Re: [Ace] WGLC draft-ietf-ace-revoked-token-notification-04.txt

Grace A Lewis <glewis@sei.cmu.edu> Tue, 14 March 2023 15:00 UTC

Return-Path: <glewis@sei.cmu.edu>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E55ADC153CA1 for <ace@ietfa.amsl.com>; Tue, 14 Mar 2023 08:00:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.895
X-Spam-Level:
X-Spam-Status: No, score=-1.895 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=sei.cmu.edu
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 54rNJfJQsUiQ for <ace@ietfa.amsl.com>; Tue, 14 Mar 2023 08:00:33 -0700 (PDT)
Received: from USG02-BN3-obe.outbound.protection.office365.us (mail-bn3usg02on072c.outbound.protection.office365.us [IPv6:2001:489a:2202:c::72c]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E6F8CC159495 for <ace@ietf.org>; Tue, 14 Mar 2023 08:00:32 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector5401; d=microsoft.com; cv=none; b=aF+zzCb2+dj70qUd+Z+wacnTIGQ89bs8GfX+yxwJsqZ7qHuSp9eIGh6RsTSU1ePoQXJ59/xDHWiFtL5mASLvt44wyYLEdyZfWDabe+RXPJdPcPt2Xm5lHc32vNSFig9aXkw4gGLDv6+7X44caPhmKV7OhJ8+t2PE4Wq4DV3eLCf9RcARbKYUSsUzY9IoUob1DpSBF3ITHT9QwrAZA8D+OoGSSHCUEYzOO0lq/Hhz+7WtEhY7GewvChYnGnn1I/mkCSOdXgvP23FL5LxqLJ7aTAOvxCKu+ew8Bx2uioPYdNR2iD0WtLVPNihw6RFBHkwFPEfibyTgJ5s285bEFJUVrg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector5401; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=vkMBLuPOMi6MDmszu9yKaN6FKVLoeKZ2a1q6cf6jfto=; b=xBRIoVL074YeNU45B47Hwfx1okW4ng3X49B1iojsCuSuAI4Xma7M3yFJ1ouvu+9bFdt/9xmZ+NBvrekxQ+jX5KAAlLvaN7rIy4BLkS8nAJaC/F+Y6Lhx7NfFlBTcIN2kUFLndS3cphCE3T/KRE2vmueQ2FgbfnS5YNLt/MUIJHwU723+gkMLh1U4yuRxB+dZjHnJy2gVgDQ2eMeaIYNMkoqGGzC8C2gmqWofPPc71W6/TiqbjEhaBciEE6Es0KSad9qqGI3eNLml4MZx4RSwT8e18rry+MqCUJWznAotxsu/7FSYVjPaURogfYdKmEDnqYEURxuDKWbObf3qPg8F/Q==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=sei.cmu.edu; dmarc=pass action=none header.from=sei.cmu.edu; dkim=pass header.d=sei.cmu.edu; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=sei.cmu.edu; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=vkMBLuPOMi6MDmszu9yKaN6FKVLoeKZ2a1q6cf6jfto=; b=K26RW92irTAdh38eDAGCJu4jfRSxNhfyBNSIZ1B6H5OKNcd5OUXEnZvNjhsjFjD7Mr8m0+I5zA8d/xyUiT9BJE2KAgfapQ3Bb5/n486EonJrT1pERdhGrIx4tffSpgIPVu0LNla5NMcNu6wbgTVTGW2KWLvLNb9/oVgHUSh3JjA=
Received: from BN0P110MB1724.NAMP110.PROD.OUTLOOK.COM (2001:489a:200:16c::16) by BN0P110MB1338.NAMP110.PROD.OUTLOOK.COM (2001:489a:200:181::11) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6156.38; Tue, 14 Mar 2023 15:00:28 +0000
Received: from BN0P110MB1724.NAMP110.PROD.OUTLOOK.COM ([fe80::d74d:8c05:aeb0:4e0b]) by BN0P110MB1724.NAMP110.PROD.OUTLOOK.COM ([fe80::d74d:8c05:aeb0:4e0b%6]) with mapi id 15.20.6156.038; Tue, 14 Mar 2023 15:00:28 +0000
From: Grace A Lewis <glewis@sei.cmu.edu>
To: Sebastian Echeverria <secheverria@sei.cmu.edu>, Marco Tiloca <marco.tiloca=40ri.se@dmarc.ietf.org>, Daniel Migault <mglt.ietf@gmail.com>, Ace Wg <ace@ietf.org>
Thread-Topic: [Ace] WGLC draft-ietf-ace-revoked-token-notification-04.txt
Thread-Index: AQHZVdJvpxM9st9hkUeJcxAAMJKrr675EwuAgAA9HACAAQ9xqQ==
Date: Tue, 14 Mar 2023 15:00:28 +0000
Message-ID: <BN0P110MB1724819510E2F0E230EF41D289BE9@BN0P110MB1724.NAMP110.PROD.OUTLOOK.COM>
References: <167872177724.59809.2184168422921623653@ietfa.amsl.com> <CADZyTkmv1=KqC1AhyoVdtQc1xoJUZcq5ziYXdMJaUSGqsgOZrw@mail.gmail.com> <6b64bb04-403f-c34c-d51c-0402056d72eb@ri.se> <SA1P110MB138900512F8A666B054F84B2E9B99@SA1P110MB1389.NAMP110.PROD.OUTLOOK.COM>
In-Reply-To: <SA1P110MB138900512F8A666B054F84B2E9B99@SA1P110MB1389.NAMP110.PROD.OUTLOOK.COM>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=sei.cmu.edu;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: BN0P110MB1724:EE_|BN0P110MB1338:EE_
x-ms-office365-filtering-correlation-id: 637aa124-b32d-403e-b7ec-08db249cd999
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BN0P110MB1724.NAMP110.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230025)(366004)(451199018)(5660300002)(40140700001)(83380400001)(66574015)(7696005)(6506007)(8936002)(55016003)(966005)(26005)(508600001)(71200400001)(66446008)(9686003)(186003)(53546011)(66476007)(166002)(64756008)(52536014)(8676002)(33656002)(66556008)(9326002)(38070700005)(66946007)(76116006)(110136005)(75432002)(86362001)(38100700002)(122000001)(82960400001)(15650500001)(2906002); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 3hHqQ7gxOGQp03sGCRm9fuDGt0iM4PURsc/JpQZrNFe8JSLxZOPCHbu7TjMvoOl12ogsTvzlZuA2cEqTNHiJjd7z0rP76xYLMUGvJjHmWhtzQX9df2gHKIr7WhZA3kdD+654RMLta2mWVhPKxZBpaMN1jl29/K9P6yq5XDmkgUUVNBPcgh+nAhhg+HyXtpwUk8fE01HpbZZ8JlHjzfE8N1dEa5Hv/4Grjdhs1PvRqyI0pOc63KqgPPSTyOz6r4+06GKZ1/o6rUcLqMNhEUQ+wcZILNR46e3xIG3raPm5KoJwVvqUWFownYgzh0ujqvSKX8HWWzHvdneQP6jRV1v2g447DqaNEgS/+HQQa+1QVWUoKOruNHfQB6Sma6o+/PGjXxCj38TpdMFCLA67cqWzCXefDrPlMg3kTKKOrw6iGm0=
Content-Type: multipart/alternative; boundary="_000_BN0P110MB1724819510E2F0E230EF41D289BE9BN0P110MB1724NAMP_"
MIME-Version: 1.0
X-OriginatorOrg: sei.cmu.edu
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BN0P110MB1724.NAMP110.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 637aa124-b32d-403e-b7ec-08db249cd999
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Mar 2023 15:00:28.6816 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 95a9dce2-04f2-4043-995d-1ec3861911c6
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN0P110MB1338
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/oC9u-SoMS7UjD-RhL0vuMRm6coY>
Subject: Re: [Ace] WGLC draft-ietf-ace-revoked-token-notification-04.txt
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 14 Mar 2023 15:00:38 -0000

Hello,

Same for me: I am not aware on IPR on my side and confirm I am willing to co-author the document.

Thanks,

                Grace Lewis

______________________________________________
Grace A. Lewis, Ph.D.
Principal Researcher and TAS Initiative Lead
Carnegie Mellon Software Engineering Institute
Software Solutions Division (SSD)
Tactical and AI-Enabled Systems Initiative (TAS)

4500 Fifth Ave. #5412
Pittsburgh, PA 15213
Phone: (412) 268-5851
http://www.sei.cmu.edu/staff/glewis

The most dangerous phrase in the language is “we've always done it this way.” — Rear Admiral Grace Hopper


From: Ace <ace-bounces@ietf.org> on behalf of Sebastian Echeverria <secheverria@sei.cmu.edu>
Date: Monday, March 13, 2023 at 6:49 PM
To: Marco Tiloca <marco.tiloca=40ri.se@dmarc.ietf.org>, Daniel Migault <mglt.ietf@gmail.com>, Ace Wg <ace@ietf.org>
Subject: Re: [Ace] WGLC draft-ietf-ace-revoked-token-notification-04.txt
Hello,

I am also not aware of any IPR on our side, and I confirm I’m willing to co-author the document.

Thanks,

---
Sebastian Echeverria
Tactical and AI-enabled Systems (TAS)
Software Engineering Institute
Carnegie Mellon University


Sebastian Echeverria

From: Ace <ace-bounces@ietf.org> on behalf of Marco Tiloca <marco.tiloca=40ri.se@dmarc.ietf.org>
Date: Monday, March 13, 2023 at 3:11 PM
To: Daniel Migault <mglt.ietf@gmail.com>, Ace Wg <ace@ietf.org>
Subject: Re: [Ace] WGLC draft-ietf-ace-revoked-token-notification-04.txt
Hi Daniel and all,
On 2023-03-13 18:36, Daniel Migault wrote:
Hi everyone,

This email starts a WGLC for draft-ietf-ace-revoked-token-notification which ends on March 27. Please provide your support and feed backs by that time. We will take advantage of the IETF116 session to solve any remaining discussions on that draft.

I am also looking for someone interested in being the document shepherd: Please volunteer!

To the co-authors I am looking at:
- 1) a heads-up regarding the implementations.

==>MT
An implementation from Marco Rasori is available at [1], as building on the implementation of the ACE framework at [2]. It is planned to make a pull request of [1] onto [2].

[1] https://bitbucket.org/marco-rasori-iit/ace-java/src/ucs/

[2] https://bitbucket.org/marco-tiloca-sics/ace-java

<==



- 2) a confirmation that they are or not aware of any IPR

==>MT
I do not have and I am not aware of any IPR on this document.
<==



- 3)  a confirmation that they are willing to co-author the document.

==>MT
I am willing to be a co-author of this document.


Best,
/Marco
<==




Yours,
Logan and Daniel


On Mon, Mar 13, 2023 at 11:36 AM <internet-drafts@ietf.org<mailto:internet-drafts@ietf.org>> wrote:

A New Internet-Draft is available from the on-line Internet-Drafts
directories. This Internet-Draft is a work item of the Authentication and
Authorization for Constrained Environments (ACE) WG of the IETF.

   Title           : Notification of Revoked Access Tokens in the Authentication and Authorization for Constrained Environments (ACE) Framework
   Authors         : Marco Tiloca
                     Ludwig Seitz
                     Francesca Palombini
                     Sebastian Echeverria
                     Grace Lewis
   Filename        : draft-ietf-ace-revoked-token-notification-04.txt
   Pages           : 59
   Date            : 2023-03-13

Abstract:
   This document specifies a method of the Authentication and
   Authorization for Constrained Environments (ACE) framework, which
   allows an Authorization Server to notify Clients and Resource Servers
   (i.e., registered devices) about revoked Access Tokens.  The method
   allows Clients and Resource Servers to access a Token Revocation List
   on the Authorization Server, with the possible additional use of
   resource observation for the Constrained Application Protocol (CoAP).
   Resulting (unsolicited) notifications of revoked Access Tokens
   complement alternative approaches such as token introspection, while
   not requiring additional endpoints on Clients and Resource Servers.

The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-ace-revoked-token-notification/<https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-ace-revoked-token-notification%2F&data=05%7C01%7Cmarco.tiloca%40ri.se%7C6e109d1b535245f2de8c08db23e98fd8%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638143258281813215%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=gYpZlIuI%2BzStJC5ry%2FAgPKsG0dsCQFlP6YvWA61JJV4%3D&reserved=0>

There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-ace-revoked-token-notification-04.html<https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Farchive%2Fid%2Fdraft-ietf-ace-revoked-token-notification-04.html&data=05%7C01%7Cmarco.tiloca%40ri.se%7C6e109d1b535245f2de8c08db23e98fd8%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638143258281813215%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=8A%2FhfRSRo848%2BPuH9tENHNbjyZ5tLM1rbdbt%2FOEaBY8%3D&reserved=0>

A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-ace-revoked-token-notification-04<https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fauthor-tools.ietf.org%2Fiddiff%3Furl2%3Ddraft-ietf-ace-revoked-token-notification-04&data=05%7C01%7Cmarco.tiloca%40ri.se%7C6e109d1b535245f2de8c08db23e98fd8%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638143258281813215%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=p7r7kMc09mEkD3tHNYmvwMygX0OmjHU1MlaThzk%2F7sk%3D&reserved=0>

Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts


_______________________________________________
Ace mailing list
Ace@ietf.org<mailto:Ace@ietf.org>
https://www.ietf.org/mailman/listinfo/ace<https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Face&data=05%7C01%7Cmarco.tiloca%40ri.se%7C6e109d1b535245f2de8c08db23e98fd8%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638143258281813215%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=tSAD963p0DeiAAS9i%2B36yelXzJhthyVc57uwb5Xacu8%3D&reserved=0>


--
Daniel Migault
Ericsson




_______________________________________________

Ace mailing list

Ace@ietf.org<mailto:Ace@ietf.org>

https://www.ietf.org/mailman/listinfo/ace




--

Marco Tiloca

Ph.D., Senior Researcher



Phone: +46 (0)70 60 46 501



RISE Research Institutes of Sweden AB

Box 1263

164 29 Kista (Sweden)



Division: Digital Systems

Department: Computer Science

Unit: Cybersecurity



https://www.ri.se