Re: [kitten] Pending draft 15 Re: sasl-oauth "user" as a kvpair or in the gs2 header?

Nico Williams <nico@cryptonector.com> Mon, 17 March 2014 21:27 UTC

Return-Path: <nico@cryptonector.com>
X-Original-To: kitten@ietfa.amsl.com
Delivered-To: kitten@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 88B581A01DF for <kitten@ietfa.amsl.com>; Mon, 17 Mar 2014 14:27:23 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.044
X-Spam-Level:
X-Spam-Status: No, score=-1.044 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FM_FORGED_GMAIL=0.622, IP_NOT_FRIENDLY=0.334] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vpvGP3EOkH0R for <kitten@ietfa.amsl.com>; Mon, 17 Mar 2014 14:27:22 -0700 (PDT)
Received: from homiemail-a64.g.dreamhost.com (agjbgdcfdbhb.dreamhost.com [69.163.253.171]) by ietfa.amsl.com (Postfix) with ESMTP id 122051A02FC for <kitten@ietf.org>; Mon, 17 Mar 2014 14:27:22 -0700 (PDT)
Received: from homiemail-a64.g.dreamhost.com (localhost [127.0.0.1]) by homiemail-a64.g.dreamhost.com (Postfix) with ESMTP id 28BBA43807F for <kitten@ietf.org>; Mon, 17 Mar 2014 14:27:14 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=cryptonector.com; h= mime-version:in-reply-to:references:date:message-id:subject:from :to:cc:content-type; s=cryptonector.com; bh=AK+3dDhEEVompDy/w6Ni ZXijRPk=; b=AyQlwTHdo8DK1qeKOubrrQKTsv7OsA7kHg86KZlA0UlPgCmBGtW9 LN4MoRPZFu8dkyGT4gmC5hZa2Mf0uJoA4ow8ReOpDoDfYnUaCyTogjjqPJLFnTc/ xgqELqqDr3sAzWPQglr2kxpBFEe+9URESA/r9HeN3rZwIQ8G+v0LeoY=
Received: from mail-we0-f169.google.com (mail-we0-f169.google.com [74.125.82.169]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) (Authenticated sender: nico@cryptonector.com) by homiemail-a64.g.dreamhost.com (Postfix) with ESMTPSA id D038A43807C for <kitten@ietf.org>; Mon, 17 Mar 2014 14:27:13 -0700 (PDT)
Received: by mail-we0-f169.google.com with SMTP id w62so5182185wes.14 for <kitten@ietf.org>; Mon, 17 Mar 2014 14:27:12 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=GgEBGRPg3scDDmTbVCCRta9TOqfIXw98FZ6h47wxhw4=; b=hKXIq8mnQ9zpsOfn7+WVhuTMQvS7mPj1sYc8Wd7i92QrlpHSPkrY8aKnfqyY2qJMVW goVTGXP+xsnRKHYQ76HDoHpJoP1PBhfMx8DkAUisji3GAWnxDEFNzom5B3ezu+dLv4rR 4h9PF4WPnPcYJDcmfvMdDksjFnC4eUbyXkb/+hbuC8CT1lRCqclH34wo6Qh1b//cZuLr d9SKo9FubS9j4xors7mwx6tpJR8+sQ00S3Gx224d5P4B2p+7+cpaHbt/A4BKKscqf+Eu mfiDR3VAtj5LWtTlZ0fJxYSA0KYaX1ijDN40wczBoUM/QneXW6mCCFO2Ktkxw74hYnen X3TA==
MIME-Version: 1.0
X-Received: by 10.180.97.72 with SMTP id dy8mr11152131wib.5.1395091632588; Mon, 17 Mar 2014 14:27:12 -0700 (PDT)
Received: by 10.216.199.6 with HTTP; Mon, 17 Mar 2014 14:27:12 -0700 (PDT)
In-Reply-To: <1395090919.78935.YahooMailNeo@web142806.mail.bf1.yahoo.com>
References: <1393869321.174.YahooMailNeo@web125602.mail.ne1.yahoo.com> <tslr46j2kbm.fsf@mit.edu> <1393875779.29082.YahooMailNeo@web125604.mail.ne1.yahoo.com> <tsld2i21j7u.fsf@mit.edu> <1393926562.54403.YahooMailNeo@web125603.mail.ne1.yahoo.com> <1393948558.69282.YahooMailNeo@web125602.mail.ne1.yahoo.com> <CAPe4Cjoh7n-cQAuy17MWs66wigqTQvGBVVtEJ0_3zjaSg-5JmQ@mail.gmail.com> <1394650561.77489.YahooMailNeo@web142801.mail.bf1.yahoo.com> <1394833947.5753.YahooMailNeo@web142802.mail.bf1.yahoo.com> <CAK3OfOhr0ksktckcBK5UG7OYb4-Z=QP6DXCcyArk6A3qVWK3gA@mail.gmail.com> <53275BC1.50808@cisco.com> <1395090919.78935.YahooMailNeo@web142806.mail.bf1.yahoo.com>
Date: Mon, 17 Mar 2014 16:27:12 -0500
Message-ID: <CAK3OfOiQeZXs4iBP2C3WyZ4y69ejA3QG2fv8ne3C99PJNRySNQ@mail.gmail.com>
From: Nico Williams <nico@cryptonector.com>
To: Bill Mills <wmills_92105@yahoo.com>
Content-Type: text/plain; charset="UTF-8"
Archived-At: http://mailarchive.ietf.org/arch/msg/kitten/s7pceOJdC_FcaJRsl5XQCtRpKEU
Cc: "kitten@ietf.org" <kitten@ietf.org>, Bill Mills <wmills@yahoo-inc.com>, Sam Hartman <hartmans-ietf@mit.edu>
Subject: Re: [kitten] Pending draft 15 Re: sasl-oauth "user" as a kvpair or in the gs2 header?
X-BeenThere: kitten@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Common Authentication Technologies - Next Generation <kitten.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/kitten>, <mailto:kitten-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/kitten/>
List-Post: <mailto:kitten@ietf.org>
List-Help: <mailto:kitten-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 17 Mar 2014 21:27:23 -0000

On Mon, Mar 17, 2014 at 4:15 PM, Bill Mills <wmills_92105@yahoo.com> wrote:
> OK, so given Google's extant implementation, if we change it to SHOULD the
> MUST is implicit and the de facto standard anyway if you want it to work
> with Google.

No need to say either MUST nor SHOULD.  Instead you might want to note
that in common usage of this mechanism the server tends to require
that the client send an authz-id.

Nico
--