Re: [Acme] ACME draft is now in WGLC.

Anders Rundgren <anders.rundgren.net@gmail.com> Mon, 13 February 2017 06:09 UTC

Return-Path: <anders.rundgren.net@gmail.com>
X-Original-To: acme@ietfa.amsl.com
Delivered-To: acme@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2CC48129550 for <acme@ietfa.amsl.com>; Sun, 12 Feb 2017 22:09:36 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id x4g1mBynDHY1 for <acme@ietfa.amsl.com>; Sun, 12 Feb 2017 22:09:34 -0800 (PST)
Received: from mail-wr0-x242.google.com (mail-wr0-x242.google.com [IPv6:2a00:1450:400c:c0c::242]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 45084129503 for <acme@ietf.org>; Sun, 12 Feb 2017 22:09:34 -0800 (PST)
Received: by mail-wr0-x242.google.com with SMTP id k90so22412834wrc.3 for <acme@ietf.org>; Sun, 12 Feb 2017 22:09:34 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=subject:to:references:cc:from:message-id:date:user-agent :mime-version:in-reply-to:content-transfer-encoding; bh=JtrsKfcl79ZhbtiZZgueCRePQVniNwVsWOri8HfRmsE=; b=XAR6g2YLuF0orK8H8P9ci5ad/3Suev3jkMnm/mY7Dpg2SpZFd1LGL5/rarU5EuqDvW T1MFwIKhMIKnKZ1GRiq+S6oYRv/2t2+iFvA8EQGhe5GqPKXVIU+1evg00TOBhBZcSg90 72r4bDmkaGekJCUbNuxRsiex4cZbLGhRs6Fq82e3labnPqq+rNMsu+JRd1LkQBjOSL6Q ALjr/L2aV5Ue9XaZmWajB/5QpWEyvNb86wPI/4AhaJQWu2kBdATV0AqWK5QTcjQoU+id Cet54JtqiKB+pn+K9qVex27mtsQsecWIaqiQFpWEDXPD2lmrpi0V9SgROT0/UWZNPE/K X8Ag==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:references:cc:from:message-id:date :user-agent:mime-version:in-reply-to:content-transfer-encoding; bh=JtrsKfcl79ZhbtiZZgueCRePQVniNwVsWOri8HfRmsE=; b=btAeJfTmKpYnAafOJ+deYL5dTXF2/MVxXqNrUpBlzA/NTv6eyA7z8vkg/a17iaHYwt Tj+TjiQYDx+w3S/p1qE+IdQrsIgjFr4pFaKdKDDCR2H73Z8G2Caf42oAFvs8sYe3Kv2d rCNvnhM4eGcQWlz6bflG8RUefsK0pWuDH+WWcH1xYtVkFCL9O0eg7wqqra8knbhLfYEe 0BQry/aH0baCWq/IRkEEhezvvF97vKEWJzOf87KLeoPsnylMVLc3w1HRcZInvnh8pzyE bai3dEzt8ojKLqVZ1f5fB1v9CBmIs8xu+gjW0Blre3fFPdBCOble+S8DyrIysIyR25q3 1SRQ==
X-Gm-Message-State: AMke39kFBfcEo0U/NxhIUFERug+7TZ9z7ED/ylixKmRzrOyUtKKVksjdl4fAJK2K8iPc6w==
X-Received: by 10.223.169.85 with SMTP id u79mr18078602wrc.169.1486966172856; Sun, 12 Feb 2017 22:09:32 -0800 (PST)
Received: from [192.168.1.79] (124.25.176.95.rev.sfr.net. [95.176.25.124]) by smtp.googlemail.com with ESMTPSA id u184sm3892839wmb.29.2017.02.12.22.09.31 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Sun, 12 Feb 2017 22:09:32 -0800 (PST)
To: Martin Thomson <martin.thomson@gmail.com>, "Salz, Rich" <rsalz@akamai.com>
References: <8473d9ba84894d49b2f2232370d66b46@usma1ex-dag1mb3.msg.corp.akamai.com> <83f7104eef75470181d7f81fc7604a8e@usma1ex-dag1mb3.msg.corp.akamai.com> <CABkgnnUbpFgGp3NRAocu2M4d1Zp-xjcxNFQyZ97pygTA6JM2cQ@mail.gmail.com>
From: Anders Rundgren <anders.rundgren.net@gmail.com>
Message-ID: <0903e6e8-be00-b989-e388-cd811dd25ddf@gmail.com>
Date: Mon, 13 Feb 2017 07:09:11 +0100
User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:45.0) Gecko/20100101 Thunderbird/45.7.1
MIME-Version: 1.0
In-Reply-To: <CABkgnnUbpFgGp3NRAocu2M4d1Zp-xjcxNFQyZ97pygTA6JM2cQ@mail.gmail.com>
Content-Type: text/plain; charset="windows-1252"; format="flowed"
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/acme/X-SzvESci_Y5IIcLKheEd_tL3Ag>
Cc: "acme@ietf.org" <acme@ietf.org>
Subject: Re: [Acme] ACME draft is now in WGLC.
X-BeenThere: acme@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Automated Certificate Management Environment <acme.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/acme>, <mailto:acme-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/acme/>
List-Post: <mailto:acme@ietf.org>
List-Help: <mailto:acme-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/acme>, <mailto:acme-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 13 Feb 2017 06:09:36 -0000

On 2017-02-13 06:26, Martin Thomson wrote:
<snip>
>    In the examples below, JWS objects are shown in the JSON or flattened
>    JSON serialization, with the protected header and payload expressed
>    as base64url(content) instead of the actual base64-encoded value, so
>    that the content is readable.  Some fields are omitted for brevity,
>    marked with "...".
>
> I didn't really understand this without an example to use for
> reference.  Given that the first actual use of this form is 15 (!)
> pages further down the document, maybe you could move this there.

JWS is great for what is was originally designed for.  ES6 normalization
nullifies the need for dressing JSON data in Base64Url.

Anders
https://cyberphone.github.io/doc/security/jsonsignatures.html