Re: [Emu] [saag] Feedback on Salted EAP draft

Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com> Tue, 14 July 2015 16:00 UTC

Return-Path: <kathleen.moriarty.ietf@gmail.com>
X-Original-To: emu@ietfa.amsl.com
Delivered-To: emu@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 42A291A1AB9; Tue, 14 Jul 2015 09:00:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id F8ZGy-Or0CFn; Tue, 14 Jul 2015 09:00:44 -0700 (PDT)
Received: from mail-wi0-x236.google.com (mail-wi0-x236.google.com [IPv6:2a00:1450:400c:c05::236]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5A6461A1B5B; Tue, 14 Jul 2015 09:00:44 -0700 (PDT)
Received: by wibud3 with SMTP id ud3so59432223wib.1; Tue, 14 Jul 2015 09:00:43 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=s6MwcYjpcwjzU08OUOADaEAlDlvbHjdiVFsPA4PTuXM=; b=owyIyeVS+9XOnP0eHVDx8HqKV5cujls9d1hBUXmlmGzQUouc3aJzicrh3qq2Pm4EFq Lec+xx1xvolZRUaWhtSm0FMeQj6FTcrfQf3p8yi7HdtvRJWTAD6iWrpYMVOZszghPp4D /xhx1A9GhEC7EwkRXIj07DwnsGM5+osZ7aicboccBXfqaA+w2wTLs0JKvB+sKtC/XntT /Pz3KCiuM6f5xHg09pVrqbsEg+/kj0WQJ3UfoVIbrZKQUdCk6soBLIC+604KGiqNibBs kbvWIQ6D2oX8o2omjvi3tmDH5RDADwFvIjZllpFka3cq6P96ivyrY3Mn2D4taPgWBXVJ Gwdw==
MIME-Version: 1.0
X-Received: by 10.194.75.132 with SMTP id c4mr75166929wjw.80.1436889643136; Tue, 14 Jul 2015 09:00:43 -0700 (PDT)
Received: by 10.28.31.194 with HTTP; Tue, 14 Jul 2015 09:00:43 -0700 (PDT)
In-Reply-To: <tsloane9wff.fsf@mit.edu>
References: <CAHbuEH5u=Q_h4L4yNdrpPw1J3fAsr1MfEMBV84TgdnHVWcxX0w@mail.gmail.com> <CAHbuEH4--TP0duM-8GSaR4RaUG5DoL=QtnCFE3shHbaUNPvwVg@mail.gmail.com> <tsloane9wff.fsf@mit.edu>
Date: Tue, 14 Jul 2015 12:00:43 -0400
Message-ID: <CAHbuEH5cGW3pknnwseEnp=mqzrMLPFBh-bN4pd2wKKDgpS08wQ@mail.gmail.com>
From: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
To: Sam Hartman <hartmans-ietf@mit.edu>
Content-Type: multipart/alternative; boundary="047d7bb04b7cc2bbf5051ad7f06f"
Archived-At: <http://mailarchive.ietf.org/arch/msg/emu/4yiKDxMhocUa3sEAu9v6RuJKM14>
Cc: "saag@ietf.org" <saag@ietf.org>, emu@ietf.org
Subject: Re: [Emu] [saag] Feedback on Salted EAP draft
X-BeenThere: emu@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "EAP Methods Update \(EMU\)" <emu.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/emu>, <mailto:emu-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emu/>
List-Post: <mailto:emu@ietf.org>
List-Help: <mailto:emu-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/emu>, <mailto:emu-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 14 Jul 2015 16:00:46 -0000

Hello,

Is there interest in reviewing this draft?  Sam pointed out the importance
of moving this work forward, it would be helpful to have volunteers to
review the work and also to understand the level of interest (if any)
before this goes forward as AD sponsored.

Thank you!

On Fri, Mar 27, 2015 at 1:34 PM, Sam Hartman <hartmans-ietf@mit.edu> wrote:

> >>>>> "Kathleen" == Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
> writes:
>
>     Kathleen>    I meant to send the link to Dan's draft:
>     Kathleen> https://tools.ietf.org/html/draft-harkins-salted-eap-pwd-01
>     Kathleen> Long week...
>
> I have briefly reviewed the goals behind this proposal and a sketch of
> the details but have not done a technical review of the proposal.
>
> The underlying goal is important and valuable.
> This issue is the same issue that was behind my response to your AD
> review of the oauth dynamic registration draft.
> The more we can do to make it possible to use  deployed password
> databases with more modern security, the more we will be able to employ
> that modern security.
>
> However, take careful note of section 5 of the draft.
>
> Assuming that  you can get positive technical reviews of the proposal,
> this draft seems to solve an important problem that would be valuable to
> solve in the EAP community.
>



-- 

Best regards,
Kathleen