Re: [Technical Errata Reported] RFC9204 (7277)

Magnus Westerlund <magnus.westerlund@ericsson.com> Fri, 16 December 2022 10:07 UTC

Return-Path: <magnus.westerlund@ericsson.com>
X-Original-To: quic@ietfa.amsl.com
Delivered-To: quic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DD6F8C14CE54 for <quic@ietfa.amsl.com>; Fri, 16 Dec 2022 02:07:24 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4dqTqLZ3e5qY for <quic@ietfa.amsl.com>; Fri, 16 Dec 2022 02:07:20 -0800 (PST)
Received: from EUR05-VI1-obe.outbound.protection.outlook.com (mail-vi1eur05on2082.outbound.protection.outlook.com [40.107.21.82]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3AB0EC14CF14 for <quic@ietf.org>; Fri, 16 Dec 2022 02:07:19 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Dpe+LDI1kOJjnH2qDBfJUaUm0k/BNXNntijtHcw0R47DU+2L2eeAPzrVJaD+XPIPzM0WUtTHzOVIEn01Ij7BrD1IzN4j5WfTXoeW56FkjSCSZdGhQHct1SfDggawvzQQycq1tLPB0UyoPnqnOsY4Do4/Bo3cIcZoALDayO5edRQHxaZmT0f7BW/b+Q3if4S1AT1Gf5sioNwMvRbxMBlJPV43GEfm1jm0urZEklryAmv5RKSJR7dwj7QyF9aOUjSuCwp9B9Z3v9GP/1Bp3RJbEpmSo+m67IBUD4RbqEI9dQDKzKPIe2AjZGtyaJmilvaBVvPeRpxCom03jZmGCPVRWw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=tvtRRfZUMBjjPPD4SYKi1REmAsdVoolrj0Bk/kt+2xM=; b=N7ed9QEV3k9deBuKc5D0Kgobxz1SuwPtoGt1WpybC0pa2XUCu8keqCXqD3sdRGYMgj0LwQ9A71a+1Tc5666A5niJQf/pbWKCciZZnfZXt4g1nbpwhQYjLlBtGcOhqpOqiso0SR+T2UwNS2V20qeE3rLyfYaS4aBruTtwI08HKcG2leS0y7BqOrWes21ASrRrBgKEtgZyUNcytJXwQFfb3WwiMH/o8DPOtZnzo5c9oOIkokL1KzLMiUinn/TjZ0q7L5PvV4QG9dim9fr64O2VRmWkSEojbQuaiXgIQ9fC9pnC3jg3aoubtWxgMxUAADGmv1hJMVpRb0V1PPZ/dNmgyw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=tvtRRfZUMBjjPPD4SYKi1REmAsdVoolrj0Bk/kt+2xM=; b=MtOyFpbkvP5onuJR88KrLYBoS3QRtM+i3vbYEJLQwfCYNoFX4ZRIeS8XtPwsNHjx3t9iHqeiPhHSkIbE5LQGxEhGjayFj/i8HoEhncPR1Ue5BFsQOQaL9+jv0Pf/ba9l3LOrFqiAS8k8j/pLJc8rnub/LftzBkn9i49q65yth6Q=
Received: from PA4PR07MB8414.eurprd07.prod.outlook.com (2603:10a6:102:2a2::6) by PA4PR07MB8574.eurprd07.prod.outlook.com (2603:10a6:102:26c::20) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5880.19; Fri, 16 Dec 2022 10:07:16 +0000
Received: from PA4PR07MB8414.eurprd07.prod.outlook.com ([fe80::f694:1ec2:3a2c:bbc5]) by PA4PR07MB8414.eurprd07.prod.outlook.com ([fe80::f694:1ec2:3a2c:bbc5%5]) with mapi id 15.20.5880.019; Fri, 16 Dec 2022 10:07:16 +0000
From: Magnus Westerlund <magnus.westerlund@ericsson.com>
To: Martin Thomson <mt@lowentropy.net>, "quic@ietf.org" <quic@ietf.org>
Subject: Re: [Technical Errata Reported] RFC9204 (7277)
Thread-Topic: [Technical Errata Reported] RFC9204 (7277)
Thread-Index: AQHZEN1wZBVa0J+TK0yONP20Q06UKq5vqaEAgACf420=
Date: Fri, 16 Dec 2022 10:07:16 +0000
Message-ID: <PA4PR07MB84145558156CF9EE683191F295E69@PA4PR07MB8414.eurprd07.prod.outlook.com>
References: <20221215233141.39BA52B443@rfcpa.amsl.com> <b7a486d9-d23b-4d71-8fa3-ca811c14eead@betaapp.fastmail.com>
In-Reply-To: <b7a486d9-d23b-4d71-8fa3-ca811c14eead@betaapp.fastmail.com>
Accept-Language: en-US, sv-SE
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ericsson.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: PA4PR07MB8414:EE_|PA4PR07MB8574:EE_
x-ms-office365-filtering-correlation-id: d12b648d-2d1f-4e40-96dd-08dadf4d4f38
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: wIrZwUxxJPfBdrJcqya5eZJyVgucVlNVi6HJ2qjT1NQE7hPZP5NyCyyzNLbtrrMpYdgGzN2QrXNMVVCQNGohyAuBI1KAPBvqozFY7JNx3mmWqx5P3Wo47eopQE1W0aIcHy9j8SIyxtgu+4zdR/kfPQTZoUdnaDqBWGbTYgQipayoFu2dj4ZyEyMc0rdYMTR8WWfEbXJ2BTXFKk90dJiuR7h69JAVbropV8VL4GAu5bkWDHOzAX0k3Mfe2cle0VW/Fw5pP3c3IeDWh440UNXOaHDwROxknB2Y9mAdZeteN0LUawdVBloA7O0JTPWw4VFCKaiKYvwFge+Z1U1rCZ98f4TXG8KE26KA0X+dgF5lmXXAcD4YdiYMoheD6BFMTtnPa7OUSkJqVkF5lKyd4BrfEw55cATaeebTi78s686wUNYchmpzcmplK3MFFnL3UFwGNRydUT/SLhgNrYS17qojF/PvfRmpW4XY8qVLXvrPb2ZmusbDvNHRLUmQMfJwBPa2sp95GGIu/ydhajgjQbKUUfgCCao4K/FYXkiyd+eoV/mKXysBXEPQD/t0VEbdPtabTFODM7dEhHONNntBWPvfin07LKbmg/dfKlEcQkf8g0XZ3AaR7g5Znvi1h5Cfk3/ZPknaEs7QaaoXHltIdTMcC/mLNCaNT/7xEOsHL2uBpXhsTlfjCjm9h6TbPIm44Hu1UlBAvHfLt8Amx9uC57UbWddowsJwfOrtaaqqWGgeaZPBJTbS+ASm+kDtR5sOfcp0Jb/LcmaVkkCOaVpvdGqkXw==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PA4PR07MB8414.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230022)(4636009)(396003)(346002)(376002)(136003)(366004)(39860400002)(451199015)(33656002)(66899015)(2906002)(55016003)(91956017)(66946007)(66446008)(186003)(122000001)(64756008)(8676002)(38100700002)(66476007)(5660300002)(41300700001)(8936002)(44832011)(52536014)(71200400001)(110136005)(26005)(316002)(478600001)(66556008)(53546011)(166002)(38070700005)(76116006)(82960400001)(7696005)(6506007)(9686003)(83380400001)(86362001)(966005); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_PA4PR07MB84145558156CF9EE683191F295E69PA4PR07MB8414eurp_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PA4PR07MB8414.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: d12b648d-2d1f-4e40-96dd-08dadf4d4f38
X-MS-Exchange-CrossTenant-originalarrivaltime: 16 Dec 2022 10:07:16.0774 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: tfTxVt+dVFP9soowjeo447wAYSMuehwa53RAMc848jRikNQ74tL5hDhDNtotjYL4s4L3BieWso6WWl2lch3u0AsPln0eGE93kdgeNl9fIzI=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PA4PR07MB8574
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic/pWsx1Wdx0SsXdqS8c3d9gLodjiw>
X-BeenThere: quic@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Main mailing list of the IETF QUIC working group <quic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic>, <mailto:quic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic/>
List-Post: <mailto:quic@ietf.org>
List-Help: <mailto:quic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic>, <mailto:quic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 16 Dec 2022 10:07:25 -0000

Hi,

Isn’t this a Hold for Update case? The table is wrong in the sense that it contains useless entries as they don’t represent syntactically correct values. And in the future if the static table is revised and a way of knowing that the peer uses the revised table this should be addressed. So I would think a Hold for Update is an appropriate response to this errata. Or even just to clarify in the spec that these are mostly useless.

Cheers

Magnus Westerlund

From: QUIC <quic-bounces@ietf.org> on behalf of Martin Thomson <mt@lowentropy.net>
Date: Friday, 16 December 2022 at 01:31
To: quic@ietf.org <quic@ietf.org>
Subject: Re: [Technical Errata Reported] RFC9204 (7277)
Unfortunately, I think we have to reject this report.  Though the values for these entries might be useless, we can't change this without creating interoperability issues.

On Fri, Dec 16, 2022, at 10:31, RFC Errata System wrote:
> The following errata report has been submitted for RFC9204,
> "QPACK: Field Compression for HTTP/3".
>
> --------------------------------------
> You may review the report below and at:
> https://www.rfc-editor.org/errata/eid7277
>
> --------------------------------------
> Type: Technical
> Reported by: Rory Hewitt <rory.hewitt@gmail.com>
>
> Section: Appendix A
>
> Original Text
> -------------
> In the static table, entry 73 has a value of:
>
> access-control-allow-credentials: TRUE
>
> and entry 74 has a value of:
>
> access-control-allow-credentials: FALSE
>
> Corrected Text
> --------------
> Entry 73 should have a value of:
>
> access-control-allow-credentials: true
>
> (note the lower-case value of "true")
>
> and entry 74 should NOT EXIST since "FALSE" (in upper-case
> or lower-case) is not a valid value for this header.
>
> Notes
> -----
> The "access-control-allow-credentials" header is a CORS header. It only
> has one allowed value - "true" (without quotes, MUST be in lower-case).
> Values of "TRUE", "FALSE" and "false" are all invalid values, as is any
> mixed-case version of "true".
>
> See the latest WHATWG spec at
> https://fetch.spec.whatwg.org/#cors-protocol-and-credentials which
> notes the required case-sensitivity of the "true" value and that it is
> the only valid value.
>
> Also see the prior W3C spec at
> https://www.w3.org/TR/2020/SPSD-cors-20200602/#access-control-allow-credentials-response-header
> which says the same thing. Note that the W3C spec was superseded by the
> WHATWG spec.
>
> Note that there are many instances of
> "access-control-allow-credentials: false" being returned from server
> responses (which is presumably why these values were added to the
> table), but they are invalid and the servers that send them are not
> following the CORS specification.
>
> There may be case to be made that the static table is defined to make
> the QPACK algorithm as performant as possible and therefore it should
> include not only commonly-used valid values, but also commonly-used
> invalid values. However, the static table should ideally contain only
> valid header values.
>
> Instructions:
> -------------
> This erratum is currently posted as "Reported". If necessary, please
> use "Reply All" to discuss whether it should be verified or
> rejected. When a decision is reached, the verifying party
> can log in to change the status and edit the report, if necessary.
>
> --------------------------------------
> RFC9204 (draft-ietf-quic-qpack-21)
> --------------------------------------
> Title               : QPACK: Field Compression for HTTP/3
> Publication Date    : June 2022
> Author(s)           : C. Krasic, M. Bishop, A. Frindell, Ed.
> Category            : PROPOSED STANDARD
> Source              : QUIC
> Area                : Transport
> Stream              : IETF
> Verifying Party     : IESG