Re: [Ace] I-D Action: draft-ietf-ace-cmpv2-coap-transport-10.txt

Mohit Sahni <mohit06jan@gmail.com> Thu, 25 May 2023 17:15 UTC

Return-Path: <mohit06jan@gmail.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A55A6C151543 for <ace@ietfa.amsl.com>; Thu, 25 May 2023 10:15:28 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.094
X-Spam-Level:
X-Spam-Status: No, score=-7.094 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0saIHcfLNVwE for <ace@ietfa.amsl.com>; Thu, 25 May 2023 10:15:24 -0700 (PDT)
Received: from mail-ej1-x62f.google.com (mail-ej1-x62f.google.com [IPv6:2a00:1450:4864:20::62f]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8CC7CC14CE36 for <ace@ietf.org>; Thu, 25 May 2023 10:15:24 -0700 (PDT)
Received: by mail-ej1-x62f.google.com with SMTP id a640c23a62f3a-96652cb7673so139221366b.0 for <ace@ietf.org>; Thu, 25 May 2023 10:15:24 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20221208; t=1685034923; x=1687626923; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=NU/Ot/YD9fIUVaEVuqgkuvzMtt4g/FuaWXGn1nGODug=; b=UHQLkTDA6eNjJaPbCdsgyFZRoM5YFThnLwhX3kElpId8aJkE4dYkJ+4EuTzDTatg12 sVw6QRbejFLa9mibg5THpB27dIZaHwpjv+WCg6PexMZs+mJLA1AARQ9fKN9yDnyX8fJw 9H8NqhOwYe0F4gb33cW+AVxqkQee7nM/xby4sxJhOlo9YI3AKJz1hEvlMncQ0DqaOR4/ vV53LlyujL6jMs0rq/aiFSJidjv1s0SIFnNWMtJxbTFBFKzj9IZSJhlTLA3Lm8x0l8ez /AMeen/pkEbJE5XIQg9KSD4OJj9+XScPvSAfQ6fclUS+ItIG9Za2TSlKhSMR2tBKBJVG 6XAg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1685034923; x=1687626923; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=NU/Ot/YD9fIUVaEVuqgkuvzMtt4g/FuaWXGn1nGODug=; b=EgJ3D3d3G422US7uaZDf8jiVaOKhX6MOxdR58IQyjQ0x/jCL6eLwhjtV0km0e2zE5A g2CEk8s7qw7/x91ApDmh2YKgK94HPGm3n0k/lnTMmtkclQel6Z9v/uYWl7q45YgPc/2I ETpsgSDNzHIAN9duZ7qr1u8d5Y1GKS19d+a3m5KlSqKdHF6jZNUyulymsw7uco2kaw3W btSm3anTK/n07tXw+iJ/SbxinWqPVsc4VW06KnQAKuXxbDYA9bIexeoQdhimTdFhN5b5 R3eO67Odcsbm7gGZQmJSMRhdbQqYm04Q7sK3VebPWSHAIeajn3h3ECB3N2UXw5dKtpcV YioQ==
X-Gm-Message-State: AC+VfDyIsj7SBzwwR4PBFH4sNxuEMPfic1Er2GNAJikKx+3qOboANQsz y1a5WpHBv5SOOM6w939GX3MuRjTrpGG2VrKcamU=
X-Google-Smtp-Source: ACHHUZ7ilL1j5wfPRNtr6UhY6mYcia8pR66H3do4LogKc+0tlhAz5SmCVmLRlZ4SA5gmpsjVuEgn2fr7SCotbW0hciQ=
X-Received: by 2002:a17:907:c23:b0:96a:ee54:9f20 with SMTP id ga35-20020a1709070c2300b0096aee549f20mr2931021ejc.37.1685034922594; Thu, 25 May 2023 10:15:22 -0700 (PDT)
MIME-Version: 1.0
References: <168418347235.50512.7582333536525758484@ietfa.amsl.com> <DM6PR15MB36896A17B018D633B0E47BDBE3799@DM6PR15MB3689.namprd15.prod.outlook.com> <DB9PR10MB5715C7CADF69AE5EA1B95B43FE469@DB9PR10MB5715.EURPRD10.PROD.OUTLOOK.COM> <CADZyTkm9ZU8-2_JEN4-0DbaVVXuCi73tRWqgXzFz9Rsq6FdGRA@mail.gmail.com> <CAGL5yWazaQ=0Lf2TnEc+56P2nETuseG=GTkst83YZhJdCNU0ng@mail.gmail.com>
In-Reply-To: <CAGL5yWazaQ=0Lf2TnEc+56P2nETuseG=GTkst83YZhJdCNU0ng@mail.gmail.com>
From: Mohit Sahni <mohit06jan@gmail.com>
Date: Thu, 25 May 2023 10:15:10 -0700
Message-ID: <CAEpwuw30NcwE6ABfsDR3aFtNb4i8pOeO23vbQwj1KNeNovHUhg@mail.gmail.com>
To: Paul Wouters <paul.wouters=40aiven.io@dmarc.ietf.org>
Cc: Daniel Migault <mglt.ietf@gmail.com>, "Brockhaus, Hendrik" <hendrik.brockhaus@siemens.com>, "ace@ietf.org" <ace@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000fedd6505fc87c3b7"
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/xrJsnDgoyfyJ-z0WIHh0eOCJ9yY>
Subject: Re: [Ace] I-D Action: draft-ietf-ace-cmpv2-coap-transport-10.txt
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 25 May 2023 17:15:28 -0000

Hi Paul,
I think you may be looking at the older version of the draft. (Please check
https://datatracker.ietf.org/doc/html/draft-ietf-ace-cmpv2-coap-transport)

I submitted the xml version and the boilerplate is auto generated from the
xml. I am not sure how to change the boiler plate text. My guess is that
it's the xml2rfc tool that's adding the boilerplate.

The reference of 5280 is added in the below text in the version 10 of the
draft:
Section 4 bullet point 4:
An EE might not witness all of the Announcement messages when using the
CoAP Observe option [RFC7641], since the Observe option is a "best-effort"
approach and the server might lose its state for subscribers to its
announcement messages. The EEs may use an alternate method described in
section 2.6 to obtain time critical changes such as CRL [RFC5280] updates.

Reference to draft-ietf-lamps-lightweight-cmp-profile-13
<https://datatracker.ietf.org/doc/draft-ietf-lamps-lightweight-cmp-profile/13/>
has
been updated to version 21 now in the latest draft.

The comment "without compromising the integrity of " be better than
"without compromising the security" (given CMP does not provide
confidentiality" was not directed me but to the ADs (i.e. Paul) If you
agree, I can make the change to the text.

Thanks
Mohit

On Thu, May 25, 2023 at 9:07 AM Paul Wouters <paul.wouters=
40aiven.io@dmarc.ietf.org> wrote:

> I should probably put it in Revised ID needed, as there are a few bugs
> left:
>
> - the 2119 boilerplate triggers warning (although I don't see the
> discrepancy)
> - RFC 5280 is listed as informative reference but it is not references
> anywhere in the text
> - outdated reference to draft-ietf-lamps-lightweight-cmp-profile-13
> <https://datatracker.ietf.org/doc/draft-ietf-lamps-lightweight-cmp-profile/13/>
> -  "without compromising the integrity of " be better than "without
> compromising the security" (given CMP does not provide confidentiality
>
> It seems the authors haven't gone yet through all the ballot comments at
> https://datatracker.ietf.org/doc/draft-ietf-ace-cmpv2-coap-transport/ballot/
>
> I'll put it in revised ID needed now since at least the the above bullet
> points should be fixed.
>
> Paul
>
> On Thu, May 25, 2023 at 11:13 AM Daniel Migault <mglt.ietf@gmail.com>
> wrote:
>
>> As far as I understand it, the document is in " Approved-announcement to
>> be sent::AD Followup", which means the AD needs to approve the latest
>> version to be sent to the RFC editor. Th elatest version has been published
>> on may 15, so my guess is that the approval should come in the next few
>> days.
>>
>> Yours,
>> Daniel
>>
>>
>> On Thu, May 25, 2023 at 8:52 AM Brockhaus, Hendrik <
>> hendrik.brockhaus@siemens.com> wrote:
>>
>>> Thanks to Mohit and Saurabh for the update also from my side.
>>> Are there any further changes planned or is anything else necessary
>>> before moving the draft to RFC Editor state?
>>>
>>> Hendrik
>>>
>>> > Von: Ace <ace-bounces@ietf.org> Im Auftrag von Daniel Migault
>>> >
>>> > Thanks for the submission Mohit.
>>> >
>>> > Yours,
>>> > Daniel
>>> >
>>> > ________________________________________
>>> > From: Ace <ace-bounces@ietf.org> on behalf of internet-drafts@ietf.org
>>> > <internet-drafts@ietf.org>
>>> > Sent: Monday, May 15, 2023 4:44 PM
>>> > To: i-d-announce@ietf.org
>>> > Cc: ace@ietf.org
>>> > Subject: [Ace] I-D Action: draft-ietf-ace-cmpv2-coap-transport-10.txt
>>> >
>>> >
>>> > A New Internet-Draft is available from the on-line Internet-Drafts
>>> > directories. This Internet-Draft is a work item of the Authentication
>>> and
>>> > Authorization for Constrained Environments (ACE) WG of the IETF.
>>> >
>>> >    Title           : CoAP Transfer for the Certificate Management
>>> Protocol
>>> >    Authors         : Mohit Sahni
>>> >                      Saurabh Tripathi
>>> >    Filename        : draft-ietf-ace-cmpv2-coap-transport-10.txt
>>> >    Pages           : 11
>>> >    Date            : 2023-05-15
>>> >
>>> > Abstract:
>>> >    This document specifies the use of Constrained Application Protocol
>>> >    (CoAP) as a transfer mechanism for the Certificate Management
>>> >    Protocol (CMP).  CMP defines the interaction between various PKI
>>> >    entities for the purpose of certificate creation and management.
>>> >    CoAP is an HTTP-like client-server protocol used by various
>>> >    constrained devices in the IoT space.
>>> >
>>> > The IETF datatracker status page for this Internet-Draft is:
>>> > https://datatra/
>>> > cker.ietf.org%2Fdoc%2Fdraft-ietf-ace-cmpv2-coap-
>>> > transport%2F&data=05%7C01%7Chendrik.brockhaus%40siemens.com%7Cb7
>>> > 45642c8925408378c508db55a8f629%7C38ae3bcd95794fd4addab42e1495d55
>>> > a%7C1%7C0%7C638197956407483228%7CUnknown%7CTWFpbGZsb3d8eyJ
>>> > WIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7
>>> > C3000%7C%7C%7C&sdata=NRMWomPpx1FbVSzl%2FLu0U0HQX3tpT9gXX2cbu
>>> > Tq4cro%3D&reserved=0
>>> >
>>> > There is also an htmlized version available at:
>>> > https://datatra/
>>> > cker.ietf.org%2Fdoc%2Fhtml%2Fdraft-ietf-ace-cmpv2-coap-transport-
>>> > 10&data=05%7C01%7Chendrik.brockhaus%40siemens.com%7Cb745642c892
>>> > 5408378c508db55a8f629%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7
>>> > C0%7C638197956407483228%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4w
>>> > LjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C
>>> > %7C%7C&sdata=VlTKaJOKWtgld6rtRVKIen9ic5etr%2B3%2FXME4JIwoBG0%3D
>>> > &reserved=0
>>> >
>>> > A diff from the previous version is available at:
>>> > https://author/
>>> > -tools.ietf.org%2Fiddiff%3Furl2%3Ddraft-ietf-ace-cmpv2-coap-transport-
>>> > 10&data=05%7C01%7Chendrik.brockhaus%40siemens.com%7Cb745642c892
>>> > 5408378c508db55a8f629%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7
>>> > C0%7C638197956407483228%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4w
>>> > LjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C
>>> > %7C%7C&sdata=Nzg9WKRaw3P47ucvb3zEF0%2BsePKxR6Ps1oKjtdrZAXc%3D&
>>> > reserved=0
>>> >
>>> > Internet-Drafts are also available by rsync at rsync.ietf.org:
>>> :internet-drafts
>>> >
>>> >
>>> > _______________________________________________
>>> > Ace mailing list
>>> > Ace@ietf.org
>>> > https://www.ie/
>>> > tf.org%2Fmailman%2Flistinfo%2Face&data=05%7C01%7Chendrik.brockhaus%
>>> > 40siemens.com%7Cb745642c8925408378c508db55a8f629%7C38ae3bcd9579
>>> > 4fd4addab42e1495d55a%7C1%7C0%7C638197956407483228%7CUnknown%
>>> > 7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWw
>>> > iLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=gHv%2FbNIlQSoDTUBx1NY6S
>>> > Snkc%2BtzbcFbp%2BXwInvd6Ss%3D&reserved=0
>>> >
>>> > _______________________________________________
>>> > Ace mailing list
>>> > Ace@ietf.org
>>> > https://www.ie/
>>> > tf.org%2Fmailman%2Flistinfo%2Face&data=05%7C01%7Chendrik.brockhaus%
>>> > 40siemens.com%7Cb745642c8925408378c508db55a8f629%7C38ae3bcd9579
>>> > 4fd4addab42e1495d55a%7C1%7C0%7C638197956407483228%7CUnknown%
>>> > 7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWw
>>> > iLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=gHv%2FbNIlQSoDTUBx1NY6S
>>> > Snkc%2BtzbcFbp%2BXwInvd6Ss%3D&reserved=0
>>>
>>
>>
>> --
>> Daniel Migault
>> Ericsson
>>
> _______________________________________________
> Ace mailing list
> Ace@ietf.org
> https://www.ietf.org/mailman/listinfo/ace
>