Re: [KEYPROV] SASL stringprep Was: FW: New Version Notification - draft-ietf-keyprov-dskpp-13.txt

Phillip Hallam-Baker <hallam@gmail.com> Tue, 07 September 2010 04:12 UTC

Return-Path: <hallam@gmail.com>
X-Original-To: keyprov@core3.amsl.com
Delivered-To: keyprov@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 5BB783A6843 for <keyprov@core3.amsl.com>; Mon, 6 Sep 2010 21:12:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.152
X-Spam-Level:
X-Spam-Status: No, score=-2.152 tagged_above=-999 required=5 tests=[AWL=0.447, BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1H0LX6B1i7Ww for <keyprov@core3.amsl.com>; Mon, 6 Sep 2010 21:12:09 -0700 (PDT)
Received: from mail-iw0-f172.google.com (mail-iw0-f172.google.com [209.85.214.172]) by core3.amsl.com (Postfix) with ESMTP id C61743A672F for <keyprov@ietf.org>; Mon, 6 Sep 2010 21:12:08 -0700 (PDT)
Received: by iwn3 with SMTP id 3so5674281iwn.31 for <keyprov@ietf.org>; Mon, 06 Sep 2010 21:12:37 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:mime-version:received:received:in-reply-to :references:date:message-id:subject:from:to:cc:content-type :content-transfer-encoding; bh=BVTA8aBTDXheA50Cxs/eEbnUWmvbtFDHntRoS+23Yg4=; b=XtkB1mupJvEaFOT2WIMaeOeJ+w486HL//r3CSS12i6CKRtv8UToHtR+tD9jO9U0vMz LI8/vN/9moyP8AtaK9qEYcoEtrhkccD6cQRMi9UVjLYBaR3WjFhKCVKreJE+svPk6+jW hv0I7Qi1yMAcYt87EUqArADocJ8ggND4rkScY=
DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type:content-transfer-encoding; b=VJ0j99xB3oVltwZa95B6+0+1vn/TGrTgL6963bUinp8ctyTDBixcqDFQSEpvPrD+ti YHfXdZGbvvL3HC1LoDkPUYJn/Ybd4WCF+D6NQnwZqAbFuNiMO0ua6INT/jIVZk6jG2MI dzpy5CjUdJKBUTGRw/8kBxPv4WQgktUgB+ZBQ=
MIME-Version: 1.0
Received: by 10.231.11.72 with SMTP id s8mr7253363ibs.110.1283832757095; Mon, 06 Sep 2010 21:12:37 -0700 (PDT)
Received: by 10.231.35.70 with HTTP; Mon, 6 Sep 2010 21:12:37 -0700 (PDT)
In-Reply-To: <4C8469D6.4030004@telia.com>
References: <9ED76AB595E4944BB33D8998DE448D110A9611C5@CORPUSMX10B.corp.emc.com> <AANLkTin6qnLGKkHd0sM2Sd0UpBF4fRx4b4-AORN+_PWe@mail.gmail.com> <4C8469D6.4030004@telia.com>
Date: Tue, 07 Sep 2010 00:12:37 -0400
Message-ID: <AANLkTikGjyzzSgY=PKSTLYHZB567pbQP9gXcUw800KNK@mail.gmail.com>
From: Phillip Hallam-Baker <hallam@gmail.com>
To: Anders Rundgren <anders.rundgren@telia.com>
Content-Type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: quoted-printable
Cc: keyprov@ietf.org
Subject: Re: [KEYPROV] SASL stringprep Was: FW: New Version Notification - draft-ietf-keyprov-dskpp-13.txt
X-BeenThere: keyprov@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: "Provisioning of Symmetric Keys \(keyprov\)" <keyprov.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/keyprov>, <mailto:keyprov-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/keyprov>
List-Post: <mailto:keyprov@ietf.org>
List-Help: <mailto:keyprov-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/keyprov>, <mailto:keyprov-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 07 Sep 2010 04:12:11 -0000

You know of a token where you can input unicode sequences direct?



On Mon, Sep 6, 2010 at 12:11 AM, Anders Rundgren
<anders.rundgren@telia.com> wrote:
>  Thanx Philip!
>
> I had never heard about this before.  There is always something new to learn :-)
>
> http://www.ietf.org/rfc/rfc4013.txt
>
> Personally I would reject a scheme where a password in UTF-8 like
>
>    I<U+00AD>X
>
> is supposed to be translated to
>
>    IX
>
> The motives may be good but I think it creates more problems
> than it solves.  For KeyGen2/SKS I will absolutely not adopt this,
> that's for sure.  For encrypted passwords it would mean that the
> token would do this translation (?) and that's a really horrible idea.
>
> Anders
>
>
>
>
> On 2010-09-05 23:40, Phillip Hallam-Baker wrote:
>> Thanks for doing this Andrea.
>>
>> One substantive change to the protocol that should be noted is that
>> SASL stringprep is now used for UNICODE passwords. I know we discussed
>> this but I cannot remember if anyone cared.
>>
>> Some members of the IESG did care, they thought that consistency was
>> important and in the absence of an actual reason not to use SASL
>> stringprep, I agree.
>>
>> Is there anyone who thinks this is an issue?
>>
>>
>> On Fri, Sep 3, 2010 at 1:56 PM,  <andrea.doherty@rsa.com> wrote:
>>> -----Original Message-----
>>> From: Internet-Draft@ietf.org [mailto:Internet-Draft@ietf.org]
>>> Sent: Friday, September 03, 2010 1:45 PM
>>> To: keyprov-chairs@tools.ietf.org; draft-ietf-keyprov-dskpp@tools.ietf.org; tim.polk@nist.gov; alexey.melnikov@isode.com
>>> Subject: New Version Notification - draft-ietf-keyprov-dskpp-13.txt
>>>
>>> New version (-13) has been submitted for draft-ietf-keyprov-dskpp-13.txt.
>>> http://www.ietf.org/internet-drafts/draft-ietf-keyprov-dskpp-13.txt
>>>
>>>
>>> Diff from previous version:
>>> http://tools.ietf.org/rfcdiff?url2=draft-ietf-keyprov-dskpp-13
>>>
>>> IETF Secretariat.
>>>
>>> _______________________________________________
>>> KEYPROV mailing list
>>> KEYPROV@ietf.org
>>> https://www.ietf.org/mailman/listinfo/keyprov
>>>
>>
>>
>
> _______________________________________________
> KEYPROV mailing list
> KEYPROV@ietf.org
> https://www.ietf.org/mailman/listinfo/keyprov
>



-- 
Website: http://hallambaker.com/