Re: [lamps] Call for adoption of draft-becker-guthrie-cert-binding-for-multi-auth-02

Tomofumi Okubo <tomofumi.okubo@digicert.com> Wed, 11 January 2023 17:52 UTC

Return-Path: <tomofumi.okubo@digicert.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1D634C153CC3 for <spasm@ietfa.amsl.com>; Wed, 11 Jan 2023 09:52:03 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=digicert.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UcUqx7Xn0B9n for <spasm@ietfa.amsl.com>; Wed, 11 Jan 2023 09:51:59 -0800 (PST)
Received: from NAM11-BN8-obe.outbound.protection.outlook.com (mail-bn8nam11on2100.outbound.protection.outlook.com [40.107.236.100]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EBBE1C14F738 for <spasm@ietf.org>; Wed, 11 Jan 2023 09:51:58 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=FnmbtPubS5ZJJDzuv8CLbX5JoLBhsWQjJM/u7DL2dcd22keDmRjD0+F2MCvc41d7zqEnT2TckuG/eIRMB6xiSavx0b7y3ww935DRgRX/fxrpZ1XGM1EkaISuHa2de7ufi4TROhoaxgCdR3Sg0DPVzgpXZTCtqO1e4F3Y4o2cx8pFnWWz5u/POwZ/E6dm6+iPHN8wjzolSQN+7w/1fXmR2Rk94A2TKvV9cJ+KZgnUF9h/xSydzblQfrfv9ZHOfMCIs6ZnKAVAdCB2PWVPEto8Dhe4ir8SsXyN5wqJ8lRmQ/GOa5fUzHLQ6xZxbPYvHB062GMcf2hJDi7dt+URl+K2Tg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=PsdO1O2GjjgNErJxfxGamWlTs8zx6Lywg75lyEaYf2Y=; b=Zj1jBpseSuKbQ1KA1fv6FNPNzU7EGTp7oCvmuX/lzeh9aSzHBiI8NnmZJIRxbUuxhInXH6nJifkfUCC1aJnnhwAPFqAGpYOUB6LiaBp5IKqXveQSpeTGcegKcFROaYCHJOA6FrruVy3Hp1K31vaoCyKLntsVdbP9v0G4d34zeyiJL20yHyNxMg61nMlRoYqgHngkq0Qq7WEKaFXxuasmqoOxsWL8vmA577GeVvjyuVe1Wvvsmc0YwgCR/QW24rh1KZOo8Nc/EK22EhG6nbu7GEYeWS7X1SZ7xgwQEJ0lVbDd2HWGUOpLt0n6kNeUdNyqgUDTlcpv4YGYiHYPD+ON/Q==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=digicert.com; dmarc=pass action=none header.from=digicert.com; dkim=pass header.d=digicert.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=digicert.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=PsdO1O2GjjgNErJxfxGamWlTs8zx6Lywg75lyEaYf2Y=; b=B2kbJ86APtmJcEVbwNt3hDSEBv6U+edhHuzuJjHELTUvD6v3vGljINWtEk1OSEbVtVC++Vuj1q2oyinMVmFBss9qo7PgIR7IkyjcGKiOkZH91hJWiqc9Pvwc2r2rvI6s5qDUvcgQfK+vV1CcpEZxSjwSqyNNdzNH4GGy7IqI+Zn3f3CpIn6dzZc/EUkomY34WVpvvpg1rdbKNObYqaJQeDRKwVr8hm9+5BHukpsnsSpDxsAHS6ShjEW1MGEWk5DmcE7/VTSl7X8piLpyxnNdrql2A7njZAOzXl1rm8BobKIe6wcz2y1JHqhifNdg5TOnNuTfxrAR7wlrKeaANw3uFw==
Received: from CY8PR14MB6123.namprd14.prod.outlook.com (2603:10b6:930:54::12) by CH0PR14MB7347.namprd14.prod.outlook.com (2603:10b6:610:18f::19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6002.13; Wed, 11 Jan 2023 17:51:54 +0000
Received: from CY8PR14MB6123.namprd14.prod.outlook.com ([fe80::54ab:5b30:25bb:6ed]) by CY8PR14MB6123.namprd14.prod.outlook.com ([fe80::54ab:5b30:25bb:6ed%2]) with mapi id 15.20.6002.013; Wed, 11 Jan 2023 17:51:54 +0000
From: Tomofumi Okubo <tomofumi.okubo@digicert.com>
To: Russ Housley <housley@vigilsec.com>, LAMPS <spasm@ietf.org>
Thread-Topic: [lamps] Call for adoption of draft-becker-guthrie-cert-binding-for-multi-auth-02
Thread-Index: AQHZIVm80WFCm85tDkuWQKD+XWRz366ZhoOA
Date: Wed, 11 Jan 2023 17:51:54 +0000
Message-ID: <CY8PR14MB6123610E43DD6548A753DBADEAFC9@CY8PR14MB6123.namprd14.prod.outlook.com>
References: <PH0PR00MB10003EC6A096FE0A363BBFB9F5459@PH0PR00MB1000.namprd00.prod.outlook.com> <PH0PR00MB10002A7A2850A1333B4F6C00F54A9@PH0PR00MB1000.namprd00.prod.outlook.com> <35BEB1D9-7EA5-4CD4-BADA-88CCB0E9E8F9@vigilsec.com> <6FB4E76C-0AFD-4D00-B0FC-63F244510530@vigilsec.com>
In-Reply-To: <6FB4E76C-0AFD-4D00-B0FC-63F244510530@vigilsec.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=digicert.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CY8PR14MB6123:EE_|CH0PR14MB7347:EE_
x-ms-office365-filtering-correlation-id: 232d92bf-6c62-49a7-18e0-08daf3fc869e
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CY8PR14MB6123.namprd14.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230022)(346002)(396003)(39860400002)(136003)(366004)(376002)(451199015)(52536014)(8936002)(64756008)(66556008)(8676002)(76116006)(66446008)(66476007)(66946007)(38070700005)(41300700001)(316002)(44832011)(110136005)(2906002)(33656002)(5660300002)(55016003)(71200400001)(86362001)(7696005)(966005)(26005)(186003)(478600001)(53546011)(9686003)(6506007)(66574015)(122000001)(83380400001)(38100700002); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: digicert.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CY8PR14MB6123.namprd14.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 232d92bf-6c62-49a7-18e0-08daf3fc869e
X-MS-Exchange-CrossTenant-originalarrivaltime: 11 Jan 2023 17:51:54.2006 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: cf813fa1-bde5-4e75-9479-f6aaa8b1f284
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 3SXJaFHpOSEseO0RVIp8TMPSXyZVQBXG8TXWcvzXIMeB9nXlwOSVtHOpXC5U6s2+M3uIngN7egdJ1dXTyo3JcEOinGNloqoA8eKqawdk6H8=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CH0PR14MB7347
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/Sy4FC2yJbx99RdF10se_9CJ5uZY>
Subject: Re: [lamps] Call for adoption of draft-becker-guthrie-cert-binding-for-multi-auth-02
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 11 Jan 2023 17:52:03 -0000

I believe there are use cases for this model and I support the adoption of this draft.
Thanks and best regards,
Tomofumi

-----Original Message-----
From: Spasm <spasm-bounces@ietf.org> On Behalf Of Russ Housley
Sent: Thursday, January 5, 2023 3:02 PM
To: LAMPS <spasm@ietf.org>
Subject: [lamps] Call for adoption of draft-becker-guthrie-cert-binding-for-multi-auth-02

Do the changes that were made in -02 of the Internet-Draft resolve the concerns that were previously raised?

On behalf of the LAMPS WG Chairs,
Russ


> On Sep 15, 2022, at 11:44 AM, Russ Housley <housley@vigilsec.com> wrote:
> 
> There has been some discussion of https://datatracker.ietf.org/doc/draft-becker-guthrie-cert-binding-for-multi-auth/.  During the discussion at IETF 114, we agree to have a call for adoption of this document.
> 
> Should the LAMPS WG adopt “Related Certificates for Use in Multiple Authentications within a Protocol” indraft-becker-guthrie-cert-binding-for-multi-auth-01?
> 
> Please reply to this message by Friday, 30 September 2022 to voice your support or opposition to adoption.
> 
> On behalf of the LAMPS WG Chairs,
> Russ
> 

_______________________________________________
Spasm mailing list
Spasm@ietf.org
https://www.ietf.org/mailman/listinfo/spasm