Re: [jose] SECDIR review of draft-ietf-jose-json-web-key-31

Stephen Kent <kent@bbn.com> Fri, 26 September 2014 15:40 UTC

Return-Path: <kent@bbn.com>
X-Original-To: jose@ietfa.amsl.com
Delivered-To: jose@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id ACD721A7023 for <jose@ietfa.amsl.com>; Fri, 26 Sep 2014 08:40:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.986
X-Spam-Level:
X-Spam-Status: No, score=-4.986 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RP_MATCHES_RCVD=-0.786, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hIhtWAEK0ouY for <jose@ietfa.amsl.com>; Fri, 26 Sep 2014 08:40:44 -0700 (PDT)
Received: from smtp.bbn.com (smtp.bbn.com [128.33.0.80]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C5A531A701A for <jose@ietf.org>; Fri, 26 Sep 2014 08:40:43 -0700 (PDT)
Received: from dommiel.bbn.com ([192.1.122.15]:50650 helo=comsec.home) by smtp.bbn.com with esmtp (Exim 4.77 (FreeBSD)) (envelope-from <kent@bbn.com>) id 1XXXdK-0008AG-TM; Fri, 26 Sep 2014 11:40:35 -0400
Message-ID: <542588EC.209@bbn.com>
Date: Fri, 26 Sep 2014 11:40:28 -0400
From: Stephen Kent <kent@bbn.com>
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:24.0) Gecko/20100101 Thunderbird/24.6.0
MIME-Version: 1.0
To: Mike Jones <Michael.Jones@microsoft.com>, Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
References: <4E1F6AAD24975D4BA5B16804296739439AEB89F6@TK5EX14MBXC292.redmond.corp.microsoft.com> <5411BC12.9040808@bbn.com> <4E1F6AAD24975D4BA5B16804296739439BA6F3C8@TK5EX14MBXC286.redmond.corp.microsoft.com> <CAHbuEH4UAmC9eJeW+DRF5hYqiJBy1irkddNdrtKDLu6gA4JVVQ@mail.gmail.com> <4E1F6AAD24975D4BA5B16804296739439BA78909@TK5EX14MBXC286.redmond.corp.microsoft.com> <CAHbuEH7M5JKyaGJQ0qtaA-2Jj_v+T4VcsPTqVY8=EonoWAJGZA@mail.gmail.com> <4E1F6AAD24975D4BA5B16804296739439BA78BAE@TK5EX14MBXC286.redmond.corp.microsoft.com> <4E1F6AAD24975D4BA5B16804296739439BA7DD5D@TK5EX14MBXC286.redmond.corp.microsoft.com>
In-Reply-To: <4E1F6AAD24975D4BA5B16804296739439BA7DD5D@TK5EX14MBXC286.redmond.corp.microsoft.com>
Content-Type: multipart/alternative; boundary="------------010501060205090506090101"
Archived-At: http://mailarchive.ietf.org/arch/msg/jose/N1Rbzf3HRBZpWZn3W8oDR8MU-O0
Cc: "jose-chairs@tools.ietf.org" <jose-chairs@tools.ietf.org>, "Moriarty, Kathleen" <kathleen.moriarty@emc.com>, "jose@ietf.org" <jose@ietf.org>
Subject: Re: [jose] SECDIR review of draft-ietf-jose-json-web-key-31
X-BeenThere: jose@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Javascript Object Signing and Encryption <jose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jose>, <mailto:jose-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/jose/>
List-Post: <mailto:jose@ietf.org>
List-Help: <mailto:jose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jose>, <mailto:jose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 26 Sep 2014 15:40:46 -0000

Mike,
>
> OK -- these are taken care of now.  I posted the rfcdiff links in the 
> announcement to make it easy for people to see what changed.
>
> The one comment I didn't address was about the RFC 1421 reference.  I 
> haven't yet found the best reference for the document that defines the 
> PEM certificate format (which contain the strings "-----BEGIN 
> CERTIFICATE-----" and "-----END CERTIFICATE-----").  It turns out that 
> 1421 doesn't do it.  Do any of you know the right reference for this?
>
You're right, this convention for files containing certs is not an IETF 
standard, AFAIK.
It is a convention developed by folks writing code for OpenSSL.

Steve