Re: [MMUSIC] Stephen Farrell's Discuss on draft-ietf-mmusic-4572-update-12: (with DISCUSS)

Christer Holmberg <christer.holmberg@ericsson.com> Wed, 01 February 2017 08:44 UTC

Return-Path: <christer.holmberg@ericsson.com>
X-Original-To: mmusic@ietfa.amsl.com
Delivered-To: mmusic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A64C612957C; Wed, 1 Feb 2017 00:44:45 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.22
X-Spam-Level:
X-Spam-Status: No, score=-4.22 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wORpsC8yTwNU; Wed, 1 Feb 2017 00:44:43 -0800 (PST)
Received: from sessmg23.ericsson.net (sessmg23.ericsson.net [193.180.251.45]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0A1C3129407; Wed, 1 Feb 2017 00:44:42 -0800 (PST)
X-AuditID: c1b4fb2d-e76b398000007e3d-83-58919ff9bc4e
Received: from ESESSHC001.ericsson.se (Unknown_Domain [153.88.183.21]) by (Symantec Mail Security) with SMTP id 81.56.32317.9FF91985; Wed, 1 Feb 2017 09:44:41 +0100 (CET)
Received: from ESESSMB209.ericsson.se ([169.254.9.76]) by ESESSHC001.ericsson.se ([153.88.183.21]) with mapi id 14.03.0319.002; Wed, 1 Feb 2017 09:43:53 +0100
From: Christer Holmberg <christer.holmberg@ericsson.com>
To: Stephen Farrell <stephen.farrell@cs.tcd.ie>, Eric Rescorla <ekr@rtfm.com>
Thread-Topic: [MMUSIC] Stephen Farrell's Discuss on draft-ietf-mmusic-4572-update-12: (with DISCUSS)
Thread-Index: AQHSe9xPXcuaz7bZMUKOtO0DGNu5LqFTrleAgAAOQICAACuUgA==
Date: Wed, 01 Feb 2017 08:43:53 +0000
Message-ID: <D4B76C5E.172F1%christer.holmberg@ericsson.com>
References: <148587892598.2448.6982128247176255180.idtracker@ietfa.amsl.com> <CABcZeBOxqNdc1aa1mpRtriJxiv8=NnrwjYq6+=vZe6gUAs4z2w@mail.gmail.com> <7d1ccbf6-a81c-1fb7-e753-281770a0b73d@cs.tcd.ie>
In-Reply-To: <7d1ccbf6-a81c-1fb7-e753-281770a0b73d@cs.tcd.ie>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/14.7.1.161129
x-originating-ip: [153.88.183.19]
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg="sha256"; boundary="B_3568790739_35113561"
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFrrNIsWRmVeSWpSXmKPExsUyM2K7qO7P+RMjDDZdlLQ4eHEZq8WK1+fY Ld5f0LWY8Wcis8X5neuZLKYuf8xiMX3vNXYHdo8pvzeyeqztvsrmsWTJTyaPyY/bmANYorhs UlJzMstSi/TtErgyXjw+yVjwxqdi4Y3TbA2M69y7GDk5JARMJE42fGTvYuTiEBJYxyhxcc5Z JghnEaPE0q8PWbsYOTjYBCwkuv9pgzSICPhK/Pi7nw2khlngHaNEY0sXC0hCWCBVYve1TkaI ojSJI3uOskDYThK92zaDxVkEVCSeNd5lBJnJK2AtMWFuFMSuY4wSv1ZvYAKp4RSwlWj8PY8V xGYUEJP4fmoNWJxZQFzi1pP5TBBXi0g8vHiaDcIWlXj5+B9YvaiAnsTy52uYIeKKEu1PGxgh eisl5i2eDdbLKyAocXLmE5YJjKKzkIydhaRsFpIyiLiexN79X9ghbHmJzWveMkPY1hIzfh1k g7AVJaZ0P4SqMZV4ffQj4wJGjlWMosWpxcW56UbGeqlFmcnFxfl5enmpJZsYgdF8cMtv3R2M q187HmIU4GBU4uHdcG9ChBBrYllxZe4hRhWgOY82rL7AKMWSl5+XqiTCu3/uxAgh3pTEyqrU ovz4otKc1OJDjNIcLErivGYr74cLCaQnlqRmp6YWpBbBZJk4OKUaGIWeChUe/X6M9dRBuUei HNnZ/Sf7uT9VpD85+z1SfdnCn0s3LmlS5b3Gs9/cY/HPS+IhJddf1Vx/0LsmxDeo68F5uVVe 9h6bdB96b1r70tKjV9Wvzm5rJc+jP5Mm+Gc0rPOOLHbL2/LS+PD9vgm5mpc/HpsdneXfskRD dt0CjwPpWrOTvJk3eCixFGckGmoxFxUnAgAf3uZU7gIAAA==
Archived-At: <https://mailarchive.ietf.org/arch/msg/mmusic/RO_X0615re-4e8tfjX191PPhTiM>
Cc: Flemming Andreasen <fandreas@cisco.com>, "mmusic-chairs@ietf.org" <mmusic-chairs@ietf.org>, "draft-ietf-mmusic-4572-update@ietf.org" <draft-ietf-mmusic-4572-update@ietf.org>, The IESG <iesg@ietf.org>, mmusic WG <mmusic@ietf.org>
Subject: Re: [MMUSIC] Stephen Farrell's Discuss on draft-ietf-mmusic-4572-update-12: (with DISCUSS)
X-BeenThere: mmusic@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Multiparty Multimedia Session Control Working Group <mmusic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mmusic>, <mailto:mmusic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mmusic/>
List-Post: <mailto:mmusic@ietf.org>
List-Help: <mailto:mmusic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mmusic>, <mailto:mmusic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 01 Feb 2017 08:44:46 -0000

Hi Stephen,

Are you happy with the responses you have received?

Regards,

Christer


On 01/02/17 10:09, "Stephen Farrell" <stephen.farrell@cs.tcd.ie> wrote:

>
>
>On 01/02/17 07:18, Eric Rescorla wrote:
>> On Tue, Jan 31, 2017 at 5:08 PM, Stephen Farrell
>><stephen.farrell@cs.tcd.ie>
>> wrote:
>> 
>>> Stephen Farrell has entered the following ballot position for
>>> draft-ietf-mmusic-4572-update-12: Discuss
>>>
>>> When responding, please keep the subject line intact and reply to all
>>> email addresses included in the To and CC lines. (Feel free to cut this
>>> introductory paragraph, however.)
>>>
>>>
>>> Please refer to
>>>https://www.ietf.org/iesg/statement/discuss-criteria.html
>>> for more information about IESG DISCUSS and COMMENT positions.
>>>
>>>
>>> The document, along with other ballot positions, can be found here:
>>> https://datatracker.ietf.org/doc/draft-ietf-mmusic-4572-update/
>>>
>>>
>>>
>>> ----------------------------------------------------------------------
>>> DISCUSS:
>>> ----------------------------------------------------------------------
>>>
>>>
>>> I've two (or 4 depending how you count:-) things
>>> I'd like to check here. Should be pretty easy to
>>> handle.
>>>
>>> (1) section 5: I'm wondering if we have the right
>>> set of hash functions here. Deprecating md2 and md5
>>> is great, but I have a bunch of questions about the
>>> others:
>>>
>>> (1.1) why not also say that sha-1 MUST NOT be used
>>> for new things (or similar)?
>>>
>>> (1.2) do you really need sha-224 and 384? I think
>>> nobody uses those at all.
>>>
>> 
>> It's certainly not correct that nobody uses SHA-384.
>> 
>> In fact, for TLS 1.3, you can't sign anything with P-384 without using
>> SHA-384.
>
>Fair enough. I guess some p384 will be seen in the web just
>because it'll be seen as longer/stronger with tls1.3.
>
>S
>
>> 
>> -Ekr
>> 
>> 
>>> (1.3) I'm a bit surprised you didn't add sha3 (and
>>> maybe remove sha-512 if that's not needed) Even if
>>> you don't encourage use of sha3, it might be good
>>> to include it in the abnf now in case it gets
>>> popular.
>>>
>>> (2) Wouldn't it be a good plan to say that TLS
>>> as-used MUST conform to BCP195? If not, why not?
>>>
>>>
>>>
>>>
>>> _______________________________________________
>>> mmusic mailing list
>>> mmusic@ietf.org
>>> https://www.ietf.org/mailman/listinfo/mmusic
>>>
>> 
>