Re: [dispatch] Work for IETF114

Martin Thomson <mt@lowentropy.net> Thu, 16 June 2022 02:54 UTC

Return-Path: <mt@lowentropy.net>
X-Original-To: dispatch@ietfa.amsl.com
Delivered-To: dispatch@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 75EB0C157B54 for <dispatch@ietfa.amsl.com>; Wed, 15 Jun 2022 19:54:35 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.11
X-Spam-Level:
X-Spam-Status: No, score=-2.11 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=lowentropy.net header.b=I6Mzo+82; dkim=pass (2048-bit key) header.d=messagingengine.com header.b=WjmRWQ04
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id n1jivap3ITak for <dispatch@ietfa.amsl.com>; Wed, 15 Jun 2022 19:54:30 -0700 (PDT)
Received: from wout1-smtp.messagingengine.com (wout1-smtp.messagingengine.com [64.147.123.24]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id AE706C14CF01 for <dispatch@ietf.org>; Wed, 15 Jun 2022 19:54:30 -0700 (PDT)
Received: from compute3.internal (compute3.nyi.internal [10.202.2.43]) by mailout.west.internal (Postfix) with ESMTP id C8F573200906; Wed, 15 Jun 2022 22:54:28 -0400 (EDT)
Received: from imap41 ([10.202.2.91]) by compute3.internal (MEProxy); Wed, 15 Jun 2022 22:54:29 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=lowentropy.net; h=cc:cc:content-transfer-encoding:content-type:date:date:from :from:in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to; s=fm3; t=1655348068; x= 1655434468; bh=57pKub9upX4i+XGZLZb07ET3dBJPjlDClvKVtL30a3E=; b=I 6Mzo+82zmNg+I6cWK5fTBEToDWW+y3o5OO6Oa1Su0wS8SOroiCy/dCI7iAIV05Wa W6r14Z5402nZxlyz07/A6ipXGVeo4sbYnSeqZch1UI53PheYptAGyfVmsHBiyfRo BLYWGd3VvfSX1jAhI4YjYVkp4sR+dJThFWDxi9jpbXS3nqIfwx5BhAPYGQAr7Ayn dpPjqLRUI+VY20WJzGceoN8BgvK1jzFHuZdir+tqDanTrgHU3s39QVUbHxZTIFoj 0d8GoAynMuyI77Oo2ot/FE6EmWqXNY4wrwJ3pcaVK1Cr9eJ8fI7ILremiTPzdl1v c+3RvA4bi7/Lf/XkC/Lig==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:date:date:feedback-id:feedback-id:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to:x-me-proxy:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm2; t=1655348068; x= 1655434468; bh=57pKub9upX4i+XGZLZb07ET3dBJPjlDClvKVtL30a3E=; b=W jmRWQ047VI0sX0shpS2wASzwhi44+4CgkMG3jOl9uebaLRND3xt8/Bu+ZpnM3Xxm dpmzyfssz5Y4rMxp95Q9+nUl4D+EvtLDk4822UT2XxIWZSQ9tDAT8zHnP/QkO6W4 ru9AbdTLcegxq3KR5o8f808ZvtwJ3ghr9WeCq+DxatTlqHyRB/Vdp8lPgPiC/lMX v3z3+kc5tf9nFjhPQakODXcbuFcgMQbS9q2x8+icF1ZuOU75/YsD8yXgVcfK1ryn kOZDhmqhLwe6KQCUwzhCKF62pCFKYm3alDCoKArpWytPDCR/KSx1BQH3GDzRte6Y HZRAuoDAv98BsmNTzez5Q==
X-ME-Sender: <xms:ZJuqYjcmiFkeOMOOTiE_yy4b96onrp2zlQLFMVeNuq3oKl-jKmdjcw> <xme:ZJuqYpPL96WWLMAMF-xNUas8aM07p8v8KjHJIhMSTDyfrRSOXGzd6vcOdaumtajmh HpGCbDGlUJtETRpiG8>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvfedruddvvddgieefucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucesvcftvggtihhpihgvnhhtshculddquddttddmne cujfgurhepofgfggfkjghffffhvfevufgtgfesthhqredtreerjeenucfhrhhomhepfdfo rghrthhinhcuvfhhohhmshhonhdfuceomhhtsehlohifvghnthhrohhphidrnhgvtheqne cuggftrfgrthhtvghrnhepjedtvdekgeeihfdtvdffffehieetgedvteelfeeiteeiiedu keeggeeikeetudejnecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehmrghilh hfrhhomhepmhhtsehlohifvghnthhrohhphidrnhgvth
X-ME-Proxy: <xmx:ZJuqYsgXTGiv85XI5_IWtQIEYk_j6RmtSJt2rN-POVRGtVk-J2TVLA> <xmx:ZJuqYk88B2c3RLqWzXvGnYyUa-Cse7uYSCTSgrC4JmZdsR24RnSPXA> <xmx:ZJuqYvtrW7UZ-ANJGKBXZEipcqkYjfC-EBBEUdRm3gKN9W-eYP57nw> <xmx:ZJuqYs69ZHUgoY091vnKd3LEOgeLAb2j5euaXPHaIn71npPF0whyYw>
Feedback-ID: ic129442d:Fastmail
Received: by mailuser.nyi.internal (Postfix, from userid 501) id 1E8F52340077; Wed, 15 Jun 2022 22:54:28 -0400 (EDT)
X-Mailer: MessagingEngine.com Webmail Interface
User-Agent: Cyrus-JMAP/3.7.0-alpha0-712-gb9e94258b0-fm-20220610.001-gb9e94258
Mime-Version: 1.0
Message-Id: <d2d8d22e-620c-4197-8c71-f82cfeedf4c5@beta.fastmail.com>
In-Reply-To: <CAHBU6isW95meqLdM5DNj0T12oG8j=E4tufuxC-vxJKL1DtyraQ@mail.gmail.com>
References: <ec38343d-6c89-4c8a-82c0-484375bd89b1@www.fastmail.com> <CAHBU6iuKpV-GTyOTHaytg9_MxDtrNNuSF88WWsTp3wfLmpfsQQ@mail.gmail.com> <5639B870-AC11-4111-B58A-BC02E7172D7C@mnot.net> <CAHBU6ivOnYghs8OVnuSM2_qt5ypTyXjG3E2ZEG3Zb4Qd1CCx4Q@mail.gmail.com> <b8720cce-5312-4320-874d-afad8db3721c@beta.fastmail.com> <CAHBU6isW95meqLdM5DNj0T12oG8j=E4tufuxC-vxJKL1DtyraQ@mail.gmail.com>
Date: Thu, 16 Jun 2022 12:54:18 +1000
From: Martin Thomson <mt@lowentropy.net>
To: Tim Bray <tbray@textuality.com>
Cc: DISPATCH list <dispatch@ietf.org>
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/dispatch/wXfJQgEOaGdGAts0SVPBbkJn5OU>
Subject: Re: [dispatch] Work for IETF114
X-BeenThere: dispatch@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: DISPATCH Working Group Mail List <dispatch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dispatch>, <mailto:dispatch-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dispatch/>
List-Post: <mailto:dispatch@ietf.org>
List-Help: <mailto:dispatch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dispatch>, <mailto:dispatch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 16 Jun 2022 02:54:35 -0000

On Thu, Jun 16, 2022, at 12:48, Tim Bray wrote:
> On Wed, Jun 15, 2022 at 7:19 PM Martin Thomson <mt@lowentropy.net> wrote:
>
>>  I am not sure about use of key identifiers vs. keys.
>
> D'oh, if you're going to send the URI over a secure channel you could 
> just put the key right there in the fragment (*cough* ed25519 *cough*). 
> And arguably you shouldn’t be doing this kind of thing without a secure 
> channel. After all, in Bron's scenario you're emulating the semantic of 
> a (presumably unencrypted) attached file.

Right.  Though never ed25519, maybe x25519, but probably just a PSK of some sort, depending on the properties you want from the system, hence my mention of RFC 9180.