[saag] TxAuth BoF report

Yaron Sheffer <yaronf.ietf@gmail.com> Thu, 21 November 2019 03:54 UTC

Return-Path: <yaronf.ietf@gmail.com>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 166F01209CF for <saag@ietfa.amsl.com>; Wed, 20 Nov 2019 19:54:55 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.642
X-Spam-Level:
X-Spam-Status: No, score=-0.642 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, MALFORMED_FREEMAIL=1.355, MIME_QP_LONG_LINE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id RK2SqZ4yPfZa for <saag@ietfa.amsl.com>; Wed, 20 Nov 2019 19:54:54 -0800 (PST)
Received: from mail-pl1-x636.google.com (mail-pl1-x636.google.com [IPv6:2607:f8b0:4864:20::636]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 26B0A120988 for <saag@ietf.org>; Wed, 20 Nov 2019 19:54:53 -0800 (PST)
Received: by mail-pl1-x636.google.com with SMTP id az9so892531plb.11 for <saag@ietf.org>; Wed, 20 Nov 2019 19:54:53 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=user-agent:date:subject:from:to:message-id:thread-topic :mime-version; bh=9LEcgsQvr4qsyU4wPdLKfjN16IfLNkMoENmGRIYs3y8=; b=BfXa/C0mWAwGEP/WYMuJVZKjmGmDJb5SuEo2elzWX+YaiHav9DnAdyU/YABML/GNof UOvKlZIThxP7VaVU8kqh8/hFEl25Fi+We+zvvMrzlNG+5l1zDZNLeEn1Bk96/2q6dHi+ cK0BjscZyHacYpKsSEYvsXyMJTq0vPTxkhtx6bSPRC99QR20dqRTR9poghYvsGKrxf5j Su9katBAU5NlldXSUXEO62glrFjq5xmJHp/3PQs468Wn5BGkmGxlyHeCGuXotQOpvo3w B3bdJpAxXt+74j+mfjbBiWx7NvdoVZBBGotblfFsZWNSddNHU5qokzZ1XUq+xS5crhXB JAhQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:user-agent:date:subject:from:to:message-id :thread-topic:mime-version; bh=9LEcgsQvr4qsyU4wPdLKfjN16IfLNkMoENmGRIYs3y8=; b=H48R+WyIDhXMX5xRNC/HZlDCYtPcJDoHpozks2QE9rkDjZSH8lWoL1tSdH0AuzWy/A ig1wLBSGxUoz3O5cjLTXHlARU7iXt8jKwQJ2Gn/iDPY/oVM9rWE1Q112e9YVPlyR+hje 6TIrtU1Eorfjgsz8SkxxxfAEY0a37OT0yWhYfjC3maritwL8RODL41j/LR9xAPcYZ9cI XGdViU7t6xPNZhestBjl/bAbHBSJWo63xkFqsg2VicLOsM+PbP9rcM6sJcYuvN8bwu91 Ic2v7qUtFEbNhVi5cTiaCblGF3r8lV8xvYsv4td2UvdRtbyZL2WtLYwHJwX55GKWKwvS GKdA==
X-Gm-Message-State: APjAAAXfakuVb7OYJIPrh2MOKedEkG2vYnhwhFFKk46bwtZ2VusKuwbV VoO7MbEB0WH/RIkCVJfLDaj95GkmgN4=
X-Google-Smtp-Source: APXvYqyVk6ULhTxwBrdbVvWzYANrOUfDEiANlXWhuRmGx7fykETQDDQtVAoYP9aGA8i7yuMGkp4S4Q==
X-Received: by 2002:a17:902:362:: with SMTP id 89mr6347202pld.71.1574308492425; Wed, 20 Nov 2019 19:54:52 -0800 (PST)
Received: from [31.133.155.172] (dhcp-9bac.meeting.ietf.org. [31.133.155.172]) by smtp.gmail.com with ESMTPSA id r203sm937861pfr.184.2019.11.20.19.54.51 for <saag@ietf.org> (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 20 Nov 2019 19:54:51 -0800 (PST)
User-Agent: Microsoft-MacOutlook/10.1f.0.191110
Date: Thu, 21 Nov 2019 11:54:50 +0800
From: Yaron Sheffer <yaronf.ietf@gmail.com>
To: "saag@ietf.org" <saag@ietf.org>
Message-ID: <9BBCC9EC-B95A-48E5-916F-6B8F695F5B60@gmail.com>
Thread-Topic: TxAuth BoF report
Mime-version: 1.0
Content-type: multipart/alternative; boundary="B_3657182091_506932243"
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/WOOxaZMNuZikfXi1JbCm2Syy450>
Subject: [saag] TxAuth BoF report
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 21 Nov 2019 03:54:56 -0000

TxAuth is a non-WG forming BoF that met on Monday. We discussed several issues with the OAuth 2.0 protocol, identified new use cases. Two proposals were presented: one to rework the underlying protocol, and a second to extend the current protocol proposed solutions. We reached common understanding on the problems, but we are still far from consensus on solutions. There was no consensus to pursue one solution, or another, or to pursue both.

 

Thanks,

                Dick and Yaron