[nfsv4] Security document - sense of the working group

Chris Inacio <inacio@cert.org> Tue, 30 January 2024 16:22 UTC

Return-Path: <inacio@cert.org>
X-Original-To: nfsv4@ietfa.amsl.com
Delivered-To: nfsv4@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 45185C18DB9E for <nfsv4@ietfa.amsl.com>; Tue, 30 Jan 2024 08:22:51 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.106
X-Spam-Level:
X-Spam-Status: No, score=-7.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cert.org
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dPWXjUwX9CJg for <nfsv4@ietfa.amsl.com>; Tue, 30 Jan 2024 08:22:47 -0800 (PST)
Received: from USG02-BN3-obe.outbound.protection.office365.us (mail-bn3usg02on0134.outbound.protection.office365.us [23.103.208.134]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0E13EC18DB86 for <nfsv4@ietf.org>; Tue, 30 Jan 2024 08:22:46 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector5401; d=microsoft.com; cv=none; b=dUy2RefvrtYqbymW857sEiZ2r87BaQ5LeEkQEkBjcxd9lo8QZVBHpKbDxeSijBpvOGRXcl3dDUiiNFtMIFrZ6+p/2TH89qJfH2wHjMHScG+MHl5j/cA6rM+TB77dW+f3cjAtK/1UbvEqkqhVS/wa4NOebJiME4wUu1VlPq1SXisbsKv/19Gi8YrjScUgQff6i/c4j7zYAA2NnWSgExFDtq0Aei1it63HZYrvDaN9rDkBsztvLxSBuIKmQtH/RRYZDVD975CoJmQ9oWKXOaKKdtJyyX2efLi4Z8p/4vpYVtlPSboU1kFwzq9ibjF2WCZYb+OFlS+/Jtwrj5Wuvq9ElQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector5401; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=wzp7HHaff8+9Q0dTNXsI80R+kEvvm2LIZ1L5mXHDkzk=; b=VzbytidOnt+S+nWh6Wg/3AzfSTYG4YoNKjumxQ5F5w2PVKHQHRAp8S2Hi6TjkYQK3ekFQKU1a25uUZWR42/kTZeCsOQ0t03ak/rC68aiLM3/iXWrN41Y3qshaAr0z35LYsgnI9RzBoaUX2x2hyk1cfhNtAlL3vE187lcAZNnZHgbGPIBVjtbdpnCUCfECUzawCUNPGsvzoANw//WfGMfzHhA3K2s/L9NgAJQB6c43CwIunKdwEqpA7AEnsEeZk8J7jbLFA52Pe0CNnWh3Ys/WFLd/Z/Xu+MQzQf7blHPRcY8CE4AF0aifHOy3I7zTWn8CsCLmFjbHycdm3szHZaelA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cert.org; dmarc=pass action=none header.from=cert.org; dkim=pass header.d=cert.org; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cert.org; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=wzp7HHaff8+9Q0dTNXsI80R+kEvvm2LIZ1L5mXHDkzk=; b=HyqDb7ggRXxgtUwZHaoYHfbHLwxpkcCmwfYFidlV+Q6H39ZuefC/p9JLFtDGpB5GEA2wU2JKSJ/xVmuURqMmecCtu/zqBUMC5vVDOszybJzRJX6RGU9IdB0qCd1eOKHPSqjudVH0Sxxk70AS5KQLXovvObKWEl8bS4oN2oE73Rs=
Received: from SA1P110MB0975.NAMP110.PROD.OUTLOOK.COM (2001:489a:200:172::5) by SA1P110MB0991.NAMP110.PROD.OUTLOOK.COM (2001:489a:200:172::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7228.34; Tue, 30 Jan 2024 16:22:44 +0000
Received: from SA1P110MB0975.NAMP110.PROD.OUTLOOK.COM ([fe80::4e31:189c:59e1:91fd]) by SA1P110MB0975.NAMP110.PROD.OUTLOOK.COM ([fe80::4e31:189c:59e1:91fd%4]) with mapi id 15.20.7228.029; Tue, 30 Jan 2024 16:22:44 +0000
From: Chris Inacio <inacio@cert.org>
To: NFSv4 <nfsv4@ietf.org>
Thread-Topic: Security document - sense of the working group
Thread-Index: AQHaU5iOL2nlNybSqUeKYW3eNmRxLw==
Date: Tue, 30 Jan 2024 16:22:44 +0000
Message-ID: <7CFC98DA-BFC3-462D-861E-009BCE960F1C@cert.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
x-mailer: Apple Mail (2.3774.400.31)
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cert.org;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: SA1P110MB0975:EE_|SA1P110MB0991:EE_
x-ms-office365-filtering-correlation-id: d7f147b8-b54e-4ebe-9a45-08dc21afb086
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SA1P110MB0975.NAMP110.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230031)(396003)(39830400003)(366004)(136003)(230922051799003)(1800799012)(186009)(64100799003)(451199024)(38070700009)(6486002)(41320700001)(2616005)(4744005)(2906002)(6506007)(6512007)(76116006)(6916009)(66946007)(8676002)(26005)(66556008)(66446008)(66476007)(64756008)(5660300002)(8936002)(71200400001)(15650500001)(122000001)(83380400001)(41300700001)(38100700002)(99936003)(166002)(508600001)(33656002)(86362001)(36756003)(82960400001)(45980500001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 05wX61X4g6cCXQBxuOJptj/rTWTs65kT6STn3rywtbZbavSA5A8UViB4r63cNBRvE26V2GPkjTph3w6jAB123xjoPO2cVYZIuyTyOMdcFXqSygvCfguZK2LYqygkg+Zz6P+ROzoAuKfX+fSMYmA66JpqOu9abPxDmowrbBpuJ6XLQ9nsB+SWBm4IIj56IVomViV6KNTSLMaPsWZCQumgwR09QkWsKMud5bl3rVN2bK7ZJZMdIpm/m+uSeE6L+xt8PCW8cWyMgwhYRHjqIz9cwajZWI9juKRA78IXoEIjYjCMITaXO+aDInk1FeJ/NGHsOOe4gdbfYpuscNxUOu9KNn4mqECO3b7fq87N4uM80cfutCNBAzQVRMi4/6KMh8Y1Up/ARXkT5NtYUbZol7CpziQXQ7vJzpxKFq4/fqnILJ/TM2SKTKEW12LbfpUVpUcOsqyzAhj5DA1z6Qri8L9R91usFAqKzk7QLsWzRJwMrGQgelo7QY5N99/KE5LubmXwtFQpvFtzVnIl4bdWJ5baMm9eBue98GPQ8BeBbXaBCNZTDV4vm0hd68faPoqI0KATR8Luw6xH0iOCDfh5ip88OWz9r615NsXaBy4HCC76FE6PUPKa1ALFIw8hSZbcuRErh4L+zbJ3T1J1Bp4yk1sbgA1J/2A14WDKmNrUvgSjleQ4R2WrAMIw3UBIfd3EuyBpX/k4iuM2twwKHK6rPEWhXkLz8GtIglsTtoJgnHEc6XF6UyEnili/PkuuVsvlMu1x2wX/z9C3+oddxV6QwjMZdzfZAserNq8lKP8VoUN/9orV4OPpEkFzVEPmHRl7h5u3akP2V0CihTcUzFw1l4XrOrT25o7uAJLamq9B2JsW5vho7/8H83eXbGhmgO3KXu9yfIuBP2fp1Euy7FEDV3CXsosZrdjpOjWjqSbQQWLeLC2H2BqgDThLvQtDPHslI3OR0YdeEXETokJ7m50Ut7kLfYEJp5Lo7hBlBA059vNfVZG/aFdvL6KIe7vWU8lo+By9kZIOVZQt4CwXuj9/uFiu6z+5CB0eNB6eHTlYPfveIRyC89DY7iQGlMkgvJ4X3geOuUsHmkvWJR2EQHwFta/ExWjDNb461wBtOMfoDNAZGwpFNoSL1bG1FRUDrPTOoIsb7Iwm/hAriCZG5EvTVHl0inSMblWAfmoM2w4XPkrXNkvrwTrWp9eo3YnV+B+hsg5U3ePmqwWaW5q+NnF3jz9gH7TceN8JXOi9fKLHOe/MvCzhqHaRkhy411YxjKtvpZCIvN1ofvleUS3rXYFUxZ2ixydFsmNVrDk6e5XojK8hSHqbiHdXqzAJmZraymyBswsE6eDbydlykTdOAFFQmSczuBzv0qWG2z3NcvIa3aHa0RUIL3KT06VBdc1Yj8PPhqbrJlcBU6/V0kF6iYNyJtxBvou6xdJo7uWMiOiXL0d81i2ssnSd/Gtch7dTmblD5t71z6IFv/J7POG8uFdsy49D3JtpUjKtX0dn+EqOx9KkD5RZzL5/vcQjV5TZqG++Wr0O
Content-Type: multipart/signed; boundary="Apple-Mail=_5D7BF6CF-BB96-46D3-8210-EE4DB62E8DE0"; protocol="application/pkcs7-signature"; micalg="sha-256"
MIME-Version: 1.0
X-OriginatorOrg: cert.org
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SA1P110MB0975.NAMP110.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: d7f147b8-b54e-4ebe-9a45-08dc21afb086
X-MS-Exchange-CrossTenant-originalarrivaltime: 30 Jan 2024 16:22:44.3832 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 95a9dce2-04f2-4043-995d-1ec3861911c6
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SA1P110MB0991
Archived-At: <https://mailarchive.ietf.org/arch/msg/nfsv4/nlfYUqF5ERBu3X_T-iJqlnZJB2w>
Subject: [nfsv4] Security document - sense of the working group
X-BeenThere: nfsv4@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: NFSv4 Working Group <nfsv4.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/nfsv4/>
List-Post: <mailto:nfsv4@ietf.org>
List-Help: <mailto:nfsv4-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/nfsv4>, <mailto:nfsv4-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 30 Jan 2024 16:22:51 -0000

All,

The chairs would like a sense of the working group with regards to the draft-dnoveck-nfsv4-security-07 (https://datatracker.ietf.org/doc/draft-dnoveck-nfsv4-security/) and adoption.  Please let us know if you think the working group collectively agrees to the body of work proposed in the draft.

The sense of the chairs is that the working group does not have consensus on the scope or set of items presented in the current individual draft.  If that is the case, we would like to know what topics/items in the draft that you do support and which ones you do not believe are ready or that the WG will not be able to reach consensus on.  If there are steps that you think the working group should take towards clarity on any of those topics, the chairs are interested in hearing those too.

Thanks,
NFSv4 Chairs

----
Chris Inacio
inacio@cert.org