Re: [kitten] Updating RFC 3961 to require deterministic checksums

Benjamin Kaduk <kaduk@mit.edu> Sat, 30 September 2017 17:12 UTC

Return-Path: <kaduk@mit.edu>
X-Original-To: kitten@ietfa.amsl.com
Delivered-To: kitten@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 55C76134290 for <kitten@ietfa.amsl.com>; Sat, 30 Sep 2017 10:12:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.301
X-Spam-Level:
X-Spam-Status: No, score=-2.301 tagged_above=-999 required=5 tests=[RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cWXfNVlhTAHG for <kitten@ietfa.amsl.com>; Sat, 30 Sep 2017 10:12:09 -0700 (PDT)
Received: from dmz-mailsec-scanner-4.mit.edu (dmz-mailsec-scanner-4.mit.edu [18.9.25.15]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 37237133226 for <kitten@ietf.org>; Sat, 30 Sep 2017 10:12:09 -0700 (PDT)
X-AuditID: 1209190f-d9dff700000026d9-73-59cfd0671949
Received: from mailhub-auth-4.mit.edu ( [18.7.62.39]) (using TLS with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by dmz-mailsec-scanner-4.mit.edu (Symantec Messaging Gateway) with SMTP id DC.07.09945.760DFC95; Sat, 30 Sep 2017 13:12:08 -0400 (EDT)
Received: from outgoing.mit.edu (OUTGOING-AUTH-1.MIT.EDU [18.9.28.11]) by mailhub-auth-4.mit.edu (8.13.8/8.9.2) with ESMTP id v8UHC7Nl028138; Sat, 30 Sep 2017 13:12:07 -0400
Received: from kduck.kaduk.org (24-107-191-124.dhcp.stls.mo.charter.com [24.107.191.124]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.13.8/8.12.4) with ESMTP id v8UHC4Bd018948 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Sat, 30 Sep 2017 13:12:06 -0400
Date: Sat, 30 Sep 2017 12:12:04 -0500
From: Benjamin Kaduk <kaduk@mit.edu>
To: Greg Hudson <ghudson@mit.edu>
Cc: kitten@ietf.org
Message-ID: <20170930171203.GR96685@kduck.kaduk.org>
References: <x7dk20lxw4b.fsf@equal-rites.mit.edu> <20170928021534.GE96685@kduck.kaduk.org> <045c369b-491d-07b5-1615-d238e5efde51@mit.edu>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <045c369b-491d-07b5-1615-d238e5efde51@mit.edu>
User-Agent: Mutt/1.8.3 (2017-05-23)
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFnrLIsWRmVeSWpSXmKPExsUixG6nrptx4XykQetRNoujm1exODB6LFny kymAMYrLJiU1J7MstUjfLoErY9qbnWwFf1kr3s0/wtzA+Iili5GTQ0LARGLF61lANheHkMBi Jomrvz+zQjgbGSXmNz+Hylxlkvi6fR9bFyMHB4uAqsTECRUg3WwCKhIN3ZeZQWwRAUWJZ6vm gk1lFhCWWL7mLBuILSzgJbGxdRYTiM0LtO3K892MEDN7GSW6/75ih0gISpyc+QSqWUvixr+X TCC7mAWkJZb/4wAJcwpYS3S2toHNFBVQlpi3bxXbBEaBWUi6ZyHpnoXQvYCReRWjbEpulW5u YmZOcWqybnFyYl5eapGuiV5uZoleakrpJkZQSHJK8u9gnNPgfYhRgINRiYe3weNcpBBrYllx Ze4hRkkOJiVR3sbT5yOF+JLyUyozEosz4otKc1KLDzFKcDArifDWngDK8aYkVlalFuXDpKQ5 WJTEebcF7YoUEkhPLEnNTk0tSC2CycpwcChJ8CqfB2oULEpNT61Iy8wpQUgzcXCCDOcBGu4I UsNbXJCYW5yZDpE/xajLcePh9T9MQix5+XmpUuK89iBFAiBFGaV5cHNAqUQie3/NK0ZxoLeE eTNAqniAaQhu0iugJUxASyZPPAOypCQRISXVwBgnYLnnqdZ+nciS/1M2lNzhtUqO3n6T58Pf xX4+L9mLQmtX7/+YNmVGb8uTMMU1k1+6NP+LifTcLmufJaCpVFz2aZeHd5a5v4C03X+hlRUp 96f0TZj9q3mf/9sIjZUlH4W+5opv15H9lfOOM2QRw8wW09I9s8xXPXbt7fz3Y9fuiRfYr4o9 Y1RiKc5INNRiLipOBAAPs2zAAAMAAA==
Archived-At: <https://mailarchive.ietf.org/arch/msg/kitten/OSuAevfZVKvR_Q8byZdNRH2oLkc>
Subject: Re: [kitten] Updating RFC 3961 to require deterministic checksums
X-BeenThere: kitten@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Common Authentication Technologies - Next Generation <kitten.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/kitten>, <mailto:kitten-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/kitten/>
List-Post: <mailto:kitten@ietf.org>
List-Help: <mailto:kitten-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 30 Sep 2017 17:12:10 -0000

On Fri, Sep 29, 2017 at 05:42:09PM -0400, Greg Hudson wrote:
> On 09/27/2017 10:15 PM, Benjamin Kaduk wrote:
> > 4. Include instructions in the IANA considerations section to update the
> > registration policy for the checksum type registry that notes the additional
> > constraint on checksum behavior.
> 
> Proposed wording (at the beginning of the IANA considerations section):
> 
>    The notes for the "Kerberos Checksum Type Numbers" registry should be
>    updated with the following addition: "If the checksum algorithm is
>    non-deterministic, see [this document] Section 4".
> 
> (where "Section 4" is an xref to the new "Update to Checksum
> Specifications" section from my previous message in this thread.)

Sounds good to me.

-Ben