Re: [Lake] đź”” WG last call for draft-ietf-lake-traces-04

Stephen Farrell <stephen.farrell@cs.tcd.ie> Fri, 28 April 2023 23:24 UTC

Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: lake@ietfa.amsl.com
Delivered-To: lake@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A796BC1519A0 for <lake@ietfa.amsl.com>; Fri, 28 Apr 2023 16:24:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, NICE_REPLY_A=-0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=cs.tcd.ie
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id yDWaydKdH4IJ for <lake@ietfa.amsl.com>; Fri, 28 Apr 2023 16:24:52 -0700 (PDT)
Received: from EUR05-DB8-obe.outbound.protection.outlook.com (mail-db8eur05on20728.outbound.protection.outlook.com [IPv6:2a01:111:f400:7e1a::728]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 99718C14CF1D for <lake@ietf.org>; Fri, 28 Apr 2023 16:24:51 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=XyjZI2MRd8kZZ2E5K8CV4AjyRqF+YkMU++F4Zd2TRZ9p8Iaj9785AJe4ni/5JIVeIew1ma66qpK9UhYgKEikM612O27fxUqKuqxQApZZ0sq/LMMz4sryFOnghbCFk4kgtEzFL3y2ZE44760QQBK7lXNv2XeduSGn3iw7ePv4fOZrdcui+SaExtwSN0io18QvangOdzQNytOnbnWDr6sra+fZJHwUhZpyzZvmpD6oh/QIC0genMfFC20UFIMQDW8VZFkX8l2LNdSM/1rYEzUy4zpDnFdNPtvsHXuGH503BcgOOjtFIvi6/7wa7oTxtR4c6fUfoLzy9D2SuPCzFSpbuA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Sqz5dVRkkpy1eVaoprY9p/1ZagP1QXICnLnNZVymM+o=; b=Rk4WvSioAZNZAOzSoTYk1E9tRF5UcGX+VyYU/6TBADMm1JMFB4WNn8HaWKogJm5LHYI86e5mz6wnIVIPJzMjzhbkLOZn4usK+jPsAyasP2aBd3MPytpDDGJYmNFv7x6eoBHBaBkOdRp0lD7PFynlIWYPiq5VTNLxPiwE5iMfYmVuopAA+Mh4J/I6QPpm5/OOiXM+koHs9GeguNqLqrH4nZBazHuYmapcB3cjduI7JpseNgallYlNMqWmlc8YsuFvUP93lz1gVkC9V8mVB8HBKp/OIQx560xiSt6mpI4libAXva5GdkOQ/e6gmToBOs20YJ2VMBtcoH1wJljCR/69aw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cs.tcd.ie; dmarc=pass action=none header.from=cs.tcd.ie; dkim=pass header.d=cs.tcd.ie; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cs.tcd.ie; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Sqz5dVRkkpy1eVaoprY9p/1ZagP1QXICnLnNZVymM+o=; b=p30SrzIVVUZLbsEyNWy/VRAU/8VsZ7yMj99DiIKkMzjyTruLcWKCs3p4QAWnUvFENUxEaTKAmo6Jh4xuAHKH5EpKk9sqap8h1b8YQ8TZL8xLJe3UZhtwDVgVd8SI8bHSaf5ZU+mA/KxN86CuIwHIwLTs5updc4P+anp2l5feygaHrrn3f+tlZzEFezRoXXWblwKrPyQKn3O0PrWmNBbx4PKRBo93XwlCk5buU36oBVIeiFMwVClP+PI/LSmH6FA9iSyTIkqY3+z9wPm8/DRbOq5bpgEbdVNHkZHMPRNWM8HooGbDsSAFqPjOGihWOp5nfEe/qg5y+y6TB9sS5pdJaw==
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cs.tcd.ie;
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15) by AS8PR02MB8448.eurprd02.prod.outlook.com (2603:10a6:20b:541::5) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6340.24; Fri, 28 Apr 2023 23:24:47 +0000
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::a183:164f:5cd7:c4a2]) by DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::a183:164f:5cd7:c4a2%4]) with mapi id 15.20.6340.025; Fri, 28 Apr 2023 23:24:46 +0000
Message-ID: <5a0d8275-c250-8bce-eef0-1de5205b65eb@cs.tcd.ie>
Date: Sat, 29 Apr 2023 00:24:43 +0100
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:102.0) Gecko/20100101 Thunderbird/102.10.0
Content-Language: en-US
To: Göran Selander <goran.selander@ericsson.com>, Mališa Vučinić <malisa.vucinic@inria.fr>, "lake@ietf.org" <lake@ietf.org>
References: <7D008A58-7B82-4089-A70C-74AEA05654A3@inria.fr> <f706e3ff-f316-164e-161a-66fe55576b8b@cs.tcd.ie> <PAXPR07MB8844F85FEDC6C31166EF67F5F46B9@PAXPR07MB8844.eurprd07.prod.outlook.com> <2ada442a-74cb-0013-2b2b-005c64591c64@cs.tcd.ie> <PAXPR07MB88445D79C404B9A6E919DFCDF46B9@PAXPR07MB8844.eurprd07.prod.outlook.com>
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
In-Reply-To: <PAXPR07MB88445D79C404B9A6E919DFCDF46B9@PAXPR07MB8844.eurprd07.prod.outlook.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------XtSK1nccZNhfsUBZQtAqOOGh"
X-ClientProxiedBy: DUZPR01CA0064.eurprd01.prod.exchangelabs.com (2603:10a6:10:3c2::17) To DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: DB7PR02MB5113:EE_|AS8PR02MB8448:EE_
X-MS-Office365-Filtering-Correlation-Id: abe68448-683b-40bd-b10d-08db483fc0fd
X-MS-Exchange-SharedMailbox-RoutingAgent-Processed: True
X-TCD-Routed-via-EOP: Routed via EOP
X-TCD-ROUTED: Passed-Transport-Routing-Rules
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB7PR02MB5113.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230028)(4636009)(376002)(396003)(366004)(346002)(39860400002)(136003)(451199021)(45080400002)(110136005)(478600001)(235185007)(5660300002)(8936002)(36756003)(2906002)(86362001)(31696002)(66556008)(41320700001)(44832011)(66946007)(66476007)(786003)(316002)(41300700001)(6512007)(53546011)(38100700002)(6506007)(966005)(83380400001)(31686004)(2616005)(21480400003)(186003)(6666004)(33964004)(6486002)(43740500002)(45980500001); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: PnF6jTWxhEhbJd03Fg2AS+Yo01LSe9mGgm9RFpA49sGlGJcEutu2TN40umNnSV7eA36N+v88HGARDvhOfMa1kwaJRbNXnSv0Z1nOaoyOatsUY/aJkTl+x1glNAvy8Oo5AMuX5zRmkFgcJ3Ne/T0IsFx5CBpgNKuvIBNX423HKPacYiYzq2MVa0jN6kdMmg70KXEffa6y1T53CR9fdWvath4/+pMOPA22FKg9RNqt7YnL9K9o9TUOiPuqxl0llI4eXjl/uQv+yiYwJd0Epj5QgGgOd7L5SgYSkwdpeiYOIxR8RUTweGbdRC6xnjTLiiMIS5I46S56sNpdIF5Gbp6ed+rRIf62TGaDeO0FplWdxsorCQzvHjTHvFS14PExSF8bGwV3FcIAfzhdJGfH2DZkitxM4amJ1MMG9amG8bmls2jK3Y7RsT8Xu/lBgf6ewvxPlh+EEpbH92c6P8S/zeN3qLsTh5N2zIKk82i+LcgLr0f3IM4sfQ5zhHhXpcDalQEGLSUVrsjWIe8Jxne5EcpWPoWdvYv0pmpMwVsRYxCkLb5pbs8aj+SYmDrilCAGRFhtfIsaI4kDgVmyGRgmKuDHMc68uy0PCNMSFuU9qKP9/clsQKJE4rooLKJBytZZZKu1yv9xM0Q0H7Ug+K4yN6Rh+5J5sSST3IS4I0aFEx1JUlZeSji+DKorjwH/naz8UzIOBZo64MEZ2NA+trfHW2IJ6EZMqAuOe+1o+R2/SYzH0OPvOEImNp7yUK/P0nkibGfRQd/OPW+yyG6pPs9OwqJQszV4ws4y61R5btS8ydOt2OWJSfDrWfBTXXLpA0C84uaovdQ1ROAxfvp1l3YcIet4bua3bFp0DcM5sNaNkq3UcYWxKCg/aKSp92s3+XS/00K1Ct+/P2W4hsjkzN7K32765CAN3DN0YxK+UvgCDTATEwo6IhHxI6Km2rTM3zS4ebEEVsZoHZRduwJedDBB77zx+rPqrFx4YbLEAnCoNFG+bib06PWW+GU8j3Q1b1uOnGRuD6aIu2gXe8AlUykqA0mOnPYpeo7VqcU0r/jK6OVUGaaUWQ5Hb44moXU9Apz0uF/i3/VK0uszhZWOkVRAr2iVX1HTCIPEwZQQeRW7rb2YRl4LY1NmvOJYfNxUfKRC9fo4OvIpKre37PedmoSs5qfcPsLgL+qUQOzv8QxTH3CtcKCPeNIKY1QOQ3Q2Y1dnZY3gDfIm++Ab3VH/7u2P2PHZwiMqJpahFsARgD2zazdIz0atnW4jZIC0HiYVU8Y7BMUaleb38jCAVy5tF9p8lc5y6/zX/n8aBGgMWO6Ks3gdJ3Bgt9AHP8rzkOif6bTWEp0Vxo0tyiiyt0mdszROcT7yJxAEhUeBDaFMeud8KGyCIH21wVoCw5cHfbHJNKW6HFO/zT5s569mIIb2k7Pf1EEq3Xh499DgREoBhXxERP/G0KW0dFGzo8zMVBcHouL7E8QAensTlt9Fg4KpJsWs3NcXoUIfiAWR6+AaY7ToDFMdpQcFllGFAO01ATxdBS6eSqj7Gmp6yN4ZGgfXFZqwJL0kCAYXPIIl3aE7zSHTzB+V5asDrtEVDzmuNvnKurVnTSbtJKoXIn+FzIbszb0Z1Nd0ex50Ox9rvR4v+Dxuj1MHFFrkyBQLL24x3NXxVQcqytQG
X-OriginatorOrg: cs.tcd.ie
X-MS-Exchange-CrossTenant-Network-Message-Id: abe68448-683b-40bd-b10d-08db483fc0fd
X-MS-Exchange-CrossTenant-AuthSource: DB7PR02MB5113.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 28 Apr 2023 23:24:46.4628 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: d595be8d-b306-45f4-8064-9e5b82fbe52b
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: em+gcOBu+gLK6EQ1qpXQlPolNGIFAcVns0vHpQ9ZXOivlxWIhmuND8VmiB5upzit
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AS8PR02MB8448
Archived-At: <https://mailarchive.ietf.org/arch/msg/lake/kyHmjcRT3uWSdqAHAmg4tKRSlW4>
Subject: Re: [Lake] đź”” WG last call for draft-ietf-lake-traces-04
X-BeenThere: lake@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Lightweight Authenticated Key Exchange <lake.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/lake>, <mailto:lake-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/lake/>
List-Post: <mailto:lake@ietf.org>
List-Help: <mailto:lake-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/lake>, <mailto:lake-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 28 Apr 2023 23:24:56 -0000

Hiya,

On 28/04/2023 15:58, Göran Selander wrote:
> Version -05 is out. I also removed an editor’s note and information
> about where to find test vectors which was not up-to-date.
That looks good to me. One nit though, the certificate in
3.8.1 [1] is missing it's notBefore value. I assume fixing
that doesn't require new traces though, so just do that at
your leisure.

I also see that the sample certificates don't contain any
extensions. It's normal to include basic constraints so if
for some reason you do need to regenerate traces, I wonder
if adding those would an idea. (But don't regenerate the
traces just for that.)

Cheers,
S.

[1] 
https://datatracker.ietf.org/doc/html/draft-ietf-lake-traces-05#name-certificates