Security review of draft-ietf-kitten-gssapi-channel-bindings-05

Ran Canetti <canetti@post.tau.ac.il> Sun, 07 December 2008 07:27 UTC

Return-Path: <kitten-bounces@ietf.org>
X-Original-To: kitten-archive@megatron.ietf.org
Delivered-To: ietfarch-kitten-archive@core3.amsl.com
Received: from [127.0.0.1] (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id CA6A23A6877; Sat, 6 Dec 2008 23:27:55 -0800 (PST)
X-Original-To: kitten@core3.amsl.com
Delivered-To: kitten@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 1C3DE3A680B for <kitten@core3.amsl.com>; Sat, 6 Dec 2008 14:45:57 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id nOLR4pSjTFff for <kitten@core3.amsl.com>; Sat, 6 Dec 2008 14:45:55 -0800 (PST)
Received: from post.tau.ac.il (post1.tau.ac.il [132.66.3.220]) by core3.amsl.com (Postfix) with ESMTP id 054013A67B3 for <kitten@ietf.org>; Sat, 6 Dec 2008 14:45:54 -0800 (PST)
Received: from localhost (localhost [127.0.0.1]) by post.tau.ac.il (Postfix) with ESMTP id AFA02BCC629; Sat, 6 Dec 2008 22:45:47 +0000 (UTC)
X-Virus-Scanned: amavisd-new at tau.ac.il
Received: from post.tau.ac.il ([127.0.0.1]) by localhost (post1.tau.ac.il [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mpBDPordL64y; Sun, 7 Dec 2008 00:45:47 +0200 (IST)
Received: from cs.tau.ac.il (anna.cs.tau.ac.il [132.67.192.229]) by post.tau.ac.il (Postfix) with ESMTP id 96026BCC627; Sun, 7 Dec 2008 00:45:47 +0200 (IST)
Received: from localhost.localdomain (nova.cs.tau.ac.il [132.67.192.133]) by cs.tau.ac.il (Postfix) with ESMTP id 8B1AF16C762E; Sun, 7 Dec 2008 00:45:47 +0200 (IST)
Received: by localhost.localdomain (Postfix, from userid 3106) id 4D8251587A10; Sun, 7 Dec 2008 00:45:47 +0200 (IST)
Received: from localhost (localhost [127.0.0.1]) by localhost.localdomain (Postfix) with ESMTP id 49B8CCD39E6; Sun, 7 Dec 2008 00:45:47 +0200 (IST)
Date: Sun, 07 Dec 2008 00:45:47 +0200
From: Ran Canetti <canetti@post.tau.ac.il>
X-X-Sender: canetti@nova.cs.tau.ac.il
To: Ran Canetti <canetti@csail.mit.edu>
Subject: Security review of draft-ietf-kitten-gssapi-channel-bindings-05
In-Reply-To: <Pine.LNX.4.64.0809100306290.8238@dove.csail.mit.edu>
Message-ID: <Pine.LNX.4.64.0812070039490.28573@nova.cs.tau.ac.il>
References: <Pine.LNX.4.64.0711071307110.31787@penguin.csail.mit.edu> <Pine.LNX.4.64.0712121802390.30555@penguin.csail.mit.edu> <Pine.LNX.4.64.0802291011130.27682@penguin.csail.mit.edu> <Pine.LNX.4.64.0809100306290.8238@dove.csail.mit.edu>
MIME-Version: 1.0
X-Mailman-Approved-At: Sat, 06 Dec 2008 23:27:54 -0800
Cc: kitten@ietf.org, secdir@mit.edu
X-BeenThere: kitten@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Common Authentication Technologies - Next Generation <kitten.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/pipermail/kitten>
List-Post: <mailto:kitten@ietf.org>
List-Help: <mailto:kitten-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=subscribe>
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="us-ascii"; Format="flowed"
Sender: kitten-bounces@ietf.org
Errors-To: kitten-bounces@ietf.org


   *I have reviewed these documents as part of the security directorate's
   *ongoing effort to review all IETF documents being processed by the
   *IESG.  These comments were written primarily for the benefit of the
   *security area directors.  Document editors and WG chairs should treat
   *these comments just like any other last call comments.


The document appears to be a straightforward  spefication of interface 
format for channel binding information GSS API. I didnt see any security 
implications here.

Best,
Ran

_______________________________________________
Kitten mailing list
Kitten@ietf.org
https://www.ietf.org/mailman/listinfo/kitten