Re: [nfsv4] Fwd: New Version Notification for draft-cel-nfsv4-rpc-tls-01.txt

"McDonald, Alex" <alexmc@netapp.com> Mon, 19 November 2018 22:33 UTC

Return-Path: <alexmc@netapp.com>
X-Original-To: nfsv4@ietfa.amsl.com
Delivered-To: nfsv4@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 085CD1252B7 for <nfsv4@ietfa.amsl.com>; Mon, 19 Nov 2018 14:33:16 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.902
X-Spam-Level:
X-Spam-Status: No, score=-1.902 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=netapp.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id eSrPdl7XbmKM for <nfsv4@ietfa.amsl.com>; Mon, 19 Nov 2018 14:33:12 -0800 (PST)
Received: from NAM01-SN1-obe.outbound.protection.outlook.com (mail-eopbgr820079.outbound.protection.outlook.com [40.107.82.79]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 00D7F12D4E7 for <nfsv4@ietf.org>; Mon, 19 Nov 2018 14:33:11 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=netapp.onmicrosoft.com; s=selector1-netapp-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=5JEeJT7iNzyg2Z5fuQxeHF78RsunYjd6/FhcuGgUMoY=; b=YPJ2v3bUpapGmoWOqfFcfEg6lXgut/QnchVvRS4KRcnHODoyCvt9eNZ2HddsOpCL7lcCuOI5+CNXJSBwj4pZ9RRS/umxGAvxMoLklTr/Gm0jKqwM8mmEnTBl1ePMdQsoZTL20I5XXmuWSqjT0MR/6hE3s8PPYWoEO99uHN9t7Mw=
Received: from CO2PR0601MB759.namprd06.prod.outlook.com (10.141.245.146) by CO2PR0601MB757.namprd06.prod.outlook.com (10.141.245.144) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1294.33; Mon, 19 Nov 2018 22:33:09 +0000
Received: from CO2PR0601MB759.namprd06.prod.outlook.com ([fe80::659d:ec4d:d1d4:94eb]) by CO2PR0601MB759.namprd06.prod.outlook.com ([fe80::659d:ec4d:d1d4:94eb%2]) with mapi id 15.20.1294.048; Mon, 19 Nov 2018 22:33:09 +0000
From: "McDonald, Alex" <alexmc@netapp.com>
To: Chuck Lever <chuck.lever@oracle.com>, NFSv4 <nfsv4@ietf.org>
Thread-Topic: [nfsv4] Fwd: New Version Notification for draft-cel-nfsv4-rpc-tls-01.txt
Thread-Index: AQHUgCBgNjL2AEYA2Eq+kRji2zix+qVXru1g
Date: Mon, 19 Nov 2018 22:33:09 +0000
Message-ID: <CO2PR0601MB7597A7490C43DAE5A3268E6B5D80@CO2PR0601MB759.namprd06.prod.outlook.com>
References: <154264272736.5235.8955444239583271708.idtracker@ietfa.amsl.com> <50A96C3A-DBA4-4A6C-B883-664E59E24534@oracle.com>
In-Reply-To: <50A96C3A-DBA4-4A6C-B883-664E59E24534@oracle.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-dg-ref: PG1ldGE+PGF0IG5tPSJib2R5LnR4dCIgcD0iYzpcdXNlcnNcYWxleG1jXGFwcGRhdGFccm9hbWluZ1wwOWQ4NDliNi0zMmQzLTRhNDAtODVlZS02Yjg0YmEyOWUzNWJcbXNnc1xtc2ctMTRlNmRhNTMtZWM0Yi0xMWU4LWFmZDktYTRjNDk0NDEyNjViXGFtZS10ZXN0XDE0ZTZkYTU1LWVjNGItMTFlOC1hZmQ5LWE0YzQ5NDQxMjY1YmJvZHkudHh0IiBzej0iMzAzNiIgdD0iMTMxODcxNDAzODYzNzUxNjE3IiBoPSJOelhaY2VUZkRqRlNMMVF2QTNrVWQyQmtTaFU9IiBpZD0iIiBibD0iMCIgYm89IjEiLz48L21ldGE+
x-dg-rorf:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=alexmc@netapp.com;
x-originating-ip: [2a00:23c5:7e28:b600:5cfc:7dc9:421b:3760]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; CO2PR0601MB757; 6:wyVtVmbkf6J8YanNM+yiA3aA56LppzryCPsikKkKvTzWSCKsHAJrcsR4v9FXf8KFUfnsGbgVZ1Y3pSBY2Vu+4QgDNXNyfIxexC1OExfLrVlOGBC8ZNAvoMmtM9Hak8FqTw+T91Mw8DjGXgOXERw0wOzESvWJxsrIizK2YNhiP12xD1nMoNCjr+ouVqtcXB0m7rzJYQUakAUbWX4lyOCzdLxqLQcAeEFC3NHkclBJnyX4DbOaF/9jpXw2dhr4Bl4UK1+D84gBWMJsqBmRj5Z+3FqjCtaWDKqvz6YpVWzzo/hSkKPjuEpbREcYK2eGf0aUiu+fRlOfDC6WNzcOrfaAYRDYVSk2YiVXQxgZ1AMzw1mP7MUKWUx9GqJTgl5BUR/0eTKTodaR24aHohq8V6krK4GK639ytSZ59xSM2NkHOXodmQMCvTwM69+wXEMXde4kch9B/DZun9YR6WLQj/kShR5dgbzauR860NkuMRie3k8=; 5:msBsmWwSZb3c2Yv/r1TkwjSfkbDa/UELxXfZ7Gw02yWxP+E87wm+iO15Jt59bTvWEE/c7Yf9gSXpfPouf0PWjzHJTjsobX6iKckXlvMUPSJQmgUnHCq9RsX9TSNaQOg/sxQNRetgEL7lOD87zr2/KS0bBtd/xmy8gnFrYiinaws=; 7:0FEA8wJvPT+VHbNqcmq3q2CI38YeC8PYQ8TL8HTQDgT//DUJbh+Or//fgIgviK0Rb2qqDJtfW9zsvesiu+21cuGd7LvxK60dowg81RIwFGh9tUHo4/jTLDH9x28YQVq8wP80hVaZQjru8cVe1+4qeA==
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-ms-office365-filtering-correlation-id: 1d74d134-feeb-4b07-a0fc-08d64e6efb95
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390098)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600074)(711020)(2017052603328)(7193020); SRVR:CO2PR0601MB757;
x-ms-traffictypediagnostic: CO2PR0601MB757:
x-microsoft-antispam-prvs: <CO2PR0601MB75723D4599B6BC43E58FF78B5D80@CO2PR0601MB757.namprd06.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(192374486261705)(158342451672863)(120809045254105)(146099531331640);
x-ms-exchange-senderadcheck: 1
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(8211001083)(6040522)(2401047)(8121501046)(5005006)(93006095)(93001095)(10201501046)(3002001)(3231441)(944501410)(52105112)(6055026)(148016)(149066)(150057)(6041310)(20161123560045)(20161123558120)(20161123564045)(20161123562045)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(201708071742011)(7699051)(76991095); SRVR:CO2PR0601MB757; BCL:0; PCL:0; RULEID:; SRVR:CO2PR0601MB757;
x-forefront-prvs: 08617F610C
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(346002)(376002)(366004)(396003)(136003)(39860400002)(199004)(189003)(13464003)(65554003)(6436002)(478600001)(86362001)(25786009)(486006)(14454004)(6246003)(71200400001)(71190400001)(110136005)(6306002)(55016002)(966005)(53936002)(316002)(9686003)(2906002)(11346002)(33656002)(561944003)(446003)(7696005)(76176011)(106356001)(256004)(476003)(97736004)(6506007)(14444005)(53546011)(4001150100001)(68736007)(46003)(102836004)(8676002)(81166006)(81156014)(6116002)(2900100001)(105586002)(8936002)(74316002)(305945005)(229853002)(186003)(99286004)(7736002)(5660300001)(15650500001); DIR:OUT; SFP:1101; SCL:1; SRVR:CO2PR0601MB757; H:CO2PR0601MB759.namprd06.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: netapp.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: fRzWpaSisz/PfcEBuYK3nZVm+8KQiOqRT/goFuwmCTbPmBnySA+mwRCc4IlX2xvpRY9N17TN0vqZ2v4LtWI8zJIkAUGMtFh0GsiU/AQ5yLl2/4gJE+4fHNJISlXpAlqDUWjFsECJpjIQX24jotSCAp4/UXlTjjSl5prKx6gAjcirwBxjtABR0PoJeanOY/oqO85wQxD72beg3Tmpyi7YSbxMODfp5DgOR0TB4+tJF+ymHRfURSsoyWPCjBzEvzLu659J41mSY4ygN5b4qt/Rb/YRCVYtQgLW0nDa/c8K1Le7pQKUj0J/3FGl+K0XUgjBzoIk8Ayx8XzngcoqDwAsOoa81D605TO0EzGoYq74XNA=
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: netapp.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 1d74d134-feeb-4b07-a0fc-08d64e6efb95
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 Nov 2018 22:33:09.1726 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 4b0911a0-929b-4715-944b-c03745165b3a
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CO2PR0601MB757
Archived-At: <https://mailarchive.ietf.org/arch/msg/nfsv4/5q3KITFJPWm0Pl6rFFic4QKZzao>
Subject: Re: [nfsv4] Fwd: New Version Notification for draft-cel-nfsv4-rpc-tls-01.txt
X-BeenThere: nfsv4@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: NFSv4 Working Group <nfsv4.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/nfsv4/>
List-Post: <mailto:nfsv4@ietf.org>
List-Help: <mailto:nfsv4-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 19 Nov 2018 22:33:16 -0000

Hi Chuck

Apologies for top posting, blame MS

I was interested in the comment "We believe the combination of host authentication via TLS and user authentication via RPC provides optimal security, efficiency, and flexibility,". There's been a huge amount of negative press for TLS client auth, but there's been a push for TLS token binding as a basis for better client/server authentication. Does the proposal need to consider work in this area?

-----Original Message-----
From: nfsv4 <nfsv4-bounces@ietf.org> On Behalf Of Chuck Lever
Sent: Monday, November 19, 2018 15:56
To: NFSv4 <nfsv4@ietf.org>
Subject: [nfsv4] Fwd: New Version Notification for draft-cel-nfsv4-rpc-tls-01.txt


Hi-

> Begin forwarded message:
>
> From: internet-drafts@ietf.org
> Subject: New Version Notification for draft-cel-nfsv4-rpc-tls-01.txt
> Date: November 19, 2018 at 10:52:07 AM EST
> To: "Trond Myklebust" <trond.myklebust@hammerspace.com>, "Charles 
> Lever" <chuck.lever@oracle.com>, "Chuck Lever" 
> <chuck.lever@oracle.com>
>
>
> A new version of I-D, draft-cel-nfsv4-rpc-tls-01.txt has been 
> successfully submitted by Charles Lever and posted to the IETF 
> repository.
>
> Name:         draft-cel-nfsv4-rpc-tls
> Revision:     01
> Title:                Remote Procedure Call Encryption By Default
> Document date:        2018-11-19
> Group:                Individual Submission
> Pages:                9
> URL:            https://www.ietf.org/internet-drafts/draft-cel-nfsv4-rpc-tls-01.txt
> Status:         https://datatracker.ietf.org/doc/draft-cel-nfsv4-rpc-tls/
> Htmlized:       https://tools.ietf.org/html/draft-cel-nfsv4-rpc-tls-01
> Htmlized:       https://datatracker.ietf.org/doc/html/draft-cel-nfsv4-rpc-tls
> Diff:           https://www.ietf.org/rfcdiff?url2=draft-cel-nfsv4-rpc-tls-01
>
> Abstract:
>   This document describes a mechanism that enables encryption of in-
>   transit Remote Procedure Call (RPC) transactions with little
>   administrative overhead and full interoperation with RPC
>   implementations that do not support this mechanism.  This document
>   updates RFC 5531.
>
>
>
>
> Please note that it may take a couple of minutes from the time of 
> submission until the htmlized version and diff are available at tools.ietf.org.
>
> The IETF Secretariat

Minor changes in revision 01:
- Correct a legal issue reported by idnits
- Clarify terminology throughout document
- Add editor's note in Section 4.3 "Authentication"
- Wordsmithing throughout


The immediate question I have is whether members of WG feel this topic and document are important enough to promote rpc-tls-01 to Working Group document status. If yes, I can submit the next revision as draft-ietf-nfsv4-rpc-tls-00.


--
Chuck Lever



_______________________________________________
nfsv4 mailing list
nfsv4@ietf.org
https://www.ietf.org/mailman/listinfo/nfsv4