[COSE] Additional COSE algorithms used by W3C Web Authentication (WebAuthn)

Mike Jones <Michael.Jones@microsoft.com> Mon, 11 March 2019 22:02 UTC

Return-Path: <Michael.Jones@microsoft.com>
X-Original-To: cose@ietfa.amsl.com
Delivered-To: cose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9B0BC131224 for <cose@ietfa.amsl.com>; Mon, 11 Mar 2019 15:02:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tZXJ2nUiVM63 for <cose@ietfa.amsl.com>; Mon, 11 Mar 2019 15:02:38 -0700 (PDT)
Received: from NAM06-DM3-obe.outbound.protection.outlook.com (mail-eopbgr640118.outbound.protection.outlook.com [40.107.64.118]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 96FFD131211 for <cose@ietf.org>; Mon, 11 Mar 2019 15:02:38 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=5ja81KwLHZhV4KxtiJ/FidthJ1X80k0LPXUg77y00aM=; b=d9Vx8eyNqo6aAUUdEizaeaVq3XHsOS4FXfNTc8UkTedS4KUOBZt8E/WO3SIiFHQR1HJA6qL0q9/NC/m2yrV+E7MxIr/Q2mR7Nt57jKqXBQa3ET3S9YKUAYbS2GTwZ2ausXQ0cNcYkcCyetuI3Yuzu+D0/ZPNGN+oeQlA06KWISk=
Received: from MW2PR00MB0298.namprd00.prod.outlook.com (52.132.148.29) by MW2PR00MB0395.namprd00.prod.outlook.com (52.132.148.159) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1739.0; Mon, 11 Mar 2019 22:02:36 +0000
Received: from MW2PR00MB0298.namprd00.prod.outlook.com ([fe80::1139:4bca:cb25:30ed]) by MW2PR00MB0298.namprd00.prod.outlook.com ([fe80::1139:4bca:cb25:30ed%8]) with mapi id 15.20.1742.000; Mon, 11 Mar 2019 22:02:36 +0000
From: Mike Jones <Michael.Jones@microsoft.com>
To: "cose@ietf.org" <cose@ietf.org>
CC: Matthew Miller <linuxwolf+ietf@outer-planes.net>
Thread-Topic: Additional COSE algorithms used by W3C Web Authentication (WebAuthn)
Thread-Index: AdTYU+Cb3yek7mBcS0mI3faxkTWEnA==
Date: Mon, 11 Mar 2019 22:02:36 +0000
Message-ID: <MW2PR00MB0298E7A6A0510B34D3433EA3F5480@MW2PR00MB0298.namprd00.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [2001:4898:80e8:2:ad71:55a4:d42:5659]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: f66835bf-827b-41a8-14aa-08d6a66d4580
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600127)(711020)(4605104)(4618075)(2017052603328)(7193020); SRVR:MW2PR00MB0395;
x-ms-traffictypediagnostic: MW2PR00MB0395:
x-ms-exchange-purlcount: 10
x-microsoft-antispam-prvs: <MW2PR00MB0395C8D00FAE8A827200EEA9F5480@MW2PR00MB0395.namprd00.prod.outlook.com>
x-forefront-prvs: 09730BD177
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(39860400002)(366004)(396003)(376002)(136003)(346002)(209900001)(199004)(189003)(236005)(22452003)(316002)(99286004)(6506007)(966005)(6306002)(97736004)(102836004)(55016002)(86362001)(6436002)(54896002)(52536013)(606006)(14454004)(72206003)(53936002)(53376002)(8936002)(6346003)(71200400001)(71190400001)(7696005)(81156014)(8676002)(14444005)(7736002)(6916009)(5640700003)(9686003)(256004)(1730700003)(2906002)(81166006)(186003)(74316002)(25786009)(476003)(486006)(33656002)(21615005)(6116002)(8990500004)(4326008)(10290500003)(86612001)(790700001)(68736007)(5660300002)(46003)(105586002)(2351001)(106356001)(4744005)(2501003)(10090500001)(478600001)(6606295002); DIR:OUT; SFP:1102; SCL:1; SRVR:MW2PR00MB0395; H:MW2PR00MB0298.namprd00.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: microsoft.com does not designate permitted sender hosts)
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Michael.Jones@microsoft.com;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: P4OGV27IikhZyqjuJnr4I0HJpenr3/jdyv6ONKn8VAsOFBMRaBPGwdhRGiAlql2M8ZX5kBuwqvtqvIDU+1d3S02AjA1ScxvpF8l+aecYRbvDgGYKUDAyH1lelXcrK4X07B/O7WqrCLnE2SOnTf1Xc5KnyPDU4RVXEdudp73GpM6k2hRl66aLn9zmpySxACGVCNLFdOMluLaREvFaPD3g+rHhUkgT9htwDs6/zGsPNde3EBzJMQx3UxI8zYtselnxvbUT12XxlJXHLQI1DOYce3m4BEhkjJ4+tdR5Y/HB72n6RscbA6T+b7LlSj6x7eTUB0a50P8GPQchYa39QT4UtfF8q7SaVfOofzoWZvwmSqaCaHYk0F4dGI3AVkvpvDlr6KSTaq6roYdeoXCHRuKT5grgc4zSqkdIay863JpNZhc=
Content-Type: multipart/alternative; boundary="_000_MW2PR00MB0298E7A6A0510B34D3433EA3F5480MW2PR00MB0298namp_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-Network-Message-Id: f66835bf-827b-41a8-14aa-08d6a66d4580
X-MS-Exchange-CrossTenant-originalarrivaltime: 11 Mar 2019 22:02:36.5052 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MW2PR00MB0395
Archived-At: <https://mailarchive.ietf.org/arch/msg/cose/o-eg9yE5CzcBMc-flRtK9FOY8zQ>
Subject: [COSE] Additional COSE algorithms used by W3C Web Authentication (WebAuthn)
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>, <mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>, <mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 11 Mar 2019 22:02:49 -0000

The new COSE working group charter<https://datatracker.ietf.org/wg/cose/charter/> includes this deliverable:

4. Define the algorithms needed for W3C Web Authentication<https://www.w3.org/TR/2019/REC-webauthn-1-20190304/> for COSE using draft-jones-webauthn-cose-algorithms<https://tools.ietf.org/html/draft-jones-webauthn-cose-algorithms> and draft-jones-webauthn-secp256k1<https://tools.ietf.org/html/draft-jones-webauthn-secp256k1> as a starting point (Informational).

I have written draft-jones-cose-additional-algorithms, which combines these starting points into a single draft, which registers these algorithms in the IANA COSE registries<https://www.iana.org/assignments/cose/cose.xhtml>.  When not already registered, this draft also registers these algorithms for use with JOSE in the IANA JOSE registries<https://www.iana.org/assignments/jose/jose.xhtml>.  I believe that this draft is ready for working group adoption to satisfy this deliverable.

The specification is available at:

  *   https://tools.ietf.org/html/draft-jones-cose-additional-algorithms-00

An HTML-formatted version is also available at:

  *   http://self-issued.info/docs/draft-jones-cose-additional-algorithms-00.html

                                                                -- Mike

P.S.  This notice as also posted at http://self-issued.info/?p=1957 and as @selfissued<https://twitter.com/selfissued>.