Re: [MMUSIC] Alissa Cooper's No Objection on draft-ietf-mmusic-4572-update-12: (with COMMENT)

Christer Holmberg <christer.holmberg@ericsson.com> Thu, 02 February 2017 11:43 UTC

Return-Path: <christer.holmberg@ericsson.com>
X-Original-To: mmusic@ietfa.amsl.com
Delivered-To: mmusic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B87C4129633; Thu, 2 Feb 2017 03:43:23 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.22
X-Spam-Level:
X-Spam-Status: No, score=-4.22 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PXvt8g6oGISD; Thu, 2 Feb 2017 03:43:21 -0800 (PST)
Received: from sesbmg23.ericsson.net (sesbmg23.ericsson.net [193.180.251.37]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7ECA9129629; Thu, 2 Feb 2017 03:43:20 -0800 (PST)
X-AuditID: c1b4fb25-1cbff700000036c9-e5-58931b55929e
Received: from ESESSHC021.ericsson.se (Unknown_Domain [153.88.183.81]) by (Symantec Mail Security) with SMTP id 69.83.14025.55B13985; Thu, 2 Feb 2017 12:43:18 +0100 (CET)
Received: from ESESSMB209.ericsson.se ([169.254.9.76]) by ESESSHC021.ericsson.se ([153.88.183.81]) with mapi id 14.03.0319.002; Thu, 2 Feb 2017 12:43:17 +0100
From: Christer Holmberg <christer.holmberg@ericsson.com>
To: Roman Shpount <roman@telurix.com>
Thread-Topic: [MMUSIC] Alissa Cooper's No Objection on draft-ietf-mmusic-4572-update-12: (with COMMENT)
Thread-Index: AQHSfLiANa/BcGrwW06zr+Sq61BcZKFUkZKA///z5ICAABGQgP//8++AgAEf9IA=
Date: Thu, 02 Feb 2017 11:43:17 +0000
Message-ID: <D4B8E820.17487%christer.holmberg@ericsson.com>
References: <148597343438.19146.978420245557276514.idtracker@ietfa.amsl.com> <7594FB04B1934943A5C02806D1A2204B4BFD8E04@ESESSMB209.ericsson.se> <ED67E387-26CF-4737-8355-01F284997457@cooperw.in> <7594FB04B1934943A5C02806D1A2204B4BFD8EB8@ESESSMB209.ericsson.se> <CAD5OKxtjQde3QYdjFgodc76vpEnKkvOVXgYD+OZ3nvQz4ywSCQ@mail.gmail.com>
In-Reply-To: <CAD5OKxtjQde3QYdjFgodc76vpEnKkvOVXgYD+OZ3nvQz4ywSCQ@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/14.7.1.161129
x-originating-ip: [153.88.183.20]
Content-Type: multipart/alternative; boundary="_000_D4B8E82017487christerholmbergericssoncom_"
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFjrNIsWRmVeSWpSXmKPExsUyM2J7oG6Y9OQIg+azOhbTz/xltDh4cRmr xfsLuhYz/kxktji/cz2TxdTlj1ksZlyYyuzA7jHl90ZWjy9PXjJ5LFnyk8nj1pSCAJYoLpuU 1JzMstQifbsEroy1j9cyFiyOqGhsf8/WwPjNp4uRk0NCwERiV98SNhBbSGAdo8T5fRpdjFxA 9iJGia3bn7J3MXJwsAlYSHT/0wapERFQlfj7fTITSA2zwHQmiXXvvoM1CwtkSJzp6meDKMqU eHn6KwuE7Sdx6i5IAycHi4CKxJzGbkYQm1fAWuLTz5fMEIvPM0mc35IJYnMKBEqsPnQdrJ5R QEzi+6k1YDazgLjErSfzmSCOFpBYsuc8M4QtKvHy8T9WEFtUQE9i+fM1UHFFiavTlzOB3M8s kCCxdU4QxFpBiZMzn7BMYBSdhWTqLISqWUiqIEp0JBbs/sQGYWtLLFv4mhnGPnPgMROEbS3x 5kwrE7KaBYwcqxhFi1OLk3LTjYz1Uosyk4uL8/P08lJLNjECo/jglt+qOxgvv3E8xCjAwajE w2tgMClCiDWxrLgy9xCjBAezkghvkcTkCCHelMTKqtSi/Pii0pzU4kOM0hwsSuK8ZivvhwsJ pCeWpGanphakFsFkmTg4pRoY2SZll/xQ/l/HNj/e/4BV+ZX+L9FfdS+drO8vFl3Wd9f4mqoN 06xjm0Ludx298FVlWpOWyamFa86nMz9ZYbfhsnlq3U9Jtiw+tRtWqyoetj0yFrhy+BfXel6L O9sedybaf0sI92pIDmY9zcDl6u26SHf2r7rzebfb3nkXPQ/ozc26+2j+m0vsSizFGYmGWsxF xYkAaFWyQt4CAAA=
Archived-At: <https://mailarchive.ietf.org/arch/msg/mmusic/4u0E3x3JHWDTGitP67UVaSz1Q6w>
Cc: "mmusic-chairs@ietf.org" <mmusic-chairs@ietf.org>, "mmusic@ietf.org" <mmusic@ietf.org>, Flemming Andreasen <fandreas@cisco.com>, IESG <iesg@ietf.org>, "draft-ietf-mmusic-4572-update@ietf.org" <draft-ietf-mmusic-4572-update@ietf.org>
Subject: Re: [MMUSIC] Alissa Cooper's No Objection on draft-ietf-mmusic-4572-update-12: (with COMMENT)
X-BeenThere: mmusic@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Multiparty Multimedia Session Control Working Group <mmusic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mmusic>, <mailto:mmusic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mmusic/>
List-Post: <mailto:mmusic@ietf.org>
List-Help: <mailto:mmusic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mmusic>, <mailto:mmusic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 02 Feb 2017 11:43:24 -0000

Hi,

Ok, it seems like there is stronger preference for removing the text, and nobody has objected.

So, I will remove the text in the next version of the document.

Regards,

Christer

From: Roman Shpount <roman@telurix.com<mailto:roman@telurix.com>>
Date: Wednesday 1 February 2017 at 22:34
To: Christer Holmberg <christer.holmberg@ericsson.com<mailto:christer.holmberg@ericsson.com>>
Cc: "alissa@cooperw.in<mailto:alissa@cooperw.in>" <alissa@cooperw.in<mailto:alissa@cooperw.in>>, Flemming Andreasen <fandreas@cisco.com<mailto:fandreas@cisco.com>>, "mmusic-chairs@ietf.org<mailto:mmusic-chairs@ietf.org>" <mmusic-chairs@ietf.org<mailto:mmusic-chairs@ietf.org>>, "draft-ietf-mmusic-4572-update@ietf.org<mailto:draft-ietf-mmusic-4572-update@ietf.org>" <draft-ietf-mmusic-4572-update@ietf.org<mailto:draft-ietf-mmusic-4572-update@ietf.org>>, "iesg@ietf.org<mailto:iesg@ietf.org>" <iesg@ietf.org<mailto:iesg@ietf.org>>, "mmusic@ietf.org<mailto:mmusic@ietf.org>" <mmusic@ietf.org<mailto:mmusic@ietf.org>>
Subject: Re: [MMUSIC] Alissa Cooper's No Objection on draft-ietf-mmusic-4572-update-12: (with COMMENT)

I am for removing the text.

_____________
Roman Shpount

On Wed, Feb 1, 2017 at 3:18 PM, Christer Holmberg <christer.holmberg@ericsson.com<mailto:christer.holmberg@ericsson.com>> wrote:
Does anyone object to deleting the text? Martin? Ekr? Roman? Cullen?

Regards,

Christer

-----Original Message-----
From: Alissa Cooper [mailto:alissa@cooperw.in<mailto:alissa@cooperw.in>]
Sent: 01 February 2017 22:15
To: Christer Holmberg <christer.holmberg@ericsson.com<mailto:christer.holmberg@ericsson.com>>
Cc: IESG <iesg@ietf.org<mailto:iesg@ietf.org>>; draft-ietf-mmusic-4572-update@ietf.org<mailto:draft-ietf-mmusic-4572-update@ietf.org>; Flemming Andreasen <fandreas@cisco.com<mailto:fandreas@cisco.com>>; mmusic-chairs@ietf.org<mailto:mmusic-chairs@ietf.org>; mmusic@ietf.org<mailto:mmusic@ietf.org>
Subject: Re: Alissa Cooper's No Objection on draft-ietf-mmusic-4572-update-12: (with COMMENT)


> On Feb 1, 2017, at 3:04 PM, Christer Holmberg <christer.holmberg@ericsson.com<mailto:christer.holmberg@ericsson.com>> wrote:
>
> Hi Alissa,
>
> Thank you for your review! See below.
>
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
>
>> Section 5.1 says:
>>
>> "An endpoint MAY, in addition to its more preferred hash function,
>> also verify that each certificate used matches fingerprints
>> calculated using other hash functions.  Unless there is a matching
>> fingerprint for each tested hash function, the endpoint MUST NOT
>> establish the TLS connection."
>>
>> This seems a little weird to me. It's up to the endpoint to decide
>> whether to check for errors, and then if it does find an error it
>> can't setup the connection, whereas if it just hadn't checked it would be able to setup the connection. I think it would help to explain why an endpoint would be motivated to check multiple fingerprints.
>
> I think the only use-case that came up was a situation where the receiver is not sure which hash function is the "strongest", and therefor checks multiple. However, it was also realized that with the multiple set of hash functions such situation is very unlikely to occur.
>
> So, I could add the following note:
>
> "NOTE: An endpoint might choose to match each used certificate against
> fingerprints calculated using multiple hash functions e.g, if the endpoint is unsure which hash function is the strongest."
>
> ...or we could simply delete the text. I personally would go for that, but in case others want to keep it I have no problem with that.

It would make more sense to me to delete it but either solution would be an improvement I think.

Thanks,
Alissa

>
> Regards,
>
> Christer
>
>

_______________________________________________
mmusic mailing list
mmusic@ietf.org<mailto:mmusic@ietf.org>
https://www.ietf.org/mailman/listinfo/mmusic