Re: A non-TLS standard is needed

Töma Gavrichenkov <ximaera@gmail.com> Sun, 26 April 2020 19:13 UTC

Return-Path: <ximaera@gmail.com>
X-Original-To: quic@ietfa.amsl.com
Delivered-To: quic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 578003A0E98 for <quic@ietfa.amsl.com>; Sun, 26 Apr 2020 12:13:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uq6rdB8O80vv for <quic@ietfa.amsl.com>; Sun, 26 Apr 2020 12:13:54 -0700 (PDT)
Received: from mail-yb1-xb33.google.com (mail-yb1-xb33.google.com [IPv6:2607:f8b0:4864:20::b33]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id AC95D3A0E93 for <quic@ietf.org>; Sun, 26 Apr 2020 12:13:53 -0700 (PDT)
Received: by mail-yb1-xb33.google.com with SMTP id l5so8292785ybf.5 for <quic@ietf.org>; Sun, 26 Apr 2020 12:13:53 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=CnKhJjjy9JhL8yFfc24/pEvshyj3k0JqFwcD3TXRmPo=; b=FdNWlQB9BB75baUVFoliaLVxNOGvj7y/5l7Dkzt+HsoUlHGckngrtz4D3VxE2/scZ+ 190wu0mVbXoNZdyHHS5GU4XDoj/zLFRHoyqV5E9f/QE6S9G4YePEJMq9q3liLEJZqloe MWdgm59A8N2zQsVFfktOWQx636RItmluiPndWzJaLM4mrMYbvyGd4Yj3Xa8qv/9tkRYD fY5Xa5kJqyRCRgno9tI2os4ljPLAsTOzaNUhH5H9Fm/20EGlgZz90wKa5FQqfmsHzlgc DHLwvtLbYfhfFqomNZtKEGMUfhUYtPc7bxpJ+6zATAWs98LKrZelmoXq6Q5B6WTeJbUs mKDw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=CnKhJjjy9JhL8yFfc24/pEvshyj3k0JqFwcD3TXRmPo=; b=hoyoHxLdZJESb9u2+GW+zPi09HiGR+BSkByKJVOTaf9fvx8wszXMPlcR3G1kFns8Pd gOa6xp6f7B1MP3hy42YA4lbskIzex5gCjobzt3ZVy3ftOxWfLL5V0s5eo5tLZrewQTdp 2Bpmn5H0zAWgTAhWnjwWXTNCkENrcgcG74/u6PgZpMCAbea1o/QXdAz0Vv2kBDDvuZ77 yYNaFa8i0Rt9eTyc3KxptCfHTe4/up57uc9xt2FGoU509xY1iWHripkF42ybt3r/0Bk0 wjLxSxUbtElnXscdPxezNLDXFDhYy1AgtHeBhU0giFoFu8IP/5FUH8U4o6i37D5P4LCq IT2w==
X-Gm-Message-State: AGi0PuaQ/EUwOIrbt1N43W30RX0ErIdCvR/WEEQL8k3xgS7fcQkdTlsF LYO4N+hBRrqqG0BsYb4kOhUYDV5i858cItrdkaqCUCgE
X-Google-Smtp-Source: APiQypLrvwYzuBGMGOvJUhFaSEOa4BuF+Q8YRvxmVlyPhPeIXZpA6Mqz1BN50gVT+HD9Dy+XYqABoxMTxBmNoLL0iVI=
X-Received: by 2002:a5b:cd0:: with SMTP id e16mr28479916ybr.107.1587928431541; Sun, 26 Apr 2020 12:13:51 -0700 (PDT)
MIME-Version: 1.0
References: <tencent_458BB4AFD3E32DBAAEA3F09FAEF063800605@qq.com> <7C5E535B-FA7B-4039-A286-7393C3B232CE@akamai.com> <2208100.KEu4SK8F6j@linux-9daj>
In-Reply-To: <2208100.KEu4SK8F6j@linux-9daj>
From: Töma Gavrichenkov <ximaera@gmail.com>
Date: Sun, 26 Apr 2020 22:13:37 +0300
Message-ID: <CALZ3u+ZGd=YWJFxLEivow9vXKU=5aAXJhcDYp4MPjpswuWWjKg@mail.gmail.com>
Subject: Re: A non-TLS standard is needed
To: Paul Vixie <paul@redbarn.org>
Cc: quic <quic@ietf.org>
Content-Type: multipart/alternative; boundary="00000000000017425905a436665f"
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic/-oJ2UGFXnbh3zxIvz9gIl0pH2Io>
X-BeenThere: quic@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Main mailing list of the IETF QUIC working group <quic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic>, <mailto:quic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic/>
List-Post: <mailto:quic@ietf.org>
List-Help: <mailto:quic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic>, <mailto:quic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 26 Apr 2020 19:13:57 -0000

Peace,

On Sun, Apr 26, 2020, 9:57 PM Paul Vixie <paul@redbarn.org> wrote:

> i was directed to the following i-d when i asked about QUIC manageability:
>
> https://tools.ietf.org/html/draft-ietf-quic-manageability-06#section-3


To be honest, and with all due respect to everyone involved, the
manageability draft wasn't properly updated for years (and the authors do
not seem to respond to emails, though this could be possibly attributed to
some sort of email filtering which is common those days).

To be specific, e.g. the section 4.4, as of today, still states that, to
quote, "current practices in detection and mitigation of Distributed Denial
of Service (DDoS) attacks generally involve passive measurement using
network flow data", which is clearly not how it works, as everyone who has
seen reCaptcha interruptions during application layer DDoS could witness.

There's certain amount of hard work required to update this document before
referencing it properly (I volunteer).


--
Töma