Re: [OAUTH-WG] Question regarding RFC 7800

Ludwig Seitz <ludwig.seitz@ri.se> Mon, 08 April 2019 06:35 UTC

Return-Path: <ludwig.seitz@ri.se>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0FB68120161 for <oauth@ietfa.amsl.com>; Sun, 7 Apr 2019 23:35:32 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=risecloud.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1zFJEQARm10P for <oauth@ietfa.amsl.com>; Sun, 7 Apr 2019 23:35:29 -0700 (PDT)
Received: from EUR02-AM5-obe.outbound.protection.outlook.com (mail-am5eur02on0630.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe07::630]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BA2DF1200FC for <oauth@ietf.org>; Sun, 7 Apr 2019 23:35:28 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=RISEcloud.onmicrosoft.com; s=selector1-ri-se; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=FTkSRmklmmBDFtMyrGrjL6FZsdVBxYf4ymYCbrIJKz8=; b=NuRwcLWotzW8WN85UL92Nkow7T7C/LXhQda0RQt2rBldVkM6RLdiidB62j1GoVqc+FY+ySAkT0ldFk3EurpzPT9MoUcDlA66Fsy2h/oLdt6uoC+28JCQwoPqGXDO8V4LZWJwSFGeBT8FtatXmdX5sJ24cP6xRXawNK09zher94s=
Received: from VI1P18901CA0012.EURP189.PROD.OUTLOOK.COM (2603:10a6:801::22) by DB6P18901MB0104.EURP189.PROD.OUTLOOK.COM (2603:10a6:4:27::11) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1771.13; Mon, 8 Apr 2019 06:35:26 +0000
Received: from HE1EUR02FT018.eop-EUR02.prod.protection.outlook.com (2a01:111:f400:7e05::206) by VI1P18901CA0012.outlook.office365.com (2603:10a6:801::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.20.1771.16 via Frontend Transport; Mon, 8 Apr 2019 06:35:26 +0000
Authentication-Results: spf=pass (sender IP is 194.218.146.197) smtp.mailfrom=ri.se; ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=bestguesspass action=none header.from=ri.se;
Received-SPF: Pass (protection.outlook.com: domain of ri.se designates 194.218.146.197 as permitted sender) receiver=protection.outlook.com; client-ip=194.218.146.197; helo=mail.ri.se;
Received: from mail.ri.se (194.218.146.197) by HE1EUR02FT018.mail.protection.outlook.com (10.152.10.248) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256) id 15.20.1771.16 via Frontend Transport; Mon, 8 Apr 2019 06:35:26 +0000
Received: from [10.112.134.122] (10.100.0.158) by sp-mail-2.sp.se (10.100.0.162) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1713.5; Mon, 8 Apr 2019 08:35:25 +0200
To: oauth@ietf.org
References: <AM0PR04MB63225DB815E67E7EF70F3C06E5570@AM0PR04MB6322.eurprd04.prod.outlook.com>
From: Ludwig Seitz <ludwig.seitz@ri.se>
Message-ID: <3d290fc5-7120-d40d-8513-7903702fd364@ri.se>
Date: Mon, 08 Apr 2019 08:35:12 +0200
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.6.1
MIME-Version: 1.0
In-Reply-To: <AM0PR04MB63225DB815E67E7EF70F3C06E5570@AM0PR04MB6322.eurprd04.prod.outlook.com>
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg="sha-256"; boundary="------------ms070409050900020000080906"
X-Originating-IP: [10.100.0.158]
X-ClientProxiedBy: sp-mail-1.sp.se (10.100.0.161) To sp-mail-2.sp.se (10.100.0.162)
X-EOPAttributedMessage: 0
X-Forefront-Antispam-Report: CIP:194.218.146.197; IPV:NLI; CTRY:SE; EFV:NLI; SFV:NSPM; SFS:(10009020)(136003)(39850400004)(396003)(376002)(346002)(2980300002)(199004)(189003)(104016004)(77096007)(6916009)(74482002)(16526019)(22746008)(31686004)(40036005)(36756003)(22756006)(5000100001)(64126003)(26005)(76176011)(386003)(5024004)(97736004)(53546011)(186003)(2906002)(478600001)(966005)(65806001)(65956001)(14444005)(229853002)(2351001)(6306002)(106466001)(53936002)(6246003)(3846002)(44832011)(8936002)(336012)(305945005)(71190400001)(86362001)(446003)(476003)(126002)(7736002)(11346002)(2616005)(69596002)(31696002)(486006)(16576012)(316002)(568964002)(16586007)(106002)(81166006)(8676002)(84326002)(235185007)(81156014)(58126008)(68736007)(6666004)(356004)(5660300002)(65826007)(6116002); DIR:OUT; SFP:1101; SCL:1; SRVR:DB6P18901MB0104; H:mail.ri.se; FPR:; SPF:Pass; LANG:en; PTR:InfoDomainNonexistent; A:1; MX:1;
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: 345911d7-3483-4e96-f16c-08d6bbec62af
X-Microsoft-Antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600139)(711020)(4605104)(4709054)(2017052603328)(7193020); SRVR:DB6P18901MB0104;
X-MS-TrafficTypeDiagnostic: DB6P18901MB0104:
X-Microsoft-Antispam-PRVS: <DB6P18901MB0104CB1D03D0126B70948D88822C0@DB6P18901MB0104.EURP189.PROD.OUTLOOK.COM>
X-Forefront-PRVS: 0001227049
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam-Message-Info: LNNh/j1FA+nZbidkDlL1muJMGTfX/xZjm7d5/fjQDeefDmU0KJ08pXYRijq1K/AoKeTRbXRtdmuHWwSD/FQ9sv5afdaTZ/rvsce9qe29Ia8p+rA2vwt3z3IDpUrMMDq06YI8Ya9pOfW3dt8CmfeQnOweEb2F+fV6l7aEd7mer4qMVWkKb7N3xx+C4OC+UWvZIIZKJ2LgLt+J1w5NMU0I+2orNMVnGmQtDEml9V2xooy0Dlqp2FSsvK2uzPPEDbt5pB5Ff6np6k+meswVO9NwXfSL5uSL0/B9ngRPI8Rn+LegL4+/FnEVcIFkjrdet31gTdx57D0zqplmun8bomQBfW3w5TvH+8P9dRGHuSxsOhJ8vKPnPcjbzAc1ckRvOXu5Y4SV/YA4G4L/yOu/S3tqtgiKw9rO83vCpJYl3kPBYQ0=
X-OriginatorOrg: ri.se
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 08 Apr 2019 06:35:26.1147 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: 345911d7-3483-4e96-f16c-08d6bbec62af
X-MS-Exchange-CrossTenant-Id: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=5a9809cf-0bcb-413a-838a-09ecc40cc9e8; Ip=[194.218.146.197]; Helo=[mail.ri.se]
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB6P18901MB0104
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/YYFz5wexs5spQrJb7qY7pA47n1s>
Subject: Re: [OAUTH-WG] Question regarding RFC 7800
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth/>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Apr 2019 06:35:32 -0000

On 03/04/2019 12:14, Robert Lembree wrote:
> Hello folks,
> 
>                  What is the status of RFC 7800?  We’re finding the need 
> for this, and wonder what we might be able to do to help move this along?
> 
> Regards,
> 
> rob
> 


If I may be so bold to drop a shameless plug for the ACE WG here [1]. As 
you are working with Schneider Electric, the work in ACE (based on 
OAuth, but for Contrained Environments) might be more relevant for you.

We have adopted a constrained profile of RFC 7800 (among other things):
https://datatracker.ietf.org/doc/draft-ietf-ace-cwt-proof-of-possession/


Regards,

Ludwig


[1] https://datatracker.ietf.org/group/ace/documents/

-- 
Ludwig Seitz, PhD
Security Lab, RISE
Phone +46(0)70-349 92 51