Re: [Eligibility-discuss] On 3797 alternatives

"Salz, Rich" <rsalz@akamai.com> Wed, 31 May 2023 15:51 UTC

Return-Path: <rsalz@akamai.com>
X-Original-To: eligibility-discuss@ietfa.amsl.com
Delivered-To: eligibility-discuss@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 89E55C151072 for <eligibility-discuss@ietfa.amsl.com>; Wed, 31 May 2023 08:51:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.796
X-Spam-Level:
X-Spam-Status: No, score=-2.796 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=akamai.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PHOr_jaODX0K for <eligibility-discuss@ietfa.amsl.com>; Wed, 31 May 2023 08:51:21 -0700 (PDT)
Received: from mx0a-00190b01.pphosted.com (mx0a-00190b01.pphosted.com [IPv6:2620:100:9001:583::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EE450C14F74A for <eligibility-discuss@ietf.org>; Wed, 31 May 2023 08:51:20 -0700 (PDT)
Received: from pps.filterd (m0122333.ppops.net [127.0.0.1]) by mx0a-00190b01.pphosted.com (8.17.1.19/8.17.1.19) with ESMTP id 34VFA5nq023196; Wed, 31 May 2023 16:51:19 +0100
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=akamai.com; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-id : content-transfer-encoding : mime-version; s=jan2016.eng; bh=9Y6aw2jZ4Ewhu0uA/SBcNeULXrimpNLJHfUSopPRFxc=; b=ZUr+j+SZJJd8vwIiPqnWskg63IsJ25kpk3dcrU8GM7u9gpGgITdDAuIfp8upUuRSSH2o CAbdta0BBJwpIHxRn9H453WPnoCnnBeESQ2FDmKeW3BNms02kRgFnQPyIigI4lsEiAoK wRojcmbQprfrg1e4VO14OLGy3MsnlnjG9n0prI7bV+jKwKZK3nzy7tW0y0ys6MO0itu0 cIID93La51Pk4L6jZ+hsj5Eb4PI+siM+VSZoy8WelG1O+4HTAmyy8HvQ2MC4B0FU8eGS ZUHQ+KN5CWVBRmxItI/B4qiX2XSZ0mvEtKp0dftfZNdG+F9wDV3CbLoOSi7AG0g3E5Dm 8w==
Received: from prod-mail-ppoint2 (prod-mail-ppoint2.akamai.com [184.51.33.19] (may be forged)) by mx0a-00190b01.pphosted.com (PPS) with ESMTPS id 3quasx3qgy-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Wed, 31 May 2023 16:51:04 +0100
Received: from pps.filterd (prod-mail-ppoint2.akamai.com [127.0.0.1]) by prod-mail-ppoint2.akamai.com (8.17.1.19/8.17.1.19) with ESMTP id 34VDUK6J032380; Wed, 31 May 2023 11:50:39 -0400
Received: from email.msg.corp.akamai.com ([172.27.91.25]) by prod-mail-ppoint2.akamai.com (PPS) with ESMTPS id 3qud6wry15-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Wed, 31 May 2023 11:50:38 -0400
Received: from usma1ex-dag4mb4.msg.corp.akamai.com (172.27.91.23) by usma1ex-dag4mb6.msg.corp.akamai.com (172.27.91.25) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.1118.26; Wed, 31 May 2023 11:50:38 -0400
Received: from usma1ex-dag4mb4.msg.corp.akamai.com ([172.27.91.23]) by usma1ex-dag4mb4.msg.corp.akamai.com ([172.27.91.23]) with mapi id 15.02.1118.026; Wed, 31 May 2023 11:50:38 -0400
From: "Salz, Rich" <rsalz@akamai.com>
To: Martin Thomson <mt@lowentropy.net>, Eric Rescorla <ekr@rtfm.com>
CC: Donald Eastlake <d3e3e3@gmail.com>, "eligibility-discuss@ietf.org" <eligibility-discuss@ietf.org>
Thread-Topic: [Eligibility-discuss] On 3797 alternatives
Thread-Index: AQHZku0PDWK1/+uS7kWQ3IZVXm1FJ69zig8AgAAJlQD//833gIAAYOOAgADxTQD//9WjgA==
Date: Wed, 31 May 2023 15:50:38 +0000
Message-ID: <9DCA0EF0-8E99-4A33-ABAB-45997C96002F@akamai.com>
References: <54F373CD-1E97-42BC-9AAB-0451ABD9D448@eggert.org> <1229DD7D-3640-4EFD-8058-D0EC18020038@eggert.org> <18537EEF-4E16-4C48-8456-02A8FB0C8CFC@vpnc.org> <4a8f2bb4-25c3-5514-f13f-8db1804619a6@joelhalpern.com> <0531CD69-AAA4-4657-9B90-B50F76D997B7@vpnc.org> <ffa1d82b-a22b-f68f-5000-6a1ca437d147@joelhalpern.com> <B953359D-72A9-4032-857E-490AEAF60C4A@vpnc.org> <2745cf30-098d-4a3a-9e9e-3c3c44179176@app.fastmail.com> <CAF4+nEGL0_h-iagUxhyxh2FJdz=QUi5JQr6XdPj-Q=q8Rov0XQ@mail.gmail.com> <9d9b0e70-c7ca-4602-8862-33165522497c@app.fastmail.com> <896FF479-E5B7-4A31-95AE-376CCE2591C9@akamai.com> <CABcZeBN7XyRknvkg9TfvTCx3rGEpLtWynE7-eaufhmcEmnDHtA@mail.gmail.com> <30f8a4a3-2a3c-4560-abe5-63ee0c4366d4@app.fastmail.com>
In-Reply-To: <30f8a4a3-2a3c-4560-abe5-63ee0c4366d4@app.fastmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.73.23051401
x-originating-ip: [172.27.118.139]
Content-Type: text/plain; charset="utf-8"
Content-ID: <34C233740D9720478AD90C67285C00BE@akamai.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.254,Aquarius:18.0.957,Hydra:6.0.573,FMLib:17.11.176.26 definitions=2023-05-31_10,2023-05-31_03,2023-05-22_02
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 adultscore=0 spamscore=0 mlxlogscore=686 phishscore=0 bulkscore=0 mlxscore=0 suspectscore=0 malwarescore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2304280000 definitions=main-2305310135
X-Proofpoint-GUID: tYDnhwEL5SuJ8-1RNYRUIRx0ePcQoscH
X-Proofpoint-ORIG-GUID: tYDnhwEL5SuJ8-1RNYRUIRx0ePcQoscH
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.254,Aquarius:18.0.957,Hydra:6.0.573,FMLib:17.11.176.26 definitions=2023-05-31_10,2023-05-31_03,2023-05-22_02
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 bulkscore=0 adultscore=0 malwarescore=0 lowpriorityscore=0 mlxscore=0 spamscore=0 suspectscore=0 phishscore=0 mlxlogscore=639 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2304280000 definitions=main-2305310135
Archived-At: <https://mailarchive.ietf.org/arch/msg/eligibility-discuss/_dYYGa5wI0A9_XC10lcAo0emDOI>
Subject: Re: [Eligibility-discuss] On 3797 alternatives
X-BeenThere: eligibility-discuss@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF eligibility procedures <eligibility-discuss.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/eligibility-discuss>, <mailto:eligibility-discuss-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/eligibility-discuss/>
List-Post: <mailto:eligibility-discuss@ietf.org>
List-Help: <mailto:eligibility-discuss-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/eligibility-discuss>, <mailto:eligibility-discuss-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 31 May 2023 15:51:24 -0000

> That's right. I'm also assuming that others have access to that information (Robert, the previous chair, people writing software for the datatracker, etc...) I'm not implying anything about the character of those individuals, only saying that a stronger system wouldn't rely so much on us trusting those people ... or chance.

Can you tell me what attacks you see as possible?  I assume that Akamai (for example) could tell its employees to not volunteer which is effective immediately. If it wanted to get many volunteers, they would either be already qualified, or there is a more-than-one-year timeline. This was discussed in London, and the consensus was that watching the growth of eligible volunteers was good enough.

What am I missing?