Re: [Ace] Zaheduzzaman Sarker's No Objection on draft-ietf-ace-oscore-profile-17: (with COMMENT)

Francesca Palombini <francesca.palombini@ericsson.com> Wed, 14 April 2021 16:46 UTC

Return-Path: <francesca.palombini@ericsson.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C2A563A16D8; Wed, 14 Apr 2021 09:46:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.101
X-Spam-Level:
X-Spam-Status: No, score=-2.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id abHXmXf3ki2A; Wed, 14 Apr 2021 09:46:44 -0700 (PDT)
Received: from EUR05-VI1-obe.outbound.protection.outlook.com (mail-vi1eur05on2056.outbound.protection.outlook.com [40.107.21.56]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A37EF3A16BE; Wed, 14 Apr 2021 09:46:43 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=gwnxB1AZOdT+I2dadYg6KF4VDS6lrt2DnAtnr+qGHo04KMavmnBVP3mOq83W+1GKN0LRv9DmLRkU0c7n+idRLM/0QIyzToKbp3e/HZDWdY50oumSVUvzUlP7W0FDg+yALRxzm5K/ErBtWSzU7RSTH0AUsbDl63fH1hqK5tOJnJWbobMPof2XTGny03fXzTcS+2McrXByVJrW5pqPg9rA3ghIzHk7RHxfRYwixEt+S3SrfRaKDgOReIKx3Z8iOUR8ofXssFtU8J2q/zVLljPGImx5r/c6+EoOivL1maogEVKPFpisSXmz7u+deU9auc3Hk7bhWP8xuhvaN0fxsy52Dg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=7Iaa30bgyKQdg0UHFhCcz4Aq136d+dDfFm4WVE8mcrc=; b=jI5+aYJA9QdMbGpiRNgth9LmyxuJp/9CIfirCyMJoS3MNflkAoYJ2iW+gmZgFWJWsatZsxeYgkKCBsq3Oj6ewm8uDD5bjPGbRy4Hgw9Al3sRi7vjH5ZT61NUdQ7OeqWQNglPPgwCQMoSYKraVWhTUeN6l2pQfYlkXkyAfXshDgZnR5VesQ/BtgWGk5gixeuZFzD5XzRB9GjGtn0uT7IK0YD8nH5/D23+NQiB7Ss+QG6SBVTGIBru4yrjJ8LZrILDyIGO0rA34H7/atQohDZ1EijU21fiBdJVvVQm5egxgr/NJYHB1cZRI3fhvUh0Wrh+XWPQVTeLZx35ADbmB21jCQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=7Iaa30bgyKQdg0UHFhCcz4Aq136d+dDfFm4WVE8mcrc=; b=Hezv6TEMUYPoLFZyRZgPwHdLBXq9Vgh35hg/oK7gHuJtuT5ZV8eXyeil9nczYmz8n7Xz4/sP1R0j7nCAuKFUvKgCsIGQFhYxd/i56pb+ebh1po830kEB9BMReal9hBw/5umejiwUpHeVvNW88fhVVmz6NlA5fiThM1ht3mzI4t0=
Received: from HE1PR07MB4217.eurprd07.prod.outlook.com (2603:10a6:7:96::33) by HE1PR0701MB2348.eurprd07.prod.outlook.com (2603:10a6:3:74::16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4042.6; Wed, 14 Apr 2021 16:46:40 +0000
Received: from HE1PR07MB4217.eurprd07.prod.outlook.com ([fe80::593:f4fd:94e3:d90b]) by HE1PR07MB4217.eurprd07.prod.outlook.com ([fe80::593:f4fd:94e3:d90b%6]) with mapi id 15.20.4042.016; Wed, 14 Apr 2021 16:46:40 +0000
From: Francesca Palombini <francesca.palombini@ericsson.com>
To: Zaheduzzaman Sarker <zaheduzzaman.sarker@ericsson.com>, The IESG <iesg@ietf.org>
CC: "draft-ietf-ace-oscore-profile@ietf.org" <draft-ietf-ace-oscore-profile@ietf.org>, "ace-chairs@ietf.org" <ace-chairs@ietf.org>, "ace@ietf.org" <ace@ietf.org>
Thread-Topic: Zaheduzzaman Sarker's No Objection on draft-ietf-ace-oscore-profile-17: (with COMMENT)
Thread-Index: AQHXIOlXl6TltZBh1EiPuC2U2FABq6q0ezAA
Date: Wed, 14 Apr 2021 16:46:40 +0000
Message-ID: <58DC29DD-5FDA-4E35-AFF7-7AE656E33855@ericsson.com>
References: <161661644738.16417.7404476297359674246@ietfa.amsl.com>
In-Reply-To: <161661644738.16417.7404476297359674246@ietfa.amsl.com>
Accept-Language: en-GB, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.47.21031401
authentication-results: ericsson.com; dkim=none (message not signed) header.d=none;ericsson.com; dmarc=none action=none header.from=ericsson.com;
x-originating-ip: [2001:1ba8:147a:eb00:a846:77bb:6fc5:8663]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 7a397c0b-3a69-4934-ab35-08d8ff64e0f0
x-ms-traffictypediagnostic: HE1PR0701MB2348:
x-ms-exchange-transport-forked: True
x-microsoft-antispam-prvs: <HE1PR0701MB2348D88134D61F68AADCAE86984E9@HE1PR0701MB2348.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:HE1PR07MB4217.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(346002)(376002)(136003)(39860400002)(366004)(396003)(86362001)(316002)(76116006)(478600001)(8936002)(2616005)(54906003)(33656002)(44832011)(71200400001)(110136005)(5660300002)(966005)(122000001)(6512007)(186003)(6506007)(83380400001)(6486002)(8676002)(66476007)(4326008)(450100002)(66446008)(36756003)(66556008)(66946007)(64756008)(2906002)(38100700002)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
Content-Type: text/plain; charset="utf-8"
Content-ID: <3ED6972AD38D5744AF4D7212A3B22260@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: HE1PR07MB4217.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 7a397c0b-3a69-4934-ab35-08d8ff64e0f0
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Apr 2021 16:46:40.7607 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: QE6WSqNJ2E99Y/Pliq1rsQBbKzWE2JonF9kaZatqc/WqhP/MgVmM7hY0cxpyQSNcWbO6o5dqEXHnr4I7o97f4KzSpV7HqmnAg+zQ6hx4oc1MWTB/TUDGWCYln4zNqG4K
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0701MB2348
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/qQjwYv1JRvuS9LKnhq419nhEziQ>
Subject: Re: [Ace] Zaheduzzaman Sarker's No Objection on draft-ietf-ace-oscore-profile-17: (with COMMENT)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 14 Apr 2021 16:46:49 -0000

Hi Zahed,

Thank you very much for the review! We have incorporated your changes in the newly submitted v-18 https://datatracker.ietf.org/doc/html/draft-ietf-ace-oscore-profile-18 , but you can also see the specific changes in the github: 
https://github.com/ace-wg/ace-oscore-profile/commit/e234968d5078e667a0646fba3e708729c39dcadd 

Answers inline.

Thanks again,
Francesca


On 24/03/2021, 21:07, "iesg on behalf of Zaheduzzaman Sarker via Datatracker" <iesg-bounces@ietf.org on behalf of noreply@ietf.org> wrote:

    Zaheduzzaman Sarker has entered the following ballot position for
    draft-ietf-ace-oscore-profile-17: No Objection

    When responding, please keep the subject line intact and reply to all
    email addresses included in the To and CC lines. (Feel free to cut this
    introductory paragraph, however.)


    Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
    for more information about IESG DISCUSS and COMMENT positions.


    The document, along with other ballot positions, can be found here:
    https://datatracker.ietf.org/doc/draft-ietf-ace-oscore-profile/



    ----------------------------------------------------------------------
    COMMENT:
    ----------------------------------------------------------------------

    Thanks for this document.

    I support Roman's discuss and have similar observations when it comes to
    normative text usage (see Roman's discuss comments).

FP: Yes, we have now addressed his discuss.

    Some nits below --

    * Section 2:
          This
          profile RECOMMENDS the use of OSCORE between client and AS, to reduce
          the number of libraries the client has to support, but other
          protocols fulfilling the security requirements defined in section 5
          of [I-D.ietf-ace-oauth-authz] (such as TLS or DTLS) MAY be used as
          well.

     [TLS, DTLS] reference is missing.

FP: Right, added.

    * Section 3.2:
       Typo : s/parameeter/parameter

FP: Fixed.