[pkix] spasm work item

"Dr. Massimiliano Pala" <massimiliano.pala@gmail.com> Fri, 08 April 2016 15:11 UTC

Return-Path: <massimiliano.pala@gmail.com>
X-Original-To: pkix@ietfa.amsl.com
Delivered-To: pkix@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 678FC12D901 for <pkix@ietfa.amsl.com>; Fri, 8 Apr 2016 08:11:27 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.689
X-Spam-Level:
X-Spam-Status: No, score=-2.689 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, T_HK_NAME_FM_DR=0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GcprmZldjGAD for <pkix@ietfa.amsl.com>; Fri, 8 Apr 2016 08:11:25 -0700 (PDT)
Received: from mail-qg0-x22b.google.com (mail-qg0-x22b.google.com [IPv6:2607:f8b0:400d:c04::22b]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 69CA9127058 for <pkix@ietf.org>; Fri, 8 Apr 2016 08:11:25 -0700 (PDT)
Received: by mail-qg0-x22b.google.com with SMTP id j35so92690931qge.0 for <pkix@ietf.org>; Fri, 08 Apr 2016 08:11:25 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=to:from:subject:message-id:date:user-agent:mime-version; bh=3eFFFLstAEd1iHlXQzrTkkwOx64alnEU6rhOhUkU69o=; b=y4C36qk0seA6R9Pgt+SCu2ryMcS02eZSWS3ZQTsjdaExgC9IWyYzGfpLf4UnOATpE9 l985r61ljvNXU5H2VZ2XAcWGKLK3i4ncbXGEwYTV4Fwh5atOXaXdE7hfzTyl7W+TguQE jF4EPV5G68ywhRAfi0q+VxVTymlWvzJYoayP70uSLfxpV69OXETa4i8JTm3fgp7btmDQ SoOWop8itjhyNtg1HZvbB3Q2oGcvDk+1DeS2RPiqw6sLfWcdAzZjlWVXYOJqMfVqNKGp 4j2AJyGV7LxNhiOw5BUgHa02GOpralRQ4MYZmXjz8pFTIpMMOCnWF//J2whwEL2zh86C m1Zg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:to:from:subject:message-id:date:user-agent :mime-version; bh=3eFFFLstAEd1iHlXQzrTkkwOx64alnEU6rhOhUkU69o=; b=Kuq/vHmNJACZV/Kp7BxQjCxSJgd7TkoL8saPgto/2rYDYynsK5+xsTuGleOBeofAPB jhDE27IIw7/e8Zi46IaiSlQhmzfwKlJYxU/9OO3fatCFXQZgR0FJ+tdYuKt2/DCW4h/a WDDnemGHBo8wfJ4qmRMSBlWJoDKCq39PIRBqiesULpjztTD4ce+jIVKYdg3xX+UF7rAI ixasHQBPcBK51SMjaM9tS1VV+sLKcbFf7OF80PcIx2sCNopdthozF3t38PZco87WR4Mq o/6U59OGvmZ7f3HLlYgbgBXqXe2/RA1huc0ZjE1NY0tl76QkLjba5eZbIuIEINkUcAaW k7NA==
X-Gm-Message-State: AD7BkJLPrU1UIoANwtbgi3/PTveB3hXrVRr7tH3y01ktyppy9ambpjJOtNx2OTwcummwOg==
X-Received: by 10.140.144.132 with SMTP id 126mr12392654qhq.102.1460128284568; Fri, 08 Apr 2016 08:11:24 -0700 (PDT)
Received: from dhcp-abd4.meeting.ietf.org ([2001:67c:370:168:2497:4b17:4497:6e52]) by smtp.googlemail.com with ESMTPSA id s188sm5616904qhc.35.2016.04.08.08.11.23 for <pkix@ietf.org> (version=TLSv1/SSLv3 cipher=OTHER); Fri, 08 Apr 2016 08:11:24 -0700 (PDT)
To: "pkix@ietf.org" <pkix@ietf.org>
From: "Dr. Massimiliano Pala" <massimiliano.pala@gmail.com>
Message-ID: <5707CA1D.40201@gmail.com>
Date: Fri, 08 Apr 2016 12:11:25 -0300
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:38.0) Gecko/20100101 Thunderbird/38.6.0
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="------------030208080904000806030504"
Archived-At: <http://mailarchive.ietf.org/arch/msg/pkix/U2h3zt-2aUsywQ945a5hDmX1LWs>
Subject: [pkix] spasm work item
X-BeenThere: pkix@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: PKIX Working Group <pkix.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/pkix>, <mailto:pkix-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pkix/>
List-Post: <mailto:pkix@ietf.org>
List-Help: <mailto:pkix-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pkix>, <mailto:pkix-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Apr 2016 15:11:28 -0000

Hi all,

as suggested by Wei - and as discussed with Stephen, I just want to 
propose a possible short-term work item about publishing OCSP responses 
in DNS RR. This should be a short work item as we do not change any 
format for the revocation information.

Here's the reference to the I-D:

  * https://datatracker.ietf.org/doc/draft-pala-odin/

For a longer term work item (if the SPASM WG will succeed in the 
short-term agenda), I would like to propose revising the OCSP format to 
allow for more compact per-certificate revocation information to be 
available to client (sort of Lightweight Revocation Tokens).

Cheers,
Max