Re: [COSE] [Iot-directorate] Iotdir telechat review of draft-ietf-cose-cwt-claims-in-headers-07

"lgl island-resort.com" <lgl@island-resort.com> Fri, 03 November 2023 12:58 UTC

Return-Path: <lgl@island-resort.com>
X-Original-To: cose@ietfa.amsl.com
Delivered-To: cose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5ACEAC1522DB; Fri, 3 Nov 2023 05:58:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.908
X-Spam-Level:
X-Spam-Status: No, score=-1.908 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Xkkl9IMG83Y2; Fri, 3 Nov 2023 05:58:50 -0700 (PDT)
Received: from NAM11-BN8-obe.outbound.protection.outlook.com (mail-bn8nam11on2100.outbound.protection.outlook.com [40.107.236.100]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 61960C1519A3; Fri, 3 Nov 2023 05:58:47 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=VFOd8/CoSkqEeaqc+pCXQD0Qluoaj8yt/PBn8oT4XR37p2ZItZcT5A10WRKYE5mDmdeNJzoDllaNcm67kWm9PsN8TARZE3OeBiuPo+ew5Xjmu/N98C1NwEhsofeupVIBbFY6q8epye/7ywADtLVmDtIVtScT5RpasB9U2Q/h9TpvSbLPoDIRzStFPJ3/O+dLHdV6A8jABKOsxn2knpKvdRXTHEmp0Mu5Yh2t4fKWt8BCyj9Os4mC8+TzK+uOdNAl2L/RuxkxT2mF9zPQuh/KTZTD4gCHEptcwq44B9lMQlFwAZCaMcDl3yL7U7Hh3emSGTfM96D+GFV9qkklqJhh4w==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=JSFPJ0XOAJVM8LY44x3d7LMfQHJ4D07KrCd7thUg1Sk=; b=AAdSr6wnpQ0q9R7RsyFBVIHmq5kBuysLf6eAgR/3GawyeCtJtVEr6VoxpmJrqr5mj5Dmhta0caTNJ+DRybpge2mBSUxT9NayjhL05z/plIFKaJaFh5K3+bzDVeZdrMRvnERwz7/3Dt2/dzvdcRrgqzesmLITV5t5UQRYGubG0IGPjb94RArUaVFGEL5GvP0Kse/A3PHmy8ivIXuUpwv2iljkI58T/9AH2msPpdUdn3vyVP3MGW8DOKg4i7wBvICPYTg+Gbtir1adL8D21g0A4pxoYj18Cpy/DWlhECO5VxNG1sUVQTdtiSNavkKURERncmVBXSxGGNpTn14DgnCUVQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=island-resort.com; dmarc=pass action=none header.from=island-resort.com; dkim=pass header.d=island-resort.com; arc=none
Received: from PH7PR22MB3092.namprd22.prod.outlook.com (2603:10b6:510:13b::8) by SA1PR22MB4318.namprd22.prod.outlook.com (2603:10b6:806:386::8) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6954.21; Fri, 3 Nov 2023 12:58:44 +0000
Received: from PH7PR22MB3092.namprd22.prod.outlook.com ([fe80::4109:e983:1eac:60ab]) by PH7PR22MB3092.namprd22.prod.outlook.com ([fe80::4109:e983:1eac:60ab%7]) with mapi id 15.20.6954.021; Fri, 3 Nov 2023 12:58:44 +0000
From: "lgl island-resort.com" <lgl@island-resort.com>
To: Carsten Bormann <cabo@tzi.org>
CC: Henk Birkholz <henk.birkholz@sit.fraunhofer.de>, Hannes Tschofenig <hannes.tschofenig@gmx.net>, Orie Steele <orie@transmute.industries>, "iot-directorate@ietf.org" <iot-directorate@ietf.org>, "cose@ietf.org" <cose@ietf.org>, "draft-ietf-cose-cwt-claims-in-headers.all@ietf.org" <draft-ietf-cose-cwt-claims-in-headers.all@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>
Thread-Topic: [Iot-directorate] [COSE] Iotdir telechat review of draft-ietf-cose-cwt-claims-in-headers-07
Thread-Index: AQHaC9639npTT9FRhkar8h2bE3ZiAbBltuqAgAADroCAAMsqAIAAkYaAgAAPhQCAACCuAIAADSiAgAA/rgCAAP7kgA==
Date: Fri, 03 Nov 2023 12:58:44 +0000
Message-ID: <FBC75077-82C4-4101-96DF-BA69C102CABD@island-resort.com>
References: <169874540507.32382.14218122514486056121@ietfa.amsl.com> <83A3D56E-FDEA-46A3-ADB7-A5CA5130A1EB@island-resort.com> <82b9cb37-fb97-467b-b0d3-4752bf2f1076@gmx.net> <F3247BCE-E30B-4EA7-9652-AAE5CBB4637C@island-resort.com> <CAN8C-_LjTncbC6wz7+48A-z01AMyAexGXOvDsg5gL5qVoPoX7w@mail.gmail.com> <f350f06f-3819-4bfc-8c8b-687ab8dd908e@gmx.net> <2651c7c7-1062-f07c-0f9b-ef1650a8f026@sit.fraunhofer.de> <3B903BA4-68CA-4FB1-882A-9202B3E0C0A5@island-resort.com> <95BB52FB-4584-43D3-AD18-7F510639E03E@tzi.org>
In-Reply-To: <95BB52FB-4584-43D3-AD18-7F510639E03E@tzi.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=island-resort.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: PH7PR22MB3092:EE_|SA1PR22MB4318:EE_
x-ms-office365-filtering-correlation-id: 06d54313-ccc3-4167-1b99-08dbdc6c9c8d
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PH7PR22MB3092.namprd22.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(136003)(366004)(396003)(346002)(39830400003)(376002)(230922051799003)(230273577357003)(230173577357003)(64100799003)(186009)(1800799009)(451199024)(26005)(2616005)(6512007)(38070700009)(38100700002)(33656002)(86362001)(122000001)(2906002)(83380400001)(4744005)(4326008)(478600001)(53546011)(6506007)(71200400001)(8676002)(6486002)(66556008)(66476007)(8936002)(6916009)(64756008)(36756003)(316002)(54906003)(41300700001)(66946007)(5660300002)(76116006)(66446008)(91956017)(45980500001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-ID: <9F8AF3CDA01A1D4694B6956815684D4E@namprd22.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: island-resort.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PH7PR22MB3092.namprd22.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 06d54313-ccc3-4167-1b99-08dbdc6c9c8d
X-MS-Exchange-CrossTenant-originalarrivaltime: 03 Nov 2023 12:58:44.3881 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: ad4b5b91-a549-4435-8c42-a30bf94d14a8
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: JDj0c0JMt1vvwyUvUxJ88a6m5O80bnH4Rpgncj7uARm4cTpF4EtFdikTuPTZIQsKS/O+kd34Z5QnDOwHZW8S/w==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SA1PR22MB4318
Archived-At: <https://mailarchive.ietf.org/arch/msg/cose/-ru61cJZDdxNIGQvZG7694xaC-k>
Subject: Re: [COSE] [Iot-directorate] Iotdir telechat review of draft-ietf-cose-cwt-claims-in-headers-07
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>, <mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>, <mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 03 Nov 2023 12:58:55 -0000

> On Nov 2, 2023, at 10:46 PM, Carsten Bormann <cabo@tzi.org> wrote:
> 
> On Nov 2, 2023, at 18:58, lgl island-resort.com <lgl@island-resort.com> wrote:
>> 
>> 2) Publish with warnings
> 
> I’m not a big fan of including “to implement this specification, you must read it, and all the other specifications that might be relevant for your application” with every RFC.

I was assuming the warnings would be in the claims-in-headers document so there wouldn’t be any fan out (or even better IMO — leave the warnings out).


>> (and add errata for COSE and JOSE?)
> 
> Well, that is a bogeyman; there is nothing that the WG got wrong here that calls for an errata report.

Yes, that’s the point. COSE, JOSE and CMS are fine without warnings about processing protected headers before validation — no errata needed —  therefore it is fine to publish claims-in-headers without warnings.

LL