Re: [Emu] POST WGLC Comments draft-ietf-emu-eap-tls13

John Mattsson <john.mattsson@ericsson.com> Thu, 10 October 2019 16:18 UTC

Return-Path: <john.mattsson@ericsson.com>
X-Original-To: emu@ietfa.amsl.com
Delivered-To: emu@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1FF8F12080E; Thu, 10 Oct 2019 09:18:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.002
X-Spam-Level:
X-Spam-Status: No, score=-2.002 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id SbIUl-zm8exK; Thu, 10 Oct 2019 09:18:50 -0700 (PDT)
Received: from EUR04-DB3-obe.outbound.protection.outlook.com (mail-eopbgr60063.outbound.protection.outlook.com [40.107.6.63]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 49C74120809; Thu, 10 Oct 2019 09:18:50 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=m2kJWMLo1Lnd1z0XWodO7H11Fp12K92PS4U28uVFNN2r4vLjCG/vWJ/lJos9OIDgXQv3V6YoM9k/riR2LdCZoqE/QHciuTTA7XRvJDC+QSmlSoAHxIKMlU5geTkQKE/gRkyPYsNOQOSRopKKVS5kmdyUepUROH1CsWUM2IClCE5KeknlUd1HkdFbFufqPB1d0IlgBEbB6+anWQXqmAXuCSF1x1RjE13isbOGSOyVC4wxfXDr3hzVfCY1E7uzjyIK1CokVffoUupg0I0aTflujNQnbAqTXgx72OUbt+9Khh86q7J4wf5f6ZWba8yQx+VkpHzREdiU2H1ubKXvmeONyA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ZhDnvR6Ef6lWZR48K7mFrNgY9lYwKWBqBEDtq20Xm34=; b=azVtzRg7aZVkE6Fln8y26GWqZyEemJ1o4Z+F0ojaZReOPlhXy9MJDKxlrgngm9j06Y4jHUMEPrfcDuyPsg306VadWfFLqMZzzBZBZ7qY6VofkUPsOxGldNml3dryuDsfU4RZrpAB/8pRO5MYcNofzlVs0pp2zKJOo3xo0vcv6PqjzVENUatldv2mueX3Lc46q7JjW/ZevdbljkAKFpXh9PVa3juIvD21QO6N1UDB5UI53JRB3j++8ydYXSvWMHuEh1hYoIvDWaZx6CfrKg9Ky5mPe1A50Hn9U6Op6NfXie8K5n1t7Kc4Df9TvycxWiAW8JUESgBYaAd3hws4h5lFCg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ZhDnvR6Ef6lWZR48K7mFrNgY9lYwKWBqBEDtq20Xm34=; b=TlRUA8WZRl2KTX6lpTZBu/bVvFgHABYYoILGUggdhqIlwuTdF4LsLBjfRz+Mhhb813WT3qg4ffZf5W9NwdOXgNVxDaXaKcc1VXf8/+7I5xgRgF3dLboP02ecVg24ggrCk2XKeI8DLjyw8z6CbKBC7U8n/69MFMrOZ77UF9YIEmY=
Received: from HE1PR07MB4169.eurprd07.prod.outlook.com (20.176.165.153) by HE1PR07MB4428.eurprd07.prod.outlook.com (20.176.165.33) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2347.15; Thu, 10 Oct 2019 16:18:48 +0000
Received: from HE1PR07MB4169.eurprd07.prod.outlook.com ([fe80::c8fb:acc1:b00e:84ef]) by HE1PR07MB4169.eurprd07.prod.outlook.com ([fe80::c8fb:acc1:b00e:84ef%6]) with mapi id 15.20.2347.016; Thu, 10 Oct 2019 16:18:48 +0000
From: John Mattsson <john.mattsson@ericsson.com>
To: Mohit Sethi M <mohit.m.sethi@ericsson.com>, John Mattsson <john.mattsson=40ericsson.com@dmarc.ietf.org>, Eliot Lear <lear@cisco.com>
CC: "draft-ietf-emu-eap-tls13@ietf.org" <draft-ietf-emu-eap-tls13@ietf.org>, EMU WG <emu@ietf.org>
Thread-Topic: [Emu] POST WGLC Comments draft-ietf-emu-eap-tls13
Thread-Index: AdVKJoKyKr1G5+9hQuKLAEK5rLYqPgfSdnOQAABeFAAABkCJgP//55mA//bAJjCAEoqCAIADGZ8AgBnulgCABSSTAIAAKgSA///gSICAAANmgIAAKPcAgAAHL4CAAHvBgA==
Date: Thu, 10 Oct 2019 16:18:47 +0000
Message-ID: <EACE47D9-6D92-4361-9512-138058272D0A@ericsson.com>
References: <7828_1564869242_5D46027A_7828_348_1_02e001d54a45$e92ae900$bb80bb00$@augustcellars.com> <20b118932a4843b6b88e605799fafea8@aalto.fi> <211AD83C-D111-4EEB-AAF0-D9B5E521F4CF@deployingradius.com> <8F355C6F-DF1E-4E03-B75E-0F1D2508B9D4@ericsson.com> <246280B8-6E5C-484B-95BD-9C940C98C507@deployingradius.com> <CY4PR1101MB22781AB8C8982ACF99B61544DB8E0@CY4PR1101MB2278.namprd11.prod.outlook.com> <17E08795-4E4E-4507-8384-836020966BCF@deployingradius.com> <634C375D-FBF3-4297-A5C0-E68C903CA34A@ericsson.com> <CAOgPGoBko6N_JebmisoSk_EJ=Hq21sV3xoXjLw4r7D+OFSsdZA@mail.gmail.com> <CC58A292-03D6-4D70-A11F-B8FEE7311E78@cisco.com> <40D7307B-E302-4379-9013-C8B300A09050@ericsson.com> <C2573D07-78AE-4320-94AB-9B68C8AEA703@cisco.com> <abdcec26-9fd6-61c8-47fa-717c762bf509@ericsson.com> <CB8BD411-3B93-4720-BE46-D6CFA4DFF0BA@ericsson.com> <143f0e52-84e5-4e19-4597-1855e43094fa@ericsson.com>
In-Reply-To: <143f0e52-84e5-4e19-4597-1855e43094fa@ericsson.com>
Accept-Language: en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.1d.0.190908
authentication-results: spf=none (sender IP is ) smtp.mailfrom=john.mattsson@ericsson.com;
x-originating-ip: [82.214.46.143]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 5a777ee9-a056-44af-2149-08d74d9d87d6
x-ms-traffictypediagnostic: HE1PR07MB4428:|HE1PR07MB4428:
x-ms-exchange-purlcount: 1
x-ms-exchange-transport-forked: True
x-microsoft-antispam-prvs: <HE1PR07MB4428F2E0A89B7A4268DBB67B89940@HE1PR07MB4428.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:2887;
x-forefront-prvs: 018632C080
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(4636009)(39860400002)(366004)(136003)(376002)(396003)(346002)(189003)(199004)(58126008)(6116002)(446003)(11346002)(6436002)(44832011)(14454004)(76116006)(66446008)(64756008)(66556008)(4326008)(66946007)(966005)(6506007)(110136005)(54906003)(91956017)(66476007)(33656002)(2906002)(305945005)(229853002)(486006)(476003)(316002)(2616005)(7736002)(66066001)(3846002)(6486002)(256004)(5660300002)(4744005)(26005)(71190400001)(86362001)(71200400001)(478600001)(76176011)(102836004)(8936002)(81156014)(81166006)(25786009)(99286004)(6512007)(6246003)(6306002)(186003)(36756003)(8676002); DIR:OUT; SFP:1101; SCL:1; SRVR:HE1PR07MB4428; H:HE1PR07MB4169.eurprd07.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: ericsson.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 6TPDrpO8B28zyk0UfHfSEIkOsFv8pHZsD9sb6GMwBKC7BYIYwuKLw+MDVQYc1slqCQk07FFgbEk1BehOa/fsrhW7MMO+48l7ffs1XS85YDBhwTy/OelMZ7p79mjJXPt6oqHZIpIefAitgS/sNxXTrb40mcaB6nJPaFxIqMsOoGyxb02B4bE8nlj/nCDUFQCk6YnSqgMMUbsTH/FtgkyTdIMju/hDluU1aQuxvzUYONzvIqqWdETBP+NRQlH5ByPLKzKebfHL3fNPlo5BD+BN90o8HmIzmvBeq6+YOqg1s/OA9RCBWqYXG91eidpMi7vA61xjlpoAGEFaoXRarzUl1MJlYu4cCAuKb9mBhVOrxXVSx0bndZoE/aafBrddqt/9yoKNWFY9jDcT2u7pnq/53FVTHUiJsL+N2Ft2t/WMaw11W8Cs2qvgymiK94mUscJ12KEJUtM97oLfooG8TIucmA==
Content-Type: text/plain; charset="utf-8"
Content-ID: <8D1D8A76A94FB84B86305DB081CF022A@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 5a777ee9-a056-44af-2149-08d74d9d87d6
X-MS-Exchange-CrossTenant-originalarrivaltime: 10 Oct 2019 16:18:47.9316 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 8KyID6dBybsXYU620U6n3n4Sl2Y2Jy4FG+Fr3+QfXmEt7106dtKN2ZYyePcgFVcYiHvSCVFtYdmvW9qxjyzFp/ZBCXMwPGSSStyvBIcoibk=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR07MB4428
Archived-At: <https://mailarchive.ietf.org/arch/msg/emu/h9lUMBGZKj7gn69ONCc3-LaO6C8>
Subject: Re: [Emu] POST WGLC Comments draft-ietf-emu-eap-tls13
X-BeenThere: emu@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "EAP Methods Update \(EMU\)" <emu.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/emu>, <mailto:emu-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emu/>
List-Post: <mailto:emu@ietf.org>
List-Help: <mailto:emu-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/emu>, <mailto:emu-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 10 Oct 2019 16:19:05 -0000

Mohit Sethi M mailto:mohit.m.sethi@ericsson.com wrote:

> Can you give an example of an existing TLS 1.3 deployment that offers both resumption PSKs and external PSKs? 

Don’t know if it is deployed anywhere, but OpenSSL supports resumption of PSK sessions. There was a bug that stopped it from working that was patched 12 months ago. 
https://github.com/openssl/openssl/issues/7433