Re: [IPsec] Éric Vyncke's No Objection on draft-ietf-ipsecme-ikev2-auth-announce-09: (with COMMENT)

"Eric Vyncke (evyncke)" <evyncke@cisco.com> Mon, 15 April 2024 09:18 UTC

Return-Path: <evyncke@cisco.com>
X-Original-To: ipsec@ietfa.amsl.com
Delivered-To: ipsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4C4A2C14F739; Mon, 15 Apr 2024 02:18:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -16.633
X-Spam-Level:
X-Spam-Status: No, score=-16.633 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-2.049, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, T_SPF_HELO_PERMERROR=0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rWSz3lIQLU5s; Mon, 15 Apr 2024 02:18:20 -0700 (PDT)
Received: from alln-iport-3.cisco.com (alln-iport-3.cisco.com [173.37.142.90]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-256) server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 43945C14F71F; Mon, 15 Apr 2024 02:18:20 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.com; i=@cisco.com; l=12745; q=dns/txt; s=iport; t=1713172700; x=1714382300; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=vmXX0Nodvm7yfOX8bMlR+mPRmhtYijcoIqsrb77YzdM=; b=Bz5W2yx9qD5i6sx4u5f0RW71oFJfI/5R2wKpkFuSV8lfGJsFDfL//xmn riwY13aOKbFi2levcbStlr1RGb/HaPsI+dSkfaMR+/57OblyuOy/D4k7h v152qY9xcu4/u7H8ppE5iB4ykptVkYaRKUAlzYnGKCMCl6/bOxLAYjqhx 4=;
X-CSE-ConnectionGUID: qyHzTCWaRmCmnOwES36R3w==
X-CSE-MsgGUID: GdrC+4t8RgaoJdic39sEqg==
X-IPAS-Result: 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
IronPort-PHdr: A9a23:CQG2exxwd9kP4DDXCzMWngc9DxPP8539OgoTr50/hK0LLuKo/o/pO wrU4vA+xFPKXICO8/tfkKKWqKHvX2Uc/IyM+G4Pap1CVhIJyI0WkgUsDdTDCBjTJ//xZCt8F 8NHBxd+53/uCUFOA47lYkHK5Hi77DocABL6YAdrN+L+GYP6hMWs3Of08JrWME1EgTOnauZqJ Q6t5UXJ49Mbg4ZpNu49ywCcpHxOdqUeyTZjJEmYmFD34cLYwQ==
IronPort-Data: A9a23:el8IoaBFLug9YRVW/zviw5YqxClBgxIJ4kV8jS/XYbTApDp21WdVm zMfW2mPOq6LNGbwLYt+PN+yp0lVvMDcn9ViOVdlrnsFo1CmBibm6XV1Cm+qYkt+++WaFBoPA /02M4SGcYZtCCeE/39BC5C5xVFkz6aEW7HgP+DNPyF1VGdMRTwo4f5Zs7ZRbrVA357hXGthh fuo+5eDYAP8h2YoWo4pw/vrRC1H7ayaVAww5jTSVdgT1HfCmn8cCo4oJK3ZBxPQXolOE+emc P3Ixbe/83mx109F5gSNy+uTnuUiG9Y+DCDW4pZkc/HKbitq+kTe5p0G2M80Mi+7vdkmc+dZk 72hvbToIesg0zaldO41C3G0GAkmVUFKFSOuzXWX6aSuI0P6n3TE2uROHn0dAoQi/81yB0ZR2 MdDdgpWcUXW7w626OrTpuhEj8AnKozgO5kS/yg4izrYFv0hB5vERs0m5/cBg2x23Z4IRK2YP pFDAdZsREyojxlnN0kGDpk9kc+jh2L0dHtTr1f9Sa8fuTWKlFQgiuexWDbTUvOGX+4WwlrIn G3P+Eb1AxpBZcey0DXQpxpAgceKx0sXQrk6FaWj+/VCgVCPyCoUEhJ+fVqjuvSyj0P7UNJWK lYP0isjsaZ081akJvHxRRS2vDuFswISHttICOAx7QzIy6nZ/VzcD3UYTntIbtohqck9SBQr2 0OH2dTzClRHsbCORlqc+6ua6zSoNkAowXQqbCsAS04O5MPu5dhryBnOVd1kVqWyi7UZBA3N/ txDlwBn7507hs8Q3KL99lfC6w9AbLCQJuLpzm07hl6Y0z4=
IronPort-HdrOrdr: A9a23:R9yC3aAfOOMcZ8LlHejlsseALOsnbusQ8zAXPh9KOH9om52j9/ xGws576fatskduZJhBo7y90KnpewK7yXcH2/hhAV7CZnirhILGFvAZ0WKP+UyFJ8S6zJ8j6U 4CSdkwNDSTNykGsS+S2mDReLhQoqjjzEnrv5aj854Hd3ASV0gU1XYDNu/tKDwPeOApP+tfKL OsouB8i36Lf3MRYs6nBn8DcdTiirTw/q7OUFotPTJizBOBow+JxdfBfiRw2C1wbxp/hZMZtU TVmQ3w4auu99uhzAXH6mPV55NK3PP819pqHqW3+4koAwSprjztSJVqWrWEsjxwivqo8kwWnN 7FpAplF9hv6knWYnq+rXLWqkndOXcVmjzfIG2j8D7eSP/CNXYH4g169MVkmy7imggdVRdHoe R2NiyixsNq5Fj77VTADpDzJmJXfwyP0DQfeSp5tQ0FbWPYA4Uh9bA37QdbFowNEzn9751iGO 5yDNvE7PITal+CaWvF11Mfi+BEc05DVytueHJy8vC9wnxThjR03kEYzMsQkjMJ8488UYBN46 DBPr5znL9DQ8cKZeYlbd1xDPefGyjIW1bBIWiSKVPoGOUOPG/MsYf+5PEw6PuxcJIFwZMukN DKUU9et2Q1Z0XyYPf+lqFj41TIWiGwTD7twsZR69xwvaD9XqPiNWmZRFUng6Kb0oMi6w3gKo GO0b5tcovexDHVaPR0NiXFKuxvFUU=
X-Talos-CUID: 9a23:0G9SuGMDcCvdrO5DQThH5nI/Jckfd1bYylDPDnTjV1wyV+jA
X-Talos-MUID: 9a23:JzaFAgY2TrWjqeBTmDP2r3I+KJdS7K2pKkwMms5XoOSdOnkl
X-IronPort-Anti-Spam-Filtered: true
Received: from alln-core-10.cisco.com ([173.36.13.132]) by alln-iport-3.cisco.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 15 Apr 2024 09:18:19 +0000
Received: from alln-opgw-4.cisco.com (alln-opgw-4.cisco.com [173.37.147.252]) by alln-core-10.cisco.com (8.15.2/8.15.2) with ESMTPS id 43F9IJFC031678 (version=TLSv1.2 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Mon, 15 Apr 2024 09:18:19 GMT
X-CSE-ConnectionGUID: 3cohyfSfSVqM++2qqrILOA==
X-CSE-MsgGUID: vLHPaPG3QPKnF4JJi+S0RA==
Authentication-Results: alln-opgw-4.cisco.com; dkim=pass (signature verified) header.i=@cisco.com; spf=Pass smtp.mailfrom=evyncke@cisco.com; dmarc=pass (p=reject dis=none) d=cisco.com
X-IronPort-AV: E=Sophos;i="6.07,202,1708387200"; d="scan'208,217";a="27854854"
Received: from mail-bn8nam12lp2169.outbound.protection.outlook.com (HELO NAM12-BN8-obe.outbound.protection.outlook.com) ([104.47.55.169]) by alln-opgw-4.cisco.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 15 Apr 2024 09:18:18 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=eqd9yfhGPrc41oWNfYgU3A0GQUi595Bd89v2y0Y3Ya6tF/CoalpqrIN7uUvN8Qimtlk/UGzpixHzn1Xmc+gFSWMbUWMbEDPI5DB5IvNot+RChEid9V/jl3nlkCtsxYXCn4Tni6SpPYy7uTT/5viHrRACBnK24nVY994GqytYEpt0Lk4JcKQpdvRxn3m3rsljrvTKKvkN8FG0X8EdamlThNnKTeU6quy3vM85xjxp3ltxUBaQi1SafB+gc7C6I9EjikkamQXa/uKrusjlxKGR7ODdr48VnRBV0YGqPb9p8iNYiLKQIX1MesCYR9618ogga1kqcPIsJgI89hlWvGUahw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=vmXX0Nodvm7yfOX8bMlR+mPRmhtYijcoIqsrb77YzdM=; b=IUhUJI6sdw2cC7JbdzANcEAz1xGQ9MpTK3w4iRod1u7k4PCKMKp1Yd2s0fdyBc9QTzZ8ZdB3lZ7IQ1lcnxqJkYklaWj5otQx+Q4PaCzlFSTA++OPPecrMDbvUSCnp8JYvWDRVZwglxN+8mKK7ELGWXoHNzzytCJLpherap+fK6cz4XYzVoVlu18lSMvUVpf1TI//OjVyRWnz9f0gzRJLNpKWTaUtQYWFIXbcr/a9C2y6ScOeAYFa7r8ZuUftfKd2zCMxusorBlYOqcG9KB93gipvyTu2lFmUzBK6yfgeZMnfqJ1abK4uyfJG+E2bypIg+fdPTVRidqKA0YHZM61oUw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
Received: from PH0PR11MB4966.namprd11.prod.outlook.com (2603:10b6:510:42::21) by SA0PR11MB4654.namprd11.prod.outlook.com (2603:10b6:806:98::11) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7472.31; Mon, 15 Apr 2024 09:18:16 +0000
Received: from PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::626d:78db:4371:447a]) by PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::626d:78db:4371:447a%6]) with mapi id 15.20.7472.025; Mon, 15 Apr 2024 09:18:16 +0000
From: "Eric Vyncke (evyncke)" <evyncke@cisco.com>
To: Valery Smyslov <svan@elvis.ru>, 'The IESG' <iesg@ietf.org>
CC: "draft-ietf-ipsecme-ikev2-auth-announce@ietf.org" <draft-ietf-ipsecme-ikev2-auth-announce@ietf.org>, "ipsecme-chairs@ietf.org" <ipsecme-chairs@ietf.org>, "ipsec@ietf.org" <ipsec@ietf.org>, "kivinen@iki.fi" <kivinen@iki.fi>
Thread-Topic: Éric Vyncke's No Objection on draft-ietf-ipsecme-ikev2-auth-announce-09: (with COMMENT)
Thread-Index: AQHai/aqaVXOxg4pAEOKNwUvFfQfrrFjDveAgAAIG+mAASpLAIAAGVbYgASekACAABprhQ==
Date: Mon, 15 Apr 2024 09:18:16 +0000
Message-ID: <PH0PR11MB496606231A91988E5C65D7E7A9092@PH0PR11MB4966.namprd11.prod.outlook.com>
References: <171282942898.60208.16082104712999966299@ietfa.amsl.com> <039901da8c13$72cb6310$58622930$@elvis.ru> <PH0PR11MB49665734085725294196F6BAA9052@PH0PR11MB4966.namprd11.prod.outlook.com> <043701da8cac$a5ec20b0$f1c46210$@elvis.ru> <PH0PR11MB49663F83A9F2D4C0E381C7B0A9042@PH0PR11MB4966.namprd11.prod.outlook.com> <051201da8f08$9876be00$c9643a00$@elvis.ru>
In-Reply-To: <051201da8f08$9876be00$c9643a00$@elvis.ru>
Accept-Language: fr-BE, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: PH0PR11MB4966:EE_|SA0PR11MB4654:EE_
x-ms-office365-filtering-correlation-id: 8a889379-aa8e-48da-69fe-08dc5d2cfc03
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PH0PR11MB4966.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(1800799015)(376005)(366007)(38070700009); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_PH0PR11MB496606231A91988E5C65D7E7A9092PH0PR11MB4966namp_"
MIME-Version: 1.0
X-OriginatorOrg: cisco.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PH0PR11MB4966.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 8a889379-aa8e-48da-69fe-08dc5d2cfc03
X-MS-Exchange-CrossTenant-originalarrivaltime: 15 Apr 2024 09:18:16.7457 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: q2A6pSfpfuDliCHjO4l+3jt3xvVOTTMqktPs06mM2cwv6Ea/LqwYGwVpC6a+oSLVQsIXILOgRhw+Aflbzkhm4w==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SA0PR11MB4654
X-Outbound-SMTP-Client: 173.37.147.252, alln-opgw-4.cisco.com
X-Outbound-Node: alln-core-10.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/olaEE0_11RhXSxeXqYEp24C7pXA>
Subject: Re: [IPsec] Éric Vyncke's No Objection on draft-ietf-ipsecme-ikev2-auth-announce-09: (with COMMENT)
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec/>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 15 Apr 2024 09:18:24 -0000

Your latest addition is good for me

Thank you

-éric

From: Valery Smyslov <svan@elvis.ru>
Date: Monday, 15 April 2024 at 09:43
To: Eric Vyncke (evyncke) <evyncke@cisco.com>, 'The IESG' <iesg@ietf.org>
Cc: draft-ietf-ipsecme-ikev2-auth-announce@ietf.org <draft-ietf-ipsecme-ikev2-auth-announce@ietf.org>, ipsecme-chairs@ietf.org <ipsecme-chairs@ietf.org>, ipsec@ietf.org <ipsec@ietf.org>, kivinen@iki.fi <kivinen@iki.fi>
Subject: RE: Éric Vyncke's No Objection on draft-ietf-ipsecme-ikev2-auth-announce-09: (with COMMENT)
Hi Éric,

please see inline (I removed parts of the message where we are in agreement).

Thank you, Valery, for your 2nd reply and for allowing me to reply w/o on-line access to the I-D when I replied.

One last comment below as EVY2>

All comments were non-blocking anyway :)

-éric

[…]

> ## Section 3.1
>
> `Regardless of whether the notification is received,` may be I am mis-reading
> this, but why would the responder send the notification if the initiator does
> not care anyway ?

The responder doesn't know if the initiator cares or not.
There is no negotiation of this feature, each party just makes its mind
whether to send and whether to process this notification (if it is ever supported).
EVY> sure it will work like described in the I-D, but I find it really weird that the initiator does not send its own list.
         In fact it does, but it sends this after the responder, in the following exchange. So, the responder sends its list first.
         This is to have the announcements and the list of trust anchors (in the CERTREQ payload) co-located in the same message.

EVY2> then this may be useful to write the above justification in the document itself.
       I’ve added the following text in the Section 3:
To simplify
  the receiver's task of linking the announced authentication methods
  with the trust anchors, the protocol ensures that the
  SUPPORTED_AUTH_METHODS notification is always co-located with the
  CERTREQ payload in the same message.
       Does it help?
       Regards,
       Valery.

[…]