Re: [saag] RADIUS is deprecating MD5

Paul Wouters <paul.wouters@aiven.io> Mon, 01 April 2024 14:51 UTC

Return-Path: <paul.wouters@aiven.io>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7AC17C14CEFF for <saag@ietfa.amsl.com>; Mon, 1 Apr 2024 07:51:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.096
X-Spam-Level:
X-Spam-Status: No, score=-2.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=aiven.io
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id up1PGHvgrFym for <saag@ietfa.amsl.com>; Mon, 1 Apr 2024 07:51:53 -0700 (PDT)
Received: from mail-lf1-x131.google.com (mail-lf1-x131.google.com [IPv6:2a00:1450:4864:20::131]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0267FC14CEFD for <saag@ietf.org>; Mon, 1 Apr 2024 07:51:52 -0700 (PDT)
Received: by mail-lf1-x131.google.com with SMTP id 2adb3069b0e04-516a97b3139so916951e87.2 for <saag@ietf.org>; Mon, 01 Apr 2024 07:51:52 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=aiven.io; s=google; t=1711983111; x=1712587911; darn=ietf.org; h=to:in-reply-to:cc:references:message-id:date:subject:mime-version :from:content-transfer-encoding:from:to:cc:subject:date:message-id :reply-to; bh=Y5goqrIf8h1XiMMo3zAYnH5Z0zNIYiZg+GNp8+Ibhio=; b=A5zhoG3Y18HKfczReGvPOaTkuafSRZ8yR2jfDsEKe6gP8euPq5WlXs4TjEQ4vQkv5R IJry/4H17sshaDpE3eiAcCLfrdZQ2vgVs6STa1obDwj8moKJvLWbF8TOA19ub6uf4fK+ mCBUMJ5bJadovnPwNO7iXGeY+QaBhbnrNpS5Y=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1711983111; x=1712587911; h=to:in-reply-to:cc:references:message-id:date:subject:mime-version :from:content-transfer-encoding:x-gm-message-state:from:to:cc :subject:date:message-id:reply-to; bh=Y5goqrIf8h1XiMMo3zAYnH5Z0zNIYiZg+GNp8+Ibhio=; b=xBfoVp7lfcxd17QkJhHGuq9yzFRkHANq+rN+BbetHLIFWKL4vl+a9JCPiaAn/Xa5Qd 7nFXLghujwph/OBpmm2ekQVknXxJKS8nb2+g2FUwdhWy9PylsDDAwncR2hazb+NAjxX6 lNfz2hJkTCdzSgjtVtN0y/6mNCUOqcM6BfGatXEBuHvotJ542MmWwTXXSOiY7Ammg/pd 5WnxksaJ+2L5ldBfucnOuUJOy0+aVDPrA/wUtpNdnd7aUlHdjZgKPIpmuvkwoY04m6e2 G4fItpS6CQzGkLWC1XkQpPJAVpZKXLzBN40bCe69i+3NoOYG1BkS3MbrApbdfq/SYTff yWyw==
X-Forwarded-Encrypted: i=1; AJvYcCWnWU7HokK+Mijz+sxe4fwAzyn+DdcTBYYpsD/ZiAuHh1AccpIwQVtD5rLeWbrFsJb0ZHz9ubvun9oYKhpi
X-Gm-Message-State: AOJu0YxLTMnSkFs1wzvxZKa3+UvyXmn06dr8AHgMvQNA2e1v78lJooVY Cpad+sAIl87cC0a1v9xGpG6Ar33EsIoIUxnEYVLlz9cmlzs2B3NrdxitfFIFxNvmjRtBe/RgKSj W
X-Google-Smtp-Source: AGHT+IE2+bNg6uQ/HjeT1EEfY3O8q1nYsvd2bRzIJeGmeJHewDb3yPTyzfbiVPIzlmynegCYyNH3RA==
X-Received: by 2002:a05:6512:31c7:b0:513:cc91:9ed7 with SMTP id j7-20020a05651231c700b00513cc919ed7mr3716800lfe.11.1711983110914; Mon, 01 Apr 2024 07:51:50 -0700 (PDT)
Received: from smtpclient.apple ([142.115.101.253]) by smtp.gmail.com with ESMTPSA id kk15-20020a056214508f00b00696a78b9cc6sm4577689qvb.53.2024.04.01.07.51.50 (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Mon, 01 Apr 2024 07:51:50 -0700 (PDT)
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: Paul Wouters <paul.wouters@aiven.io>
Mime-Version: 1.0 (1.0)
Date: Mon, 01 Apr 2024 10:51:25 -0400
Message-Id: <BFF8AF34-F66D-47F8-A0BB-CE49F9E57A59@aiven.io>
References: <2FD85AB2-FA68-4FEB-8170-E78A7AADE1AF@deployingradius.com>
Cc: Peter Gutmann <pgut001@cs.auckland.ac.nz>, saag@ietf.org
In-Reply-To: <2FD85AB2-FA68-4FEB-8170-E78A7AADE1AF@deployingradius.com>
To: Alan DeKok <aland@deployingradius.com>
X-Mailer: iPhone Mail (21D61)
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/6KesnD-o8gk5PE6s8Ly8KkGgxKY>
Subject: Re: [saag] RADIUS is deprecating MD5
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 01 Apr 2024 14:51:57 -0000

Hi everyone,

Please keep the discussions technical and not personal.

Also, there isn’t much point in debating whether these two documents should move forward or not, as the radext WG decided on that a few years back. For those with cycles to burn, please comment on the drafts instead, but please do so over at the radext@ietf.org list.

Thank you for your reviews !

Paul