Re: Consensus to delete Obfuscated CID?

Martin Duke <martin.h.duke@gmail.com> Wed, 29 July 2020 19:06 UTC

Return-Path: <martin.h.duke@gmail.com>
X-Original-To: quic@ietfa.amsl.com
Delivered-To: quic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4D2603A0E34 for <quic@ietfa.amsl.com>; Wed, 29 Jul 2020 12:06:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id DEGYpVfgjQi4 for <quic@ietfa.amsl.com>; Wed, 29 Jul 2020 12:06:14 -0700 (PDT)
Received: from mail-io1-xd34.google.com (mail-io1-xd34.google.com [IPv6:2607:f8b0:4864:20::d34]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1C3343A0E3C for <quic@ietf.org>; Wed, 29 Jul 2020 12:06:14 -0700 (PDT)
Received: by mail-io1-xd34.google.com with SMTP id a5so10442103ioa.13 for <quic@ietf.org>; Wed, 29 Jul 2020 12:06:14 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=qoQHZ1pjXh16nPMpYHCzRSgB/WoDBWBqYPK09+qnHdI=; b=aplTucPQ8BwlPqxeCVsA38bM87r7kXq7AtncItCJ9N6U0NfeVEjQPns9d5hTk7nxIc OoDax0vfRBzb0PUvCV25ZwEuIrnb7LQnsCv4w3+jVfF8lTF0vScgd0zZERmDlAFS+eH9 nUgWNzyiyv8JgaRu5+vA3+MQTjZ+LUUtfUTbjQxa2cUh+//l0ZFVj/e+BjiFe3OvJqHj 4ltjvpfHkNq53tKfF54kZgbJvMHVbh6r9n0XaaaMb0UoA5PdL9Zqsq1uSRpzyhP5n5W9 UR1Z4AjujE+WZJ/H1zWsUcAx8wDNyrISLSMRXpz1k8RgyHe5r8Gzk1X9U567zESbk16D gMYQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=qoQHZ1pjXh16nPMpYHCzRSgB/WoDBWBqYPK09+qnHdI=; b=kVbDK98QFB0iGjRT4it1YT9KB0y9kM2rltRiBNZneIQ3iSGRl6jtFj4CPWKxgEl8vU RSVsIc5Q1zVcIFs2hu2J6dwvTfjGda5i8H3OWx1tH83ZskZDoOGAx3OCJELGcJbmtj1L qTiSMbRsb07LN89ZSJ5dlmsOrYb/gKygjb/DariHcjMFsL6+4LWjXC44mDMJUo1UBAoz xMtzyFEJYy1LWcHyiOjltcawE724JJchPGBzL+WHjgEeGC8q7dJgS/Vtj27oaJwkx1gK WtXIJHGxmXOP1V6RioqwQpMjvCx3Tu3/EJsvpFo8s25G6WBNzrsc4xooxmGUl5ZSB0aN y18g==
X-Gm-Message-State: AOAM5329s+Px394IuL4e6mFLOYeU2LhRstU494ELMH+Gs1/tZKFaHRaX vyCC6doRAXujdsiTBJy2AosuJvVfo66V5Zbgr9c=
X-Google-Smtp-Source: ABdhPJwHCGEsiif1rIFKCOigoOci0gzTKZRDfEKP3TvqFVX11VavUkwaGceY3wA6Zs8Suo5xanb+wcYUKStLiVRdQq0=
X-Received: by 2002:a6b:e216:: with SMTP id z22mr19763523ioc.97.1596049573481; Wed, 29 Jul 2020 12:06:13 -0700 (PDT)
MIME-Version: 1.0
References: <CAM4esxR82Nwv3LgEv_Wx-ExAvbt88gSPB=YkV97iy8F9t_uGPw@mail.gmail.com> <CACdeXiJiRLyJP+pAVwBMZNxcqQuRRakkgzFqKTVvMY9z17BW=w@mail.gmail.com>
In-Reply-To: <CACdeXiJiRLyJP+pAVwBMZNxcqQuRRakkgzFqKTVvMY9z17BW=w@mail.gmail.com>
From: Martin Duke <martin.h.duke@gmail.com>
Date: Wed, 29 Jul 2020 12:05:59 -0700
Message-ID: <CAM4esxQJSNNFjN=6BL29rSa96HNjg4wbrQ1tFGdm0uov7k6N6g@mail.gmail.com>
Subject: Re: Consensus to delete Obfuscated CID?
To: Nick Harper <nharper@google.com>
Cc: IETF QUIC WG <quic@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000df12e405ab993fc9"
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic/kt5o1MdgJUovk04Nka1NKsC9zHs>
X-BeenThere: quic@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Main mailing list of the IETF QUIC working group <quic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic>, <mailto:quic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic/>
List-Post: <mailto:quic@ietf.org>
List-Help: <mailto:quic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic>, <mailto:quic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 29 Jul 2020 19:06:15 -0000

I forgot to add that you can comment in the issue as well.

https://github.com/quicwg/load-balancers/issues/47

On Wed, Jul 29, 2020 at 12:02 PM Nick Harper <nharper@google.com> wrote:

> Let's delete it.
>
> On Wed, Jul 29, 2020 at 12:00 PM Martin Duke <martin.h.duke@gmail.com>
> wrote:
>
>> The sense of the room today was that the Obfuscated CID algorithm was
>> perhaps the worst of all worlds: complicated and fake-secure. I got
>> feedback that if we're going to be insecure, just do so explicitly with
>> plaintext.
>>
>> Before I delete a ton of text and code, are there any objections to doing
>> this?
>>
>