[saag] Fwd: Last Call: <draft-turner-est-extensions-08.txt> (EST Extensions) to Proposed Standard

Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com> Tue, 13 June 2017 16:13 UTC

Return-Path: <kathleen.moriarty.ietf@gmail.com>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A98B8131B48 for <saag@ietfa.amsl.com>; Tue, 13 Jun 2017 09:13:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Czy1JAYpqaAZ for <saag@ietfa.amsl.com>; Tue, 13 Jun 2017 09:13:05 -0700 (PDT)
Received: from mail-pf0-x235.google.com (mail-pf0-x235.google.com [IPv6:2607:f8b0:400e:c00::235]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B5C8B12783A for <saag@ietf.org>; Tue, 13 Jun 2017 09:03:32 -0700 (PDT)
Received: by mail-pf0-x235.google.com with SMTP id x63so70005663pff.3 for <saag@ietf.org>; Tue, 13 Jun 2017 09:03:32 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:in-reply-to:references:from:date:message-id:subject:to; bh=zeMTVlVkbpBfRHtcrvcw/VQfCO66mgkumc/mQWN8M+Q=; b=Fzol2esd5r+njgnJuUv6zTt80YsBgyw65R3iqxw/in38AM9GejoXQbZj7P9PPTryFf 5NDQA7954TNdbBjppYOlE452F2MRDMT4+4oDXOeoHmwIqmPIkgk9XCwnjGcO7IyJNHXV Qo2EW+IBLRgQoKWGreX1CcF9pM7c+cemM7GpCKGB4ZncJS0ozwSIz3R0iAJfJUx/buKr bwkM0HIdyUCkpp4A77QEhH6jlnUEvgF6sQz7Zu1kEAp1+d6djh0SVQiU8fyAwneNNe9W qnL48JXjDk2fcn10p2kLvNtRXZP24Uc5AgBQDHKOhlu1GyIOplbAkxL2ivV+Cs5Ymh+L Byxw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to; bh=zeMTVlVkbpBfRHtcrvcw/VQfCO66mgkumc/mQWN8M+Q=; b=Y8Fl+BVquzJfmkeYtKdPz1QtSnRM+BdMVtTT6Um63vqf/iDO4RG0nEnrrMQEGn1hZ/ E6EsMIdBlrAdofU3eXk89sU5yyUS1CR5wnFn6RCd7492O6AajqpM1jimhTGksSUYR5Hk bB0/xdK/S9v3T3e5kV1FSW9XHagAxQujgeGUkvmBNIEgIdV0oE8mIutTyg4rQ0rPHual JFF7QW63kp8DdopDduYW5dBmQN+Bz6WWW5hjdKYxyJJr0O6BHch5IMJTvBHp4Ajv9aft LPyGoialVE+qJsysOrZJR0LkFXDvzs8p0oXqI1J7SPuL8gwkYmY9Bc1ObiVTbqpri8XR dxdg==
X-Gm-Message-State: AKS2vOwPkhHHNYNVGLYDmF0j5E68Z4sScNao+v10J9GBAFo/AXFZD5Pk S1bOKNV1/iqmuIvaQ2mYMYUTpUKtag==
X-Received: by 10.98.62.65 with SMTP id l62mr446850pfa.114.1497369812099; Tue, 13 Jun 2017 09:03:32 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.100.169.13 with HTTP; Tue, 13 Jun 2017 09:02:51 -0700 (PDT)
In-Reply-To: <149736940938.7540.6075293394440140287.idtracker@ietfa.amsl.com>
References: <149736940938.7540.6075293394440140287.idtracker@ietfa.amsl.com>
From: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
Date: Tue, 13 Jun 2017 12:02:51 -0400
Message-ID: <CAHbuEH7Wc7WLBoZkEbAMa-NVUFtoy6brdnuiV8R_fhGaDRQo0w@mail.gmail.com>
To: "saag@ietf.org" <saag@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/LORH5fpYIDV6mbWxYxJ83sexEEA>
Subject: [saag] Fwd: Last Call: <draft-turner-est-extensions-08.txt> (EST Extensions) to Proposed Standard
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 13 Jun 2017 16:13:08 -0000

Hello,

I've agreed to AD sponsor the following draft.  If you are interested
to review it, please do so, last call just started.

Sean has my comments queued up and may update the draft today, but
they are pretty simple.

Add RFC7525 to the reference list for securing TLS.
Fix part of the schema so it validates.  It is missing an
xsd:restriction around a set of limited values [0-9]+

I have asked Dave Waltermire to also validate the schema, so hopefully
that's on the new version.

Thanks in advance for your comments and feedback to the last call
process as indicated below.

Best,
Kathleen


---------- Forwarded message ----------
From: The IESG <iesg-secretary@ietf.org>
Date: Tue, Jun 13, 2017 at 11:56 AM
Subject: Last Call: <draft-turner-est-extensions-08.txt> (EST
Extensions) to Proposed Standard
To: IETF-Announce <ietf-announce@ietf.org>
Cc: Kathleen.Moriarty.ietf@gmail.com,
draft-turner-est-extensions@ietf.org, dharkins@lounge.org



The IESG has received a request from an individual submitter to consider the
following document: - 'EST Extensions'
  <draft-turner-est-extensions-08.txt> as Proposed Standard

The IESG plans to make a decision in the next few weeks, and solicits final
comments on this action. Please send substantive comments to the
ietf@ietf.org mailing lists by 2017-07-11. Exceptionally, comments may be
sent to iesg@ietf.org instead. In either case, please retain the beginning of
the Subject line to allow automated sorting.

Abstract


   The EST (Enrollment over Secure Transport) protocol defined a Well-
   Known URI (Uniform Resource Identifier): /.well-known/est.  EST also
   defined several path components that clients use for PKI (Public Key
   Infrastructure) services, namely certificate enrollment (e.g.,
   /simpleenroll).  In some sense, the services provided by the path
   components can be thought of as PKI management-related packages.
   There are additional PKI-related packages a client might need as well
   as other security-related packages, such as firmware, trust anchors,
   and symmetric, asymmetric, and encrypted keys.  This document also
   specifies the PAL (Package Availability List), which is an XML
   (Extensible Markup Language) file or JSON (Javascript Object
   Notation) object that clients use to retrieve packages available and
   authorized for them.  This document extends the EST server path
   components to provide these additional services.




The file can be obtained via
https://datatracker.ietf.org/doc/draft-turner-est-extensions/

IESG discussion can be tracked via
https://datatracker.ietf.org/doc/draft-turner-est-extensions/ballot/


No IPR declarations have been submitted directly on this I-D.


The document contains these normative downward references.
See RFC 3967 for additional information:
    rfc7193: The application/cms Media Type (Informational - IETF stream)
    rfc6268: Additional New ASN.1 Modules for the Cryptographic
Message Syntax (CMS) and the Public Key Infrastructure Using X.509
(PKIX) (Informational - IETF stream)
    rfc7292: PKCS #12: Personal Information Exchange Syntax v1.1
(Informational - IETF stream)
    rfc5967: The application/pkcs10 Media Type (Informational - IETF stream)





-- 

Best regards,
Kathleen