Re: [homenet] I-D Action: draft-ietf-homenet-dot-10.txt

Ted Lemon <mellon@fugue.com> Tue, 01 August 2017 18:04 UTC

Return-Path: <mellon@fugue.com>
X-Original-To: homenet@ietfa.amsl.com
Delivered-To: homenet@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 385E612ECB4 for <homenet@ietfa.amsl.com>; Tue, 1 Aug 2017 11:04:09 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fugue-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LFWkgUIKU1Q8 for <homenet@ietfa.amsl.com>; Tue, 1 Aug 2017 11:04:07 -0700 (PDT)
Received: from mail-qt0-x234.google.com (mail-qt0-x234.google.com [IPv6:2607:f8b0:400d:c0d::234]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C011A1200C5 for <homenet@ietf.org>; Tue, 1 Aug 2017 11:04:07 -0700 (PDT)
Received: by mail-qt0-x234.google.com with SMTP id v29so13762911qtv.3 for <homenet@ietf.org>; Tue, 01 Aug 2017 11:04:07 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fugue-com.20150623.gappssmtp.com; s=20150623; h=from:message-id:mime-version:subject:date:in-reply-to:cc:to :references; bh=s9d3N+LaFbZApvBPaWZcvHKMnirOLwIUBlluu2FCtDA=; b=szwP/PQOaQ1PCU7IzB6apSA+mW20uDG3ydf//hqP1syiA1umNhG2cyAR9MWDv7yYHx 4E0G3YGoqomytAPlB8kiajxyyktsyDH0rtdiJpqeSzmKwcA59L1TGMoMZLJozhu1q0Y7 xu5pCFFqS7RU30e7U0ZSbAdSr28Ab2NBrxHc1RznI3rVymRNcCv6oT6XD6PF5wyMHqRI mu2WFpAmPEfK8uLKzQ4tI3wVZrH3eeMz3i525LNbcl8Pe5PanThaWLGfNZL8B10Ib1d2 Q8TEKIZ02mix/fbm+6hrnxGArJeMy11qLgE2AZo1z75pl40bBSrIJeC/6ke+YffIH4S2 GctQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:message-id:mime-version:subject:date :in-reply-to:cc:to:references; bh=s9d3N+LaFbZApvBPaWZcvHKMnirOLwIUBlluu2FCtDA=; b=aOhPmsvtNXiSTdSJ+II5iy5QQukuRRDHF4MTmm/cMj1NLrJVA2gJsGXPhHGeg6l2GE gR1LcD2iEa8aCO3eKx9PgZerozbo25pVB7Q99Gfizm15nfW/ebT0AFCQQpE3HpIUa2s3 ryVR9lOf9n9aWF8nqx685maDYRMTSIIVVrtFMBA8KQiEHfUKdt6NnWfoFELMjG02x5J6 U5nwJ9Iv/jsCfjmoC6uQVFdRmE0sAbu7lyjXhCuxt8km2Fv6jBlRd+NOCqxPCaJBS9RS efiUZT6IjaCDgW+AQnoA96iSWrRuyCXOVbq8J1Oth3JCR3pXCU3r4aXEJI5PbQGsc5qa sIog==
X-Gm-Message-State: AIVw110SayU4ykSp+FBrqAVO93HPA5yP8a5aFEhfrndVh1rwWn8Y/We3 vvPCWjjnrJ/YCvYBopMKFQ==
X-Received: by 10.237.42.44 with SMTP id c41mr27494521qtd.74.1501610646906; Tue, 01 Aug 2017 11:04:06 -0700 (PDT)
Received: from [10.0.30.153] (c-73-167-64-188.hsd1.nh.comcast.net. [73.167.64.188]) by smtp.gmail.com with ESMTPSA id n21sm22812580qkl.51.2017.08.01.11.04.05 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 01 Aug 2017 11:04:05 -0700 (PDT)
From: Ted Lemon <mellon@fugue.com>
Message-Id: <37733D96-1B94-47F4-BF74-E3E5C815823C@fugue.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_AE6D34F0-F338-42D4-9E4E-62D4409F29E4"
Mime-Version: 1.0 (Mac OS X Mail 10.3 \(3273\))
Date: Tue, 01 Aug 2017 14:04:04 -0400
In-Reply-To: <5980C234.305@mathemainzel.info>
Cc: Juliusz Chroboczek <jch@irif.fr>, "homenet@ietf.org" <homenet@ietf.org>
To: "Walter H." <Walter.H@mathemainzel.info>
References: <150127266271.25329.18484770769960144@ietfa.amsl.com> <597F7545.9000702@mathemainzel.info> <E51998F5-8EF9-4FC8-90BE-1D0BF1805339@fugue.com> <b562a9fd0ce2d8af63109aac47d1d47a.1501567308@squirrel.mail> <757C1755-AD78-43DE-93F0-E3D19BFE6C66@fugue.com> <2D09D61DDFA73D4C884805CC7865E6114DBE4251@GAALPA1MSGUSRBF.ITServices.sbc.com> <3A5D69EE-3F32-4773-90ED-D189E7523D9F@fugue.com> <7ilgn3xkfe.wl-jch@irif.fr> <5980C234.305@mathemainzel.info>
X-Mailer: Apple Mail (2.3273)
Archived-At: <https://mailarchive.ietf.org/arch/msg/homenet/0rAOTz7fgtKPEQFTkvW1ykpThdw>
Subject: Re: [homenet] I-D Action: draft-ietf-homenet-dot-10.txt
X-BeenThere: homenet@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF Homenet WG mailing list <homenet.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/homenet>, <mailto:homenet-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/homenet/>
List-Post: <mailto:homenet@ietf.org>
List-Help: <mailto:homenet-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/homenet>, <mailto:homenet-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 01 Aug 2017 18:04:09 -0000

On Aug 1, 2017, at 2:02 PM, Walter H. <Walter.H@mathemainzel.info> wrote:
> what is the real problem having stricht rules in this Draft/RFC to get an
> SSL certificate that can be used  inside such an environment;
> so that no own PKI is neccessary?

The problem is that it's not up to us to set these rules—it's up to CABF, and they have ruled on this, and (IMO) not capriciously.