Re: [Ietf-krb-wg] AD review of draft-ietf-krb-wg-gss-cb-hash-agility

Stephen Farrell <stephen.farrell@cs.tcd.ie> Fri, 12 August 2011 16:11 UTC

Return-Path: <ietf-krb-wg-bounces@lists.anl.gov>
X-Original-To: ietfarch-krb-wg-archive@ietfa.amsl.com
Delivered-To: ietfarch-krb-wg-archive@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CAF3221F8736 for <ietfarch-krb-wg-archive@ietfa.amsl.com>; Fri, 12 Aug 2011 09:11:14 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -106.669
X-Spam-Level:
X-Spam-Status: No, score=-106.669 tagged_above=-999 required=5 tests=[AWL=-0.070, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ju80Of40SQ0L for <ietfarch-krb-wg-archive@ietfa.amsl.com>; Fri, 12 Aug 2011 09:11:14 -0700 (PDT)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by ietfa.amsl.com (Postfix) with ESMTP id C894521F873D for <krb-wg-archive@lists.ietf.org>; Fri, 12 Aug 2011 09:11:13 -0700 (PDT)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by localhost.anl.gov (Postfix) with ESMTP id 4087B5A; Fri, 12 Aug 2011 11:11:51 -0500 (CDT)
Received: from lists.anl.gov (katydid.it.anl.gov [146.137.96.32]) by mailhost.anl.gov (Postfix) with ESMTP id 1DDC655; Fri, 12 Aug 2011 11:11:51 -0500 (CDT)
Received: from katydid.it.anl.gov (localhost [127.0.0.1]) by lists.anl.gov (Postfix) with ESMTP id ECFF52CC8C5; Fri, 12 Aug 2011 11:11:50 -0500 (CDT)
X-Original-To: ietf-krb-wg@lists.anl.gov
Delivered-To: ietf-krb-wg@lists.anl.gov
Received: from mailrelay.anl.gov (mailrelay.anl.gov [130.202.101.22]) by lists.anl.gov (Postfix) with ESMTP id CE62080035 for <ietf-krb-wg@lists.anl.gov>; Fri, 12 Aug 2011 11:11:49 -0500 (CDT)
Received: from localhost (localhost [127.0.0.1]) by localhost.it.anl.gov (Postfix) with ESMTP id BB0FC7CC05C; Fri, 12 Aug 2011 11:11:49 -0500 (CDT)
Received: from mailrelay.anl.gov ([127.0.0.1]) by localhost (mailrelay.anl.gov [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 32480-06; Fri, 12 Aug 2011 11:11:49 -0500 (CDT)
Received: from mailgateway.anl.gov (mailgateway.anl.gov [130.202.101.28]) by mailrelay.anl.gov (Postfix) with ESMTP id 9773C7CC056 for <ietf-krb-wg@lists.anl.gov>; Fri, 12 Aug 2011 11:11:49 -0500 (CDT)
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AisBAPhPRU6G4iA4e2dsb2JhbABCDqgBAQEWJgUggUABAQEBAgFAAQE2AQEECwsYCRYPCQMCAQIBRQYNAQUCAQEFh2YErAEBjigFhkeYEQ+LLTk
X-IronPort-AV: E=Sophos;i="4.67,363,1309755600"; d="scan'208";a="65092967"
Received: from hermes.cs.tcd.ie (HELO scss.tcd.ie) ([134.226.32.56]) by mailgateway.anl.gov with ESMTP; 12 Aug 2011 11:11:48 -0500
Received: from localhost (localhost [127.0.0.1]) by hermes.scss.tcd.ie (Postfix) with ESMTP id 16E37171CC2; Fri, 12 Aug 2011 17:11:48 +0100 (IST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cs.tcd.ie; h= content-transfer-encoding:content-type:in-reply-to:references :subject:mime-version:user-agent:from:date:message-id:received :received:x-virus-scanned; s=cs; t=1313165505; bh=AXesjD5TP0NgwS lZHa2s9SviVaeHgHd3u9h6L6sNK+w=; b=h5sIUTBzAidSzJ6bpy9raXCfTj3b67 8OJEoqrGNNjuDD4P6zSSMAZEeJPNks1jmL7kWNJCtZeEy9b8t4XPA265xBFpf7tx K5UoJ3hUjEQvlTyhOcX2bYSFQ99w2ysZY8cptOm5XS1k+2tr9P4/WAhDe6fG8Fdw g0P4lrkzk4AYpOgzZRScqNL+ZbFXaN1gkzfDEQc14nc6Gt87sMgrCqbaD/TpF46j 4BJzBffkHmL/dU1p6FrbIWTIGhg4HCAPCJXH3X93SKiJlVQ0ASNHRo0iJv4zsYLJ k3L/G5c/wjQ5ABabbIlCjEK8uHgywlzWw1G31JRfjgsZJNSl7t/ahhBQ==
X-Virus-Scanned: Debian amavisd-new at scss.tcd.ie
Received: from scss.tcd.ie ([127.0.0.1]) by localhost (scss.tcd.ie [127.0.0.1]) (amavisd-new, port 10027) with ESMTP id TdE6obPRqkJq; Fri, 12 Aug 2011 17:11:45 +0100 (IST)
Received: from [10.125.5.127] (fawlty.dsg.cs.tcd.ie [134.226.36.97]) by smtp.scss.tcd.ie (Postfix) with ESMTPSA id CC515171BF9; Fri, 12 Aug 2011 17:11:45 +0100 (IST)
Message-ID: <4E4550C2.2030104@cs.tcd.ie>
Date: Fri, 12 Aug 2011 17:11:46 +0100
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.2.18) Gecko/20110617 Lightning/1.0b2 Thunderbird/3.1.11
MIME-Version: 1.0
To: Sam Hartman <hartmans-ietf@mit.edu>
References: <4E452842.7050205@cs.tcd.ie> <tslaabehb8a.fsf@mit.edu>
In-Reply-To: <tslaabehb8a.fsf@mit.edu>
X-Enigmail-Version: 1.1.1
X-Virus-Scanned: Debian amavisd-new at frigga.it.anl.gov
Cc: "krb-wg mailing list (ietf-krb-wg@lists.anl.gov)" <ietf-krb-wg@lists.anl.gov>
Subject: Re: [Ietf-krb-wg] AD review of draft-ietf-krb-wg-gss-cb-hash-agility
X-BeenThere: ietf-krb-wg@lists.anl.gov
X-Mailman-Version: 2.1.14
Precedence: list
List-Id: "This is a list for the IETF Kerberos Working Group. {WORLDPUB, EXTERNAL}" <ietf-krb-wg.lists.anl.gov>
List-Unsubscribe: <https://lists.anl.gov/mailman/options/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=unsubscribe>
List-Archive: <https://lists.anl.gov/pipermail/ietf-krb-wg>
List-Post: <mailto:ietf-krb-wg@lists.anl.gov>
List-Help: <mailto:ietf-krb-wg-request@lists.anl.gov?subject=help>
List-Subscribe: <https://lists.anl.gov/mailman/listinfo/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Errors-To: ietf-krb-wg-bounces@lists.anl.gov
Sender: ietf-krb-wg-bounces@lists.anl.gov

Hi Sam,

On 12/08/11 16:59, Sam Hartman wrote:
> 
> I'd appreciate responses to the rest of the AD comments. Here are
> responses I can make.
> 
> 
>>>>>> "Stephen" == Stephen Farrell <stephen.farrell@cs.tcd.ie> writes:
> 
>     Stephen> 1) the write-up says that the WG need to figure out where
>     Stephen> to put the new IANA registry for extension types, have you
>     Stephen> figured that out yet? (The write-up also asks for IETF LC
>     Stephen> to not start until that's sorted out.)
> 
> No one objected to my proposed text.
> Authors, can you incorporate  my proposed text creating the registry
> into the next version?

Great.

>     Stephen> 2) Where's the key usage number 43 come from? (I do see
>     Stephen> 7.5.1 from rfc 4120) Is there an IANA registry for these?
>     Stephen> (I didn't see it.) If not, should there be? If so, should
>     Stephen> this document just create that too? (And what's the update
>     Stephen> rule - FCFS?) If this is better not done as an IANA
>     Stephen> registry (or not now) then I'd appreciate the explanation
>     Stephen> in any case, even if that's not added to the document.
>     Stephen> (But why not add it?)
> 
> This is not yet managed by IANA; draft-lha-krb-wg-some-numbers-to-iana
> creates the registry.  Tom Yu is keeping track meanwhile. We discussed
> the big outstanding issue with Love's draft at IETF 80; we expect to be
> making progress shortly.

That's fine thanks.

>     Stephen> 3) A test vector for one popular variation of get_mic would
>     Stephen> be very good to add - with all the endian stuff I could see
>     Stephen> this being done wrong quite easily but in a way that a
>     Stephen> single implementation would not show up.
> 
> Can someone volunteer to include this?
> I agree that this would be really helpful.

Me too obviously:-)

>     Stephen> 3) id-nits has a couple of warnings - can you check if
>     Stephen> those are ok and fix if not?
> 
> I did check as part of doing the writeup.

When I did it from this URL [1] I get the output below. Could be they're
spurious warnings I guess but I just wanted to check.

Cheers,
Stephen.

[1]
http://tools.ietf.org/idnits?url=http://tools.ietf.org/id/draft-ietf-krb-wg-gss-cb-hash-agility-07.txt

 Checking nits according to http://www.ietf.org/id-info/checklist :

----------------------------------------------------------------------------

  == There are 1 instance of lines with non-RFC5735-compliant IPv4
     addresses in the document.  If these are example addresses,
     they should be changed.

  Miscellaneous warnings:

----------------------------------------------------------------------------

  == The document seems to lack a disclaimer for pre-RFC5378 work, but
     was first submitted before 10 November 2008.  Should you add the
     disclaimer? (See the Legal Provisions document at
     http://trustee.ietf.org/license-info for more information.) --
     however, there's a paragraph with a matching beginning.
     Boilerplate error?

_______________________________________________
ietf-krb-wg mailing list
ietf-krb-wg@lists.anl.gov
https://lists.anl.gov/mailman/listinfo/ietf-krb-wg