Re: [jose] #12: x5c incorrect in JWE

"jose issue tracker" <trac+jose@trac.tools.ietf.org> Sat, 30 March 2013 21:25 UTC

Return-Path: <trac+jose@trac.tools.ietf.org>
X-Original-To: jose@ietfa.amsl.com
Delivered-To: jose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4EA1A21F84E3 for <jose@ietfa.amsl.com>; Sat, 30 Mar 2013 14:25:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level:
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id jMGxTk4xCcpm for <jose@ietfa.amsl.com>; Sat, 30 Mar 2013 14:25:56 -0700 (PDT)
Received: from grenache.tools.ietf.org (grenache.tools.ietf.org [IPv6:2a01:3f0:1:2::30]) by ietfa.amsl.com (Postfix) with ESMTP id AD02521F84B8 for <jose@ietf.org>; Sat, 30 Mar 2013 14:25:56 -0700 (PDT)
Received: from localhost ([127.0.0.1]:44522 helo=grenache.tools.ietf.org ident=www-data) by grenache.tools.ietf.org with esmtp (Exim 4.80) (envelope-from <trac+jose@trac.tools.ietf.org>) id 1UM3Ha-0004FS-Ay; Sat, 30 Mar 2013 22:25:50 +0100
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: jose issue tracker <trac+jose@trac.tools.ietf.org>
X-Trac-Version: 0.12.3
Precedence: bulk
Auto-Submitted: auto-generated
X-Mailer: Trac 0.12.3, by Edgewall Software
To: draft-ietf-jose-json-web-encryption@tools.ietf.org, michael.jones@microsoft.com, bcampbell@pingidentity.com
X-Trac-Project: jose
Date: Sat, 30 Mar 2013 21:25:50 -0000
X-URL: http://tools.ietf.org/jose/
X-Trac-Ticket-URL: https://tools.ietf.org/wg/jose/trac/ticket/12#comment:3
Message-ID: <080.fec3c931ff7caa6172df3c6f437eb638@trac.tools.ietf.org>
References: <065.7762ca21750ef2a07382e66a81acadef@trac.tools.ietf.org>
X-Trac-Ticket-ID: 12
In-Reply-To: <065.7762ca21750ef2a07382e66a81acadef@trac.tools.ietf.org>
X-SA-Exim-Connect-IP: 127.0.0.1
X-SA-Exim-Rcpt-To: draft-ietf-jose-json-web-encryption@tools.ietf.org, michael.jones@microsoft.com, bcampbell@pingidentity.com, jose@ietf.org
X-SA-Exim-Mail-From: trac+jose@trac.tools.ietf.org
X-SA-Exim-Scanned: No (on grenache.tools.ietf.org); SAEximRunCond expanded to false
Resent-To: ekr@rtfm.com, jhildebr@cisco.com, mbj@microsoft.com
Resent-Message-Id: <20130330212556.AD02521F84B8@ietfa.amsl.com>
Resent-Date: Sat, 30 Mar 2013 14:25:56 -0700
Resent-From: trac+jose@trac.tools.ietf.org
Cc: jose@ietf.org
Subject: Re: [jose] #12: x5c incorrect in JWE
X-BeenThere: jose@ietf.org
X-Mailman-Version: 2.1.12
List-Id: Javascript Object Signing and Encryption <jose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jose>, <mailto:jose-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/jose>
List-Post: <mailto:jose@ietf.org>
List-Help: <mailto:jose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jose>, <mailto:jose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 30 Mar 2013 21:25:57 -0000

#12: x5c incorrect in JWE


Comment (by michael.jones@microsoft.com):

 For generality, I'll note that if people believe that "x5c" should be
 removed from JWE, then the same logic probably suggests that "x5u", "jku"
 should be removed, as all are ways of including or referencing public key
 values corresponding to the private key used to encrypt the content.  And
 by that logic, if we don't need a way to reference or include public key
 values for JWEs, then the "x5t" and possibly "kid" parameters would then
 also be of dubious value.  At least by that reasoning, the inclusion of
 all the key reference parameters would likely stand or fall together.

-- 
-------------------------------------+-------------------------------------
 Reporter:                           |       Owner:  draft-ietf-jose-json-
  bcampbell@pingidentity.com         |  web-encryption@tools.ietf.org
     Type:  defect                   |      Status:  new
 Priority:  minor                    |   Milestone:
Component:  json-web-encryption      |     Version:
 Severity:  Submitted WG Document    |  Resolution:
 Keywords:                           |
-------------------------------------+-------------------------------------

Ticket URL: <https://tools.ietf.org/wg/jose/trac/ticket/12#comment:3>
jose <http://tools.ietf.org/jose/>