Re: [secdir] [Anima] SecDir review of draft-ietf-anima-grasp-09

Barry Leiba <barryleiba@computer.org> Fri, 10 March 2017 18:02 UTC

Return-Path: <barryleiba@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D4AB51294BE; Fri, 10 Mar 2017 10:02:20 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.37
X-Spam-Level:
X-Spam-Status: No, score=-2.37 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FREEMAIL_FORGED_FROMDOMAIN=0.229, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gkNDRey3UF5Z; Fri, 10 Mar 2017 10:02:18 -0800 (PST)
Received: from mail-it0-x22c.google.com (mail-it0-x22c.google.com [IPv6:2607:f8b0:4001:c0b::22c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 97A941294DD; Fri, 10 Mar 2017 10:02:18 -0800 (PST)
Received: by mail-it0-x22c.google.com with SMTP id w124so495563itb.0; Fri, 10 Mar 2017 10:02:18 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:sender:in-reply-to:references:from:date:message-id :subject:to:cc; bh=yNzzC1AEBBuRX3HEkcYyfVn2YHEgXZxCmVZDk/0RJVA=; b=U2or3/4g8eirCeAtSvMJm8xy8Cqmj3oOs8lBRlFrnpIVSQuSI0vAfUcNrmL7Q6zeIp Y5nnciOAsF3it2WnvTyvHGyM7L5lK/nhUx6UaqgnSBOOVzksmGSsvSBewL6aF3SNaNX0 dNW/qQY2PRHi6q7S944V9tYCfXrN5SYqlXn8+tnsrVAKZ4bCoVfhMzYab2LGcLSa4TJQ S0HdCKGGFFrBgNrJtC3yT01s30/Wdp7/tZzAYOBjGnznxhmADupmsrSUKcAG8smuBys+ tkOYVx9NyEh0JlQLECP0796mGSgUGTCNe8Tmz9plkKfuIK7Fy+kb+qIr/p3fvXVferYg rIRg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:sender:in-reply-to:references:from :date:message-id:subject:to:cc; bh=yNzzC1AEBBuRX3HEkcYyfVn2YHEgXZxCmVZDk/0RJVA=; b=YAOC/IFwqClDQvq+wKxcOzl+/aLgrovTBaiSpOshAZQamz/kAXzhy6lP2vH+9wR1Ds rjFXkvQIq0bG2ovp45L0hFvKEH+dKr/fQPvJkN9Hq8Wk9GScdJbhvlvdzOU8gnPRtvZU gM6Bq0Wb1AvRGZM/+NBA+2j5pKnvGFsixL7JpHFF3m57vFHqt7sTT4IVCAy+oqHtD+A6 8CqfNkB0htUrFUT8RMzpRVSm38Uswh0lqJyPmlIO4oW4CR+irxBOS74AVwnd5KHCrCb5 7jSZ0PN2ML0z923iTLiDzZbh2FjWHmk6RzsK0x+cHonDMIaAdr2Ko28K7vXBxw+wY80x TAkg==
X-Gm-Message-State: AFeK/H16fIBL/gcblRTxbxiyQ9VtiC11o3xXF0T5pT6twqVsNzkmlKqCeQWCj9Cle2VqELUENX1TwUZC4bVPgw==
X-Received: by 10.36.159.195 with SMTP id c186mr280301ite.32.1489168937970; Fri, 10 Mar 2017 10:02:17 -0800 (PST)
MIME-Version: 1.0
Sender: barryleiba@gmail.com
Received: by 10.107.187.7 with HTTP; Fri, 10 Mar 2017 10:02:17 -0800 (PST)
In-Reply-To: <31318.1489164344@obiwan.sandelman.ca>
References: <CALaySJ+rLh9ZBmydm0bG+TBxGK_dB-UmnkeJusd1C-3zMowwHg@mail.gmail.com> <7752607e-ce49-f8f9-7f09-b3e842bc69b9@gmail.com> <3529ba25-09af-85dd-92da-aa9d30606bcc@gmail.com> <17893.1489070987@obiwan.sandelman.ca> <CALaySJ+50GcJAjSzQKfwi4bEfjYUWFP44uhHtAeXQsR_yOvF=w@mail.gmail.com> <63103cc5-1c99-78eb-04a4-d8e44c2e6185@gmail.com> <31318.1489164344@obiwan.sandelman.ca>
From: Barry Leiba <barryleiba@computer.org>
Date: Fri, 10 Mar 2017 13:02:17 -0500
X-Google-Sender-Auth: Cx8GmuFN5e78J0IDmvfxd3e23_I
Message-ID: <CALaySJKCGeaVdv6iYYNnVNaXbKM7LFwpQ-38bA5PM-jPWbPnwg@mail.gmail.com>
To: Michael Richardson <mcr+ietf@sandelman.ca>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/cigaX8txhjMayr2dNYU0nSruFe0>
Cc: draft-ietf-anima-grasp.all@ietf.org, Brian E Carpenter <brian.e.carpenter@gmail.com>, anima@ietf.org, "secdir@ietf.org" <secdir@ietf.org>
Subject: Re: [secdir] [Anima] SecDir review of draft-ietf-anima-grasp-09
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 10 Mar 2017 18:02:21 -0000

> Barry, is there a way to say, "UTF-8 without all the confusing parts"?
> Is that what IDNxxxx is all about?

Kinda-sorta, but it won't quite work for this.  The high-order answer
is to reference IDNA 2008 (RFC 5892 will do) and say that characters
that are PVALID are acceptable here.  The trouble with that is that it
limits you to lower case characters: all the upper case characters are
DISALLOWED.  It could work to say "PVALID characters and their upper
case versions."

But, really, I think Brian's right that we don't need to worry,
especially because there's the designated expert in the middle, who
can say, "PILE OF POO"?  Really?  Why do you want to use that
character?

Barry