Re: [Eligibility-discuss] On 3797 alternatives

Martin Thomson <mt@lowentropy.net> Tue, 30 May 2023 21:11 UTC

Return-Path: <mt@lowentropy.net>
X-Original-To: eligibility-discuss@ietfa.amsl.com
Delivered-To: eligibility-discuss@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B22EBC14CF18 for <eligibility-discuss@ietfa.amsl.com>; Tue, 30 May 2023 14:11:23 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.098
X-Spam-Level:
X-Spam-Status: No, score=-7.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=lowentropy.net header.b="GiZ+FeVn"; dkim=pass (2048-bit key) header.d=messagingengine.com header.b="NhEb7SLU"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id IC6dXF1WpAPy for <eligibility-discuss@ietfa.amsl.com>; Tue, 30 May 2023 14:11:19 -0700 (PDT)
Received: from out5-smtp.messagingengine.com (out5-smtp.messagingengine.com [66.111.4.29]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 29FEEC14CF13 for <eligibility-discuss@ietf.org>; Tue, 30 May 2023 14:11:18 -0700 (PDT)
Received: from compute6.internal (compute6.nyi.internal [10.202.2.47]) by mailout.nyi.internal (Postfix) with ESMTP id B7CF25C007C; Tue, 30 May 2023 17:11:16 -0400 (EDT)
Received: from imap41 ([10.202.2.91]) by compute6.internal (MEProxy); Tue, 30 May 2023 17:11:16 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=lowentropy.net; h=cc:cc:content-type:content-type:date:date:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to; s=fm2; t=1685481076; x= 1685567476; bh=Ho5703Dy5T7QqfAQwDg0AucQrhMG82/qpszO40vsWgE=; b=G iZ+FeVn8GBSoTfM/BfIn3h718e6yxVHVzeqmgmVxu0FSzZGJ6TMxd4aIaSQ4mWmB /ux5/WXLmuEg2u2wAoMlLMWle4eD72UJ2f1CUf3drkwc23xu3/5EGFWWDr7Wedov UTXe+0HNI0ralIkiFH+pyQcv4Lm4g2orOpHEn721L/eO8yB1+c4V+7ItvCjESHUE MWeMCJnDxYzG1aZVlbJz7w11l6dW000WHLEatrU+T3xhKBbxiqA8/vYxTOkPNwPF CUhP17qLqgw/0fDcLyYHh9/BN97iCIoGnFyeOdSW9c4IpypIsje/LHTDaU0phh4N /4cncW2EXt/zWjmZVQICg==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-type:content-type:date:date :feedback-id:feedback-id:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to:x-me-proxy:x-me-proxy:x-me-sender:x-me-sender :x-sasl-enc; s=fm1; t=1685481076; x=1685567476; bh=Ho5703Dy5T7Qq fAQwDg0AucQrhMG82/qpszO40vsWgE=; b=NhEb7SLUz1QwIEmuNm2QJ1ioZ4VQN yhFopZ6xz4g4+zrk1zPz+W1t5ugUBeSQEDobfbvdixH2EQjMqpN2shkzqJq4zH+4 Kc74kRzQTR/UjupSs97BwEAkfPoZEuyuxfkHvra0geyQKNARhDY03kD/qflwyF/n L5QPyLusHSVkoWeRKIZHXhI/hgj0KnMwebGtbbIgCdJ/9FHUAxli1Sw3oBcHANYg QWpRgCPuE4IJPCt2giq1nK7LxXLoLL3wvdZDx3+g3C8YBZ9fd5t58iD3BMWd0ECX vfRf1khWSIdw929aSk14Xgjsul8FTg+tRbsHKLh+1kV5wG+bhtkFxjLTQ==
X-ME-Sender: <xms:dGZ2ZOl3O36qNklwElV9YxWGsUBJ9IpU1AjkPh--ySM7CW2lLQhkUg> <xme:dGZ2ZF2Azw3pgT2yhMWQRVo6jBZjX3jCWYfOMlDiGRhLgYO8g4eJ2FwHBSrDQtqOB VMOTcviIflWczUiyyk>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrfeekjedgudehjecutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfgh necuuegrihhlohhuthemuceftddtnecunecujfgurhepofgfggfkjghffffhvfevufgtse httdertderredtnecuhfhrohhmpedfofgrrhhtihhnucfvhhhomhhsohhnfdcuoehmthes lhhofigvnhhtrhhophihrdhnvghtqeenucggtffrrghtthgvrhhnpeduleeufedthfegie eiieekkeejvdejgfevudffgeefvdffleevfeekudeiieekleenucevlhhushhtvghrufhi iigvpedtnecurfgrrhgrmhepmhgrihhlfhhrohhmpehmtheslhhofigvnhhtrhhophihrd hnvght
X-ME-Proxy: <xmx:dGZ2ZMqNyUEeBz7wtHoj3phm34LG-SXrCOgDMstklJq8XpqKMYROcg> <xmx:dGZ2ZClHUD-nBGCn1lVmufTKsHVxOFI86smmF05StAsBXHb0m5H67Q> <xmx:dGZ2ZM3mLHlfuwBRmlnT0odPLYhUKJuElYwR1S1q9tX_haoXazr0ew> <xmx:dGZ2ZNiBrmgJPkcQYACGg9OEoOLkIzNLlqV-PALc_HYmz5PfblC8Kw>
Feedback-ID: ic129442d:Fastmail
Received: by mailuser.nyi.internal (Postfix, from userid 501) id 728A9234007B; Tue, 30 May 2023 17:11:16 -0400 (EDT)
X-Mailer: MessagingEngine.com Webmail Interface
User-Agent: Cyrus-JMAP/3.9.0-alpha0-447-ge2460e13b3-fm-20230525.001-ge2460e13
Mime-Version: 1.0
Message-Id: <9d9b0e70-c7ca-4602-8862-33165522497c@app.fastmail.com>
In-Reply-To: <CAF4+nEGL0_h-iagUxhyxh2FJdz=QUi5JQr6XdPj-Q=q8Rov0XQ@mail.gmail.com>
References: <54F373CD-1E97-42BC-9AAB-0451ABD9D448@eggert.org> <1229DD7D-3640-4EFD-8058-D0EC18020038@eggert.org> <18537EEF-4E16-4C48-8456-02A8FB0C8CFC@vpnc.org> <4a8f2bb4-25c3-5514-f13f-8db1804619a6@joelhalpern.com> <0531CD69-AAA4-4657-9B90-B50F76D997B7@vpnc.org> <ffa1d82b-a22b-f68f-5000-6a1ca437d147@joelhalpern.com> <B953359D-72A9-4032-857E-490AEAF60C4A@vpnc.org> <2745cf30-098d-4a3a-9e9e-3c3c44179176@app.fastmail.com> <CAF4+nEGL0_h-iagUxhyxh2FJdz=QUi5JQr6XdPj-Q=q8Rov0XQ@mail.gmail.com>
Date: Tue, 30 May 2023 17:10:54 -0400
From: Martin Thomson <mt@lowentropy.net>
To: Donald Eastlake <d3e3e3@gmail.com>
Cc: eligibility-discuss@ietf.org
Content-Type: text/plain
Archived-At: <https://mailarchive.ietf.org/arch/msg/eligibility-discuss/4E3BicWZw14oHEf9POatBnLdpj4>
Subject: Re: [Eligibility-discuss] On 3797 alternatives
X-BeenThere: eligibility-discuss@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF eligibility procedures <eligibility-discuss.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/eligibility-discuss>, <mailto:eligibility-discuss-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/eligibility-discuss/>
List-Post: <mailto:eligibility-discuss@ietf.org>
List-Help: <mailto:eligibility-discuss-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/eligibility-discuss>, <mailto:eligibility-discuss-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 30 May 2023 21:11:23 -0000

On Tue, May 30, 2023, at 16:36, Donald Eastlake wrote:
> I disagree. First of all, you are assuming one attacker. If there is
> more than one, they interfere with each other and none can predict the
> results of some attempted manipulation. Furthermore, the attacker
> cannot practically add people, since there is no need to announce the
> list before it is closed to additional volunteers. They could possibly
> remove people by having volunteers that they would direct to decline
> to serve.

We disagree. I assume that there is a singular attacker who is able to somehow learn the list of volunteers before the deadline and can act within that time frame to add or remove volunteers.  That is perhaps stronger than what might happen in practice, but we don't get to assume a more favourable threat model, we should build to a well-defined threat model.