Re: [jose] Last Call: <draft-ietf-jose-use-cases-05.txt> (Use Cases and Requirements for JSON Object Signing and Encryption (JOSE)) to Informational RFC

Benjamin Kaduk <kaduk@MIT.EDU> Fri, 22 November 2013 19:36 UTC

Return-Path: <kaduk@mit.edu>
X-Original-To: jose@ietfa.amsl.com
Delivered-To: jose@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9E1AB1AE0A0; Fri, 22 Nov 2013 11:36:23 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.126
X-Spam-Level:
X-Spam-Status: No, score=-3.126 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_LOW=-0.7, RP_MATCHES_RCVD=-0.525, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gK5h1v2EJYyS; Fri, 22 Nov 2013 11:36:22 -0800 (PST)
Received: from dmz-mailsec-scanner-7.mit.edu (dmz-mailsec-scanner-7.mit.edu [18.7.68.36]) by ietfa.amsl.com (Postfix) with ESMTP id 0D7C91AE042; Fri, 22 Nov 2013 11:36:21 -0800 (PST)
X-AuditID: 12074424-b7fa56d000000be4-04-528fb22da7a7
Received: from mailhub-auth-1.mit.edu ( [18.9.21.35]) (using TLS with cipher AES256-SHA (256/256 bits)) (Client did not present a certificate) by dmz-mailsec-scanner-7.mit.edu (Symantec Messaging Gateway) with SMTP id 55.88.03044.D22BF825; Fri, 22 Nov 2013 14:36:13 -0500 (EST)
Received: from outgoing.mit.edu (outgoing-auth-1.mit.edu [18.9.28.11]) by mailhub-auth-1.mit.edu (8.13.8/8.9.2) with ESMTP id rAMJaDEi004052; Fri, 22 Nov 2013 14:36:13 -0500
Received: from multics.mit.edu (system-low-sipb.mit.edu [18.187.2.37]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.13.8/8.12.4) with ESMTP id rAMJaBP6031907 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Fri, 22 Nov 2013 14:36:12 -0500
Received: (from kaduk@localhost) by multics.mit.edu (8.12.9.20060308) id rAMJaB3e008050; Fri, 22 Nov 2013 14:36:11 -0500 (EST)
Date: Fri, 22 Nov 2013 14:36:11 -0500
From: Benjamin Kaduk <kaduk@MIT.EDU>
To: ietf@ietf.org
In-Reply-To: <20131122191108.16593.58598.idtracker@ietfa.amsl.com>
Message-ID: <alpine.GSO.1.10.1311221432430.23560@multics.mit.edu>
References: <20131122191108.16593.58598.idtracker@ietfa.amsl.com>
User-Agent: Alpine 1.10 (GSO 962 2008-03-14)
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset="US-ASCII"; format="flowed"
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFnrGIsWRmVeSWpSXmKPExsUixCmqrKu7qT/IYPNlU4tnG+ezWKxZ083k wOSxZMlPpgDGKC6blNSczLLUIn27BK6MCydPMxVsZKu4sU2sgXEeaxcjJ4eEgIlE++fJULaY xIV769lAbCGB2UwSd69IdDFyAdkbGSX6zl9mhnAOMUms+bSLBcJpYJRY9aMTrJ1FQFuiZ/Nk dhCbTUBFYuabjUCjODhEBAQlDj62BAkzA5mHps5kA+kVFpjHKHH912qwdZwCThJf929kAbF5 BRwlTm6+yQjSKwRkr14GViIqoCOxev8UqBJBiZMzn7BAzLSUOPfnOtsERsFZSFKzkKQWMDKt YpRNya3SzU3MzClOTdYtTk7My0st0jXXy80s0UtNKd3ECApOdheVHYzNh5QOMQpwMCrx8O6w 7AsSYk0sK67MPcQoycGkJMpbub4/SIgvKT+lMiOxOCO+qDQntfgQowQHs5IIr+UCoBxvSmJl VWpRPkxKmoNFSZz3Fod9kJBAemJJanZqakFqEUxWhoNDSYL39wagRsGi1PTUirTMnBKENBMH J8hwHqDhh0BqeIsLEnOLM9Mh8qcYFaXEeU03AiUEQBIZpXlwvbDk8YpRHOgVYV49kCoeYOKB 634FNJgJaDC7ZDfI4JJEhJRUA2PAtzWOcgpJ9eczQs9u1znF+Sra8OajjBUuX2QlbCoScgoO Sk9+lVr9/9ilEzfqTl95caRGq5An6wPX+Vlx6YoJcbs3lW2fM71weempa30cV+5FN7ueW+MY FKXxv1Xb053v7us1UzV8/kyXafJU7s/3Ofii/XO3mFBs4bcr//kEXvLIHuRfyKvEUpyRaKjF XFScCAA1msqO+QIAAA==
X-Mailman-Approved-At: Fri, 22 Nov 2013 12:45:53 -0800
Cc: jose@ietf.org
Subject: Re: [jose] Last Call: <draft-ietf-jose-use-cases-05.txt> (Use Cases and Requirements for JSON Object Signing and Encryption (JOSE)) to Informational RFC
X-BeenThere: jose@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Javascript Object Signing and Encryption <jose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jose>, <mailto:jose-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/jose/>
List-Post: <mailto:jose@ietf.org>
List-Help: <mailto:jose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jose>, <mailto:jose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 22 Nov 2013 19:36:23 -0000

On Fri, 22 Nov 2013, The IESG wrote:

>
> The IESG has received a request from the Javascript Object Signing and
> Encryption WG (jose) to consider the following document:
> - 'Use Cases and Requirements for JSON Object Signing and Encryption
>   (JOSE)'
>  <draft-ietf-jose-use-cases-05.txt> as Informational RFC
>
> The file can be obtained via
> http://datatracker.ietf.org/doc/draft-ietf-jose-use-cases/

There seems to be a formatting/ordering error in section 2.  The 
enumerated list has 1/2/3 as confidentiality-protected, 
integrity-protected, and key format, but the next sentence talks about 
signed, encrypted, and key format "respectively".  It seems that 
integrity-protected is meant to be signed and confidentiality-protected is 
meant to be encrypted, but they are swapped.

-Ben