Re: [dispatch] Plain text JSON digital signatures
Kirsty P <Kirsty.p@ncsc.gov.uk> Fri, 14 May 2021 14:33 UTC
Return-Path: <Kirsty.p@ncsc.gov.uk>
X-Original-To: dispatch@ietfa.amsl.com
Delivered-To: dispatch@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BF9773A34DC for <dispatch@ietfa.amsl.com>; Fri, 14 May 2021 07:33:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.798
X-Spam-Level:
X-Spam-Status: No, score=-2.798 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.698, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FROM_GOV_DKIM_AU=-0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=ncsc.gov.uk
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id D6u67r3zhpvK for <dispatch@ietfa.amsl.com>; Fri, 14 May 2021 07:33:52 -0700 (PDT)
Received: from GBR01-LO2-obe.outbound.protection.outlook.com (mail-eopbgr100093.outbound.protection.outlook.com [40.107.10.93]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 201573A34D9 for <dispatch@ietf.org>; Fri, 14 May 2021 07:33:51 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Pvep80e+u4DT9inIuArg637U2804WsJ2ooOah5f+r+8hsi9cDcVYsD0T/zwSgk1RLAw3+1wUSNNPwkjjOq/1vuCnlH96RkLHBs7cu2L2/aoWtm9e0tB1DqURlBEgA+TMnxjx1S9hZeWQgsFrujCH4/Dl6ZlRwmaUoJCNEZCkdlIui4lMMc+fuvhm1ynELJYLSILXNvERCYAO3GTPSZNOUFtvImNU9d+eJ7HCE23ognsJ6yw1mplkU14TB8g/adqqFXV3u1BuZzj9BOHUMJDElhrbV6xKebLYCX7bnRJ72M7k6PmRCbqdA/4TMmVf4pJxlt3akiN8zWFEHzsZeb8lWQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=YZFgyq+nYiCiOuvZEHbbJWKtjsCpUaG9zOmUGE7otLE=; b=gulYVkatMXHWzAXddrwtr/mVu7iFQlhKaj/3XIBgUfQJmRcoblm6YrdnEAWdTLDrg+Xhnd2wBTsfnrp7iVOtyXsX1FRQizWH/dVcw9KwxdGeG4wR/6m/E2rTEJVmQf1eFaHvjlrscolTWFMNCx/Kgme3d62Mk/vqshOzUFtl2CMFAFTrLIYn+v/Jtj0SbELj/VIQ6eq+gtDZaIn86ukuFfUm2G3gGe+M19oftPEp59uLrsmb3jCXNaa6eoWr0c7EChsbp9SaUGzKqwGzYnE1dwIroMHCjzTBz6Cm9eBOAdk8T2XKDUA8z84JoZoEvHRMvK3RI6qSwRVHBRjUvfrZLA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ncsc.gov.uk; dmarc=pass action=none header.from=ncsc.gov.uk; dkim=pass header.d=ncsc.gov.uk; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ncsc.gov.uk; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=YZFgyq+nYiCiOuvZEHbbJWKtjsCpUaG9zOmUGE7otLE=; b=NEKpEYZ2yi8nS+KT1RGuWq01BNezPtOoq/bZ8lODytE2e3eV664k+WXN1i8RIewPTi4VRy2Xhqqh+LfJ/1+b78oPQD/x+3mX0aitzZvAs+0h5reDOC+WCO+Sgy1sOZyoPL/DsSx/lK4gVEOkWJplPDmIfb9cAflv0Xx/SQ0BYG56XkFMMDYcLfXWN4jM0XxK8FrxFXTJhhErLJKLjSGXJxrG/hqE2gkfUNv+gJsrsRAzHinNBvmRXx4t4mgYaGcQGfjg+5VamWsQGXiiRr5ZhGtfR0BLfIp/l/GjfEhaS4Quoyn4SR6tvWqQXtqoCeuhqyUk1UNbhGsEPraokkuCdw==
Received: from LO2P123MB3599.GBRP123.PROD.OUTLOOK.COM (2603:10a6:600:12c::10) by LNXP123MB3804.GBRP123.PROD.OUTLOOK.COM (2603:10a6:600:135::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4129.26; Fri, 14 May 2021 14:33:48 +0000
Received: from LO2P123MB3599.GBRP123.PROD.OUTLOOK.COM ([fe80::d1dd:5a6f:a08e:6b23]) by LO2P123MB3599.GBRP123.PROD.OUTLOOK.COM ([fe80::d1dd:5a6f:a08e:6b23%7]) with mapi id 15.20.4129.026; Fri, 14 May 2021 14:33:48 +0000
From: Kirsty P <Kirsty.p@ncsc.gov.uk>
To: Bret Jordan <jordan.ietf@gmail.com>, DISPATCH <dispatch@ietf.org>
Thread-Topic: [dispatch] Plain text JSON digital signatures
Thread-Index: AQHXQE8MgmZgqFWhwEeZoz8ZJzznG6rjCeln
Date: Fri, 14 May 2021 14:33:48 +0000
Message-ID: <LO2P123MB3599DFF2EB819F9A89A1D098D7509@LO2P123MB3599.GBRP123.PROD.OUTLOOK.COM>
References: <CAD9ie-v7uJOpjj+nbZCfQe+4JEQt-6=b6cm57iFPAn_enGeRCQ@mail.gmail.com> <3B394519-4061-43A8-8963-55A6ADEDF269@gmail.com> <19a99964-8495-2de9-b49a-52aa8321c12e@aaa-sec.com> <220475a6-1e04-107e-6327-366d48d8b420@gmail.com> <27833d9d-53c3-d01c-b01c-e7d53424b5ab@aaa-sec.com> <A88D122C-C1EB-477B-A83C-A22F1BB3CC47@gmail.com> <B8E5AF13-7B59-4329-890F-2B14766032A5@tzi.org> <CAF2hCbahPMAwe_63dT+pcz2BZSy0XOPstXqpxsCq1Vj0UmSDPg@mail.gmail.com> <1B4304D2-E82E-4255-B10C-F29ABCABE15E@tzi.org> <CAF2hCbaAx00dxxb2jRmQzVBaW7yyhefQ33+yt0uHwvwt+W_hfw@mail.gmail.com> <C96AC8A9-B385-4A3C-B12A-1209BE99CA58@tzi.org>, <F866D2C9-EF6E-4E30-B1A7-2DD9438E059A@gmail.com>
In-Reply-To: <F866D2C9-EF6E-4E30-B1A7-2DD9438E059A@gmail.com>
Accept-Language: en-GB, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: gmail.com; dkim=none (message not signed) header.d=none;gmail.com; dmarc=none action=none header.from=ncsc.gov.uk;
x-originating-ip: [20.49.216.122]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 53207890-f346-4c2c-c455-08d916e549a6
x-ms-traffictypediagnostic: LNXP123MB3804:
x-microsoft-antispam-prvs: <LNXP123MB3804106944C683875AE19948D7509@LNXP123MB3804.GBRP123.PROD.OUTLOOK.COM>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: benGLQVFoODFVTzXaubaPmyNJFfrTz0PzAQxlY2SUt8Oi3XUKyi4Rl+7zNPhtPckXnbt6m9rnjSFSvB5Kk2UaQCVhZPG79RJI/6Mv1vRveCuNNS8qmQ8dfWpmRYb0X0/E1CSdFKfgg9lSsMpxPl9lE/cAyp0DoyaTQXMk9A8CSbeMWbM4r/6KtFz0+YAF1kcv72NIf1pm7GRJnwmg82+m+QbuBsLY9UMPpT6FGmD7fLtkhKAi0nuXCGlIPUxaAtnq7IdK8X7D6skhNSxaxJ/A+dEPLKDkYtD3DFN87mrGijXNZgMf8G4yMoCtLeghrdK29/fti6vz+6bAIczLTpI1vUnGDHAsEBjOZ9iVelKBxNUoGfnn6QLenR1TtkdqVDPjUnODWoWQ3fNiwqya+yhuwm3G8+mwNcPkT5OaQWbJEJvTcIYJ/3Vr0Q2ZPjXC5Izm+wmfsGkEZ9wiy8c9DF39BfhJkA19GVUNraoyWTwW0fMZXw4Y2u2PzlE/5G5RDmFSbTLLfXgNVdFNNrdCs/bsbzCkyhSgF6FDv6ak6NBwFvJ5Po99+RGGxHUAtqirbLKoU9PzTvojHUAFvsNhMgbaNXXrsrsyzxDnygBO3SFh5Ew81kake38ZGJylaZKgARdFvykXvaT1+5CTCyl5CuuLpCZcyXNeua8OINvHMhD5/Q1h58qgIAeVw66h+x+CUaX
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:LO2P123MB3599.GBRP123.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(4636009)(39850400004)(346002)(366004)(396003)(376002)(136003)(66946007)(66476007)(45080400002)(966005)(76116006)(186003)(66446008)(53546011)(66556008)(64756008)(7696005)(86362001)(6506007)(478600001)(8676002)(19627405001)(83380400001)(8936002)(2906002)(38100700002)(5660300002)(55016002)(52536014)(71200400001)(9686003)(166002)(110136005)(122000001)(316002)(26005)(33656002); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_LO2P123MB3599DFF2EB819F9A89A1D098D7509LO2P123MB3599GBRP_"
MIME-Version: 1.0
X-OriginatorOrg: ncsc.gov.uk
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: LO2P123MB3599.GBRP123.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 53207890-f346-4c2c-c455-08d916e549a6
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 May 2021 14:33:48.7996 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 14aa5744-ece1-474e-a2d7-34f46dda64a1
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: +PScKwPeRvM/LVB5V8SmOvM0+CLTz4Gm3Luf/q8lRPBW8n6ANssCrH4JXe+h+CsD11l3PBtIR5YNw911ykiueA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: LNXP123MB3804
Archived-At: <https://mailarchive.ietf.org/arch/msg/dispatch/ApzH65hP60eO4q8BEdlEDy3bbog>
Subject: Re: [dispatch] Plain text JSON digital signatures
X-BeenThere: dispatch@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DISPATCH Working Group Mail List <dispatch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dispatch>, <mailto:dispatch-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dispatch/>
List-Post: <mailto:dispatch@ietf.org>
List-Help: <mailto:dispatch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dispatch>, <mailto:dispatch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 14 May 2021 14:33:58 -0000
Hi Bret, Thank you for sharing this work with the list - I'm glad you have found additional supporters in the IETF community. However, it's not for the chairs to decide the dispatch outcome, we simply help to take a pulse-check of the community and move towards a dispatch outcome. All the options you listed (plus a few others) are viable. To this end, we will offer you a slot at the next DISPATCH WG meeting (at IETF 111, 26-30 July) to get discussion and see what the community thinks is the best avenue for this. We haven't yet made a call for items, so exact details will depend on other requests we get through - but we'll be in touch to organise this slot in more detail privately. Thanks again for the bringing the work to DISPATCH. Kirsty ________________________________ From: dispatch <dispatch-bounces@ietf.org> on behalf of Bret Jordan <jordan.ietf@gmail.com> Sent: 03 May 2021 20:02 To: DISPATCH <dispatch@ietf.org> Subject: [dispatch] Plain text JSON digital signatures Dear Dispatch, Over the past week we have identified 3 additional individuals that have expressed public support for this ID. There were two others that either asked questions or discussed this relative to CBOR. It is important to note that we have yet to see any examples of why this would or could not work. We would respectfully ask for a direction from the Chair on how to move forward: 1) Move forward with ISE for publication 2) Form a short-term WG to work on this 3) Form a longer-term WG to work on this and other JSON related digital signature issues. 4) Assign this work to another WG to be worked on. Please advise. Thanks Bret _______________________________________________ dispatch mailing list dispatch@ietf.org https://eur03.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Fdispatch&data=04%7C01%7Ckirsty.p%40ncsc.gov.uk%7C536922ddd0384cf77d2308d90e662d9f%7C14aa5744ece1474ea2d734f46dda64a1%7C0%7C0%7C637556654281133505%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&sdata=XqAuT0cChrHOajh5kVy3Pc8fndz%2FbVGpsMJuIsLuRbI%3D&reserved=0 This information is exempt under the Freedom of Information Act 2000 (FOIA) and may be exempt under other UK information legislation. Refer any FOIA queries to ncscinfoleg@ncsc.gov.uk. All material is UK Crown Copyright ©
- [dispatch] Plain text JSON digital signatures Bret Jordan
- Re: [dispatch] Plain text JSON digital signatures Brian Rosen
- Re: [dispatch] [art] Plain text JSON digital sign… Carsten Bormann
- Re: [dispatch] Plain text JSON digital signatures Bret Jordan
- Re: [dispatch] [art] Plain text JSON digital sign… Anders Rundgren
- Re: [dispatch] [art] Plain text JSON digital sign… Dick Hardt
- Re: [dispatch] [art] Plain text JSON digital sign… Bret Jordan
- Re: [dispatch] [Secdispatch] [art] Plain text JSO… Stefan Santesson
- Re: [dispatch] [Secdispatch] [art] Plain text JSO… Anders Rundgren
- Re: [dispatch] [art] Plain text JSON digital sign… Stian Soiland-Reyes
- Re: [dispatch] [Secdispatch] [art] Plain text JSO… Stefan Santesson
- Re: [dispatch] [art] Plain text JSON digital sign… Stian Soiland-Reyes
- Re: [dispatch] [Secdispatch] [art] Plain text JSO… Bret Jordan
- Re: [dispatch] [art] [Secdispatch] Plain text JSO… Carsten Bormann
- Re: [dispatch] [art] Plain text JSON digital sign… Bret Jordan
- Re: [dispatch] [Secdispatch] [art] Plain text JSO… Anders Rundgren
- Re: [dispatch] [art] [Secdispatch] Plain text JSO… Samuel Erdtman
- Re: [dispatch] [art] [Secdispatch] Plain text JSO… Carsten Bormann
- Re: [dispatch] [art] [Secdispatch] Plain text JSO… Anders Rundgren
- Re: [dispatch] [art] [Secdispatch] Plain text JSO… Samuel Erdtman
- Re: [dispatch] [art] [Secdispatch] Plain text JSO… Samuel Erdtman
- Re: [dispatch] [art] [Secdispatch] Plain text JSO… Carsten Bormann
- Re: [dispatch] [Secdispatch] [art] Plain text JSO… Carsten Bormann
- [dispatch] Plain text JSON digital signatures Bret Jordan
- Re: [dispatch] [art] [Secdispatch] Plain text JSO… Samuel Erdtman
- Re: [dispatch] [Secdispatch] [art] Plain text JSO… Samuel Erdtman
- Re: [dispatch] Plain text JSON digital signatures Kirsty P