Re: [Ace] draft-ietf-ace-dtls-authorize

Daniel Migault <daniel.migault@ericsson.com> Wed, 03 February 2021 18:17 UTC

Return-Path: <daniel.migault@ericsson.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5BF493A0D12 for <ace@ietfa.amsl.com>; Wed, 3 Feb 2021 10:17:33 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.35
X-Spam-Level:
X-Spam-Status: No, score=-2.35 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.25, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id OXaK5CC4q_gL for <ace@ietfa.amsl.com>; Wed, 3 Feb 2021 10:17:31 -0800 (PST)
Received: from NAM12-BN8-obe.outbound.protection.outlook.com (mail-bn8nam12on2069.outbound.protection.outlook.com [40.107.237.69]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6C2A83A0D09 for <ace@ietf.org>; Wed, 3 Feb 2021 10:17:31 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=mj+M4OrskI4a7ebtAcPCwZOVlgy254NQdb4bEQtiyDNXhdGWSfB6cu7NC3TzDYANUnmkMEOhYq6Xgcf2GvoHisr7mPpZLLSMHQYqYtxIGG+AyWlVXeJMZYtm5jLC+z0WQscTkBdquE+ONmEfly6znWeI91XW/Z0eHD40N/0nUPUwU+dElweeDmUOjZu/XE93WZCiXIWSULtSeCXwWdeuD/QRaH2sDr6/zvYVRNFE9xRduPxLa7/9W7L12IMhEUnIOU4QLWN78NAE5vafSIP4JyWUmYgo5TvgTg+IEVxGjGUxPlxhiP9cZCcLJylX4XKk15duIlN4gaNHH6EIFI5bXg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=hKFpF31OvMaQ3bQ7zQyqbrMb4nDWpnCnSX0CvCjDTp4=; b=Tx7aXEkE5w/YI+x1QCzl5VIgt7/BALgxL3DLEvk7gQV5MtQ6dtErUQYrFaZa7mwkTLMNeg/Y7+BiSuCAjHYLgHFKguiq+fzupMK7102JxMSfX+BMFqk6DPExbg+p6Cdi/fQwpsPkA4xO1tHc16YD+tJWPjzzzXWcAOeeYyN/Lq90k8y5HXlFm6Lwq/xDsjnQomf0InraJPYh9qac1azeRb/nxt0QB8Ow4Hg11V8+QnQNFshLHa6joP3PcPj1A4sPlH1mJX2I8ipydXBTGQ2KgBilBk8ap4GZKZ/ZN9wSfiEvNw+hytjLJ2T1Rhvpou/LA5z5Qi/V+KnP8CtOFvoa3w==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=hKFpF31OvMaQ3bQ7zQyqbrMb4nDWpnCnSX0CvCjDTp4=; b=jTPuGTtJdxLbRJEppuOCp8MRgljeLCkb3HklKtqFl9uq57/o3rSIFal3xbHb6tP24blS3ZwJ5hkTRLGnLNrrKpn7tftLhPWA1cfDpUYghtvrAcYbyqnsfe+RLlPkzT8tAOR1C2BQUdjxUuYgWynAcQB/RJIUXO+mDc1IKiZnT2A=
Received: from DM6PR15MB2379.namprd15.prod.outlook.com (2603:10b6:5:8a::16) by DM6PR15MB3483.namprd15.prod.outlook.com (2603:10b6:5:162::28) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3825.19; Wed, 3 Feb 2021 18:17:25 +0000
Received: from DM6PR15MB2379.namprd15.prod.outlook.com ([fe80::a9f9:326f:8cfb:157b]) by DM6PR15MB2379.namprd15.prod.outlook.com ([fe80::a9f9:326f:8cfb:157b%7]) with mapi id 15.20.3825.017; Wed, 3 Feb 2021 18:17:25 +0000
From: Daniel Migault <daniel.migault@ericsson.com>
To: Olaf Bergmann <bergmann@tzi.org>, Francesca Palombini <francesca.palombini@ericsson.com>
CC: "ace@ietf.org" <ace@ietf.org>, Benjamin Kaduk <kaduk@mit.edu>
Thread-Topic: [Ace] draft-ietf-ace-dtls-authorize
Thread-Index: AQHW9ZUs7LKYTzgsQE6xxm6/1BNMyao9RgROgAFQYACACCrnJIAABN9X
Date: Wed, 03 Feb 2021 18:17:25 +0000
Message-ID: <DM6PR15MB2379E850A7BE3C01382E55E4E3B49@DM6PR15MB2379.namprd15.prod.outlook.com>
References: <DM6PR15MB237928B2B84B18E9AE050EC3E3BA9@DM6PR15MB2379.namprd15.prod.outlook.com> <8735ylc7hi.fsf@wangari> <3148902D-F91E-40E1-AC9B-2110DB46CCD5@ericsson.com>,<87eehxnid2.fsf@wangari>
In-Reply-To: <87eehxnid2.fsf@wangari>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: tzi.org; dkim=none (message not signed) header.d=none;tzi.org; dmarc=none action=none header.from=ericsson.com;
x-originating-ip: [96.22.11.129]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 9fc23011-2a33-465c-42a8-08d8c86ff58b
x-ms-traffictypediagnostic: DM6PR15MB3483:
x-ms-exchange-transport-forked: True
x-microsoft-antispam-prvs: <DM6PR15MB34831BBEF0DAE35D64279DBCE3B49@DM6PR15MB3483.namprd15.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DM6PR15MB2379.namprd15.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(39860400002)(366004)(376002)(346002)(396003)(136003)(4326008)(478600001)(66946007)(66476007)(66556008)(64756008)(66446008)(52536014)(91956017)(76116006)(4744005)(53546011)(6506007)(5660300002)(186003)(26005)(19627405001)(6636002)(71200400001)(8676002)(44832011)(55016002)(9686003)(54906003)(110136005)(83380400001)(8936002)(7696005)(316002)(33656002)(86362001)(2906002); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: kNL3yVlnLQhq7rlxkdSKzh6QHrFSMCNL9DvNrbRy66E6stfZcON+2ESGeBRYip690MQArZ9Gt4F9YVAR6LtTqzepNYfleVC+rIxvtxDo5Augzb6/neFAvCj7oO3gEF4eXaanYnsm/VSW10cVEac7Q2R3P84CH6HvrcvCKFWEETVf+UzOLLswbNAq73qI8IAMIBvt5LByoodSvZ5NSEJDdQTEw3hVHROm3pfFXzwJlncsWka6O18YYMqLA5tA2XmshU+hZPzHy2BYxT9yy7c8faxin7i8mAVkiiATIM6MoMNXB1pvND6NzrNONpWiyQ0ZPXuLc8d6pKquB+4z9zjlky0DTL7u8lZ+AmLzNFmoFWCAG+hQ8JerNEA8iLGc6XpWfVgWwb5UMGsf2GONHFuPQlYBD1t1USDCguVaB3RA7FHXxHVt2v37+s0Z78IhIqJg9PUkbharIpBUyFNbkhp3wyr9rTFjZ73Plnf1/CzHVCVvoapGSJPvtn6BdwwLtQv5iZZNKNDn0tc3GfjPJROf8Advb2YXvcLutbBk8rZCdqY/5dfIcijnxepSi5TMckYh3pnu/9/sCEZLfM02m64cQbIVBkfVPCQbbanNVgNeFOm7OH/EUeXHmyoNz8KpHQwvZHkGsRPKcWB+sDNN0I1CfofK/KRkKYFVxumhfz7nBVSIvbsNJliwjOBB2KwctMg+t4N3VUYUVROA6TfKqISPjYSCttubO28cE7av3nTGpv7l1U/WSydW1spWNE7rowuYHdegVYmekiL2H7xUH6xvMuA8pjQSqOojqFr9bqbHTzURE/FydVaB0Z9gykUjtLKDqdE3ft20ixd2iiY/NdfipCBd5pN3Uaycft0/+6MQBjMSG3cqYZcwh81FwlR22o8YGgciHVbDecqKjP1/Co8PMOXuvypTyQaQTUQ7LrkP7fxAq5wqp/mIwCaoIcmfkw/EvbdtgnMavUXpXN4zLz8uray+YygIWMzOnpu3C1vD92Aoq987uLeGcu9EivLtirBLx41WCSClcp4HdTMZJBXgbwcF5SRQF8OwHSk6d0CTwfGLYQwioRKfOzJFO5mj00dp
Content-Type: multipart/alternative; boundary="_000_DM6PR15MB2379E850A7BE3C01382E55E4E3B49DM6PR15MB2379namp_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM6PR15MB2379.namprd15.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 9fc23011-2a33-465c-42a8-08d8c86ff58b
X-MS-Exchange-CrossTenant-originalarrivaltime: 03 Feb 2021 18:17:25.7715 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: lktiQ/Td1v41i0Zwj35sIiL3vuCe7V3aB0kI5WRKPY0dNb6tpEv60aC3cYmHDn+LjOEoft54Ny9hWnj8B1O4PgDP5U52q9vlq3ys5hq7J/0=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR15MB3483
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/JystZs3sT5wRTiQn5lhrxYdjlZ4>
Subject: Re: [Ace] draft-ietf-ace-dtls-authorize
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Feb 2021 18:17:33 -0000

great, so I suggest we publish the update before next interim meeting.

Yours,
Daniel
________________________________
From: Olaf Bergmann <bergmann@tzi.org>
Sent: Wednesday, February 3, 2021 12:58 PM
To: Francesca Palombini <francesca.palombini@ericsson.com>
Cc: ace@ietf.org <ace@ietf.org>; Benjamin Kaduk <kaduk@mit.edu>; Daniel Migault <daniel.migault@ericsson.com>
Subject: Re: [Ace] draft-ietf-ace-dtls-authorize

On 2021-01-29, Francesca Palombini <francesca.palombini=40ericsson.com@dmarc.ietf.org> wrote:

> So my preference would update the text in the DTLS profile:
>
> NEW:
>    The use of CoAP
>    and DTLS for this communication is RECOMMENDED in this profile, other
>    protocols fulfilling the security
>    requirements defined in section 5 of [I-D.ietf-ace-oauth-authz] MAY be
>    used instead.

I can live with that.

Grüße
Olaf