Re: [saag] SSH & Ntruprime

Eric Rescorla <ekr@rtfm.com> Mon, 25 March 2024 14:10 UTC

Return-Path: <ekr@rtfm.com>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 843AEC14F6F3 for <saag@ietfa.amsl.com>; Mon, 25 Mar 2024 07:10:16 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.904
X-Spam-Level:
X-Spam-Status: No, score=-6.904 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=rtfm-com.20230601.gappssmtp.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id x5Dsvijp9CWK for <saag@ietfa.amsl.com>; Mon, 25 Mar 2024 07:10:12 -0700 (PDT)
Received: from mail-yw1-x1133.google.com (mail-yw1-x1133.google.com [IPv6:2607:f8b0:4864:20::1133]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A20B1C14F6BA for <saag@ietf.org>; Mon, 25 Mar 2024 07:10:12 -0700 (PDT)
Received: by mail-yw1-x1133.google.com with SMTP id 00721157ae682-60a104601dcso50301787b3.2 for <saag@ietf.org>; Mon, 25 Mar 2024 07:10:12 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=rtfm-com.20230601.gappssmtp.com; s=20230601; t=1711375812; x=1711980612; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=BeEkpdX2Lfom9HDppisjxbyAcBcclCmk/0SJOfAYCS8=; b=rGyVQDlLxdsjyrmznvKaOL22jLLK+COYo0ll7n+7JME4sVuP1AItScqrocxBUPHj6K ajDYqWNAYekVbNC86X/iIMyfS7S7YujS/alQuWQUAa5ZZhaGNvVWvVTtgFZ/bgXAWR3J O24XLBBxmM1pwfHjdEpKsEltVXXUb2AYpGEpf0ynl9Bb3qt13nVmPhN6QKJKVqtCCHsA 0z8g9qyWxqKWYlkl2Dwvfpk+j7ovhI28lrj/MkEpWfo0k1CfyYpkl3bDdM1UMicWz7Ga LY4UszaODxtLZ706MFZHOdwBu0vMuUybrDVl9017HnzlnvoHkjXg/KHswTX/90J9HkU3 7mqg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1711375812; x=1711980612; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=BeEkpdX2Lfom9HDppisjxbyAcBcclCmk/0SJOfAYCS8=; b=pZyZ0Z3UDxSJXu5fcdE2DzNGXNNuWXE5VTG498//UDgXK/j9tEbyf6QF/7JlCpW8dN tsRvSSslgnQDy4wIPwy+6VFdDJuBNxBS3LgWcbTdVMq4yz5kxi/DnYBHS28PMCG+zLEK l89TGsWp0+PUAmaKX4LRHBlwccjr92F9dXnOQxX1ylUlwrY8gumZKWIXfp5jQy7mo07Z quYSUyIX0yOS5J4a5sB2U4tfLfyUS/d9Y/ymn7taQL8UTw6qGjHj07p765Mmvd7vz+wS bbZGDTRK8/biK4zT7zjaieGah26dfLWlpwTgUfNN+Et4SeP8aJWOfWNiUFga31pW2RgQ tDqw==
X-Forwarded-Encrypted: i=1; AJvYcCWUfs30+wCajOW3164iamAoHPxqNYIZBl7D6LTtkOxiNRaDHwjGthWsurz5rhf4J9UJU+qLvcOO9OGYY+Xp
X-Gm-Message-State: AOJu0YzUNcNDvUPdQ+Gw0Rq4gpcjxMICeXqLlyBFOg1JEp1tbjACsJaE bW1NxXTi0OI2IsXsupAHrhgcF7LDl0mR3ApDpaWeCQsCIulvtuXZAL5Jv9+R8XAoWpC9g1Vd7xN 1H8bizW2sujGBLJyktS8bJM/J14jfuV5x7Cfd+ZpuxR8fkkjN
X-Google-Smtp-Source: AGHT+IFmnKpGqeSo9ThjnzIFFCHqjjcTsx5QTFDetrK/XVIvdTe7fV5qPzsNjKy9BiLAKsKZJye4CMidfC5K0jy4XaU=
X-Received: by 2002:a0d:ee85:0:b0:60c:caa2:6707 with SMTP id x127-20020a0dee85000000b0060ccaa26707mr13393ywe.8.1711375810324; Mon, 25 Mar 2024 07:10:10 -0700 (PDT)
MIME-Version: 1.0
References: <CABcZeBPWjXvLh06-DBO3Z0sfeb2hgzqzaSZ-J2-TZ7qesrSraA@mail.gmail.com> <D0CD341B-523B-48A0-8954-EE7F89113241@aiven.io> <AF7B6F32-9EE6-4810-A99A-833DEA917FA9@sonic.net> <CABcZeBPfXQckpZageogUxTYgX2j_Nr_O3bvf-a-x0S_82BHMxg@mail.gmail.com> <079A0AA3-FA02-440F-ABA0-6AF897570E86@sonic.net> <CABcZeBOxfYR+=61DV1XN0F9nrmbzLR2zq_ZvADw4UUy1uFafzw@mail.gmail.com> <8caa2d4d-bc80-4fcf-b8bc-839052371730@lear.ch> <CABcZeBMABJ89T0qY0-9C3xxd=mFfGyCh7_9GKbEUBm6JtR+_ng@mail.gmail.com> <6c491f5c-92da-4fb3-a8b1-da1de27b36a6@lear.ch> <CAN8C-_+S44bv1DfmdDnQqp-9Y9y0Sx2T4nxM4f2jDUMNZvsccQ@mail.gmail.com>
In-Reply-To: <CAN8C-_+S44bv1DfmdDnQqp-9Y9y0Sx2T4nxM4f2jDUMNZvsccQ@mail.gmail.com>
From: Eric Rescorla <ekr@rtfm.com>
Date: Mon, 25 Mar 2024 07:09:34 -0700
Message-ID: <CABcZeBNJPK4=TTit3gny-oeEeHS+5nFS0o-dPu9m7DPoNK2zsA@mail.gmail.com>
To: Orie Steele <orie@transmute.industries>
Cc: Eliot Lear <lear@lear.ch>, Mark D Baushke <mdb@sonic.net>, Paul Wouters <paul.wouters=40aiven.io@dmarc.ietf.org>, saag <saag@ietf.org>
Content-Type: multipart/alternative; boundary="00000000000040967906147cbb42"
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/ORUYr2prtCmihXf4y_y18Gf9y_o>
Subject: Re: [saag] SSH & Ntruprime
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 25 Mar 2024 14:10:16 -0000

On Mon, Mar 25, 2024 at 7:03 AM Orie Steele <orie@transmute.industries>
wrote:

> I think it's been a mistake to allow specification required to be met with
> expired drafts.
>

Why does it matter if they are expired? They will expire soon enough,
modulo https://datatracker.ietf.org/doc/draft-thomson-gendispatch-no-expiry/

-Ekr


> If the code point is adopted and the draft can no longer change, it's a
> bit of an end run on the process. (Citation as something other than work in
> progress, because work can no longer progress).
>






> I've started adding guidance to DEs directing them not to accept expired
> internet drafts because of this, and to remove entries for expired
> drafts... But that only works for new registries moving forward... And to
> be clear, I think it's still up to DE to decide if an expired ID is allowed
> in a specification required registry.
>
> OS
>
>
>
> On Mon, Mar 25, 2024, 8:54 AM Eliot Lear <lear@lear.ch> wrote:
>
>>
>> On 25.03.2024 14:46, Eric Rescorla wrote:
>> > [Citation needed].
>>
>> No.  No citation needed because it happens during the development
>> process of a draft all the time, and you should know this because you've
>> written enough code to drafts.  The point is, you don't know when a
>> draft is "finished".  The benefit of an RFC or something similar is that
>> it is a signal that indeed the spec won't change.  We make an exception
>> for early allocation for those drafts we know are going to become RFCs.
>> Drafts are NOT the droids you're looking for.
>>
>> Eliot
>>
>> _______________________________________________
>> saag mailing list
>> saag@ietf.org
>> https://www.ietf.org/mailman/listinfo/saag
>>
>