Re: [dane] Start of WGLC for draft-ietf-dane-openpgpkey - *please* review.

Viktor Dukhovni <ietf-dane@dukhovni.org> Mon, 23 February 2015 03:52 UTC

Return-Path: <ietf-dane@dukhovni.org>
X-Original-To: dane@ietfa.amsl.com
Delivered-To: dane@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E05CC1A0167 for <dane@ietfa.amsl.com>; Sun, 22 Feb 2015 19:52:33 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.8
X-Spam-Level:
X-Spam-Status: No, score=0.8 tagged_above=-999 required=5 tests=[BAYES_50=0.8] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9iYkIxVc67pp for <dane@ietfa.amsl.com>; Sun, 22 Feb 2015 19:52:32 -0800 (PST)
Received: from mournblade.imrryr.org (mournblade.imrryr.org [38.117.134.19]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2BA991A00F0 for <dane@ietf.org>; Sun, 22 Feb 2015 19:52:32 -0800 (PST)
Received: by mournblade.imrryr.org (Postfix, from userid 1034) id F0EB1282F52; Mon, 23 Feb 2015 03:52:30 +0000 (UTC)
Date: Mon, 23 Feb 2015 03:52:30 +0000
From: Viktor Dukhovni <ietf-dane@dukhovni.org>
To: dane@ietf.org
Message-ID: <20150223035230.GD1260@mournblade.imrryr.org>
References: <CAHw9_iJPuG23Aok7V_wcAMirua_DPDLHy01tnd+DaUqEeK3NZA@mail.gmail.com> <001a01d04f19$b0292e90$107b8bb0$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <001a01d04f19$b0292e90$107b8bb0$@augustcellars.com>
User-Agent: Mutt/1.5.23 (2014-03-12)
Archived-At: <http://mailarchive.ietf.org/arch/msg/dane/ZPhgbC8icAlIkjicqNQC3CF8ITs>
Subject: Re: [dane] Start of WGLC for draft-ietf-dane-openpgpkey - *please* review.
X-BeenThere: dane@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
Reply-To: dane@ietf.org
List-Id: DNS-based Authentication of Named Entities <dane.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dane>, <mailto:dane-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dane/>
List-Post: <mailto:dane@ietf.org>
List-Help: <mailto:dane-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dane>, <mailto:dane-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 23 Feb 2015 03:52:34 -0000

On Sun, Feb 22, 2015 at 07:34:53PM -0800, Jim Schaad wrote:

> 4.  In section 3, I strongly urge that the problem of case folding of user
> names be acknowledged.   I don't insist that the problem be solved.  (I
> believe that it is not really solvable.)  However I strongly field that the
> existence of the problem needs to be stated along with the fact that there
> is no intention to solve it.   The problem statement can also easily state
> that this is a problem ONLY for US ASCII systems and not for UNICODE systems
> as these are less likely to allow for case folding in the first place.
> (Does not need to be in section 3, but that seems to be the logical place to
> put it.)

The problem *is* solvable.  Case-insensitive receiving domains,
could publish a case-folded version of the user name (hashed with
a tag that prevents collisions in other domains, I proposed a
concrete scheme some months back).  Senders could for the
unmodified lookup key, and then for the tagged case-folded
key.

The main question is whether we can reach consensus on wanting to
solve it (for OPENPGPKEY and SMIMEA alike).  Solving is the easy
part.

-- 
	Viktor.