Re: [saag] keys under doormats: is our doormat ok?

Stephen Farrell <stephen.farrell@cs.tcd.ie> Mon, 13 July 2015 20:02 UTC

Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E07E91B2DF7 for <saag@ietfa.amsl.com>; Mon, 13 Jul 2015 13:02:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.311
X-Spam-Level:
X-Spam-Status: No, score=-4.311 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id A1Kegh1CzH9N for <saag@ietfa.amsl.com>; Mon, 13 Jul 2015 13:02:04 -0700 (PDT)
Received: from mercury.scss.tcd.ie (mercury.scss.tcd.ie [134.226.56.6]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E0A191B2DF2 for <saag@ietf.org>; Mon, 13 Jul 2015 13:02:03 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by mercury.scss.tcd.ie (Postfix) with ESMTP id 5F7BDBDD8; Mon, 13 Jul 2015 21:02:02 +0100 (IST)
X-Virus-Scanned: Debian amavisd-new at scss.tcd.ie
Received: from mercury.scss.tcd.ie ([127.0.0.1]) by localhost (mercury.scss.tcd.ie [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id smdO9Xcwvm8A; Mon, 13 Jul 2015 21:02:00 +0100 (IST)
Received: from [10.87.48.73] (unknown [86.46.19.158]) by mercury.scss.tcd.ie (Postfix) with ESMTPSA id CDE98BDD0; Mon, 13 Jul 2015 21:02:00 +0100 (IST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cs.tcd.ie; s=mail; t=1436817720; bh=meEmbOJggW56TEhDiB+o8BNHMA1XJdQA608YSOb2XsM=; h=Date:From:To:Subject:References:In-Reply-To:From; b=Bovk1bsrV7x0l8xywv+roqhcirX9gU7ddvnyVsCsPeDLnibU71pTorWRLAGvnvPCy ItdcTvz40/tN9/yR0kyBUaV0nc2sgYXHLjNaq7HZhy/4J3Whciytps1ggC1Lel3eqO z2UDLTm0Pz+e5N6ToStwWOqbnA433MS3dhQg0eaM=
Message-ID: <55A41938.10106@cs.tcd.ie>
Date: Mon, 13 Jul 2015 21:02:00 +0100
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:31.0) Gecko/20100101 Thunderbird/31.7.0
MIME-Version: 1.0
To: dcrocker@bbiw.net, "saag@ietf.org" <saag@ietf.org>
References: <55A26484.7050807@cs.tcd.ie> <87fv4ts9l2.fsf@latte.josefsson.org> <C64F2343-6937-44EB-BBA6-6D744BBC79A1@vpnc.org> <CAN40gSui7XrVtuZHLOyGs09ZJc5d20SN9AB4Ftnmav7z-tCW=g@mail.gmail.com> <CAGvU-a7CocoadpHP0f+_JCctfVG6y4Qtn0Cu_v9UxKNh=4+ajg@mail.gmail.com> <55A2AD94.3040604@tzi.org> <55A2E9F4.3010908@dcrocker.net> <DM2PR0301MB0655B31EDD0584E2C9019E07A89C0@DM2PR0301MB0655.namprd03.prod.outlook.com> <55A413A1.70500@dcrocker.net>
In-Reply-To: <55A413A1.70500@dcrocker.net>
OpenPGP: id=D66EA7906F0B897FB2E97D582F3C8736805F8DA2; url=
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
Archived-At: <http://mailarchive.ietf.org/arch/msg/saag/h6eFrsiXldL6a5AojaigDHbTibo>
Subject: Re: [saag] keys under doormats: is our doormat ok?
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 13 Jul 2015 20:02:08 -0000


On 13/07/15 20:38, Dave Crocker wrote:
> That's a socio-political assessment and while it's easy to imagine that
> Stephen is correct, it is equally easy to imagine that he is not.

Actually it's easier to imagine I'm wrong, one way or another,
there being many more ways of being wrong, than of being correct:-)

But that's mostly why I tried to kick this off, since I'm not that
certain of my own conclusion on this.

Cheers,
S.