Re: [CDNi] I-D Action: draft-ietf-cdni-delegation-acme-02.txt

"Kevin J. Ma" <kevin.j.ma.ietf@gmail.com> Wed, 26 July 2023 00:51 UTC

Return-Path: <kevin.j.ma.ietf@gmail.com>
X-Original-To: cdni@ietfa.amsl.com
Delivered-To: cdni@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 16A9CC151B13 for <cdni@ietfa.amsl.com>; Tue, 25 Jul 2023 17:51:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.095
X-Spam-Level:
X-Spam-Status: No, score=-2.095 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ZY3PGtESFf2t for <cdni@ietfa.amsl.com>; Tue, 25 Jul 2023 17:51:47 -0700 (PDT)
Received: from mail-qk1-x730.google.com (mail-qk1-x730.google.com [IPv6:2607:f8b0:4864:20::730]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0F215C151B07 for <cdni@ietf.org>; Tue, 25 Jul 2023 17:51:47 -0700 (PDT)
Received: by mail-qk1-x730.google.com with SMTP id af79cd13be357-76af2cb7404so247263685a.0 for <cdni@ietf.org>; Tue, 25 Jul 2023 17:51:46 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20221208; t=1690332705; x=1690937505; h=to:in-reply-to:references:message-id:date:subject:mime-version:from :content-transfer-encoding:from:to:cc:subject:date:message-id :reply-to; bh=IssYI81fasDYfncf2R+M9Bd+Li26vR1Bnq9b4u8Q44I=; b=qI4EGBumV7kZrBmJvE6zww2bW4GOC764YJ8NWAZDarj7TLeBL/PIX3X+t+9MOYxjML 0lQC6hJdlrvAaQUd4Xg+0RGwobQQCVgrWGjupAV7QjISgq4AhvUII/71Xor9fHCN9UiI wxi+SY+pecDYJUsr2JZ/XMsEh/lDV1M3qYHy7L04iLZUdEG/GTJ8Z+brIb4jKOiEEWYL T60yTngVno2vYXBpWbQTE4bL65d8YbuPvT61+HFUXAuQ26e0qwthwYfkMtB+6EA3hrAo zSe48bdzPWdOBQr59l0DqPD/d9CQzFpr2+khWGm3mFXn/l7jKjRj6h15rh7o1A3aFysk MbJA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1690332705; x=1690937505; h=to:in-reply-to:references:message-id:date:subject:mime-version:from :content-transfer-encoding:x-gm-message-state:from:to:cc:subject :date:message-id:reply-to; bh=IssYI81fasDYfncf2R+M9Bd+Li26vR1Bnq9b4u8Q44I=; b=PkVyH1Dg+aBYr+GP77m3K1oPggTcX77YDV1p4lfJQQvXoJUrn9atZ/ImzN7nO+WtY3 8sKW+AuUe4XSNA/bDdRxmOQh8FcTZwe9OTbXcT7eBq9S/yttPcxGLxz9xPZ2INPo3klF 1BGFkkc7Z4h4nnQkyj02KSQUf4thYoIBdzETUCiKXjfFUBD/fufn5/OzVO0LmlXmlhO9 1hC2dDIh051VAqdO1peT1nYcIWIQc0xXuLygHu7qOFBS3Z3drBom/vGabnCQUhtD6H/Z 8InWaYAkeW50bqB8cgadQN/Z8wrzYWU0mI9PlddeMPgBkrdlAQ0zzAAyJQvIOWr3dFgV KP+g==
X-Gm-Message-State: ABy/qLaT92Xk9qhPM2eSum1VjXsdE2qF7vItVq5Cp+kR5eMtsTCgFzA+ Lo3yrK6R67FpAAcubWT1hAUBnK3u6OU=
X-Google-Smtp-Source: APBJJlFIpIkgreahGQbzIXsXxB/VYdqVRLiwk2zkx167t2eJ/VXHSrKYAbXjlcT2iS6owNXb9WySQg==
X-Received: by 2002:a05:620a:2904:b0:767:dc5a:3bf8 with SMTP id m4-20020a05620a290400b00767dc5a3bf8mr761049qkp.60.1690332705327; Tue, 25 Jul 2023 17:51:45 -0700 (PDT)
Received: from smtpclient.apple ([2607:fb91:838:10df:45e0:40aa:b405:f316]) by smtp.gmail.com with ESMTPSA id a22-20020a05620a103600b00767765561absm4054265qkk.100.2023.07.25.17.51.44 for <cdni@ietf.org> (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Tue, 25 Jul 2023 17:51:44 -0700 (PDT)
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: "Kevin J. Ma" <kevin.j.ma.ietf@gmail.com>
Mime-Version: 1.0 (1.0)
Date: Tue, 25 Jul 2023 20:51:33 -0400
Message-Id: <A47649B1-3C3F-4A64-8045-E03375FE676D@gmail.com>
References: <168494269680.19982.5403337159955236458@ietfa.amsl.com>
In-Reply-To: <168494269680.19982.5403337159955236458@ietfa.amsl.com>
To: cdni@ietf.org
X-Mailer: iPhone Mail (20F75)
Archived-At: <https://mailarchive.ietf.org/arch/msg/cdni/gQCDYIycT0jO97mK-xmMd4D8-qY>
Subject: Re: [CDNi] I-D Action: draft-ietf-cdni-delegation-acme-02.txt
X-BeenThere: cdni@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This list is to discuss issues associated with the Interconnection of Content Delivery Networks \(CDNs\)" <cdni.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cdni>, <mailto:cdni-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cdni/>
List-Post: <mailto:cdni@ietf.org>
List-Help: <mailto:cdni-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cdni>, <mailto:cdni-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 26 Jul 2023 00:51:48 -0000

Hi Frederic,

  As part of the shepherd review, I was going over the references.  I think the terminology reference to RFC7337 (requirements) should be removed (we don't really reference anything from the requirements RFC).  I also think the reference to RFC7975 (redirection interface) should be replaced with RFC7336, since you're really talking about DNS redirection in general, not the CDNI recursive redirection interface.  RFC7337 and RFC7975 could then be removed from the informative references list.

thanx.

--  Kevin J. Ma

Sent from my iPhone

> On May 24, 2023, at 11:38 AM, internet-drafts@ietf.org wrote:
> 
> 
> A New Internet-Draft is available from the on-line Internet-Drafts
> directories. This Internet-Draft is a work item of the Content Delivery
> Networks Interconnection (CDNI) WG of the IETF.
> 
>   Title           : CDNI delegation using Automated Certificate Management Environment
>   Authors         : Frédéric Fieau
>                     Emile Stephan
>                     Sanjay Mishra
>   Filename        : draft-ietf-cdni-delegation-acme-02.txt
>   Pages           : 11
>   Date            : 2023-05-24
> 
> Abstract:
>   This document defines metadata to support delegating the delivery of
>   HTTPS content between two or more interconnected CDNs.  Specifically,
>   this document defines a CDNI Metadata interface object to enable
>   delegation of X.509 certificates leveraging delegation schemes
>   defined in RFC9115.  RFC9115 allows delegating entities to remain in
>   full control of the delegation and be able to revoke it any time and
>   this avoids the need to share private cryptographic key material
>   between the involved entities.
> 
> The IETF datatracker status page for this Internet-Draft is:
> https://datatracker.ietf.org/doc/draft-ietf-cdni-delegation-acme/
> 
> There is also an HTML version available at:
> https://www.ietf.org/archive/id/draft-ietf-cdni-delegation-acme-02.html
> 
> A diff from the previous version is available at:
> https://author-tools.ietf.org/iddiff?url2=draft-ietf-cdni-delegation-acme-02
> 
> Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts
> 
> 
> _______________________________________________
> CDNi mailing list
> CDNi@ietf.org
> https://www.ietf.org/mailman/listinfo/cdni