Re: [quicwg/base-drafts] Add headings to Security Considerations (#2975)
Martin Thomson <notifications@github.com> Mon, 19 August 2019 01:20 UTC
Return-Path: <noreply@github.com>
X-Original-To: quic-issues@ietfa.amsl.com
Delivered-To: quic-issues@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 222C51201EA for <quic-issues@ietfa.amsl.com>; Sun, 18 Aug 2019 18:20:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.596
X-Spam-Level:
X-Spam-Status: No, score=-6.596 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_IMAGE_ONLY_28=1.404, HTML_MESSAGE=0.001, MAILING_LIST_MULTI=-1, RCVD_IN_DNSWL_HI=-5, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=github.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8oZJoXD_X8Jl for <quic-issues@ietfa.amsl.com>; Sun, 18 Aug 2019 18:20:19 -0700 (PDT)
Received: from out-14.smtp.github.com (out-14.smtp.github.com [192.30.254.197]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7931312013B for <quic-issues@ietf.org>; Sun, 18 Aug 2019 18:20:19 -0700 (PDT)
Date: Sun, 18 Aug 2019 18:20:18 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=github.com; s=pf2014; t=1566177618; bh=vmoavgfO2Z4kSavOwd7vsCPYmzODmb5/2HhEkPP8p+w=; h=Date:From:Reply-To:To:Cc:In-Reply-To:References:Subject:List-ID: List-Archive:List-Post:List-Unsubscribe:From; b=cuhk311JTsYwM0msq2fg92O5acN1rbSmygxx9G1WMMmOt/shmtVDzqriX5Nw3j8DC tsyE6kHp/YAfwfHPERMq5RT2n+81l4iortgVImfvm3LZ/duEXlXGwVPsSm1Tk6A149 xQEqLcAeAyh/I12V+O877XCQixgFWxq01SR1Knec=
From: Martin Thomson <notifications@github.com>
Reply-To: quicwg/base-drafts <reply+AFTOJK2YJ2J7JWICPUV7VAF3M4V5FEVBNHHBZNUEEM@reply.github.com>
To: quicwg/base-drafts <base-drafts@noreply.github.com>
Cc: Subscribed <subscribed@noreply.github.com>
Message-ID: <quicwg/base-drafts/pull/2975/review/276309004@github.com>
In-Reply-To: <quicwg/base-drafts/pull/2975@github.com>
References: <quicwg/base-drafts/pull/2975@github.com>
Subject: Re: [quicwg/base-drafts] Add headings to Security Considerations (#2975)
Mime-Version: 1.0
Content-Type: multipart/alternative; boundary="--==_mimepart_5d59f9527ec4c_17003f943c0cd9641313e5"; charset="UTF-8"
Content-Transfer-Encoding: 7bit
Precedence: list
X-GitHub-Sender: martinthomson
X-GitHub-Recipient: quic-issues
X-GitHub-Reason: subscribed
X-Auto-Response-Suppress: All
X-GitHub-Recipient-Address: quic-issues@ietf.org
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic-issues/s1LcxLJbwsak9R95Ow3XykxT1Jg>
X-BeenThere: quic-issues@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Notification list for GitHub issues related to the QUIC WG <quic-issues.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic-issues>, <mailto:quic-issues-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic-issues/>
List-Post: <mailto:quic-issues@ietf.org>
List-Help: <mailto:quic-issues-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic-issues>, <mailto:quic-issues-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 19 Aug 2019 01:20:22 -0000
martinthomson approved this pull request. > When HTTP Alternative Services is used for discovery for HTTP/3 endpoints, the security considerations of {{!ALTSVC}} also apply. +## Traffic Analysis + +Where HTTP/2 employs PADDING frames and Padding fields in other frames to make a +connection more resistant to traffic analysis, HTTP/3 can either rely on +transport-layer padding or employ the reserved frame and stream types discussed +in {{frame-grease}} and {{stream-grease}}. This provides slightly different +granularities of padding and may involve different control surfaces. These methods of padding produce different results in terms of the granularity of padding, the effect of packet loss and recovery, and how an implementation might control padding. -- You are receiving this because you are subscribed to this thread. Reply to this email directly or view it on GitHub: https://github.com/quicwg/base-drafts/pull/2975#pullrequestreview-276309004
- [quicwg/base-drafts] Add headings to Security Con… Mike Bishop
- Re: [quicwg/base-drafts] Add headings to Security… Lucas Pardue
- Re: [quicwg/base-drafts] Add headings to Security… Martin Thomson
- Re: [quicwg/base-drafts] Add headings to Security… Mike Bishop
- Re: [quicwg/base-drafts] Add headings to Security… ianswett
- Re: [quicwg/base-drafts] Add headings to Security… Mike Bishop