[Ace] Re: Deb Cooley's No Objection on draft-ietf-ace-revoked-token-notification-08: (with COMMENT)

Marco Tiloca <marco.tiloca@ri.se> Wed, 11 September 2024 21:29 UTC

Return-Path: <marco.tiloca@ri.se>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0D969C17C8A5; Wed, 11 Sep 2024 14:29:35 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.096
X-Spam-Level:
X-Spam-Status: No, score=-2.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_FILL_THIS_FORM_SHORT=0.01, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=ri.se
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ha0KXXN9FElb; Wed, 11 Sep 2024 14:29:30 -0700 (PDT)
Received: from GVZP280CU001.outbound.protection.outlook.com (mail-swedencentralazon11021125.outbound.protection.outlook.com [52.101.81.125]) (using TLSv1.2 with cipher ECDHE-ECDSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 44463C1388BA; Wed, 11 Sep 2024 14:29:30 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=OxLpRbaegSixutxOhFHkkRyiy1SgIt+Tg2qErcxFMpMFhuLbLC9tTK1NbkgBHUR0o+zS/Slg1IeJNxjPJooufgXG/DRJ204Km4/R/O8s2sFUku6MEEsxlUPuUvCJD8jSmuTQvRNIvOK11K/MqOdNwiYaOfMLpEapO8WWDnNUwUdZG2Cn8Pv69sdRx5JKmEKn+pG5xSNlRv6VBd4toS2e2qcwa97pN2UQsDqY+1BAqmON0hSJ/lIlKnVPNWtOucjCCnWr+zfoHm37HnSR1XF/BU4Nc+EEugl79D+MMq7fcvBMAh7zfWbVi5WAPwecrkedGJ3Hz3FdS6eZvtLo5XhINg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=MU7ONyYTSdEJK2lt7BjDfR/K3h+XZXKXzbGQ+ps5a2s=; b=Qg9t68xJQn9iHUUAuIFQh/My9dC5kSnc0OiEQsX+XIwrgp6SPp5TJiHhGX2JgdxQIXzq8ZOX29z9oFdMIbuu0VsdqXXAE2rjRi3XWnDNRGS5PkBYsjf/pwwQzA7i/Lo8h+ep+aImFAp0FV8ymWJHTODBUo6AKdtyA3TFcmO8sdA5vllOk0uELxBSLsVJysyyR0fi23Iwq0uKZ5f8F7uPj1mj17Z1yNJo6sYXDuqM2wgEA9dPvtpWsT1jIAuCK2rHV7vGhM72ZTnJUeTKZjHa+BlGGeMlZMfbmaec96zKXQuwnVDCk5YqZiBmbttJVWG2mEKoI/lgjvMpkM69F0ZZBg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ri.se; dmarc=pass action=none header.from=ri.se; dkim=pass header.d=ri.se; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ri.se; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=MU7ONyYTSdEJK2lt7BjDfR/K3h+XZXKXzbGQ+ps5a2s=; b=Lme4yh1D+y0w7p7d/YI158/BwSR2TmuqVgmgOZL4cDiP59uFP9P6UzS1+TMTDfLbijaBYzo2774AAgLEqkuMUdCq3gJ8m6aSHz1GGxLhFOE4Cxf1Z89h4SBt0dXwvmTq73c4ULLZXkRgKmfIzeLa9DxYVIsgL9x/dRe0BEYfyl4vhmhSdlm4QwLJ7Fqp8JADttFGpgJx04lRh4qRYPgF/JZl3uVG8LyqPDpEs17lt8uGa8oWNfZ3wInCe/3P/Va2ktejkLUEulRAAZiQ3nAyFcMJC16tV5WOBWsMW97x7PpdnCrnWrO7o+AD6eddOzdBv5+ZkiKTOfKaIz8gAwxPNQ==
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ri.se;
Received: from GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:37::17) by GV3P280MB0674.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:15::5) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7962.17; Wed, 11 Sep 2024 21:29:25 +0000
Received: from GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM ([fe80::b1d3:d63d:ce0b:3f70]) by GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM ([fe80::b1d3:d63d:ce0b:3f70%6]) with mapi id 15.20.7962.017; Wed, 11 Sep 2024 21:29:24 +0000
Message-ID: <be0ca0af-2f3a-4b97-a1ac-ab823f12263f@ri.se>
Date: Wed, 11 Sep 2024 23:29:21 +0200
User-Agent: Mozilla Thunderbird
To: Deb Cooley <debcooley1@gmail.com>, The IESG <iesg@ietf.org>
References: <172027272722.187.13479071893671944281@dt-datatracker-5f88556585-j5r2h>
Content-Language: en-US
From: Marco Tiloca <marco.tiloca@ri.se>
Autocrypt: addr=marco.tiloca@ri.se; keydata= xsBNBFSNeRUBCAC44iazWzj/PE3TiAlBsaWna0JbdIAJFHB8PLrqthI0ZG7GnCLNR8ZhDz6Z aRDPC4FR3UcMhPgZpJIqa6Zi8yWYCqF7A7QhT7E1WdQR1G0+6xUEd0ZD+QBdf29pQadrVZAt 0G4CkUnq5H+Sm05aw2Cpv3JfsATVaemWmujnMTvZ3dFudCGNdsY6kPSVzMRyedX7ArLXyF+0 Kh1T4WUW6NHfEWltnzkcqRhn2NcZtADsxWrMBgZXkLE/dP67SnyFjWYpz7aNpxxA+mb5WBT+ NrSetJlljT0QOXrXMGh98GLfNnLAl6gJryE6MZazN5oxkJgkAep8SevFXzglj7CAsh4PABEB AAHNNk1hcmNvIFRpbG9jYSAobWFyY28udGlsb2NhQHJpLnNlKSA8bWFyY28udGlsb2NhQHJp LnNlPsLAdwQTAQgAIQUCWkAnkAIbAwULCQgHAgYVCAkKCwIEFgIDAQIeAQIXgAAKCRDuJmS0 DljaQwEvCACJKPJIPGH0oGnLJY4G1I2DgNiyVKt1H4kkc/eT8Bz9OSbAxgZo3Jky382e4Dba ayWrQRFen0aLSFuzbU4BX4O/YRSaIqUO3KwUNO1iTC65OHz0XirGohPUOsc0SEMtpm+4zfYG 7G8p35MK0h9gpwgGMG0j0mZX4RDjuywC88i1VxCwMWGaZRlUrPXkC3nqDDRcPtuEGpncWhAV Qt2ZqeyITv9KCUmDntmXLPe6vEXtOfI9Z3HeqeI8OkGwXpotVobgLa/mVmFj6EALDzj7HC2u tfgxECBJddmcDInrvGgTkZtXEVbyLQuiK20lJmYnmPWN8DXaVVaQ4XP/lXUrzoEzzsBNBFSN eRUBCACWmp+k6LkY4/ey7eA7umYVc22iyVqAEXmywDYzEjewYwRcjTrH/Nx1EqwjIDuW+BBE oMLRZOHCgmjo6HRmWIutcYVCt9ieokultkor9BBoQVPiI+Tp51Op02ifkGcrEQNZi7q3fmOt hFZwZ6NJnUbA2bycaKZ8oClvDCQj6AjEydBPnS73UaEoDsqsGVjZwChfOMg5OyFm90QjpIw8 m0uDVcCzKKfxq3T/z7tyRgucIUe84EzBuuJBESEjK/hF0nR2LDh1ShD29FWrFZSNVVCVu1UY ZLAayf8oKKHHpM+whfjEYO4XsDpV4zQ15A+D15HRiHR6Adf4PDtPM1DCwggjABEBAAHCwF8E GAECAAkFAlSNeRUCGwwACgkQ7iZktA5Y2kPGEwf/WNjTy3z74vLmHycVsFXXoQ8W1+858mRy Ad0a8JYzY3xB7CVtqI3Hy894Qcw4H6G799A1OL9B1EeA8Yj3aOz0NbUyf5GW+iotr3h8+KIC OYZ34/BQaOLzdvDNmRoGHn+NeTzhF7eSeiPKi2jex+NVodhjOVGXw8EhYGkeZLvynHEboiLM 4TbyPbVR9HsdVqKGVTDxKSE3namo3kvtY6syRFIiUz5WzJfYAuqbt6m3TxDEb8sA9pzaLuhm fnJRc12H5NVZEZmE/EkJFTlkP4wnZyOSf/r2/Vd0iHauBwv57cpY6HFFMe7rvK4s7ME5zctO Ely5C6NCu1ZaNtdUuqDSPA==
In-Reply-To: <172027272722.187.13479071893671944281@dt-datatracker-5f88556585-j5r2h>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------7Iea6koiQMOn8yNLLLIJjNa2"
X-ClientProxiedBy: AM8P190CA0015.EURP190.PROD.OUTLOOK.COM (2603:10a6:20b:219::20) To GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:37::17)
MIME-Version: 1.0
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: GVYP280MB0464:EE_|GV3P280MB0674:EE_
X-MS-Office365-Filtering-Correlation-Id: 098cade5-73b6-46cd-341a-08dcd2a8cedb
X-LD-Processed: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8,ExtAddr
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;ARA:13230040|376014|366016|1800799024;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM;PTR:;CAT:NONE;SFS:(13230040)(376014)(366016)(1800799024);DIR:OUT;SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: zA3kPhfvQq+dz8PDv6Fdz3w+1p64RwYguQ6tlbeaL8LaIvDP2TsiQbx5tBmRDRiY2B/T6UQqWfxfS1O3z4vJmwf5t8DRoVw4kbJ+cea+evDWJjlJGdd0OI5qUDJaMujsg1VsUhr8APGup7H3yTu94B2wpAsAvwYLYUnT35Pt4Io9EgQI/kFNhfmKZoU3J/VAY93S1L1waLYqmOYhkirPn60A4l78MpspRRflLydkYhDhEQZcuCzccajlznW1Hrvxnqg+kBLdXWmWsF0y8iKAvlK9ZP/xby/E03GntMUT0RPqi4NRjyASdlKXWO7r7n3EJ2elMsc/WIZ+rkrF3f0xyvAFePsG1C9ox4VArtXQp6XyYfkDnbJtsmlOD4/heCDzaT+xuHMBn1TibL/qKSuOcm7+xDp+Hbd59EMmiMt055Pco3Antgi/aiIimJAhKZ8OOZl1opIOxYnKd95ZWrw5NsCnUzFqcWgmCM8LCsBw1sEVvUuw2H/YgFMwXYF9BTBXP28z5zZc/hOE3LleUgXO+wQRA16sa9aZI5qDcwvFXKsCa9YOr8zWgMSTehdyFtifBX/SI/p9yWAEjOjGSvj4x+7uJRl7tCwcljfpyhhbHG7DbitjbIrhh/WSwvVhuFwNiQT8Zj/2RfhDS5rg3YV35xmBqbO9tPkWk10QnUi5J1ZgE6rU5pDUTXN7v0gramUh5fnbP6bqfs/MKteEzJ0gRYZHzxCAUXwkt5k3fkfRSileZbprVM4i0/Y46niLTgJNLJIVtxxxLHCN0AFQ/AfID7yAQ09iffuAMJjPulzEXMthc/GJxzMynCq+1Qpq0ITiQSzUGwRUQmBjX07dI3TBJ6Ge1eUV+DDDJLXxLWHoYpVr5I+sXsCyFbw5ZpxO+UuJIPzGJmjY57ErBrYa20iAGnOB7f5b2ZgM693S2yVllauoJRyEWYLJQ/RtMWp7UP/WzE/GDbhk9yjDSag9yrqJbD9uY67/V4kx+Fcnkp64xLx1roAAhNGcKI/B6r0yvjv5ZExQrHT1ylG0lClN4SYXivnRqp0+WBbN/3rP2s6cT7v2/wVbQdjjb09+J/bv8OoqoFx5e/rnmwPWydtMBIiVrqro7ybO7CbBE0eh9BU7XW1DuCQDFyoESh9EYlHxtsb6L7wf7dyKogV+ev3FYPO5IanH46qb41afnaAmClfvwHYcQ9KngYB/kUIG4E89lF5bVGAnKGfz12NRgwFGkT83AetYaGdl55cWvKbwuRm0PS6XqMOkscSWPOFnvk6Cgh0gBjMfHByMrM/4oUMgHAnON6LvTjrHKCzkpGePUEJiEdrRa24HZPe5EDvBDaKl/cptyQlKzTwZUoUjbVlIq06+fWzqJ0Va02Ua9ub7XzKhu1FdVJuz2JWZy2YermI+akVTg5MQTA2QUHyU/xlYeHA6kt3+cBnCqKnst08r0689r+Z9Mz0VWSzHPa5KXwqVPeQWmk/NmusF/f5PE842c3+QizpNHNfTEKAK/v5siQI8MbDbCObfY8tbtm3YtQyRsNsINjU4SOg9u6Hollkttbg+hj92mhWW4OX8e4Za3sAvUuyOUoDjzmt9VZAZuZ/b/FiO
X-OriginatorOrg: ri.se
X-MS-Exchange-CrossTenant-Network-Message-Id: 098cade5-73b6-46cd-341a-08dcd2a8cedb
X-MS-Exchange-CrossTenant-AuthSource: GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 11 Sep 2024 21:29:24.7983 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: ocJ4KRmG5ZWgzZfecnwItMGUnemxA9RgUNiX3SqnEUhp+KePHtekBMTB0Sz01qDJMwNW7FxHBrJs3N/hAv9N/A==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: GV3P280MB0674
Message-ID-Hash: LIJK2WNRFJVXM2CJDFETO4K2XIORHVZM
X-Message-ID-Hash: LIJK2WNRFJVXM2CJDFETO4K2XIORHVZM
X-MailFrom: marco.tiloca@ri.se
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-ace.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: draft-ietf-ace-revoked-token-notification@ietf.org, ace-chairs@ietf.org, ace@ietf.org, goran.selander@ericsson.com
X-Mailman-Version: 3.3.9rc4
Precedence: list
Subject: [Ace] Re: Deb Cooley's No Objection on draft-ietf-ace-revoked-token-notification-08: (with COMMENT)
List-Id: "Authentication and Authorization for Constrained Environments (ace)" <ace.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/juQWSd6GfJLd9-leh2NblcLz2PI>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Owner: <mailto:ace-owner@ietf.org>
List-Post: <mailto:ace@ietf.org>
List-Subscribe: <mailto:ace-join@ietf.org>
List-Unsubscribe: <mailto:ace-leave@ietf.org>

Hello Deb,

Thanks a lot for your review! Please find in line below our detailed 
replies to your comments.

A Github PR where we have addressed your comments is available at [PR].

Unless any concern is raised, we plan to soon merge this PR (and the 
other ones related to other received reviews), and to submit the result 
as version -09 of the document.

Thanks,
/Marco

[PR] https://github.com/ace-wg/ace-revoked-token-notification/pull/17


On 2024-07-06 15:32, Deb Cooley via Datatracker wrote:
> Deb Cooley has entered the following ballot position for
> draft-ietf-ace-revoked-token-notification-08: No Objection
>
> When responding, please keep the subject line intact and reply to all
> email addresses included in the To and CC lines. (Feel free to cut this
> introductory paragraph, however.)
>
>
> Please refer tohttps://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fabout%2Fgroups%2Fiesg%2Fstatements%2Fhandling-ballot-positions%2F&data=05%7C02%7Cmarco.tiloca%40ri.se%7C970c5fc6a6de4b05ba7308dc9dc00998%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638558695329472322%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=AV32d%2FHdDlzyyMg2xyB67jrY3Seopa2jHLtsso28F%2F4%3D&reserved=0 
> for more information about how to handle DISCUSS and COMMENT positions.
>
>
> The document, along with other ballot positions, can be found here:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-ace-revoked-token-notification%2F&data=05%7C02%7Cmarco.tiloca%40ri.se%7C970c5fc6a6de4b05ba7308dc9dc00998%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638558695329482887%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=28GU%2F3gyDtFwfsJ6jbpFXXsEJeLdFUW1KszKlicjH%2BY%3D&reserved=0
>
>
>
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
>
> Thank you to Kyle Rose for doing the secdir review of this draft.  Also thanks
> to the authors for the discussions and improvements.
>
> I have one last (easy?) question:
>
> Section 13:  I expected to see some discussion on whether it is possible for an
> attacker to remove a revoked access token from the TRL allowing a registered
> device with a revoked access token to continue to participate.  Conversely, is
> it possible for an attacker to add an access token to the TRL, which would deny
> service to the registered device.  If these situations are not possible, what
> feature protects the TRL both at the AS and in transit?

==>MT

Just to clarify and be sure: the AS indeed stores active **access 
tokens** that it has issued (e.g., in order to serve requests of token 
introspection from Resource Servers). However, the TRL specifically 
includes **token hashes** corresponding to issued access tokens, i.e., 
those that have been revoked and are not expired yet.


If we consider an external adversary that is not in control of the AS, 
then the attacks suggested in the comment are not possible.

First of all, a registered device or an administrator always relies on 
secure communications when interacting with the AS, as per Section 5 
"The TRL Endpoint" and Section 9 "Registration at the Authorization 
Server". This is also aligned with Section 5 of RFC 9200 and with the 
security considerations of RFC 9200 that are simply inherited by this 
document as stated in its Section 13.0.

Furthermore, as per the interface at the AS defined in Section 5, 
registered devices and administrators can access the TRL endpoint at the 
AS exclusively in read-only mode. That is, the TRL endpoint at the AS 
supports only the GET method (see the fourth paragraph of Section 5).

It follows that accesses to the TRL are performed exclusively by sending 
protected and authenticated GET requests to the TRL endpoint, which by 
definition are safe in the REST sense and do not alter the content of 
the TRL.

In fact, the content of the TRL can be updated only internally by the 
AS, in the two circumstances described in Section 4.1 "Update of the TRL".


An adversary that has compromised and taken control of the AS is indeed 
able to update the content of the TRL, just like the AS would normally 
do. In particular, by appropriately updating the TRL content to become 
not aligned with the current set of access tokens that have been revoked 
but are not expired yet, such an adversary can practically perform the 
attacks suggested in the comment above.

However, an adversary in control of the AS would be able to perform 
actions with considerably more severe and harmful consequences, such as 
revoking access tokens for no good reasons, issuing access token 
inconsistently with the installed access control policies, or providing 
wrong information to Resource Servers that ask the AS to perform token 
introspection.


In the document, we have extended Section 13.1 "Content Retrieval from 
the TRL" by adding the following new text at its end.

NEW:
 > Note that the TRL endpoint supports only the GET method (see Section 
5). Therefore, as detailed in Section 6 and Section 7, accesses to the 
TRL endpoint are performed only by means of protected and authenticated 
GET requests, which by definition are safe in the REST sense and do not 
alter the content of the TRL. That is, registered devices and 
administrators can perform exclusively read-only operations when 
accessing the TRL endpoint.
 >
 > In fact, the content of the TRL can be updated only internally by the 
AS, in the two circumstances described in Section 4.1. Therefore, an 
adversary that is not in control of the AS cannot manipulate the content 
of the TRL, e.g., by removing a token hash and thereby fraudulently 
allowing a Client to access protected resources in spite of a revoked 
access token, or by adding a token hash and thereby fraudulently 
stopping a Client from accessing protected resources in spite of an 
access token being still valid.

<==

>
>
>
> Received: from GVZP280MB0975.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:f7::17)
>   by GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM with HTTPS; Sun, 7 Jul 2024
>   07:00:37 +0000
> Received: from DU2PR04CA0026.eurprd04.prod.outlook.com (2603:10a6:10:3b::31)
>   by GVZP280MB0975.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:f7::17) with
>   Microsoft SMTP Server (version=TLS1_2,
>   cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7741.35; Sun, 7 Jul
>   2024 07:00:35 +0000
> Received: from DU6PEPF0000B622.eurprd02.prod.outlook.com
>   (2603:10a6:10:3b:cafe::b8) by DU2PR04CA0026.outlook.office365.com
>   (2603:10a6:10:3b::31) with Microsoft SMTP Server (version=TLS1_2,
>   cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7741.35 via Frontend
>   Transport; Sun, 7 Jul 2024 07:00:35 +0000
> Authentication-Results: spf=pass (sender IP is 50.223.129.194)
>   smtp.mailfrom=ietf.org; dkim=none (message not signed)
>   header.d=none;dmarc=pass action=none header.from=ietf.org;compauth=pass
>   reason=100
> Received-SPF: Pass (protection.outlook.com: domain of ietf.org designates
>   50.223.129.194 as permitted sender) receiver=protection.outlook.com;
>   client-ip=50.223.129.194; helo=mail.ietf.org; pr=C
> Received: from mail.ietf.org (50.223.129.194) by
>   DU6PEPF0000B622.mail.protection.outlook.com (10.167.8.139) with Microsoft
>   SMTP Server (version=TLS1_3, cipher=TLS_AES_256_GCM_SHA384) id 15.20.7762.17
>   via Frontend Transport; Sun, 7 Jul 2024 07:00:34 +0000
> Received: by ietfa.amsl.com (Postfix, from userid 65534)
> 	id 82C92C151991; Sun,  7 Jul 2024 00:00:32 -0700 (PDT)
> X-Original-To:draft-tiloca-ace-authcred-dtls-profile@ietf.org
> Delivered-To:xfilter-draft-tiloca-ace-authcred-dtls-profile@ietfa.amsl.com
> Received: from [10.244.2.27] (unknown [104.131.183.230])
> 	by ietfa.amsl.com (Postfix) with ESMTP id 42B9CC1516E1
> 	for<draft-tiloca-ace-authcred-dtls-profile@ietf.org>; Sun,  7 Jul 2024 00:00:32 -0700 (PDT)
> Content-Type: text/plain; charset="utf-8"
> Content-Transfer-Encoding: 8bit
> To:<draft-tiloca-ace-authcred-dtls-profile@ietf.org>
> Subject: Expiration impending: <draft-tiloca-ace-authcred-dtls-profile-01.txt>
> X-Test-IDTracker: no
> X-IETF-IDTracker: 12.17.1
> Auto-Submitted: auto-generated
> Precedence: bulk
> Message-ID: <172033563194.274.5459272935872629627@dt-celery-86db7666db-4xkn5>
> Date: Sun, 07 Jul 2024 00:00:31 -0700
> From: IETF Secretariat<ietf-secretariat-reply@ietf.org>
> Resent-From:<alias-bounces@ietf.org>
> Resent-To:john.mattsson@ericsson.com,marco.tiloca@ri.se
> Resent-Message-Id:<20240707070032.82C92C151991@ietfa.amsl.com>
> Resent-Date: Sun,  7 Jul 2024 00:00:32 -0700 (PDT)
> Return-Path:forwardingalgorithm@ietf.org
> X-MS-Exchange-Organization-ExpirationStartTime: 07 Jul 2024 07:00:34.5120
>   (UTC)
> X-MS-Exchange-Organization-ExpirationStartTimeReason: OriginalSubmit
> X-MS-Exchange-Organization-ExpirationInterval: 1:00:00:00.0000000
> X-MS-Exchange-Organization-ExpirationIntervalReason: OriginalSubmit
> X-MS-Exchange-Organization-Network-Message-Id:
>   5abb92d8-e10c-4736-b7f3-08dc9e527f9a
> X-EOPAttributedMessage: 0
> X-EOPTenantAttributedMessage: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8:0
> X-MS-Exchange-Organization-MessageDirectionality: Incoming
> X-MS-PublicTrafficType: Email
> X-MS-TrafficTypeDiagnostic:
>   DU6PEPF0000B622:EE_|GVZP280MB0975:EE_|GVYP280MB0464:EE_
> X-MS-Exchange-Organization-AuthSource:
>   DU6PEPF0000B622.eurprd02.prod.outlook.com
> X-MS-Exchange-Organization-AuthAs: Anonymous
> X-MS-Office365-Filtering-Correlation-Id: 5abb92d8-e10c-4736-b7f3-08dc9e527f9a
> X-MS-Exchange-AtpMessageProperties: SA|SL
> X-MS-Exchange-Organization-SCL: 1
> X-Microsoft-Antispam:BCL:0;ARA:13230040|12012899012|2092899012;
> X-Forefront-Antispam-Report:
>   CIP:50.223.129.194;CTRY:US;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:mail.ietf.org;PTR:mail.ietf.org;CAT:NONE;SFS:(13230040)(12012899012)(2092899012);DIR:INB;
> X-MS-Exchange-CrossTenant-OriginalArrivalTime: 07 Jul 2024 07:00:34.1995
>   (UTC)
> X-MS-Exchange-CrossTenant-Network-Message-Id: 5abb92d8-e10c-4736-b7f3-08dc9e527f9a
> X-MS-Exchange-CrossTenant-Id: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8
> X-MS-Exchange-CrossTenant-AuthSource:
>   DU6PEPF0000B622.eurprd02.prod.outlook.com
> X-MS-Exchange-CrossTenant-AuthAs: Anonymous
> X-MS-Exchange-CrossTenant-FromEntityHeader: Internet
> X-MS-Exchange-Transport-CrossTenantHeadersStamped: GVZP280MB0975
> X-MS-Exchange-Transport-EndToEndLatency: 00:00:03.0584539
> X-MS-Exchange-Processed-By-BccFoldering: 15.20.7741.016
> X-Microsoft-Antispam-Mailbox-Delivery:
> 	dwl:1;ucf:0;jmr:0;auth:0;dest:I;ENG:(910001)(944506478)(944626604)(920097)(831239)(255002)(410001)(930097)(140003)(1420198);
> X-Microsoft-Antispam-Message-Info:
> 	=?utf-8?B?NnNUdHBLRDFrWlY3U3FBZFQ4QkhXaHFieDdxdUN4NnpjaS9HNXFPbGNoNzFV?=
>   =?utf-8?B?SHFCTTl0WnZMODNmV3pLK2NWVEFMYmxtSEIxNWhQdWpXWDJMTDVwNm11M21p?=
>   =?utf-8?B?dzRwVklva29nR1VSbkI0ZDJVdGpHVjU2OTVpYWxHWUoyUG02UE9pVlltNys3?=
>   =?utf-8?B?TUE5bkZIWllrTUNPZW05aE4zeXhZOE1Qdm9KM0J4ZDVzdUFFVGlxWHhKTFNE?=
>   =?utf-8?B?THMzNTd1djg3MEdPbCtiNXlZeFJJajJsRU5PazRTb25iM1VGWS9mYnZzVEFu?=
>   =?utf-8?B?bmQyQ3FjcStSQ1RJdGdnTmZ6TUJPYThOSjZpUkdsN1o1TWdaSlB4QnVnVGQ3?=
>   =?utf-8?B?U09QSkdDaXFCVld0S0pwMEhlNlJJem1LWFRlLy9wcTVtZmpNcnBWVTRYby9p?=
>   =?utf-8?B?eW5EOHM2NHpCNGlTa0h1ZGhLR2VVY1ZFa3cyTHN6cnhvd0VBYmc1UW9BZEpQ?=
>   =?utf-8?B?ME9id240UGJlUS9qU1p4N0JNMHhNWmpwOTZMMmU5bVFjUVI5ZXJ2YWhPQkhZ?=
>   =?utf-8?B?Y1dFQ2d5WUdIb2RIMmtab29Qb0RJRlVNaXBnWkIva0l4a3ZKSHNDMXkxRjhq?=
>   =?utf-8?B?NVFWR214ZUdEaEpTQnRoWUhIbFFCOHhsQjMzdFJXWVU3bXc5UVAreTc4Vlpn?=
>   =?utf-8?B?LzA1UUFFdEY4eHI4QTdLbFhpN2hnMyt0RVZYZk5iMDhkM3hMMndPZUdzTUds?=
>   =?utf-8?B?ajBoOXNSUW1QaWY1bWZlcm8rT3lId29iMWxHWGQ3RkpsYW5abUFrc2tCdm1a?=
>   =?utf-8?B?Zkg2WXJTaU8zWHlPZUZKTFhqMEtMdVUxeXhHK0pud3ZGU0IwNUlHNlNaV2xz?=
>   =?utf-8?B?SkR2MnVPWjNCQVVxa2lIS3ZsMms2VmhNcklFOVNwUzBCQ21COTFJaHNQdG5N?=
>   =?utf-8?B?OWl1MWxtdW9HcUJlUGZ0TkxoUzI3b2tDa21ndUZaTHpQQ0lZUW9nd3o3YVkx?=
>   =?utf-8?B?VzBCdWVyV3ljOEExRVMyTy96a0tSS082SXFOdXRIQm8xQ3oxdCtIQXJKTE15?=
>   =?utf-8?B?S2xCNllLT25FbmhlMDUrbC9NMElYMXM3S2ZaS1Rnck9TVUp6TzlrVXJEUlQ3?=
>   =?utf-8?B?ZnNXY3VDWnZxZzVCQWRMQ01tdE5Nakg4RnNaMUFyU2dvSE9MMjZCK3BLOFBj?=
>   =?utf-8?B?YTd6b3MzM3UyVTF2a0s2WTdrRnJMMkFuU3BsTUhScWhiUkppdjNaQXFENjBE?=
>   =?utf-8?B?by9EVEdKYjBJeFlPd0p0cTRTZHgwbFlaOEtGeVFaUlI2SDdOa1FXeTRJYzU3?=
>   =?utf-8?B?S2dqU3lSbzVvM3lqdFdLMmFwdzNyNlVkbDJHRXA2ZmJkZFFwQVZEVllTWTcy?=
>   =?utf-8?B?cTRhSkFMeThhZSswb0FCNHVoWWRucW1WN3E3VnV6MDlaSDBtYWl1WkJuRnJH?=
>   =?utf-8?B?T1NUamhGb1dya1c3dTdrR3NxZGFNSUlkczN2SXd5OFEwVHdOcS9JSjRzeG5i?=
>   =?utf-8?B?eHNjWGUzdWU4MXBiaDlpTGloZnFoRVdHZVphZ3dKQWVnanJEbGtLWjh5NWJ5?=
>   =?utf-8?B?MUNLUW1UV0VXS1oxNko2czNVQVRvZmRVMG1lR2FPUSs5Mnk4eloycHZ6SEh2?=
>   =?utf-8?B?c3N5WTNwL2Y1OFdBa1JidSs2ZTMvb3l0SDFZMnlKUkNLZVozdkNaQ2RRREtL?=
>   =?utf-8?B?WldCUkl6SXlWamY5T0pVVFI0SXc1S3RsYmJtT1pMb0V2dDl1T0NldXFERTVz?=
>   =?utf-8?B?NHRKQUFxVUxJQWdSUmgxVlg2WjNMeVluQzNSV2d6aWZ3a05OVjZtYW56M1d1?=
>   =?utf-8?B?UCtvZkpGbG9HOU5rclVzUWdpQ2ROSk41L3U0aitUL2pYNTNreFB2VDh1YUdE?=
>   =?utf-8?B?d2ZQY2dscDNZSXFMczBYSkswYWpnak5RaG5HSlhQOTNCZGR3dGU5YWlpbjRK?=
>   =?utf-8?B?ZDZKTDNhWldSdHN2YTMvOU95RUFtRG5Dd09XdHFId3dUUEJ6dURHdEsyMit6?=
>   =?utf-8?B?THV0N1dsYzVVcDVxZTh5Y0VvTVRIcHJhQk9MdzdFOVdpcnAxbGpxRFBZQ3dY?=
>   =?utf-8?B?KzFaUDJIaGozSXpqQkZCNUczRk9MMllrZCtNcGs0RjNyRFl6VlphV0dITUNi?=
>   =?utf-8?B?MVl5eG5LdUZXdkVMWWt6NzgyTHBtM2Ixcnp4RWJXd21mTXBNRTRBYzZHRU1y?=
>   =?utf-8?B?RHM4ZEpWNnowRzRKSWM0d2FIWjlqQ1oxK2R3VzZTUm11cER0QWR5Slh0Y09D?=
>   =?utf-8?B?WnpWWlQrRC85RzJkUjVZYjBkUkFNOEJ0cCtucStmQWNGV0VrRGV1RVFHdXZE?=
>   =?utf-8?B?bWtpNks2MVhtcmdnSkdNRWtzdEFueHNBWmdhcW5scWlrWGx5eVdQQ3YwQW44?=
>   =?utf-8?B?YW5jWVlCeDJkV2U3aEJjekVFd0tTZWt5QVdPVlplQkVWanNHRkRZcG5lNmFN?=
>   =?utf-8?B?UlZNTldWQ0hIWkxVUWpSOElGb1V6TFcxekNzVUFvQzYyaDE2MDFvbkI5N0ZW?=
>   =?utf-8?B?VTV0T3VtUkFPWnRYL3pWK25kdmlZWkN5M01tOWxZMlBvL0dQVlkrRXYyZmk5?=
>   =?utf-8?B?TmVWN01LcHVDbCttSWVGckN3Tm5jSXUxR3FEQ3F4ZFM4V2xVLzFrYXlPOU9Z?=
>   =?utf-8?B?d3ZvSmJUcDI4Y1dpbFNleVlaZjY5NmRhOTZ0eUpEc2FtNTZ3cFMyY3ZkOGZw?=
>   =?utf-8?B?TVpTUWFIZEFjL1BLUnY1YVVINzRoNWNVV29keWIxK1Vsc0JvNTkwTjZGRFE1?=
>   =?utf-8?B?bnBaUTRITTM5WDJSL3ZCL0VnK01nVUVBSGpJZ0xIaktnL3FKY21Ga1pwQ1Fj?=
>   =?utf-8?B?dTVPZFM1OUhaMGVJVFBORFJpL0p0S0tCZDRFUG4wODRJV21VR0tGTytBRDBn?=
>   =?utf-8?B?PT0=?=
> MIME-Version: 1.0
>
> The following Internet-Draft will expire soon:
>
> Name:     draft-tiloca-ace-authcred-dtls-profile
> Title:    Additional Formats of Authentication Credentials for the Datagram Transport Layer Security (DTLS) Profile for Authentication and Authorization for Constrained Environments (ACE)
> State:    I-D Exists
> Expires:  2024-07-13 (in 5 days, 23 hours)
>
>
> Received: from GV3P280MB0827.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:f2::5) by
>   GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM with HTTPS; Sun, 7 Jul 2024 07:00:37
>   +0000
> Received: from AS9P251CA0015.EURP251.PROD.OUTLOOK.COM (2603:10a6:20b:50f::29)
>   by GV3P280MB0827.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:f2::5) with
>   Microsoft SMTP Server (version=TLS1_2,
>   cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7741.35; Sun, 7 Jul
>   2024 07:00:35 +0000
> Received: from AMS1EPF00000041.eurprd04.prod.outlook.com
>   (2603:10a6:20b:50f:cafe::a7) by AS9P251CA0015.outlook.office365.com
>   (2603:10a6:20b:50f::29) with Microsoft SMTP Server (version=TLS1_2,
>   cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7741.34 via Frontend
>   Transport; Sun, 7 Jul 2024 07:00:35 +0000
> Authentication-Results: spf=pass (sender IP is 50.223.129.194)
>   smtp.mailfrom=ietf.org; dkim=none (message not signed)
>   header.d=none;dmarc=pass action=none header.from=ietf.org;compauth=pass
>   reason=100
> Received-SPF: Pass (protection.outlook.com: domain of ietf.org designates
>   50.223.129.194 as permitted sender) receiver=protection.outlook.com;
>   client-ip=50.223.129.194; helo=mail.ietf.org; pr=C
> Received: from mail.ietf.org (50.223.129.194) by
>   AMS1EPF00000041.mail.protection.outlook.com (10.167.16.38) with Microsoft
>   SMTP Server (version=TLS1_3, cipher=TLS_AES_256_GCM_SHA384) id 15.20.7762.17
>   via Frontend Transport; Sun, 7 Jul 2024 07:00:34 +0000
> Received: by ietfa.amsl.com (Postfix, from userid 65534)
> 	id 4C4B8C16940C; Sun,  7 Jul 2024 00:00:33 -0700 (PDT)
> X-Original-To:draft-ietf-ace-oscore-gm-admin-coral@ietf.org
> Delivered-To:xfilter-draft-ietf-ace-oscore-gm-admin-coral@ietfa.amsl.com
> Received: from [10.244.2.27] (unknown [104.131.183.230])
> 	by ietfa.amsl.com (Postfix) with ESMTP id DB046C1522B9;
> 	Sun,  7 Jul 2024 00:00:32 -0700 (PDT)
> Content-Type: text/plain; charset="utf-8"
> Content-Transfer-Encoding: 8bit
> To:<draft-ietf-ace-oscore-gm-admin-coral@ietf.org>
> Cc:ace-chairs@ietf.org,paul.wouters@aiven.io
> Subject: Expiration impending: <draft-ietf-ace-oscore-gm-admin-coral-01.txt>
> X-Test-IDTracker: no
> X-IETF-IDTracker: 12.17.1
> Auto-Submitted: auto-generated
> Precedence: bulk
> Message-ID: <172033563255.274.9265451665620885998@dt-celery-86db7666db-4xkn5>
> Date: Sun, 07 Jul 2024 00:00:32 -0700
> From: IETF Secretariat<ietf-secretariat-reply@ietf.org>
> Resent-From:<alias-bounces@ietf.org>
> Resent-To:marco.tiloca@ri.se,rikard.hoglund@ri.se
> Resent-Message-Id:<20240707070033.4C4B8C16940C@ietfa.amsl.com>
> Resent-Date: Sun,  7 Jul 2024 00:00:33 -0700 (PDT)
> Return-Path:forwardingalgorithm@ietf.org
> X-MS-Exchange-Organization-ExpirationStartTime: 07 Jul 2024 07:00:35.2287
>   (UTC)
> X-MS-Exchange-Organization-ExpirationStartTimeReason: OriginalSubmit
> X-MS-Exchange-Organization-ExpirationInterval: 1:00:00:00.0000000
> X-MS-Exchange-Organization-ExpirationIntervalReason: OriginalSubmit
> X-MS-Exchange-Organization-Network-Message-Id:
>   26f577d6-a8a7-41bc-125e-08dc9e528008
> X-EOPAttributedMessage: 0
> X-EOPTenantAttributedMessage: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8:0
> X-MS-Exchange-Organization-MessageDirectionality: Incoming
> X-MS-PublicTrafficType: Email
> X-MS-TrafficTypeDiagnostic:
>   AMS1EPF00000041:EE_|GV3P280MB0827:EE_|GVYP280MB0464:EE_
> X-MS-Exchange-Organization-AuthSource:
>   AMS1EPF00000041.eurprd04.prod.outlook.com
> X-MS-Exchange-Organization-AuthAs: Anonymous
> X-MS-Office365-Filtering-Correlation-Id: 26f577d6-a8a7-41bc-125e-08dc9e528008
> X-MS-Exchange-AtpMessageProperties: SA|SL
> X-MS-Exchange-Organization-SCL: 1
> X-Microsoft-Antispam:BCL:0;ARA:13230040|12012899012|2092899012;
> X-Forefront-Antispam-Report:
>   CIP:50.223.129.194;CTRY:US;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:mail.ietf.org;PTR:mail.ietf.org;CAT:NONE;SFS:(13230040)(12012899012)(2092899012);DIR:INB;
> X-MS-Exchange-CrossTenant-OriginalArrivalTime: 07 Jul 2024 07:00:34.9006
>   (UTC)
> X-MS-Exchange-CrossTenant-Network-Message-Id: 26f577d6-a8a7-41bc-125e-08dc9e528008
> X-MS-Exchange-CrossTenant-Id: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8
> X-MS-Exchange-CrossTenant-AuthSource:
>   AMS1EPF00000041.eurprd04.prod.outlook.com
> X-MS-Exchange-CrossTenant-AuthAs: Anonymous
> X-MS-Exchange-CrossTenant-FromEntityHeader: Internet
> X-MS-Exchange-Transport-CrossTenantHeadersStamped: GV3P280MB0827
> X-MS-Exchange-Transport-EndToEndLatency: 00:00:02.7249057
> X-MS-Exchange-Processed-By-BccFoldering: 15.20.7741.016
> X-Microsoft-Antispam-Mailbox-Delivery:
> 	dwl:1;ucf:0;jmr:0;auth:0;dest:I;ENG:(910001)(944506478)(944626604)(920097)(831239)(255002)(410001)(930097)(140003)(1420198);
> X-Microsoft-Antispam-Message-Info:
> 	=?utf-8?B?cXE1V3V2a252cTlwYWR2SlpTaGdJL1VRMk9CaGNxekJuUC9hL3FxdEhqZk5q?=
>   =?utf-8?B?L0FDa0hPOGJtQjZkZitxMVBocVY3R05mTTJkbXIyekFEQXAvOHU2Z043aWVo?=
>   =?utf-8?B?VjkxbnIrUGdVTEFjeFlKemlDNUJoL0pGOHI4V3BvWnpkb1ZhVlJQOGJnV2ZR?=
>   =?utf-8?B?Z0ttRHUzS0ozRGlockMxaFdFQk5ZdTZjSkpYL2R3bDhXdEh0VGRNSVpWb045?=
>   =?utf-8?B?akx5RC9LOHpWQ2kzTEQyeXgvQnBaZWF5QS9iNHZjQmNCMmR1bS9jWmZ4SURJ?=
>   =?utf-8?B?SlVrbEMyNFZWclBkN28xQkNaaklZdkRRdG91TXFNRTB6MDRUaVVHUnVSeUM3?=
>   =?utf-8?B?MnBDbFArWTlLSzhIR29RWXRNSnROVm4wYnZpRkNuRW9RMWFFYjZSdFl4VWt2?=
>   =?utf-8?B?ejdJKzZDQldEcXI5UlRnUW1Rb3RBWU15YXlyTmRYemRzcDRobm4rdTUwYTVy?=
>   =?utf-8?B?dm54MTVKNHJsbzNBVkNsMEEyTmREOHFjelNKRk1XaTc5Mi9RdEs3blBCTXZU?=
>   =?utf-8?B?dFo1M2c5U3V4bUVWb2h3bG84Q0Nkalh5eEoyYjk1SXl2RjY4TFBLbS9OZkdK?=
>   =?utf-8?B?UFZPcGNRV0RxZ29KNXRDaWVNNkJuL0JRZDl5cVN0WjRQeUJVVmVhY05xUkdT?=
>   =?utf-8?B?ejZpbmpWWHJaaFZXb0ZZM1hXTTdzRHlPdmZ1TGpKcjJPT0FMNUU4R2k2c2Zt?=
>   =?utf-8?B?NzRlZGpXRThyTmJ1VldPVkpJdWt1OGpBbGtjZElxQTcxWU00ZmdWS09YbTNJ?=
>   =?utf-8?B?U1NIS1pkSnBvS1o5Q0FSRkRIeDI5dGVBNU1ZenQyZ2hnWHp4OVB1cG5aRzlI?=
>   =?utf-8?B?VnArSHFPbVVjbDJoUXlidG1zMVRKNTYxOGF5TzUwWEIzTUNTejdlanNiVjhS?=
>   =?utf-8?B?Z2pGYkpDck90Q2twNzY4dlJ4SFBuUjFMWjliN08rR3l1NEJqczAzUnJKeVl4?=
>   =?utf-8?B?WEdldTF5VjBXWkswdjI3cjYvSVE0T1hxSzE2NlZjTExUT0djR3M4MWVIblpD?=
>   =?utf-8?B?QVo1ZWl0bUp0R1BpakRGYkdQUmxGMHY0RXp5S0Z3VjhJOWxFTkpQSXRuNnFY?=
>   =?utf-8?B?L2duWmZaR0hPRUNtN2s3VDZKWDM3bVJ1ZjNVbGFpMEl5NmxVR084RC9LMmtX?=
>   =?utf-8?B?Qk5BdUZkUmMrUzhXenF4eUhkck1uWThMWHh6L2ROUVZCUE0zY2M2WmZOdWIz?=
>   =?utf-8?B?eFZWMnE3aFR2SXc4eFlZaHVWdkJ5YWE2WXVvazBMVWdISldiOE42UU15L3pk?=
>   =?utf-8?B?dU8vWmprOEwyclBRQ3FtMkVsOGNzaG5FNjl3VzNlbEp6L05DKytFRG56azlw?=
>   =?utf-8?B?S2NZUGphbS82OEtVL2dTb25Sa0pzYWU3aVo0SHY4UFhWOXNYMHc0T1BDNWh6?=
>   =?utf-8?B?UjNUb0dvbTFNNWZHckhpMkRsUkFQNHZpdUJkV0pyL01vVGhLTno5b2J3cTAy?=
>   =?utf-8?B?S2U3dFJvZWtDa25kR2JSZzBpL2pqb0FYZ0I3RytzNXZhUGZOMEJiYTMreHFV?=
>   =?utf-8?B?b2xrczVmSnpNYWZ2TDduWndjZkMvdnNYZ3NzeVVyWVZDMXlSUk9iM3N4Zmp4?=
>   =?utf-8?B?V3dnMi9STFhTZDMrb3Rta0JpVHZCbmUyTnN3bGcvK2RYWTE3VGdzdmdBMUdB?=
>   =?utf-8?B?cGFnVWR0YjF5MnBsdTBwSko0RHRJdnpld1NIT1YwcGwvc09KNjB5Qm8yd3VK?=
>   =?utf-8?B?YlhPOVJWbDNnUUp3THRPcjR0eXh0RTlaWWVBQnpCOC9nUlJRbGIyL3VPZGoz?=
>   =?utf-8?B?UGJ5N1ozTlZsaTZpMXhZRDRZd2QvSWh6M25Nd1VuNzNpVEplcVZUMGxsRWRN?=
>   =?utf-8?B?R2J1NzVoUzdNSUdqTkN2T0lzak5YNXRUQVFXQmhUb3RXUFMwVmsrR1JlczVv?=
>   =?utf-8?B?N3RSZk9QZjRVWUhBTVNGT3plY3BqWEFCbklNYWtLa3JLMitQYVdJd2ttTlEy?=
>   =?utf-8?B?WXZ3d0tLZk5hYmdicTRGUmlNM3g2MzNMVXh0aDdRSm9UTXhZVExuTFVpNkZW?=
>   =?utf-8?B?TVJpNEhpdElxb3pxSDVqZXNBU21vb3ZuaDlZV1gxTThQY2RnbS9Sd1R5R1Ev?=
>   =?utf-8?B?MlJNZGNnYTgxamhyemEyZjRERU9IZS9DRVEya1JlaW9YQzAxRk8rQTNSZXlP?=
>   =?utf-8?B?bENWKy8wOG1qTVFGUzNOR0l4R21PR1FNcVhXejgyWk5LdDRweXU5Wlc3ZFZH?=
>   =?utf-8?B?UVAxcEdOQ3puKzJuVGFMVGI3LzVodjJXVzU0cVMxRFNISkV3eE1lVzlBYWJ0?=
>   =?utf-8?B?TmUyamNqamVlSHJvdmdENlFiNWNYOExGWFBqV1Irdmk2VjFpRDBKS3FWOXk3?=
>   =?utf-8?B?S2tKM2N4RG1HaVQyQVpmcnEzYVpLWUlsWFR4cG5mYk1oSFAydXZObEJweEFE?=
>   =?utf-8?B?cXQ1L081dUc4Ukl6SmY3c3hJMTNsL1I1NXZyeTlRNkw5OEpCbWJqSjA5Qmp0?=
>   =?utf-8?B?OHVBS2MxSzdSZnYrUStoU3dSL0xIa21KajJTdGFqL3RFN1BVNXgraE5pc3Ni?=
>   =?utf-8?B?alR1VG1rK1RTRFZ1L2RoK1R1cUg4N3JpUlZmcE5QSGs2aXJCbDdFSjNjdUJM?=
>   =?utf-8?B?OWhYVjFPL05zakxmaEFHWmd4cEVOOWMyVmxlR0dORlJxM05aRmY3aGZURit3?=
>   =?utf-8?B?dy9CaVZFU3Zad212T1RYRC9jSGlxNG9lMld5LzdlMEtOOUN1Vzg5dVlYTVU0?=
>   =?utf-8?B?c3BpL1VhSmpaTXpyN0tXaXhNdFduSFN0SmJFbHlxeHVlMFFySW9yY3JRSFgz?=
>   =?utf-8?B?bHZnYjhEb1VwY2lpSEdpVUp3bGpTSTdHQkF2K2RoNDMwTDFsVFdTNlpEZStB?=
>   =?utf-8?B?PT0=?=
> MIME-Version: 1.0
>
> The following Internet-Draft will expire soon:
>
> Name:     draft-ietf-ace-oscore-gm-admin-coral
> Title:    Using the Constrained RESTful Application Language (CoRAL) with the Admin Interface for the OSCORE Group Manager
> State:    I-D Exists
> Expires:  2024-07-17 (in 1 week, 2 days)
>

-- 
Marco Tiloca
Ph.D., Senior Researcher

Phone: +46 (0)70 60 46 501

RISE Research Institutes of Sweden AB
Box 1263
164 29 Kista (Sweden)

Division: Digital Systems
Department: Computer Science
Unit: Cybersecurity

https://www.ri.se