[Ace] OSCORE profile update

Francesca Palombini <francesca.palombini@ericsson.com> Mon, 24 August 2020 17:07 UTC

Return-Path: <francesca.palombini@ericsson.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0CE3F3A120C; Mon, 24 Aug 2020 10:07:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.202
X-Spam-Level:
X-Spam-Status: No, score=-0.202 tagged_above=-999 required=5 tests=[DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gKqr_F1e5e8c; Mon, 24 Aug 2020 10:07:23 -0700 (PDT)
Received: from EUR05-VI1-obe.outbound.protection.outlook.com (mail-vi1eur05on2086.outbound.protection.outlook.com [40.107.21.86]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 36D083A11E6; Mon, 24 Aug 2020 10:07:21 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Xcq/qy8iL/dKztY//zehMftkzHG3y5ySIRxcNQvYxvzPAW5DSWdaSjbknbO6hbnjsoZNbkRuWGgucNRADoEtcgb7zBJiUW/hxcKoy/XUcG5zW9wBhMTKrxkAQWCl8CPeJhzjRzqHQDpsNCcQrd+dL8cOCdNQgIMwJB+8ReNfOyoNe8Xk/BXx9dYCXPqzoB81J3yYBwkm4KA5CIAxUYF/rs2ZsbtDwQMss1cMOumtt0b26zK/B8Y1DVv+Rtk1qOeeWY4D0aopAB2jty22pM/F67U/Qy9gNhw+gzzZgQGCY8Xg5gzHuG0M2G17N1A/zxttoOcOl4r56izsY2CJeOwZMQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=oGqn9zjxpYNbsV2UDFIpzAzt/pD3aOdwYOZFgn4nbWw=; b=Cl0hqRKXS/7YWqQOmmp7yXbpcZ2MDzTjejRqGdTmmpGysU91VNOShPRnaWdVAbnYB8qYWmUQMW378cixMn5x2E0aUZIGQlGw8eMRafadU0p4W8WmZAyZKRwRmYRRW4b5oDwrfbXwo6n+W5x62F1s2Aty+zyp6oLLflSlbxShMbZORSRn9xii7kNiLXKMQlXy6bSyXjyu5EtdhYFqhbNcIjMyb7UZAdXPoSIIQCgJzx6NHx8MtcjXICJYq2ajHL0VWLPzl41Hgd6z9KKisKFiwzwWcKWuiAcOMmxO5+OzuT+jXn+VOZK7qePWmYEwiJ1olfRYPOgu4sgRY8odwPqy6A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=oGqn9zjxpYNbsV2UDFIpzAzt/pD3aOdwYOZFgn4nbWw=; b=t3ySd5dF9WM3hfCbrOl3Rx9R8J29vRwfwoJ4YtWR5rEd0wQEINl1czrrLaNKRkHAUBfkUGueb8k+JAGpqIEldjG44Xs3n3hEO/HIC3TySjT8Vg4Hafl577E5GJaMtUxkLKYp5Ier+205uullDX9vAxq5yqeuvp3zWG7nmZ5wOvQ=
Received: from VI1PR07MB4477.eurprd07.prod.outlook.com (2603:10a6:803:74::33) by VI1PR07MB5536.eurprd07.prod.outlook.com (2603:10a6:803:b7::26) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3305.10; Mon, 24 Aug 2020 17:07:11 +0000
Received: from VI1PR07MB4477.eurprd07.prod.outlook.com ([fe80::cba:ac03:353c:2d1f]) by VI1PR07MB4477.eurprd07.prod.outlook.com ([fe80::cba:ac03:353c:2d1f%7]) with mapi id 15.20.3326.017; Mon, 24 Aug 2020 17:07:11 +0000
From: Francesca Palombini <francesca.palombini@ericsson.com>
To: Ace Wg <ace@ietf.org>
CC: "ace-chairs@ietf.org" <ace-chairs@ietf.org>
Thread-Topic: OSCORE profile update
Thread-Index: AQHWejkBmDA4YAwm4U+IrXZL8lfsDA==
Date: Mon, 24 Aug 2020 17:07:11 +0000
Message-ID: <34F92E00-8A32-4A57-AE7A-4BC68C670580@ericsson.com>
Accept-Language: en-GB, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.40.20081000
authentication-results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=ericsson.com;
x-originating-ip: [158.174.219.143]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: cd2c1e35-6032-4878-3870-08d848502415
x-ms-traffictypediagnostic: VI1PR07MB5536:
x-microsoft-antispam-prvs: <VI1PR07MB55367F68C8B9D4E352CD3EB598560@VI1PR07MB5536.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:5797;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: dh6d12lY27yridAqUthqrqoqWF/STz55UW0xExydl0x7BirBAHs06gm16wRkwu9ROIx/mRd/1Y4t5cK4J4Q8B64RT1LcitJ+bqkk1W87wIYhDkBRb7Gvn4g9ejXtgAJ3bsAo/8b9GbloJmuzip0jRijd96KxfgNBuFT7oxmmMGBVBXFljFFPRY3m0GtWjWxCaYOEYKDI0Ym7ubLq3G5UODqckn0mCJzwuhhaft9eEbOsnImttFbxBwSxLvQuCrNsT7berUFrVOpuVSm/Yq1R+oX+yaOOCQvBkwpQrgg0fvVmnk04zOWd0/n1RFnhElqx1Pin98Rq4MSM0LKKtDR423odBVdivRdzLzTJYBYPUgeHLb7a/BMhtnWx/0jvjezwDIu94z3Vz1uLR6JM8P4TQw==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:VI1PR07MB4477.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(376002)(396003)(136003)(366004)(346002)(39860400002)(26005)(6506007)(3480700007)(2906002)(6916009)(86362001)(66476007)(36756003)(8676002)(66556008)(83380400001)(4326008)(316002)(66946007)(66446008)(64756008)(71200400001)(2616005)(450100002)(7116003)(15650500001)(44832011)(8936002)(76116006)(91956017)(5660300002)(33656002)(6512007)(186003)(966005)(6486002)(478600001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <40F8A3CCDB1B8642B0A5DA9EC00D1531@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: VI1PR07MB4477.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: cd2c1e35-6032-4878-3870-08d848502415
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Aug 2020 17:07:11.1879 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: ZggWZM20GZQjbCYkIyGl6rVuhG0CKgHAi+8B3rUAAUn17bvPi13UNzVQAUjPHaSHtFZ7B9kaj4XTirls+cEkUEvfXmz7INDEqed+VHnxCwEvT3lShjbAoE63+EK9ntv6
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR07MB5536
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/q_I52q7GZS3n1fgx_L3nUVnoHYU>
Subject: [Ace] OSCORE profile update
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 24 Aug 2020 17:07:29 -0000

Hi,

This mail is to notify the WG of a minor change to the OSCORE profile. It was brought up in the github issues by Christian (see: https://github.com/ace-wg/ace-oscore-profile/issues/40 ) and discussed offline during IETF108 that the profile adds a requirement of the token always being encrypted, that is not inherited from the framework. The reason for this additional requirement was that the authors assumed the token to always be self-contained. After discussion, we have come to the conclusion that this requirements does not need to be in the profile, and we have removed it: https://github.com/ace-wg/ace-oscore-profile/commit/dd7a9b5a30dacd0ca55a1eb42b26cd13d1048d57 

We do not think this is a major change, but rather a fix, so we don't think we need to move back to the WG, but the chairs/AD can let us know if that's not the case. We are ready to submit a v-11 including this change and updates following Last Call reviews and IANA review, assuming there is no objection. Pull request including all changes is here: https://github.com/ace-wg/ace-oscore-profile/pull/42 

Once v-11 is up, we consider all comments addressed, and are ready for the next step.

Thanks,
Fracesca