Re: [secdir] [Json] secdir review of draft-ietf-jsonbis-rfc7159bis-03

Julian Reschke <julian.reschke@gmx.de> Mon, 13 March 2017 19:51 UTC

Return-Path: <julian.reschke@gmx.de>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6D653129481; Mon, 13 Mar 2017 12:51:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.1
X-Spam-Level:
X-Spam-Status: No, score=-2.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_SORBS_SPAM=0.5, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QydQ3BhgZX0V; Mon, 13 Mar 2017 12:51:58 -0700 (PDT)
Received: from mout.gmx.net (mout.gmx.net [212.227.17.21]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CA194129453; Mon, 13 Mar 2017 12:51:57 -0700 (PDT)
Received: from [192.168.178.20] ([93.217.107.79]) by mail.gmx.com (mrgmx102 [212.227.17.168]) with ESMTPSA (Nemesis) id 0Lr46Z-1cII7f2Pwp-00eZ4m; Mon, 13 Mar 2017 20:51:28 +0100
To: "Matthew A. Miller" <linuxwolf@outer-planes.net>, Peter Cordell <petejson@codalogic.com>, "Martin J. Dürst" <duerst@it.aoyama.ac.jp>, Ned Freed <ned.freed@mrochek.com>
References: <otwresf20y4vnpmoboqqjnux.1489359742487@email.android.com> <0d3258fa-0f9d-cc5d-06d7-fcba943349ad@gmx.de> <f63c6a4a-dfbb-e03a-ea1e-38002f81ced8@it.aoyama.ac.jp> <0631d12c-f447-8904-6e2d-81e02cc6e8d3@codalogic.com> <1e075450-d958-db9c-ae63-3cbf3733024c@outer-planes.net>
From: Julian Reschke <julian.reschke@gmx.de>
Message-ID: <cf6e35ba-6a67-4b35-d4e1-e99fee6e9f19@gmx.de>
Date: Mon, 13 Mar 2017 20:51:27 +0100
User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:45.0) Gecko/20100101 Thunderbird/45.8.0
MIME-Version: 1.0
In-Reply-To: <1e075450-d958-db9c-ae63-3cbf3733024c@outer-planes.net>
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Transfer-Encoding: 7bit
X-Provags-ID: V03:K0:1sAicka5ZreYlgL3dmOPevOFdNLbwwASwmL592XDQhUODyR/9j0 Z55OW11qeLclxeRQ4IWhQ2Lj7++AsU3bgKXrF7nw0gKYcwY2PlHKhnSlOsNrQLr/Ufaw4Xw Lqzef12hAraov6tGWzoD5YGoLXh+u7p/VG5HBiA2nUI2sPXoEq7VdpIjVwurCDu5hPqNRbI MiKYPP4TY8iLye5i/ZScw==
X-UI-Out-Filterresults: notjunk:1;V01:K0:m5fVRV6aOxM=:mtb318PYufka5wgDsdyaUC eoNLxhXxxmYFhcl0NDb7S+8D6eT1UiOGiftQ5cdpld/iZdYjjJAorO4yZBFI9hnkjHolfVuZa MxQA252CDYr++/5XYRhiCB0QnorN35A35HRRCXqyxMxE1xvynoPiQOOerwFS/aoyOoCi96M5m 3Ex4N0gW8YBkk9uOHUqw9gXIdL/jIwXVWrVuMUximSJYN7+bBmc3s6dwzoG6HGMqYw7fW6IwW yAo1nG6P5JTLIorVh04H5JWVNTVuHx49UDynvPddYbaVYaN1P5nD7j0KZN2vXFMlr5/cc/V4X aiJWajTjfXj0M/QNEb3yNZED2+esf6UDMxIiM6WG4isW/jyC2XTB4ZFMQ/kIcGKHWRbilHoHH Bfhb7CgUGvA38j0c/mmSH/a6/OpkT2YIheXaI03zxh4NhrQ9srdqtiiOYWqlIS4UDZmJvFBjX gkOPIdAJ7hn8AN9RiHps6Ynp6gHY4lfUZxVVItxLqr9aOcX9eJZg8MJq8EV0UqTc7Q0J+GObF YEcu1oEmqLJQt96S28Vnlblx2InUIWLZ7fFC1wEs8OSZjhwqb/sBTdf8Dc3M8z2aJ0j+ymx2s 8pVNbw891MBoUqTG/CWkzl42hVbAP2dr2Gwxl8CTUDPxTYGV7i7gDDv3bTO9esLtlAJ960/sA WYswXD+sScHd4tJfiRI99npB1I5XBkqI1W23anCaE4G2jLQWCys6iWZuymTea4OSgdN3xegQz xQU8mLDSUI0fGC4F9yvhQNx603pCJlln6nNGFTBWsthJmqntQVL34Uwvk2Lb3BVwExONCEo1z gLqqcyx
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/bXOPvtmXdlB1obesK4ZdLqP9NM0>
Cc: draft-ietf-jsonbis-rfc7159bis.all@ietf.org, secdir@ietf.org, ietf@ietf.org, "json@ietf.org" <json@ietf.org>
Subject: Re: [secdir] [Json] secdir review of draft-ietf-jsonbis-rfc7159bis-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 13 Mar 2017 19:51:59 -0000

On 2017-03-13 18:54, Matthew A. Miller wrote:
> ...
> /me doffs hat
>
> I like this change myself.
>
> /me dons hat
>
> As I recall, the table was removed mostly because the vast majority of
> implementations did not support any encoding other than UTF-8, and no
> one (that I recall) reported implementing the detection table.
> ...

Well, if we allow UTF-16 and UTF-32 - even if we discourage their use - 
we should say how to detect those...

Alternatively we could forbid them, but that would be a normative change 
from RFC 7159.

Best regards, Julian