Re: [sipcore] Call for WG adoption: draft-yusef-sipcore-digest-scheme

Brian Rosen <br@brianrosen.net> Fri, 05 April 2019 18:08 UTC

Return-Path: <br@brianrosen.net>
X-Original-To: sipcore@ietfa.amsl.com
Delivered-To: sipcore@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 894E312024F for <sipcore@ietfa.amsl.com>; Fri, 5 Apr 2019 11:08:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.889
X-Spam-Level:
X-Spam-Status: No, score=-1.889 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, T_SPF_PERMERROR=0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=brianrosen-net.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MA0GKlw2YZQH for <sipcore@ietfa.amsl.com>; Fri, 5 Apr 2019 11:08:53 -0700 (PDT)
Received: from mail-qt1-x82e.google.com (mail-qt1-x82e.google.com [IPv6:2607:f8b0:4864:20::82e]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id ACDB712051E for <sipcore@ietf.org>; Fri, 5 Apr 2019 11:08:52 -0700 (PDT)
Received: by mail-qt1-x82e.google.com with SMTP id k14so8494836qtb.0 for <sipcore@ietf.org>; Fri, 05 Apr 2019 11:08:52 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=brianrosen-net.20150623.gappssmtp.com; s=20150623; h=from:message-id:mime-version:subject:date:in-reply-to:cc:to :references; bh=HXfMdcmrTp1HKFA3Iz1qcwd4/OyUUJB18Qx/f0Fop1E=; b=Al3U+m39DUsdn0lzvEyMD6LIzRYpmdy/3rkcor09cDjiErk3wk2sMR6Tn9DODusqcR HQd1Hv/SITsumfxVTD+VG3xtGnDbO9/l6aknsHL1uBHhZREkHJ2WrI5ucv/ctbWv+jxZ tRYkarimnnyuk+WnYYUf+m4nh9Ih6i3fTCEjBSB3D5hwTYSSayei5G7cq3BikZStJwPG kwdiNaVJ1XXecunEjISPDonsthkAs1iyeZDAKrRU8zCTolPTp7FfRVn/P20ve+1k8R9w XZePKeXqqVbTWVW/0mrgFYjwy2dDqteMETdmkYgM7oo/FX7++Gsv51EtPmwfv4Nz125P UU8g==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:message-id:mime-version:subject:date :in-reply-to:cc:to:references; bh=HXfMdcmrTp1HKFA3Iz1qcwd4/OyUUJB18Qx/f0Fop1E=; b=SPZdmt91QNksrC7x677rTVynS42VcD4km0O+9LJtxYyoW0y+IEwdlb1bxrn4oqK2sY ymnddvkMEXNHCIcNfKgx48kYtVPKVaI5txo/pIMbazw07RR5Fp05BDhP63lha3PluSXq Frh/HTpUvg5KASLHAUkHVu7s53puqtHjQTyhgxh7bcJ2IygmbQqaO+UIoqJRKPI6Dm/i /uTagWx52s8fu7V3pCYx4rVmZbLln75Jkdh6HVkzrC4TAn/OXHXpX0fktsUs1vqQ615V 4MdJU1hl8TPAERaoe5klIPYTFpQvEVBzYUFA73B2rjNs8JnqJpJcaf6OBunGdDTccCvY SmZA==
X-Gm-Message-State: APjAAAX8B4sWiB/aErpovZIAved3rvW+FKCy8GiLivDqJDpMsuVIvLig IsRbcIKaNqFE+11fh09Cbcc6LEJQgI4=
X-Google-Smtp-Source: APXvYqyYZeIrmkKU/ZbIcDV/ykGa7GeJK9j3Wt7ZCOnWzX7BU4i+PIU2ipjqEHkO1cbm7qtuPtOA8A==
X-Received: by 2002:ac8:1833:: with SMTP id q48mr12278403qtj.133.1554487731642; Fri, 05 Apr 2019 11:08:51 -0700 (PDT)
Received: from brians-mbp-3.lan ([24.129.255.66]) by smtp.gmail.com with ESMTPSA id o37sm12037253qte.55.2019.04.05.11.08.50 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Fri, 05 Apr 2019 11:08:51 -0700 (PDT)
From: Brian Rosen <br@brianrosen.net>
Message-Id: <7F5A8856-4127-45FC-ACD9-6AF191535774@brianrosen.net>
Content-Type: multipart/alternative; boundary="Apple-Mail=_4F4E3376-0BA5-4D1D-8602-710C4C8E2EB9"
Mime-Version: 1.0 (Mac OS X Mail 12.2 \(3445.102.3\))
Date: Fri, 05 Apr 2019 14:08:49 -0400
In-Reply-To: <CAGL6epJwRMJpxO06GB5dSxfU=dqiXjkaW2ytgHOStt2t0d0ZQg@mail.gmail.com>
Cc: "Dale R. Worley" <worley@ariadne.com>, SIPCORE <sipcore@ietf.org>
To: Rifaat Shekh-Yusef <rifaat.ietf@gmail.com>
References: <38f783ca-00c1-9a34-a3f6-fc63c018e272@nostrum.com> <87pnq2h58x.fsf@hobgoblin.ariadne.com> <CAGL6epJwRMJpxO06GB5dSxfU=dqiXjkaW2ytgHOStt2t0d0ZQg@mail.gmail.com>
X-Mailer: Apple Mail (2.3445.102.3)
Archived-At: <https://mailarchive.ietf.org/arch/msg/sipcore/V1Ef3mDDDhzHJkvnbX3FXfbYEjk>
Subject: Re: [sipcore] Call for WG adoption: draft-yusef-sipcore-digest-scheme
X-BeenThere: sipcore@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: SIP Core Working Group <sipcore.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sipcore>, <mailto:sipcore-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sipcore/>
List-Post: <mailto:sipcore@ietf.org>
List-Help: <mailto:sipcore-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sipcore>, <mailto:sipcore-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 05 Apr 2019 18:09:00 -0000

<as individual>
Consider adding text saying that MD5 is not deprecated by this document but its use is restricted to older devices and when communicating with newer devices SHA MUST be used.

Brian

> On Apr 5, 2019, at 9:08 AM, Rifaat Shekh-Yusef <rifaat.ietf@gmail.com> wrote:
> 
> Hi Dale,
> 
> The document does not require the removal of MD5 support because it is needed for backward compatibility.
> 
> Regards,
>  Rifaat
> 
> 
> 
> On Wed, Apr 3, 2019 at 10:30 PM Dale R. Worley <worley@ariadne.com <mailto:worley@ariadne.com>> wrote:
> > On 01/04/2019, 23.46, A. Jean Mahoney wrote:
> >     This is a call for adoption of draft-yusef-sipcore-digest-scheme in the 
> >     SIPCORE working group.
> >     
> >     https://datatracker.ietf.org/doc/draft-yusef-sipcore-digest-scheme/ <https://datatracker.ietf.org/doc/draft-yusef-sipcore-digest-scheme/>
> 
> I favor adopting draft-yusef-sipcore-digest-scheme.
> 
> (Editorial:  The Abstract needs revision.  As far as I can tell, the
> general idea is to have MD5 be replaced by SHA-256 in general usage.
> But the specifics are that the document adds both SHA-256 and
> SHA-512-256 and does not remove MD5.)
> 
> Dale
> 
> _______________________________________________
> sipcore mailing list
> sipcore@ietf.org <mailto:sipcore@ietf.org>
> https://www.ietf.org/mailman/listinfo/sipcore <https://www.ietf.org/mailman/listinfo/sipcore>
> _______________________________________________
> sipcore mailing list
> sipcore@ietf.org
> https://www.ietf.org/mailman/listinfo/sipcore