Re: [openpgp] OpenPGP Web Key Directory I-D

Benjamin Kaduk <kaduk@mit.edu> Sat, 10 November 2018 05:00 UTC

Return-Path: <kaduk@mit.edu>
X-Original-To: openpgp@ietfa.amsl.com
Delivered-To: openpgp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C3BD913111D for <openpgp@ietfa.amsl.com>; Fri, 9 Nov 2018 21:00:58 -0800 (PST)
X-Quarantine-ID: <Das-AgyWuGvs>
X-Virus-Scanned: amavisd-new at amsl.com
X-Amavis-Alert: BAD HEADER SECTION, Non-encoded 8-bit data (char 9C hex): Received: ...s kaduk@ATHENA.MIT.EDU)\n\t\234by outgoing.mit[...]
X-Spam-Flag: NO
X-Spam-Score: -4.197
X-Spam-Level:
X-Spam-Status: No, score=-4.197 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Das-AgyWuGvs for <openpgp@ietfa.amsl.com>; Fri, 9 Nov 2018 21:00:57 -0800 (PST)
Received: from dmz-mailsec-scanner-3.mit.edu (dmz-mailsec-scanner-3.mit.edu [18.9.25.14]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1CE101310D8 for <openpgp@ietf.org>; Fri, 9 Nov 2018 21:00:57 -0800 (PST)
X-AuditID: 1209190e-adbff7000000394e-45-5be666077444
Received: from mailhub-auth-1.mit.edu ( [18.9.21.35]) (using TLS with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by dmz-mailsec-scanner-3.mit.edu (Symantec Messaging Gateway) with SMTP id 5E.66.14670.70666EB5; Sat, 10 Nov 2018 00:00:56 -0500 (EST)
Received: from outgoing.mit.edu (OUTGOING-AUTH-1.MIT.EDU [18.9.28.11]) by mailhub-auth-1.mit.edu (8.14.7/8.9.2) with ESMTP id wAA50stI006440; Sat, 10 Nov 2018 00:00:55 -0500
Received: from kduck.kaduk.org (24-107-191-124.dhcp.stls.mo.charter.com [24.107.191.124]) (authenticated bits=56) (User authenticated as kaduk@ATHENA.MIT.EDU) �by outgoing.mit.edu (8.14.7/8.12.4) with ESMTP id wAA50opq016478 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Sat, 10 Nov 2018 00:00:53 -0500
Date: Fri, 09 Nov 2018 23:00:50 -0600
From: Benjamin Kaduk <kaduk@mit.edu>
To: Ian Jackson <ijackson@chiark.greenend.org.uk>, openpgp@ietf.org
Message-ID: <20181110050050.GS65098@kduck.kaduk.org>
References: <23523.16831.292658.490356@chiark.greenend.org.uk> <874lcsyr3p.fsf@wheatstone.g10code.de> <23525.26229.995360.750323@chiark.greenend.org.uk> <87r2fuv6sh.fsf@wheatstone.g10code.de>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <87r2fuv6sh.fsf@wheatstone.g10code.de>
User-Agent: Mutt/1.9.1 (2017-09-22)
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFrrDIsWRmVeSWpSXmKPExsUixCmqrMuR9izaYNIKRovVLYtYLBr+PWR3 YPL4dmoTs8eSJT+ZApiiuGxSUnMyy1KL9O0SuDJWbjIoWMBVcbntLlsDYz9HFyMnh4SAicTm fX3sXYxcHEICa5gkti/czQrhbGSU6L3dwgpSJSRwl0li9fcoEJtFQEXi5vXTLCA2G5Dd0H2Z uYuRg0NEwFli8gZxkLAw0NAZl2+wgdi8QPaUw/ehFhxllLh3cAc7REJQ4uTMJ2BzmAW0JG78 e8kEModZQFpi+T8OEJNTwFji6RQekApRAWWJvX2H2Ccw8s9C0jwLSfMshOYFjMyrGGVTcqt0 cxMzc4pTk3WLkxPz8lKLdI31cjNL9FJTSjcxggNRkm8H46QG70OMAhyMSjy8P5Y/jRZiTSwr rsw9xCjJwaQkyqsb+yxaiC8pP6UyI7E4I76oNCe1+BCjBAezkgiv7Bagct6UxMqq1KJ8mJQ0 B4uSOO8vkcfRQgLpiSWp2ampBalFMFkZDg4lCV7PVKChgkWp6akVaZk5JQhpJg5OkOE8QMNv pwDV8BYXJOYWZ6ZD5E8xKkqJ884DSQiAJDJK8+B6QYlCInt/zStGcaBXhHkrQKp4gEkGrvsV 0GAmoMHWXx+DDC5JREhJNTAGeS97bPxA/er346my6T2LDojX8lUeav1VtrUn9F/0m3BJVv7b DsITBM9+ub3untvvS1r32J8kzBTz0Pa4kNnw6ZZ9ft2r5u93lNVkTtzdrXAnVTfbgvXU7ZsW izXWlPxZ3n3mxsZpH5PMz86dcmePkPGP1CXu4nMm7lQLTmh64NVYMrvfjZlFiaU4I9FQi7mo OBEA16vPTe8CAAA=
Archived-At: <https://mailarchive.ietf.org/arch/msg/openpgp/R1_KlnJajazdOsZPi5eKYxyukjc>
Subject: Re: [openpgp] OpenPGP Web Key Directory I-D
X-BeenThere: openpgp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/openpgp>, <mailto:openpgp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/openpgp/>
List-Post: <mailto:openpgp@ietf.org>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/openpgp>, <mailto:openpgp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 10 Nov 2018 05:00:59 -0000

On Fri, Nov 09, 2018 at 12:17:50PM +0100, Werner Koch wrote:
> On Fri,  9 Nov 2018 11:50, ijackson@chiark.greenend.org.uk said:
> 
> > It certainly would allow serving the data from static files.  If you
> > wanted case-insensitivity and can't configure your webserver to smash
> 
> It is not only about the case but about allowed characters in a file
> name.  In particular '/' and depending on file system the length.  Noet
> that '/' is a valid character in the local part of the addrspec.
> 
> > Since you are still in the protocol design phase, you would no doubt
> > welcome implementation and deployment of an alternative simpler
> 
> Nope.  It is in use for more than 2 years.

I feel some obligation to push back on this -- if there is no willingness
to deviate from the deployed implementation, why not just document the
existing implementation behavior as part of the implementation's
documentation and move on?

-Ben

> The only simpler thing which could have been done would be to skip the
> hashing and directly use the z-base-32 encoding.  The only drawback
> would have been that very long addresses won't work on all file systems.
> 
> Changes to the SVR record thing should be possible because I doubt that
> this is widely used (Caesonia specifies it use, though).