Re: [COSE] [IANA #1284212] expert review for draft-ietf-cose-cwt-claims-in-headers (cose)

Michael Jones <michael_b_jones@hotmail.com> Wed, 29 November 2023 13:33 UTC

Return-Path: <michael_b_jones@hotmail.com>
X-Original-To: cose@ietfa.amsl.com
Delivered-To: cose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0909AC14F74A for <cose@ietfa.amsl.com>; Wed, 29 Nov 2023 05:33:29 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.234
X-Spam-Level:
X-Spam-Status: No, score=-1.234 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FORGED_HOTMAIL_RCVD2=0.874, FREEMAIL_FROM=0.001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=hotmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XXNnDTHkqE3t for <cose@ietfa.amsl.com>; Wed, 29 Nov 2023 05:33:25 -0800 (PST)
Received: from NAM12-DM6-obe.outbound.protection.outlook.com (mail-dm6nam12olkn2053.outbound.protection.outlook.com [40.92.22.53]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 49BCBC14F73E for <cose@ietf.org>; Wed, 29 Nov 2023 05:33:25 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=b//38uARW2OTS05+JWripf6rdyc3M9TGQjTQkz+0RgZwCTxNMJfiIZsJjh1KGryLDm0jbrCWQXdiTjx/ryhf4qOZcoVp+U7KoiMr3cOViYueJnzG2JzkZnVq6NJAJ5i05D17c5HsJegcs69Ra+pm0Ir1UGmwe4WunpUJUp9xgLw9v5xdT/j/qrPiJZ0k+dg0WBkxABxiKRYSAiqU+2I+Vk8Gm+5bsSY4IDs17hHdRRmZdCv2rOn2kkvTQxs3mUeY/VH6CeTV8hxPc8FLPAYEb3eQd9Z2S5+a0iBnB4DYqrgWXeZJGLVFVHcij9W0Ioel93OYGsKWXGgmuo3hUbVp2g==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Kol5N5zPZMIbx6S0kvSM4fp7lTaRNfKKsd94qJWUaFs=; b=fGY+qrI11oGs0HG0RamRyU306cTx34K1gq9FRCH/olGtgyT9cpIul3fVOeY8DSTJpMeGkSCQr3WpdQ7/6JULs8IgJrJxQVIfqol2uBg+K36Frx0FgBHh/G3PoZJa/Nfjg+/KpMbcMWwKYe3pfYtdLwBJjPhNvKSmfXxZMXD74Fgt/yz+2fJAPonTaZ8BkoflAEG+Mjs9OeHB06fIzXglRlM94UMQWZfTEmZ0xzSoSJV+tI3eeR7c/9LGZeSwfVEmmmMkYOT3AQo0GVIWjMGYJG89kXhA6ExbGuQmdWy6nyO53B9Vns3ds7W9lFLoQdp3aVqMh9YRVd5o00yKAACSRg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=none; dmarc=none; dkim=none; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=hotmail.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Kol5N5zPZMIbx6S0kvSM4fp7lTaRNfKKsd94qJWUaFs=; b=fQL85beuh195A4rWNUDYs1FEyH4ZBnkXloon0eQ6olXYdDIaX4gT0YUH8h/lAVIjJzDjWjoBpbRuxwWVpc6aSvsfvX6Xv9dBZJq2f3MVRvpc/ohZW+CA/6L2KRO0t22bw/wfS1HrTfkbZxnAqTArOGbtEO8d4++PGcpTnfSRvRR4zGZbiDxtgNndbZIYLJJQ6kfwT2MsWPfqu840sDm2zMkwxXm2keYLkuEV1Su95h+1IxoVw3AZx5KQUJhUCA3FTyTkEA5iGjrjN8OO4tqY2kIprhIH3PgNHXfHJE8EX2KlGg6lXcIMqEbAni1FiNPW6Y7PCpz6FxH74M1IzSIwcQ==
Received: from SJ0PR02MB7439.namprd02.prod.outlook.com (2603:10b6:a03:295::14) by BL3PR02MB7905.namprd02.prod.outlook.com (2603:10b6:208:350::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7046.23; Wed, 29 Nov 2023 13:33:22 +0000
Received: from SJ0PR02MB7439.namprd02.prod.outlook.com ([fe80::38a6:2b20:d72f:21cb]) by SJ0PR02MB7439.namprd02.prod.outlook.com ([fe80::38a6:2b20:d72f:21cb%7]) with mapi id 15.20.7025.021; Wed, 29 Nov 2023 13:33:22 +0000
From: Michael Jones <michael_b_jones@hotmail.com>
To: Carsten Bormann <cabo@tzi.org>
CC: Francesca Palombini <francesca.palombini@ericsson.com>, "paul.wouters@aiven.io" <paul.wouters@aiven.io>, "lgl island-resort.com" <lgl@island-resort.com>, "drafts-expert-review-comment@iana.org" <drafts-expert-review-comment@iana.org>, "cose@ietf.org" <cose@ietf.org>
Thread-Topic: [COSE] [IANA #1284212] expert review for draft-ietf-cose-cwt-claims-in-headers (cose)
Thread-Index: AQHaCDkP9UjpiCPQckyWupuy843ctbBco/WQgACxYgCAAB65gIAARemwgAASRQCAAAoXsIAAAxIAgAAAOxCAAAKOAIAAALPQgAAhnACADJQegIAABwuAgADCnICAABnTAIAABfoAgAAAiLCABBXKMIAAvs6AgAGlCsCACEL78IAXGlwAgAAshHA=
Date: Wed, 29 Nov 2023 13:33:22 +0000
Message-ID: <SJ0PR02MB743921EBF8B0C113E5118260B783A@SJ0PR02MB7439.namprd02.prod.outlook.com>
References: <RT-Ticket-1284212@icann.org> <rt-5.0.3-580051-1697567816-1595.1284212-9-0@icann.org> <rt-5.0.3-580636-1697568304-0.1284212-9-0@icann.org> <AS1PR07MB8616EFA12DB4F47075B7AB5198DDA@AS1PR07MB8616.eurprd07.prod.outlook.com> <MW4PR02MB7428022AEA2B4574410EE7EEB7DDA@MW4PR02MB7428.namprd02.prod.outlook.com> <AS1PR07MB8616E407B141D0C56F7EC65398DCA@AS1PR07MB8616.eurprd07.prod.outlook.com> <F465B3E6-B2CA-4580-B006-5DE7D8E9AABD@tzi.org> <MW4PR02MB7428E1B8942D1D64A825B0EEB7DCA@MW4PR02MB7428.namprd02.prod.outlook.com> <D4A1FC53-8D45-455B-8DF0-F3692F96AE4A@tzi.org> <MW4PR02MB7428A11CC4B4061109E5A07DB7DCA@MW4PR02MB7428.namprd02.prod.outlook.com> <56022A38-8D1A-4C65-A535-E3D45F3C3C7E@tzi.org> <MW4PR02MB7428751A6DC9804B8B15B66BB7DCA@MW4PR02MB7428.namprd02.prod.outlook.com> <641BD038-522A-41C2-B2C2-9E3C118DE915@tzi.org> <MW4PR02MB7428C73DA8A708AB8B860923B7DCA@MW4PR02MB7428.namprd02.prod.outlook.com> <4F61896C-4BAD-436E-AC31-3F50E9B93BF7@island-resort.com> <B7F75895-A2CD-4BDB-BDD9-08AE784690A2@tzi.org> <A5700329-C5E2-41B8-9AA8-9455855A088F@island-resort.com> <B2B317AD-CA0C-4B63-B797-572EF4D64E66@tzi.org> <SJ0PR02MB7439EBC79259647E7BF45789B7ABA@SJ0PR02MB7439.namprd02.prod.outlook.com> <3E122426-7C91-4362-A5BF-C82D4417F482@tzi.org> <SJ0PR02MB7439B995FAE830D1F7509889B7ABA@SJ0PR02MB7439.namprd02.prod.outlook.com> <SJ0PR02MB7439E7A5048CED933797B4F5B7A9A@SJ0PR02MB7439.namprd02.prod.outlook.com> <A4F9D3CB-EE82-4949-9821-6AD74FE42F7C@tzi.org> <SJ0PR02MB74395E7CD76777C39123A56DB7AFA@SJ0PR02MB7439.namprd02.prod.outlook.com> <SJ0PR02MB7439403FD6D8FCDC78D40A82B7B2A@SJ0PR02MB7439.namprd02.prod.outlook.com> <C8D3F7DB-27CB-43A9-A278-1ED7AF0448ED@tzi.org>
In-Reply-To: <C8D3F7DB-27CB-43A9-A278-1ED7AF0448ED@tzi.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-tmn: [bDOtkziIoykmqxUlW7ItS+kwvMwRC3FB]
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: SJ0PR02MB7439:EE_|BL3PR02MB7905:EE_
x-ms-office365-filtering-correlation-id: 3891608b-4ea5-4066-e046-08dbf0dfc1de
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: sct-15-20-4755-11-msonline-outlook-3d941.templateTenant
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SJ0PR02MB7439.namprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-RMS-PersistedConsumerOrg: 00000000-0000-0000-0000-000000000000
X-MS-Exchange-CrossTenant-Network-Message-Id: 3891608b-4ea5-4066-e046-08dbf0dfc1de
X-MS-Exchange-CrossTenant-rms-persistedconsumerorg: 00000000-0000-0000-0000-000000000000
X-MS-Exchange-CrossTenant-originalarrivaltime: 29 Nov 2023 13:33:22.3988 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 84df9e7f-e9f6-40af-b435-aaaaaaaaaaaa
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BL3PR02MB7905
Archived-At: <https://mailarchive.ietf.org/arch/msg/cose/gvYzKDbeOTI0pv5vfNRcDoi1EPE>
Subject: Re: [COSE] [IANA #1284212] expert review for draft-ietf-cose-cwt-claims-in-headers (cose)
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>, <mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>, <mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 29 Nov 2023 13:33:29 -0000

Thanks for your detailed review and resulting pull request, Carsten.  I've reviewed and merged it and published -10 incorporating it.  See https://datatracker.ietf.org/doc/draft-ietf-cose-cwt-claims-in-headers/.

If you and/or Francesca could approve the IANA registration today, that would prepare us for the telechat on the 30th.

                                Thanks again!
                                -- Mike

-----Original Message-----
From: Carsten Bormann <cabo@tzi.org>
Sent: Wednesday, November 29, 2023 2:52 AM
To: Michael Jones <michael_b_jones@hotmail.com>
Cc: Francesca Palombini <francesca.palombini@ericsson.com>; paul.wouters@aiven.io; lgl island-resort.com <lgl@island-resort.com>; drafts-expert-review-comment@iana.org; cose@ietf.org
Subject: Re: [COSE] [IANA #1284212] expert review for draft-ietf-cose-cwt-claims-in-headers (cose)

Hi Mike,

the text of -09 is not yet in the repository, so I made a pull request to the state of main in https://github.com/tplooker/draft-ietf-cose-cwt-claims-in-headers:

https://github.com/tplooker/draft-ietf-cose-cwt-claims-in-headers/pull/14

This PR avoids the nebulous term profile introduced in -09.
It also makes the requirement for indicating the intended interpretation a protocol requirement, instead of burying it in the security considerations.
It is explicit that it is the security (integrity protection and authentication) of the *combination* of the CWT Claims header parameter and of the method of conveying the intended interpretation governs the allowable usage of the interpreted information.

Grüße, Carsten


> On 2023-11-14, at 19:09, Michael Jones <michael_b_jones@hotmail.com> wrote:
>
> Hi Francesca,
>
> Now that we have an agreed-upon strategy in which the lake-edhoc and draft-ietf-cose-cwt-claims-in-headers header parameters are distinct, can you please reply-all updating your review to approve the registration?  That should put us in good shape for the November 30th Telechat.
>
> FYI, Hannes replied updating his IoTDir review saying that the spec is ready - which he did in response to the security considerations updates we made together in https://www.ietf.org/archive/id/draft-ietf-cose-cwt-claims-in-headers-09.html.
>
> Carsten, in response to your feedback, -09 now also says that the profile used defines the semantics for the CWT claims used.
>
>                                Thanks both,
>                                -- Mike
>
> -----Original Message-----
> From: COSE <cose-bounces@ietf.org> On Behalf Of Michael Jones
> Sent: Thursday, November 9, 2023 3:54 AM
> To: Carsten Bormann <cabo@tzi.org>
> Cc: Francesca Palombini <francesca.palombini@ericsson.com>; paul.wouters@aiven.io; lgl island-resort.com <lgl@island-resort.com>; drafts-expert-review-comment@iana.org; cose@ietf.org
> Subject: Re: [COSE] [IANA #1284212] expert review for draft-ietf-cose-cwt-claims-in-headers (cose)
>
> I created https://github.com/tplooker/draft-ietf-cose-cwt-claims-in-headers/pull/13 to describe the non-CBOR payload use case in response to Hannes' IotDir review.  It also says that profiles define the semantics of the claims used, in response to further feedback from Carsten.
>
> Reviews requested!
>
>                                -- Mike
>
> -----Original Message-----
> From: Carsten Bormann <cabo@tzi.org>
> Sent: Wednesday, November 8, 2023 11:46 AM
> To: Michael Jones <michael_b_jones@hotmail.com>
> Cc: Francesca Palombini <francesca.palombini@ericsson.com>; paul.wouters@aiven.io; lgl island-resort.com <lgl@island-resort.com>; drafts-expert-review-comment@iana.org; cose@ietf.org
> Subject: Re: [COSE] [IANA #1284212] expert review for draft-ietf-cose-cwt-claims-in-headers (cose)
>
> Hi Mike,
>
> I was planning to send you (a PR with) some clarifying editorial changes first.
> The week is quite full...
>
> Grüße, Carsten
>
>
>> On Nov 8, 2023, at 00:29, Michael Jones <michael_b_jones@hotmail.com> wrote:
>>
>> As designated experts, can you please reply-all saying that you approve of the registration proposed in https://www.ietf.org/archive/id/draft-ietf-cose-cwt-claims-in-headers-08.html
>
>
> _______________________________________________
> COSE mailing list
> COSE@ietf.org
> https://www.ietf.org/mailman/listinfo/cose