[saag] RADEXT report for IETF 119

Valery Smyslov <valery@smyslov.net> Thu, 21 March 2024 20:13 UTC

Return-Path: <valery@smyslov.net>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 72047C14F68D; Thu, 21 Mar 2024 13:13:44 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.806
X-Spam-Level:
X-Spam-Status: No, score=-2.806 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=smyslov.net
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id L2JvNDZcP9T4; Thu, 21 Mar 2024 13:13:40 -0700 (PDT)
Received: from direct.host-care.com (direct.host-care.com [198.136.54.115]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A70EBC14F689; Thu, 21 Mar 2024 13:13:39 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=smyslov.net ; s=default; h=Content-Transfer-Encoding:Content-Type:MIME-Version:Message-ID :Date:Subject:Cc:To:From:Sender:Reply-To:Content-ID:Content-Description: Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID: In-Reply-To:References:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=g7jnQaozYT/jSPZm2pQCpaJl7mv+9eC+QPVvU3+wjEQ=; b=SIB5tPixTClnZyI2Hag5kld+ig ZNWkrVhe7HK1fMK4cLjjQERr2ZrClZrCNKgRvoucqyUuhJllSF4U5DhJUuDE2/ztnZ7nXvqxwMQKQ 8ZFjJ2cxpEXi3VinD1kjIpDpoKpFj4fbremwveggVAxzmdYoYbP/zvLPkcU3oLlcDCUOiPHTg4iGe b7GMZ8luTcd273zio2O3Csd7JspmGwyBFoW3o+PA0gAde5s41H/Vw0o9BBbDUpQyis0GvPpv+tbsg +ekEOMBlLxsMfsB8HkYiRr0yzmWsYXDblZTuGaOI0myIG29OkfquH9EXNDvqEGWn3a6uJH6GSPU4p 7fZlmNLA==;
Received: from [83.242.232.98] (port=63885 helo=svannotebook) by direct.host-care.com with esmtpsa (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.93) (envelope-from <valery@smyslov.net>) id 1rnOnB-0001Ho-QX; Thu, 21 Mar 2024 16:13:38 -0400
From: Valery Smyslov <valery@smyslov.net>
To: saag@ietf.org
Cc: radext-chairs@ietf.org
Date: Thu, 21 Mar 2024 23:13:33 +0300
Message-ID: <02ed01da7bcc$42207860$c6616920$@smyslov.net>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
X-Mailer: Microsoft Outlook 16.0
Content-Language: ru
Thread-Index: Adp7y91MBURemkW+ST6H/XfePdA0Wg==
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - direct.host-care.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - smyslov.net
X-Get-Message-Sender-Via: direct.host-care.com: authenticated_id: valery@smyslov.net
X-Authenticated-Sender: direct.host-care.com: valery@smyslov.net
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/IFoEnilGLLp4r0uraZFXOVWdd6U>
Subject: [saag] RADEXT report for IETF 119
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 21 Mar 2024 20:13:44 -0000

RADEXT WG met on Wednesday.

Since IETF 118:

1. draft-ietf-radext-tls-psk (RADIUS and TLS-PSK) has been sent to the IESG.
2. draft-ietf-radext-radiusv11 (RADIUS ALPN and removing MD5) is ready to be sent to the IESG, we will request its publication shortly after the meeting 
3. draft-ietf-radext-status-realm (Status-Realm and Loop Prevention for the Remote Dial-In User Service (RADIUS)) is adopted as WG document

At the meeting we discussed open issues with draft-ietf-radext-radiusdtls-bis ((Datagram) Transport Layer Security (D)TLS Encryption for RADIUS).
The draft receives some discussion in the ML, but needs more review. It was decided to distribute the draft in the UTA WG soliciting for reviews (done).

We also discussed the progress with draft-ietf-radext-reverse-coa (Reverse CoA in RADIUS) and draft-ietf-radext-deprecating-radius (Deprecating Insecure Practices in RADIUS) drafts.
Both are mostly ready for WGLC (minor updates are needed).

We had two presentations related to non-WG documents:
1. WBA OpenRoaming Wireless Federation (draft-tomas-openroaming) presented a work made in WBA for OpenRoaming.
The WG decided that the RADEXT WG is not a right home for this draft, but the WG is ready to review it.
2. RADIUS Attributes for 3GPP 5G AKA Authentication Method (draft-gundavelli-radext-5g-auth) requests for a set on new RADIUS attributes related to 5G-AKA. The draft is non-controversial and doesn't change RADIUS.

Margaret & Valery.