Re: [Emu] WG adoption call for draft-arkko-eap-aka-pfs

Jari Arkko <jari.arkko@piuha.net> Tue, 11 December 2018 15:32 UTC

Return-Path: <jari.arkko@piuha.net>
X-Original-To: emu@ietfa.amsl.com
Delivered-To: emu@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 35CFF130DE8 for <emu@ietfa.amsl.com>; Tue, 11 Dec 2018 07:32:58 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sYxFA4HC6iFS for <emu@ietfa.amsl.com>; Tue, 11 Dec 2018 07:32:56 -0800 (PST)
Received: from p130.piuha.net (p130.piuha.net [193.234.218.130]) by ietfa.amsl.com (Postfix) with ESMTP id BCC7C130DD8 for <emu@ietf.org>; Tue, 11 Dec 2018 07:32:55 -0800 (PST)
Received: from localhost (localhost [127.0.0.1]) by p130.piuha.net (Postfix) with ESMTP id 11D216603CF; Tue, 11 Dec 2018 17:32:54 +0200 (EET)
Received: from p130.piuha.net ([127.0.0.1]) by localhost (p130.piuha.net [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qldn2E1P4Z3S; Tue, 11 Dec 2018 17:32:53 +0200 (EET)
Received: from [127.0.0.1] (p130.piuha.net [IPv6:2001:14b8:1829::130]) by p130.piuha.net (Postfix) with ESMTPS id 0D0AE660254; Tue, 11 Dec 2018 17:32:53 +0200 (EET)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 10.3 \(3273\))
From: Jari Arkko <jari.arkko@piuha.net>
In-Reply-To: <98AB9912-1110-47F8-A4B0-94CB2E6A302E@deployingradius.com>
Date: Tue, 11 Dec 2018 17:32:52 +0200
Cc: "Dr. Pala" <director@openca.org>, emu@ietf.org
Content-Transfer-Encoding: quoted-printable
Message-Id: <BC8F219E-4BE4-4980-A701-F8F296A19A4F@piuha.net>
References: <CAOgPGoBGZWbyHYybnMUbKG77Mei3yBOS1HyS4Uso1HKgxq1VNg@mail.gmail.com> <CAOgPGoAvGm7gfgAHsPHHdO9OU601wp=NY2fb9YjQyh0h6cy3nQ@mail.gmail.com> <45e7325b-f5d1-c4b8-edb2-3e39d03989fe@openca.org> <39E1238A-2E39-4FF4-89C3-2B549C1EA84F@deployingradius.com> <932256A8-6381-4EE9-95B2-C56B4E7F52D5@piuha.net> <98AB9912-1110-47F8-A4B0-94CB2E6A302E@deployingradius.com>
To: Alan DeKok <aland@deployingradius.com>
X-Mailer: Apple Mail (2.3273)
Archived-At: <https://mailarchive.ietf.org/arch/msg/emu/RKwLmBhYdRXfTspXIwCeWshFR8w>
Subject: Re: [Emu] WG adoption call for draft-arkko-eap-aka-pfs
X-BeenThere: emu@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "EAP Methods Update \(EMU\)" <emu.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/emu>, <mailto:emu-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emu/>
List-Post: <mailto:emu@ietf.org>
List-Help: <mailto:emu-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/emu>, <mailto:emu-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 11 Dec 2018 15:32:58 -0000

Alan,

Circling back to this.

I’ll first agree with your summary about the importance of the tech, that there’s some risk but the risk is likely low but non-zero, and that in an ideal situation you wouldn’t have to deal with this.

However, I would like to point out that

* The draft is an *optional* extension to something bigger, and no one is forced to implement it.

* Regardless of that, even the base RFC had a similar IPR associated with it back in ‘09, so any discussion about an extension’s properties should be set in that context. A problem in the extension cannot be bigger than a problem in what the extension builds on, no? Not to mention the context of say, 5G phones.

Neither me or you can change that context or even the situation with the base. Perhaps the world should operate on other kinds of rules, but what we have here is a tool that could have a real impact on billions of users’ security, and I think we could make it do that. But we need a standard. Can we have that?

Jari