[MLS] Weekly github digest (MLS Working Group summary)

Repository Activity Summary Bot <do_not_reply@mnot.net> Sun, 12 November 2023 07:46 UTC

Return-Path: <do_not_reply@mnot.net>
X-Original-To: mls@ietfa.amsl.com
Delivered-To: mls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9AD1DC14F5E0 for <mls@ietfa.amsl.com>; Sat, 11 Nov 2023 23:46:00 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.705
X-Spam-Level:
X-Spam-Status: No, score=-6.705 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_INVALID=0.1, DKIM_SIGNED=0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=fail (2048-bit key) reason="fail (message has been altered)" header.d=mnot.net header.b="k6CrPMfw"; dkim=fail (2048-bit key) reason="fail (message has been altered)" header.d=messagingengine.com header.b="nBwISqkH"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4qrIdUVsWTfU for <mls@ietfa.amsl.com>; Sat, 11 Nov 2023 23:45:56 -0800 (PST)
Received: from out2-smtp.messagingengine.com (out2-smtp.messagingengine.com [66.111.4.26]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E91DEC14F74E for <mls@ietf.org>; Sat, 11 Nov 2023 23:45:55 -0800 (PST)
Received: from compute1.internal (compute1.nyi.internal [10.202.2.41]) by mailout.nyi.internal (Postfix) with ESMTP id 48AB95C00EE for <mls@ietf.org>; Sun, 12 Nov 2023 02:39:01 -0500 (EST)
Received: from mailfrontend1 ([10.202.2.162]) by compute1.internal (MEProxy); Sun, 12 Nov 2023 02:39:01 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mnot.net; h=cc :content-type:content-type:date:from:from:in-reply-to :mime-version:reply-to:sender:subject:subject:to:to; s=fm1; t= 1699774741; x=1699861141; bh=oVbDYHBHz9dvWnCOuQdZ6zIWDYNETRe4EcF 1ppQyH1s=; b=k6CrPMfwjCYcOSKF/b7npFogez1zElYA8X3Ov3E4v2FUytGcp+U MeehTvy0w9AG0j8iczDEPBOEaVq1IrLp+kDn+QM7oxk9xeBGhM0y0hmYq+et7USX WfU3iaceZchxcmtDdmFHZLKvG7tBulfj5wZc4baNYERKtqd6ShglpYbsdZIAdidu IaBbgg0GzXbpKqAUej6ve3MtSGhOBVW4QAMa5sqw3JdFhV3lHAe2DYheMF+dg8o6 +KVhjrCt1gstvmKU53irdKiDVQB87Vd+x7NYf86RTLnmjuqhfruU1rU0chVYO+Ex U60nPcxPqPq/94dssBOk88XShVgCg+E8pOA==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-type:content-type:date :feedback-id:feedback-id:from:from:in-reply-to:mime-version :reply-to:sender:subject:subject:to:to:x-me-proxy:x-me-proxy :x-me-sender:x-me-sender:x-sasl-enc; s=fm3; t=1699774741; x= 1699861141; bh=oVbDYHBHz9dvWnCOuQdZ6zIWDYNETRe4EcF1ppQyH1s=; b=n BwISqkHRK1wHhdX6hJwHZ5YGANePNnQwrJY2x76LlcfNOkZM+7zrLHZfgySf4r6h nru5dIx6/Uo68Fsq+MYzgIuvDYh7YfDRX4e+DE4xVTK8MPQvYxz8osyULj1k434j 5cAP/rxeo7iprx537q0HFQv4dlXPtm1+e0476UhxfoPU1d2WNQm6S1wPepv8l/KX iEGYI3gJxLLW5nr2RNn1Lejdevxwyybc4oYX5sampLToElUVhxGD/pU4CsGjhYSd 3V3U5cxX1Raiu2ujCzYCoJT99rShMG3CADPLxmenJaLV27Fv8ydgqKioq66Ot7xc 4EsYgo0p6dMU+nfTbCr4A==
X-ME-Sender: <xms:FYFQZXGYWqZiYpJXaGTaR56Fzbko9f1CJgv8zuOf_u5o7-sOfZCVCw> <xme:FYFQZUWKqgctj-AdlZF0gpZcG8-Eavv7AlMRvmSgkJDLN4nzVCurhGGlI0iCtMlGx nX3A4f74i7-yPfDCQ>
X-ME-Received: <xmr:FYFQZZI108DQRPqOZrkFDv8ZASe_75XrbmodMpuW1mj5Qs3KPVX98KzFYr6XxHwqj4QEFXtDeY0smURhojAmQKFwb0XdiHNYkubIn6o4lmwtwmRBqwa2kL795cUQOC8OdPE0cQ>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvkedruddvjedggeejucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucfpohcuuggrthgvuchfihgvlhguucdlgeelmdenuc fjughrpegtggfhvffusegrtddtredttdejnecuhfhrohhmpeftvghpohhsihhtohhrhicu tegtthhivhhithihucfuuhhmmhgrrhihuceuohhtuceoughopghnohhtpghrvghplhihse hmnhhothdrnhgvtheqnecuggftrfgrthhtvghrnhepkeefvdduteejvdefkeehieevuefg fefhteetveegffekffefteffvdelheduieetnecuffhomhgrihhnpehgihhthhhusgdrtg homhenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmhepmhgrihhlfhhrohhmpegu ohgpnhhothgprhgvphhlhiesmhhnohhtrdhnvght
X-ME-Proxy: <xmx:FYFQZVFnih_G0fQhgrFHeRFCRZVgCyfM4TS8KR0rMLG7cpub1zrGRA> <xmx:FYFQZdWHsH8uIljOZ0tzH0w1X-ca5c5X2f4rfa6aYeeexnE5Dw_RcQ> <xmx:FYFQZQPQdWeQ5_QfBbZY8n9iuDpUbGGki3WDzjUEO12UzoJX3MEgWA> <xmx:FYFQZcDgmS_k0MhKsGPRpLDmmWxjiFXJEPpFrViJpE9OUE46VESmKg>
Feedback-ID: i1c3946f2:Fastmail
Received: by mail.messagingengine.com (Postfix) with ESMTPA for <mls@ietf.org>; Sun, 12 Nov 2023 02:39:00 -0500 (EST)
Content-Type: multipart/alternative; boundary="===============4621657385808324780=="
MIME-Version: 1.0
From: Repository Activity Summary Bot <do_not_reply@mnot.net>
To: mls@ietf.org
Message-Id: <20231112074555.E91DEC14F74E@ietfa.amsl.com>
Date: Sat, 11 Nov 2023 23:45:55 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/mls/DLQvF_7yMMfRZPmIEDEfQjR2eXs>
Subject: [MLS] Weekly github digest (MLS Working Group summary)
X-BeenThere: mls@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Messaging Layer Security <mls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mls>, <mailto:mls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mls/>
List-Post: <mailto:mls@ietf.org>
List-Help: <mailto:mls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mls>, <mailto:mls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 12 Nov 2023 07:46:00 -0000



Issues
------
* mlswg/mls-architecture (+13/-6/💬30)
  13 issues created:
  - ReInit on network partition (by vwesselkamp)
    https://github.com/mlswg/mls-architecture/issues/234 
  - Recommendation about Lifetimes and LeafNodes and KeyPackages (by beurdouche)
    https://github.com/mlswg/mls-architecture/issues/233 
  - Cleanup the references (by beurdouche)
    https://github.com/mlswg/mls-architecture/issues/231 
  - Service binding separation (by ekr)
    https://github.com/mlswg/mls-architecture/issues/228 
  - Do not reuse signature keys (by ekr)
    https://github.com/mlswg/mls-architecture/issues/227 
  - Encrypted at rest (by ekr)
    https://github.com/mlswg/mls-architecture/issues/226 
  - Strongest credential type (by ekr)
    https://github.com/mlswg/mls-architecture/issues/225 
  - Mixnets? (by ekr)
    https://github.com/mlswg/mls-architecture/issues/223 
  - Unidirectional transport (by ekr)
    https://github.com/mlswg/mls-architecture/issues/222 
  - Attackers who can sign (by ekr)
    https://github.com/mlswg/mls-architecture/issues/221 
  - Compartmentalized signing keys (by ekr)
    https://github.com/mlswg/mls-architecture/issues/220 
  - PCS and compromised AS (by ekr)
    https://github.com/mlswg/mls-architecture/issues/219 
  - Many signature keys for one device (by ekr)
    https://github.com/mlswg/mls-architecture/issues/215 

  12 issues received 30 new comments:
  - #228 Service binding separation (1 by ekr)
    https://github.com/mlswg/mls-architecture/issues/228 
  - #227 Do not reuse signature keys (1 by Bren2010)
    https://github.com/mlswg/mls-architecture/issues/227 
  - #225 Strongest credential type (7 by Bren2010, beurdouche, ekr, rohan-wire)
    https://github.com/mlswg/mls-architecture/issues/225 
  - #223 Mixnets? (3 by david415, ekr, rohan-wire)
    https://github.com/mlswg/mls-architecture/issues/223 
  - #220 Compartmentalized signing keys (1 by ekr)
    https://github.com/mlswg/mls-architecture/issues/220 
  - #219 PCS and compromised AS (2 by Bren2010, ekr)
    https://github.com/mlswg/mls-architecture/issues/219 
  - #215 Many signature keys for one device (4 by Bren2010, ekr, kkohbrok)
    https://github.com/mlswg/mls-architecture/issues/215 
  - #214 Compromise of group secrets (1 by papatiya)
    https://github.com/mlswg/mls-architecture/issues/214 
  - #213 AEAD key compromise (3 by beurdouche, ekr)
    https://github.com/mlswg/mls-architecture/issues/213 [bug] 
  - #212 More information about the DS computing the ratchet tree (4 by beurdouche, ekr)
    https://github.com/mlswg/mls-architecture/issues/212 
  - #210 Recommendation for encrypted group operations (1 by ekr)
    https://github.com/mlswg/mls-architecture/issues/210 [discuss] 
  - #199 Verify same client? (2 by beurdouche, ekr)
    https://github.com/mlswg/mls-architecture/issues/199 [discuss] 

  6 issues closed:
  - Mixnets? https://github.com/mlswg/mls-architecture/issues/223 
  - More information about the DS computing the ratchet tree https://github.com/mlswg/mls-architecture/issues/212 
  - Verify same client? https://github.com/mlswg/mls-architecture/issues/199 [discuss] 
  - AEAD key compromise https://github.com/mlswg/mls-architecture/issues/213 [bug] 
  - Many signature keys for one device https://github.com/mlswg/mls-architecture/issues/215 [editorial] 
  - Unconfirmed v. Confirmed Member https://github.com/mlswg/mls-architecture/issues/205 [bug] 

* mlswg/mls-extensions (+0/-0/💬2)
  1 issues received 2 new comments:
  - #22 SelfRemove still does not allow atomic removal of all a user's clients   (2 by raphaelrobert, rohan-wire)
    https://github.com/mlswg/mls-extensions/issues/22 

* mlswg/mls-implementations (+2/-0/💬3)
  2 issues created:
  - A Question in regards to the TreeKEM test (by Aurvandill)
    https://github.com/mlswg/mls-implementations/issues/177 
  - Message Protection test vector for cipher suite 5 is incorrect (by RonPeters)
    https://github.com/mlswg/mls-implementations/issues/176 

  1 issues received 3 new comments:
  - #176 Message Protection test vector for cipher suite 5 is incorrect (3 by RonPeters, raphaelrobert, vobjhss)
    https://github.com/mlswg/mls-implementations/issues/176 



Pull requests
-------------
* mlswg/mls-architecture (+8/-8/💬8)
  8 pull requests submitted:
  - Clarify what 'available' means. Fixes #225 (by ekr)
    https://github.com/mlswg/mls-architecture/pull/235 
  - Issue223 mixnets (by ekr)
    https://github.com/mlswg/mls-architecture/pull/232 
  - Aead key compromise cleanup (by ekr)
    https://github.com/mlswg/mls-architecture/pull/230 
  - Security considerations editorial (by ekr)
    https://github.com/mlswg/mls-architecture/pull/229 
  - Remove recommendation not to have the AS generated keys (by ekr)
    https://github.com/mlswg/mls-architecture/pull/224 
  - Clarify that groupinfos are also subject to access control. Fixes #209 (by ekr)
    https://github.com/mlswg/mls-architecture/pull/218 
  - clarify why you would have multiple keys (by ekr)
    https://github.com/mlswg/mls-architecture/pull/217 
  - Modest cleanup of operational requirements (by ekr)
    https://github.com/mlswg/mls-architecture/pull/216 

  5 pull requests received 8 new comments:
  - #232 Issue223 mixnets (1 by rohan-wire)
    https://github.com/mlswg/mls-architecture/pull/232 
  - #230 Aead key compromise cleanup (1 by ekr)
    https://github.com/mlswg/mls-architecture/pull/230 
  - #224 Remove recommendation not to have the AS generated keys (3 by ekr, rohan-wire)
    https://github.com/mlswg/mls-architecture/pull/224 
  - #218 Clarify that groupinfos are also subject to access control. Fixes #209 (1 by beurdouche)
    https://github.com/mlswg/mls-architecture/pull/218 [ready to merge] 
  - #200 Introduce the terms 'Proposal' and 'Commit' (2 by beurdouche, seanturner)
    https://github.com/mlswg/mls-architecture/pull/200 [ready to merge] 

  8 pull requests merged:
  - Modest cleanup of operational requirements
    https://github.com/mlswg/mls-architecture/pull/216 
  - Minor editorial improvements to functional requirements
    https://github.com/mlswg/mls-architecture/pull/211 
  - Allow unconfirmed members. Fixes #205
    https://github.com/mlswg/mls-architecture/pull/208 
  - Minor editorial cleanup on the DS section
    https://github.com/mlswg/mls-architecture/pull/207 
  - Add new Terminology section.
    https://github.com/mlswg/mls-architecture/pull/202 
  - Remove essentially all uses of "tree".
    https://github.com/mlswg/mls-architecture/pull/201 
  - Introduce the terms 'Proposal' and 'Commit'
    https://github.com/mlswg/mls-architecture/pull/200 [ready to merge] 
  - clarify why you would have multiple keys
    https://github.com/mlswg/mls-architecture/pull/217 


Repositories tracked by this digest:
-----------------------------------
* https://github.com/mlswg/mls-architecture
* https://github.com/mlswg/mls-protocol
* https://github.com/mlswg/mls-federation
* https://github.com/mlswg/mls-extensions
* https://github.com/mlswg/mls-implementations