Re: [saag] SSH & Ntruprime

John Scudder <jgs@juniper.net> Tue, 09 April 2024 18:14 UTC

Return-Path: <jgs@juniper.net>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D583AC14CEFA for <ietf@ietfa.amsl.com>; Tue, 9 Apr 2024 11:14:12 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.174
X-Spam-Level:
X-Spam-Status: No, score=-2.174 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.08, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b="sOftyoXo"; dkim=pass (1024-bit key) header.d=juniper.net header.b="PW3kEPoH"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cBLU5ftyOqGr for <ietf@ietfa.amsl.com>; Tue, 9 Apr 2024 11:14:08 -0700 (PDT)
Received: from mx0b-00273201.pphosted.com (mx0b-00273201.pphosted.com [67.231.152.164]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A1638C14F721 for <ietf@ietf.org>; Tue, 9 Apr 2024 11:14:08 -0700 (PDT)
Received: from pps.filterd (m0108160.ppops.net [127.0.0.1]) by mx0b-00273201.pphosted.com (8.17.1.24/8.17.1.24) with ESMTP id 439C6GYd026068; Tue, 9 Apr 2024 11:14:07 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h= from:to:cc:subject:date:message-id:references:in-reply-to :content-type:content-id:content-transfer-encoding:mime-version; s=PPS1017; bh=39LH/V+VREsE0JjzLbGgV/4ZcW6mtNPEkC90tOr6384=; b=s OftyoXonbE6m602zegIhM0D8BnFcbnp/KBObnpyDah0mpip7slI8/bc+/OM/DwMr Mm9pgAUN2tJi2zQx4nZpFH4MRZtbjekaxViIGTgxoO6SiS7LeFSF1grmOx1gTLvF /upNWCLeJcZhSa2bgzmNCg2BMu7zIhl2a7FeTXyiUlRIRncTueAeYKl8kWeXfoJG eAfcT9TztiUGFLge6m3+DbQMjC226XRFgaJvtdmz09pvxw9v5qf22qXmj3T8RMRq WRja9werd1kz72Y1lLuYgZkDfz87/yTMmn/GbHvgJx53KXc4uuo18bCfAsBxP9pY kHsZFEjZAnnF/iAmTQhDg==
Received: from byapr05cu005.outbound.protection.outlook.com (mail-westusazlp17011010.outbound.protection.outlook.com [40.93.1.10]) by mx0b-00273201.pphosted.com (PPS) with ESMTPS id 3xb4acp85h-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Tue, 09 Apr 2024 11:14:07 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Q6C1k6AQ62EleBP9oqjxhenMdH4UFlrfLAXkk5uoujgwec9+N0Zbnx+mDKO9sUl7XcAxN6EHQ+YqH8xZYQij17VFfDSuHgxjZeQZ4qHfCdN64UFpYD8Sj6fjEwB5EGDISnwmLc1coS/tlziGwF9JwrSYb7Cz3W3mLJ3ioMV1YrIrWXR5a7KwEzAWRN/qGZBnP6G3xrO0QXQxL8t6U9EmZA28v8rvp8ZRIXQavHqP1x5oWBdMWGHcYSA2AzxiQ1Vr7Bs/YHrnxjtQejjSJIld2eXa91nuOuq2A5UbNZe3J4sL6OKOjB2NYLfey2DOPA/RIIPLYeDS4465nuCdxnxQGQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=39LH/V+VREsE0JjzLbGgV/4ZcW6mtNPEkC90tOr6384=; b=VR+uJ21hggtiGYhfvKZVEx3LQ5NtO7BmfFv1bFxWybfS5oieN/m2Mp+TGJnVnB+KhwYw7Kf3/IK1TU8ukWYg8F1vnafljJadbomP+m1tSkNLGkfwaj1Xad7f1VC0p26Ff2ynB3em61oEVS+/om2yu9qh9pDRv2b27wDODzhZq5+xO9Wzn7EQRIISbnhOfha4ZeqAaf3bsAMxsanzu9EK3EvhpSf8NlEcGi+w2x3thufnnHkrx9b4tVRNqlwWkcvG2jMizuEBZi1VX+PM2h9WfNgoaRfVLBcbJ/cqlkMxTyw6eggpo81arUOFwYWJRjwDYeCXWs9Hn8ggLLJ18XFgVw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=39LH/V+VREsE0JjzLbGgV/4ZcW6mtNPEkC90tOr6384=; b=PW3kEPoHV20vioAKA9FDEVw7UVawRGHSGxtbmq2xg3SmXAg0hNDwSOSL/S9Op1pbQWZd9IuElyzga+yE0qtsvFgkltZsMuWvXkCOqvHSus73NFueL391d0MwJsbg/Mr1peNCsMZ7CB/8ZppVuF915DBDTT+CoQ7j83VXvWxikrg=
Received: from CH2PR05MB6856.namprd05.prod.outlook.com (2603:10b6:610:3e::11) by PH0PR05MB8398.namprd05.prod.outlook.com (2603:10b6:510:c5::24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7409.46; Tue, 9 Apr 2024 18:14:04 +0000
Received: from CH2PR05MB6856.namprd05.prod.outlook.com ([fe80::f1bf:41e0:23ff:7eff]) by CH2PR05MB6856.namprd05.prod.outlook.com ([fe80::f1bf:41e0:23ff:7eff%5]) with mapi id 15.20.7409.042; Tue, 9 Apr 2024 18:14:03 +0000
From: John Scudder <jgs@juniper.net>
To: Eliot Lear <lear@lear.ch>
CC: "ietf@ietf.org" <ietf@ietf.org>
Subject: Re: [saag] SSH & Ntruprime
Thread-Topic: [saag] SSH & Ntruprime
Thread-Index: AQHagVFoli+rmmtOLUKcU7cer+a8srFNu/SAgAH1sYCADXMfgIAAEkWAgAMZr4A=
Date: Tue, 09 Apr 2024 18:14:03 +0000
Message-ID: <C9C1CB73-D847-4597-8C6A-88CCD6E9EE92@juniper.net>
References: <ACA03432-1AE4-4ACB-B469-64AAF6F3FB52@iana.org> <A2C21DCBDCAB094E144891A7@PSB> <6.2.5.6.2.20240329200425.0aa09938@elandnews.com> <D90DCC68-3350-43C1-8F60-20C25C7EA0E2@juniper.net> <0e4d5e37-77ae-4b41-a11c-f2132d94e0d4@lear.ch>
In-Reply-To: <0e4d5e37-77ae-4b41-a11c-f2132d94e0d4@lear.ch>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-mailer: Apple Mail (2.3774.500.171.1.1)
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CH2PR05MB6856:EE_|PH0PR05MB8398:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: fgHafmZk5UQw7MmkAYX37jL+vFFSKIPfddi3vHEgixwX1Xrw+Xd2BFVDlcTAV8J+ZkbpS/EPKc8QTGhPuv35WsDbxIItys40auZtMgfFP9wfiph7sbih1QeUF5KxYPojGIzoe447ndrvTjV7W20NTD8Vk0OfFl8wm1IkzxYLuKWuNjH9/G7qGFWcBJ9BB+gp39NXMpQIQW/QDqmoahbloihn3R8BdlYk6y+KV47ePE1VewkP8RVwp0cjwc/1F7wp+PhypAt/FwgBs+OWCL3ja0UYXghgiu6oEUuGQUiv28rHNiQvGWfQ2GLsyJSubwmVv2rRBFwB6DUh5uSoojlsVVE3GtikNV5RtRKL2cz+StltzEy4wrZFbUj+esLYYloXI2KoGatDN2yt8wZDTt7REydtN+6ERbhclK2G0Y7h/IBwjelWU0vZy1ZlqA2t6x7vLd9EZTDXADPlYGT+1AuoVvJyP5bhGTOvMCEIxuEWwUcnQ/unFo3y0JEx0FvQeZw17whepiGYWsc7KPfDKab1Q//HV3kDFiYMNRMtobzMm7MGhHtG8b/ShQJ3CIV41uk2Zb1dQeP4glIMEuQhPCvSZAdFwcjLpEsTQnvyDp9ihHsQkjRxM1/VuJeJS1vEdYHpMoYWBuG5F111yBCnwhNijM3dgpSTFlaeJe1j5P0RgJQ=
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CH2PR05MB6856.namprd05.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(366007)(1800799015)(376005); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-ID: <316E7FC413DD2742B61C74F2E4CA1CF6@namprd05.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CH2PR05MB6856.namprd05.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 236c6d1a-e4f0-4d97-e285-08dc58c0d6b1
X-MS-Exchange-CrossTenant-originalarrivaltime: 09 Apr 2024 18:14:03.8540 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: tKbGbIaHgi2xuG0jTkG0dYxXONolIgzgSpnyr2ixn+OTdebXhy35wTXywqY2O9GG
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PH0PR05MB8398
X-Proofpoint-GUID: r__4H7WSqj-40oNwUTyO-9SOpeO_Ekoa
X-Proofpoint-ORIG-GUID: r__4H7WSqj-40oNwUTyO-9SOpeO_Ekoa
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.272,Aquarius:18.0.1011,Hydra:6.0.619,FMLib:17.11.176.26 definitions=2024-04-09_12,2024-04-09_01,2023-05-22_02
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 clxscore=1011 priorityscore=1501 bulkscore=0 mlxscore=0 phishscore=0 adultscore=0 impostorscore=0 suspectscore=0 lowpriorityscore=0 malwarescore=0 mlxlogscore=873 spamscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.19.0-2404010003 definitions=main-2404090120
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf/f3Zp1ri_ZiHWQVuOj3x68q8tIsU>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "IETF-Discussion. This is the most general IETF mailing list, intended for discussion of technical, procedural, operational, and other topics for which no dedicated mailing lists exist." <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 09 Apr 2024 18:14:12 -0000

Hi Eliot,

> On Apr 7, 2024, at 2:53 PM, Eliot Lear <lear@lear.ch> wrote:
> 
> On 07.04.2024 19:47, John Scudder wrote:
>> I think one or more of the contributions to this thread expressed dismay that by referencing an I-D from a registry (or approving a registry policy that permits the same) we harm ourselves by giving the lie to the "inappropriate to use Internet-Drafts as reference" I-D boilerplate. Others have pointed out the "including informal documentation” phrasing of RFC 8126’s definition of “Specification Required”. These two things are manifestly in tension, but I’d like to point out that to resolve that tension by being sticklers for the draft boilerplate disclaimer, i.e. refusing to approve registries that permit I-D’s as references for Specification Required, would be to create a perverse incentive for authors to do their work outside the IETF.
> 
> I'm not sure that's perverse, because it's laying responsibility at the feet of those who have a vested interest in maintaining interoperability of their works.

The person who stands up the ad hoc spec has a vested interest at that moment in obtaining a code point. I don’t think there’s a basis for asserting that as a reliable principle, that individual will have a vested interest after the code point has been issued. I very much don’t think there’s a basis for believing that their ad hoc spec will continue to be available after (for example) their retirement. It’s been pointed out recently (although I don’t recall if it’s in this thread or elsewhere) that I-D’s don’t benefit from the same explicit promise of archival integrity RFCs do. Fair enough, but as a practical matter, I still trust their longevity and integrity much more than I do any ad hoc arrangement. 

But document hosting arrangements are subordinate to the main point in any case. I was referring to the perverse incentive to keep the specification development outside the IETF process. IMO, we want to be a place where people want to bring their ideas for development. I laid out reasons why the suggested draconian enforcement of the I-D boilerplate could lead to people avoiding us instead. If that’s not a perverse incentive, I don’t know what is.

—John