Re: [quicwg/base-drafts] Simplify version negotiation (#2133)

MikkelFJ <notifications@github.com> Wed, 12 December 2018 22:37 UTC

Return-Path: <bounces+848413-a050-quic-issues=ietf.org@sgmail.github.com>
X-Original-To: quic-issues@ietfa.amsl.com
Delivered-To: quic-issues@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D73BD13130B for <quic-issues@ietfa.amsl.com>; Wed, 12 Dec 2018 14:37:14 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.46
X-Spam-Level:
X-Spam-Status: No, score=-4.46 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-1.46, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, MAILING_LIST_MULTI=-1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=github.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id S1sSBQ806QnI for <quic-issues@ietfa.amsl.com>; Wed, 12 Dec 2018 14:37:13 -0800 (PST)
Received: from o9.sgmail.github.com (o9.sgmail.github.com [167.89.101.2]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DC189131306 for <quic-issues@ietf.org>; Wed, 12 Dec 2018 14:37:12 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed/relaxed; d=github.com; h=from:reply-to:to:cc:in-reply-to:references:subject:mime-version:content-type:content-transfer-encoding:list-id:list-archive:list-post:list-unsubscribe; s=s20150108; bh=FqOGQtxgrA4FJg4HPah5WiSfS8Y=; b=LCAm7nvlqVkCvd8/ L+Jbpl6Cmr0ERMTZnS6u3dnaRY/rfPcIdQVutDsG07fL8ex3EE1FnR4S7S9K0EN9 Xoh+4hL+PoJzLznx59vtLmvTx2GhUNFE1HVDF8VT86sUCPuBwmxMrqQkL5asm6NR /MSap7OsepJnRhQTUUPihdS6KBI=
Received: by filter0941p1las1.sendgrid.net with SMTP id filter0941p1las1-15050-5C118D98-8 2018-12-12 22:37:12.112058207 +0000 UTC m=+67300.656320688
Received: from github-lowworker-5909e27.cp1-iad.github.net (unknown [192.30.252.35]) by ismtpd0017p1iad2.sendgrid.net (SG) with ESMTP id gF-2o7tzQU6H6Ue5W2JnYw for <quic-issues@ietf.org>; Wed, 12 Dec 2018 22:37:11.972 +0000 (UTC)
Received: from github.com (localhost [127.0.0.1]) by github-lowworker-5909e27.cp1-iad.github.net (Postfix) with ESMTP id ECDF43E12CD for <quic-issues@ietf.org>; Wed, 12 Dec 2018 14:37:11 -0800 (PST)
Date: Wed, 12 Dec 2018 22:37:12 +0000
From: MikkelFJ <notifications@github.com>
Reply-To: quicwg/base-drafts <reply+0166e4ab9cfb67b50e1a0258b863ea884f908096ffe67db692cf0000000118294f9792a169ce17450cf5@reply.github.com>
To: quicwg/base-drafts <base-drafts@noreply.github.com>
Cc: Subscribed <subscribed@noreply.github.com>
Message-ID: <quicwg/base-drafts/pull/2133/c446770619@github.com>
In-Reply-To: <quicwg/base-drafts/pull/2133@github.com>
References: <quicwg/base-drafts/pull/2133@github.com>
Subject: Re: [quicwg/base-drafts] Simplify version negotiation (#2133)
Mime-Version: 1.0
Content-Type: multipart/alternative; boundary="--==_mimepart_5c118d97ea72e_635c3fef786d45b4136478"; charset="UTF-8"
Content-Transfer-Encoding: 7bit
Precedence: list
X-GitHub-Sender: mikkelfj
X-GitHub-Recipient: quic-issues
X-GitHub-Reason: subscribed
X-Auto-Response-Suppress: All
X-GitHub-Recipient-Address: quic-issues@ietf.org
X-SG-EID: l64QuQ2uJCcEyUykJbxN122A6QRmEpucztpreh3Pak1y/5aka34mNEkFIs7hrnTQlGTs9F/DlcFNz+ Eibfq3ZVmFXFs8M1sb6J195Nvz4fD6WBHqTxyA6zQEQAUJBsoHH3NtbkSZ67S9Po1Mk4K97aRLp+Kq 10whvjPspzaoImKiVPKS1m3QexJBrwchM4PxBwZwDa2QgI06QUG01BZGzg==
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic-issues/Amt9OWGTEtQ1Gc9Pkpf64Zms0eI>
X-BeenThere: quic-issues@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Notification list for GitHub issues related to the QUIC WG <quic-issues.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic-issues>, <mailto:quic-issues-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic-issues/>
List-Post: <mailto:quic-issues@ietf.org>
List-Help: <mailto:quic-issues-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic-issues>, <mailto:quic-issues-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 12 Dec 2018 22:37:15 -0000

I must say that I was not fond of the positive/negative list juggling in the previous approach, and the potential for missing attack vectors or making implementation mistakses, but I also do find current vneg complex.

What is the thinking on downgrade attacks?

Consider babyalarm / widely deployed IoT device offering 3 versions A, B, and C. Later it turns out version B is broken. Compromised MITM device plays valid endpoint and selects version B. Real server cannot ignore version B because MITM got in the way. Not sure the current state is much better on this account?

I good thing about client publishing versions is that a constrained device can offer versions in order of preference rather than conservatively choosing what is likely supported. Likewise an advanced client could prefer unlikely new version, but offer the common version also.

Resolving preferences becomes a bit more involved when the server also has a preference that is not necessarily aligned with the clients. For example servers may prefer AES acceleration over a ChaCha only version (I know TLS is also negotiating crypto - but why, really?).

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/quicwg/base-drafts/pull/2133#issuecomment-446770619