[dane] Is there some activity for Pointer-to-Server

Christian Rößner <c@roessner-network-solutions.com> Wed, 11 November 2015 08:05 UTC

Return-Path: <c@roessner-network-solutions.com>
X-Original-To: dane@ietfa.amsl.com
Delivered-To: dane@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0000E1B343F for <dane@ietfa.amsl.com>; Wed, 11 Nov 2015 00:05:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.351
X-Spam-Level:
X-Spam-Status: No, score=-1.351 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HELO_EQ_DE=0.35, MIME_8BIT_HEADER=0.3, SPF_PASS=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KjlivwVyqoDI for <dane@ietfa.amsl.com>; Wed, 11 Nov 2015 00:05:36 -0800 (PST)
Received: from mx.roessner-net.de (mail.roessner-net.de [193.239.107.42]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F05EE1B343C for <dane@ietf.org>; Wed, 11 Nov 2015 00:05:35 -0800 (PST)
Received: from mail.roessner-net.de (mail.roessner-net.de [193.239.107.42]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "mail.roessner-net.de", Issuer "thawte DV SSL CA - G2" (verified OK)) by mx.roessner-net.de (Postfix) with ESMTPS id 3nwdsT0LLwzGpSX for <dane@ietf.org>; Wed, 11 Nov 2015 09:05:33 +0100 (CET)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=roessner-network-solutions.com; s=swioBi3opho; t=1447229133; i=@roessner-network-solutions.com; bh=oAzaa2z6RoTxpGdtvlzwJIg16QqvZgIRDlNGOvgHTSY=; h=From:Subject:Date:To; b=SDyn5TdjRc5eatWcGEgzGMbmBMA/NEmMUSnKdy6aUwJJ25cdbPnZ7m1Ofpg8D6+bA 1FzM4KSiBSQEiE99u9YH9HRqKzreu5t2bkilug0twnbfon3tSablIpGvD0+PPUpspb mDHlPQVtaUhodDEoAFe0NE5wnZaxzb2az53ELb24p/qfps7wXDqCy73PrqzouDgVvu U0+GXBkn4xQyNmA/6XAbWcLVaMPOSBwZtwSHqrDknTDAwREeFYffrVVfzgZ+1y/VJG xImHftnciWWi36HldkSHdd4s4YqOp3BJlOkgX3Cw4UtAbJejccJa4NEhQuwxxjOQk0 zYKjmm7Pog/yw==
Received: from [172.16.2.200] (static-201-106.deltasurf.de [193.239.106.201]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) (Authenticated sender: c@roessner-network-solutions.com) by mail.roessner-net.de (Postfix) with ESMTPSA id 3nwdsS24DnzMlGQ for <dane@ietf.org>; Wed, 11 Nov 2015 09:05:32 +0100 (CET)
From: Christian Rößner <c@roessner-network-solutions.com>
Content-Type: multipart/signed; boundary="Apple-Mail=_6955E201-A325-4A69-AB2E-948E3328215E"; protocol="application/pkcs7-signature"; micalg="sha1"
Message-Id: <789370DC-D5CA-4F96-A20F-EB41B61D48FC@roessner-network-solutions.com>
Date: Wed, 11 Nov 2015 09:05:29 +0100
To: "dane@ietf.org" <dane@ietf.org>
Mime-Version: 1.0 (Mac OS X Mail 9.1 \(3096.5\))
X-Mailer: Apple Mail (2.3096.5)
Outgoingd-Filter: Outgoingd Filter v0.4.0_m1 mail.roessner-net.de 3nwdsS24DnzMlGQ
Anomaly-Results: mail.roessner-net.de; rate=0%
Archived-At: <http://mailarchive.ietf.org/arch/msg/dane/FvFtTi2YuiTLmIgAiub9U1Fwb38>
Subject: [dane] Is there some activity for Pointer-to-Server
X-BeenThere: dane@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: DNS-based Authentication of Named Entities <dane.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dane>, <mailto:dane-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dane/>
List-Post: <mailto:dane@ietf.org>
List-Help: <mailto:dane-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dane>, <mailto:dane-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 11 Nov 2015 08:05:38 -0000

Hi,

I had written the reference implementation for SMIMA experimental draft. So far that one works very will. I know, one very important discussion was about the local part, which became SHA256/trunc at the moment.

I am also interested about the other path doing the lookup over a pointer to server variant.

If I remember correctly, someone posted a draft for such a mechanism. Something similar to:

_smime.whatever.domain.tld. IN FOO ...https://some.lookup.server.for.smime

Even the same for OpenPGP

I can't remember much more. And even did not find things in my mail archive. So: Are there plans on working on such a draft? Especially the protocol for the https-server? I am very much interested in implementing a proof-of-concept in the current milter that uses SMIMEA already. So developing such a draft could go hand in hand with theory and practice.

Kind regards

Christian