Re: [kitten] Alexey's comments Re: WGLC of draft-ietf-kitten-sasl-oauth-18

Bill Mills <wmills_92105@yahoo.com> Tue, 06 January 2015 19:06 UTC

Return-Path: <wmills_92105@yahoo.com>
X-Original-To: kitten@ietfa.amsl.com
Delivered-To: kitten@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B48021A1B38 for <kitten@ietfa.amsl.com>; Tue, 6 Jan 2015 11:06:48 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 1.191
X-Spam-Level: *
X-Spam-Status: No, score=1.191 tagged_above=-999 required=5 tests=[BAYES_50=0.8, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_ENVFROM_END_DIGIT=0.25, FREEMAIL_FROM=0.001, FREEMAIL_REPLYTO_END_DIGIT=0.25, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ZXOdQ7TC3CCR for <kitten@ietfa.amsl.com>; Tue, 6 Jan 2015 11:06:47 -0800 (PST)
Received: from nm41-vm9.bullet.mail.bf1.yahoo.com (nm41-vm9.bullet.mail.bf1.yahoo.com [216.109.114.138]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CCA971A036F for <kitten@ietf.org>; Tue, 6 Jan 2015 11:06:46 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo.com; s=s2048; t=1420571206; bh=BAN2R/ttZKF829s1LFanEsoHeKSyV8Vyna4KXAISVjo=; h=Date:From:Reply-To:To:Cc:In-Reply-To:References:Subject:From:Subject; b=YtRxJqvVleqkfFMU3bGJ1hgff4CbtfCZwb55c2devQy+hZQ01at+p+Ik+GxIxjCb3mn5MgDeR8Z+Dx9R6tXf8D2faaklUt9beW17Hkyc3fBeEjF1JAlOXFG30xgYLi8mF5PyuXqtCkurqapQNJiWRh5Bs54WE/C2P3IdvJ36EuH8S44Dmvd7KcESKysZSxTXZBVv3jULTNMDELDJIzHBx3D8o6vMKQV6mHi/40qX62kiedhcDLEvG1vxZoUNb1+paCeaP+TgLpkonhJuyoh8Qw/E8njV09JG2vuBgiVfUEEkdIA7sd84vlpCYvQ4EF1NH6eyC2XxKeZRhGSAhsBvjA==
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=s2048; d=yahoo.com; b=cErrfjGUtxc3GUSk/6+Qxppzy0+aq9Y/XEJ55qIA8AE5ksJ91DrFDuKxYAHgxTMl+9qHPRzlwvtTxWwEIirKGCjUlcjY23zMN/GmaQzAYRrBlHCNzU+QrPCu69PomSFiQCiz1KtuQ2C9yoGh2zbrHUI2m2aRBjOob1Bjs4j9VoPQh1r3ZhfSX53ZCQkZxOY6cDQB1kGvn5b7Te13kTeWj7HXroumO3+BE2chVOd2a7Te8iABLnb+d+TkG6IvITHMep9b26nuGtjgC15f7/yuYKAS49O/yvGPYzSWcdDMWDgv7dqzYLRpkDd1/OcwoZQHwWkVwS6JOXUff8m7AhOg5w==;
Received: from [98.139.215.142] by nm41.bullet.mail.bf1.yahoo.com with NNFMP; 06 Jan 2015 19:06:46 -0000
Received: from [98.139.212.249] by tm13.bullet.mail.bf1.yahoo.com with NNFMP; 06 Jan 2015 19:06:46 -0000
Received: from [127.0.0.1] by omp1058.mail.bf1.yahoo.com with NNFMP; 06 Jan 2015 19:06:46 -0000
X-Yahoo-Newman-Property: ymail-3
X-Yahoo-Newman-Id: 67002.62424.bm@omp1058.mail.bf1.yahoo.com
X-YMail-OSG: rekiJYYVM1lEbQgdpPy7TyU_7KNni0KaMC0szDLAlbZzMvlsiuXDYwK0n2Jk0Io NIZE2.w5i17s.hW8xsp76zctrkuA0c_.Cql8elLsaGq8wE4WfOt_DbyMY0PELieKCIXdcDAZSn0K tNFtbQsZcYAkpW_oMHOFmQ7fyUwpb86gHDSQ51riBNYAXKm8DuBaLuh_o4bCgVTG1bCnhEHGMQZe I.Pu4uAKo7VKbly_MknVJ0spjf12m6l_Or0Ipo0NqsLwhGFct.zIwuHBHHM1vHDK6dKFe.mRSbif lYfpbrz.o_RDsz3GGiOCWcQhym1PckUuonqq0RRVMR5gjIQcJSqGYFPatofrR1DRtu8eioSVVLTv qHbRhmYDFfczoASr3k1iH_WWiYZeIuOrmBHkLxDTBBol7oLorrvi8MDQHFiZPGEEJPkRejvfi7LF zyFPrYhyKoLMlQPHOiF_.yJcjy8oYTzS5JgTCRL90D0yNjQ4SetJXvOaBAz9lWHcecqfqJ14WidQ e8SHH1gKT
Received: by 76.13.27.133; Tue, 06 Jan 2015 19:06:45 +0000
Date: Tue, 06 Jan 2015 19:06:45 +0000
From: Bill Mills <wmills_92105@yahoo.com>
To: Alexey Melnikov <alexey.melnikov@isode.com>
Message-ID: <1740622945.5399192.1420571205123.JavaMail.yahoo@jws10672.mail.bf1.yahoo.com>
In-Reply-To: <54AA8627.6020002@isode.com>
References: <54AA8627.6020002@isode.com>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="----=_Part_5399191_106811079.1420571205119"
Archived-At: http://mailarchive.ietf.org/arch/msg/kitten/KLpHEF0G0h-uPbOcQX_iNwGAhZY
Cc: "kitten@ietf.org" <kitten@ietf.org>
Subject: Re: [kitten] Alexey's comments Re: WGLC of draft-ietf-kitten-sasl-oauth-18
X-BeenThere: kitten@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
Reply-To: Bill Mills <wmills_92105@yahoo.com>
List-Id: Common Authentication Technologies - Next Generation <kitten.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/kitten>, <mailto:kitten-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/kitten/>
List-Post: <mailto:kitten@ietf.org>
List-Help: <mailto:kitten-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Jan 2015 19:06:48 -0000

Can you point me at an exampel of a cancellation token? 

     On Monday, January 5, 2015 4:41 AM, Alexey Melnikov <alexey.melnikov@isode.com> wrote:
   

  On 05/01/2015 05:14, Bill Mills wrote:
 
   Ah OK.  This is a significant change.  Can we make using the cancellation token optional?   
 Not really. Any protocol needs to define the cancellation token (according to RFC 2244) and any mechanism implementation (or SASL framework library) that doesn't complete in 1 round trip need to be able to handle it.
 
 I think it is Ok not to change the spec, but it would be a good idea to point out that standard SASL cancellation token can still be used. Adding an example would be even better.
 
  The extant implementations use the current sequence. 
  -bill
 
       On Sunday, January 4, 2015 3:37 AM, Alexey Melnikov <alexey.melnikov@isode.com> wrote:
   
 
 Hi Bill,
 
 > On 3 Jan 2015, at 00:56, Bill Mills <wmills_92105@yahoo.com> wrote:
 > 
 > 3.2.3 and an explicit message:  Long ago in the life of this doc I was told that some implementations may not support an empty message, so we put the single  character message there to have an explicit payload.  I'm a bit leery of changing this now since there are implementations in play that use it this way. 
 
 I didn't suggest you should be sending empty message. I said you should be using SASL cancellation token, which is a mandatory RFC 4422 feature.
 
 Any implementation would have to support this mode of operation anyway, because a SASL client can cancel any exchange.