Re: [IPsec] Shepherd review of the draft-ietf-ipsecme-add-ike

mohamed.boucadair@orange.com Tue, 31 January 2023 14:45 UTC

Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: ipsec@ietfa.amsl.com
Delivered-To: ipsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 044E5C1522DB; Tue, 31 Jan 2023 06:45:01 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.096
X-Spam-Level:
X-Spam-Status: No, score=-7.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EvICBduD60Qa; Tue, 31 Jan 2023 06:44:57 -0800 (PST)
Received: from relais-inet.orange.com (relais-inet.orange.com [80.12.66.39]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D0D9AC1522D7; Tue, 31 Jan 2023 06:44:56 -0800 (PST)
Received: from opfedar01.francetelecom.fr (unknown [xx.xx.xx.2]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by opfedar26.francetelecom.fr (ESMTP service) with ESMTPS id 4P5nrl04pVzFq6J; Tue, 31 Jan 2023 15:44:55 +0100 (CET)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; s=ORANGE001; t=1675176295; bh=daRYqWnuF8JXM0B4Iv1H5e4YB/yjBHD/81xb3amX3LM=; h=From:To:Subject:Date:Message-ID:Content-Type: Content-Transfer-Encoding:MIME-Version; b=FawGevFUQOkrQ2veGZYxooTQWMWy913g1keLc4BM9vIlH9lVKBShtp4R5s4d+zLi8 NM4wf/vT7kwNc4p+CZS6iq6720a/992th3ZS0hqU+UFf65Vu3FUXu4WBCebVCUyAIr 7ol7aWx9L+UjOiIsPwFfKRem1sVmAX3/CMYUnGTMtgZjpkQ3t9JwMmdr6WadCKzzhI zs3FqCUzetsQbQWqiH9wUlTM8LaWWnlb4vuxbM/8tENFeAxocQxo7/UlU4SkKGnQdE xxKKvEFT+2JW5NhUEnOVWQgNzQefU3AHmIpxr+WZJeQpFJX0vVQFmp2eViga6+haf/ QbGEbXoxrUxiw==
From: mohamed.boucadair@orange.com
To: Tero Kivinen <kivinen@iki.fi>
CC: Valery Smyslov <smyslov.ietf@gmail.com>, "draft-ietf-ipsecme-add-ike@ietf.org" <draft-ietf-ipsecme-add-ike@ietf.org>, "ipsec@ietf.org" <ipsec@ietf.org>
Thread-Topic: [IPsec] Shepherd review of the draft-ietf-ipsecme-add-ike
Thread-Index: AQHZNYDfnD7seGX+rUGtOJBEEJw5la64mbAA
Content-Class:
Date: Tue, 31 Jan 2023 14:44:54 +0000
Message-ID: <32529_1675176294_63D92966_32529_34_1_48399b36044d4e8aa10c28981a3b7eaa@orange.com>
References: <25560.18262.145478.996578@fireball.acr.fi> <013a01d9354c$c1fe37b0$45faa710$@gmail.com> <31961_1675155778_63D8D942_31961_164_1_567425c5d78042df9598eeadda785f7c@orange.com> <25561.7242.527268.796400@fireball.acr.fi> <18000_1675174331_63D921BB_18000_434_1_795d7bff776e4ff7a6812da3dd6d9f6c@orange.com> <25561.9865.474004.698166@fireball.acr.fi>
In-Reply-To: <25561.9865.474004.698166@fireball.acr.fi>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2023-01-31T14:43:55Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=22ac55a8-d134-4f89-906d-5ec7443558e2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
x-originating-ip: [10.115.27.51]
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/gDk13U0ZA82OuKZVHATrE1m9PMc>
Subject: Re: [IPsec] Shepherd review of the draft-ietf-ipsecme-add-ike
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec/>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 31 Jan 2023 14:45:01 -0000

Re-,

Please see inline. 

Cheers,
Med

> -----Message d'origine-----
> De : Tero Kivinen <kivinen@iki.fi>
> Envoyé : mardi 31 janvier 2023 15:33
> À : BOUCADAIR Mohamed INNOV/NET <mohamed.boucadair@orange.com>
> Cc : Valery Smyslov <smyslov.ietf@gmail.com>; draft-ietf-ipsecme-
> add-ike@ietf.org; ipsec@ietf.org
> Objet : RE: [IPsec] Shepherd review of the draft-ietf-ipsecme-add-
> ike
> 
> mohamed.boucadair@orange.com writes:
> > [Med] Yes, the initiator may include a suggested ALPN (protocol)
> for
> > example to specifically indicate it is looking for DoT (or
> another
> > protocol). The initiator may omit the ADN, but only include
> service
> > parameters (typically, ALPN) to indicate a preferred transport
> > protocol.
> 
> I was assuming there is some way of indicating that, but I could
> not quickly find any examples of that, that is why I wanted to
> have more examples in this draft, so I could see what values the
> alpn can have
> :-)
> 

[Med] I hope this is now better with the new appendix in -07 ...unless you want to see more examples :-)


_________________________________________________________________________________________________________________________

Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.