[art] Re: AD Evaluation: draft-barnes-sframe-iana-256-00

Martin Thomson <mt@lowentropy.net> Mon, 19 January 2026 00:09 UTC

Return-Path: <mt@lowentropy.net>
X-Original-To: art@mail2.ietf.org
Delivered-To: art@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 1338CA977441; Sun, 18 Jan 2026 16:09:04 -0800 (PST)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.799
X-Spam-Level:
X-Spam-Status: No, score=-2.799 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_VALIDITY_SAFE_BLOCKED=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=lowentropy.net header.b="lICwTFry"; dkim=pass (2048-bit key) header.d=messagingengine.com header.b="p/iIZKsa"
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1AA7pJBe-gA3; Sun, 18 Jan 2026 16:09:03 -0800 (PST)
Received: from fout-a3-smtp.messagingengine.com (fout-a3-smtp.messagingengine.com [103.168.172.146]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 1CB3EA977439; Sun, 18 Jan 2026 16:09:03 -0800 (PST)
Received: from phl-compute-04.internal (phl-compute-04.internal [10.202.2.44]) by mailfout.phl.internal (Postfix) with ESMTP id 9A169EC067B; Sun, 18 Jan 2026 19:08:57 -0500 (EST)
Received: from phl-imap-15 ([10.202.2.104]) by phl-compute-04.internal (MEProxy); Sun, 18 Jan 2026 19:08:57 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=lowentropy.net; h=cc:cc:content-transfer-encoding:content-type:content-type :date:date:from:from:in-reply-to:in-reply-to:message-id :mime-version:references:reply-to:subject:subject:to:to; s=fm3; t=1768781337; x=1768867737; bh=77USdQmEQcz6w1Vq8gOeZmK88ib4yke8 IRH2UVmHahw=; b=lICwTFryMOgWZmmtMImUQ71qeGwMQuMO25uk8xRvxb3/wHCD tTt4a7c8tAE+S0EgSjv0nzfAhmNViiPlUUb/y3P4FylzJnGEPrfLYcLg+XbyKNmP vI8DkHfy0HK2tcnIQfbrPfyVv/MmRY40aeAb8VjcO9MwbtyWDjb+6WRQGKdfRQYV DWlw+r6rDQchnfG7SialYE7syn+5nCYin6+sRE44ifwvLABCYeiwYoIo+bl0vqTM QkMNT2QrmVUz4SF2EHwbw4KGPulT+AhqqRDSspp+YzY1IQJuiz3IEvyNag30c0qE znZmQ6PcflourxT99tMKc/fi54jRhKZsO4Cidg==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:content-type:date:date:feedback-id:feedback-id :from:from:in-reply-to:in-reply-to:message-id:mime-version :references:reply-to:subject:subject:to:to:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm2; t=1768781337; x= 1768867737; bh=77USdQmEQcz6w1Vq8gOeZmK88ib4yke8IRH2UVmHahw=; b=p /iIZKsaAsK9jhJgnblj+4Sxk+XKUw4Oa25nMQh+Hqy0dR5Kj1WXBq/wbfJ7S2LH0 qHB9xzIUrjYyHhBoKUJkUSqDP8DxSYqXAhZoi3I9UNK/1U1VFgUD2FyyxgaIH7IQ K73qjLavsFgNvUb9I0xzFFytpJ9h9KThmFquUY8YZgT/kRdyAtogap1kZMjtoHTZ Eyyrh6FZMc1A1ig2mJZUgmwaici+lEGyBDUDgOVMy4okdrKxXqv0wfJqk6Dr1WHa sEThMjqp1ZKKvIGDdOFiWoSG22lIDBXUrSakzVIxhmhXnYfiD4Ld2o/KXSCssAb4 qLR1SX89dzeAPBsrmwssQ==
X-ME-Sender: <xms:GXZtaRoZ7bd4gAEmPMFE1ydpDfRH3hbt01PI32QoTe0H9PutD6RlGA> <xme:GXZtaeffB-BFVgR1cx3IIWRjkKIBPFYfzJRuOTPgs6Yghcn0MOW_quGOyw79POQ_9 ncoYAkiNpqnYOoOP4DMi_6hgiCOXe5H4yJPhDe_BXT4tl20uoVetPA>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgeefgedrtddtgddufeeitdelucetufdoteggodetrf dotffvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfurfetoffkrfgpnffqhgenuceu rghilhhouhhtmecufedttdenucesvcftvggtihhpihgvnhhtshculddquddttddmnecujf gurhepofggfffhvfevkfgjfhfutgfgsehtjeertdertddtnecuhfhrohhmpedfofgrrhht ihhnucfvhhhomhhsohhnfdcuoehmtheslhhofigvnhhtrhhophihrdhnvghtqeenucggtf frrghtthgvrhhnpedtvdetjeekgeelleelteekjefhteeivdekgfeujedvveduffehvdef tdevgefftdenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmhepmhgrihhlfhhroh hmpehmtheslhhofigvnhhtrhhophihrdhnvghtpdhnsggprhgtphhtthhopeeipdhmohgu vgepshhmthhpohhuthdprhgtphhtthhopegvohhmrghrrgesrghpphhlvgdrtghomhdprh gtphhtthhopegrrhhonhdrrhhoshgvnhgsvghrghepgedtrghpphhlvgdrtghomhesughm rghrtgdrihgvthhfrdhorhhgpdhrtghpthhtoheprghrthesihgvthhfrdhorhhgpdhrtg hpthhtohepughrrghfthdqsggrrhhnvghsqdhsfhhrrghmvgdqihgrnhgrqddvheeisehi vghtfhdrohhrghdprhgtphhtthhopehsvggtqdgrughssehivghtfhdrohhrghdprhgtph htthhopehorhhivgesohhrudefrdhioh
X-ME-Proxy: <xmx:GXZtaRU8t7C3aezHyWwuqczKcM3SPI-6yUa_-MusOTxgDai-86Oz3g> <xmx:GXZtaa7iSFvUkDHt7Qt28heCCy_pDZOyOMUket6Y7N4esa-z3M_V1Q> <xmx:GXZtaUqnjpzRLSGZgiCThJdh5MZAYu5Sz_YzDMnLpX5O8JCJr_58ZQ> <xmx:GXZtaVnVccZylWD1QaSrlD_Rche8uBvWS0z5JQYPNznsHTlcpeZjXQ> <xmx:GXZtaR0M5BPZVT-iEN4ON72bApMTU1Y99-6w4smQG0JAQDSrj4XiOulv>
Feedback-ID: ic129442d:Fastmail
Received: by mailuser.phl.internal (Postfix, from userid 501) id 5F4E1780070; Sun, 18 Jan 2026 19:08:57 -0500 (EST)
X-Mailer: MessagingEngine.com Webmail Interface
MIME-Version: 1.0
X-ThreadId: AaOM5PfR621k
Date: Mon, 19 Jan 2026 11:08:37 +1100
From: Martin Thomson <mt@lowentropy.net>
To: Aron Rosenberg <aron.rosenberg=40apple.com@dmarc.ietf.org>, Orie <orie@or13.io>
Message-Id: <2f534475-6db3-4cba-b15e-1482fbae9de1@betaapp.fastmail.com>
In-Reply-To: <B66DD02C-E808-479C-98F5-D4632AF020DE@apple.com>
References: <CAMzqgoxa3wgBXMeSm0LiT+=7drs9nYjWVcG5EQ=qeGgRDDbHAw@mail.gmail.com> <CAMzqgownWtueaas4YWKgfPRqdk4Zqqy9Nz8fezcVE4t2UUWzzA@mail.gmail.com> <46863F88-C011-4D76-8F9E-A4BF8B376E38@apple.com> <CAMzqgowjOg4vmYoOx-UFNWtaiSrUf=GPK5LFC4cg6_H0+yiHNQ@mail.gmail.com> <B66DD02C-E808-479C-98F5-D4632AF020DE@apple.com>
Content-Type: text/plain
Content-Transfer-Encoding: 7bit
Message-ID-Hash: LHWONBJ5T3UNQS6PFPFZWCLKAQNW4PN7
X-Message-ID-Hash: LHWONBJ5T3UNQS6PFPFZWCLKAQNW4PN7
X-MailFrom: mt@lowentropy.net
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-art.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Emad Omara <eomara@apple.com>, ART Area <art@ietf.org>, "<sec-ads@ietf.org>" <sec-ads@ietf.org>, draft-barnes-sframe-iana-256@ietf.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [art] Re: AD Evaluation: draft-barnes-sframe-iana-256-00
List-Id: Applications and Real-Time Area Discussion <art.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/art/e--MHra6dOLYK1lOk818Xp5E2jY>
List-Archive: <https://mailarchive.ietf.org/arch/browse/art>
List-Help: <mailto:art-request@ietf.org?subject=help>
List-Owner: <mailto:art-owner@ietf.org>
List-Post: <mailto:art@ietf.org>
List-Subscribe: <mailto:art-join@ietf.org>
List-Unsubscribe: <mailto:art-leave@ietf.org>

On Sat, Jan 17, 2026, at 03:41, Aron Rosenberg wrote:
> We changed the Change Controller portion of the registry because it was 
> not actually the original intent of the original authors to require a 
> new RFC for introducing a new cipher suite definition. 

That's a misunderstanding of what the change controller is for.

If the IETF is responsible for maintaining an entry, then it is the change controller.

But if an independent entity (Apple as an organization or just the individual Richard Barnes) wants to register an entry, they can become the change controller.  The question the field answers is "who does IANA ask to approve a change to that entry?"  That's an important field for maintaining the registry.

The registry operates under "specification required", which is the same "expert review" plus a requirement to have a specification.  If you think a specification is too onerous, I'd like to understand why.  You have defined the three new entries in this document in a single small paragraph, meeting the requirement easily.  I don't think that it could be made much easier without compromising the openness of the protocol.