Re: [auth48] question - Re: AUTH48: RFC-to-be 9538 <draft-ietf-cdni-delegation-acme-04> for your review

frederic.fieau@orange.com Thu, 08 February 2024 18:13 UTC

Return-Path: <frederic.fieau@orange.com>
X-Original-To: auth48archive@ietfa.amsl.com
Delivered-To: auth48archive@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E805FC14F693; Thu, 8 Feb 2024 10:13:16 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.104
X-Spam-Level:
X-Spam-Status: No, score=-2.104 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id R-uKKJObMjvT; Thu, 8 Feb 2024 10:13:12 -0800 (PST)
Received: from smtp-out.orange.com (smtp-out.orange.com [80.12.210.124]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B5BD4C14F60B; Thu, 8 Feb 2024 10:13:11 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; i=@orange.com; q=dns/txt; s=orange002; t=1707415992; x=1738951992; h=to:cc:subject:date:message-id:references:in-reply-to: mime-version:content-transfer-encoding:from; bh=cjfDFaGy4WKgLlLr5YuIRdSGhYRPy4Ew47hVJcjrmQg=; b=UD1zR/6VH+AzaTUuNqLSIkH1dyH/ODQ8FByL7UefcN5RZZ9wpQQSxr3w LOrbp+TiqM5NTjF1b4EELOkmYNFhsTp/bQRrTVeDMNntyTAonR0kgxX3G thnq8pY0mC0rYFCHl3mfu5SP3Be6xgFe6g18fT1IpxyFx+JRy+dTgoGZb W6Rip3MxxGfV9fIWcHrncWTlP0ZGqhHy8PMdkhR3M2l/wkB17Aau+ekpW iC4zVPcVPwYUOIAGVTM304GydN5L/FScxea0l1M6xaIochYzru5DbDlxl 0pw/xtn7YsxExOzE0Evd8gYxJkVylklvxvtzylBL3S0i7wgJmPhebmslp A==;
Received: from unknown (HELO opfedv3rlp0e.nor.fr.ftgroup) ([x.x.x.x]) by smtp-out.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 08 Feb 2024 19:13:09 +0100
Received: from unknown (HELO opzinddimail2.si.francetelecom.fr) ([x.x.x.x]) by opfedv3rlp0e.nor.fr.ftgroup with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 08 Feb 2024 19:13:10 +0100
Received: from opzinddimail2.si.francetelecom.fr (unknown [127.0.0.1]) by DDEI (Postfix) with SMTP id 3962AD2CE78B; Thu, 8 Feb 2024 19:13:09 +0100 (CET)
Received: from opzinddimail2.si.francetelecom.fr (unknown [127.0.0.1]) by DDEI (Postfix) with ESMTP id 5CECDD2CE1AB; Thu, 8 Feb 2024 19:11:18 +0100 (CET)
Received: from smtp-out365.orange.com (unknown [x.x.x.x]) by opzinddimail2.si.francetelecom.fr (Postfix) with ESMTPS; Thu, 8 Feb 2024 19:11:18 +0100 (CET)
Received: from mail-dbaeur03lp2168.outbound.protection.outlook.com (HELO EUR03-DBA-obe.outbound.protection.outlook.com) ([104.47.51.168]) by smtp-out365.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 08 Feb 2024 19:11:09 +0100
Received: from DB4PR02MB9560.eurprd02.prod.outlook.com (2603:10a6:10:3f3::15) by AM9PR02MB6817.eurprd02.prod.outlook.com (2603:10a6:20b:2ca::21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7249.39; Thu, 8 Feb 2024 18:11:07 +0000
Received: from DB4PR02MB9560.eurprd02.prod.outlook.com ([fe80::b472:143a:2fb5:572]) by DB4PR02MB9560.eurprd02.prod.outlook.com ([fe80::b472:143a:2fb5:572%5]) with mapi id 15.20.7249.035; Thu, 8 Feb 2024 18:11:07 +0000
From: frederic.fieau@orange.com
X-TM-AS-ERS: 10.106.160.156-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== ZnJlZGVyaWMuZmllYXVAb3Jhb mdlLmNvbQ==
X-DDEI-TLS-USAGE: Used
Authentication-Results: smtp-out365.orange.com; dkim=none (message not signed) header.i=none; spf=Fail smtp.mailfrom=frederic.fieau@orange.com; spf=None smtp.helo=postmaster@EUR03-DBA-obe.outbound.protection.outlook.com
Received-SPF: Fail (smtp-in365b.orange.com: domain of frederic.fieau@orange.com does not designate 104.47.51.168 as permitted sender) identity=mailfrom; client-ip=104.47.51.168; receiver=smtp-in365b.orange.com; envelope-from="frederic.fieau@orange.com"; x-sender="frederic.fieau@orange.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 include:spfa.orange.com include:spfb.orange.com include:spfc.orange.com include:spfd.orange.com include:spfe.orange.com include:spff.orange.com include:spf6a.orange.com include:spffed-ip.orange.com include:spffed-mm.orange.com -all"
Received-SPF: None (smtp-in365b.orange.com: no sender authenticity information available from domain of postmaster@EUR03-DBA-obe.outbound.protection.outlook.com) identity=helo; client-ip=104.47.51.168; receiver=smtp-in365b.orange.com; envelope-from="frederic.fieau@orange.com"; x-sender="postmaster@EUR03-DBA-obe.outbound.protection.outlook.com"; x-conformance=spf_only
IronPort-Data: A9a23:xXpsPK4TzHS68K0dftybugxRtJ/AchMFZxGqfqrLsTDasY5as4F+v msWCGHXaf/ZM2enf9AiaN6yoEIDupbTydBrSgs+/3gyEysa+MHIO4+Ufxz6V8+wwmwvb67FA +E2MISowBUcFyeEzvuVGuG96yM6jMlkf5KkYMbcICd9WAR4fykojBNnioYRj5Vh6TSDK1vlV eja/YuHZTdJ5xYuajhIs/jb+Es11BjPkGhwUmIWNKkjUGD2xyF94KI3fcmZM3b+S49IKe+2L 86rIGaRpz6xE78FU7tJo56jGqE4aue60Tum0xK6b5Ofbi1q/UTe5EqZ2M00Mi+7gx3R9zx4J U4kWZaYEW/FNYWU8AgRvoUx/yxWZcV7FLH7zXeX69HLzmvMfmXX06tNAlg5PqcFw/lrODQbn RAYAGhlghGrqt+MmOn+ZsNFw8MpIY/sIZ8VvWxmwXfBF/E6TJvfQqLMo9hFwDM3gcMIFvHbD yYbQWM3MFKcPFsSYxFOVsJWcOSA3hETdxVWsl+ZqLA26C7dzQF4zZDqKtPTddHMTsJQ9qqdj jibpTWlXkxBXDCZ4SO5616l3u/hpGT2fa8eMYPnzblJokLGkwT/DzVNDgHn/pFVkHWWUshCM FcT0iMrtqx0/0uuJvHmVhu6qW/Cux8HW8BZO/M38gCfzayS6AGcbkAfRzhDYc1gsc4tRSYjg wPRgd7zBC5otvueTne1+rKdtzj0OCUJIykFfyBsZQAJ5dimqY0ophPCUtglF7S65vX+FTfxh juKpSkknJ0SgNIFkaKh8jjvgD+yp56PTEgw70PWU36rxgx8bY+hIYev7DDz4+xJKo2UVVKI+ mANn8+b5uEIDLmAji2GW/4KGvei4PPtGCfSihtiE5g98C6F4XCoOI1c4S15PgFuKMlsUTb0f E+P6QpL759SInaCd6F8Jo+9Ctgt1+7nD9uNaxzPRt9HY5w0eAWO8Tx0PRWUxzq0zhhqlrwjM 5CGd8rqFWwdFals0DuxQaEazKMvwSc9g2jUQPgX0ihLz5LEeSaUb70ILmCeMMM39ayHihjs7 MpmYp7iJwpkbMXyZSze8Ig2JF8MLGQmCZ2elyCxXr7SSuaBMDB5Y8I90Y8cl5pZc7N9t8qgw 51QckpRyV66iXfOJBiQMitncOm2A8Y5qm8nNysxO1ruw2IkfYuk8KYYcd0wYKUj8+tgi/VzS pHpmvls4NweElwrGBxENvERSbCOkjz132pi2AL7PlACk2ZIHVChxzMdVlKHGNMyJiS2r9Aih LaryxnWR5EOLyw7U56JM6Lznw/s7SBN8A6XY6cuCogLEKkL2NkyQxEdctdsepBTQfk+7mfEi FrNUU9IzQUzi9Zvq4eX2MhoULtF48MlRRAGQAE3HJ6zNCLA+XGkz5MIW+GSZVjguJDcqc2fi RFu56ikapUvxQ4U26IlSuoD5fxku7PH+eQBpiw6RyqjUrheIug8SpVw9ZIS7vElK34wkVfeZ 39jDfEDYOvTZJK9QQBPTOfnB8zavcwpdvDpxaxdCC3HCOVfp9JrjW0609iwZC1hwH9dHb4fm bxklOQ/rgu1h1wtL8qMiT1S+yKUNHscXq47t5YcRoj2lg4szVIEapvZYsMzDFdjdP0UWnTG4 BfM7EYBu1iY7k3Yenw8GD7G2u81aVEmpkVR1FFbT7iWsoatu8LbBCFszAk=
IronPort-HdrOrdr: A9a23:saD5Taw/zTvuH2wp4zhsKrPxq+skLtp133Aq2lEZdPULSKGlfp GV9sjziyWetN9IYgBZpTiBUJPhfZquz+8P3WB3B8bpYOCGghriEGgM1/qH/9SNIUPDH6tmpN 5dmstFeZDN5DpB/KHHCWCDer5Nr+VvsprY49s2pE0dLj2CHpsQijuRfTzrcHGeKjMmObMJUL 6nouZXrTupfnoaKu6hAGMeYuTFr9rX0Lr7fB8vHXccmUazpALtzIS/PwmT3x8YXT8K66wl63 L5nwvw4bjmm+2nyyXby3TY4/1t6ZXcI5p4dY2xY/ouW3bRYzWTFcZcsnq5zXUISdSUmRYXeR /30lMd1opImjTslyqO0GHQMkHboUsTAjnZuBOlaDLY0LPErD5WMbs8uatJNhTe8EYup9d6ze ZC2H+YrYNeCVfakD36/MWgbWAdqqMamwtQrQc/tQ0qbWIlUs4nkaUPuEdOVJsQFiPz744qVO FoEcHH/f5TNVeXdWrQsGVjyMGlGi1bJGbPfmES/siOlzRGlnFwyEUVgMQZg3cb7Zo4D51J/f 7NPKhknKxHCsUWcaV+DuEcRtbfMB2FfTvcdGaJZVj3HqAOPHzA75bx/bUu/emvPIcFyZMj8a 6xJW+wdVRCCX4GJff+rKGjqCq9PllVdQ6du/1j2w==
X-Talos-CUID: 9a23:yCIcM2Fz/DhPW8YbqmI96RYVPMoobEbNklTeOkC7I3tQV6GsHAo=
X-Talos-MUID: 9a23:/3MUsQnwe74Zc9nkoUCxdnp7CN5E6vyuJnlKnLArt+y6ahc3GBWC2WE=
X-IronPort-AV: E=Sophos;i="6.05,254,1701126000"; d="scan'208";a="25294453"
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=ZJJyXgahCMfLUkN0CmF3mV0uMNsslHlYLpgdwE95fG4WK68p46o6uvh7OYXM+NYLSxZzg8oNdFp6SDJyo+J4PIiyDGG8H/R1ShAD2oTOg7R8ATXsYhr73qjjoJoXWrWYrqJ27NSn71XInSiZy68Gb5T04FSBTFyGvjCK9yQ0aaCGLzj+HZ8dFFPkqWXgSfrnwapvxq+9EUx0O7nt/LuSKlkKIPVhXa3KNDO4HpEvz4xoUqFtqt1bvmDcamxpp/pzoWUIRCxvX8spIAnsJsc37BfQp7HAaqClQfqZDRiYm1hJYuZcHAMtimw1VygN1UyGQVexTey7gIHeqJc46JrlAw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=7u/fAcmHPoh530+oeeIF9bkwKcWq0N8rdZRWKgoWxUg=; b=n7Xii+ZUXY1f/IHXTH1AlAkqwuuAtbQShvj1LTj2ZJEzflGxuSoauQMcujqG+bk5ghgoCLSOfwYLkOaXWQ9usBRlZL55NMz3rlPb9nDUW+cjE/B5HYk9NdIsfRboEOu6WTJIwVHskOHNSSnDyBaowP7mqP8S/C3PYVVBS5k5kJD4Z4U9fkrRx00BVWi3YljWPuObBb3BhuTdwxJn5cRlwPr2By5osK9C3VW5SzlrozCNAbVvZZjSjDEKfYSuAFG1ss+VsogBEHSc57c9itjT6zEioxSUC2eDkJYTAQYMcnk1Ao8AKEydRpGnOvPXZ4jCfeUAu5zrD2D9+lICQEm1uA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=orange.com; dmarc=pass action=none header.from=orange.com; dkim=pass header.d=orange.com; arc=none
To: Alice Russo <arusso@amsl.com>, STEPHAN Emile INNOV/NET <emile.stephan@orange.com>, "Mishra, Sanjay" <sanjay.mishra@verizon.com>
CC: "Mishra, Sanjay" <sanjay.mishra=40verizon.com@dmarc.ietf.org>, "cdni-ads@ietf.org" <cdni-ads@ietf.org>, "cdni-chairs@ietf.org" <cdni-chairs@ietf.org>, "kevin.j.ma.ietf@gmail.com" <kevin.j.ma.ietf@gmail.com>, "francesca.palombini@ericsson.com" <francesca.palombini@ericsson.com>, "rfc-editor@rfc-editor.org" <rfc-editor@rfc-editor.org>, auth48archive <auth48archive@rfc-editor.org>
Thread-Topic: question - Re: AUTH48: RFC-to-be 9538 <draft-ietf-cdni-delegation-acme-04> for your review
Thread-Index: AQHaWrm4pi93T2QltUGCYOHF04DeA7EAvphA
Date: Thu, 08 Feb 2024 18:11:07 +0000
Message-ID: <DB4PR02MB9560C6E010F4214F755B4653FD442@DB4PR02MB9560.eurprd02.prod.outlook.com>
References: <20240123065751.D786E199610A@rfcpa.amsl.com> <7566767A-2661-462A-AE1B-2E225ACAA0D7@amsl.com> <CA+EbDtCSsAe6M=jW5NfXwpWkBPO2CLBuVmxFwM2ZB5sF+jXSGg@mail.gmail.com> <3DD85FCC-090F-4401-A6CF-640E966C749F@amsl.com> <CA+EbDtAnf19sMORx4L7mip4Qq-uPT4Vn4gFV37dbhRss-AJfQA@mail.gmail.com> <7b15b21d11cd47d7af60365e7b139e26@orange.com> <E8E4DF93-F575-4435-8C07-CFB06CEED3A2@amsl.com>
In-Reply-To: <E8E4DF93-F575-4435-8C07-CFB06CEED3A2@amsl.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Enabled=true; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_SetDate=2024-02-08T18:11:05Z; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Method=Standard; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Name=Orange_restricted_external.2; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_ActionId=1caaeb96-06a1-4a17-a885-1fac88d735df; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_ContentBits=2
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DB4PR02MB9560:EE_|AM9PR02MB6817:EE_
x-ms-office365-filtering-correlation-id: 074c3285-3ceb-438c-b2fb-08dc28d15265
x-ld-processed: 90c7a20a-f34b-40bf-bc48-b9253b6f5d20,ExtAddr
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: YljoOR74/P6nXTy01E9KDw0gX6o9n51zC5FrIjX1uUKrzcg6o5V5h+uCh33p6mrUkWWy8MTwkJaw5niOdJUl71YZL1KwuSqIdj3mZ/48ot6twsMD5JC/esIz2Hzs4cPnER6zSHppX6sRED4Z6sZXq8Y9MbBV8J5ExtDBulNqcsPXRSvr5QWiOin3M5fSsYb9rgTC9D7YtAGvmJygfj7CkrDXtkybCE77I1jPrjbRG8LS1SJaa4wnmpMcbZMMNXhhXISiR3Lt40+aGjsdgJF1Pi9X0vWu2zr5e27d4zOpi2V4+goWkQMwl614NLETxZcP1BF2kDWASHFae47kq3kSV1k6YX6p0+jiMiYol/q7aolXkWnuyfd6GKG4DAw77WlTdc0ZUEkbuthUOr9Fx5t2+4eWPRwSY34wDASfUHfEkfEngQxGSV0/rt2idASyolzx0HIdQL9qt6Z3nm+TitiTmJ/gcwukdZnGmBGxjMj9ykxaKOtQZKOU6RX+xVMZd8naxgi2JoMJ4tSpnL3ST5FUCLFaydlEyTJpj5EJBtLWhHZygOJRahNZm4KvuN6JVy0LZK20R3xW/CoGl9sTpMjvLJhvbf/esgvxU/eGLUSnoXRboWVOr5HJEQswuyrCHJP8zgajGkqK7B9hXx55igo2ng==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB4PR02MB9560.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(366004)(376002)(39860400002)(136003)(346002)(396003)(230922051799003)(64100799003)(451199024)(186009)(1800799012)(55016003)(41300700001)(7696005)(53546011)(71200400001)(9686003)(45080400002)(478600001)(966005)(38070700009)(85202003)(2906002)(52536014)(5660300002)(66946007)(64756008)(110136005)(66556008)(76116006)(66446008)(54906003)(66476007)(66574015)(26005)(83380400001)(33656002)(85182001)(38100700002)(6506007)(8676002)(86362001)(8936002)(316002)(4326008)(122000001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
X-OriginatorOrg: orange.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DB4PR02MB9560.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 074c3285-3ceb-438c-b2fb-08dc28d15265
X-MS-Exchange-CrossTenant-originalarrivaltime: 08 Feb 2024 18:11:07.4899 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 90c7a20a-f34b-40bf-bc48-b9253b6f5d20
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: ieKsobzvSxKySMQUWq+vrKhwXcThMcMIdgC4YZh4D32OxI33jyRUKsyS0RTFBT0tqJPObFnBfUcKCXZvubsIhm/E1WHVxEQUDR9SF+3CWKo=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM9PR02MB6817
X-TM-AS-ERS: 10.106.160.156-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== ZnJlZGVyaWMuZmllYXVAb3Jhb mdlLmNvbQ==
X-TMASE-Version: DDEI-5.1-9.0.1002-28180.001
X-TMASE-Result: 10--23.601700-10.000000
X-TMASE-MatchedRID: n/2IWTG9XlXUL3YCMmnG4ggKAWhuC2ojb6bRSg4rpztqrsOvUFEKyxkh ChIO6vg8tCTgx97D5G69Yo+Q7OmurBRLQnD6pjPPk4nP+tQi+rZ+G11aZ3USRNzONa1Rspx3ns5 D88NPfBHy/Cytt/CdREqxrPvQ2F+gHChWHg5gjGpaoMsh0YTAUq7YaZ2V2aJQmS0TtehjpJIDlF i1QWcr/JA8bj4Y6Py01RpOuHOu+mZpY+rDpJtqXlAioTUKcQ8XrvmcharXeRXrxi8IyfBenEn0v jeeb/bZ1MYKm62iwBvVb7dA1fZCenH0SatXLU38Kwi7MItzaY3/1JLsM3tGxqq9wgXVNwtgDLbB q7zk/lfTNC8gZJ/b0Hm6vS/eQOsMxjyfU4yWgmKVUcz8XpiS9Dqu3dM+YhFRoT/LvysjYBjFk9f lUZGbvu/49UG/zMRXa3SQL1+CYqwxtSFCZpCfAjhk1eHxQ+sgIpqNt4sWOA4EsSjupltTfhvZOm p4nV1ss/8asVTmegKfw4MW8XS54WnQfizS+JhwIi5n/oIUxv+SDjSTcryc1JTFYAEf108B/BmHw zNKsfyWRUJejnRpWoXhgnMvWe8QmNV0jJG1YGr0hv/rD7WVZF9PfAO3691XnZz9rcTQ5otXIvzh +PMkmoObHJ5n3wc72+55JPTZHg87BOj1lchJLDuUqTPTfDTrQuLGuwInWNP4vDUxYwwR4qDmkLz tB9AW4vM1YF6AJbYfZdczzDm/ukNgf3cN84kOh6yjJQVxgj/Ba6VG2+9jFNQdB5NUNSsiHjNPEY V0qbCNo+PRbWqfRJBlLa6MK1y4
X-TMASE-SNAP-Result: 1.821001.0001-0-1-22:0,33:0,34:0-0
X-TMASE-INERTIA: 0-0;;;;
X-TMASE-XGENCLOUD: d0c72ed6-9722-4d14-947b-b4c482cddafa-0-0-200-0
Content-Transfer-Encoding: base64
Archived-At: <https://mailarchive.ietf.org/arch/msg/auth48archive/Hb7zjpSgI-9hv5IHQQbqETE9Ce8>
Subject: Re: [auth48] question - Re: AUTH48: RFC-to-be 9538 <draft-ietf-cdni-delegation-acme-04> for your review
X-BeenThere: auth48archive@rfc-editor.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Archiving AUTH48 exchanges between the RFC Production Center, the authors, and other related parties" <auth48archive.rfc-editor.org>
List-Unsubscribe: <https://mailman.rfc-editor.org/mailman/options/auth48archive>, <mailto:auth48archive-request@rfc-editor.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/auth48archive/>
List-Post: <mailto:auth48archive@rfc-editor.org>
List-Help: <mailto:auth48archive-request@rfc-editor.org?subject=help>
List-Subscribe: <https://mailman.rfc-editor.org/mailman/listinfo/auth48archive>, <mailto:auth48archive-request@rfc-editor.org?subject=subscribe>
X-List-Received-Date: Thu, 08 Feb 2024 18:13:17 -0000

Hi Alice,

I've checked the figure with scaling enabled. It looks good to me. I think we can safely enable scaling.

Thank you,

Regards,
Frederic



Orange Restricted

-----Message d'origine-----
De : Alice Russo <arusso@amsl.com>
Envoyé : jeudi 8 février 2024 19:06
À : FIEAU Frédéric INNOV/NET <frederic.fieau@orange.com>; STEPHAN Emile INNOV/NET <emile.stephan@orange.com>; Mishra, Sanjay <sanjay.mishra@verizon.com>
Cc : Mishra, Sanjay <sanjay.mishra=40verizon.com@dmarc.ietf.org>; cdni-ads@ietf.org; cdni-chairs@ietf.org; kevin.j.ma.ietf@gmail.com; francesca.palombini@ericsson.com; rfc-editor@rfc-editor.org; auth48archive <auth48archive@rfc-editor.org>
Objet : question - Re: AUTH48: RFC-to-be 9538 <draft-ietf-cdni-delegation-acme-04> for your review

Authors,

Approvals are complete; however, we have a question regarding the SVG in Section 3:

The SVG has the width and height specified, which makes the artwork not scale. We suggest that scaling be enabled. Scaling will allow the figure to be resized when it is viewed on a mobile device; however, there may be aesthetic trade-offs (e.g., image may appear too large on a desktop screen).

Please review Figure 1 in the HTML and PDF files and let us know if they may be updated.

The current document (SVG does not scale):
  https://www.rfc-editor.org/authors/rfc9538.html
  https://www.rfc-editor.org/authors/rfc9538.pdf
  https://www.rfc-editor.org/authors/rfc9538.xml (source)

vs. SVG without width and height:
  https://www.rfc-editor.org/authors/test9538.html
  https://www.rfc-editor.org/authors/test9538.pdf
  https://www.rfc-editor.org/authors/test9538.xml (source)

Thank you.
RFC Editor/ar

> On Feb 7, 2024, at 10:53 AM, emile.stephan@orange.com wrote:
>
> Hi Alice
>
> I hope you are well.
>
> I approve to the 4 new wording suggested below.
>
> Tell me if you expect a more detailed answer.
>
> Kind regards
> Emile
>
>
>
> From: Mishra, Sanjay <sanjay.mishra@verizon.com>
> Sent: mercredi 7 février 2024 18:31
> To: Alice Russo <arusso@amsl.com>
> Cc: FIEAU Frédéric INNOV/NET <frederic.fieau@orange.com>; STEPHAN
> Emile INNOV/NET <emile.stephan@orange.com>; Mishra, Sanjay
> <sanjay.mishra=40verizon.com@dmarc.ietf.org>; cdni-ads@ietf.org;
> cdni-chairs@ietf.org; kevin.j.ma.ietf@gmail.com;
> francesca.palombini@ericsson.com; rfc-editor@rfc-editor.org;
> auth48archive <auth48archive@rfc-editor.org>
> Subject: Re: [E] Re: AUTH48: RFC-to-be 9538
> <draft-ietf-cdni-delegation-acme-04> for your review
>
> Hi Alice - Thank you and please see response below for the 4 questions:
>
> 1) <!--[rfced] May this be rephrased as follows for readability?
>
> Original:
>    RFC9115 allows delegating entities to remain in
>    full control of the delegation and be able to revoke it any time and
>    this avoids the need to share private cryptographic key material
>    between the involved entities.
>
> Perhaps:
>    Per RFC 9115, delegating entities can remain in
>    full control of the delegation and can revoke it at any time.
>    This avoids the need to share private cryptographic key material
>    between the involved entities.
> -->
> Yes, I approve the new wording as suggested above
>
>
>
> 2) <!--[rfced] FYI, in Section 1.1, we added mention of "STAR" so that
> it is expanded upon first use. Please let us know if you prefer otherwise.
> (In the original, the first use was in Section 3 - "ACME STAR delegation"
> was followed by explanation but was without a direct expansion.)
>
> Original:
>    It also uses
>    terminology from Section 1.2 of [RFC8739] and Section 1.1 of
>    [RFC9115].
>
> Current:
>    It also uses
>    terminology from Section 1.2 of [RFC8739] and Section 1.1 of
>    [RFC9115], including Short-Term, Automatically Renewed (STAR),
>    as applied to X.509 certificates.
> -->
>
> Yes, I approve of the new wording as above.
>
> 3) <!--[rfced] How may this sentence be rephrased for clarity? In
> particular, "allows to specify" is not clear. Also, Section 2.3.1.3 of
> RFC 9115 indicates that the CNAME mapping is optional; should this
> sentence be updated to reflect that?
>
> Original:
>       |   Note: The delegation object defined in Section 2.3.1.3 of
>       |  [RFC9115] only allows to specify DNS mappings using CNAME RRs.
>
> Perhaps:
>       |   Note: The delegation object defined in Section 2.3.1.3 of
>       |  [RFC9115] only allows DNS mappings to be specified using CNAME RRs.
>
> Yes, I approve the above wording as suggested
>
> Or:
>       |   Note: The delegation object defined in Section 2.3.1.3 of
>       |  [RFC9115] allows DNS mappings to be specified using only CNAME RRs.
> -->
>
>
> 4) <!--[rfced] FYI, for readability and precision, we have made the
> following
> updates: split this into two sentences, changed "criticality around"
> to "criticality of", and changed "which" to "this account".
> Please review and let us know if you prefer otherwise.
>
> Original:
>    The reader is expected to understand the ACME delegation trust model
>    (Section 7.1 of [RFC9115]) and security goal (Section 7.2 of
>    [RFC9115]), in particular the criticality around the protection of
>    the user account associated with the delegation, which authorizes all
>    the security relevant operations between dCDN and uCDN over the ACME
>    channel.
>
> Current:
>    The reader is expected to understand the ACME delegation trust model
>    (Section 7.1 of [RFC9115]) and security goal (Section 7.2 of
>    [RFC9115]).  In particular, the reader is expected to understand the
>    criticality of the protection of the user account associated with the
>    delegation; this account authorizes all the security-relevant
>    operations between a dCDN and a uCDN over the ACME channel.
>
> Yes, I approve of the suggested text.
>
> Thank you very much
> Best
> Sanjay
>
> On Wed, Feb 7, 2024 at 12:17 PM Alice Russo <arusso@amsl.com> wrote:
> Authors,
>
> Sanjay, thank you for your reply and for letting us know about Frederic's reply to the CDNI mailing list.
>
> Please reply to the 4 questions below regarding changes to the text.
>
> The edited document is here:
>   https://www.rfc-editor.org/authors/rfc9538.html
>   https://www.rfc-editor.org/authors/rfc9538.pdf
>   https://www.rfc-editor.org/authors/rfc9538.txt
>
> https://www/.
> rfc-editor.org%2Fauthors%2Frfc9538.xml&data=05%7C02%7Cfrederic.fieau%4
> 0orange.com%7Cc88b1eb5d9144cae2a9d08dc28d0d95a%7C90c7a20af34b40bfbc48b
> 9253b6f5d20%7C0%7C0%7C638430124676708826%7CUnknown%7CTWFpbGZsb3d8eyJWI
> joiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7
> C%7C&sdata=bDWXU7CzKJ0Dxaox5ktAbOIF07kEoJT96iiEXsm4gcs%3D&reserved=0
> (source)
>
> Diff files of all changes from the approved Internet-Draft:
>   https://www.rfc-editor.org/authors/rfc9538-diff.html
>
> https://www/.
> rfc-editor.org%2Fauthors%2Frfc9538-rfcdiff.html&data=05%7C02%7Cfrederi
> c.fieau%40orange.com%7Cc88b1eb5d9144cae2a9d08dc28d0d95a%7C90c7a20af34b
> 40bfbc48b9253b6f5d20%7C0%7C0%7C638430124676716807%7CUnknown%7CTWFpbGZs
> b3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D
> %7C0%7C%7C%7C&sdata=3Tog1N2ufOCwM4EzF9JqcE2xcqNrz3uSERbwEFnAY6E%3D&res
> erved=0 (side by side)
>
> This page shows the AUTH48 status of your document:
>
> https://www/.
> rfc-editor.org%2Fauth48%2Frfc9538&data=05%7C02%7Cfrederic.fieau%40oran
> ge.com%7Cc88b1eb5d9144cae2a9d08dc28d0d95a%7C90c7a20af34b40bfbc48b9253b
> 6f5d20%7C0%7C0%7C638430124676720836%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC
> 4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&
> sdata=8F6fkKukmTBO9hdmi%2F9t0Qye8bzQfAxu3DiphYBWoIg%3D&reserved=0
>
> In addition to the authors' responses to the questions, we hope to hear from Emile Stephan, as an approval is needed from each author listed in the first-page header of the RFC.
>
> Thank you.
> RFC Editor/ar
____________________________________________________________________________________________________________
Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.