Re: [Iotops] [Uta] How should we change draft-ietf-use-san?

Brian Smith <brian@briansmith.org> Wed, 21 April 2021 18:26 UTC

Return-Path: <brian@briansmith.org>
X-Original-To: iotops@ietfa.amsl.com
Delivered-To: iotops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F2DD33A322E for <iotops@ietfa.amsl.com>; Wed, 21 Apr 2021 11:26:06 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=briansmith-org.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id v4hZ6CVvqHg8 for <iotops@ietfa.amsl.com>; Wed, 21 Apr 2021 11:26:02 -0700 (PDT)
Received: from mail-pf1-x429.google.com (mail-pf1-x429.google.com [IPv6:2607:f8b0:4864:20::429]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3A4703A322F for <iotops@ietf.org>; Wed, 21 Apr 2021 11:25:59 -0700 (PDT)
Received: by mail-pf1-x429.google.com with SMTP id c17so29681222pfn.6 for <iotops@ietf.org>; Wed, 21 Apr 2021 11:25:59 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=briansmith-org.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=KGHm05uqTMBSvO5fjmKyPppucc8I7pjt5tQKnTI+6JQ=; b=GfvjFvZTzlGdcVI0d4gXq+YBAAKh35mZVNFvLNeUcEqK2quOP9WDjvjqwEeb2BRXLA 4RVMNpaHrzGLO/JEyodhfdpaCClgzQrFfVoFQUrGYYLz5Bdmy0dIpbdJWPUlqZWZlnc6 ehTguj1+Pdk9zZev0rfHkCwhewvrsYFMyHrd7rUL3i7cgCqoPwrVDuAlnjlUOwqrGA4J XeSBSlELJNkSwFyYp7DAq0jZXn2xOME/ne7RDQ6DiXfKfWsmBNrLtzobcUPq9M0VHgPT /oUxwDelZZLyGs7rV35IEiRUh+AjeP6JabgN3q7CslQ7jgbxfogORnlAYS3IHGoRARM9 CqYA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=KGHm05uqTMBSvO5fjmKyPppucc8I7pjt5tQKnTI+6JQ=; b=KRrFWT4nsOZ0zRa3T2Ye9FyQCmsjyVtGqmqXXvCpdLjmEVeZxF+LfS5YNZvOHowO99 mkFb1WAhe2lAQW2ktjoZ0pXF8awYZVoPcu9xMcJukKV6QQAjF1H3sfCWo0/P70oQn3sd hPF+T6qJNasx4/jqTn9JvOSXDtiPAhbb6Fh1VWkccFhZxCPxsOjLJ3jZvmsCQ1MGs35H zCZ/HP9C/dpVX5pXPDC2bX7nzYJRFPR4T1YwPAubzpu6/fpV5wRV7bqUBFRBwRXJfRhv 4G3CGgsRsO8A3g/etdTlm64n8AWbWcln0ahlEcnpTNlbHDsIIX6vI3tHM7rmYjKIsABc 34KA==
X-Gm-Message-State: AOAM530f3elXVqpCHePCWt+hHanDcgxSAFX7Fun/vWRylzgx5l8El2Uv NpZFMJNUt5h5dJNhO2b0xv+WmDD6CxSPAr9P/k8UtA==
X-Google-Smtp-Source: ABdhPJxLcLcFppE+KDSJUY1hrSQoi5Gc0Ebgcta4mKKLdN50UlMZejIlBdqE37xMdmdSrfzLniAgjPa9D7OJTDOFz2I=
X-Received: by 2002:a62:8c8c:0:b029:253:31e:55cb with SMTP id m134-20020a628c8c0000b0290253031e55cbmr30649044pfd.27.1619029557173; Wed, 21 Apr 2021 11:25:57 -0700 (PDT)
MIME-Version: 1.0
References: <F538FFD7-D172-4AEE-82DD-CF6F93936C3B@akamai.com> <D341C730-EBA1-4BF5-B200-0BE1A4B8A1D0@cisco.com> <413CBCFE-1FDF-458E-9F0E-E3D58F86E5D9@bluepopcorn.net> <A5B94C6E-419D-454E-92E8-FEEB5F8EDE17@cisco.com> <8A41ED29-2448-4633-AC45-33DE98A6BC81@akamai.com> <7B51BB81-1C9D-4B2F-AF83-1E528E620AE7@cisco.com> <CAFewVt4Pm6-T3XC65uEceuzpXjNubEYLWY9h1cmHdNBPcpOVXQ@mail.gmail.com> <42739D1C-004F-4DAD-8023-8E9731B46E05@cisco.com> <CAFewVt57M=o=2FOsCi4s_wZ-KQbZFZQiBCQZAEgtZB4HtFvtnw@mail.gmail.com> <CA66BC31-B56B-4E4C-A3D6-F5C36FD54B38@cisco.com>
In-Reply-To: <CA66BC31-B56B-4E4C-A3D6-F5C36FD54B38@cisco.com>
From: Brian Smith <brian@briansmith.org>
Date: Wed, 21 Apr 2021 11:25:45 -0700
Message-ID: <CAFewVt4XcBd0MWmtcM4kZzqQ3EQVM=t8-eqqpDMtfgNmV92u1Q@mail.gmail.com>
To: Eliot Lear <lear@cisco.com>
Cc: "Salz, Rich" <rsalz@akamai.com>, Jim Fenton <fenton@bluepopcorn.net>, "uta@ietf.org" <uta@ietf.org>, iotops@ietf.org
Content-Type: multipart/alternative; boundary="000000000000a2f1c805c07fb1c4"
Archived-At: <https://mailarchive.ietf.org/arch/msg/iotops/Efuad1mQnZwas7pL4KvUkkCsN_U>
Subject: Re: [Iotops] [Uta] How should we change draft-ietf-use-san?
X-BeenThere: iotops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IOT Operations <iotops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/iotops>, <mailto:iotops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/iotops/>
List-Post: <mailto:iotops@ietf.org>
List-Help: <mailto:iotops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/iotops>, <mailto:iotops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 21 Apr 2021 18:26:08 -0000

Eliot Lear <lear@cisco.com> wrote:

> If this is scoped to dnsNames then I’m fine with it going forward as is.
> Other names would be problematic.
>

Could you be more specific as to what other names would be problematic and
list them explicitly? Here are the choices in a GeneralName:

        otherName                       [0]     OtherName,
        rfc822Name                      [1]     IA5String,
        dNSName                         [2]     IA5String,
        x400Address                     [3]     ORAddress,
        directoryName                   [4]     Name,
        ediPartyName                    [5]     EDIPartyName,
        uniformResourceIdentifier       [6]     IA5String,
        iPAddress                       [7]     OCTET STRING,
        registeredID


Thanks,
Brian