Re: [lamps] Paul Wouters' Discuss on draft-ietf-lamps-cmp-updates-20: (with DISCUSS)

"Brockhaus, Hendrik" <hendrik.brockhaus@siemens.com> Wed, 01 June 2022 07:02 UTC

Return-Path: <hendrik.brockhaus@siemens.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 31122C15AACD; Wed, 1 Jun 2022 00:02:12 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.107
X-Spam-Level:
X-Spam-Status: No, score=-2.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=siemens.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TYR-6WJtboxC; Wed, 1 Jun 2022 00:02:08 -0700 (PDT)
Received: from EUR04-DB3-obe.outbound.protection.outlook.com (mail-db3eur04on0629.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe0c::629]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7AAB8C15AADE; Wed, 1 Jun 2022 00:01:40 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=aOaSgADwwZ/2rs3gV9KovYvAMoDYwXkRYplZFqZbkWejPmE2qmhgB9V4fzS9O4cb8EZmF4sKYA/oZthLCbM4Cw6G96ooV6ShGS7LiqiQGPnx5r5b4YF6cnF7Og+J9rNrXkH4pMPYB3cSsXwi1mIokroonlSQ7QX/ONw7Bt+EbSBgMzKM5/W+AR1ymMHNCCpNvOdMST4SItYucIM5E53bCmonXpvkKejRKxk4Qv3IqQRWv232JYzNPml4UJGlus56JFI+0tFXTxID1YOS53QKPQKYJwSELgRjaaNGTsGTKbI1ejM+IQm/2aLunLe51LBh3qeLA8Uaq372SViOMLV5aA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=e3bMgqfY656nUkEzkO1+924yloPWF8ZV97Vf3vaZRkw=; b=Ej5yeD5Wefad/yTbCT3ePGCOcfRdbs691GNNUMoIYw3F4pDZMIGZUCcQjT0oQo/kUOMdXi1xwrpbP1/uD6LyWVJRC+Tsgf+19wMp+M6Cg5e96lP1t0M0FZ5vdwBncNOiw+G72hiFke+8fqueRVxp864qg6n4iYlMGVAkdLl1McFuNGOCiQHihW9OHFbEOInOpXY0q6hu/oVhhRB2jFncEVgYBS2OEh01KGLUY+J5FGPq/6NMcHCg5Z/RcREsEdWyyBih/4VVQAcVXVh3HQJlx6g5nGtILGP9pNBcrDnixqrq4Ux7bSF3ZU8Lh75gueBhT8te95Jiw0ayEiOPEC+REg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=siemens.com; dmarc=pass action=none header.from=siemens.com; dkim=pass header.d=siemens.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=siemens.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=e3bMgqfY656nUkEzkO1+924yloPWF8ZV97Vf3vaZRkw=; b=ms3P4dMF+IE7xvSsCis3L0Iyw4n/VpEXkK56NpKul3aPYkUcuA1U3bwZQIsLXYhCBKX1279ijlS8+PdHRnQOduHgcV4hu0NtNvz5ghSSwo1rsaDEZ1lQms8hjIBl1q0Oq6z0tkDgNw2MBwGfkuVljuPxgEopUCp9/LcC8yu3lKUdNbybdRKalHyEWx63YB7jAgCff9vX2FQI+rW3VsF+cV8SvklGMzLxu9qjzKTUhz1o/leh/eloS33d+MaUDwTkWE66K6JA8o+cc4Y/IYfsONFoAlImsFFThcWlafLBrccmVSz55Drwj4u+NeWZi+gekzhFB6q+GjfAPFvggcrRWQ==
Received: from GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:150:7d::8) by DB9PR10MB4793.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:10:252::16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5314.12; Wed, 1 Jun 2022 07:01:34 +0000
Received: from GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM ([fe80::f97d:3f6e:909d:fbd6]) by GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM ([fe80::f97d:3f6e:909d:fbd6%4]) with mapi id 15.20.5314.012; Wed, 1 Jun 2022 07:01:34 +0000
From: "Brockhaus, Hendrik" <hendrik.brockhaus@siemens.com>
To: Paul Wouters <paul.wouters@aiven.io>, The IESG <iesg@ietf.org>
CC: "draft-ietf-lamps-cmp-updates@ietf.org" <draft-ietf-lamps-cmp-updates@ietf.org>, "lamps-chairs@ietf.org" <lamps-chairs@ietf.org>, "spasm@ietf.org" <spasm@ietf.org>, "housley@vigilsec.com" <housley@vigilsec.com>
Thread-Topic: [lamps] Paul Wouters' Discuss on draft-ietf-lamps-cmp-updates-20: (with DISCUSS)
Thread-Index: AQHYdTl0vzRhGgJ9cE6aSMENfWfYna06Gpyg
Date: Wed, 01 Jun 2022 07:01:34 +0000
Message-ID: <GV2PR10MB6210C8719AA6F0A91429CA06FEDF9@GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM>
References: <165403425547.21676.9110919410947224906@ietfa.amsl.com>
In-Reply-To: <165403425547.21676.9110919410947224906@ietfa.amsl.com>
Accept-Language: de-DE, en-US
Content-Language: de-DE
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_Enabled=true; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_SetDate=2022-06-01T06:59:45Z; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_Method=Standard; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_Name=restricted-default; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_SiteId=38ae3bcd-9579-4fd4-adda-b42e1495d55a; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_ActionId=eac587b7-2008-4899-8e0f-bd4660777abd; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_ContentBits=0
document_confidentiality: Restricted
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=siemens.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 5f3faddd-c572-4369-7971-08da439c90ad
x-ms-traffictypediagnostic: DB9PR10MB4793:EE_
x-microsoft-antispam-prvs: <DB9PR10MB479327D1AB440F2FD28E3F05FEDF9@DB9PR10MB4793.EURPRD10.PROD.OUTLOOK.COM>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230001)(4636009)(366004)(33656002)(8936002)(508600001)(5660300002)(966005)(38070700005)(122000001)(15650500001)(316002)(110136005)(54906003)(82960400001)(71200400001)(52536014)(66476007)(66446008)(66556008)(76116006)(66946007)(64756008)(8676002)(4326008)(66574015)(7696005)(86362001)(83380400001)(6506007)(9686003)(186003)(26005)(2906002)(38100700002)(55016003); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: siemens.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 5f3faddd-c572-4369-7971-08da439c90ad
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 Jun 2022 07:01:34.6968 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 38ae3bcd-9579-4fd4-adda-b42e1495d55a
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: DmCdt3jDxuIS19x2mC6bupU4AhxQcJHpokCByeDu91PEhr6RI+juv6nKEU2jmKIkxVfM92L+5Qd96u55nMNZBVCyTbHNXMKgXZwX5sk5ejs=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB9PR10MB4793
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/fsLJya5jIPovuTgGHGU8FbEMw78>
Subject: Re: [lamps] Paul Wouters' Discuss on draft-ietf-lamps-cmp-updates-20: (with DISCUSS)
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.34
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 01 Jun 2022 07:02:12 -0000

Paul

Thank you for your review and the comments.

> Von: Spasm <spasm-bounces@ietf.org> Im Auftrag von Paul Wouters via
> Datatracker
> 
> 
> ----------------------------------------------------------------------
> DISCUSS:
> ----------------------------------------------------------------------
> 
> As a reviewer, and therefor I suspect also implementors, needing to read
> current + old and then compare it to new is very confusing. If this is for a
> few paragraphs I can see the point but throughout the entire long document? It
> prevented me from doing a full review.

I see your point.
This was discussed during IETF113 LAMPS meeting, see the snippet from the meeting minutes.

-------------------snip-------------------
CMP update vs. RFC4210bis: Roman Danyliw says that it does not need a bis document; however, the
reason for an update (as opposed to a bis document) needs to be explained. Russ explained that the
update was originally expected to be more modest. Tero Kivinen says that it is easier for a developer when
the specification is all in one document, and Tero asked that a single specification be produced before
advancing CMP to Internet Standard. Michael Richardson (MCR) said it would be nice to have a more
concise document by removing anything that is not used, but of course, that would be a bis document;
however, it is not worth delaying this work for years. Tero points out that that a bis document can advance
to Internet Standard without further changes, but the update document would need to be merged to
advance the CMP specification. Conclusion was to continue with the update document, and if the WG
wants to make it an Internet Standards in the future, then a bis will be written.
-------------------snip-------------------

I offered submitting an RFC4210bis document only performing the changes described in this draft. The WG decided that there would be some more work needed to update the complete document. There was support to spend this effort when progressing CMP to Internet Standard.
This would most likely mean to submit an RFC6712bis document, as CMP Updates also contains changes to RFC6712.

> 
> The document also "updates" the IANA Considerations which is not a real
> process
> we have. We only have new IANA Considerations and I don't think we should tell
> IANA to decode their instructions based on a diff with another rfc.

Finally, I followed the example in CMC Updates [RFC6402], see https://datatracker.ietf.org/doc/html/rfc6402#section-3.2 and  https://datatracker.ietf.org/doc/html/rfc6402#section-5
If this not OK for today, I will change it. Please let me know what the proposed way forward is.

> 
> Please tell me how this document would not be simply better if the diffing and
> replacing is done for the reader by obsoleting the old documents and creating
> one new clear readable document? If the WG could not do this, how can we
> expect
> an implementer to do this ?

It would be highly appreciated approving the CMP Updates draft soon to be able to continue the work on the Lightweight CMP Profile draft and to have a solid bases for ongoing implementation, e.g., in OpenSSL and Bouncy Castle.

Hendrik