Re: [pkix] Next edition of X.509

Jeffrey Walton <noloader@gmail.com> Fri, 05 February 2016 09:05 UTC

Return-Path: <noloader@gmail.com>
X-Original-To: pkix@ietfa.amsl.com
Delivered-To: pkix@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0AC2A1A90EA for <pkix@ietfa.amsl.com>; Fri, 5 Feb 2016 01:05:13 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id F1oF58Rnz60K for <pkix@ietfa.amsl.com>; Fri, 5 Feb 2016 01:05:11 -0800 (PST)
Received: from mail-ig0-x235.google.com (mail-ig0-x235.google.com [IPv6:2607:f8b0:4001:c05::235]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C35331A90E2 for <pkix@ietf.org>; Fri, 5 Feb 2016 01:05:11 -0800 (PST)
Received: by mail-ig0-x235.google.com with SMTP id ik10so35739510igb.1 for <pkix@ietf.org>; Fri, 05 Feb 2016 01:05:11 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:reply-to:in-reply-to:references:date:message-id :subject:from:to:cc:content-type; bh=mhZekD8TyP9nq6eH+t+fZa5Zj+ZNQXuoAKTnYD4D9QA=; b=Mt6w3+i8JW1rHmqowFcY92YWWTCUMN49TRcZmAKircJ4sqPWTsVk7igidT8D0HaN3c bJmYBZlzY8fzFeavPlQUcXiaXrPcukkRDSI8k22/7fld8igQtlBr298yxOrDySEGxQwb 9bNuKDTP6lBiB/9TCWeiEMS5WT8C4OGCNDYiT8sZsbjfETzNdTa+3483moYl7ZdMD5p7 kfihepMYa3HHdTMxxZZQRvIccdW2Z8CuKueMcQsmaHSCDFQgr2wP2D9cTjsU7HgObFQ1 bBymRV7Iq3PZW3vKPemVlonrS9BF2kRAaekhCB3kl7FielqMQNG8BwBMl8uUOHiLPQyB D+IQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:reply-to:in-reply-to:references :date:message-id:subject:from:to:cc:content-type; bh=mhZekD8TyP9nq6eH+t+fZa5Zj+ZNQXuoAKTnYD4D9QA=; b=hfHcYuRY5iQ1nFylUvzF6IguT4PKn2b65kLYskFdrHP4QHNLEF4aOV1JSxFunkUAZ2 FooXKlErV83C2rZuyDE1/ioPd4UspJ9Wy1WHNF4de6tdhs/+zlDnAXyYctRlhCRRKXl7 3+KIEmNOc0FvYoImYyPvsAOiRXq6jpxzlk45+3spAcNX/uCUo2YwfxANI3DDKSEJnYLW z1t3ElkuJ/Ol36OiP8hoQwHYewUzP0N5qx5dVYN/5M/432dOnV2Q/04anBfRmEbi5ioe wvpDFAs4fi1/b/vaE1lxXA3+DRubIw0oanXIx9SD3Ir89EjEWTr64DHqORyrcK2AztjJ ORPQ==
X-Gm-Message-State: AG10YOQMx3Dx3l+C4MNns0wOVtuVUwuiOOniPN6UZbVk3nd3uGZRi3RKQ9G8bZscNQ/sVLvHBYWQezjk+BuuMw==
MIME-Version: 1.0
X-Received: by 10.50.150.42 with SMTP id uf10mr13718982igb.23.1454663111161; Fri, 05 Feb 2016 01:05:11 -0800 (PST)
Received: by 10.36.195.133 with HTTP; Fri, 5 Feb 2016 01:05:11 -0800 (PST)
In-Reply-To: <000001d130da$b05884d0$11098e70$@x500.eu>
References: <000001d130da$b05884d0$11098e70$@x500.eu>
Date: Fri, 05 Feb 2016 04:05:11 -0500
Message-ID: <CAH8yC8mFyzh+q8wxEiHHJ522FpUZj0_S-PVJ13Yc1hkvJ92OgA@mail.gmail.com>
From: Jeffrey Walton <noloader@gmail.com>
To: Erik Andersen <era@x500.eu>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <http://mailarchive.ietf.org/arch/msg/pkix/rF4wRlTjj0DUFmAnfa0PHhQtU4E>
Cc: PKIX <pkix@ietf.org>
Subject: Re: [pkix] Next edition of X.509
X-BeenThere: pkix@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
Reply-To: noloader@gmail.com
List-Id: PKIX Working Group <pkix.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/pkix>, <mailto:pkix-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pkix/>
List-Post: <mailto:pkix@ietf.org>
List-Help: <mailto:pkix-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pkix>, <mailto:pkix-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 05 Feb 2016 09:05:13 -0000

On Mon, Dec 7, 2015 at 5:33 AM, Erik Andersen <era@x500.eu> wrote:
> In preparation for the next edition of X.509 (the 2016 edition), I have
> forwarded to the ISO/IEC JTC1/SC6 two documents for three months ballots...

I sincerely hope the IETF stops pretending Proxying and Interception
are the same thing as Server Authentication.

One risk model does not fit everyone. I think its dangerous to
sacrifice everyone's security for the benefit of a few. And consider,
its not all US Financial, where losses are passed onto share holders.
In some parts of the world, people can be tortured and die because of
the decisions made by the IETF.

Jeff