[pkix] Fwd: [TLS] New Authz extension to use DTCP certificates in TLS SD handshake message

Russ Housley <housley@vigilsec.com> Tue, 06 November 2012 16:20 UTC

Return-Path: <housley@vigilsec.com>
X-Original-To: pkix@ietfa.amsl.com
Delivered-To: pkix@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0B45021F89E9 for <pkix@ietfa.amsl.com>; Tue, 6 Nov 2012 08:20:03 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.547
X-Spam-Level:
X-Spam-Status: No, score=-102.547 tagged_above=-999 required=5 tests=[AWL=0.051, BAYES_00=-2.599, HTML_MESSAGE=0.001, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3TLS2babPsDP for <pkix@ietfa.amsl.com>; Tue, 6 Nov 2012 08:20:02 -0800 (PST)
Received: from odin.smetech.net (mail.smetech.net [208.254.26.82]) by ietfa.amsl.com (Postfix) with ESMTP id 5092A21F89E5 for <pkix@ietf.org>; Tue, 6 Nov 2012 08:20:02 -0800 (PST)
Received: from localhost (unknown [208.254.26.81]) by odin.smetech.net (Postfix) with ESMTP id 7410D9A4005 for <pkix@ietf.org>; Tue, 6 Nov 2012 11:20:06 -0500 (EST)
X-Virus-Scanned: amavisd-new at smetech.net
Received: from odin.smetech.net ([208.254.26.82]) by localhost (ronin.smetech.net [208.254.26.81]) (amavisd-new, port 10024) with ESMTP id eOsAPlFKw2NL for <pkix@ietf.org>; Tue, 6 Nov 2012 11:19:57 -0500 (EST)
Received: from dhcp-5421.meeting.ietf.org (dhcp-5421.meeting.ietf.org [130.129.84.33]) (using TLSv1 with cipher AES128-SHA (128/128 bits)) (No client certificate requested) by odin.smetech.net (Postfix) with ESMTP id C0D339A4002 for <pkix@ietf.org>; Tue, 6 Nov 2012 11:20:03 -0500 (EST)
From: Russ Housley <housley@vigilsec.com>
Content-Type: multipart/alternative; boundary="Apple-Mail-39-249443742"
Date: Tue, 06 Nov 2012 11:19:58 -0500
References: <CCBEA04E.EFE7%d.thakore@cablelabs.com>
To: IETF PKIX <pkix@ietf.org>
Message-Id: <EF84B309-CD0D-42E0-B3E4-C05C90E23D74@vigilsec.com>
Mime-Version: 1.0 (Apple Message framework v1085)
X-Mailer: Apple Mail (2.1085)
Subject: [pkix] Fwd: [TLS] New Authz extension to use DTCP certificates in TLS SD handshake message
X-BeenThere: pkix@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: PKIX Working Group <pkix.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/pkix>, <mailto:pkix-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/pkix>
List-Post: <mailto:pkix@ietf.org>
List-Help: <mailto:pkix-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pkix>, <mailto:pkix-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Nov 2012 16:20:03 -0000

People on this list might want to contribute to the discussion on the TLS list.  I just want to make sure you know it is happening ....

Russ



Begin forwarded message:

> From: Darshak Thakore <d.thakore@cablelabs.com>
> Date: November 6, 2012 11:09:02 AM EST
> To: "tls@ietf.org" <tls@ietf.org>
> Subject: [TLS] New Authz extension to use DTCP certificates in TLS SD handshake message
> 
> Folks,
> I am sending this email to obtain feedback and guidance on the following I-D, which proposes a new Authorization Data Format to the TLS SupplementalData Handshake extension to use DTCP certificates as authorization data. If this WG is not the forum to seek feedback on this proposal, please redirect me accordingly.
> 
> http://tools.ietf.org/html/draft-dthakore-authz-01
> 
> From the Abstract:
>   "This document specifies the use of DTCP certificate as an
>    authorization extension in the Transport Layer Security Handshake
>    Protocol, according to guidelines in RFC 5878.  Extensions carried in
>    the client and server Hello messages confirm that both parties
>    support the desired authorization data types.  Then if supported by
>    both the client and server, DTCP certificates are exchanged in the
>    supplemental data handshake TLS handshake message as specified in
>    RFC4680."
> Thanks in advance 
> Regards,
> Darshak Thakore
> _______________________________________________
> TLS mailing list
> TLS@ietf.org
> https://www.ietf.org/mailman/listinfo/tls