Re: [jose] way forward for two remaining drafts

Prabath Siriwardena <prabath@wso2.com> Mon, 13 July 2015 15:51 UTC

Return-Path: <prabath@wso2.com>
X-Original-To: jose@ietfa.amsl.com
Delivered-To: jose@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B46131B2BED for <jose@ietfa.amsl.com>; Mon, 13 Jul 2015 08:51:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.378
X-Spam-Level:
X-Spam-Status: No, score=-1.378 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FM_FORGED_GMAIL=0.622, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rD1qWAea1WbE for <jose@ietfa.amsl.com>; Mon, 13 Jul 2015 08:51:09 -0700 (PDT)
Received: from mail-oi0-x22a.google.com (mail-oi0-x22a.google.com [IPv6:2607:f8b0:4003:c06::22a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 565351B2BD5 for <jose@ietf.org>; Mon, 13 Jul 2015 08:51:09 -0700 (PDT)
Received: by oiab3 with SMTP id b3so138370234oia.1 for <jose@ietf.org>; Mon, 13 Jul 2015 08:51:08 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=wso2.com; s=google; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=+GJx0D4KAxN26H0dpxuIUC8BHkkHku+H/m60mbYIeaI=; b=cQbeKQbcvfaKFa2a/7+BAyYaiVt1NK2U+Yb/93fd62/SBw0EZD1qomrjDBpePQXPO9 n4DWJz9cYuOgZiDcJWgNP6AmXumfSG5V0jjuJ5/QxaBavXiQRL/3admuh8TG4Gv0mvKp h2B6uLbw5we4Ej13ms8U20o8U72a/UWDbqsuw=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:cc:content-type; bh=+GJx0D4KAxN26H0dpxuIUC8BHkkHku+H/m60mbYIeaI=; b=U0MzTfUlJ1MNrlRy5B3B1JdJEvih6ZQHeOGCgfE/HQnagvg4XcnF8RmlNbZjAB4wht YAIowsBOg0wotBiHoxhv9wYA1YA5su8V5GiLmQv2EGgcJ6XX8Wk7X+ZE7+zhVWYmjsEr 9gXI64MRMekQWUaQNNMmbGE772yAVOyjvEiT5IsvfbvWT0od1sPmFgMP4JWuBHSXjv/H ehnHJOEXqeSZbF14KoB4OqNtoh+XJGrnZIOV3vWvae4+ZaIi4vb+rLdSPz7EDqZDimRF XFzQzPnU10m6IHzTk1AtDVqpM8N//pxr44nfPPo5TEiA0Slp7HCUWrLcZQC0vm3xf5h8 il5g==
X-Gm-Message-State: ALoCoQnztnr1Jzy0nEWUzezC7OdZINbsZJjNa2x+9f1tXcozSXHOmycJchz34xFajk1QcE+w+o+7
MIME-Version: 1.0
X-Received: by 10.60.141.42 with SMTP id rl10mr30627863oeb.25.1436802668783; Mon, 13 Jul 2015 08:51:08 -0700 (PDT)
Received: by 10.202.210.9 with HTTP; Mon, 13 Jul 2015 08:51:08 -0700 (PDT)
In-Reply-To: <CABzCy2A_yxx+WFSLJiw5ZBPfGaR5de5Lf0uaPFbaMGOnzWSnpg@mail.gmail.com>
References: <8FF9C9E8-7259-4818-ADC2-8D70E4FBB9E9@isoc.org> <BY2PR03MB4424F0C2B5D8839444DD44CF5900@BY2PR03MB442.namprd03.prod.outlook.com> <0B8C5F38-DE8A-474B-B8DC-8B53B824C5BD@gmail.com> <CABzCy2A_yxx+WFSLJiw5ZBPfGaR5de5Lf0uaPFbaMGOnzWSnpg@mail.gmail.com>
Date: Mon, 13 Jul 2015 08:51:08 -0700
Message-ID: <CAJV9qO9fNejfBOv4qgE+L+OJqSfb=BgCJv2pL3dK=omvReUrdQ@mail.gmail.com>
From: Prabath Siriwardena <prabath@wso2.com>
To: Nat Sakimura <sakimura@gmail.com>
Content-Type: multipart/alternative; boundary="047d7b33c69eaf7d4a051ac3b0bd"
Archived-At: <http://mailarchive.ietf.org/arch/msg/jose/mQ2cxDy6LJxzzzGv-F1a0FJWXh4>
Cc: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>, "jose@ietf.org" <jose@ietf.org>, Mike Jones <Michael.Jones@microsoft.com>, Karen O'Donoghue <odonoghue@isoc.org>
Subject: Re: [jose] way forward for two remaining drafts
X-BeenThere: jose@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Javascript Object Signing and Encryption <jose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jose>, <mailto:jose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/jose/>
List-Post: <mailto:jose@ietf.org>
List-Help: <mailto:jose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jose>, <mailto:jose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 13 Jul 2015 15:51:11 -0000

+1

Thanks & regards,
-Prabath

On Sun, Jul 12, 2015 at 10:32 AM, Nat Sakimura <sakimura@gmail.com> wrote:

> Sorry to chime in so late. I have been completely under water for sometime
> now.
>
> Like Phil, I do see that draft-jones-jose-jws-signing-input-options sort
> of thing can be very useful, though I may want to have slightly different
> way of encoding the things. Being able to do detached signature is quite
> attractive.
>
> Best,
>
> Nat
>
> 2015-07-10 2:37 GMT+09:00 Kathleen Moriarty <
> kathleen.moriarty.ietf@gmail.com>:
>
>> Hi,
>>
>> Sent from my iPhone
>>
>> On Jul 9, 2015, at 1:16 PM, Mike Jones <Michael.Jones@microsoft.com>
>> wrote:
>>
>>  About
>> https://tools.ietf.org/html/draft-jones-jose-jws-signing-input-options-00,
>> I’ll add that this addresses the requests make by Jim Schaad and Richard
>> Barnes in JOSE Issues #26 “Allow for signature payload to not be base64
>> encoded” and #23 http://trac.tools.ietf.org/wg/jose/trac/ticket/23 “Make
>> crypto independent of binary encoding (base64)”.
>>
>>
>>
>> About
>> https://tools.ietf.org/html/draft-jones-jose-key-managed-json-web-signature-01,
>> I’ll add that this addresses the request made by Jim Schaad in JOSE Issue
>> #2 http://trac.tools.ietf.org/wg/jose/trac/ticket/2 “No key management
>> for MAC”.
>>
>>
>>
>> Also, there’s a highly relevant discussion about key management for MACs
>> going on in the COSE working group.  See the thread “[Cose] Key
>> management for MACs (was Re: Review of draft-schaad-cose-msg-01)” –
>> especially
>> https://mailarchive.ietf.org/arch/msg/cose/aUehU6O7Ui8CXcGxy3TquZOxWH4
>> and
>> https://mailarchive.ietf.org/arch/msg/cose/ouOIdAOe2P-W8BjGLJ7BNvvRr10.
>>
>>
>>
>> One could take the view that our decision on the JOSE key management
>> draft should be informed by the related decision in COSE.  Specifically,
>> that if COSE decides to support key management for MACs, the same reasoning
>> likely should apply to our decision on whether to define a standard
>> mechanism for supporting key management for MACs in JOSE.
>>
>>
>>
>> Key management is explicitly out-of-scope for COSE as stated in the
>> charter.  The discussion referenced had this point at the close of that
>> discussion.
>>
>> I'm not seeing much support for these drafts moving forward in JOSE.  I'm
>> also not seeing enough to justify standards track and AD sponsored.  If you
>> think these are important to have move forward in the WG or as standards
>> track, please say so soon.  They can still go forward through the
>> Independent submission process through the ISE.
>>
>> Thank you,
>> Kathleen
>>
>>                                                             -- Mike
>>
>>
>>
>> *From:* jose [mailto:jose-bounces@ietf.org <jose-bounces@ietf.org>] *On
>> Behalf Of *Karen O'Donoghue
>> *Sent:* Wednesday, July 01, 2015 8:38 AM
>> *To:* jose@ietf.org
>> *Subject:* [jose] way forward for two remaining drafts
>>
>>
>>
>> Folks,
>>
>>
>>
>> With the thumbprint draft progressing through the process, we have two
>> remaining individual drafts to decide what to do with. The options include:
>> 1) adopt as working group drafts; 2) ask for AD sponsorship of individual
>> drafts; or 3) recommend that they not be published. Please express your
>> thoughts on what we should do with these drafts. Jim, Kathleen, and I would
>> like to make a decision in the Prague timeframe, so please respond by 15
>> July.
>>
>>
>>
>>
>> https://tools.ietf.org/id/draft-jones-jose-jws-signing-input-options-00.txt
>>
>>
>>
>>
>> https://tools.ietf.org/id/draft-jones-jose-key-managed-json-web-signature-01.txt
>>
>>
>>
>> Thanks,
>>
>> Karen
>>
>> _______________________________________________
>> jose mailing list
>> jose@ietf.org
>> https://www.ietf.org/mailman/listinfo/jose
>>
>>
>> _______________________________________________
>> jose mailing list
>> jose@ietf.org
>> https://www.ietf.org/mailman/listinfo/jose
>>
>>
>
>
> --
> Nat Sakimura (=nat)
> Chairman, OpenID Foundation
> http://nat.sakimura.org/
> @_nat_en
>
> _______________________________________________
> jose mailing list
> jose@ietf.org
> https://www.ietf.org/mailman/listinfo/jose
>
>


-- 
Thanks & Regards,
Prabath

Twitter : @prabath
LinkedIn : http://www.linkedin.com/in/prabathsiriwardena

Mobile : +1 650 625 7950

http://blog.facilelogin.com
http://blog.api-security.org