[saag] ACME meeting report

"Salz, Rich" <rsalz@akamai.com> Fri, 20 November 2020 22:09 UTC

Return-Path: <rsalz@akamai.com>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A6E573A0A29 for <saag@ietfa.amsl.com>; Fri, 20 Nov 2020 14:09:22 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=akamai.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qtuVnVLpTmpg for <saag@ietfa.amsl.com>; Fri, 20 Nov 2020 14:09:21 -0800 (PST)
Received: from mx0a-00190b01.pphosted.com (mx0a-00190b01.pphosted.com [IPv6:2620:100:9001:583::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1984E3A0A21 for <saag@ietf.org>; Fri, 20 Nov 2020 14:09:20 -0800 (PST)
Received: from pps.filterd (m0122332.ppops.net [127.0.0.1]) by mx0a-00190b01.pphosted.com (8.16.0.42/8.16.0.42) with SMTP id 0AKLwTXG018280 for <saag@ietf.org>; Fri, 20 Nov 2020 22:09:20 GMT
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=akamai.com; h=from : to : subject : date : message-id : content-type : mime-version; s=jan2016.eng; bh=WpVDJBQ8B4xztRJHJd05b4vHsWj0wPRAa5YR43+BK1o=; b=oAmSpmt7nrR4lCFihh7FHWmF7gIqBB+oaukrfRH1NBeNxOimKmfKc5exnIZ3RZk2S6fQ p6K1mg/TyDqF0WLhkmE35zbE1xeBHhLron3V3PRkFE954bt6NFwAj1Liopf/qwRFpKE0 nAAMyONwJ4X8jiXYPfby11+YbJ32ujUPeVQ97cf/GYIJJtdQkHb8w88PCWWKj3FR2+HE LfRR9ybDp4Gbg2TASR52XGDSaRyGmgcTAeqI1o+OKXYeKMcrkLMVXcDHJJDgYcVZDe93 bpL44UMx64ygd+HGY83BcEabSrwxCd/VUWmoO9v0+xELNcRLbz/Gg+jO6A4U3ISXE8XS Bg==
Received: from prod-mail-ppoint3 (a72-247-45-31.deploy.static.akamaitechnologies.com [72.247.45.31] (may be forged)) by mx0a-00190b01.pphosted.com with ESMTP id 34x1hr2d78-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for <saag@ietf.org>; Fri, 20 Nov 2020 22:09:20 +0000
Received: from pps.filterd (prod-mail-ppoint3.akamai.com [127.0.0.1]) by prod-mail-ppoint3.akamai.com (8.16.0.42/8.16.0.42) with SMTP id 0AKM4cJT028384 for <saag@ietf.org>; Fri, 20 Nov 2020 17:09:19 -0500
Received: from email.msg.corp.akamai.com ([172.27.165.114]) by prod-mail-ppoint3.akamai.com with ESMTP id 34tbf35kap-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NOT) for <saag@ietf.org>; Fri, 20 Nov 2020 17:09:19 -0500
Received: from USTX2EX-DAG1MB1.msg.corp.akamai.com (172.27.165.119) by ustx2ex-dag1mb2.msg.corp.akamai.com (172.27.165.120) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Fri, 20 Nov 2020 16:09:19 -0600
Received: from USTX2EX-DAG1MB1.msg.corp.akamai.com ([172.27.165.119]) by ustx2ex-dag1mb1.msg.corp.akamai.com ([172.27.165.119]) with mapi id 15.00.1497.008; Fri, 20 Nov 2020 16:09:18 -0600
From: "Salz, Rich" <rsalz@akamai.com>
To: saag <saag@ietf.org>
Thread-Topic: ACME meeting report
Thread-Index: AQHWv4nK1jXNs2Lhs0e/u5KTatVLHw==
Date: Fri, 20 Nov 2020 22:09:17 +0000
Message-ID: <004138A0-9EE9-47E9-B37B-6FA389D3AFA6@akamai.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.43.20110804
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [172.27.164.43]
Content-Type: multipart/alternative; boundary="_000_004138A09EE947E9B37B6FA389D3AFA6akamaicom_"
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.312, 18.0.737 definitions=2020-11-20_16:2020-11-20, 2020-11-20 signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 phishscore=0 adultscore=0 mlxlogscore=817 malwarescore=0 spamscore=0 suspectscore=0 mlxscore=0 bulkscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2009150000 definitions=main-2011200144
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.312, 18.0.737 definitions=2020-11-20_16:2020-11-20, 2020-11-20 signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 bulkscore=0 phishscore=0 clxscore=1015 suspectscore=0 impostorscore=0 mlxscore=0 spamscore=0 lowpriorityscore=0 malwarescore=0 adultscore=0 mlxlogscore=742 priorityscore=1501 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2009150000 definitions=main-2011200144
X-Agari-Authentication-Results: mx.akamai.com; spf=${SPFResult} (sender IP is 72.247.45.31) smtp.mailfrom=rsalz@akamai.com smtp.helo=prod-mail-ppoint3
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/gLu-TpUxZdEKPgtqvEoburodiI8>
Subject: [saag] ACME meeting report
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 20 Nov 2020 22:09:23 -0000

ACME at IETF 109 was after SAAG.

Our documents continue to progress relatively smoothly.

ACME end-user client will go to WGLC soon.  Integrations and DTN networking are proceeding. Had some interesting discussions on fine points of ACME and subdomains. Fraser presented a detailed walkthrough of new work on ACME service discovery. Lots of interest and discussion, not quite ready to consider adoption.

In the “any other business” section, dkg brought up the issue of how to handle signing and encryption certs. Alexey will think about it for the SMIME draft, our AD is fine with that.