[COSE] Paul Wouters' Discuss on draft-ietf-cose-countersign-09: (with DISCUSS and COMMENT)
Paul Wouters via Datatracker <noreply@ietf.org> Thu, 08 September 2022 02:14 UTC
Return-Path: <noreply@ietf.org>
X-Original-To: cose@ietf.org
Delivered-To: cose@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 478CDC14CE22; Wed, 7 Sep 2022 19:14:59 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Paul Wouters via Datatracker <noreply@ietf.org>
To: The IESG <iesg@ietf.org>
Cc: draft-ietf-cose-countersign@ietf.org, cose-chairs@ietf.org, cose@ietf.org, mcr+ietf@sandelman.ca, mcr+ietf@sandelman.ca
X-Test-IDTracker: no
X-IETF-IDTracker: 8.15.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: Paul Wouters <paul.wouters@aiven.io>
Message-ID: <166260329928.48271.213904604186540650@ietfa.amsl.com>
Date: Wed, 07 Sep 2022 19:14:59 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/cose/EhaaNsWVkD0oPR_F141J5emzKFs>
Subject: [COSE] Paul Wouters' Discuss on draft-ietf-cose-countersign-09: (with DISCUSS and COMMENT)
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.39
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>, <mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>, <mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 08 Sep 2022 02:14:59 -0000
Paul Wouters has entered the following ballot position for draft-ietf-cose-countersign-09: Discuss When responding, please keep the subject line intact and reply to all email addresses included in the To and CC lines. (Feel free to cut this introductory paragraph, however.) Please refer to https://www.ietf.org/about/groups/iesg/statements/handling-ballot-positions/ for more information about how to handle DISCUSS and COMMENT positions. The document, along with other ballot positions, can be found here: https://datatracker.ietf.org/doc/draft-ietf-cose-countersign/ ---------------------------------------------------------------------- DISCUSS: ---------------------------------------------------------------------- gem install cbor-diag I am concerned about adding install commands for "programs from the internet" within an RFC. If the rubygem for some reason becomes malicious, we cannot pull it from the RFC (even if we pull it from the datatracker link, it would still live on in copies of the RFC elsewhere and malicious people could point to copies of those original RFCs to point people to downlod the malicious rubygem. I would be okay with an iet.org download location of a ruby gem. ---------------------------------------------------------------------- COMMENT: ---------------------------------------------------------------------- ITS: CBOR grammar in this document is uses Remove "is" to deal with > as an entity This is a render error for '>' ? they apply these apply Languages: There are three different languages that are currently supported: Java and C#. That's two not three? Text below suggests there might be a 3rd one in C ?
- [COSE] Paul Wouters' Discuss on draft-ietf-cose-c… Paul Wouters via Datatracker
- Re: [COSE] Paul Wouters' Discuss on draft-ietf-co… Carsten Bormann
- Re: [COSE] Paul Wouters' Discuss on draft-ietf-co… Russ Housley
- Re: [COSE] Paul Wouters' Discuss on draft-ietf-co… Paul Wouters
- Re: [COSE] Paul Wouters' Discuss on draft-ietf-co… Carsten Bormann
- Re: [COSE] Paul Wouters' Discuss on draft-ietf-co… Russ Housley
- Re: [COSE] Paul Wouters' Discuss on draft-ietf-co… Carsten Bormann
- Re: [COSE] Paul Wouters' Discuss on draft-ietf-co… Russ Housley
- Re: [COSE] Paul Wouters' Discuss on draft-ietf-co… Paul Wouters