Re: [COSE] "CBOR Certificates"

John Mattsson <john.mattsson@ericsson.com> Sat, 13 February 2021 17:00 UTC

Return-Path: <john.mattsson@ericsson.com>
X-Original-To: cose@ietfa.amsl.com
Delivered-To: cose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4AAA53A0E55 for <cose@ietfa.amsl.com>; Sat, 13 Feb 2021 09:00:59 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.351
X-Spam-Level:
X-Spam-Status: No, score=-2.351 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.25, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rOLPuuS2GWJs for <cose@ietfa.amsl.com>; Sat, 13 Feb 2021 09:00:58 -0800 (PST)
Received: from EUR02-VE1-obe.outbound.protection.outlook.com (mail-eopbgr20059.outbound.protection.outlook.com [40.107.2.59]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9425A3A0E54 for <cose@ietf.org>; Sat, 13 Feb 2021 09:00:57 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=cUTLh9x0NQxkchnPsnb1YZeK3XY/Smj7Bw3DzK66m29T/XMsnJQiGBtwZqbwM571gVwcz5kFjwGSWvyRGf9Va4OY+C7lyCCsHG64n7DoyH556tb0YH1IMa0zZWLlhNCGfo/7M5nTmUW7ps5PP5b3d+uCN1runM+C24TrKdFd8YFPmGu2KFQJA7kFfO3fWl+HjUFL3LS5P7/I6M8uDYAyyVcyRY078hZZRPMK8+jKUkODHwB7aN+XuKgYEU2pAtObtb7aPgkoAkZWjgu7nvLHdlyiS0+pa4RzMus74DoEHF1bSonoozYTv57ZQ2L8tXbwJ/nHWSm7rGItQ8eLCL8tAg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ZuQ0IQWDlKgUeFbzxerpKECtdoHr9WtSQAc8H1+NW6c=; b=kfqqUr775u1rqy0NJ7iSt0o2rXCzkrMbwoEzJyIa7+e+jqRu9OJbXS0Y4ld/WnmEPrnrq9ea6IWR2S0nWIQ5Dm12ttI9/dn74fQAqSTthWO6zOR6XS8TG2fKIygC3PSMUmtKh0Pra8G1HWdwEHF5VaVL6vsGXZ0mvEpR5odCRhpR1e0DP2t7nME50ur15dpHPQOP4Q3QaXUPvjgPNGgn9dU0ZCda9FvkGIXpF4zu3Sk83s6Igd+b/t/GHHhBFzpp1FerMMutoXyZO9oQOXauv4pF+fwMGL5+E4+a2sLbRbisjaMvHZkjT7czSRUVtpzDojrHwBmtuuioXIY1YVnyDg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ZuQ0IQWDlKgUeFbzxerpKECtdoHr9WtSQAc8H1+NW6c=; b=pgpvlEDCVIeNRbTdAueBSEnJOQN8OJwT0B2Vg+zVz+LPhKGw2uTgZVeMEo7oCW6gwlUi7Jw033o1hwWsNuUE+F/8peFvZX+bF9963RBTJGmf9TOFpzZIkV/lVLvgcQJ/0/SI4W7EUgVm+72DE1VZ2hSsut8p4cwITgAMdOskcAs=
Received: from HE1PR0701MB3050.eurprd07.prod.outlook.com (2603:10a6:3:4b::8) by HE1PR0701MB2204.eurprd07.prod.outlook.com (2603:10a6:3:2c::7) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3868.11; Sat, 13 Feb 2021 17:00:51 +0000
Received: from HE1PR0701MB3050.eurprd07.prod.outlook.com ([fe80::c555:6e47:970c:1268]) by HE1PR0701MB3050.eurprd07.prod.outlook.com ([fe80::c555:6e47:970c:1268%11]) with mapi id 15.20.3868.015; Sat, 13 Feb 2021 17:00:51 +0000
From: John Mattsson <john.mattsson@ericsson.com>
To: Michael Richardson <mcr+ietf@sandelman.ca>, Carsten Bormann <cabo@tzi.org>, "cose@ietf.org" <cose@ietf.org>
CC: Göran Selander <goran.selander@ericsson.com>
Thread-Topic: [COSE] "CBOR Certificates"
Thread-Index: AQHXAL5qVuLfKZxewkeWYGCJXuYNo6pUIiWAgAC+oICAAABcAIAAkdYAgADv4IA=
Date: Sat, 13 Feb 2021 17:00:51 +0000
Message-ID: <1AD29C3C-81EA-4306-BBBB-B914E934DEE8@ericsson.com>
References: <5C2A6065-AC5E-4702-A94D-F72C85BD6DAC@ericsson.com> <452ddae14b19ac8a6b98cdbbb20edede@bbhmail.nl> <4c5a7de2-e855-3bb7-cc6d-abfaa86c09dd@ri.se> <d197e8c500c7f1b284c74f3d25985df845d722c2.camel@aisec.fraunhofer.de> <2214.1613079564@localhost> <B8DE7623-B2D2-48EE-A832-626058268EDB@ericsson.com> <26213.1613156343@localhost> <0BEDAD6E-31F8-4FA2-9FCB-F85C642156D9@tzi.org> <2909.1613187738@localhost>
In-Reply-To: <2909.1613187738@localhost>
Accept-Language: en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.45.21011103
authentication-results: sandelman.ca; dkim=none (message not signed) header.d=none;sandelman.ca; dmarc=none action=none header.from=ericsson.com;
x-originating-ip: [81.225.97.222]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: e2090f63-a417-4bd7-aa10-08d8d040eb56
x-ms-traffictypediagnostic: HE1PR0701MB2204:
x-ms-exchange-transport-forked: True
x-microsoft-antispam-prvs: <HE1PR0701MB2204B45F22DBB0091594AA02898A9@HE1PR0701MB2204.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8882;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:HE1PR0701MB3050.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(39860400002)(366004)(376002)(346002)(396003)(136003)(44832011)(66574015)(36756003)(86362001)(2616005)(8676002)(66946007)(107886003)(66446008)(6512007)(26005)(8936002)(6506007)(53546011)(83380400001)(5660300002)(33656002)(186003)(4326008)(110136005)(316002)(71200400001)(76116006)(66476007)(2906002)(64756008)(66556008)(6486002)(478600001)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
Content-Type: text/plain; charset="utf-8"
Content-ID: <8BAE23480DDD1141801F1E65D85A4580@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: HE1PR0701MB3050.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: e2090f63-a417-4bd7-aa10-08d8d040eb56
X-MS-Exchange-CrossTenant-originalarrivaltime: 13 Feb 2021 17:00:51.6405 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 5FXbhYuzqxwHw6gseaBcpm+F9XDIrRGTXNfORQAoaARPi/+oxZVH7NTUH+bc07XXcUPCJDlIzVjxqHQAZNtacbUf7GCFiDOJwki02DXxxZw=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0701MB2204
Archived-At: <https://mailarchive.ietf.org/arch/msg/cose/DUIiC6KVZQGf6JdCpd5M5_MFZ1Q>
Subject: Re: [COSE] "CBOR Certificates"
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>, <mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>, <mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 13 Feb 2021 17:00:59 -0000

Hi,

I think it is good to have a discussion regarding the name and terminology.

I think “CBOR encoded X.509 Certificates” with some suitable abbreviation would fit both type 0 and 1. Both use CBOR for encoding and both follow RFC 5280 (X.509) except when it comes to DER encoding. As long as the DER<->CBOR encoding is one-to-one it is easy to see that the security of type 0 and type 1 are equal.

I am not against changing the term “CBOR certificate” and saving that for something else that has nothing with RFC 5280 to do, but I do not understand the previous comment to move type 0 to another document. Given a specification of type 1, type 0 follows trivially.

/John

-----Original Message-----
From: COSE <cose-bounces@ietf.org> on behalf of Michael Richardson <mcr+ietf@sandelman.ca>
Date: Saturday, 13 February 2021 at 04:42
To: Carsten Bormann <cabo@tzi.org>, "cose@ietf.org" <cose@ietf.org>
Cc: Göran Selander <goran.selander@ericsson.com>
Subject: Re: [COSE] "CBOR Certificates"


Carsten Bormann <cabo@tzi.org> wrote:
    > On 12. Feb 2021, at 19:59, Michael Richardson <mcr+ietf@sandelman.ca>
    > wrote:
    >>
    >> compressed

    > But they aren’t compressed.

abridged then.

--
Michael Richardson <mcr+IETF@sandelman.ca>   . o O ( IPv6 IøT consulting )
           Sandelman Software Works Inc, Ottawa and Worldwide