Re: [Emu] draft-aura-eap-noob-08 NAI

Mohit Sethi M <mohit.m.sethi@ericsson.com> Fri, 24 April 2020 13:29 UTC

Return-Path: <mohit.m.sethi@ericsson.com>
X-Original-To: emu@ietfa.amsl.com
Delivered-To: emu@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 584B03A0D21 for <emu@ietfa.amsl.com>; Fri, 24 Apr 2020 06:29:58 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id W4plzlycioQ8 for <emu@ietfa.amsl.com>; Fri, 24 Apr 2020 06:29:56 -0700 (PDT)
Received: from EUR05-VI1-obe.outbound.protection.outlook.com (mail-vi1eur05on2070.outbound.protection.outlook.com [40.107.21.70]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 39D603A0AB0 for <emu@ietf.org>; Fri, 24 Apr 2020 06:29:55 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=W6KuQD1p40f/5CgkzQOTgxjPQWo1JXdWqjMh3HhxvbSV2KIBBUZ1wvbpWJ2FFWMen7kB4zRDB1qebX9nM4/VddUGoVAcO+h4XZft+q2dTu/HCvwnB64+YxN4YzRxucrVBxuDMH+5B4y56ycnVGg/OCKYGcmSkYh+Eur2Q1Wso6t/GDisV4RqDGFVjXjHPCw5NmamX4s3VzeKMFH2qRlWBfS5rGX6m8Plnh1cybu9R+DptVEC/6fQBFPsm4pQ5kzoycVjqis8vIT3KEcVVlAAJ3RdyN8npmCdoZB5MUnH8D7gTrMWt2R+DIoVV+hSy4ZCmSNGcN8TBe17p0zmuIbHRw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=v8mut72nYLifCYqPcfhJ32zD19qCIjyLYtExagA7zZ4=; b=WiiB3diTsC6vo8SI/CmMOEIpOk5939lZDc6D0gvDW0vv7fPH88Zm5e7DPeF50/H71QSYVCx7/IvJwQlQ8mJvNuDH64ePLOHZdEc/zPppnvrZUBfrMpdx6OM6BBaAzOqLuFUXBv7cVMXl2PMrzclCrePDSsy/H3HHglEYJgEDNQPNIZgkI5HqfSgoI63O4+SsLqCXSYTz4VQhW70+VygADGDhLHvvyIO9tgeVEPPuX7/QmQkEffy+R7LMtoWDIC7dK7d2jw417XYKKfH3B8vVjRxZeu9cCL5lechiwz/PqrLLyaC9sEErQ7RKB+dZXZLC3MN089KAVEPatqCLYNVPqw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=v8mut72nYLifCYqPcfhJ32zD19qCIjyLYtExagA7zZ4=; b=nL3Z8qjQ5Xuv90js+t+xfSp6Wq1ZyMpmv0NA/hrv6alNOCJsh4nhXbKo2QLgMVBCUjw2XLazB3nwSdJzGfOhrPvx1EPzIXxKwp3GO6iXVqLWovEndLvGgFFlSOzMttKc0zS765QWOcVMPOylx8DsB+KyN0zc6nesYCmbip8ElLc=
Received: from HE1PR0701MB2905.eurprd07.prod.outlook.com (2603:10a6:3:57::18) by HE1PR0701MB2492.eurprd07.prod.outlook.com (2603:10a6:3:71::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2937.11; Fri, 24 Apr 2020 13:29:53 +0000
Received: from HE1PR0701MB2905.eurprd07.prod.outlook.com ([fe80::b909:1134:d9c1:e941]) by HE1PR0701MB2905.eurprd07.prod.outlook.com ([fe80::b909:1134:d9c1:e941%5]) with mapi id 15.20.2937.020; Fri, 24 Apr 2020 13:29:53 +0000
From: Mohit Sethi M <mohit.m.sethi@ericsson.com>
To: Eliot Lear <lear=40cisco.com@dmarc.ietf.org>, Mohit Sethi M <mohit.m.sethi=40ericsson.com@dmarc.ietf.org>
CC: EMU WG <emu@ietf.org>
Thread-Topic: [Emu] draft-aura-eap-noob-08 NAI
Thread-Index: AQHWGjiOwyY5pRQC70mTehtcYchCf6iIQnMAgAAB+gA=
Date: Fri, 24 Apr 2020 13:29:53 +0000
Message-ID: <0cd58037-6867-6d4b-de01-62424725628e@ericsson.com>
References: <3c0676c8-0810-4f70-4eb5-5d92abc35422@maxcrone.org> <2ed6d505-3e43-5524-7979-54bf2e6f70a0@ericsson.com> <E5F4446E-DB8C-4C0B-BD44-33F7CE77B3AA@cisco.com>
In-Reply-To: <E5F4446E-DB8C-4C0B-BD44-33F7CE77B3AA@cisco.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Thunderbird/68.7.0
authentication-results: spf=none (sender IP is ) smtp.mailfrom=mohit.m.sethi@ericsson.com;
x-originating-ip: [2001:14bb:190:9ee:c321:5f85:8127:40d0]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 9998f9e5-df01-4487-ec92-08d7e85392a7
x-ms-traffictypediagnostic: HE1PR0701MB2492:
x-microsoft-antispam-prvs: <HE1PR0701MB24922BF579B065FB4790658FD0D00@HE1PR0701MB2492.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-forefront-prvs: 03838E948C
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:HE1PR0701MB2905.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFTY:; SFS:(4636009)(39860400002)(346002)(136003)(376002)(396003)(366004)(4326008)(316002)(110136005)(76116006)(66556008)(64756008)(53546011)(6506007)(36756003)(966005)(66946007)(86362001)(66446008)(71200400001)(66476007)(31696002)(5660300002)(186003)(2906002)(478600001)(6512007)(8676002)(6486002)(8936002)(31686004)(81156014)(2616005); DIR:OUT; SFP:1101;
received-spf: None (protection.outlook.com: ericsson.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: qzx77IHnJG8qwdaL/rerx7W5qhSt1K+DmckVQFY4D6KKxP/04SrJwnXHnDFTmdDm9rZQzhX/p21u6VzLwOmGuY760rHUvEQ2ZytCRjuE9k2hIQnuFMr+JJQeJJuAGuR7QbTYEXWprJstbxcgnee8NUW2BNa1xqLLkGolXxWLVWx72iGuwsh49hk1nFC3joyPkj7lk6+66tthh/3OYKiHEo4qt3FvDGQPNAjoK/rPnQB8ByR25cctupwad8fk2oed0jwEhWMYctKQDzEOpBxDBSUg2idxVjYCq9XUEjie1f2DXcRDgGVpkGVOdNvw+pE+Ok4wrB49GEHIbisAFnmq9ij//ItRianHnldqOU1kSlasP9dyu1uwPunZ+bu0ClRNFDqNZ/eR0ylQcQhYxl4l0455P8ZB2SzpXJkh9WP+rNUacKYYlz7yLtYKaOu64GixYvyY7dmOXRpO1c/uM3adH/O0t/Ea3RoN0T7deuCdB8P30Fu5iuabWnEJTDHdd7miAbfKZ6rMTt6yKrVyshTSzA==
x-ms-exchange-antispam-messagedata: HTqoM5MCKAE/hE44CJ8mCVAZFrb3h3edz+lstLLkbLWwtls9fh1AdWCP7a0V/aJ36Qe2zCW0pmoDO+Hu4fiquotgWhRDgFVtdFYPpaxo4YnSrYENPnxzK46OIKi9tbVVhy2pMuvisQQ8up0BtS2+lAwqydUmItN3B3qI5ZPIGzw/Mu+aV3FUH570bBhfJfUQpaee1obOIUdb6SvV26Zh2ihKK4nA18O6vBXtUMQPf7xKJwLgizLnRch1PlCsfIaYBvbOztdBMg6DlFcydZ+BcYUlKOj8XXAtafQTIt7BWdkydA6sIPnM3rK0KCV0QFQsV+LktFYQnotCgNuzpPDOMiZpNTdstjqgcfTDLqXvhQ+M9CtVXCJ1kEE10RNJndE0XENQi3bnAjfSlp4AxvDp7b8Sgjn3wkctL3zbp/q0ECKjFfj+HmI4vLTas0GzW22zfH3ZLjYwAiL2otaRbiDRhurJ0u69fX6Zmuyd9GXSeoZYbBfp3BUpuHcGEtjHY5204V4zDa22dyFVsjpIPq6bitV34khY9SN1eo/g+HfAEdNKc0j6JbXNcR723/UhBqtFwt4rVFrcqzcSa0vy5gEVTq/6+e6q7IZrz9Jwlu+3Kcq2VbM19dwsyn7KgXbnLdKxzaZVGm+scE55nibG46ene6ZGw20WKvNO4n6GRM5Tb9o2acP6C/w42H8+MmGHxNWAv3mdfqv9n1dMyz1bMKpSnPbBTtFN+n7R16ov75eHXdkGzeEs54cVK6ZhyJDvzxNLJVTHCumG9SdzYAf53S5qLmmAl7KPnnRphsYldEHa2kVRSaEZ1Il6IzZFKJD77296WQt8fBv+C0O2dKpJLgNq1Lp2fmghq9eUVzkXpbFQYBg=
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_0cd5803768676d4bde0162424725628eericssoncom_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 9998f9e5-df01-4487-ec92-08d7e85392a7
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Apr 2020 13:29:53.5843 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: n4OaDm6IYELwv9XoXs3RE1c5kh+QP8ZF1Wo93+7KFOED8WacDg2RfA4Npm24DSAPHsWtyqmgEIvD8jd5kfLAUjP0tjGY2h2aLFTrsODgjEo=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0701MB2492
Archived-At: <https://mailarchive.ietf.org/arch/msg/emu/jZM3EBbdMH5jQMiRt4gesHjW83U>
Subject: Re: [Emu] draft-aura-eap-noob-08 NAI
X-BeenThere: emu@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "EAP Methods Update \(EMU\)" <emu.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/emu>, <mailto:emu-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emu/>
List-Post: <mailto:emu@ietf.org>
List-Help: <mailto:emu-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/emu>, <mailto:emu-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 24 Apr 2020 13:29:58 -0000

Hi Eliot,

On 4/24/20 4:22 PM, Eliot Lear wrote:

Hi Mohit



On 24 Apr 2020, at 15:02, Mohit Sethi M <mohit.m.sethi=40ericsson.com@dmarc.ietf.org><mailto:mohit.m.sethi=40ericsson.com@dmarc.ietf.org> wrote:

Hi Max,

Tuomas can give you a definite answer. My understanding is that error
1001 should be sent by the server if the received identity does not
follow the requirements of draft-aura-eap-noob. Besides, implementing
the stricter checks of this draft is easier than validating the ABNF of
RFC7542 (after which you would anyways need to verify compliance with
this draft).

And you are right. The absence of server-assigned realm in Figure 2 is
probably an editorial oversight. However, I wouldn't call the optional
server assigned realm as RESERVED_DOMAIN. If anything, I would call
eap-noob.net as a reserved/special use domain.



There are all manner of reasons not to use eap-noob.net.  I think we talked to the IAB about this at some point and they were comfortable with something in .ARPA, but we’d need to reconfirm.  This is a small matter that should be cleared up with a few email exchanges.

Absolutely. Using something in .arpa makes perfect sense. But until that is allocated, implementations need a temporary placeholder. The current text in section 3.3.1 of the draft even says (https://tools.ietf.org/html/draft-aura-eap-noob-08#section-3.3.1):

The default realm for the peer is "eap-noob.net" (.arpa domain TBA).

--Mohit



Eliot
_______________________________________________
Emu mailing list
Emu@ietf.org<mailto:Emu@ietf.org>
https://www.ietf.org/mailman/listinfo/emu