draft-housley-tls-authz-extns-07.txt to Proposed Standard

Ralf Weber <rw@colt.net> Wed, 11 February 2009 08:17 UTC

Return-Path: <rw@colt.net>
X-Original-To: ietf@core3.amsl.com
Delivered-To: ietf@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id E6FD03A6767 for <ietf@core3.amsl.com>; Wed, 11 Feb 2009 00:17:09 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.987
X-Spam-Level:
X-Spam-Status: No, score=-1.987 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HELO_MISMATCH_NET=0.611, HTML_MESSAGE=0.001]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Qx2bK0oce-UD for <ietf@core3.amsl.com>; Wed, 11 Feb 2009 00:17:08 -0800 (PST)
Received: from smtp.lon.dcn.colt.net (smtp.lon.server.COLT.NET [212.74.77.49]) by core3.amsl.com (Postfix) with ESMTP id CBC4A3A67EE for <ietf@ietf.org>; Wed, 11 Feb 2009 00:17:02 -0800 (PST)
Received: from [194.45.79.6] (quo.fra.ws.colt.net [212.74.79.242]) by smtp.lon.dcn.colt.net (Postfix) with ESMTP id 743C735843 for <ietf@ietf.org>; Wed, 11 Feb 2009 09:17:04 +0100 (CET)
Message-Id: <73E1DD05-C75B-47F5-92C5-21780818C0F7@colt.net>
From: Ralf Weber <rw@colt.net>
To: ietf@ietf.org
Content-Type: multipart/alternative; boundary="Apple-Mail-3-482469832"
Mime-Version: 1.0 (Apple Message framework v930.3)
Subject: draft-housley-tls-authz-extns-07.txt to Proposed Standard
Date: Wed, 11 Feb 2009 09:17:03 +0100
X-Mailer: Apple Mail (2.930.3)
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 11 Feb 2009 08:17:10 -0000

Moin!

I haven't been aware of this draft before the FSF encouraged some  
people to send there opinion into the IETF mailing list. This isn't my  
first post to an IETF mailinglist and I am subscribed to this and  
other lists on the IETF, so I do think I qualify as IETF participant.  
I did spend some time reading the draft, the IPR disclosure and before  
stating an opinion it would be nice if the people that have dealt with  
it longer could tell me if what I got out of it is correct so far.

1. RedPhone Security applied for some patents that we are talking  
about here in 2005
2. RedPhone Security then authored/co-authored a draft in 2006
3. This could no be successfully processed within the TLS WG
4. The draft was then submitted as individual submission
5. The IESG did not approve the document because of an IPR disclosure  
that has been removed as of now
6. After two years the authors try to again standardize the same draft  
that was declined two years ago with a new IPR disclosure
7. While the IPR may not be relevant to the draft (IANAL) I do not see  
how an useful implementation could work around it:
	- The draft is about extending TLS to authorize before the secure  
connection is established
	- Authorizations are usually done by exchanging and comparing secrets/ 
certificates
	- This is exactly what points 3 and 4 of the IPR disclosure describe

If all of the above is mostly correct I would say that the fact that  
there is no royalty free license available for implementors and there  
are a lot of TLS implementations available under FOSS licenses, which  
could not implement this without violating RedPhone's IPR would lead  
me to the conclusion that I have to oppose this draft.

So long
-Ralf
---
Ralf Weber
Platform Infrastructure Manager
Colt Telecom GmbH
Herriotstrasse 4
60528 Frankfurt
Germany
DDI: +49 (0)69 56606 2780 Internal OneDial: 8 491 2780
Fax: +49 (0)69 56606 6280
Email: rw@colt.net
http://www.colt.net/
Data | Voice | Managed Services

Schütze Deine Umwelt | Erst denken, dann drucken

*****************************************
COLT Telecom GmbH, Herriotstraße 4, 60528 Frankfurt/Main, Deutschland  
* Tel +49 (0)69 56606 0 * Fax +49 (0)69 56606 2222 *

Geschäftsführer: Dr. Jürgen Hernichel (Vors.), Rita Thies *  
Amtsgericht Frankfurt/Main HRB 46123 * USt.-IdNr. DE 197 498 400