Re: [MLS] Robert Wilton's Abstain on draft-ietf-mls-protocol-17: (with COMMENT)
Stephen Farrell <stephen.farrell@cs.tcd.ie> Thu, 02 February 2023 17:15 UTC
Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: mls@ietfa.amsl.com
Delivered-To: mls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6AE22C1575CD; Thu, 2 Feb 2023 09:15:33 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, NICE_REPLY_A=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=cs.tcd.ie
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2cP6ZAnQvvAN; Thu, 2 Feb 2023 09:15:29 -0800 (PST)
Received: from EUR05-VI1-obe.outbound.protection.outlook.com (mail-vi1eur05on2072a.outbound.protection.outlook.com [IPv6:2a01:111:f400:7d00::72a]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DC372C1575CC; Thu, 2 Feb 2023 09:15:26 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Ew/dT4JS8YDXh2yhq8g7N+ztVk9b6yCYYSr4BldIsMJku62MpKYSrMaNHmAdT0EQNjOmwap52e+KTuNU3b11CSO7SRuuVv3YeXZz2DH/rJNE6EO345BB8/IEQq0SEfKY4brS7Wq35ES8zmIAJxI2d7gmo4SYE3Z+P6JP9WyBrihznCfkC2Tt++o3PoGtI8t/+EG00njjs9OE/Qr/WS0/o+uQ0DAM2eNfhb5ouGb1SP1iA58JgbChjh5Y6ZmQ8XcmWqqk8S3XaQ1v/ruXMEloFhT39amqP79GAJJiGHtDtl1Sn1BKRlTkkXxpu8zUATK6GWMZZ1P0qCKQKJDSeAcBFA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=fk7FljeEvoSGsYSrZRKYmrNK9tZn9T+68py3Qyk7bkg=; b=MtwyOzzpWjhylbAZUlNGDaUhRAmiADJ++u8WKLUmNqzdDlRpoNHimZxHxvv2JIcaF2yCq1qIR9mhifFj3ywcWo5pQf4ZGHA/vHjADg3rTEC7jMLZKVc7oEdvTqDXbql8/lRcgaVGHpzRwSIDV7bDIZ/8/Xdztz56Fml/CA0Eq5ATGEM83PFrPmMvlwiEGSxpUhnZ2pSogZcZiZDdTGZjpRzUg5lZTkbeppLSRjQZ096aKykTPKhaSAMOAUlWCAXzsJXrB3HFaFKJNI0XE4xz97Aqf/bYvWuKckNF8LERMsK2RTqG7MBk1fYYzxCG+GjfdI4A6H33iK/oreEIlLspug==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cs.tcd.ie; dmarc=pass action=none header.from=cs.tcd.ie; dkim=pass header.d=cs.tcd.ie; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cs.tcd.ie; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=fk7FljeEvoSGsYSrZRKYmrNK9tZn9T+68py3Qyk7bkg=; b=JUervb1bY1oVsRt0F7B0cH0zS8kfou3tx1+kv7f8fEZ0+KLngn6GX7sgOD8QkTNytfg15OKq2B/K3dQ1HL4xmyhpaOxKhz7UnQxQNysLO+3ILoh5FoDjJ5r2xArJCGOIHk9DaoLwalJ7D+mA7xE0vgh4l6yyM1JePAJENtdU0TBinvQr7edCkwGFm3Sytw8/3/YZDToxy/ZsUsWMIoizhx3Laj6lpnQeKNPw/eM2WaMizqXDo3WFUss+5z4qGQtEk6asjuj3b/GYNYAkJl3YidjFQc0WoCdJTztftAXRV2Vew9/dmew2ipgfT2xhXuznR+419/76qJzxvDre7Wlr3Q==
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cs.tcd.ie;
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15) by GV1PR02MB8882.eurprd02.prod.outlook.com (2603:10a6:150:85::20) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6043.38; Thu, 2 Feb 2023 17:15:21 +0000
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::47ff:ce7d:4074:b349]) by DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::47ff:ce7d:4074:b349%7]) with mapi id 15.20.6064.027; Thu, 2 Feb 2023 17:15:20 +0000
Message-ID: <b5012a8d-0cf2-f980-d488-6fd1edfebd5e@cs.tcd.ie>
Date: Thu, 02 Feb 2023 17:15:19 +0000
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:102.0) Gecko/20100101 Thunderbird/102.4.2
Content-Language: en-US
To: Robert Wilton <rwilton@cisco.com>, The IESG <iesg@ietf.org>
Cc: draft-ietf-mls-protocol@ietf.org, mls-chairs@ietf.org, mls@ietf.org, benjamin.beurdouche@ens.fr, karthikeyan.bhargavan@inria.fr, cas.cremers@cs.ox.ac.uk, alan@wire.com, singuva@twitter.com, kwonal@mit.edu, ekr@rtfm.com, tjvdmerwe@gmail.com, sean@sn3rd.com
References: <167534753793.58554.8179854964604512160@ietfa.amsl.com>
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
In-Reply-To: <167534753793.58554.8179854964604512160@ietfa.amsl.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------IjTtfsqk0BatM2d5ZtQrO1RE"
X-ClientProxiedBy: DU2PR04CA0202.eurprd04.prod.outlook.com (2603:10a6:10:28d::27) To DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: DB7PR02MB5113:EE_|GV1PR02MB8882:EE_
X-MS-Office365-Filtering-Correlation-Id: 2f9b8c17-d392-4e59-82a3-08db05411046
X-MS-Exchange-SharedMailbox-RoutingAgent-Processed: True
X-TCD-Routed-via-EOP: Routed via EOP
X-TCD-ROUTED: Passed-Transport-Routing-Rules
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: mr2OXvIJVVmOKmYll89qSOeOQoHc7Y4aM6PkV93+bbcBtMCHUH2CPmjsQIcCTtJSUfZA5kX3OzrUexSgB7xf5qsKwb7qGahPP2NBW767AwIW8pSmUPQVqMkWbpcxwXqz70SXhG8QpbotD3aCmkHodXgGpSk0f3vEXxsSutTtU6ZYyM8UyvW+uFLHIH9LmYmyvVjr3WzSVMgOVzYSHqY/ahnLPhMFo31FEudKIm85QqLz5vWIG3+MtlDeh/FvE18Lv5hMwN3Q+TcoT0kjP0ktM5vzxYu9GQYXNMJwH3FR6y6iFQ6b2vWk+86gM+4KsT10CszZj3TcRrbQOqRKrLSiBQOEEnOUhE1vkyQ4wrEcIUrH2xac0IPz5Iu6+d3sUGf+d1i1Kx+aK2W9DUxsAtV6MFQfnThujxR49x0y2ifkpTaRiZ6to7GL00IMCq7rn+PBc0/bqN6T7fLLPm+05uOJBdu62Kt1PYLSIIojEsIvlVYjF18O61tdeQxgSPi96gnaNIJNc5FnM3gjEpAk+4g1oa+6nJKqkkZH32/qk4HhblE/BSGMGjerdbctEt3BNQElWc4yuG560D6dDXQ3zvQQCl0myrNIIYKFi79LofuAYcSZeOB2u8sbk/FkzSLM6tqTu2aF0gQAoPSH4CvHkCtI4bUeDanTIU0HdtEpvzNqy64cB51mKeSVJ4b2kbhCoQYimFt0DsNZZL9ev1gKUTc4JWor1r5nd5iCWXbq/IzDTPWYrKpADzXkDsJcCVjDFkcb
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB7PR02MB5113.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230025)(4636009)(366004)(396003)(346002)(136003)(376002)(39860400002)(451199018)(31686004)(8936002)(41320700001)(6512007)(53546011)(66476007)(6506007)(2616005)(33964004)(5660300002)(186003)(21480400003)(8676002)(110136005)(31696002)(235185007)(4326008)(36756003)(66946007)(66556008)(7416002)(41300700001)(786003)(38100700002)(2906002)(478600001)(316002)(6486002)(966005)(44832011)(83380400001)(86362001)(45980500001)(43740500002); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: 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
X-OriginatorOrg: cs.tcd.ie
X-MS-Exchange-CrossTenant-Network-Message-Id: 2f9b8c17-d392-4e59-82a3-08db05411046
X-MS-Exchange-CrossTenant-AuthSource: DB7PR02MB5113.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 02 Feb 2023 17:15:20.8220 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: d595be8d-b306-45f4-8064-9e5b82fbe52b
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: M++qLI3ZDvu3KCui4lzUvI0SPQj8fdzfl3LB/HaQN/xndRMG2yBM/wE8zx/fXneO
X-MS-Exchange-Transport-CrossTenantHeadersStamped: GV1PR02MB8882
Archived-At: <https://mailarchive.ietf.org/arch/msg/mls/e9m_LQllcVfEeh2A2yi9GqdlDOY>
X-Mailman-Approved-At: Thu, 02 Feb 2023 09:15:56 -0800
Subject: Re: [MLS] Robert Wilton's Abstain on draft-ietf-mls-protocol-17: (with COMMENT)
X-BeenThere: mls@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Messaging Layer Security <mls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mls>, <mailto:mls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mls/>
List-Post: <mailto:mls@ietf.org>
List-Help: <mailto:mls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mls>, <mailto:mls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 02 Feb 2023 17:15:33 -0000
My opinion on this is probably easily guessed, but in addition to rfc2804... On 02/02/2023 14:18, Robert Wilton via Datatracker wrote: > In the limited cases where IETF standardization > and technology choices are could directly impact the effectiveness of law > enforcement or conflict with democratically elected government policies then I > think that it would be great if the IETF was able to receive and consider a > wider range of views in the consensus process to ensure that we really are > making the right choices. Not all users of MLS will be governed by democratically elected authorities. As with any security mechanism, one ought design based on the generic adversary's capabilities and not depend on an adversary that may play fair. I think that point was probably raised in discussion leading to rfc2804, but since then has gotten far more relevant. Cheers, S. PS: For those not about then, the archives of the list that lead to rfc2804 are (still) at [1]. [1] https://mailarchive.ietf.org/arch/browse/raven/
- [MLS] Robert Wilton's Abstain on draft-ietf-mls-p… Robert Wilton via Datatracker
- Re: [MLS] Robert Wilton's Abstain on draft-ietf-m… Ben Campbell
- Re: [MLS] Robert Wilton's Abstain on draft-ietf-m… Stephen Farrell
- Re: [MLS] Robert Wilton's Abstain on draft-ietf-m… Daniel Kahn Gillmor