Re: [Emu] John Scudder's No Objection on draft-ietf-emu-tls-eap-types-11: (with COMMENT)

John Scudder <jgs@juniper.net> Tue, 14 February 2023 22:51 UTC

Return-Path: <jgs@juniper.net>
X-Original-To: emu@ietfa.amsl.com
Delivered-To: emu@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C9646C1F2358; Tue, 14 Feb 2023 14:51:19 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.097
X-Spam-Level:
X-Spam-Status: No, score=-7.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b="QEFeo+NQ"; dkim=pass (1024-bit key) header.d=juniper.net header.b="MrPPgVsq"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 40UZ3X4xsHXq; Tue, 14 Feb 2023 14:51:15 -0800 (PST)
Received: from mx0a-00273201.pphosted.com (mx0a-00273201.pphosted.com [208.84.65.16]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 396FDC1F233D; Tue, 14 Feb 2023 14:51:14 -0800 (PST)
Received: from pps.filterd (m0108156.ppops.net [127.0.0.1]) by mx0a-00273201.pphosted.com (8.17.1.19/8.17.1.19) with ESMTP id 31EIMa2c028458; Tue, 14 Feb 2023 14:51:05 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-id : content-transfer-encoding : mime-version; s=PPS1017; bh=AupCA++jw/5mv+KYDSXQ42n7xGGN3csiB1B07qweNcw=; b=QEFeo+NQrYZP+cMtbWGNv41ATx1g2yJ8aQCeSb/3+B24FUeqMqlRWiQMknaXTvwIdb48 NYy3e0xgqiS4FmCaoqiU/rOfYHdT8msfddWLijFaWeJEWilGHlCMNkvuT3rRP9KmInFm rKVbIFyVhAFacFJDhlSI0ZMzUL9tD3Jo+H8RQnYRlDpYngSbqYm6r5Bk2oyPO4iYXitk x/3zric3gVVAwniNJdktOpYzMXeiWZrQxYmvRI11Q661p8G18db/drKdhb92OKZvN4EK kQb4YAsq3uuNOgiohLmgoM7zP2Cf811+1bgbg+HP6BWXFndod+CXEc+N0HiN/IuFhZyf xw==
Received: from mw2pr02cu002-vft-obe.outbound.protection.outlook.com (mail-westus2azlp17013038.outbound.protection.outlook.com [40.93.10.38]) by mx0a-00273201.pphosted.com (PPS) with ESMTPS id 3nre570h28-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Tue, 14 Feb 2023 14:51:05 -0800
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Imnar9mB95dMrVCss7RX9JpNbftA0TMYXJYlj+nBeQopnfaqYAaDPDSlifs9Odq+jxY4BjAqHgILXxt9kYYgCGMR0K+MxCXWqPP/ugXIf0KkpUHdAZ5rLUMnKyvyaL5KtMuwsk5nlmKN32kl90PP5cE1o3okov6BX7x1YecedyjQQl+veV5nDi0pojp7B+Oash2nSugwhRWX0HDoT4pu7lWFhFsotq7peIH2Ce9ixrAr5CUNf+gSmyvj3/hBjf8ElLpWqxx6hvOJ6Qc0SRRvuDR0EV+a8cyIKLYrSuMm/NzXv6kA1cJHioH6kLyOwIs1Tk+OsWPdxb9SRrn33ynNqA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=AupCA++jw/5mv+KYDSXQ42n7xGGN3csiB1B07qweNcw=; b=bMfrqF0cyPk7V0/ZUBpB3HJfNDU6usgCGJ+WGtNTnXw9uWbp8VJUCsly40KTo/jAXNnM9NpyLIYsSFNPSEfsfHpjvs9Xjgl8eyNV9O7ZiG1+zu8JmODfMr928xy6aIst6ingMrk296xYgmXCsZVDVpc6yNqychLp7Rq1brMjBtvp3JtLuJVwT0wY7806QD2J1IWQYp+QHFwe35Vxvptke5NXVGA2GT0JlwFabmyaxd+JXAXlLOPe4p3t0qXafAzYRmH1ui7vZR5G8SpemZrrIUOTv8mCsXhqc6ZoALqR0B0HrGUo1zhWZYvP5Cr/72/WAojzTz6wHDmEQQz73tufZQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=AupCA++jw/5mv+KYDSXQ42n7xGGN3csiB1B07qweNcw=; b=MrPPgVsqhv/GL4Mm8kXSwVImIgfBj4Pw9MqJ0lxvyZw4GY4wuKt+dN7Lr7CfEYMu2Qv0M7MMNzVu6TBvE4aVCquwruXN4UriBayubY1uuEvLa3vQfB0zB8L1Ghk/MdR40G4QQTpB673rWDAa+vfpitj94JqZyX9/8DjaJRniuio=
Received: from MN2PR05MB6109.namprd05.prod.outlook.com (2603:10b6:208:c4::20) by MWHPR05MB2797.namprd05.prod.outlook.com (2603:10b6:300:60::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6086.24; Tue, 14 Feb 2023 22:51:03 +0000
Received: from MN2PR05MB6109.namprd05.prod.outlook.com ([fe80::85e8:9a68:a5c7:9cde]) by MN2PR05MB6109.namprd05.prod.outlook.com ([fe80::85e8:9a68:a5c7:9cde%3]) with mapi id 15.20.6086.017; Tue, 14 Feb 2023 22:51:02 +0000
From: John Scudder <jgs@juniper.net>
To: Alan DeKok <aland@freeradius.org>
CC: The IESG <iesg@ietf.org>, "draft-ietf-emu-tls-eap-types@ietf.org" <draft-ietf-emu-tls-eap-types@ietf.org>, "emu-chairs@ietf.org" <emu-chairs@ietf.org>, EMU WG <emu@ietf.org>, "jsalowey@gmail.com" <jsalowey@gmail.com>
Thread-Topic: John Scudder's No Objection on draft-ietf-emu-tls-eap-types-11: (with COMMENT)
Thread-Index: AQHZQLqyLyE7AKQKTUGdhRLuL/U0LK7PASUAgAALBQA=
Date: Tue, 14 Feb 2023 22:51:02 +0000
Message-ID: <E5A5EC55-07E4-4246-B72C-843B6DC9C0A9@juniper.net>
References: <167640985268.60504.14345761192561097879@ietfa.amsl.com> <B70BF937-1E48-4033-9AAE-7C8948DD8C1B@freeradius.org>
In-Reply-To: <B70BF937-1E48-4033-9AAE-7C8948DD8C1B@freeradius.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-mailer: Apple Mail (2.3696.120.41.1.1)
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: MN2PR05MB6109:EE_|MWHPR05MB2797:EE_
x-ms-office365-filtering-correlation-id: 37c8e63a-ee76-490b-097e-08db0eddf2e1
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MN2PR05MB6109.namprd05.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230025)(4636009)(136003)(376002)(39860400002)(366004)(346002)(396003)(451199018)(6512007)(38100700002)(122000001)(83380400001)(91956017)(8936002)(76116006)(66446008)(8676002)(64756008)(5660300002)(4326008)(41300700001)(66946007)(6916009)(4744005)(2906002)(71200400001)(66556008)(6486002)(6506007)(26005)(53546011)(36756003)(186003)(478600001)(38070700005)(316002)(33656002)(54906003)(86362001)(66476007)(2616005)(45980500001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-ID: <E8F361B0A0E22B4FB2804ECB3F80680A@namprd05.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MN2PR05MB6109.namprd05.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 37c8e63a-ee76-490b-097e-08db0eddf2e1
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Feb 2023 22:51:02.7984 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: qoqv7eyBxK1Ie+krURBCxIAuZAKLTIwFPx2GWt0t3teHWd/ZwIDt/xo3EcSsg23a
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MWHPR05MB2797
X-Proofpoint-GUID: M6P4JnPzw8HPF8TqJwb9669JXlz8d1G9
X-Proofpoint-ORIG-GUID: M6P4JnPzw8HPF8TqJwb9669JXlz8d1G9
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.219,Aquarius:18.0.930,Hydra:6.0.562,FMLib:17.11.170.22 definitions=2023-02-14_15,2023-02-14_01,2023-02-09_01
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 malwarescore=0 spamscore=0 priorityscore=1501 impostorscore=0 mlxscore=0 mlxlogscore=680 lowpriorityscore=0 clxscore=1011 bulkscore=0 adultscore=0 phishscore=0 suspectscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2212070000 definitions=main-2302140195
Archived-At: <https://mailarchive.ietf.org/arch/msg/emu/OTjRl5_7iHWoRfU_dzJ2lvuGRDw>
Subject: Re: [Emu] John Scudder's No Objection on draft-ietf-emu-tls-eap-types-11: (with COMMENT)
X-BeenThere: emu@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "EAP Methods Update \(EMU\)" <emu.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/emu>, <mailto:emu-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emu/>
List-Post: <mailto:emu@ietf.org>
List-Help: <mailto:emu-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/emu>, <mailto:emu-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 14 Feb 2023 22:51:19 -0000

Hi Alan,

The first two edits sound good to me, no notes. On the last one — 

> On Feb 14, 2023, at 5:11 PM, Alan DeKok <aland@freeradius.org> wrote:
...
>  It's left over bits from multiple edits.  Perhaps:
> 
> There MAY be
> additional protocol exchanges which could still cause failure, so we
> cannot mandate sending success on successful authentication.

The RFC 2119-style MAY seems a little out of place, it seems like it’s expressing an expectation rather than giving permission to an implementation that the inner protocol is allowed to do certain things (which seems beyond the scope of this spec to regulate?). Consider “may”, “might”, “could”, or similar?

Thanks,

—John