[Netconf] regarding keystore and related drafts

Kent Watsen <kwatsen@juniper.net> Mon, 05 March 2018 22:01 UTC

Return-Path: <kwatsen@juniper.net>
X-Original-To: netconf@ietfa.amsl.com
Delivered-To: netconf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2B3111200FC for <netconf@ietfa.amsl.com>; Mon, 5 Mar 2018 14:01:08 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.7
X-Spam-Level:
X-Spam-Status: No, score=-2.7 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id zYySWQIGF_5t for <netconf@ietfa.amsl.com>; Mon, 5 Mar 2018 14:01:06 -0800 (PST)
Received: from mx0b-00273201.pphosted.com (mx0b-00273201.pphosted.com [67.231.152.164]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A72EF12008A for <netconf@ietf.org>; Mon, 5 Mar 2018 14:01:06 -0800 (PST)
Received: from pps.filterd (m0108161.ppops.net [127.0.0.1]) by mx0b-00273201.pphosted.com (8.16.0.22/8.16.0.22) with SMTP id w25LwmA1032602 for <netconf@ietf.org>; Mon, 5 Mar 2018 14:01:05 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : subject : date : message-id : content-type : content-id : content-transfer-encoding : mime-version; s=PPS1017; bh=m2AGgG8yKjtQkmtGJO8iGTarcef9x6irWuVnzoUmHeo=; b=yN6PN5KuFu5NC6vXZw8TBY7/vSzK5az3AgMJvaU33iE8R03Z/IU1PJKE+UFaiN8GNSKz 7JcOt3ZjdajfSRv3u1jg99DhI1uqbJis53oCnzYMh8A3lQDnA72yYYf7tQFyJEjbSv0u LsGechRwoo+s+mP/aHoL9wFPx8oOlGGRfflqz23VR5ibDKn3ozJJBYghc3gQgsf7uWAH lFiYmYTjjMwae61FfWlN5CCO6+cVmWeFRFQOkVX5ZhF6XaDkVjnTYCYQmXAn9UAGgHOW bRAXxotElTllAcP3rhjl8eJjozOKEz1R1nCk9j0GH3aD66eW4+Vp/Wu83IYa1NKuhxUe Kw==
Received: from nam02-sn1-obe.outbound.protection.outlook.com (mail-sn1nam02lp0018.outbound.protection.outlook.com [216.32.180.18]) by mx0b-00273201.pphosted.com with ESMTP id 2ghbxyg71k-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NOT) for <netconf@ietf.org>; Mon, 05 Mar 2018 14:01:05 -0800
Received: from DM5PR05MB3484.namprd05.prod.outlook.com (10.174.240.147) by DM5PR05MB3212.namprd05.prod.outlook.com (10.173.219.146) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.567.5; Mon, 5 Mar 2018 22:01:03 +0000
Received: from DM5PR05MB3484.namprd05.prod.outlook.com ([fe80::d42c:9ad2:ced3:e377]) by DM5PR05MB3484.namprd05.prod.outlook.com ([fe80::d42c:9ad2:ced3:e377%2]) with mapi id 15.20.0567.011; Mon, 5 Mar 2018 22:01:03 +0000
From: Kent Watsen <kwatsen@juniper.net>
To: "netconf@ietf.org" <netconf@ietf.org>
Thread-Topic: regarding keystore and related drafts
Thread-Index: AQHTtM10Ic3/bywG8UKTrdOWuVfDLg==
Date: Mon, 05 Mar 2018 22:01:03 +0000
Message-ID: <A5CA2680-30CE-4135-9692-7064FC7C9B15@juniper.net>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/f.20.0.170309
x-originating-ip: [66.129.241.14]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; DM5PR05MB3212; 6:tftfnmJkaF1tk2yP5ivBVjzFSCxY8xb6ecX7VRZiQixe6ONUOzjbRkqIuUth5xI/KFBRlwqGbGsRWPVJ+v+hvr7tdvjDvbgvWMhoTYD8H+6XpY/Cg0f0GzbmUwxCOiNR/HsrY13HvfNY1ht5G8Y/3RqQu9rG27v2kvt+mr0jxtt8yapKi9hRDukkV865KlDKnd+5+/BgfKK96Tfl3bDobQjS8TSpPuvbmK9fF1QcbgPVCV5QVejW3VHJ1wTfQieCB14/kVubDk83k6FdUTO+pSpFoGZiBQHtX6ZexP3j5/ttLYi9c3OiutzMVXWpv5dIagjYGkns43kdiRl9trH/Z4f+XejuWlJlYHCrU2dIMqfM5aV4KNrbe6SQ50ocLKKD; 5:XF/VLJgO4P6caO3i6jiPTbR1KDYac44JeovghE5NMCqtBwEaBFFfqRVIY/uTH23PSxB7EXt7s8ZFM+dgaxNgHhzepMKdUu6LOPpXS5uP670jQK9Tp5ZJQmqfiyK08LT5G4Ktqry9Wk+Rwa5iNxcJWqIXMtiTYandwRbyMmr/JhE=; 24:UUr/dmuuQD+zotW1JRpA+Jqsyp1greXRsxpPOCT96q2gtPf8okcOOOOSFWGetCy2jrHpQY1l520GnfjBjdoP4Vus4sWZ9uHjlVy5RyUtxFw=; 7:ch9wLW145AAJDtqK4MyEZ6wa+CM+aAuM8VU3aVXv4eSZFnVdY9+aUWvOphca5msN8CWKrDM4SBDxdq9Et2U1HInbzgX3O+JnroqrAi4PfOBVMksGResKg27ajCATKZAQHOkE6/vEJKLDyby0CiSoi4TxLJbNhu6SyP2FKvNI+KJK8QYsa0uaDCVaiBJntDKSLor1dGENVUQwnB/ntg/nLgIkHt3+UJ/OjKJ0Nuarz0UTGPPC9Sukz7KrnI3O9Sly
x-ms-exchange-antispam-srfa-diagnostics: SSOS;
x-ms-office365-filtering-ht: Tenant
x-ms-office365-filtering-correlation-id: cd688b26-e292-4f74-c3b0-08d582e496dd
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(48565401081)(5600026)(4604075)(3008032)(4534165)(4627221)(201703031133081)(201702281549075)(2017052603324)(7153060)(7193020); SRVR:DM5PR05MB3212;
x-ms-traffictypediagnostic: DM5PR05MB3212:
x-microsoft-antispam-prvs: <DM5PR05MB32122A73BDB31B84F4EDB343A5DA0@DM5PR05MB3212.namprd05.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:;
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(8211001083)(6040501)(2401047)(5005006)(8121501046)(10201501046)(3002001)(3231220)(944501244)(52105095)(93006095)(93001095)(6055026)(6041288)(20161123564045)(20161123562045)(20161123560045)(20161123558120)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(6072148)(201708071742011); SRVR:DM5PR05MB3212; BCL:0; PCL:0; RULEID:; SRVR:DM5PR05MB3212;
x-forefront-prvs: 06022AA85F
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(396003)(346002)(376002)(366004)(39860400002)(39380400002)(189003)(199004)(33656002)(478600001)(82746002)(2900100001)(186003)(105586002)(6346003)(6506007)(5660300001)(26005)(36756003)(99286004)(102836004)(58126008)(966005)(5250100002)(2501003)(86362001)(83716003)(14454004)(316002)(81156014)(1730700003)(8676002)(81166006)(8936002)(3280700002)(97736004)(66066001)(6116002)(3846002)(2906002)(53936002)(6306002)(6512007)(6916009)(5640700003)(6486002)(6436002)(2351001)(25786009)(3660700001)(7736002)(68736007)(106356001)(305945005); DIR:OUT; SFP:1102; SCL:1; SRVR:DM5PR05MB3212; H:DM5PR05MB3484.namprd05.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; MX:1; A:1; LANG:en;
received-spf: None (protection.outlook.com: juniper.net does not designate permitted sender hosts)
x-microsoft-antispam-message-info: N6Dz1T/6yL0Ls9nXMu5VjDdGKLyEIObeC3u8IvToJKeDa/mN4CHeVW8WeTYegeUDgxiXppsmyaSGRDpatXIUX9GJKDeFUYqPMZmxGf7CZopJVBfmTJdORzQf2AH1hA9+Gt5jlC0DURdb0KQ1uOiHNY/H4UV8/d2wGJY3AnVfGLg4Cm8cGgcUofMjO+n+cIgRuD3z5lDSycHLac5ng+yXu/slncCfkEvU3nllPgJfynAowZS/9R+90cRCXLuzPC65jSLzEhvyo0zLBTHZo2ANHG9/VjUCrBs5Doq9xKOM+X98u82rVu88GewcNLrMmpXF5WtJUBrE7IP5Fa7IPxZ0Qg==
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-ID: <12D59DE12CECB742BF97A0D5BF25F817@namprd05.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-Network-Message-Id: cd688b26-e292-4f74-c3b0-08d582e496dd
X-MS-Exchange-CrossTenant-originalarrivaltime: 05 Mar 2018 22:01:03.7125 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM5PR05MB3212
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10432:, , definitions=2018-03-05_09:, , signatures=0
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 priorityscore=1501 malwarescore=0 suspectscore=0 phishscore=0 bulkscore=0 spamscore=0 clxscore=1015 lowpriorityscore=0 mlxscore=0 impostorscore=0 mlxlogscore=999 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1711220000 definitions=main-1803050250
Archived-At: <https://mailarchive.ietf.org/arch/msg/netconf/DgW_7KrOmnvpYp-aMoszAF1snsU>
Subject: [Netconf] regarding keystore and related drafts
X-BeenThere: netconf@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Network Configuration WG mailing list <netconf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netconf>, <mailto:netconf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netconf/>
List-Post: <mailto:netconf@ietf.org>
List-Help: <mailto:netconf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netconf>, <mailto:netconf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Mar 2018 22:01:08 -0000

As I recall, we left off with a general dissatisfaction with the keystore module's name and scope of content.  A couple of the larger issues were:

  - why call it "keystore" when it no longer stores keys?
  - should we factor out the crypto types into a module of its own?

So, with this in mind, I just submitted the following two I-Ds as candidate replacements for draft-ietf-netconf-keystore:

  https://tools.ietf.org/html/draft-kwatsen-netconf-trust-anchors-00
  https://tools.ietf.org/html/draft-kwatsen-netconf-crypto-types-00

Comments?  We can also discuss this idea some during the meeting in London.

Kent  // contributor