Re: [Curdle] Multiple WGLC

"Mark D. Baushke" <mdb@juniper.net> Sat, 18 March 2017 18:24 UTC

Return-Path: <mdb@juniper.net>
X-Original-To: curdle@ietfa.amsl.com
Delivered-To: curdle@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 22EA41293EB for <curdle@ietfa.amsl.com>; Sat, 18 Mar 2017 11:24:44 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.922
X-Spam-Level:
X-Spam-Status: No, score=-1.922 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=junipernetworks.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id r3GB945D8qAx for <curdle@ietfa.amsl.com>; Sat, 18 Mar 2017 11:24:42 -0700 (PDT)
Received: from NAM02-CY1-obe.outbound.protection.outlook.com (mail-cys01nam02on0091.outbound.protection.outlook.com [104.47.37.91]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BA8031293E4 for <curdle@ietf.org>; Sat, 18 Mar 2017 11:24:41 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=junipernetworks.onmicrosoft.com; s=selector1-juniper-net; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=a5Rkwy9TX/M9ir06gaqoJjLw8KOmNcDvho+vneMMntQ=; b=JhGSHMs+c81fCt7ycFONvoPmuWmAcxOXR8DO0vjH2hJlcVY29VgKXQE2gYhbVMqb9VPZubWuNRRCg79yy4w7/b8Ipa048BaRm6FfYMiHgrEsFTyMZBJc05MvzQBQwFohrbxaNiV8XURsJhbtKwxQk37ZBZxzFtS5tHDpXS86mu8=
Received: from BN6PR05CA0013.namprd05.prod.outlook.com (10.174.92.154) by BN1PR05MB310.namprd05.prod.outlook.com (10.141.63.141) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.991.4; Sat, 18 Mar 2017 18:24:39 +0000
Received: from BY2FFO11FD011.protection.gbl (2a01:111:f400:7c0c::101) by BN6PR05CA0013.outlook.office365.com (2603:10b6:405:39::26) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.991.4 via Frontend Transport; Sat, 18 Mar 2017 18:24:39 +0000
Authentication-Results: spf=softfail (sender IP is 66.129.239.18) smtp.mailfrom=juniper.net; cs.auckland.ac.nz; dkim=none (message not signed) header.d=none;cs.auckland.ac.nz; dmarc=fail action=none header.from=juniper.net;
Received-SPF: SoftFail (protection.outlook.com: domain of transitioning juniper.net discourages use of 66.129.239.18 as permitted sender)
Received: from p-emfe01a-sac.jnpr.net (66.129.239.18) by BY2FFO11FD011.mail.protection.outlook.com (10.1.14.129) with Microsoft SMTP Server (version=TLS1_0, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA_P384) id 15.1.977.7 via Frontend Transport; Sat, 18 Mar 2017 18:24:38 +0000
Received: from p-mailhub01.juniper.net (10.160.2.17) by p-emfe01a-sac.jnpr.net (172.24.192.21) with Microsoft SMTP Server (TLS) id 14.3.123.3; Sat, 18 Mar 2017 11:24:38 -0700
Received: from eng-mail01.juniper.net (eng-mail01.juniper.net [172.17.28.114]) by p-mailhub01.juniper.net (8.14.4/8.11.3) with ESMTP id v2IIOaXo020833; Sat, 18 Mar 2017 11:24:37 -0700 (envelope-from mdb@juniper.net)
Received: from eng-mail01.juniper.net (localhost [127.0.0.1]) by eng-mail01.juniper.net (Postfix) with ESMTP id 7C3C811454; Sat, 18 Mar 2017 11:24:36 -0700 (PDT)
To: Peter Gutmann <pgut001@cs.auckland.ac.nz>
CC: Daniel Migault <daniel.migault@ericsson.com>, curdle <curdle@ietf.org>
In-Reply-To: <1489827654266.43895@cs.auckland.ac.nz>
References: <2DD56D786E600F45AC6BDE7DA4E8A8C118BA5A70@eusaamb107.ericsson.se> <1489827654266.43895@cs.auckland.ac.nz>
Comments: In-reply-to: Peter Gutmann <pgut001@cs.auckland.ac.nz> message dated "Sat, 18 Mar 2017 09:01:05 -0000."
From: "Mark D. Baushke" <mdb@juniper.net>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
Date: Sat, 18 Mar 2017 11:24:36 -0700
Message-ID: <34726.1489861476@eng-mail01.juniper.net>
Sender: mdb@juniper.net
X-EOPAttributedMessage: 0
X-MS-Office365-Filtering-HT: Tenant
X-Forefront-Antispam-Report: CIP:66.129.239.18; IPV:NLI; CTRY:US; EFV:NLI; SFV:NSPM; SFS:(10019020)(6009001)(39850400002)(39410400002)(39450400003)(39860400002)(2980300002)(199003)(189002)(9170700003)(2950100002)(50986999)(7696004)(53936002)(6916009)(55016002)(5660300001)(54906002)(54356999)(356003)(229853002)(76176999)(7846003)(6392003)(50466002)(86362001)(8746002)(81166006)(8676002)(4326008)(305945005)(8936002)(7126002)(77096006)(117636001)(53416004)(2810700001)(2906002)(76506005)(105596002)(106466001)(6246003)(110136004)(38730400002)(6266002)(47776003)(23676002)(189998001)(42262002); DIR:OUT; SFP:1102; SCL:1; SRVR:BN1PR05MB310; H:p-emfe01a-sac.jnpr.net; FPR:; SPF:SoftFail; MLV:sfv; A:1; MX:1; LANG:en;
X-Microsoft-Exchange-Diagnostics: 1; BY2FFO11FD011; 1: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
X-MS-Office365-Filtering-Correlation-Id: 585fd6ce-34b1-416d-03ed-08d46e2c09fc
X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(22001)(2017030254067); SRVR:BN1PR05MB310;
X-Microsoft-Exchange-Diagnostics: 1; BN1PR05MB310; 3:SeuN8W6qaU5ph9UjO00NEsT4olVCcs03h+hwsFG47GSeSlYeZYcXjIWtsL45usqcsK3yuBn0TTL9c01Wnqemh5WEBdTkQi4/2A/tWs+4V3qpOK850tjtsVD8ZSkQZU+dguo4iKTJWvlrWW2lKYtc/oKwjPssH6IQJ6xuA46atPZnN0pUkenM13wzArJ/PQrFYHnoLATlUjRJiNWgAiAYCUDXPm+6mGyP6jdc2umjBmnFi8q5YKAK0DuM/wqX589edNxXVyZqG+oi8uftGOqZ/xBDBLxUhCr3KLPkebj6tCRzMFFm7xGlXXboSaqcvL/Y5THZ2Y03LXpmo26r9ATNU691MFpwgZ/YbfrD4UUwQf4PGpa8HgeR0dWEphBLzF34FfTQrMNQR7om8O58dviSjA==; 25:2qZm1WI4iwmbLDzUoADTG3klhzydMCLMPGSilJwNoGa2BabEpuVy46RZx06yl6fdSEka4OXkFOasxBJlnqDGb1qdGQGJjyCfvsfV7/fWcO2LGk0IP2g5aikFnTOfZJCK66YKMAECKyQkCx1ah2nAcG5CB03G9VnpiyOj/M+s2SXXY4g9rdqbF+UugydrSF42VPBHJbWy6h+E8alQISvV0RZHzax7rf7X7hPBHzdydT4moNVCsIPBUZFdT6sGC6CmhSLww3g/1X2ilGJS1y3l7iiI+3K0LqkHw7TB2AW/ADGzuDhzH+wEziQepaILkUSNfjnF1p4DqIEsRI2tQxAIgQST5qsvMvpA/8qzruhi7RhVte283vb8/TdCUI41OHcJojU7IlWPbrrUzdxTUARWuxO0qhmV9JlrY7XNFzkK8DOOXBEtLsLsNAzOTHQHOtVmEHTcYUs6VHr8Jj6caJuZmw==
X-Microsoft-Exchange-Diagnostics: 1; BN1PR05MB310; 31:68HD9g9YhjHI7aQhFTT4eosT72aBnGwx7xs++gIS3wLshalCcMhB8y0yx7GAgy5KgG5dnzlfkVbs0cKf6L6izUVe19MKLQRmW9KOD8YrQpwoN54GqT8KQXJF0DnkPUXV3rBYzRr6tdJMIuFcMl7XLVqCQmZx/tVSJasXphtYKaF+HcU7n0sXMYQw53gbJ7RiBEP/F1LUJzi0MPkIxiTyHM2S5fg64DwRBkXjSAsy/nRtUu0vpClKKgW+EX5SI8RB; 20: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
X-Microsoft-Antispam-PRVS: <BN1PR05MB31072485B64F4056B456B46BF380@BN1PR05MB310.namprd05.prod.outlook.com>
X-Exchange-Antispam-Report-Test: UriScan:(37575265505322);
X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(6040375)(601004)(2401047)(5005006)(13017025)(13018025)(13023025)(13015025)(13024025)(8121501046)(3002001)(10201501046)(6055026)(6041248)(20161123555025)(20161123560025)(20161123558025)(20161123564025)(20161123562025)(6072148); SRVR:BN1PR05MB310; BCL:0; PCL:0; RULEID:; SRVR:BN1PR05MB310;
X-Microsoft-Exchange-Diagnostics: 1; BN1PR05MB310; 4:jn7bLx5/86ptJXo7g5v2mTb66HYqrxqEnrF0RwR4noyP84XroqASZ37Rr1G/OFeoMghLxdSOl7W1MJUjE0q8hMVaG+qa0BrtGoXI34s1oDg4NGhbVwdMwahfmxGfp4WTJnxUbSc8GSq3HfA5EUDTquA34QjoTePRss5hb7aeAAUYnwgq3NTXk0DbdsWlhGg7e9t5Pi2Ia6ukawvOGMbxW48A+U3wT5rHR0yIxaXT9t0Nj0Cqw3t3iFfNnDY0BW83SOYwIhmNp8W01nf0Nnn8NCBDN9z/LJxU+sDmJRrvO228rCKGr+NGmxeymZ80Td8ELOXG4HLXsiXL6EmpsXPIxitKOLMtgaGl0TTRWoaTlYav/S3guRIX+uQiO56T5V51z36eAsOQEmMfJe5/PWT9GmfoxCNDvZm4SZB9GUu5ReIam5iraEPyZ7SnXChtTBK41GLzA29ScLGe/FPzYRNFVGb77rHaovaynXoMIoGd8HATC4YxLw1NLR3u+72zCre13BX4bqIVdsmaHBl3zovH352cx50fDTdbWiFtzEjC3alJLZV8Dd0HF1/7QNdfsC2txoy+p07qM5XPdbxmxyY3VA08NA19SC+YqnaZWjrIcLWLLmRRfNjgVWBw0RLNKInVx3xjG4T4zczxwQLfQ6FhtKO6tiMo5hfa9g1XzWXaelRfXEvdt3sjcgeWPyWB9CtWf2lH8jsp2XDwv95cbn26NHku3/XwEUzb8De3P/oUT78pbnIR7kweU5CBWnqJ2IWe
X-Forefront-PRVS: 0250B840C1
X-Microsoft-Exchange-Diagnostics: 1;BN1PR05MB310;23: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
X-Microsoft-Exchange-Diagnostics: 1; BN1PR05MB310; 6:S801CByt2aHF0mzNoW/MSi6k3KtgthhM0xS3u6YolWgAAamcoBmF/9VwLNxVfLWx0zSIGUu7HNzxS+bqdGBWH46KgnV/bJ3buJ7bBJHQ0SDmrXQZWaTBHJBamn82srfxlJpGPBDhky5B+MW54yF6QcrSB1YOO6pXaAJxJb76mqsneeF8ccTeJo1Ql9BwKTlVg5aWou03tI1RAjKzVdW284f6JgCN4oZteFQTKBAlpKKYeU6828jh3aGDX2atESRBlL8YwklE6wUslz0LQ6rauuCve8faSqFq2YfV8dOpGCjM9PVsCT3fsKmME0FhAoAnyP8YkR90JeInwBkVdqudKcDcxWxt2agyBGjsGyw/UEpI1f50GpqfPEV+rEx8uofAgBq99WwA9TcsXigTw3wC3R4oXboW+LSPv7YAoJxExYQ=; 5:Kx1M7yevJm4/cQYRMqr9oklRhPNyTIHSmhoX0eYIDrYWY+/1UqSZjqGngZkj+4+/xXDaFWDtIUDQl2/AunJNgD17JB9PwY9YSOx32vT4Qf6icvlO5Dn/NfYL7NmJbfUImEIjnpAM9NBgugQO/5AIaw==; 24:qNymWhUPRQiWd2kCZLWf9AS5fm54TP9g9G+vREEFm8Q1fqQkcYGw71Vda+9VfAzj23nbg9UxHsIT2qhbU9cnA9zGCB8UZuBs6R5kvodSJ5g=
SpamDiagnosticOutput: 1:99
SpamDiagnosticMetadata: NSPM
X-Microsoft-Exchange-Diagnostics: 1; BN1PR05MB310; 7:ZEca9c7iuqnQETdIAVflXjPbtubiuRZx3ryxxdOVRh1n75ThmXlC0aGkuQDYeWfT33goeH7lhUVsvnk704N7s+sP4ms9NJB9dO5SzNBWTkXgIwShQFhEGSO1DmpwZes8hF09gif+u7XZGW5z2IOXX3NDeJquP+Lci0K/2o9/nX2/SNco7CPB35oQl9Ae0G6sBTltYCYG0Z8+FFQqLSd/nhIE8AS5kkUTjSqWKKNfoO2Flggp4S5FsOKp6/wKVeBHzmD5m96MbH72znTq9AWsACLsAcr4r70y/htRkf2r2Bon2Cy467L6IZgCCZ6gCpwIDA1FjYTUvqqJYMQaipJeAw==
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 18 Mar 2017 18:24:38.8869 (UTC)
X-MS-Exchange-CrossTenant-Id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=bea78b3c-4cdb-4130-854a-1d193232e5f4; Ip=[66.129.239.18]; Helo=[p-emfe01a-sac.jnpr.net]
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN1PR05MB310
Archived-At: <https://mailarchive.ietf.org/arch/msg/curdle/orpoItSsaWdRapFfDlC5Srx_4oE>
Subject: Re: [Curdle] Multiple WGLC
X-BeenThere: curdle@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "List for discussion of potential new security area wg." <curdle.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/curdle>, <mailto:curdle-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/curdle/>
List-Post: <mailto:curdle@ietf.org>
List-Help: <mailto:curdle-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/curdle>, <mailto:curdle-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 18 Mar 2017 18:24:44 -0000

Peter Gutmann <pgut001@cs.auckland.ac.nz> writes:

> Daniel Migault <daniel.migault@ericsson.com> writes:
> 
> >This emails starts a WGLC on the following drafts:
> >
> >    - draft-ietf-curdle-rsa-sha2-03 [1]
> >    - draft-ietf-curdle-ssh-ext-info-02 [2]
> >    - draft-ietf-curdle-ssh-kex-sha2-05 [3]
> >    - draft-ietf-curdle-ssh-modp-dh-sha2-02 [4]
> >
> >Please provide your comments by March 28 on the mailing list. 
> 
> draft-ietf-curdle-ssh-modp-dh-sha2-02:
> 
> Section 5, "Many users seem to be interested in the perceived safety of using
> larger MODP groups and hashing with SHA2-based algorithms", should that text
> be there?  It seems rather out of place, orphaned between Figure 2 and the
> References section.

Good point. I have removed this text in my copy of the draft.

It turns out I will not be able to upload a new draft until after this
IETF 98 is finished as the submission mechanism is currently suspended.

A similar issue applies to draft-ietf-curdle-ssh-kex-sha2-05.
This propposed update to the Key Exchange Algorithms list
should also probably be pointing to draft-ssorce-gss-keyex-sha2-00
"GSS-API Key Exchange with SHA2" for updates to gss-api-* key exchange
algorithms. There is also a need to republish draft-ietf-curdle-ssh-curves
so that draft-ietf-curdle-ssh-kex-sha2-06 will point to the unexpired
version.

	Thank you,
	-- Mark