[jose] JWS Unencoded Payload Option spec addressing shepherd comments

Mike Jones <Michael.Jones@microsoft.com> Wed, 11 November 2015 15:36 UTC

Return-Path: <Michael.Jones@microsoft.com>
X-Original-To: jose@ietfa.amsl.com
Delivered-To: jose@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8098E1B2A4A for <jose@ietfa.amsl.com>; Wed, 11 Nov 2015 07:36:41 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level:
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id h1EoftWt4ViF for <jose@ietfa.amsl.com>; Wed, 11 Nov 2015 07:36:37 -0800 (PST)
Received: from na01-by2-obe.outbound.protection.outlook.com (mail-by2on0120.outbound.protection.outlook.com [207.46.100.120]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 684941B2A47 for <jose@ietf.org>; Wed, 11 Nov 2015 07:36:36 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:To:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=NfV1XItXuBTTEKDTedXys82ySz94z16PH8Etf7iKFhY=; b=EJ+qFjLLNnITUVtKg+53QYecT6oM1wo09Nc0YYmWovFT1eYGo7+44DWQmhwKd3Cy4A+AOfEPOgctdmt5A1bkEWyHKn/bznv5UuQjbjlAOXC832iQiN5QeNpauCt/Hhmvajwr0mK4506sqwSwoUTvKDrYh3leko+C44OK6RVbLB0=
Received: from BY2PR03MB442.namprd03.prod.outlook.com (10.141.141.145) by BY2PR03MB444.namprd03.prod.outlook.com (10.141.141.154) with Microsoft SMTP Server (TLS) id 15.1.318.15; Wed, 11 Nov 2015 15:36:34 +0000
Received: from BY2PR03MB442.namprd03.prod.outlook.com ([10.141.141.145]) by BY2PR03MB442.namprd03.prod.outlook.com ([10.141.141.145]) with mapi id 15.01.0325.003; Wed, 11 Nov 2015 15:36:34 +0000
From: Mike Jones <Michael.Jones@microsoft.com>
To: "jose@ietf.org" <jose@ietf.org>
Thread-Topic: JWS Unencoded Payload Option spec addressing shepherd comments
Thread-Index: AdEclr1QsFA9ZH7bT/Ojmc9t14qi3Q==
Date: Wed, 11 Nov 2015 15:36:33 +0000
Message-ID: <BY2PR03MB4420DE5E90BA78FA74AB752F5130@BY2PR03MB442.namprd03.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Michael.Jones@microsoft.com;
x-originating-ip: [12.130.119.129]
x-microsoft-exchange-diagnostics: 1; BY2PR03MB444; 5:jvthk4hiGUVn8vneNG0lkO0C+N1NDlFWxo2kRZ7ClBMbCIlbNJI1ygUytAEgzJclC4iinKp27lEBtPuEeCnh+AK7hqfXIf8XvFmSYcW4CSZ5h5Je32VkAwq7WDwxcsaWlqyr5DCde8slvQ9RUbyd+g==; 24:IPjB3jG77ZWsQ4R0oGSXbbJW3HyMfinpy/RaoNOQxIBfem/K6kWpTyc1lsUyhQUhzKPnAYOXxAny+g6osYVKM/787OfIqwzgcxyoBJ/xN6E=; 20:or3th1d6pTiIwRdGAVheCrLP2qoPEo+ZYlM96V2rT3lkay4L0NOSQKqP2nprWmwQfAnKQPzL51aR09cWs5c3vA==
x-microsoft-antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:BY2PR03MB444;
x-microsoft-antispam-prvs: <BY2PR03MB444EF398CB887502140DA9BF5130@BY2PR03MB444.namprd03.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(189930954265078)(108003899814671);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(61425024)(601004)(2401047)(5005006)(8121501046)(520078)(3002001)(10201501046)(61426024)(61427024); SRVR:BY2PR03MB444; BCL:0; PCL:0; RULEID:; SRVR:BY2PR03MB444;
x-forefront-prvs: 0757EEBDCA
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(209900001)(199003)(189002)(99286002)(10400500002)(54356999)(122556002)(5005710100001)(10290500002)(10090500001)(106356001)(101416001)(110136002)(105586002)(2351001)(450100001)(107886002)(19300405004)(76576001)(189998001)(2501003)(5001960100002)(50986999)(81156007)(5003600100002)(77096005)(97736004)(19580395003)(92566002)(74316001)(11100500001)(102836002)(8990500004)(86362001)(66066001)(2900100001)(19609705001)(86612001)(87936001)(40100003)(5004730100002)(33656002)(19617315012)(5007970100001)(19625215002)(5002640100001)(15975445007)(229853001)(5008740100001)(16236675004)(6606295002); DIR:OUT; SFP:1102; SCL:1; SRVR:BY2PR03MB444; H:BY2PR03MB442.namprd03.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: microsoft.com does not designate permitted sender hosts)
spamdiagnosticoutput: 1:23
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_BY2PR03MB4420DE5E90BA78FA74AB752F5130BY2PR03MB442namprd_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 11 Nov 2015 15:36:33.8959 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BY2PR03MB444
Archived-At: <http://mailarchive.ietf.org/arch/msg/jose/RdLHUD-NGtLtEkmaztKPQvzM5XM>
Subject: [jose] JWS Unencoded Payload Option spec addressing shepherd comments
X-BeenThere: jose@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Javascript Object Signing and Encryption <jose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jose>, <mailto:jose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/jose/>
List-Post: <mailto:jose@ietf.org>
List-Help: <mailto:jose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jose>, <mailto:jose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 11 Nov 2015 15:36:41 -0000

Draft -04 of the JWS Unencoded Payload Option specification addresses the shepherd comments.  Thanks to Jim Schaad for his careful review.  The primary change was adding additional security considerations text, including describing when "crit" should be used.

The specification is available at:

*         https://tools.ietf.org/html/draft-ietf-jose-jws-signing-input-options-04

An HTML formatted version is also available at:

*         http://self-issued.info/docs/draft-ietf-jose-jws-signing-input-options-04.html

                                                                -- Mike

P.S.  This note was also published at http://self-issued.info/?p=1474 and as @selfissued<https://na01.safelinks.protection.outlook.com/?url=https%3a%2f%2ftwitter.com%2fselfissued&data=01%7c01%7cmichael.jones%40microsoft.com%7c3a69db7b8b6c4d47da0f08d2937a3d82%7c72f988bf86f141af91ab2d7cd011db47%7c1&sdata=ggurSMkRVW%2bR8Nv93Mnbsf16CmVGqfjB9lW8SV5gAKM%3d>.