Re: [nfsv4] NFS over TLS for laptops

Chuck Lever <chuck.lever@oracle.com> Tue, 26 January 2021 17:19 UTC

Return-Path: <chuck.lever@oracle.com>
X-Original-To: nfsv4@ietfa.amsl.com
Delivered-To: nfsv4@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EF7983A0B63 for <nfsv4@ietfa.amsl.com>; Tue, 26 Jan 2021 09:19:03 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.501
X-Spam-Level:
X-Spam-Status: No, score=-2.501 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=oracle.com header.b=S5NsBazF; dkim=pass (1024-bit key) header.d=oracle.onmicrosoft.com header.b=a0InAh/N
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id oiLkHX9gNUkg for <nfsv4@ietfa.amsl.com>; Tue, 26 Jan 2021 09:19:02 -0800 (PST)
Received: from userp2130.oracle.com (userp2130.oracle.com [156.151.31.86]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 30B3B3A0B59 for <nfsv4@ietf.org>; Tue, 26 Jan 2021 09:19:01 -0800 (PST)
Received: from pps.filterd (userp2130.oracle.com [127.0.0.1]) by userp2130.oracle.com (8.16.0.42/8.16.0.42) with SMTP id 10QGroTD063808; Tue, 26 Jan 2021 17:18:56 GMT
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=oracle.com; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-id : content-transfer-encoding : mime-version; s=corp-2020-01-29; bh=5TEuhQ/SZrlKXLm2HK23gC3l9WFQOdENlasZpKZkEp8=; b=S5NsBazFHwxH1W0GZDDO81ZKLCeIVq1ycBFkT1n03ykf/yAPmTZDfCgtTkTUpGjtXzAR BIdnAsQcXHtqjRm34MuzaMfdi/XKiualfd98ymOXJTWyZc7IRYFAYy+gqoCBJZNcFEUk I5x5wAWF2WvMdb20SWp2qPCMbS6/P0l/xsXrPd9oW43ZVlGLcxFCggezVtnpAy3ZNjs7 sfrUxBqnxUK934cJovqDijSClBVAMe2AKlZzVkp4xy2Ma+jLNClenRlngf4YmmYlruDM FkwSFP9j8RGTiWizLdBPW4sCDLzFhgbfFTpsSjLgS+FWxsBvYWQDn0jwaSw64+BQPZu2 /g==
Received: from userp3020.oracle.com (userp3020.oracle.com [156.151.31.79]) by userp2130.oracle.com with ESMTP id 368b7qu5gx-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Tue, 26 Jan 2021 17:18:55 +0000
Received: from pps.filterd (userp3020.oracle.com [127.0.0.1]) by userp3020.oracle.com (8.16.0.42/8.16.0.42) with SMTP id 10QHFdwQ022222; Tue, 26 Jan 2021 17:16:55 GMT
Received: from nam11-dm6-obe.outbound.protection.outlook.com (mail-dm6nam11lp2174.outbound.protection.outlook.com [104.47.57.174]) by userp3020.oracle.com with ESMTP id 368wjrd6g1-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Tue, 26 Jan 2021 17:16:55 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=GDohxjX7WKnla9eAGtueq96vfToliUSMWmd6wI0Qd5WmowQFIlrJVerAj5tQENBwjHywkIFBWtaTXPu/cI0yGnFQ4G+xmMfe1lkUsDHA/5JCAHNcRCBDBKaUDn2bV3zd3WzZRhAIUjk0qS2U+Si95fCuNsK4ASdOSGGQJxGNLVFK+u+XMi8L/9EhD9fCrQsVstW+Qc2RGaaBFovbNQSzX9UxivrlCjRveR0GhK/G7coBrtV/ott4Kix7VkPrdIIKEjhydLHR2ZexjMQy1WlkTzoI8Ook4fD/VO8p4F5wr/pgtmtwA1BvxIbR2xGCkHjXxidVhy2nswi9pZP9ruvJXg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=5TEuhQ/SZrlKXLm2HK23gC3l9WFQOdENlasZpKZkEp8=; b=VIBWSalVmDZKME8guHB64Ji7bQCoDwOjhuhUAoZ+x8P/m41Y3TgTmuIT+qR/yIsL2Gy9yDrVJZ+Ht9eYdpNfb+yWB25MmoePHD0RIhTUFxsl5b96ZYnyHsq2zM2sBnU/nnBnUGxGbEyX0O/EVg9v6DQvCXw+JwOn25/ZU9rk4kCGPMRS4WXs35Zm07DASO3X2dc2eL/lOgvKGdMLiSZvEVmTVl61EMxQo8fQ4uIm/1FPG7Ojdpn7+Pz40FvgBS6agLJm8ANK76yuwo1vdPeiDwwECbkqvq0vhwWz1/ZdNm+PyLf1/4vcydibnGIv1QtTGbOFfTDT5gY9FCr1Is8DIw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=oracle.com; dmarc=pass action=none header.from=oracle.com; dkim=pass header.d=oracle.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=oracle.onmicrosoft.com; s=selector2-oracle-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=5TEuhQ/SZrlKXLm2HK23gC3l9WFQOdENlasZpKZkEp8=; b=a0InAh/N993Gfd0LhR3k269V8A3ld9Wo5M41NNuLC3JawY1D4p/j8DjWJ8/b78WZVVW3CqYdcxVGVr1rUvJ2P7W3c1wSqIolb5ww7hegrnOkY+OY1/fmigAWnowbqLSw4sQWRZbIslcxrw64Nt59OktAapcf0of9JmHNAvX506M=
Received: from SJ0PR10MB4688.namprd10.prod.outlook.com (2603:10b6:a03:2db::24) by SJ0PR10MB4605.namprd10.prod.outlook.com (2603:10b6:a03:2d9::24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3784.13; Tue, 26 Jan 2021 17:16:52 +0000
Received: from SJ0PR10MB4688.namprd10.prod.outlook.com ([fe80::6da8:6d28:b83:702b]) by SJ0PR10MB4688.namprd10.prod.outlook.com ([fe80::6da8:6d28:b83:702b%4]) with mapi id 15.20.3784.019; Tue, 26 Jan 2021 17:16:52 +0000
From: Chuck Lever <chuck.lever@oracle.com>
To: Magnus Westerlund <magnus.westerlund@ericsson.com>
CC: David Noveck <davenoveck@gmail.com>, "rmacklem@uoguelph.ca" <rmacklem@uoguelph.ca>, "nfsv4@ietf.org" <nfsv4@ietf.org>
Thread-Topic: [nfsv4] NFS over TLS for laptops
Thread-Index: AQHW0Npp0eREn/AgAUy2E+mqMBHgcqn2yyYAgACS67yAAO+9eYAAHOsAgAN9YtuAAviagIAAMFYUgAGN13OAATNIAIADjnFRgAkAewCAACjPgIABYW2AgAGUuQqAAOSEAIABMIxxgAC1MYCAJiGEgIAAAI2A
Date: Tue, 26 Jan 2021 17:16:52 +0000
Message-ID: <A76F5E4E-9282-485F-AA8B-17424E11C911@oracle.com>
References: <YQXPR0101MB09680BC1A27265F81C5B5671DDC40@YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM> <DEBCFB38-9A1A-43BB-A8DF-0C64792AF30F@oracle.com> <YQXPR0101MB09689564C0543291E25FB274DDC20@YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM> <YQXPR0101MB09687759005C97725CFC1AFCDDC10@YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM> <13B0E10F-0E40-47AC-A6E3-495DF578DCAB@oracle.com> <YQXPR0101MB0968D1AB5DC7A55DE4E5F404DDDE0@YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM> <1113F47A-BDA1-4C34-95B4-1EB8076BA071@oracle.com> <20201229190707.GB89068@kduck.mit.edu> <0D8595B7-4636-4E6A-A5C1-E0FE85D820D0@oracle.com> <YQXPR0101MB096833395FEE6E63590BE7B5DDD60@YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM> <20210101055832.GK93151@kduck.mit.edu> <YQXPR0101MB09684118744ED0EA876DCE02DDD40@YQXPR0101MB0968.CANPRD01.PROD.OUTLOOK.COM> <CADaq8jfxsLcTHQrtSF3GZ04+tmcjPg_KK5kHFaD1N9T00pH6sg@mail.gmail.com> <82d63791181597be36e1a1c208d6a5c0616b5092.camel@ericsson.com>
In-Reply-To: <82d63791181597be36e1a1c208d6a5c0616b5092.camel@ericsson.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: ericsson.com; dkim=none (message not signed) header.d=none;ericsson.com; dmarc=none action=none header.from=oracle.com;
x-originating-ip: [68.61.232.219]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 93857cb1-ed33-4b5d-8d55-08d8c21e2c80
x-ms-traffictypediagnostic: SJ0PR10MB4605:
x-microsoft-antispam-prvs: <SJ0PR10MB4605FABE22436F5BFC215DC493BC9@SJ0PR10MB4605.namprd10.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SJ0PR10MB4688.namprd10.prod.outlook.com; PTR:; CAT:NONE; SFS:(346002)(366004)(396003)(376002)(136003)(39860400002)(44832011)(5660300002)(26005)(478600001)(316002)(91956017)(71200400001)(6512007)(4326008)(6506007)(53546011)(4744005)(2616005)(86362001)(2906002)(54906003)(6916009)(66446008)(66946007)(66556008)(64756008)(66476007)(36756003)(8936002)(33656002)(76116006)(186003)(6486002)(8676002)(966005)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="us-ascii"
Content-ID: <7874F12FF222054FBDBD0CF4AD543847@namprd10.prod.outlook.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: oracle.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SJ0PR10MB4688.namprd10.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 93857cb1-ed33-4b5d-8d55-08d8c21e2c80
X-MS-Exchange-CrossTenant-originalarrivaltime: 26 Jan 2021 17:16:52.3548 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 4e2c6054-71cb-48f1-bd6c-3a9705aca71b
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: nygy3xaSMTGb+YlW10JXnEY3Zl6PHmZnlpOGorXOtcypQYQrP41jH+2FdbppYL1qdnLx0ejvRptxSykrYjy6/Q==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SJ0PR10MB4605
X-Proofpoint-Virus-Version: vendor=nai engine=6200 definitions=9876 signatures=668683
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 phishscore=0 suspectscore=0 adultscore=0 mlxscore=0 malwarescore=0 spamscore=0 mlxlogscore=940 bulkscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2009150000 definitions=main-2101260089
X-Proofpoint-Virus-Version: vendor=nai engine=6200 definitions=9876 signatures=668683
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 suspectscore=0 spamscore=0 phishscore=0 adultscore=0 impostorscore=0 malwarescore=0 lowpriorityscore=0 bulkscore=0 priorityscore=1501 mlxscore=0 clxscore=1015 mlxlogscore=999 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2009150000 definitions=main-2101260088
Archived-At: <https://mailarchive.ietf.org/arch/msg/nfsv4/Fe4KMcZwZUpF2q1cQTQBrnLx7QE>
Subject: Re: [nfsv4] NFS over TLS for laptops
X-BeenThere: nfsv4@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: NFSv4 Working Group <nfsv4.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/nfsv4/>
List-Post: <mailto:nfsv4@ietf.org>
List-Help: <mailto:nfsv4-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 26 Jan 2021 17:19:04 -0000

Hi Magnus-

> On Jan 26, 2021, at 12:14 PM, Magnus Westerlund <magnus.westerlund@ericsson.com> wrote:
> 
> Hi,
> 
> I intended in the Interim to ask for a clarificaiton if any in this thread
> affects the approved draft? In other words, do we need to run through a process
> of getting consensus any changes to 
> https://datatracker.ietf.org/doc/draft-ietf-nfsv4-rpc-tls/ ?

My understanding is that we will relegate the discussion of specific
NFS server policy implementations to the NFS-on-TLS specification,
in whatever subsequent document it lands in. rpc-tls will not be
affected.

--
Chuck Lever