Re: [jose] [Editorial Errata Reported] RFC7520 (4801)

Benjamin Kaduk <kaduk@mit.edu> Mon, 09 December 2019 17:27 UTC

Return-Path: <kaduk@mit.edu>
X-Original-To: jose@ietfa.amsl.com
Delivered-To: jose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 12D611200CE for <jose@ietfa.amsl.com>; Mon, 9 Dec 2019 09:27:12 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level:
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PM8tJywbZAqJ for <jose@ietfa.amsl.com>; Mon, 9 Dec 2019 09:27:10 -0800 (PST)
Received: from outgoing.mit.edu (outgoing-auth-1.mit.edu [18.9.28.11]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CE78912007A for <jose@ietf.org>; Mon, 9 Dec 2019 09:27:09 -0800 (PST)
Received: from kduck.mit.edu ([24.16.140.251]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.14.7/8.12.4) with ESMTP id xB9HQvvx020707 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 9 Dec 2019 12:27:00 -0500
Date: Mon, 09 Dec 2019 09:26:57 -0800
From: Benjamin Kaduk <kaduk@mit.edu>
To: Jim Schaad <ietf@augustcellars.com>
Cc: 'RFC Errata System' <rfc-editor@rfc-editor.org>, odonoghue@isoc.org, Roman Danyliw <rdd@cert.org>, "'Matthew A. Miller'" <linuxwolf+ietf@outer-planes.net>, florent@morselli.fr, jose@ietf.org
Message-ID: <20191209172657.GG13890@kduck.mit.edu>
References: <20160913081304.E2352B80EA3@rfc-editor.org> <028201d5aadf$aaebb2a0$00c317e0$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <028201d5aadf$aaebb2a0$00c317e0$@augustcellars.com>
User-Agent: Mutt/1.12.1 (2019-06-15)
Archived-At: <https://mailarchive.ietf.org/arch/msg/jose/tv3kidnWKA7fFK7q402OuF1qI9o>
Subject: Re: [jose] [Editorial Errata Reported] RFC7520 (4801)
X-BeenThere: jose@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Javascript Object Signing and Encryption <jose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jose>, <mailto:jose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/jose/>
List-Post: <mailto:jose@ietf.org>
List-Help: <mailto:jose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jose>, <mailto:jose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 09 Dec 2019 17:27:12 -0000

Hi Jim,

I started looking at this, but I can't find an errata report with eid 4801;
there is https://www.rfc-editor.org/verify_errata_select.php?eid=4802 which
looks quite similar to what is quoted below (but includes additional
commentary in both the old and new text boxes :(

Can you please check that eid 4802 is the content you want us to be
handling?

Thanks,

Ben

On Wed, Dec 04, 2019 at 12:16:05PM -0800, Jim Schaad wrote:
> I went through to start getting all of the JOSE errata cleaned out.  After
> consulting with Matt, I believe that this errata should be accepted as
> editorial - hold for update.
> 
> Jim
> 
> 
> -----Original Message-----
> From: jose <jose-bounces@ietf.org> On Behalf Of RFC Errata System
> Sent: Tuesday, September 13, 2016 1:13 AM
> To: mamille2@cisco.com; stephen.farrell@cs.tcd.ie;
> Kathleen.Moriarty.ietf@gmail.com; odonoghue@isoc.org; ietf@augustcellars.com
> Cc: florent@morselli.fr; jose@ietf.org; rfc-editor@rfc-editor.org
> Subject: [jose] [Editorial Errata Reported] RFC7520 (4801)
> 
> The following errata report has been submitted for RFC7520, "Examples of
> Protecting Content Using JSON Object Signing and Encryption (JOSE)".
> 
> --------------------------------------
> You may review the report below and at:
> http://www.rfc-editor.org/errata_search.php?rfc=7520&eid=4801
> 
> --------------------------------------
> Type: Editorial
> Reported by: Wrong JSON Flattened Representation <florent@morselli.fr>
> 
> Section: 5.7.5
> 
> Original Text
> -------------
> The figure 150 is:
> 
>    {
>      "protected": "eyJhbGciOiJBMjU2R0NNS1ciLCJpdiI6IktrWVQwR1hfMm
>          pIbGZxTl8iLCJraWQiOiIxOGVjMDhlMS1iZmE5LTRkOTUtYjIwNS0yYj
>          RkZDFkNDMyMWQiLCJ0YWciOiJrZlBkdVZRM1QzSDZ2bmV3dC0ta3N3Ii
>          wiZW5jIjoiQTEyOENCQy1IUzI1NiJ9",
>      "encrypted_key": "lJf3HbOApxMEBkCMOoTnnABxs_CvTWUmZQ2ElLvYNo
>          k",
>      "iv": "gz6NjyEFNm_vm8Gj6FwoFQ",
>      "ciphertext": "Jf5p9-ZhJlJy_IQ_byKFmI0Ro7w7G1QiaZpI8OaiVgD8E
>          qoDZHyFKFBupS8iaEeVIgMqWmsuJKuoVgzR3YfzoMd3GxEm3VxNhzWyW
>          tZKX0gxKdy6HgLvqoGNbZCzLjqcpDiF8q2_62EVAbr2uSc2oaxFmFuIQ
>          HLcqAHxy51449xkjZ7ewzZaGV3eFqhpco8o4DijXaG5_7kp3h2cajRfD
>          gymuxUbWgLqaeNQaJtvJmSMFuEOSAzw9Hdeb6yhdTynCRmu-kqtO5Dec
>          4lT2OMZKpnxc_F1_4yDJFcqb5CiDSmA-psB2k0JtjxAj4UPI61oONK7z
>          zFIu4gBfjJCndsZfdvG7h8wGjV98QhrKEnR7xKZ3KCr0_qR1B-gxpNk3
>          xWU",
>      "tag": "NvBveHr_vonkvflfnUrmBQ"
>    }
> 
> But the figure 147 indicates the tag is "DKW7jrb4WaRSNfbXVPlT5g".
> 
> Corrected Text
> --------------
> The figure 150 should be:
> 
>    {
>      "protected": "eyJhbGciOiJBMjU2R0NNS1ciLCJpdiI6IktrWVQwR1hfMm
>          pIbGZxTl8iLCJraWQiOiIxOGVjMDhlMS1iZmE5LTRkOTUtYjIwNS0yYj
>          RkZDFkNDMyMWQiLCJ0YWciOiJrZlBkdVZRM1QzSDZ2bmV3dC0ta3N3Ii
>          wiZW5jIjoiQTEyOENCQy1IUzI1NiJ9",
>      "encrypted_key": "lJf3HbOApxMEBkCMOoTnnABxs_CvTWUmZQ2ElLvYNo
>          k",
>      "iv": "gz6NjyEFNm_vm8Gj6FwoFQ",
>      "ciphertext": "Jf5p9-ZhJlJy_IQ_byKFmI0Ro7w7G1QiaZpI8OaiVgD8E
>          qoDZHyFKFBupS8iaEeVIgMqWmsuJKuoVgzR3YfzoMd3GxEm3VxNhzWyW
>          tZKX0gxKdy6HgLvqoGNbZCzLjqcpDiF8q2_62EVAbr2uSc2oaxFmFuIQ
>          HLcqAHxy51449xkjZ7ewzZaGV3eFqhpco8o4DijXaG5_7kp3h2cajRfD
>          gymuxUbWgLqaeNQaJtvJmSMFuEOSAzw9Hdeb6yhdTynCRmu-kqtO5Dec
>          4lT2OMZKpnxc_F1_4yDJFcqb5CiDSmA-psB2k0JtjxAj4UPI61oONK7z
>          zFIu4gBfjJCndsZfdvG7h8wGjV98QhrKEnR7xKZ3KCr0_qR1B-gxpNk3
>          xWU",
>      "tag": "DKW7jrb4WaRSNfbXVPlT5g"
>    }
> 
> Notes
> -----
> 
> 
> Instructions:
> -------------
> This erratum is currently posted as "Reported". If necessary, please use
> "Reply All" to discuss whether it should be verified or rejected. When a
> decision is reached, the verifying party (IESG) can log in to change the
> status and edit the report, if necessary. 
> 
> --------------------------------------
> RFC7520 (draft-ietf-jose-cookbook-08)
> --------------------------------------
> Title               : Examples of Protecting Content Using JSON Object
> Signing and Encryption (JOSE)
> Publication Date    : May 2015
> Author(s)           : M. Miller
> Category            : INFORMATIONAL
> Source              : Javascript Object Signing and Encryption
> Area                : Security
> Stream              : IETF
> Verifying Party     : IESG
> 
> _______________________________________________
> jose mailing list
> jose@ietf.org
> https://www.ietf.org/mailman/listinfo/jose
> 
> _______________________________________________
> jose mailing list
> jose@ietf.org
> https://www.ietf.org/mailman/listinfo/jose