Re: [Curdle] Adoption of rc4-die-die-die document

Loganaden Velvindron <loganaden@gmail.com> Thu, 17 August 2017 06:12 UTC

Return-Path: <loganaden@gmail.com>
X-Original-To: curdle@ietfa.amsl.com
Delivered-To: curdle@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3EE0A1323B1 for <curdle@ietfa.amsl.com>; Wed, 16 Aug 2017 23:12:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.699
X-Spam-Level:
X-Spam-Status: No, score=-2.699 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CIPn_s_pfi7r for <curdle@ietfa.amsl.com>; Wed, 16 Aug 2017 23:12:40 -0700 (PDT)
Received: from mail-lf0-x230.google.com (mail-lf0-x230.google.com [IPv6:2a00:1450:4010:c07::230]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E82291321BF for <curdle@ietf.org>; Wed, 16 Aug 2017 23:12:39 -0700 (PDT)
Received: by mail-lf0-x230.google.com with SMTP id o85so25284076lff.3 for <curdle@ietf.org>; Wed, 16 Aug 2017 23:12:39 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=MAhZIcewtJTL5ZL/tL09fUKZboH+Qq9dgJswJ9agNV0=; b=ll91WF82zmwCAUB/F9Rj1cafS5faMtN9uidotI7Cxqu/RdLFAVSC7EwZEyDwW2D1gz 2k4HIkHOAu6aDXGZu17CVIqcwK8NTS7UC/V8F1az8YZ0m3eoB95XrDhOZ2CpnBehMqZg czf3VDGE/LB2oPTipKJRrRPw8umQIQd5AfH7g1Eq8v69VkU66y2x1WjTt3SCisLJU29X 0qOCWQCH70I1txGgwdM5tO3Je/HAtKjJR0zD7YN2JCuVRh+A3W8UPx2aso6HckexBFPO 8cPZm7SnglBY99NtPXdgRJwyBnQuUkRCHgd7J50Q2EWwR7egEmqUKzzOtQA5FIDRsz+B M1tQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=MAhZIcewtJTL5ZL/tL09fUKZboH+Qq9dgJswJ9agNV0=; b=QPEfnU1DDpNugxeN7DdkrAQLibLRiT6zM80hBQXLKE5lHt0xJcP+T/vG8ZytBnn9k7 9xqWcv+/SyaiINIECa6kz+PdhqdjCEl9u5IytjtOFGWIT6OOoUaBk1fNLawxdwcpId2K q8dbRsnc8GUQ/PwtQfl5XhEe38bCFHzw4pV9rchSBFw/LIY6x2nkA3/rCaHTs3nPt7KU fWmfKdfeuO2LGdb7/NOOeq189Er/JLOK2fKweu+guByh1eG3pKz/QIOj0IDcNovRm9oz YXwXkTz64MWcyjZvsLr9Ge6xYrFeH+3BVZEQsvtIo/RAOZSmRNuny0yJgYu54KK9AXN5 DKsw==
X-Gm-Message-State: AHYfb5iSKwRwYqtDDHeBlg1yo9TwG4ae5yPu0F1PYjBX/8eo6VUpnMCu hlZ5cEErlpeYU0qyLh6l7S1Vh9I+eg==
X-Received: by 10.46.81.1 with SMTP id f1mr1573893ljb.142.1502950358151; Wed, 16 Aug 2017 23:12:38 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.46.20.81 with HTTP; Wed, 16 Aug 2017 23:12:37 -0700 (PDT)
In-Reply-To: <AF662C78-D0D9-4C57-8B45-B95C2311A048@akamai.com>
References: <AF662C78-D0D9-4C57-8B45-B95C2311A048@akamai.com>
From: Loganaden Velvindron <loganaden@gmail.com>
Date: Thu, 17 Aug 2017 10:12:37 +0400
Message-ID: <CAOp4FwSiTxHZzKW7KRst04jet0NujQ3BGSsVo_ZmNuuHi+sXiA@mail.gmail.com>
To: "Salz, Rich" <rsalz@akamai.com>
Cc: "curdle@ietf.org" <curdle@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/curdle/EGceKVpM1uOa_mdJT6cLStugqIQ>
Subject: Re: [Curdle] Adoption of rc4-die-die-die document
X-BeenThere: curdle@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "List for discussion of potential new security area wg." <curdle.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/curdle>, <mailto:curdle-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/curdle/>
List-Post: <mailto:curdle@ietf.org>
List-Help: <mailto:curdle-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/curdle>, <mailto:curdle-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 17 Aug 2017 06:12:42 -0000

On Wed, Aug 16, 2017 at 11:48 PM, Salz, Rich <rsalz@akamai.com> wrote:
> We have adopted draft-ietf-curdle-rc4-die-die-die.  Full doc details are at
> https://datatracker.ietf.org/doc/draft-ietf-curdle-rc4-die-die-die/
>
>
>
> There are concerns that this document is over-reaching our charter, and that
> a document to remove RC4 from all protocols is beyond our scope.  It is hard
> to argue with that J
>
>
>
> Should we ask to expand the charter?  Daniel suggested maybe a crypto policy
> document, but that probably belongs in SAAG or even IESG.
>
>
>
> So what should be taken out of this document so that we can move forward?
> Or should we ask for the ability to condemn RC4 for all of the IETF?
>
>
> _______________________________________________
> Curdle mailing list
> Curdle@ietf.org
> https://www.ietf.org/mailman/listinfo/curdle
>

I think that it's better that the document is broken up into smaller
documents for each protocol that uses RC4. It appears to overlaps with
other drafts that are targetting specific documents.