Re: [Privacy-pass] I-D Action: draft-ietf-privacypass-auth-scheme-02.txt

Tommy Pauly <tpauly@apple.com> Mon, 04 April 2022 23:22 UTC

Return-Path: <tpauly@apple.com>
X-Original-To: privacy-pass@ietfa.amsl.com
Delivered-To: privacy-pass@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6A78F3A1BF3 for <privacy-pass@ietfa.amsl.com>; Mon, 4 Apr 2022 16:22:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.108
X-Spam-Level:
X-Spam-Status: No, score=-7.108 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H5=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=apple.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QbXJPRwrySMI for <privacy-pass@ietfa.amsl.com>; Mon, 4 Apr 2022 16:22:05 -0700 (PDT)
Received: from rn-mailsvcp-ppex-lapp45.apple.com (rn-mailsvcp-ppex-lapp45.rno.apple.com [17.179.253.49]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1755D3A1BEF for <privacy-pass@ietf.org>; Mon, 4 Apr 2022 16:22:05 -0700 (PDT)
Received: from pps.filterd (rn-mailsvcp-ppex-lapp45.rno.apple.com [127.0.0.1]) by rn-mailsvcp-ppex-lapp45.rno.apple.com (8.16.1.2/8.16.1.2) with SMTP id 234NEaSN005553 for <privacy-pass@ietf.org>; Mon, 4 Apr 2022 16:22:03 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=apple.com; h=from : content-type : content-transfer-encoding : mime-version : subject : date : references : to : in-reply-to : message-id; s=20180706; bh=dsJV9NMpW6s9Lp45r8UBL2qvFp3cA2ZSU+Oc+sSbq4E=; b=Ij6j2tQTkk/pKYE/tlanatOnxt6EpI2ytbFL5KhayYAnPdCW0bHaH+UBhqiUavnJAhfF C5QhqwwhT3KYnCgrPQJL6/UlEiXCKu1++CjqfkS78DfOlBY8HyPK/CRUiw0V4+aiO1E8 +mt6L0qf7hLEFBn8Ys9kBnHxVRr8slnCCMq5AgN9V8qsHXmqsOIBKkry5xfckQr41zy6 o4acfsPw3JQvTFfRUTTDkujUjUCQWoaYU/eCWiqCUZ3BinMH1TrljcqYMVrZ/uJwjM7l ceIeJANQPhgueOBkNthtkYih3T+wtSzWzpF59WeIsaUGACnxZvR5ToraF+zuKMITpsWp UQ==
Received: from rn-mailsvcp-mta-lapp01.rno.apple.com (rn-mailsvcp-mta-lapp01.rno.apple.com [10.225.203.149]) by rn-mailsvcp-ppex-lapp45.rno.apple.com with ESMTP id 3f6msra95f-2 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NO) for <privacy-pass@ietf.org>; Mon, 04 Apr 2022 16:22:03 -0700
Received: from rn-mailsvcp-mmp-lapp01.rno.apple.com (rn-mailsvcp-mmp-lapp01.rno.apple.com [17.179.253.14]) by rn-mailsvcp-mta-lapp01.rno.apple.com (Oracle Communications Messaging Server 8.1.0.16.20220118 64bit (built Jan 18 2022)) with ESMTPS id <0R9U0060L8WROFA0@rn-mailsvcp-mta-lapp01.rno.apple.com> for privacy-pass@ietf.org; Mon, 04 Apr 2022 16:22:03 -0700 (PDT)
Received: from process_milters-daemon.rn-mailsvcp-mmp-lapp01.rno.apple.com by rn-mailsvcp-mmp-lapp01.rno.apple.com (Oracle Communications Messaging Server 8.1.0.16.20220118 64bit (built Jan 18 2022)) id <0R9U00R008L9PS00@rn-mailsvcp-mmp-lapp01.rno.apple.com> for privacy-pass@ietf.org; Mon, 04 Apr 2022 16:22:02 -0700 (PDT)
X-Va-A:
X-Va-T-CD: 938fb4dc32d7afe0d6b6e5f3b7def6e8
X-Va-E-CD: e10034355c61a403a90c072eec69363e
X-Va-R-CD: e3285ccb842796566e8b80691a90a7c6
X-Va-CD: 0
X-Va-ID: 3732a1e1-727b-4f56-8fb3-0453ea161c4e
X-V-A:
X-V-T-CD: 938fb4dc32d7afe0d6b6e5f3b7def6e8
X-V-E-CD: e10034355c61a403a90c072eec69363e
X-V-R-CD: e3285ccb842796566e8b80691a90a7c6
X-V-CD: 0
X-V-ID: 1434c4c1-ad2e-4a3d-ad28-73bf2e93da04
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.425, 18.0.850 definitions=2022-04-04_09:2022-03-30, 2022-04-04 signatures=0
Received: from smtpclient.apple (unknown [17.234.51.158]) by rn-mailsvcp-mmp-lapp01.rno.apple.com (Oracle Communications Messaging Server 8.1.0.16.20220118 64bit (built Jan 18 2022)) with ESMTPSA id <0R9U00EJI8WPUL00@rn-mailsvcp-mmp-lapp01.rno.apple.com> for privacy-pass@ietf.org; Mon, 04 Apr 2022 16:22:02 -0700 (PDT)
From: Tommy Pauly <tpauly@apple.com>
Content-type: text/plain; charset="utf-8"
Content-transfer-encoding: quoted-printable
MIME-version: 1.0 (Mac OS X Mail 15.0 \(3691.0.3\))
Date: Mon, 04 Apr 2022 16:22:01 -0700
References: <164911431896.18105.15678039303817111263@ietfa.amsl.com>
To: privacy-pass@ietf.org
In-reply-to: <164911431896.18105.15678039303817111263@ietfa.amsl.com>
Message-id: <E072635D-FDE5-4027-9756-C29F4C174CB0@apple.com>
X-Mailer: Apple Mail (2.3691.0.3)
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.425, 18.0.850 definitions=2022-04-04_09:2022-03-30, 2022-04-04 signatures=0
Archived-At: <https://mailarchive.ietf.org/arch/msg/privacy-pass/3yUeRkxyFznV9jzkQmxpHQhDpbs>
Subject: Re: [Privacy-pass] I-D Action: draft-ietf-privacypass-auth-scheme-02.txt
X-BeenThere: privacy-pass@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Privacy Pass Protocol <privacy-pass.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/privacy-pass>, <mailto:privacy-pass-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/privacy-pass/>
List-Post: <mailto:privacy-pass@ietf.org>
List-Help: <mailto:privacy-pass-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/privacy-pass>, <mailto:privacy-pass-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 04 Apr 2022 23:22:08 -0000

Hello Privacy Pass,

We’ve published a revision of the auth scheme document based on the discussion at IETF 113.

Most significantly, this changes the “origin_name” field to “origin_info”, which allows it to be a list of origins. The tokens now support cross-origin, single-origin, and multiple-origin bindings.

There are also some editorial changes to further clarify client and server behavior.

Best,
Tommy

> On Apr 4, 2022, at 4:18 PM, internet-drafts@ietf.org wrote:
> 
> 
> A New Internet-Draft is available from the on-line Internet-Drafts directories.
> This draft is a work item of the Privacy Pass WG of the IETF.
> 
>        Title           : The Privacy Pass HTTP Authentication Scheme
>        Authors         : Tommy Pauly
>                          Steven Valdez
>                          Christopher A. Wood
> 	Filename        : draft-ietf-privacypass-auth-scheme-02.txt
> 	Pages           : 14
> 	Date            : 2022-04-04
> 
> Abstract:
>   This document defines an HTTP authentication scheme that can be used
>   by clients to redeem Privacy Pass tokens with an origin.  It can also
>   be used by origins to challenge clients to present an acceptable
>   Privacy Pass token.
> 
> 
> The IETF datatracker status page for this draft is:
> https://datatracker.ietf.org/doc/draft-ietf-privacypass-auth-scheme/
> 
> There is also an HTML version available at:
> https://www.ietf.org/archive/id/draft-ietf-privacypass-auth-scheme-02.html
> 
> A diff from the previous version is available at:
> https://www.ietf.org/rfcdiff?url2=draft-ietf-privacypass-auth-scheme-02
> 
> 
> Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts
> 
> 
> -- 
> Privacy-pass mailing list
> Privacy-pass@ietf.org
> https://www.ietf.org/mailman/listinfo/privacy-pass