Re: [OAUTH-WG] Fwd: New Version Notification for draft-campbell-oauth-mtls-00.txt

John Bradley <ve7jtb@ve7jtb.com> Fri, 07 April 2017 13:54 UTC

Return-Path: <ve7jtb@ve7jtb.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7021F127241 for <oauth@ietfa.amsl.com>; Fri, 7 Apr 2017 06:54:28 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.339
X-Spam-Level:
X-Spam-Status: No, score=-2.339 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, HTML_OBFUSCATE_05_10=0.26, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=ve7jtb-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sv3g1RrFSLMb for <oauth@ietfa.amsl.com>; Fri, 7 Apr 2017 06:54:25 -0700 (PDT)
Received: from mail-it0-x231.google.com (mail-it0-x231.google.com [IPv6:2607:f8b0:4001:c0b::231]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3B2991294C5 for <oauth@ietf.org>; Fri, 7 Apr 2017 06:54:21 -0700 (PDT)
Received: by mail-it0-x231.google.com with SMTP id a140so43035720ita.0 for <oauth@ietf.org>; Fri, 07 Apr 2017 06:54:21 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ve7jtb-com.20150623.gappssmtp.com; s=20150623; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=nQh2LAxt5R/wF2ev2LAvhKJJNhjRsvn8LmwLllayCdg=; b=z2UVQhLnRWyBtWyDpFjpGIKICLHRifBga1wQyggC85jpLULocrbF/04+77fXAwmHbe sBY4u2/9PyTL8N+JFN6BbNsO670kSHOUV3OrQqgHwHdUbytiuBYi7gjZSxlm3KfBoe01 sodY6EBq/aU9GmJiXGPxz5atPXTxhguWg6WIXptuEx7//SqcSQOC/mi/A6Bff8/Q2oai 0jOK4Yh5nLs/EXMm/B5h3S5bbarttQS9ML8Zq4yPK4OFySIacp6khDgSR0T6GAjZ+HBu TMf4d6Rp5oq8aSZ6JDekZavPY/61i5xU4C5YWTE/DpQdwmEdmQoteHvT7vtpGMA5qtEH Fkkg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=nQh2LAxt5R/wF2ev2LAvhKJJNhjRsvn8LmwLllayCdg=; b=sjThJa31iC1GPm0g5chID8wxOwz3W/xE/xkFTpVv0L2C5vRXfoEYHocrv1npKHxq5G qu4S06rSkZLZAkWXhr4+lce8qUvzQtI9gtzCPUt8Yp5VI51zbgB+Yf0UReTE7yA8mnIx TMrxJ06r6SJS3+d21uFVCjdyoYD6p4SNK5t2xoctQ+XoJuCiEY2JQ2m17hU8J1irQKqz G+PlamilOt26WVUW3gIoB5IeNEJ0hownvGJUQOXmLcuKJm/nLSOJIvhzptIKT8uYzncT bqjl5hpieSa0OtdRndnduuMeYqCy3rWpJKIwAXia7oURpqC8igWB9nxoRJO4cO6o4qQM 16tQ==
X-Gm-Message-State: AFeK/H3O6GNLo45ZC+F33l4wO0zYQjAhkJ6BINuWowGimOdwN/FuRHuk bV19vndAkVRv3uqgZJzyV14lvWDZLwdb
X-Received: by 10.36.91.76 with SMTP id g73mr33582593itb.75.1491573260416; Fri, 07 Apr 2017 06:54:20 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.107.167.139 with HTTP; Fri, 7 Apr 2017 06:54:20 -0700 (PDT)
In-Reply-To: <d397fb25-8029-dd78-e10d-2dd0cd06f8d6@gmail.com>
References: <149090694651.9027.6337833834024757190.idtracker@ietfa.amsl.com> <CAAX2Qa1OAoY0TOPX-19XgVrxq_63GN5obbh9VB_7851YXERfXA@mail.gmail.com> <CA+k3eCTZ=6vG=vpL2ZR3oDMG+LJBT8xMSoTsam8fR_0bbXf6OQ@mail.gmail.com> <d397fb25-8029-dd78-e10d-2dd0cd06f8d6@gmail.com>
From: John Bradley <ve7jtb@ve7jtb.com>
Date: Fri, 7 Apr 2017 14:54:20 +0100
Message-ID: <CAANoGh+1zaGnE2JA2CUB_tpP_vp-xQTe4TR9GUfX41Ji89zOSw@mail.gmail.com>
To: Sergey Beryozkin <sberyozkin@gmail.com>
Cc: Brian Campbell <bcampbell@pingidentity.com>, oauth <oauth@ietf.org>
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg=sha-256; boundary="001a1144ca765bc25d054c93f62e"
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/gxjGo3NFU9GFlFUI4IMYAw3OQyI>
Subject: Re: [OAUTH-WG] Fwd: New Version Notification for draft-campbell-oauth-mtls-00.txt
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth/>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 07 Apr 2017 13:54:28 -0000

It was a test to see who was really reading it:)

On Fri, Apr 7, 2017 at 1:58 PM, Sergey Beryozkin <sberyozkin@gmail.com>
wrote:

> Hi Brian
>
> Thanks, a minor typo in the example,
> "x5t#s256" as opposed to "x5t#S256"
>
> (sorry if it was already reported, might've missed it)
>
> Cheers, Sergey
> On 30/03/17 22:15, Brian Campbell wrote:
>
>> This document, which I hope to present and discuss briefly at tomorrow's
>> meeting, replaces (but keeps the feature) the Mutual TLS Authentication
>> for OAuth Clients
>> <https://tools.ietf.org/html/draft-campbell-oauth-tls-client-auth-00>
>> that was published leading up to the Seoul meeting
>> <https://www.ietf.org/mail-archive/web/oauth/current/msg16704.html> and
>> adds mutual TLS sender constrained access to OAuth protected resources.
>> The concept for the latter was largely derived from one of the options
>> in the JPOP draft
>> <https://tools.ietf.org/html/draft-sakimura-oauth-jpop-04>. I apologize
>> for the 11th hour publication but hope some folks will have a chance to
>> read it.
>>
>> ---------- Forwarded message ----------
>> From: ** <internet-drafts@ietf.org <mailto:internet-drafts@ietf.org>>
>> Date: Thu, Mar 30, 2017 at 3:49 PM
>> Subject: New Version Notification for draft-campbell-oauth-mtls-00.txt
>> To: Brian Campbell <brian.d.campbell@gmail.com
>> <mailto:brian.d.campbell@gmail.com>>, Nat Sakimura <n-sakimura@nri.co.jp
>> <mailto:n-sakimura@nri.co.jp>>, Torsten Lodderstedt
>> <torsten@lodderstedt.net <mailto:torsten@lodderstedt.net>>, John Bradley
>> <ve7jtb@ve7jtb.com <mailto:ve7jtb@ve7jtb.com>>
>>
>>
>>
>> A new version of I-D, draft-campbell-oauth-mtls-00.txt
>> has been successfully submitted by Brian Campbell and posted to the
>> IETF repository.
>>
>> Name:           draft-campbell-oauth-mtls
>> Revision:       00
>> Title:          Mutual TLS Profiles for OAuth Clients
>> Document date:  2017-03-30
>> Group:          Individual Submission
>> Pages:          10
>> URL:
>> https://www.ietf.org/internet-drafts/draft-campbell-oauth-mtls-00.txt
>> <https://www.ietf.org/internet-drafts/draft-campbell-oauth-mtls-00.txt>
>> Status:
>>  https://datatracker.ietf.org/doc/draft-campbell-oauth-mtls/
>> <https://datatracker.ietf.org/doc/draft-campbell-oauth-mtls/>
>> Htmlized:       https://tools.ietf.org/html/draft-campbell-oauth-mtls-00
>> <https://tools.ietf.org/html/draft-campbell-oauth-mtls-00>
>> Htmlized:
>>  https://datatracker.ietf.org/doc/html/draft-campbell-oauth-mtls-00
>> <https://datatracker.ietf.org/doc/html/draft-campbell-oauth-mtls-00>
>>
>>
>> Abstract:
>>    This document describes Transport Layer Security (TLS) mutual
>>    authentication using X.509 certificates as a mechanism for both OAuth
>>    client authentication to the token endpoint as well as for sender
>>    constrained access to OAuth protected resources.
>>
>>
>>
>>
>> Please note that it may take a couple of minutes from the time of
>> submission
>> until the htmlized version and diff are available at tools.ietf.org
>> <http://tools.ietf.org>.
>>
>> The IETF Secretariat
>>
>>
>>
>>
>>
>> _______________________________________________
>> OAuth mailing list
>> OAuth@ietf.org
>> https://www.ietf.org/mailman/listinfo/oauth
>>
>>
> _______________________________________________
> OAuth mailing list
> OAuth@ietf.org
> https://www.ietf.org/mailman/listinfo/oauth
>