[Emu] FW: New Version Notification for draft-ms-emu-eaptlscert-03.txt

John Mattsson <john.mattsson@ericsson.com> Sun, 26 May 2019 10:08 UTC

Return-Path: <john.mattsson@ericsson.com>
X-Original-To: emu@ietfa.amsl.com
Delivered-To: emu@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A242A120048 for <emu@ietfa.amsl.com>; Sun, 26 May 2019 03:08:32 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.01
X-Spam-Level:
X-Spam-Status: No, score=-2.01 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, T_DKIMWL_WL_HIGH=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PhgxzJnRQ2BH for <emu@ietfa.amsl.com>; Sun, 26 May 2019 03:08:30 -0700 (PDT)
Received: from EUR03-VE1-obe.outbound.protection.outlook.com (mail-eopbgr50072.outbound.protection.outlook.com [40.107.5.72]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1C88C12015B for <emu@ietf.org>; Sun, 26 May 2019 03:08:29 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=WSKERbAU4dha2+rhiYkfdzrIfPw65q7sIoYBHBCOKOo=; b=dr48H4dfZj4Gq89yBD9HNrHdiLSpV1RLpsn+j+ps54Ae6yfHIdHZXIshxNlir6v84b4mKRhzb1pyiA+ClozKsD3bErD6uapvKf9jTfl6RF9tb7LsEixtsgVAEjrlE1ywVwr5kFdJTe+sY1i8+m56lq6+HIH/djffSlTGemzAx24=
Received: from HE1PR07MB4169.eurprd07.prod.outlook.com (20.176.166.22) by HE1PR07MB3082.eurprd07.prod.outlook.com (10.170.244.156) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1943.13; Sun, 26 May 2019 10:08:27 +0000
Received: from HE1PR07MB4169.eurprd07.prod.outlook.com ([fe80::a2:ab11:d710:4af2]) by HE1PR07MB4169.eurprd07.prod.outlook.com ([fe80::a2:ab11:d710:4af2%6]) with mapi id 15.20.1943.007; Sun, 26 May 2019 10:08:27 +0000
From: John Mattsson <john.mattsson@ericsson.com>
To: 'EMU WG' <emu@ietf.org>
Thread-Topic: New Version Notification for draft-ms-emu-eaptlscert-03.txt
Thread-Index: AQHVE6oJZfShVJPpHkeLgFQuKDLBy6Z9UByA
Date: Sun, 26 May 2019 10:08:26 +0000
Message-ID: <A647CDBE-1B4D-4EBD-900C-9A6CA8D8F7E9@ericsson.com>
References: <155886490186.18477.14054482168171625833.idtracker@ietfa.amsl.com>
In-Reply-To: <155886490186.18477.14054482168171625833.idtracker@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.19.0.190512
authentication-results: spf=none (sender IP is ) smtp.mailfrom=john.mattsson@ericsson.com;
x-originating-ip: [2a02:8071:82ba:f700:f189:2954:d6a1:9544]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: c4877286-e3f0-4c08-a942-08d6e1c218a8
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(5600148)(711020)(4605104)(1401327)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(2017052603328)(7193020); SRVR:HE1PR07MB3082;
x-ms-traffictypediagnostic: HE1PR07MB3082:
x-ms-exchange-purlcount: 5
x-microsoft-antispam-prvs: <HE1PR07MB308290B5B756DCC97F29623F891C0@HE1PR07MB3082.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8273;
x-forefront-prvs: 0049B3F387
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(376002)(396003)(346002)(39860400002)(136003)(366004)(199004)(13464003)(189003)(14444005)(256004)(81166006)(8936002)(81156014)(5660300002)(68736007)(36756003)(82746002)(76116006)(229853002)(66946007)(66476007)(64756008)(66446008)(66556008)(91956017)(73956011)(8676002)(6436002)(6486002)(86362001)(6916009)(446003)(6506007)(46003)(53546011)(478600001)(53936002)(476003)(2616005)(11346002)(486006)(44832011)(186003)(2906002)(102836004)(14454004)(966005)(25786009)(33656002)(83716004)(71200400001)(15650500001)(99286004)(76176011)(6116002)(71190400001)(58126008)(305945005)(66574012)(316002)(6306002)(2473003)(6512007)(7736002); DIR:OUT; SFP:1101; SCL:1; SRVR:HE1PR07MB3082; H:HE1PR07MB4169.eurprd07.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: ericsson.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: ispMyvVwgBZuFTFSv9pn8VIafFBGoJLztJrcVjZaee+NuVFmq+vljBckmwvIomoLVhZxeJlK+LqMxP0Ai9iL7NHyT1uutRL5Tgw7B28jlSSijPoRUfvkbPidPb4FMSGLrFRREmBarSqcsNJk+QjktoySJw+aNSSdvqSeyyWhQxeERtxIgAJYvFtkCJ/Fw+LxulXQKl0oeWsRI5+P5LMVMW63lhIAcuEqTEvfbzgWRTSX0d1UDbcIRWfQXOvAuh4N1WHHCazdqrE3rTDx9m3d8nilN7pwg5+E/mi2gDJOXAsmwtpejwYmxH/+qH4S5jN9OZ0XbSi6CMcYPdajrTof8gjrlDmbp0WyRNxzKccgh6qNBcxd5NBjUco5rgIEqbROhNbENHRlLIPwRQtZTAMX0e0GzPJVm5NwK7F3iqEfXzM=
Content-Type: text/plain; charset="utf-8"
Content-ID: <4353CF07ED9B334C8B7B248D8BF3FF61@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-Network-Message-Id: c4877286-e3f0-4c08-a942-08d6e1c218a8
X-MS-Exchange-CrossTenant-originalarrivaltime: 26 May 2019 10:08:27.2026 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: john.mattsson@ericsson.com
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR07MB3082
Archived-At: <https://mailarchive.ietf.org/arch/msg/emu/I4Jsp_gy327XdSNTlgLYI6AWE1I>
Subject: [Emu] FW: New Version Notification for draft-ms-emu-eaptlscert-03.txt
X-BeenThere: emu@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "EAP Methods Update \(EMU\)" <emu.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/emu>, <mailto:emu-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emu/>
List-Post: <mailto:emu@ietf.org>
List-Help: <mailto:emu-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/emu>, <mailto:emu-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 26 May 2019 10:08:33 -0000

Hi,

The changes in -03 are:

- Added text to the "Update Authenticator" section based on the discussions on the mailing list.
- Added text describing the Suppressing Intermediate Certificates draft draft-thomson-tls-sic
- Added references to other TLS-based EAP methods.

Cheers,
John

-----Original Message-----
From: "internet-drafts@ietf.org" <internet-drafts@ietf.org>
Date: Sunday, 26 May 2019 at 12:01
To: Mohit Sethi <mohit@piuha.net>, John Mattsson <john.mattsson@ericsson.com>, Sean Turner <sean@sn3rd.com>
Subject: New Version Notification for draft-ms-emu-eaptlscert-03.txt

    
    A new version of I-D, draft-ms-emu-eaptlscert-03.txt
    has been successfully submitted by John Mattsson and posted to the
    IETF repository.
    
    Name:		draft-ms-emu-eaptlscert
    Revision:	03
    Title:		Handling Large Certificates and Long Certificate Chains in TLS-based EAP Methods
    Document date:	2019-05-26
    Group:		Individual Submission
    Pages:		10
    URL:            https://www.ietf.org/internet-drafts/draft-ms-emu-eaptlscert-03.txt
    Status:         https://datatracker.ietf.org/doc/draft-ms-emu-eaptlscert/
    Htmlized:       https://tools.ietf.org/html/draft-ms-emu-eaptlscert-03
    Htmlized:       https://datatracker.ietf.org/doc/html/draft-ms-emu-eaptlscert
    Diff:           https://www.ietf.org/rfcdiff?url2=draft-ms-emu-eaptlscert-03
    
    Abstract:
       EAP-TLS and other TLS-based EAP methods are widely deployed and used
       for network access authentication.  Large certificates and long
       certificate chains combined with authenticators that drop an EAP
       session after only 40 - 50 round-trips is a major deployment problem.
       This memo looks at the this problem in detail and describes the
       potential solutions available.
    
                                                                                      
    
    
    Please note that it may take a couple of minutes from the time of submission
    until the htmlized version and diff are available at tools.ietf.org.
    
    The IETF Secretariat