Re: [kitten] Fw: New Version Notification for draft-mills-kitten-sasl-oauth-02

"William J. Mills" <wmills@yahoo-inc.com> Fri, 08 April 2011 17:45 UTC

Return-Path: <wmills@yahoo-inc.com>
X-Original-To: kitten@core3.amsl.com
Delivered-To: kitten@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id E0A273A6989 for <kitten@core3.amsl.com>; Fri, 8 Apr 2011 10:45:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -17.598
X-Spam-Level:
X-Spam-Status: No, score=-17.598 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HTML_MESSAGE=0.001, USER_IN_DEF_WHITELIST=-15]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gA75D59P5Rab for <kitten@core3.amsl.com>; Fri, 8 Apr 2011 10:45:21 -0700 (PDT)
Received: from web32314.mail.mud.yahoo.com (web32314.mail.mud.yahoo.com [68.142.207.162]) by core3.amsl.com (Postfix) with SMTP id B86C63A6841 for <kitten@ietf.org>; Fri, 8 Apr 2011 10:45:21 -0700 (PDT)
Received: (qmail 26537 invoked by uid 60001); 8 Apr 2011 17:47:02 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yahoo-inc.com; s=ginc1024; t=1302284821; bh=AXFgPPgHUaHx4UjiFsgsk1PS4HSyOEG8ut8BIAc4S8M=; h=Message-ID:X-YMail-OSG:Received:X-RocketYMMF:X-Mailer:References:Date:From:Reply-To:Subject:To:Cc:In-Reply-To:MIME-Version:Content-Type; b=hPStGs369rVUN5p64hQf1/HaCX89UhsN+Du3LRGLwgOQVaxsgpzERl3antsnkluOkvHqT2HjWzqmgBv+k1K/QwNCkvL44qLsmRyN5WlRm50m9XxKj2mmpjz/y8ZbBRT83emqumQ/hU+qKj5mG+naB/IKfc/EDdalIf75VjUIMF8=
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=ginc1024; d=yahoo-inc.com; h=Message-ID:X-YMail-OSG:Received:X-RocketYMMF:X-Mailer:References:Date:From:Reply-To:Subject:To:Cc:In-Reply-To:MIME-Version:Content-Type; b=Dya1R5QLZOWjise5BkbPGT/1JlcwiqEu6PIHV6Ysl0XyCEg1hDaZJ0XlcBO3dC5U2tPc2ZYgtjV4DBXJiOaN4Oh8fbhRP0Tf5suQqmQM1fxA5qfSHZdjIu+Fns3TjP5kGGn6edbHvfuIOIZF7xU8PqSevbRUda/fni/85/QCb3I=;
Message-ID: <951823.17690.qm@web32314.mail.mud.yahoo.com>
X-YMail-OSG: UlvCClMVM1m10rP..GKzwA_62m5LJCSaK0mzQSUoF58skb9 MTI_sVSu6vi.Gl0cuhd0uuSN3jwp9ZxmMSCzNpkMtBIl7A_woa5Q9zEAi76p KuHw0GAxwWHnZSAW_6qreAQRaK80S.lQO75oZJAYLHPr0V3yOxGjmGMTPWEe wbGP3QWm2eO4FbcJj4ZAPk3pSeALe905hm5SaUXSd5jnI78.WC6_nGDuh8z6 G_QKkfWMvSIjJ.kkoJ.0fsfp37aYUPJO_kK9OLGsdqTiLlzVmf.3bv21ALGk D1j01qQbKzZ1pC4nj24jHIagfZkjofq7iXRUFnLxJ2RJ7S_DT8lrzf__wMyr MD2LmgepXctr9hQp2wr6K1enNTQReP.kks0S1uYWd
Received: from [209.131.62.115] by web32314.mail.mud.yahoo.com via HTTP; Fri, 08 Apr 2011 10:47:01 PDT
X-RocketYMMF: william_john_mills
X-Mailer: YahooMailWebService/0.8.110.299900
References: <20110408070506.12ECB3A6A4C@core3.amsl.com> <416848.75882.qm__16525.0710481361$1302247955$gmane$org@web32314.mail.mud.yahoo.com> <87hba9b13i.fsf@latte.josefsson.org> <tsl4o684s5q.fsf@mit.edu> <754979.46407.qm@web32303.mail.mud.yahoo.com> <tslr59c3asv.fsf@mit.edu>
Date: Fri, 08 Apr 2011 10:47:01 -0700
From: "William J. Mills" <wmills@yahoo-inc.com>
To: Sam Hartman <hartmans-ietf@mit.edu>
In-Reply-To: <tslr59c3asv.fsf@mit.edu>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="0-408321053-1302284821=:17690"
Cc: "kitten@ietf.org" <kitten@ietf.org>, Simon Josefsson <simon@josefsson.org>, Tim Showalter <timshow@yahoo-inc.com>
Subject: Re: [kitten] Fw: New Version Notification for draft-mills-kitten-sasl-oauth-02
X-BeenThere: kitten@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
Reply-To: "William J. Mills" <wmills@yahoo-inc.com>
List-Id: Common Authentication Technologies - Next Generation <kitten.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/kitten>
List-Post: <mailto:kitten@ietf.org>
List-Help: <mailto:kitten-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/kitten>, <mailto:kitten-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Apr 2011 17:45:23 -0000

OK, I've taken a note in my working copy to switch to -PLUS.  I also need to add communicating the CB variant.

Thanks very much for your first look and I look forward to further feedback.  Would it be useful for me to make these changes now and post a new draft, or is that too much churn?


-bill



________________________________
From: Sam Hartman <hartmans-ietf@mit.edu>
To: William J. Mills <wmills@yahoo-inc.com>
Cc: Sam Hartman <hartmans-ietf@mit.edu>; Simon Josefsson <simon@josefsson.org>; "kitten@ietf.org" <kitten@ietf.org>; Tim Showalter <timshow@yahoo-inc.com>
Sent: Friday, April 8, 2011 10:36 AM
Subject: Re: [kitten] Fw: New Version Notification for  draft-mills-kitten-sasl-oauth-02

>>>>> "William" == William J Mills <wmills@yahoo-inc.com> writes:

    William> At the moment I was going with simple.  If multiple types
    William> are supported then I have to be able to communicate what
    William> types of channel binding are accepted, which I suppose
    William> could go in the WWW-Authenticate header in the discovery
    William> information.  It's relatively easy to add a variable for
    William> the CB type.


I don't think this is true if you're a SASL mechanism.
I think that's the application's problem.
I think all you have to do is communicate  the channel binding type you
support.

Also, the abstract interface between the application and SASL assumes
that all SASL mechanisms supporting any CB types support all CB types.
This is even more true if you happen to be running through a GS2 bridge
which may not be applicable to your mechanism.

I promised Hannes at the meeting that near end of April I'd be happy to
get up to speed on this and work with the draft authors on all this.

I'm sorry I don't have time to do that this week or next but I'll get
there.