Re: [saag] PKIX and related RFCs - definition of Key Packages

Peter Gutmann <pgut001@cs.auckland.ac.nz> Thu, 17 June 2021 13:21 UTC

Return-Path: <pgut001@cs.auckland.ac.nz>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C67F93A1F69 for <saag@ietfa.amsl.com>; Thu, 17 Jun 2021 06:21:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.596
X-Spam-Level:
X-Spam-Status: No, score=-2.596 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001] autolearn=unavailable autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uGGTmLYwav8x for <saag@ietfa.amsl.com>; Thu, 17 Jun 2021 06:20:59 -0700 (PDT)
Received: from au-smtp-delivery-117.mimecast.com (au-smtp-delivery-117.mimecast.com [180.189.28.117]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E915F3A1F7B for <saag@ietf.org>; Thu, 17 Jun 2021 06:20:58 -0700 (PDT)
Received: from AUS01-ME3-obe.outbound.protection.outlook.com (mail-me3aus01lp2233.outbound.protection.outlook.com [104.47.71.233]) (Using TLS) by relay.mimecast.com with ESMTP id au-mta-35-KAijYiDONkakbMdSKncy-A-1; Thu, 17 Jun 2021 23:20:53 +1000
X-MC-Unique: KAijYiDONkakbMdSKncy-A-1
Received: from SY4PR01MB6251.ausprd01.prod.outlook.com (2603:10c6:10:10b::10) by SY4PR01MB6329.ausprd01.prod.outlook.com (2603:10c6:10:108::7) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4242.19; Thu, 17 Jun 2021 13:20:49 +0000
Received: from SY4PR01MB6251.ausprd01.prod.outlook.com ([fe80::51a7:5858:c7ef:880f]) by SY4PR01MB6251.ausprd01.prod.outlook.com ([fe80::51a7:5858:c7ef:880f%6]) with mapi id 15.20.4242.021; Thu, 17 Jun 2021 13:20:49 +0000
From: Peter Gutmann <pgut001@cs.auckland.ac.nz>
To: "Blumenthal, Uri - 0553 - MITLL" <uri@ll.mit.edu>, "saag@ietf.org" <saag@ietf.org>
CC: "spasm@ietf.org" <spasm@ietf.org>
Thread-Topic: PKIX and related RFCs - definition of Key Packages
Thread-Index: AQHXY3t/WcgDSaQfh0SQdLtLUWkjSg==
Date: Thu, 17 Jun 2021 13:20:48 +0000
Message-ID: <SY4PR01MB6251329C7F26651419AFC537EE0E9@SY4PR01MB6251.ausprd01.prod.outlook.com>
Accept-Language: en-NZ, en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [14.1.79.251]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 93818d07-434b-4fdd-35ec-08d93192b936
x-ms-traffictypediagnostic: SY4PR01MB6329:
x-microsoft-antispam-prvs: <SY4PR01MB63298EAFCF48D742F66399D6EE0E9@SY4PR01MB6329.ausprd01.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8882
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0
x-microsoft-antispam-message-info: /kNZ0jefnIfNhIFO5YB7CGl6u78+O8iFf7VBQSEx2ZpSN/VkmDGTPBiWvNA2t36IlYxh51OrNwJgCY967SY5Idem6y/aGHZyndDpYAJS8w1W/aCh15sk++t9a0pco6OUH1KFtYunmL/DsirM63g4tGzqJDjMAs6dJjtItKkPLeULLytjE+mGSklARfMboK2ZV8SvnOtMWqP43otssFDVsp63ht9pSJm/elc5eeYTzowfRYth3rJdjfsc1iWwSeh8QRzYrjIZjAYQ4qLWPotDiKDvipPeQfyKAKK9wktt75vl2BG1MkXpJP51r9MDWmAX+jeoLoD/swJSkEGy+Ycgl6aSQceFF9Kp7CRqay0YGqXuayJX75u/lq4UOcdi8eD8fnm2LQeGhWVDMb/XOMCza6hubThFrfFtb9WEWTvAqGQ3px7bUhIVvQeCRdHVIK1CemNlaNUcdYDIG/d0N0BHrARViRbaGjR+i/wukQA5d67XreY+Ow87lqTdJ9twr29X20b+3UNnkzOg4oy1EhuBD1pIdZbWa9LHGdp/rZQFKFYQaPa0p/jGppJqSMRcogMrNBMdII4m2mQql2rmvUNF9GkuA3Ql355/XnuxRH026b4=
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SY4PR01MB6251.ausprd01.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(136003)(396003)(346002)(376002)(366004)(39850400004)(66946007)(66446008)(64756008)(66556008)(66476007)(4744005)(110136005)(4326008)(2906002)(38100700002)(122000001)(76116006)(71200400001)(8676002)(8936002)(83380400001)(86362001)(6506007)(786003)(55016002)(5660300002)(26005)(186003)(478600001)(316002)(52536014)(45080400002)(7696005)(9686003)(33656002); DIR:OUT; SFP:1101
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
x-ms-exchange-transport-forked: True
MIME-Version: 1.0
X-OriginatorOrg: cs.auckland.ac.nz
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SY4PR01MB6251.ausprd01.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 93818d07-434b-4fdd-35ec-08d93192b936
X-MS-Exchange-CrossTenant-originalarrivaltime: 17 Jun 2021 13:20:48.5886 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: d1b36e95-0d50-42e9-958f-b63fa906beaa
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: P3LZiXH/GMDKA9AXgt+I+pIx89wPDUYNPfDdP7UM17dcErqFvNIHs1Hvh31uJZm4Vzlr8HTaDWoADxAaT9pV/bXwGP0xSVFqOBmd/VSZHko=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SY4PR01MB6329
X-Mimecast-Spam-Score: 0
X-Mimecast-Originator: cs.auckland.ac.nz
Content-Language: en-NZ
Content-Type: text/plain; charset="WINDOWS-1252"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/qB8yoZlkEiR0CjzegghFxNX6l0o>
Subject: Re: [saag] PKIX and related RFCs - definition of Key Packages
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 17 Jun 2021 13:21:03 -0000

Blumenthal, Uri - 0553 - MITLL writes:

>Hmm... What would happen if in a new document I choose not to specify
>private-key format...?

Traditionally, somebody would invent one and then whoever shouts loudest would
get their version adopted.  Mozilla and Microsoft (at least, and possibly
nowadays Google as well) would implement it in a subtly incompatible way so
every implementation would have to guess at what it was they were seeing.
Eventually it would be documented in an appendix to an RFC on OSPF extensions
or something, but by then everyone would have deployed multiple-format parsers
so it wouldn't matter much.

Or you could look at PKCS #15 and document it in a format compatible with
that.

Peter.