Re: [COSE] Robert Wilton's No Objection on draft-ietf-cose-x509-07: (with COMMENT)

Ivaylo Petrov <ivaylo@ackl.io> Tue, 20 October 2020 05:28 UTC

Return-Path: <ivaylo@ackl.io>
X-Original-To: cose@ietfa.amsl.com
Delivered-To: cose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F0D583A0EE8 for <cose@ietfa.amsl.com>; Mon, 19 Oct 2020 22:28:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=ackl-io.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FteVBDr-gxjM for <cose@ietfa.amsl.com>; Mon, 19 Oct 2020 22:28:55 -0700 (PDT)
Received: from mail-wr1-x431.google.com (mail-wr1-x431.google.com [IPv6:2a00:1450:4864:20::431]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A9F783A0EDF for <cose@ietf.org>; Mon, 19 Oct 2020 22:28:54 -0700 (PDT)
Received: by mail-wr1-x431.google.com with SMTP id e17so486484wru.12 for <cose@ietf.org>; Mon, 19 Oct 2020 22:28:54 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ackl-io.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=NXcFSoG3/RI9Y9fVQRqafs0DvA3FZKAMhMgPs/cNOiI=; b=Ijr0BwnbRnfBHcA8+nHbEzUBIEXccDHepKtTl7TXz5moVvaTKYgwjo+mIds11i6j88 L9RnYXki1PKA+M7ytf9yI4SG9IYjEjeZWaeX4qs2OAgq8B2CS04+OZ/jhzIXE+rkjbtQ E95fCACFCPQ3kXrXdJByb+F6ZyHtC2hiI8jQGYD1p9AKnLT+fFpb1VEVI53al2W8o9oc LrDV85Ar1XMVKhj82pk4hAC3sW6KyDpfVZZtC+TkGJVphq1o4sVOilBJTRkMEvIb7G15 om/4tvUx4JCrGCGLqIELHpAqPak3nUKx6YzwVz5qIn2FULCHaZ5O0eZPdtrvD8l6kzbc Si/w==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=NXcFSoG3/RI9Y9fVQRqafs0DvA3FZKAMhMgPs/cNOiI=; b=pm0PC+fDp/cG0feWd0OmguhdXdp2u4bmUX6IDDuzFovTMIMdtan7875pPs4pRS5hTa lTXP9sF2Ykd/fOiw3zJpOrlPC1VQxZ8XA6TasX0oL3Q9PGjolKY3wihopANQe1+KbH3m xdZltjOEfzhCS5orCX82OPeGJVR2JiEN/EsuVK6aLEICj9vt476YePWatZVFQge053SQ 0IS7uUoR248i0AG7Afde7tJ0W0OjeNR7kVGre+Fa10nEJPOEhQd/+KbE9VaVHWgeUiX5 fEU724fYGsD7RMaU+L+A6C25wJpsLgbBL3iub8FqJfLxMHA5vmQQ53zFWE0F+a5fcrqi 0gBA==
X-Gm-Message-State: AOAM531g+1YsV1UMT46FTjFjFkd7wEmhUqeFA3gAW/qTikfKHGRt8gCb nFSBe54DzoQ0u791yK2BdGBarvnN4Z9fsgetlvE1LA==
X-Google-Smtp-Source: ABdhPJyqTuGf1spiIcJ3xJuy/+mY2stjZWYcYxE3u469I09ZDBacsArNnx2uNy9VpIXJBREZAmUBd7XyB6xtvr0gKiM=
X-Received: by 2002:adf:81f4:: with SMTP id 107mr1289666wra.272.1603171732818; Mon, 19 Oct 2020 22:28:52 -0700 (PDT)
MIME-Version: 1.0
References: <160313511018.7246.11234492090901667420@ietfa.amsl.com>
In-Reply-To: <160313511018.7246.11234492090901667420@ietfa.amsl.com>
From: Ivaylo Petrov <ivaylo@ackl.io>
Date: Tue, 20 Oct 2020 08:28:26 +0300
Message-ID: <CAJFkdRwmirpsFDStoBzapGB=hn-+98_ShPT2DE_oz9-LK=prXA@mail.gmail.com>
To: Robert Wilton <rwilton@cisco.com>
Cc: The IESG <iesg@ietf.org>, draft-ietf-cose-x509@ietf.org, Cose Chairs Wg <cose-chairs@ietf.org>, cose <cose@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000a6221705b213813c"
Archived-At: <https://mailarchive.ietf.org/arch/msg/cose/xG5vnq0sfvd9EgVbEykSzCh2iFg>
Subject: Re: [COSE] Robert Wilton's No Objection on draft-ietf-cose-x509-07: (with COMMENT)
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>, <mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>, <mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 20 Oct 2020 05:28:57 -0000

Thank you Robert for your review! From this discussion [1] it appears that
indeed the intention of the usage of the term bag was not to make any
assumptions about the uniqueness of the elements. I am taking a note to
make that clear in the document regardless of the conclusion of that
discussion.

[1]: https://mailarchive.ietf.org/arch/msg/cose/VLv2E6wcGkC4YY-vFMRxnEAXrXo/

--
Best regards,
Ivaylo


On Mon, Oct 19, 2020 at 10:18 PM Robert Wilton via Datatracker <
noreply@ietf.org> wrote:

> Robert Wilton has entered the following ballot position for
> draft-ietf-cose-x509-07: No Objection
>
> When responding, please keep the subject line intact and reply to all
> email addresses included in the To and CC lines. (Feel free to cut this
> introductory paragraph, however.)
>
>
> Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
> for more information about IESG DISCUSS and COMMENT positions.
>
>
> The document, along with other ballot positions, can be found here:
> https://datatracker.ietf.org/doc/draft-ietf-cose-x509/
>
>
>
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
>
> I would like to thank Jim Schaad for this document and all his other work
> at
> IETF.
>
> My only minor comment is that I was surprised by the name "x5bag", which in
> computing terms I generally understand to be defined as a data structure
> that
> is like a set but it can contain duplicate values (also known as a
> multiset).
> It wasn't clear to me that was the intended purpose here, but I seem to
> recall
> that 'bag' might take a slightly different meaning in security circles?
> Either
> way, it might be helpful to specify both for the x5bag and x5chain whether
> or
> not duplicate certificates are allowed to be present.
>
> Regards,
> Rob
>
>
>
>