Re: [Rats] EAT IANA registry

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Fri, 22 November 2019 06:17 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: rats@ietfa.amsl.com
Delivered-To: rats@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CB9A6120110 for <rats@ietfa.amsl.com>; Thu, 21 Nov 2019 22:17:41 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=xfxaC5ls; dkim=fail (1024-bit key) reason="fail (body has been altered)" header.d=armh.onmicrosoft.com header.b=QMRF5xXv
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qHeVgmtQPcBq for <rats@ietfa.amsl.com>; Thu, 21 Nov 2019 22:17:38 -0800 (PST)
Received: from EUR02-VE1-obe.outbound.protection.outlook.com (mail-ve1eur02on062a.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe06::62a]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 671FE1200DE for <rats@ietf.org>; Thu, 21 Nov 2019 22:17:38 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=s3UUh2prerrhzEozLx0RDa0NnKAGdSyuIO2KvuLnNys=; b=xfxaC5lsJ6CgXjlGG53FiRION7MwA18YWiyEbqqpBxLdwcr+l/Ku3t2+OdSEjUro+EZqEIDiDG+DTmOpaY5V3x2FW/S3C82z8n+Q4/Zwr27cHSPfGsSoF8oidkMjhrqRn9FLELP2HVfxp8S4EsE8IaCQziDjJw2capLflr8QHvA=
Received: from VE1PR08CA0033.eurprd08.prod.outlook.com (2603:10a6:803:104::46) by VI1PR08MB5519.eurprd08.prod.outlook.com (2603:10a6:803:13b::7) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2474.21; Fri, 22 Nov 2019 06:17:35 +0000
Received: from AM5EUR03FT008.eop-EUR03.prod.protection.outlook.com (2a01:111:f400:7e08::201) by VE1PR08CA0033.outlook.office365.com (2603:10a6:803:104::46) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2474.17 via Frontend Transport; Fri, 22 Nov 2019 06:17:35 +0000
Authentication-Results: spf=fail (sender IP is 63.35.35.123) smtp.mailfrom=arm.com; ietf.org; dkim=pass (signature was verified) header.d=armh.onmicrosoft.com;ietf.org; dmarc=none action=none header.from=arm.com;
Received-SPF: Fail (protection.outlook.com: domain of arm.com does not designate 63.35.35.123 as permitted sender) receiver=protection.outlook.com; client-ip=63.35.35.123; helo=64aa7808-outbound-1.mta.getcheckrecipient.com;
Received: from 64aa7808-outbound-1.mta.getcheckrecipient.com (63.35.35.123) by AM5EUR03FT008.mail.protection.outlook.com (10.152.16.123) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2474.17 via Frontend Transport; Fri, 22 Nov 2019 06:17:35 +0000
Received: ("Tessian outbound 512f710540da:v33"); Fri, 22 Nov 2019 06:17:35 +0000
X-CR-MTA-TID: 64aa7808
Received: from 152981b5e0f9.1 (ip-172-16-0-2.eu-west-1.compute.internal [104.47.9.58]) by 64aa7808-outbound-1.mta.getcheckrecipient.com id 301E5990-7E32-4001-8908-595EADA0E53B.1; Fri, 22 Nov 2019 06:17:30 +0000
Received: from EUR03-VE1-obe.outbound.protection.outlook.com (mail-ve1eur03lp2058.outbound.protection.outlook.com [104.47.9.58]) by 64aa7808-outbound-1.mta.getcheckrecipient.com with ESMTPS id 152981b5e0f9.1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384); Fri, 22 Nov 2019 06:17:30 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=hmHnbHt6jXjtH00GDCQG+iA/L+6iMll+Gvg27PcTrcCE8jd6t9b46V8stBGlEsK6ld2FNctPvrGimjIRzR/cwMcZvDW+WINgfrM+BfK4+QGrzt6idBZlXc3ePDAVsE3pLxR96Y6b/ffqTogL/52c1nr0fGAu3U9JNAOEVmIZv+8vigg+pWXc8xAGe84Ms3+8cGpqxBPUWLYmLHQimWhoFMfhT632RZPAUrMdyslAHGWKzUh3ZJCEjQ9ZdWu+T0hAMxm4wbGuTEafhmpKX3mebgZAhtAcGX6ZFiI1X4+M19AWdBW7xLQkiJE5y5Ezx35InlEZLI2Grb351aBaCqKs4Q==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=1499L+gmO+EMWYfGUhSc5aizhl5JSExlhBcj4csXU/k=; b=isKisEaSqOYiPp81BiHi/vkOk8OnlSQkKWM7LQNGR61rgywH1kpNlV68HxYQC3UjKn5j02vuNRPjJ3Q4ywHQpON5XH013MtY++ZKB/7Fk9t9+9KWJ4s+X1udDfT1HCvpFJyH5/AZGbToQSB9KXwOidFt87LaSXnp4uh3B1XoivyVaaORyXEqtXmj+J0VVNIhr7SyplTuuzyB7882+VFy3hNJ7cPl3CRtQbBbSsEXh6+bxkI8K3XKHyU4zxWlolaVO/w+3UQdEsa8CJtOtGdV5oBfPGwGZrzmkQZxnvFyKfK+6MEZZ3lmnvY6avKwCEghH7TJRqogqBEyufV2LkFsVg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=1499L+gmO+EMWYfGUhSc5aizhl5JSExlhBcj4csXU/k=; b=QMRF5xXvh9mEpxgMgB7GfWeCoIGqKWc1k/FHhSLSrfeSSLyLtKpU+iLMIceL6z6Hxad8U/mRqHAYNQCul2tiVFFzVnT3FBm87O0PFQJGYck+IoXP1tK/O8yBbA3P/p+9sq4gy4LWjJnXXMk3DEFEjg+C1VmyKQo6Z/Od1SvBYyk=
Received: from VI1PR08MB5360.eurprd08.prod.outlook.com (52.133.245.74) by VI1PR08MB4110.eurprd08.prod.outlook.com (20.178.126.206) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2474.16; Fri, 22 Nov 2019 06:17:29 +0000
Received: from VI1PR08MB5360.eurprd08.prod.outlook.com ([fe80::4044:55a8:a969:fd1d]) by VI1PR08MB5360.eurprd08.prod.outlook.com ([fe80::4044:55a8:a969:fd1d%7]) with mapi id 15.20.2451.031; Fri, 22 Nov 2019 06:17:29 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: Yaron Sheffer <yaronf.ietf@gmail.com>, "rats@ietf.org" <rats@ietf.org>
Thread-Topic: EAT IANA registry
Thread-Index: AQHVoPrPbpn4UX0BZEaNgTjD7nYLdKeWtvDQ
Date: Fri, 22 Nov 2019 06:17:28 +0000
Message-ID: <VI1PR08MB53605A2A2E61E6EAE2609FECFA490@VI1PR08MB5360.eurprd08.prod.outlook.com>
References: <D2CF9D31-057E-4B47-A3D0-08BBBF997F47@gmail.com>
In-Reply-To: <D2CF9D31-057E-4B47-A3D0-08BBBF997F47@gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ts-tracking-id: 58af506b-2769-49e5-bc84-af9bc588f780.0
x-checkrecipientchecked: true
Authentication-Results-Original: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
x-originating-ip: [31.133.147.34]
x-ms-publictraffictype: Email
X-MS-Office365-Filtering-HT: Tenant
X-MS-Office365-Filtering-Correlation-Id: 2bf416f2-3447-40d0-dc70-08d76f13aa8a
X-MS-TrafficTypeDiagnostic: VI1PR08MB4110:|VI1PR08MB5519:
X-Microsoft-Antispam-PRVS: <VI1PR08MB5519C3B20DDC3CA0551477D5FA490@VI1PR08MB5519.eurprd08.prod.outlook.com>
x-checkrecipientrouted: true
x-ms-oob-tlc-oobclassifiers: OLM:6430;OLM:6430;
x-forefront-prvs: 02296943FF
X-Forefront-Antispam-Report-Untrusted: SFV:NSPM; SFS:(10009020)(4636009)(39860400002)(136003)(366004)(376002)(396003)(346002)(189003)(199004)(9686003)(81166006)(74316002)(8676002)(6306002)(54896002)(6436002)(55016002)(81156014)(86362001)(7736002)(3846002)(14454004)(52536014)(790700001)(6116002)(71200400001)(53546011)(6506007)(8936002)(5660300002)(110136005)(6246003)(478600001)(2501003)(102836004)(25786009)(316002)(26005)(186003)(2906002)(71190400001)(229853002)(256004)(66066001)(76176011)(4744005)(3480700005)(446003)(11346002)(33656002)(66446008)(66556008)(76116006)(7116003)(7696005)(64756008)(66476007)(66946007)(99286004); DIR:OUT; SFP:1101; SCL:1; SRVR:VI1PR08MB4110; H:VI1PR08MB5360.eurprd08.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: arm.com does not designate permitted sender hosts)
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam-Untrusted: BCL:0;
X-Microsoft-Antispam-Message-Info-Original: FOAL5uQ3d6GcXy9D4fERoJkmKCnN13txwojB12dr1dhDxLc/lji7L2w+S2x7sLKqqGgKOQLTzYLi24/6wXquiH6glSF38OPg+FJAI4TLfnp0WsjC1MjbZLCFRNwRSkyxZjcWxW6oE9Mc2IdYWWBP6SV4IbFO8IRsjN7SfXIQ3p+ISshhksKFiuwhI2MYq6bkH8SlemKHS/vYjq9+B1ZFFwNcxBE0fM1ikLClxJs1Skfj15Nv7hoC6+kYKyF6ULoI4qIb9qWidnVm19pWlpWaBZRPbCI0ds2BKKZamYVXZjWDUQR8Y271kH7Ol2G/u5FO7hhAvhEui82ifstDraJiKnI50rm596LYhkV0gfsXD3w+FrJoRiVDynpvru+kJhCo/aV/qfi8a1ciFnx8/2EGxF4oAMiZHH49knIdMtjzixxnESZb3DdNGcniaR/dGUFU
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_VI1PR08MB53605A2A2E61E6EAE2609FECFA490VI1PR08MB5360eurp_"
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR08MB4110
Original-Authentication-Results: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
X-EOPAttributedMessage: 0
X-MS-Exchange-Transport-CrossTenantHeadersStripped: AM5EUR03FT008.eop-EUR03.prod.protection.outlook.com
X-Forefront-Antispam-Report: CIP:63.35.35.123; IPV:CAL; SCL:-1; CTRY:IE; EFV:NLI; SFV:NSPM; SFS:(10009020)(4636009)(376002)(346002)(136003)(396003)(39860400002)(1110001)(339900001)(199004)(189003)(40434004)(8936002)(81166006)(81156014)(7116003)(229853002)(5660300002)(70206006)(6246003)(70586007)(2906002)(52536014)(66066001)(7736002)(105606002)(110136005)(99286004)(76130400001)(8676002)(55016002)(6306002)(9686003)(54896002)(16586007)(74316002)(446003)(186003)(336012)(36906005)(2501003)(316002)(26005)(26826003)(7696005)(86362001)(76176011)(3480700005)(478600001)(33964004)(11346002)(6116002)(790700001)(3846002)(5024004)(356004)(33656002)(102836004)(14454004)(71190400001)(53546011)(22756006)(14444005)(25786009)(6506007); DIR:OUT; SFP:1101; SCL:1; SRVR:VI1PR08MB5519; H:64aa7808-outbound-1.mta.getcheckrecipient.com; FPR:; SPF:Fail; LANG:en; PTR:ec2-63-35-35-123.eu-west-1.compute.amazonaws.com; A:1; MX:1;
X-MS-Office365-Filtering-Correlation-Id-Prvs: 68b5fd6c-ba2d-4205-9a2f-08d76f13a6d9
X-Forefront-PRVS: 02296943FF
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: jcKo36UBFMuH0H/oGSlCQSjNlvduHBOczLECcpFAKpD4HjkYh1LEEurDEc7ckLB9E4Rysu8lmm9HPCzlWm4CyPtfNxfTHJHgz4Wa4KTgnepX0lf4RORIoS1lGjQDAWbCfKGuR6zsO+VeV7bu30CbUQObX5HnY1cbs46entkpHTY4GyF19FTpN84MSQrS62gBad8tHE0ERijVyO4Vl/SKw7/DQm7bq2xt0Xes6lhyIJXgf7H3CCqIa6eGFbgXsi7wJZqcPJhck7p6bOnTHNRKF0zHxs7Ejw0+Nlyvc0qREMarxcpx9UqllfLyJMWFHu3s4372/pVlLn4c8bg2M9XQRpOHhHiqvf9zBUjQ/o8oFjqCvBK5QqHhfTPqV++IIz9TUMyLnYSGBQ+3NqI3EXQb44VYnJerb3lMY0pqSanxipJpkr9nWpVwN0EhEI8o01X5
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 22 Nov 2019 06:17:35.1522 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: 2bf416f2-3447-40d0-dc70-08d76f13aa8a
X-MS-Exchange-CrossTenant-Id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=f34e5979-57d9-4aaa-ad4d-b122a662184d; Ip=[63.35.35.123]; Helo=[64aa7808-outbound-1.mta.getcheckrecipient.com]
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR08MB5519
Archived-At: <https://mailarchive.ietf.org/arch/msg/rats/_shRm2CKldyuitrlHswtRo-TEPM>
Subject: Re: [Rats] EAT IANA registry
X-BeenThere: rats@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Remote Attestation Procedures <rats.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/rats>, <mailto:rats-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/rats/>
List-Post: <mailto:rats@ietf.org>
List-Help: <mailto:rats-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/rats>, <mailto:rats-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 22 Nov 2019 06:17:42 -0000

Yaron,
Could you explain why you think that this is a good idea?
Ciao
Hannes

From: RATS <rats-bounces@ietf.org> On Behalf Of Yaron Sheffer
Sent: Friday, November 22, 2019 2:05 PM
To: rats@ietf.org
Subject: [Rats] EAT IANA registry

Unrelated to my earlier mail, I would recommend to create a separate registry for EAT claims (I suppose that implies a nested object in the JWT/CWT) rather than to overload the CWT registry. Architecturally it just doesn’t jive to have all these claims as baseline CWT claims, and process-wise, it’s much more convenient for this group to control its own namespace.

Sorry if this has been raised before.

Thanks,
                Yaron
IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.