Re: [MLS] Robert Wilton's Abstain on draft-ietf-mls-protocol-17: (with COMMENT)

Stephen Farrell <stephen.farrell@cs.tcd.ie> Thu, 02 February 2023 17:15 UTC

Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: mls@ietfa.amsl.com
Delivered-To: mls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6AE22C1575CD; Thu, 2 Feb 2023 09:15:33 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, NICE_REPLY_A=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=cs.tcd.ie
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2cP6ZAnQvvAN; Thu, 2 Feb 2023 09:15:29 -0800 (PST)
Received: from EUR05-VI1-obe.outbound.protection.outlook.com (mail-vi1eur05on2072a.outbound.protection.outlook.com [IPv6:2a01:111:f400:7d00::72a]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DC372C1575CC; Thu, 2 Feb 2023 09:15:26 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Ew/dT4JS8YDXh2yhq8g7N+ztVk9b6yCYYSr4BldIsMJku62MpKYSrMaNHmAdT0EQNjOmwap52e+KTuNU3b11CSO7SRuuVv3YeXZz2DH/rJNE6EO345BB8/IEQq0SEfKY4brS7Wq35ES8zmIAJxI2d7gmo4SYE3Z+P6JP9WyBrihznCfkC2Tt++o3PoGtI8t/+EG00njjs9OE/Qr/WS0/o+uQ0DAM2eNfhb5ouGb1SP1iA58JgbChjh5Y6ZmQ8XcmWqqk8S3XaQ1v/ruXMEloFhT39amqP79GAJJiGHtDtl1Sn1BKRlTkkXxpu8zUATK6GWMZZ1P0qCKQKJDSeAcBFA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=fk7FljeEvoSGsYSrZRKYmrNK9tZn9T+68py3Qyk7bkg=; b=MtwyOzzpWjhylbAZUlNGDaUhRAmiADJ++u8WKLUmNqzdDlRpoNHimZxHxvv2JIcaF2yCq1qIR9mhifFj3ywcWo5pQf4ZGHA/vHjADg3rTEC7jMLZKVc7oEdvTqDXbql8/lRcgaVGHpzRwSIDV7bDIZ/8/Xdztz56Fml/CA0Eq5ATGEM83PFrPmMvlwiEGSxpUhnZ2pSogZcZiZDdTGZjpRzUg5lZTkbeppLSRjQZ096aKykTPKhaSAMOAUlWCAXzsJXrB3HFaFKJNI0XE4xz97Aqf/bYvWuKckNF8LERMsK2RTqG7MBk1fYYzxCG+GjfdI4A6H33iK/oreEIlLspug==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cs.tcd.ie; dmarc=pass action=none header.from=cs.tcd.ie; dkim=pass header.d=cs.tcd.ie; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cs.tcd.ie; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=fk7FljeEvoSGsYSrZRKYmrNK9tZn9T+68py3Qyk7bkg=; b=JUervb1bY1oVsRt0F7B0cH0zS8kfou3tx1+kv7f8fEZ0+KLngn6GX7sgOD8QkTNytfg15OKq2B/K3dQ1HL4xmyhpaOxKhz7UnQxQNysLO+3ILoh5FoDjJ5r2xArJCGOIHk9DaoLwalJ7D+mA7xE0vgh4l6yyM1JePAJENtdU0TBinvQr7edCkwGFm3Sytw8/3/YZDToxy/ZsUsWMIoizhx3Laj6lpnQeKNPw/eM2WaMizqXDo3WFUss+5z4qGQtEk6asjuj3b/GYNYAkJl3YidjFQc0WoCdJTztftAXRV2Vew9/dmew2ipgfT2xhXuznR+419/76qJzxvDre7Wlr3Q==
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cs.tcd.ie;
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15) by GV1PR02MB8882.eurprd02.prod.outlook.com (2603:10a6:150:85::20) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6043.38; Thu, 2 Feb 2023 17:15:21 +0000
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::47ff:ce7d:4074:b349]) by DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::47ff:ce7d:4074:b349%7]) with mapi id 15.20.6064.027; Thu, 2 Feb 2023 17:15:20 +0000
Message-ID: <b5012a8d-0cf2-f980-d488-6fd1edfebd5e@cs.tcd.ie>
Date: Thu, 02 Feb 2023 17:15:19 +0000
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:102.0) Gecko/20100101 Thunderbird/102.4.2
Content-Language: en-US
To: Robert Wilton <rwilton@cisco.com>, The IESG <iesg@ietf.org>
Cc: draft-ietf-mls-protocol@ietf.org, mls-chairs@ietf.org, mls@ietf.org, benjamin.beurdouche@ens.fr, karthikeyan.bhargavan@inria.fr, cas.cremers@cs.ox.ac.uk, alan@wire.com, singuva@twitter.com, kwonal@mit.edu, ekr@rtfm.com, tjvdmerwe@gmail.com, sean@sn3rd.com
References: <167534753793.58554.8179854964604512160@ietfa.amsl.com>
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
In-Reply-To: <167534753793.58554.8179854964604512160@ietfa.amsl.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------IjTtfsqk0BatM2d5ZtQrO1RE"
X-ClientProxiedBy: DU2PR04CA0202.eurprd04.prod.outlook.com (2603:10a6:10:28d::27) To DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: DB7PR02MB5113:EE_|GV1PR02MB8882:EE_
X-MS-Office365-Filtering-Correlation-Id: 2f9b8c17-d392-4e59-82a3-08db05411046
X-MS-Exchange-SharedMailbox-RoutingAgent-Processed: True
X-TCD-Routed-via-EOP: Routed via EOP
X-TCD-ROUTED: Passed-Transport-Routing-Rules
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB7PR02MB5113.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230025)(4636009)(366004)(396003)(346002)(136003)(376002)(39860400002)(451199018)(31686004)(8936002)(41320700001)(6512007)(53546011)(66476007)(6506007)(2616005)(33964004)(5660300002)(186003)(21480400003)(8676002)(110136005)(31696002)(235185007)(4326008)(36756003)(66946007)(66556008)(7416002)(41300700001)(786003)(38100700002)(2906002)(478600001)(316002)(6486002)(966005)(44832011)(83380400001)(86362001)(45980500001)(43740500002); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: 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
X-OriginatorOrg: cs.tcd.ie
X-MS-Exchange-CrossTenant-Network-Message-Id: 2f9b8c17-d392-4e59-82a3-08db05411046
X-MS-Exchange-CrossTenant-AuthSource: DB7PR02MB5113.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 02 Feb 2023 17:15:20.8220 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: d595be8d-b306-45f4-8064-9e5b82fbe52b
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: M++qLI3ZDvu3KCui4lzUvI0SPQj8fdzfl3LB/HaQN/xndRMG2yBM/wE8zx/fXneO
X-MS-Exchange-Transport-CrossTenantHeadersStamped: GV1PR02MB8882
Archived-At: <https://mailarchive.ietf.org/arch/msg/mls/e9m_LQllcVfEeh2A2yi9GqdlDOY>
X-Mailman-Approved-At: Thu, 02 Feb 2023 09:15:56 -0800
Subject: Re: [MLS] Robert Wilton's Abstain on draft-ietf-mls-protocol-17: (with COMMENT)
X-BeenThere: mls@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Messaging Layer Security <mls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mls>, <mailto:mls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mls/>
List-Post: <mailto:mls@ietf.org>
List-Help: <mailto:mls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mls>, <mailto:mls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 02 Feb 2023 17:15:33 -0000

My opinion on this is probably easily guessed, but in
addition to rfc2804...

On 02/02/2023 14:18, Robert Wilton via Datatracker wrote:
> In the limited cases where IETF standardization
> and technology choices are could directly impact the effectiveness of law
> enforcement or conflict with democratically elected government policies then I
> think that it would be great if the IETF was able to receive and consider a
> wider range of views in the consensus process to ensure that we really are
> making the right choices.

Not all users of MLS will be governed by democratically
elected authorities. As with any security mechanism, one
ought design based on the generic adversary's capabilities
and not depend on an adversary that may play fair. I think
that point was probably raised in discussion leading to
rfc2804, but since then has gotten far more relevant.

Cheers,
S.

PS: For those not about then, the archives of the list that
lead to rfc2804 are (still) at [1].

[1] https://mailarchive.ietf.org/arch/browse/raven/