Re: [MLS] -mls-architecture: resolving encrypted group operations

Rohan Mahy <rohan.mahy@gmail.com> Thu, 14 March 2024 08:11 UTC

Return-Path: <rohan.mahy@gmail.com>
X-Original-To: mls@ietfa.amsl.com
Delivered-To: mls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EE213C1519A9 for <mls@ietfa.amsl.com>; Thu, 14 Mar 2024 01:11:32 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.104
X-Spam-Level:
X-Spam-Status: No, score=-2.104 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vMR2OAMj2aIH for <mls@ietfa.amsl.com>; Thu, 14 Mar 2024 01:11:32 -0700 (PDT)
Received: from mail-ed1-x52f.google.com (mail-ed1-x52f.google.com [IPv6:2a00:1450:4864:20::52f]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0AC4DC15109F for <mls@ietf.org>; Thu, 14 Mar 2024 01:11:32 -0700 (PDT)
Received: by mail-ed1-x52f.google.com with SMTP id 4fb4d7f45d1cf-568107a9ff2so711652a12.3 for <mls@ietf.org>; Thu, 14 Mar 2024 01:11:31 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1710403890; x=1711008690; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=26Gn5NR/+p1qg7oc2SbnbCGZHohYhDRQTm2OtCN8kVU=; b=iNuh4dXCrKBJiQbpx2AHrFuKieHDVeJeZigr6sW4I2zZJh5WFIf2v4qWyrxYTbiaUZ DxKdmOj25UuNsoFK+z4w8eR7qFbUMKsJxCS/j4tzTqcN4mVe7yhMOICzL3pOqU47ZmXx km+N8GjGVWthRPnDoCFyaSwQpVU7vrptq0tGenv+H6xyprOR/v2k7NYqMuCMik5knAkR tMJ4kloSKcVGSFHw9SdqXek6j2o36tPdjmmlpJPlysP/JTxNOVhHZ/UJiNMwesfT1ONW fgdoGGi9uEMKlxD1s3vCsua9U7Ex6gV9F0Or4w14MZNbthMeKxLFo3J5NcdSee4OwtT4 /Rdw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1710403890; x=1711008690; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=26Gn5NR/+p1qg7oc2SbnbCGZHohYhDRQTm2OtCN8kVU=; b=QPivQqaArSg+wV6bxh1/jHCOlxubSbbDwfrrpABcHutE39EnGul9wR3OeT2wUSbvYX x+xZ+CbOT4ZJh/mfdiv1T2/oVv0vKagvy9tV6ZWWZQjnkpvGB4XYeOw3RGxTV6LVJLVp Cb8EYt9fu7L8z+WNYm55YRNhAl1fGE1uemOyhacEM27pNL7gb3H6QmibZVowAfCqfUt2 diNI0+M7ITjKGUucFluKtm9hjutOAz/CCfUCQJjIUi/aHEHYXLLsDu8YHe7l51IjoUcr HcIhwEJ8V9ZTsukoFM4hi4KEEXV6QqeEWqD3pg1CFrpxwpUUFO6ZLH0wJnAQXSf0+TpA 5KZQ==
X-Gm-Message-State: AOJu0YxB2LbOMIe86kxL0CSot+jI7eO4IfDskBrUJnPw8nVBGS6yGW2t vEW4XNEnTE6PlxiruqgjIA4+Gad/jZ3I3/DfkLVBOt2jFGWnxj/bSKCbTbxbhFD0eKIxT+3aZmY BxAYpVvtsFQj0f13L0lMYOnwbwOSTkcbeMKR+mw==
X-Google-Smtp-Source: AGHT+IGUOk28iVCo5AppC/gHMoe4CaZud9YWj19Q/OktXCYY3FoA4GmKHm1WnZ8b9AK/E14LMJJ9s/wCSAVsSdXgVhU=
X-Received: by 2002:a05:6402:2b93:b0:568:a18:2eb3 with SMTP id fj19-20020a0564022b9300b005680a182eb3mr614497edb.11.1710403889707; Thu, 14 Mar 2024 01:11:29 -0700 (PDT)
MIME-Version: 1.0
References: <E88F391B-19CF-4A54-BA4D-743B99599FFC@sn3rd.com>
In-Reply-To: <E88F391B-19CF-4A54-BA4D-743B99599FFC@sn3rd.com>
From: Rohan Mahy <rohan.mahy@gmail.com>
Date: Thu, 14 Mar 2024 18:11:17 +1000
Message-ID: <CAKoiRuZFkUZCb8Oj5c5tKB-Ab1u=5s=x=WbtviyFKM96n6hpjQ@mail.gmail.com>
To: Sean Turner <sean@sn3rd.com>
Cc: MLS List <mls@ietf.org>
Content-Type: multipart/alternative; boundary="00000000000044c2f206139a709a"
Archived-At: <https://mailarchive.ietf.org/arch/msg/mls/4vrHjt91GQMH7kKo-z7wtzkaaI0>
Subject: Re: [MLS] -mls-architecture: resolving encrypted group operations
X-BeenThere: mls@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Messaging Layer Security <mls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mls>, <mailto:mls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mls/>
List-Post: <mailto:mls@ietf.org>
List-Help: <mailto:mls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mls>, <mailto:mls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 14 Mar 2024 08:11:33 -0000

Hi,
I have a slight preference for #246, but I am perfectly happy with either.
The MLS architecture document will not be the last word on how to design
systems with MLS and I think MIMI will be able to use the design team's
proposed approach regardless of which PR we select.

Thanks,
-rohan

On Thu, Mar 14, 2024 at 1:56 PM Sean Turner <sean@sn3rd.com> wrote:

> Hi! Last we met, we talked about how to resolve the issue related to one
> of the encrypted group operation’s recommendations [1]; also, thanks to
> Brendan for starting this thread [2].  This thread is intended to help Nick
> and I call consensus on which of the two PRs to direct the authors to land.
> If it is not clear from this thread, we will discuss at our session at IETF
> 119.  The two PRs follow:
>
> 1. PR #246 [3] rewords the issue description and removes the
> recommendation; this change keeps us (the royal us) from looking silly when
> the first protocol to call out MLS does not follow the recommendation.
>
> 2. PR #249 [4] keeps recommendation but state that applications may use
> unencrypted operations if they have an explicit reason to.
>
> Cheers,
> spt
>
> [1] https://github.com/mlswg/mls-architecture/issues/210
> [2] https://mailarchive.ietf.org/arch/msg/mls/1ohlP2TZr_LBuLyM7rfDKnM9Jo8/
> [3] https://github.com/mlswg/mls-architecture/pull/246
> [4] https://github.com/mlswg/mls-architecture/pull/249
> _______________________________________________
> MLS mailing list
> MLS@ietf.org
> https://www.ietf.org/mailman/listinfo/mls
>