Re: [lamps] Call for adoption of draft-nir-saag-star

Ryan Sleevi <ryan-ietf@sleevi.com> Sun, 15 July 2018 00:40 UTC

Return-Path: <ryan-ietf@sleevi.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 82BA8130E65 for <spasm@ietfa.amsl.com>; Sat, 14 Jul 2018 17:40:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 1.336
X-Spam-Level: *
X-Spam-Status: No, score=1.336 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_SBL_CSS=3.335] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=sleevi.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id fPgLxAojFB_B for <spasm@ietfa.amsl.com>; Sat, 14 Jul 2018 17:40:00 -0700 (PDT)
Received: from homiemail-a106.g.dreamhost.com (homie-sub4.mail.dreamhost.com [69.163.253.135]) (using TLSv1.1 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8E79E1292AD for <spasm@ietf.org>; Sat, 14 Jul 2018 17:40:00 -0700 (PDT)
Received: from homiemail-a106.g.dreamhost.com (localhost [127.0.0.1]) by homiemail-a106.g.dreamhost.com (Postfix) with ESMTP id B398F30000C07 for <spasm@ietf.org>; Sat, 14 Jul 2018 17:39:59 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=sleevi.com; h=mime-version :references:in-reply-to:from:date:message-id:subject:to:cc :content-type; s=sleevi.com; bh=628zo3g50zj8p3HhH6MxfxLBfo8=; b= JNbWgJgmt7qMpysfD/vzFSWLA0094144f9sgLiU8LK8Kw2XGD5zwYZb9yTUkK0dh KzOAmr1lj6+j91C8TEfrrlFVLGwZ5aJHvfTsWIaH2EIZTv2UXSGXmbrVMLVHE09w ENuBGz91BcjwxvwDCq1K/Tl+YeSxukT1OYQEUHFN384=
Received: from mail-io0-f171.google.com (mail-io0-f171.google.com [209.85.223.171]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) (Authenticated sender: ryan@sleevi.com) by homiemail-a106.g.dreamhost.com (Postfix) with ESMTPSA id A69833000293D for <spasm@ietf.org>; Sat, 14 Jul 2018 17:39:59 -0700 (PDT)
Received: by mail-io0-f171.google.com with SMTP id l7-v6so34576756ioj.1 for <spasm@ietf.org>; Sat, 14 Jul 2018 17:39:59 -0700 (PDT)
X-Gm-Message-State: AOUpUlGJjygCHDzyfe7Ku6v7oMBYKCEglD7toBOFURkCZl4qVZ7bX/GI lKyBDM+xYn3w5XrGlUDkbd01QcOAG6G8rJRBuAA=
X-Google-Smtp-Source: AAOMgpcQwraswPgABvlDiyXI3PeEzkh+NeprzdMPI7N8ks3AhIe6TppxKEFoBYBCxY5M7w3TSnOJpGnQyZ7DWooFmq4=
X-Received: by 2002:a6b:a2cf:: with SMTP id l198-v6mr8215245ioe.282.1531615199123; Sat, 14 Jul 2018 17:39:59 -0700 (PDT)
MIME-Version: 1.0
References: <BN6PR14MB1106140408FFB08553DEAE98835F0@BN6PR14MB1106.namprd14.prod.outlook.com>
In-Reply-To: <BN6PR14MB1106140408FFB08553DEAE98835F0@BN6PR14MB1106.namprd14.prod.outlook.com>
From: Ryan Sleevi <ryan-ietf@sleevi.com>
Date: Sun, 15 Jul 2018 09:39:48 +0900
X-Gmail-Original-Message-ID: <CAErg=HHvzULdbo0cZ08SWaZNzHbdKvk62yKGt28aOjaW5j55wA@mail.gmail.com>
Message-ID: <CAErg=HHvzULdbo0cZ08SWaZNzHbdKvk62yKGt28aOjaW5j55wA@mail.gmail.com>
To: Tim Hollebeek <tim.hollebeek@digicert.com>
Cc: SPASM <spasm@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000e0641c0570fef3e2"
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/W_F7cCarxxKayGUoRIFaS_qVraA>
Subject: Re: [lamps] Call for adoption of draft-nir-saag-star
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 15 Jul 2018 00:40:03 -0000

On Sun, Jul 15, 2018 at 1:01 AM Tim Hollebeek <tim.hollebeek@digicert.com>
wrote:

>
>
> The recently approved LAMPS WG Charter adds this work item:
>
>
>
> 3. Specify the use of short-lived X.509 certificates for which no
> revocation information is made available by the Certification Authority.
>
>
>
> Short-lived certificates have a lifespan that is shorter than the time
> needed to detect, report, and distribute revocation information.  As a
> result, revoking short-lived certificates is unnecessary and pointless.
>
>
>
> It has been suggested that the WG adopt draft-nir-saag-star as the
> starting point for this work.  Please voice your support or concerns on the
> list.
>
>
> _______________________________________________
> Spasm mailing list
> Spasm@ietf.org
> https://www.ietf.org/mailman/listinfo/spasm


I have read it, and as expressed during the charter discussion, do not
support it as a place to start in its current form.

The problem statement that it seems to address is still ill-defined, and
it’s explanations for certain design choices are still contradictory and
inconsistent. As such, it’s technical proposals lack merit for the problem
or cohesion as a solution, and more work should be done to clearly
articulate the problem and solution space prior to adoption.


> <https://www.ietf.org/mailman/listinfo/spasm>
>