Re: [saag] keys under doormats: is our doormat ok?

Yoav Nir <ynir.ietf@gmail.com> Sun, 12 July 2015 17:55 UTC

Return-Path: <ynir.ietf@gmail.com>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C09531A8735 for <saag@ietfa.amsl.com>; Sun, 12 Jul 2015 10:55:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.1
X-Spam-Level:
X-Spam-Status: No, score=-0.1 tagged_above=-999 required=5 tests=[BAYES_40=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id oRjegD72-Vny for <saag@ietfa.amsl.com>; Sun, 12 Jul 2015 10:55:29 -0700 (PDT)
Received: from mail-yk0-x229.google.com (mail-yk0-x229.google.com [IPv6:2607:f8b0:4002:c07::229]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7DC1E1A8737 for <saag@ietf.org>; Sun, 12 Jul 2015 10:55:29 -0700 (PDT)
Received: by ykay190 with SMTP id y190so22899839yka.3 for <saag@ietf.org>; Sun, 12 Jul 2015 10:55:28 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=5EQUYYZMKlQBZ4whQbzgqP+xX4kqJFjKspzwXPb467c=; b=bnV+zFLtWHAuB7Hjok77Z3r3UzU/BhTgYi+sMCrR0OEA+LdyXO3Mz9mUl37vOX/lsv nxBW4s0B+x7IzWpT45kLggSrSsun7rpvqasg+G04ybfi9VeXmh84ZUF7EgH3J+DGjXNe Bf5SPa59jMaob28Dx2ODk0JJIgruRK4BoZ3KgoN8qa3cVr0A7+c7OdrcDL33FytcKfQm zI8Y9FlrDQwmMAVK+OnczfE8L/Tak3JYAarHKBVdyBNVEMLfeI0qcL9zeO5cIr3s2fdQ +cjxuhvIUH7s2tUBdM9Arsmi8Q4fwn4kPYu49sai01uT+yRAHMRsuKPfPpwWtdOFS9NX dixw==
MIME-Version: 1.0
X-Received: by 10.170.97.9 with SMTP id o9mr34183027yka.84.1436723728915; Sun, 12 Jul 2015 10:55:28 -0700 (PDT)
Received: by 10.37.52.151 with HTTP; Sun, 12 Jul 2015 10:55:28 -0700 (PDT)
In-Reply-To: <CAN40gSui7XrVtuZHLOyGs09ZJc5d20SN9AB4Ftnmav7z-tCW=g@mail.gmail.com>
References: <55A26484.7050807@cs.tcd.ie> <87fv4ts9l2.fsf@latte.josefsson.org> <C64F2343-6937-44EB-BBA6-6D744BBC79A1@vpnc.org> <CAN40gSui7XrVtuZHLOyGs09ZJc5d20SN9AB4Ftnmav7z-tCW=g@mail.gmail.com>
Date: Sun, 12 Jul 2015 20:55:28 +0300
Message-ID: <CAGvU-a7CocoadpHP0f+_JCctfVG6y4Qtn0Cu_v9UxKNh=4+ajg@mail.gmail.com>
From: Yoav Nir <ynir.ietf@gmail.com>
To: Ira McDonald <blueroofmusic@gmail.com>
Content-Type: multipart/alternative; boundary="001a113b487480a398051ab14fdd"
Archived-At: <http://mailarchive.ietf.org/arch/msg/saag/rm5Gbd7DiUJHh1oHc1QpHFb0N-0>
Cc: Simon Josefsson <simon@josefsson.org>, Paul Hoffman <paul.hoffman@vpnc.org>, "saag@ietf.org" <saag@ietf.org>
Subject: Re: [saag] keys under doormats: is our doormat ok?
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 12 Jul 2015 17:55:30 -0000

On Sun, Jul 12, 2015 at 19:36 PM, Ira McDonald <blueroofmusic@gmail.com>
wrote:
> Hi,
> I respectfully suggest that, just as IEEE and ISO periodically reconfirm
> standards, this important IAB/IESG RFC 1984 should be minimally
> changed and re-published ASAP.
> In my own experience, most non-IETF literate computer people tend
> to dismiss very old RFCs as no longer relevant.

I disagree. Publishing an update signals that our opinion has evolved. It
hasn't, even if the technology has evolved to make software the focus
rather than hardware. Besides, this kind of document is a huge rathole, and
I don't believe any minimal changes would be worth the hassle.

Yoav


-- 
Sent from MetroMail