Re: [kitten] Comments on draft-ietf-kitten-krb-spake-preauth-00

Benjamin Kaduk <kaduk@mit.edu> Thu, 17 August 2017 01:51 UTC

Return-Path: <kaduk@mit.edu>
X-Original-To: kitten@ietfa.amsl.com
Delivered-To: kitten@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E92C713240C for <kitten@ietfa.amsl.com>; Wed, 16 Aug 2017 18:51:45 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.201
X-Spam-Level:
X-Spam-Status: No, score=-4.201 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pMvub4f9VJ-r for <kitten@ietfa.amsl.com>; Wed, 16 Aug 2017 18:51:44 -0700 (PDT)
Received: from dmz-mailsec-scanner-7.mit.edu (dmz-mailsec-scanner-7.mit.edu [18.7.68.36]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 327A5132407 for <kitten@ietf.org>; Wed, 16 Aug 2017 18:51:43 -0700 (PDT)
X-AuditID: 12074424-39dff70000005ed3-ab-5994f6ae208d
Received: from mailhub-auth-1.mit.edu ( [18.9.21.35]) (using TLS with cipher DHE-RSA-AES256-SHA (256/256 bits)) (Client did not present a certificate) by dmz-mailsec-scanner-7.mit.edu (Symantec Messaging Gateway) with SMTP id D2.33.24275.EA6F4995; Wed, 16 Aug 2017 21:51:42 -0400 (EDT)
Received: from outgoing.mit.edu (OUTGOING-AUTH-1.MIT.EDU [18.9.28.11]) by mailhub-auth-1.mit.edu (8.13.8/8.9.2) with ESMTP id v7H1pfs2017759; Wed, 16 Aug 2017 21:51:41 -0400
Received: from kduck.kaduk.org (24-107-191-124.dhcp.stls.mo.charter.com [24.107.191.124]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) by outgoing.mit.edu (8.13.8/8.12.4) with ESMTP id v7H1pbKm026728 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Wed, 16 Aug 2017 21:51:39 -0400
Date: Wed, 16 Aug 2017 20:51:37 -0500
From: Benjamin Kaduk <kaduk@mit.edu>
To: "Henry B (Hank) Hotz, CISSP" <hbhotz@oxy.edu>
Cc: Greg Hudson <ghudson@mit.edu>, "kitten@ietf.org" <kitten@ietf.org>
Message-ID: <20170817015136.GW70977@kduck.kaduk.org>
References: <8B29C0AD-409C-4F56-91BB-558DEFCDDFDD@oxy.edu> <3382b1b7-37f9-393b-73ca-7b3c841e67d9@mit.edu> <373E00D6-4459-4466-9FDF-BB70F8EDB403@oxy.edu>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <373E00D6-4459-4466-9FDF-BB70F8EDB403@oxy.edu>
User-Agent: Mutt/1.8.3 (2017-05-23)
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFnrBIsWRmVeSWpSXmKPExsUixCmqrLvu25RIg53dChYf7y1ksTi6eRWL A5PHkiU/mTy2Nv1lDmCK4rJJSc3JLEst0rdL4Mo4OekKW8FdjooPl3YyNjA+YOti5OSQEDCR uDzpEHMXIxeHkMBiJom5MyaDJYQENjJKfFmuDZG4yiRxYPVeoAQHB4uAqsTGPfYgNWwCKhIN 3ZeZQWwRAUOJ6SsnsoLYzAJuEl8aZrOAlAsLeEhc+SEEYvIC7Vp+hxNi4hxGiSdL57OAlPMK CEqcnPmEBaJVS+LGv5dMIPXMAtISy/9xgIQ5BawlHk95CnaZqICyxLx9q9gmMArMQtI9C0n3 LITuBYzMqxhlU3KrdHMTM3OKU5N1i5MT8/JSi3TN9XIzS/RSU0o3MYIClN1FZQdjd4/3IUYB DkYlHt6IvCmRQqyJZcWVuYcYJTmYlER5f88CCvEl5adUZiQWZ8QXleakFh9ilOBgVhLhTXsB lONNSaysSi3Kh0lJc7AoifOKazRGCAmkJ5akZqemFqQWwWRlODiUJHizvwI1ChalpqdWpGXm lCCkmTg4QYbzAA1XBKnhLS5IzC3OTIfIn2JUlBLnnQmSEABJZJTmwfWCEohE9v6aV4ziQK8I 884BqeIBJh+47ldAg5mABl9pnwQyuCQRISXVwBh+5thDk1Pa34vFJ9W8XXrvwz4+ne0XV53J Yl0lsF6L6ZRQjDLvR2etBo3Jvd+OHd+mxuj2KYX3+j+7kKniHhfW7WG6Xb7r5bIY2dNWlaYO WY+ic08LMy54rLNps83mY+26H/1XMmc6RLvunxk3OWXtu3ecNRG/F3N9vFHx2qSQyb0weXFO zDIlluKMREMt5qLiRABKwg7i+wIAAA==
Archived-At: <https://mailarchive.ietf.org/arch/msg/kitten/uBvZDvZ5RbIDGxrtCylohq8TCBw>
Subject: Re: [kitten] Comments on draft-ietf-kitten-krb-spake-preauth-00
X-BeenThere: kitten@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Common Authentication Technologies - Next Generation <kitten.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/kitten>, <mailto:kitten-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/kitten/>
List-Post: <mailto:kitten@ietf.org>
List-Help: <mailto:kitten-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 17 Aug 2017 01:51:46 -0000

On Mon, Aug 14, 2017 at 10:30:23AM -0700, Henry B (Hank) Hotz, CISSP wrote:
> 
> > On Aug 14, 2017, at 8:13 AM, Greg Hudson <ghudson@mit.edu> wrote:
> > 
> > Thanks very much for the review.  I know that this draft is a bit denser
> > than some.
> 
> The density is whatever it needs to be for the subject. The material is well organized, and clear per se, but the reader needs to know that some material needed to appreciate the early sections is in later sections. 
> 
> If we can get someone else new to go through it and see if more forward references are needed . . .

I marked up a few more places in addition to the couple you mentioned already,
in my first pass through it.  (Actual review email to come soon, I hope.)



[in separate mail]

> The precise form of pake specified is apparently unique in some details. I
> wonder if we should get the cfrg to review and comment on it.

I do plan to mention it to Kenny Paterson, as we had talked about this
work in a general sense previously.  He is of course well-qualified to
assess whether seeking full CFRG input is merited.

-Ben