Re: [babel] [Babel-users] First draft on relaxing Babel HMAC

Donald Eastlake <d3e3e3@gmail.com> Wed, 11 May 2022 16:27 UTC

Return-Path: <d3e3e3@gmail.com>
X-Original-To: babel@ietfa.amsl.com
Delivered-To: babel@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CDB0AC15E408 for <babel@ietfa.amsl.com>; Wed, 11 May 2022 09:27:06 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.847
X-Spam-Level:
X-Spam-Status: No, score=-6.847 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_ENVFROM_END_DIGIT=0.25, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id khqHzmSNKz38 for <babel@ietfa.amsl.com>; Wed, 11 May 2022 09:27:05 -0700 (PDT)
Received: from mail-lf1-x135.google.com (mail-lf1-x135.google.com [IPv6:2a00:1450:4864:20::135]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 276B2C1594B4 for <babel@ietf.org>; Wed, 11 May 2022 09:27:05 -0700 (PDT)
Received: by mail-lf1-x135.google.com with SMTP id p26so4455925lfh.10 for <babel@ietf.org>; Wed, 11 May 2022 09:27:05 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=BxW8ZrmW9+r+3vI1K7dGScS8zT4ntnT5RZPTZRi7n9A=; b=Ky5/E++bzv7Cxg66dIHywBOAYh4GEIQeaPWoXNuAQgVqYhFtBRcD0EGVdNeoheeMf2 Tt8w4ZQSKkUdPiX8TFMflnS7D8KrW3frTVhPmEFVNboSeumBH/kVjWWTY7lyGM9oNYDr Pz12JsNYcMdMEXDitpw9eIvch6KH+P4AJbNMc0/QXSx9sa/i52tOuoOYAtOHezm8BhoZ XzQYYoIbZUZN5O2Qx4P7lVFJRBOo5/J/QAW3ezm7sMV0CRJWjrO1Q2ozNLQSWZYb1qqd ZC1v0HKfNX/XtVs9IROhvlpZklUD5NHNr8nucilZ18AJoLH3tctDUg9wfetEmPSw4DSh RKzQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=BxW8ZrmW9+r+3vI1K7dGScS8zT4ntnT5RZPTZRi7n9A=; b=RBWR1Q9xsfomXoNMox6B8E61keEQnC2x/NMmNCiahcz1h6dTPOBDw++bqc8m0+7TE4 6kUbwZBtEav2DrevM4nKsRgPzBGDNNa7NxMcVhWCW9c9HILx01TFD1+8FqhZq8xFV9fv R24hsa1LbSyqOJesJVqfDF5TW11qgAPFygPoQLCBagqq76oeZt4bs2cOROb8PwZGNZb0 aawtEhE9mcQyJZAlDGOOrpCXhBT9rMDDKmS8tybOypiqouY6rTS5nLtjJpvwAEdiOMrY d+Qr8kMpggqtZnqCe/gaPagAsOB0jGPl+ic9WyUTE5de6FeonF+q0/3aooaEbSNaLX+m fUmQ==
X-Gm-Message-State: AOAM533zWl+lv0n4vyAYakz5guFy9V79JHI6bo4E94QtSTk7UNM6gIZX 8kqwMJke9h3mkeA4JQE7x1XdT/PGhvYDXnrkvl0=
X-Google-Smtp-Source: ABdhPJxgFQOuWx4fMxYiRkV0eCX3suqlKOqvFtq+QRBADyFtKg8r8V0276qiQDx89W0fHEFg+fcvRPxIkSQJ8f8yULQ=
X-Received: by 2002:a05:6512:2090:b0:472:2764:1f0c with SMTP id t16-20020a056512209000b0047227641f0cmr21187208lfr.482.1652286422766; Wed, 11 May 2022 09:27:02 -0700 (PDT)
MIME-Version: 1.0
References: <87mtfplh5u.wl-jch@irif.fr> <CAPDSy+7K=ZcS4eorehi+Ak84jJ9=k=aERoXkd-jYxDD6yoR3Ow@mail.gmail.com> <87k0as6oi5.wl-jch@irif.fr>
In-Reply-To: <87k0as6oi5.wl-jch@irif.fr>
From: Donald Eastlake <d3e3e3@gmail.com>
Date: Wed, 11 May 2022 12:26:51 -0400
Message-ID: <CAF4+nEF9EYUWE3y4ZeOisJTeLV3zdQiK2+qN8XBt7KUNtmQrEA@mail.gmail.com>
To: Juliusz Chroboczek <jch@irif.fr>
Cc: David Schinazi <dschinazi.ietf@gmail.com>, Babel at IETF <babel@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000004bd70405debee97a"
Archived-At: <https://mailarchive.ietf.org/arch/msg/babel/86eVq2eTKn0bHmQU0y2lLqsLVQE>
Subject: Re: [babel] [Babel-users] First draft on relaxing Babel HMAC
X-BeenThere: babel@ietf.org
X-Mailman-Version: 2.1.34
Precedence: list
List-Id: "A list for discussion of the Babel Routing Protocol." <babel.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/babel>, <mailto:babel-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/babel/>
List-Post: <mailto:babel@ietf.org>
List-Help: <mailto:babel-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/babel>, <mailto:babel-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 11 May 2022 16:27:06 -0000

Just speaking as a member of the WG, I think this is a very good idea. And
it would be somewhat simpler and easier to do a document that's an update
rather than a bis.

Thanks,
Donald
===============================
 Donald E. Eastlake 3rd   +1-508-333-2270 (cell)
 2386 Panoramic Circle, Apopka, FL 32703 USA
 d3e3e3@gmail.com


On Wed, May 11, 2022 at 12:08 PM Juliusz Chroboczek <jch@irif.fr> wrote:

> > I've been lurking on the other threads, and I think this is the most
> pragmatic
> > (and therefore the best) solution to this problem. Assuming we get
> > confirmation from a real deployment that this solution helps,
> > I'm fully supportive of publishing this as standards track RFC.
>
> Thanks, David.
>
> While you're here, I'll remark that the reason why this relaxation is safe
> is that the destination address is protected by MAC, which is something
> that you initially suggested.
>
> -- Juliusz
>
> _______________________________________________
> babel mailing list
> babel@ietf.org
> https://www.ietf.org/mailman/listinfo/babel
>