Re: [lamps] New Version Notification for draft-ietf-lamps-cmp-updates-05.txt

Russ Housley <housley@vigilsec.com> Tue, 22 September 2020 16:52 UTC

Return-Path: <housley@vigilsec.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6F5663A1826 for <spasm@ietfa.amsl.com>; Tue, 22 Sep 2020 09:52:01 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.897
X-Spam-Level:
X-Spam-Status: No, score=-1.897 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ir9m9rZ7sNNu for <spasm@ietfa.amsl.com>; Tue, 22 Sep 2020 09:51:59 -0700 (PDT)
Received: from mail.smeinc.net (mail.smeinc.net [209.135.209.11]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E30213A1818 for <spasm@ietf.org>; Tue, 22 Sep 2020 09:51:58 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by mail.smeinc.net (Postfix) with ESMTP id 3B438300BA3 for <spasm@ietf.org>; Tue, 22 Sep 2020 12:51:56 -0400 (EDT)
X-Virus-Scanned: amavisd-new at mail.smeinc.net
Received: from mail.smeinc.net ([127.0.0.1]) by localhost (mail.smeinc.net [127.0.0.1]) (amavisd-new, port 10026) with ESMTP id WM85bskysPli for <spasm@ietf.org>; Tue, 22 Sep 2020 12:51:53 -0400 (EDT)
Received: from [192.168.1.161] (pool-141-156-161-153.washdc.fios.verizon.net [141.156.161.153]) by mail.smeinc.net (Postfix) with ESMTPSA id 0F85F300AA2; Tue, 22 Sep 2020 12:51:53 -0400 (EDT)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 12.4 \(3445.104.15\))
From: Russ Housley <housley@vigilsec.com>
In-Reply-To: <AM0PR10MB2418804901B75EA015609C2FFE3B0@AM0PR10MB2418.EURPRD10.PROD.OUTLOOK.COM>
Date: Tue, 22 Sep 2020 12:51:53 -0400
Cc: LAMPS WG <spasm@ietf.org>, "david.von.oheimb@siemens.com" <david.von.oheimb@siemens.com>, "Peylo, Martin (Nokia - FI/Espoo)" <martin.peylo@nokia.com>, "steffen.fries@siemens.com" <steffen.fries@siemens.com>
Content-Transfer-Encoding: quoted-printable
Message-Id: <E5BCC8AB-2235-403E-8C89-92C720D43223@vigilsec.com>
References: <160078694920.12631.9171763288487002319@ietfa.amsl.com> <AM0PR10MB2418804901B75EA015609C2FFE3B0@AM0PR10MB2418.EURPRD10.PROD.OUTLOOK.COM>
To: "Brockhaus, Hendrik" <hendrik.brockhaus@siemens.com>
X-Mailer: Apple Mail (2.3445.104.15)
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/MA9I21cx3DrFGr6jrgMh_QoDsy0>
Subject: Re: [lamps] New Version Notification for draft-ietf-lamps-cmp-updates-05.txt
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 22 Sep 2020 16:52:01 -0000

It looks like the bulk of the changes are the result of my comments.  Thanks.

Russ


> On Sep 22, 2020, at 11:08 AM, Brockhaus, Hendrik <hendrik.brockhaus@siemens.com> wrote:
> 
> I updated the Updates CMP draft and tried to address all topics that were discussed in the past weeks on the list.
> Special thanks to Russ for the fruitful discussion.
> Please excuse, in case I missed a topic and let me know.
> 
> These are the main points I changed:
> 
>   o  Added Section 2.6 and Section 2.7 to clarify the usage of these
>      general messages types with EC curves (see thread
>      "AlgorithmIdentifier parameters NULL value - Re: InfoTypeAndValue
>      in CMP headers")
> 
>   o  Split former section 2.7 on adding ’CA Certificates’, ’Root CA
>      Certificates Update’, and ’Certificate Request Template’ in three
>      separate sections for easier readability
> 
>   o  Changed in Section 2.10 the ASN.1 syntax of CertReqTemplateValue
>      from using reaKeyLen to usage of controls as specified in CRMF
>      Section 6 [RFC4211] (see thread "dtaft-ietf-lamps-cmp-updates and
>      rsaKeyLen")
> 
>   o  Updated the IANA considerations in Section 2.13 to introduce new
>      OID for id-regCtrl-algId and id-regCtrl-rsaKeyLen (see thread
>      "dtaft-ietf-lamps-cmp-updates and rsaKeyLen")
> 
>   o  Updated the IANA Considerations in and the Appendixes to introduce
>      new OID for the updates ASN.1 modules (see thread "I-D Action:
>      draft-ietf-lamps-cmp-updates-04.txt")
> 
>   o  Removed EncryptedValue from and added Controls to the list of
>      types imported from CRMF [RFC4211] in ASN.1 modules (see thread
>      "draft-ietf-lamps-cmp-updates and the ASN.1 modules")
> 
>   o  Moved declaration of Rand out of the comment in ASN.1 modules (see
>      thread "draft-ietf-lamps-cmp-updates and the ASN.1 modules")
> 
>   o  Minor changes and corrections
> 
> Hendrik
> 
>> Von: internet-drafts@ietf.org <internet-drafts@ietf.org>
>> 
>> A new version of I-D, draft-ietf-lamps-cmp-updates-05.txt
>> has been successfully submitted by Hendrik Brockhaus and posted to the IETF
>> repository.
>> 
>> Name:		draft-ietf-lamps-cmp-updates
>> Revision:	05
>> Title:		CMP Updates
>> Document date:	2020-09-22
>> Group:		lamps
>> Pages:		48
>> URL:
>> https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.
>> org%2Fid%2Fdraft-ietf-lamps-cmp-updates-
>> 05.txt&amp;data=02%7C01%7Chendrik.brockhaus%40siemens.com%7C5da4c2
>> 9537214c89afe908d85f08885e%7C38ae3bcd95794fd4addab42e1495d55a%7C1
>> %7C0%7C637363837547548234&amp;sdata=5%2BOvc%2B432KD1lsUZE%2Ba8
>> LiBYlzkQoaRLu%2FLCr98jFwA%3D&amp;reserved=0
>> Status:
>> https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatrack
>> er.ietf.org%2Fdoc%2Fdraft-ietf-lamps-cmp-
>> updates%2F&amp;data=02%7C01%7Chendrik.brockhaus%40siemens.com%7C5
>> da4c29537214c89afe908d85f08885e%7C38ae3bcd95794fd4addab42e1495d55
>> a%7C1%7C0%7C637363837547558225&amp;sdata=MatGLrdndu8e6Nc%2B0hn
>> qCm38HGzL6EKp%2BO8UbwdnFU8%3D&amp;reserved=0
>> Htmlized:
>> https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatrack
>> er.ietf.org%2Fdoc%2Fhtml%2Fdraft-ietf-lamps-cmp-
>> updates&amp;data=02%7C01%7Chendrik.brockhaus%40siemens.com%7C5da4c
>> 29537214c89afe908d85f08885e%7C38ae3bcd95794fd4addab42e1495d55a%7C
>> 1%7C0%7C637363837547558225&amp;sdata=6yZM6Gl8l1sKNkf1Bf%2Bp%2FTj
>> vwd7acBng3lNtlV1DA4E%3D&amp;reserved=0
>> Htmlized:
>> https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Ftools.ietf.
>> org%2Fhtml%2Fdraft-ietf-lamps-cmp-updates-
>> 05&amp;data=02%7C01%7Chendrik.brockhaus%40siemens.com%7C5da4c2953
>> 7214c89afe908d85f08885e%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7
>> C0%7C637363837547558225&amp;sdata=BqDDMgiHTA%2F26u93dq0g5bMp6Z
>> 6uyEt28xuTTGb3BaY%3D&amp;reserved=0
>> Diff:
>> https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.
>> org%2Frfcdiff%3Furl2%3Ddraft-ietf-lamps-cmp-updates-
>> 05&amp;data=02%7C01%7Chendrik.brockhaus%40siemens.com%7C5da4c2953
>> 7214c89afe908d85f08885e%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7
>> C0%7C637363837547558225&amp;sdata=nc09iTnuD7xWEs0B6EFHc%2BlndAk5
>> 6I2lRsl9ATlxUng%3D&amp;reserved=0
>> 
>> Abstract:
>>   This document contains a set of updates to the base syntax and
>>   transport of Certificate Management Protocol (CMP) version 2.  This
>>   document updates RFC 4210 and RFC 6712.
>> 
>>   Specifically, the CMP services updated in this document comprise the
>>   enabling of using EnvelopedData instead of EncryptedValue, adding new
>>   general message types, the definition of extended key usages to
>>   identify certificates of CMP endpoints on certification and
>>   registration authorities, and adds an HTTP URI discovery mechanism
>>   and extend the URI structure.
>> 
>> 
>> 
>> 
>> Please note that it may take a couple of minutes from the time of submission
>> until the htmlized version and diff are available at tools.ietf.org.
>> 
>> The IETF Secretariat
>> 
> 
> _______________________________________________
> Spasm mailing list
> Spasm@ietf.org
> https://www.ietf.org/mailman/listinfo/spasm