Re: [Last-Call] [EXTERNAL] Re: [Uta] Secdir telechat review of draft-ietf-uta-rfc7525bis-09

Andrei Popov <Andrei.Popov@microsoft.com> Thu, 14 July 2022 18:08 UTC

Return-Path: <Andrei.Popov@microsoft.com>
X-Original-To: last-call@ietfa.amsl.com
Delivered-To: last-call@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 49B36C157B5A; Thu, 14 Jul 2022 11:08:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.588
X-Spam-Level:
X-Spam-Status: No, score=-7.588 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.582, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3RlzxH1Ztijs; Thu, 14 Jul 2022 11:07:58 -0700 (PDT)
Received: from na01-obe.outbound.protection.outlook.com (mail-centralusazon11021018.outbound.protection.outlook.com [52.101.62.18]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4DEA7C14F73D; Thu, 14 Jul 2022 11:07:57 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=IxPgCUjBQjPagNJjCIfeTO/qYD2SjZeSqZYtsulkAqrBiMwYG+PDCAK+DDFHgwiMfSs3+NE0kTWRT6exc796Nv8F6t80OsrQdRnN9dXcrlrgCY/bvTJ5U5KDe6wPN8VWhrJYv1YMWyeLfBiXs5dZuMrhCyaRLhGePLOz7Bfs+Fqb9nKV1U8VNJILOtaDMg1+HzBfN2jPQ3IZAeTlokg57oAePLVrgXbFq7uN26L2/0B56yat9YC9klNYV751H7mnFyo6Q9x2VxkeziYj9sgC46MIPjJps8xrHhTIGEGDmLDLmwiTqUqb5uG0FhbK5XNgjDvUdxISMTv+FuS3hIZ4Eg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=qptTm6oJQRJ4SeCLjcigxNagy8sDgdl+h1HFBJuSOwI=; b=HeB5jpEfixVlqmJ1jHZIPjifCI1aHYZbiSPTHzr6sTCoyozYX4RQV8wQvMb7sNStEH1rPqUWuLE3CiJ6DabsrBeNei/ZES6sqteF2o2tqKuHPdRZMtjPHcW6emnnojm66F2aPJmLuS83IeaJfFiu1wJl03yMsR6YX0/BRt3SfhHCOcP2Q9ordLwJLAuu2Faq0pbsI1dAddd+YVRzltGSIfsMypX1uyMUG4ld7u3vI0r+sRDd05B6lqUF+0eOsdGWzCkqYtGiItZ1yR3PVUcH1MAHSZQK5LrXfI64C5MCGvuC32Ll1V40oW/MJxhX82MCa/6bAFoZu3KIQ+BtWaGJNQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=microsoft.com; dmarc=pass action=none header.from=microsoft.com; dkim=pass header.d=microsoft.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=qptTm6oJQRJ4SeCLjcigxNagy8sDgdl+h1HFBJuSOwI=; b=DEoIsdL2I7ZOWP03OgM+3knyvNMCeEDN9ExLq4E41ox4zlMeCKCP4muNR48915jTDdYtarCq7oUpdc6amFpZYa0F5JJujDtAdhYszOMiW9EOAZdIVEOx3YNOkpKaq/7Oa0J1v1vNCGbGjKMvR5xGnEiXJXsV1JfVIgyNMNgewqQ=
Received: from CH2PR00MB0711.namprd00.prod.outlook.com (2603:10b6:610:ad::8) by MN2PR00MB0862.namprd00.prod.outlook.com (2603:10b6:208:1d4::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5476.0; Thu, 14 Jul 2022 18:07:53 +0000
Received: from CH2PR00MB0711.namprd00.prod.outlook.com ([fe80::d9c2:1e75:2cd7:8f7e]) by CH2PR00MB0711.namprd00.prod.outlook.com ([fe80::d9c2:1e75:2cd7:8f7e%6]) with mapi id 15.20.5483.000; Thu, 14 Jul 2022 18:07:53 +0000
From: Andrei Popov <Andrei.Popov@microsoft.com>
To: Rob Sayre <sayrer@gmail.com>
CC: Peter Gutmann <pgut001@cs.auckland.ac.nz>, Peter Saint-Andre <stpeter@stpeter.im>, Benjamin Kaduk <kaduk@mit.edu>, "secdir@ietf.org" <secdir@ietf.org>, "draft-ietf-uta-rfc7525bis.all@ietf.org" <draft-ietf-uta-rfc7525bis.all@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>, "uta@ietf.org" <uta@ietf.org>
Thread-Topic: [EXTERNAL] Re: [Uta] [Last-Call] Secdir telechat review of draft-ietf-uta-rfc7525bis-09
Thread-Index: AQHYly76ULRya45kVke11hXTIRcXra1+FjNQgAAIy4CAAAM+EA==
Date: Thu, 14 Jul 2022 18:07:53 +0000
Message-ID: <CH2PR00MB0711752EE2AB5B2EE20C91538C889@CH2PR00MB0711.namprd00.prod.outlook.com>
References: <165766858084.5251.12485129434316295805@ietfa.amsl.com> <b24e2934-200f-4f80-5261-aa2a977da39b@stpeter.im> <CAChr6Syq+uOTJsvqWuSustq_HdTaXCtDepyCuRWx+jGoEB06Fw@mail.gmail.com> <CAChr6SzkAmbjGK4XOwPkSwssLoG4NW1yG-6b2aFdFr43yF2zwQ@mail.gmail.com> <SY4PR01MB625186377F07976EFEF775F7EE889@SY4PR01MB6251.ausprd01.prod.outlook.com> <BY5PR00MB0707E1335EB621253DB3BDA98C889@BY5PR00MB0707.namprd00.prod.outlook.com> <CAChr6SwoHicUAWQYggbVe_pg+TncE_mdq31ShoxgvJpywBXfbw@mail.gmail.com>
In-Reply-To: <CAChr6SwoHicUAWQYggbVe_pg+TncE_mdq31ShoxgvJpywBXfbw@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ActionId=4ffbda01-4e6a-446a-ac92-00079f4c6b9d; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ContentBits=0; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=true; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Method=Standard; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=Internal; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2022-07-14T17:36:51Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47;
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=microsoft.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: f179a75a-8205-4197-cb12-08da65c3c56f
x-ms-traffictypediagnostic: MN2PR00MB0862:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CH2PR00MB0711.namprd00.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(39860400002)(396003)(136003)(366004)(376002)(346002)(451199009)(7696005)(54906003)(26005)(478600001)(122000001)(10290500003)(83380400001)(9686003)(86362001)(6916009)(6506007)(8990500004)(66574015)(53546011)(33656002)(41300700001)(186003)(64756008)(82960400001)(966005)(55016003)(8676002)(66446008)(38070700005)(2906002)(166002)(66946007)(38100700002)(4326008)(66556008)(82950400001)(52536014)(76116006)(316002)(66476007)(71200400001)(8936002)(5660300002); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_CH2PR00MB0711752EE2AB5B2EE20C91538C889CH2PR00MB0711namp_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CH2PR00MB0711.namprd00.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: f179a75a-8205-4197-cb12-08da65c3c56f
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Jul 2022 18:07:53.1656 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: sfD8SLaQz0JyKwST1iXauv45c9Uvq6Stw4hxi6um3s32dZ+lfoCslgEADqrZJr9fQIo+u2GdRkcdeUJSRZVrJw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MN2PR00MB0862
Archived-At: <https://mailarchive.ietf.org/arch/msg/last-call/zhev2YhGdoOGTirYfyDzjt3S7_U>
Subject: Re: [Last-Call] [EXTERNAL] Re: [Uta] Secdir telechat review of draft-ietf-uta-rfc7525bis-09
X-BeenThere: last-call@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF Last Calls <last-call.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/last-call>, <mailto:last-call-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/last-call/>
List-Post: <mailto:last-call@ietf.org>
List-Help: <mailto:last-call-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/last-call>, <mailto:last-call-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 14 Jul 2022 18:08:02 -0000

  *   Thank you for the data-driven approach, but it definitely doesn't match other reports
The TLS 1.3 adoption document you reference seems to be based solely on Web browser data:

Browser
Percentage of TLS 1.3
Chrome
30%
Firefox
27%
Safari
27%

My numbers come from the Windows TLS stack telemetry. Windows releases with TLS 1.3 support (Server 2022, Windows 11 and later) use a 3rd-party TLS stack for the in-box Web browser. So the Windows TLS stack telemetry does not include Web browser connections. This is client and server apps (native, .NET, Modern, etc.), Web and other services, file services, RDP, e-mail, industrial systems... Some Web service connections, but also all other things besides/beyond the Web. A mix of Internet and various private and public sector networks.


  *   Maybe it means TLS 1.2 /could/ be negotiated for 99% of connections?
The data shows that TLS 1.2 was in fact negotiated 98-99% of the time. Either because a TLS peer did not support TLS 1.3, or an app programmatically disabled TLS 1.3, or a system admin disabled TLS 1.3. It's a long discussion about the reasons, but at the moment we see 98-99% of the connections negotiating TLS 1.2.

Overall, our telemetry shows that TLS 1.3 usage is growing (BTW, QUIC usage is included in my TLS 1.3 numbers). It's just nowhere near TLS 1.2 usage at the moment.

From: Rob Sayre <sayrer@gmail.com>
Sent: Thursday, July 14, 2022 10:25 AM
To: Andrei Popov <Andrei.Popov@microsoft.com>
Cc: Peter Gutmann <pgut001@cs.auckland.ac.nz>; Peter Saint-Andre <stpeter@stpeter.im>; Benjamin Kaduk <kaduk@mit.edu>; secdir@ietf.org; draft-ietf-uta-rfc7525bis.all@ietf.org; last-call@ietf.org; uta@ietf.org
Subject: [EXTERNAL] Re: [Uta] [Last-Call] Secdir telechat review of draft-ietf-uta-rfc7525bis-09

On Thu, Jul 14, 2022 at 10:12 AM Andrei Popov <Andrei.Popov@microsoft.com<mailto:Andrei.Popov@microsoft.com>> wrote:
Speaking of PCs and servers: I took a look at Windows TLS stack telemetry (only including those OS versions that support TLS 1.3).
TLS 1.2 is negotiated for 99% of the TLS server connections and 98% of the TLS client connections using Windows TLS stack.
TLS 1.3 use amounts to 0.4% of TLS server connections and just under 2% of TLS client connections.

Thank you for the data-driven approach, but it definitely doesn't match other reports. Maybe it means TLS 1.2 /could/ be negotiated for 99% of connections?

Here is a 2019 document from the IETF:
https://www.ietf.org/blog/tls13-adoption/<https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fblog%2Ftls13-adoption%2F&data=05%7C01%7CAndrei.Popov%40microsoft.com%7Cbeac8a37740347b3289c08da65bdd8c0%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637934163474960631%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000%7C%7C%7C&sdata=ZQTIoGNvUKr7%2BhMuXkmN7yDsPiN%2F2gZW0f%2FD1mJLRZ4%3D&reserved=0>

thanks,
Rob




Cheers,

Andrei

-----Original Message-----
From: Uta <uta-bounces@ietf.org<mailto:uta-bounces@ietf.org>> On Behalf Of Peter Gutmann
Sent: Wednesday, July 13, 2022 8:07 PM
To: Rob Sayre <sayrer@gmail.com<mailto:sayrer@gmail.com>>; Peter Saint-Andre <stpeter@stpeter.im<mailto:stpeter@stpeter.im>>
Cc: Benjamin Kaduk <kaduk@mit.edu<mailto:kaduk@mit.edu>>; secdir@ietf.org<mailto:secdir@ietf.org>; draft-ietf-uta-rfc7525bis.all@ietf.org<mailto:draft-ietf-uta-rfc7525bis.all@ietf.org>; last-call@ietf.org<mailto:last-call@ietf.org>; uta@ietf.org<mailto:uta@ietf.org>
Subject: [EXTERNAL] Re: [Uta] [Last-Call] Secdir telechat review of draft-ietf-uta-rfc7525bis-09

Rob Sayre <sayrer@gmail.com<mailto:sayrer@gmail.com>> writes:

>Also, in the realm of opinion rather than correctness: mandating TLS
>1.2 support is misguided. Every TLS implementation maintains divided
>codebases for 1.2 vs 1.3.

On desktop PCs and servers perhaps, but in embedded the very fact that you need two sets of codebases means many systems will stay with 1.2, possibly forever when everything around them is also staying with 1.2.

>No one reads the TLS 1.2 code very closely these days, in my
>experience, so the BCP would be mandating support for something people
>don't really work on anymore.

Unless the only codebase you've got is 1.2.  However in the same embedded systems you typically do it once, do it right, and skip the neverending flow of bells and whistles that keep appearing, so there's no need to constantly fiddle with the code as for PC/server use.

Peter.

_______________________________________________
Uta mailing list
Uta@ietf.org<mailto:Uta@ietf.org>
https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Futa&amp;data=05%7C01%7CAndrei.Popov%40microsoft.com%7Ce00ddaa9c29c46256bcf08da65461b37%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637933649036169526%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&amp;sdata=KdWkJBgZZYtqmqbNTu58h6cXqB7eq3o%2B65rEEu5eo%2BE%3D&amp;reserved=0<https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Futa&data=05%7C01%7CAndrei.Popov%40microsoft.com%7Cbeac8a37740347b3289c08da65bdd8c0%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C637934163474960631%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000%7C%7C%7C&sdata=7UnJ4KxCx3HAl474kkfHcSYMAxbWPHoOt2h%2FowgG09o%3D&reserved=0>