bremen.de [134.102.50.17]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 69DDA128BAC; Tue, 31 Jul 2018 05:01:30 -0700 (PDT)
Received: from wangari.tzi.org (dynamic-218-7.informatik.uni-bremen.de [134.102.218.237]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.uni-bremen.de (Postfix) with ESMTPSA id 913BE2073F; Tue, 31 Jul 2018 14:01:28 +0200 (CEST)
From: Olaf Bergmann <bergmann@tzi.org>
To: Jim Schaad <ietf@augustcellars.com>
Cc: draft-ietf-ace-dtls-authorize@ietf.org, 'ace' <ace@ietf.org>
References: <00dc01d41c9e$af8ad9b0$0ea08d10$@augustcellars.com>
Date: Tue, 31 Jul 2018 14:01:28 +0200
In-Reply-To: <00dc01d41c9e$af8ad9b0$0ea08d10$@augustcellars.com> (Jim Schaad's message of "Sun, 15 Jul 2018 20:48:14 -0400")
Message-ID: <87va8vfwbr.fsf@tzi.org>
User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/26.1 (gnu/linux)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/g-zJMJTEB3C74dQiwpPHou19Q90>
Subject: Re: [Ace] Review Comments on -03
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 31 Jul 2018 12:01:34 -0000

Hi Jim,

Thank you for your detailed review and good comments. I will come up
with proposed changes within the next days.

One thing is not clear to me, see below:

Jim Schaad <ietf@augustcellars.com> writes:

> * Section 4.2 - Remove everything to do with renegotiation of TLS - It is no
> longer present in 1.3

I understand that you want a protocol that works immediately with TLS 1.3,
and everybody would like every version prior 1.3 to vanish immediately.
But does this mean that we do not address TLS1.2 in this protocol
at all?

Grüße
Olaf