[dane] [Editorial Errata Reported] RFC7929 (4768)

RFC Errata System <rfc-editor@rfc-editor.org> Mon, 08 August 2016 04:52 UTC

Return-Path: <wwwrun@rfc-editor.org>
X-Original-To: dane@ietfa.amsl.com
Delivered-To: dane@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DBA2012D56C for <dane@ietfa.amsl.com>; Sun, 7 Aug 2016 21:52:21 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -103.849
X-Spam-Level:
X-Spam-Status: No, score=-103.849 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_LOW=-0.7, RP_MATCHES_RCVD=-1.247, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, USER_IN_WHITELIST=-100] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aN3xg28mocza for <dane@ietfa.amsl.com>; Sun, 7 Aug 2016 21:52:20 -0700 (PDT)
Received: from rfc-editor.org (rfc-editor.org [4.31.198.49]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C9809126579 for <dane@ietf.org>; Sun, 7 Aug 2016 21:52:20 -0700 (PDT)
Received: by rfc-editor.org (Postfix, from userid 30) id B8D73B80DB5; Sun, 7 Aug 2016 21:52:20 -0700 (PDT)
To: pwouters@redhat.com, stephen.farrell@cs.tcd.ie, Kathleen.Moriarty.ietf@gmail.com, warren@kumari.net, ogud@ogud.com
X-PHP-Originating-Script: 30:errata_mail_lib.php
From: RFC Errata System <rfc-editor@rfc-editor.org>
Message-Id: <20160808045220.B8D73B80DB5@rfc-editor.org>
Date: Sun, 07 Aug 2016 21:52:20 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/dane/Ki2QxuSGVMIRmTJ0OLHGxFVM9aw>
Cc: rfc-editor@rfc-editor.org, james@manger.com.au, dane@ietf.org
Subject: [dane] [Editorial Errata Reported] RFC7929 (4768)
X-BeenThere: dane@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: DNS-based Authentication of Named Entities <dane.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dane>, <mailto:dane-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dane/>
List-Post: <mailto:dane@ietf.org>
List-Help: <mailto:dane-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dane>, <mailto:dane-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Aug 2016 04:52:22 -0000

The following errata report has been submitted for RFC7929,
"DNS-Based Authentication of Named Entities (DANE) Bindings for OpenPGP".

--------------------------------------
You may review the report below and at:
http://www.rfc-editor.org/errata_search.php?rfc=7929&eid=4768

--------------------------------------
Type: Editorial
Reported by: James Manger <james@manger.com.au>

Section: 5.3.

Original Text
-------------
For example, if the OPENPGPKEY RR query for hugh@example.com
(8d57[...]b7._openpgpkey.example.com) yields a CNAME to
8d57[...]b7._openpgpkey.example.net, and an OPENPGPKEY RR for
8d57[...]b7._openpgpkey.example.net exists,

Corrected Text
--------------
For example, if the OPENPGPKEY RR query for hugh@example.com
(c93f[...]d6._openpgpkey.example.com) yields a CNAME to
c93f[...]d6._openpgpkey.example.net, and an OPENPGPKEY RR for
c93f[...]d6._openpgpkey.example.net exists,

Notes
-----
The example hash 8d57[...]b7 is wrong. It has been calculated with the wrong hash algorithm: SHA-224, instead of SHA-256. The correct hash is c93f[...]d6, which is shown in the example in section 3.

Instructions:
-------------
This erratum is currently posted as "Reported". If necessary, please
use "Reply All" to discuss whether it should be verified or
rejected. When a decision is reached, the verifying party (IESG)
can log in to change the status and edit the report, if necessary. 

--------------------------------------
RFC7929 (draft-ietf-dane-openpgpkey-12)
--------------------------------------
Title               : DNS-Based Authentication of Named Entities (DANE) Bindings for OpenPGP
Publication Date    : August 2016
Author(s)           : P. Wouters
Category            : EXPERIMENTAL
Source              : DNS-based Authentication of Named Entities
Area                : Security
Stream              : IETF
Verifying Party     : IESG