[quicwg/base-drafts] 867af9: Rework Key Update

Martin Thomson <martin.thomson@gmail.com> Fri, 21 December 2018 01:26 UTC

Return-Path: <bounce+565321.40f-quic-issues=ietf.org@github.com>
X-Original-To: quic-issues@ietfa.amsl.com
Delivered-To: quic-issues@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C159F130E86 for <quic-issues@ietfa.amsl.com>; Thu, 20 Dec 2018 17:26:31 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.997
X-Spam-Level:
X-Spam-Status: No, score=-0.997 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_ADSP_CUSTOM_MED=0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FREEMAIL_FORGED_FROMDOMAIN=0.001, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, NML_ADSP_CUSTOM_MED=0.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=github.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0RtQundv6ed0 for <quic-issues@ietfa.amsl.com>; Thu, 20 Dec 2018 17:26:30 -0800 (PST)
Received: from m69-170.mailgun.net (m69-170.mailgun.net [166.78.69.170]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 343AA130DD8 for <quic-issues@ietf.org>; Thu, 20 Dec 2018 17:26:30 -0800 (PST)
DKIM-Signature: a=rsa-sha256; v=1; c=relaxed/relaxed; d=github.com; q=dns/txt; s=mailo; t=1545355589; h=Content-Transfer-Encoding: Content-Type: Mime-Version: Subject: Message-ID: To: Reply-To: From: Date: Sender; bh=VwaFzaJ3MsArMFUxIQCAmdUt7v5DIsNCxHPLqQdH9iQ=; b=I/iOG7jV7EBWQrj4Vu9Zo0JORqK6A1MzLkOwecFMh/iGobwp5j1W6qrG+CJeryaZ6vppCr6w VpCkFcCCQS1Dm/PjVXqA0L9H+8dfvV6MoEz6tjVao+kLt5BCLqRsdIs6FtoD4SZ2tcfwNfmj PZRAYRggaku7TeLkddpPZejwjm8=
X-Mailgun-Sending-Ip: 166.78.69.170
X-Mailgun-Sid: WyJhNzYyYiIsICJxdWljLWlzc3Vlc0BpZXRmLm9yZyIsICI0MGYiXQ==
Sender: martin.thomson=gmail.com@github.com
Received: from github.com (Unknown [192.30.252.44]) by mxa.mailgun.org with ESMTP id 5c1c4145.7f62d1fbaf00-smtp-out-n01; Fri, 21 Dec 2018 01:26:29 -0000 (UTC)
Date: Thu, 20 Dec 2018 17:26:29 -0800
From: Martin Thomson <martin.thomson@gmail.com>
Reply-To: Martin Thomson <martin.thomson@gmail.com>
To: quic-issues@ietf.org
Message-ID: <5c1c414510c54_3c262ae005fd0588158a@hookshot-fe-6e9b612.cp1-iad.github.net.mail>
Subject: [quicwg/base-drafts] 867af9: Rework Key Update
Mime-Version: 1.0
Content-Type: multipart/mixed; boundary="--==_mimepart_5c1c4145106b8_3c262ae005fd0588157d"; charset="UTF-8"
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic-issues/2y7Rzy9eg68CawWqdeJlami20S0>
X-BeenThere: quic-issues@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Notification list for GitHub issues related to the QUIC WG <quic-issues.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic-issues>, <mailto:quic-issues-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic-issues/>
List-Post: <mailto:quic-issues@ietf.org>
List-Help: <mailto:quic-issues-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic-issues>, <mailto:quic-issues-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 21 Dec 2018 01:26:32 -0000

  Branch: refs/heads/simultaneous-update
  Home:   https://github.com/quicwg/base-drafts
  Commit: 867af94790a3e2cb696dadca9352d7bff537e37a
      https://github.com/quicwg/base-drafts/commit/867af94790a3e2cb696dadca9352d7bff537e37a
  Author: Martin Thomson <martin.thomson@gmail.com>
  Date:   2018-12-21 (Fri, 21 Dec 2018)

  Changed paths:
    M draft-ietf-quic-tls.md

  Log Message:
  -----------
  Rework Key Update

This section was pretty old and it had at least one bug, along with a
bunch of editorial lack of clarity.

Substantively, this does two things:

1. It specifies what label to use for the KDF when updating.  The
agreement at one time was that we would use a quic-specific label, but
that never really got captured properly.  This proposes "quic ku".

2. It specifies that acknowledgments of packets with a given key phase
are necessary before another update can be triggered.  As noted in
 #2214, simultaneous updates can result in a deadlock if updates happen
too quickly.  This has the nice effect of allowing update compliance to
be more rigorously tested.

Closes #2214.



      **NOTE:** This service has been marked for deprecation: https://developer.github.com/changes/2018-04-25-github-services-deprecation/

      Functionality will be removed from GitHub.com on January 31st, 2019.