IETF73 SASL WG summary

Tom Yu <tlyu@MIT.EDU> Thu, 20 November 2008 21:04 UTC

Return-Path: <owner-ietf-sasl@mail.imc.org>
X-Original-To: ietfarch-sasl-archive-Zoh8yoh9@core3.amsl.com
Delivered-To: ietfarch-sasl-archive-Zoh8yoh9@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 806C43A6A97 for <ietfarch-sasl-archive-Zoh8yoh9@core3.amsl.com>; Thu, 20 Nov 2008 13:04:16 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level:
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id WsMDqOkKWPDd for <ietfarch-sasl-archive-Zoh8yoh9@core3.amsl.com>; Thu, 20 Nov 2008 13:04:15 -0800 (PST)
Received: from balder-227.proper.com (properopus-pt.tunnel.tserv3.fmt2.ipv6.he.net [IPv6:2001:470:1f04:392::2]) by core3.amsl.com (Postfix) with ESMTP id 2839E3A6BE3 for <sasl-archive-Zoh8yoh9@ietf.org>; Thu, 20 Nov 2008 13:04:14 -0800 (PST)
Received: from balder-227.proper.com (localhost [127.0.0.1]) by balder-227.proper.com (8.14.2/8.14.2) with ESMTP id mAKL0VG3032111 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Thu, 20 Nov 2008 14:00:31 -0700 (MST) (envelope-from owner-ietf-sasl@mail.imc.org)
Received: (from majordom@localhost) by balder-227.proper.com (8.14.2/8.13.5/Submit) id mAKL0V7E032110; Thu, 20 Nov 2008 14:00:31 -0700 (MST) (envelope-from owner-ietf-sasl@mail.imc.org)
X-Authentication-Warning: balder-227.proper.com: majordom set sender to owner-ietf-sasl@mail.imc.org using -f
Received: from biscayne-one-station.mit.edu (BISCAYNE-ONE-STATION.MIT.EDU [18.7.7.80]) by balder-227.proper.com (8.14.2/8.14.2) with ESMTP id mAKL0KRP032091 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO) for <ietf-sasl@imc.org>; Thu, 20 Nov 2008 14:00:31 -0700 (MST) (envelope-from tlyu@MIT.EDU)
Received: from outgoing.mit.edu (OUTGOING-AUTH.MIT.EDU [18.7.22.103]) by biscayne-one-station.mit.edu (8.13.6/8.9.2) with ESMTP id mAKL0Dqt009776; Thu, 20 Nov 2008 16:00:14 -0500 (EST)
Received: from cathode-dark-space.mit.edu (CATHODE-DARK-SPACE.MIT.EDU [18.18.1.96]) (authenticated bits=56) (User authenticated as tlyu@ATHENA.MIT.EDU) by outgoing.mit.edu (8.13.6/8.12.4) with ESMTP id mAKL09bZ013579 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Thu, 20 Nov 2008 16:00:12 -0500 (EST)
Received: (from tlyu@localhost) by cathode-dark-space.mit.edu (8.12.9.20060308) id mAKL09el006114; Thu, 20 Nov 2008 16:00:09 -0500 (EST)
To: saag@ietf.org, ietf-sasl@imc.org
Subject: IETF73 SASL WG summary
From: Tom Yu <tlyu@MIT.EDU>
Date: Thu, 20 Nov 2008 16:00:09 -0500
Message-ID: <ldv7i6yun8m.fsf@cathode-dark-space.mit.edu>
Lines: 44
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
X-Scanned-By: MIMEDefang 2.42
Sender: owner-ietf-sasl@mail.imc.org
Precedence: bulk
List-Archive: <http://www.imc.org/ietf-sasl/mail-archive/>
List-ID: <ietf-sasl.imc.org>
List-Unsubscribe: <mailto:ietf-sasl-request@imc.org?body=unsubscribe>

Simple Authentication And Security Layer (SASL)
IETF73, Minneapolis, MN

Tuesday, November 18, 2008 at 1520-1720
=======================================

Chairs:

Tom Yu <tlyu@mit.edu>
Kurt Zeilenga <kurt.zeilenga@isode.com>

====================

Alexey Melnikov talks about SCRAM, describing resolved issues.
Discussion about modified GS2 framing for easier (non-GSS)
implementation of SCRAM.  Sam Hartman previously gave three possible
alternatives.  Several opinions that option 3 is best; no objections.
Suggestion to prepare examples of GS2+krb5 and GS2+SCRAM to help
readers understand the encoding.

Kurt has submitted an I-D (this morning!) proposing moving CRAM-MD5 to
Historic status, and updating its IANA registry entry to "OBSOLETE".
The intent is to abandon current WG document draft-ietf-sasl-crammd5.
Strong opinions that Kurt's document be held from publication until
SCRAM is published; no objections.  General agreement that the IANA
registry entry for "usage" should remain "LIMITED" and contain
references to both 2195 and Kurt's document.

Kurt talks about 4422bis.  Some discussion about normative downrefs.

Action items:

* Tom - WGLC Kurt's CRAM-MD5-to-historic document
* Alexey, Sam, et al. - update docs for GS2 encoding (and SCRAM)
* implementors - help write GS2 encoding examples

Milestones:

Nov 08 - Initial RFC4422 impl. report
Nov 08 - Reach consensus on CRAM-MD5 successor approach (and update
       	 milestones accordingly)
Dec 08 - WGLC RFC4422bis and implementation report I-D
Jan 09 - WGLC DIGEST-MD5 replacement I-D
Jan 09 - WGLC GS2 I-D