Re: [lamps] [EXTERNAL] CMP vs RFC5280

Mike Ounsworth <Mike.Ounsworth@entrust.com> Tue, 19 March 2024 04:42 UTC

Return-Path: <Mike.Ounsworth@entrust.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 15BF2C14F698 for <spasm@ietfa.amsl.com>; Mon, 18 Mar 2024 21:42:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.104
X-Spam-Level:
X-Spam-Status: No, score=-2.104 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=entrust.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6mldw97CtKpP for <spasm@ietfa.amsl.com>; Mon, 18 Mar 2024 21:42:35 -0700 (PDT)
Received: from mx08-0015a003.pphosted.com (mx08-0015a003.pphosted.com [185.183.30.227]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F37C4C14F694 for <spasm@ietf.org>; Mon, 18 Mar 2024 21:42:34 -0700 (PDT)
Received: from pps.filterd (m0242863.ppops.net [127.0.0.1]) by mx08-0015a003.pphosted.com (8.17.1.24/8.17.1.24) with ESMTP id 42J33KEJ028794; Mon, 18 Mar 2024 23:42:32 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=entrust.com; h= from:to:subject:date:message-id:references:in-reply-to :content-type:mime-version; s=mail1; bh=sZEtmDZrG6TUlsfFQhP0l6up SlwaVFhiy761od6+7/Q=; b=aJwK+JM48yfkB5/dNBnTO/IMI0sE7c1PPBuoDDWx xh2lGu+zaXQdlvL+BLtIMElIMsnslVKlZ94GCB0guCIZHsAcfQ2WqQ1EZijYoE45 jvgXHirT9jXZqTIMjFcZVe/monyVTTvMNJoWxhnC+aButljG+UOixTzX6dFPwNFe GHdSvRri54jEox+tgbsorPetXbZx2FKhnDLzV4BKaQYDLjq28rKFzvfiz4USKCnj Nql2Z0z7fttumEm0iz2j8aa+W3dgCpic+Hk6UB1GY9LqfO+T+5JsyCwTzFW1JiKn iwpQKpVYt0SjwEevb4H0BtcuLblNVz0mgApyQWqOpPYohA==
Received: from nam12-mw2-obe.outbound.protection.outlook.com (mail-mw2nam12lp2041.outbound.protection.outlook.com [104.47.66.41]) by mx08-0015a003.pphosted.com (PPS) with ESMTPS id 3ww6dmeje3-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 18 Mar 2024 23:42:32 -0500 (CDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=AoHlEkc+3aq3EG49Rt6isrYWXDStuaAxjdfLxxkuvSaCbcEEL3SoW1MCeKO5QDh8t1gdSyvMj32523oHO4x7tRfl/lj96rQRBcBJSlWRE3ABKXzGIA03jT0S0nOVdB9sci2eSQ7AADhG8RpqacHvcQdZChW7HAV+n1SA1h6ZPSU6GfsmQcwkJcdlJZY7Z8/du0PFN+y2r24E1NNP4ItTmei7M7ICkU9ABz+uKxNArojVBhtfzewJ6aLtFimNJW3/i41/ltItgeFReJwDA8uIZMmqDl82m0W2eIXNsMPx78sWydaogGY57HrbuWD0ZEKEqlxqsK1L3LQ11qfNVRe07g==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=sZEtmDZrG6TUlsfFQhP0l6upSlwaVFhiy761od6+7/Q=; b=WV+yv3NEFCQNBOATWxIsCx9ZuRceOxcW3DGpz0E9ORD8itEeOmVjRTNag6k0oHbMptatduHKHz8Z2ZO85EziPgdw/R6P+O+uNJBCtTA+L2KzrAGoA6fvANUzkKfXxY6SxdClIbDivI6yKwL9Yek/geRsacBXqJWvxnLscFzIPl4AH70J8E02T7XvRNHYTXdLbeY5NFIeP96DSEN2W1r2ypNTxdv48bzsjfrqin+IxIuu7zePxPSeJKT1N3ps7s4tBhVLPMN/CvvvVg/rbY2qCTcRHLouRvpdg8W8sy9Y+aVOKO8rqOf7p1kw21YynktEhkW4NmQdMRrHs0ajKMFc6A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=entrust.com; dmarc=pass action=none header.from=entrust.com; dkim=pass header.d=entrust.com; arc=none
Received: from CH0PR11MB5739.namprd11.prod.outlook.com (2603:10b6:610:100::20) by BL3PR11MB6532.namprd11.prod.outlook.com (2603:10b6:208:38f::9) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7386.19; Tue, 19 Mar 2024 04:42:27 +0000
Received: from CH0PR11MB5739.namprd11.prod.outlook.com ([fe80::e3f0:78e1:48fc:8a03]) by CH0PR11MB5739.namprd11.prod.outlook.com ([fe80::e3f0:78e1:48fc:8a03%3]) with mapi id 15.20.7409.010; Tue, 19 Mar 2024 04:42:26 +0000
From: Mike Ounsworth <Mike.Ounsworth@entrust.com>
To: Michael Richardson <mcr+ietf@sandelman.ca>, "spasm@ietf.org" <spasm@ietf.org>
Thread-Topic: [EXTERNAL] [lamps] CMP vs RFC5280
Thread-Index: AQHaeaKbueI+9C2vpEGx30oZlGGVxrE+exiF
Date: Tue, 19 Mar 2024 04:42:26 +0000
Message-ID: <CH0PR11MB5739A1AE43D6172C9E73FD6A9F2C2@CH0PR11MB5739.namprd11.prod.outlook.com>
References: <93275.1710814199@dyas>
In-Reply-To: <93275.1710814199@dyas>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CH0PR11MB5739:EE_|BL3PR11MB6532:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CH0PR11MB5739.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(376005)(1800799015)(366007); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_CH0PR11MB5739A1AE43D6172C9E73FD6A9F2C2CH0PR11MB5739namp_"
MIME-Version: 1.0
X-OriginatorOrg: entrust.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CH0PR11MB5739.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 0611fb1c-2595-485b-1db5-08dc47cefa30
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 Mar 2024 04:42:26.5571 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: f46cf439-27ef-4acf-a800-15072bb7ddc1
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: SBU0clhRxUBwo9pApY1niLqW0r3TGwyGkqRMnFy0JP9GIqFvDZ1Ms67BYX8PmCLzqv6OwKuJMBYHoO3YR3LE2K1N1YdLjK9M/8AzyhIiLGU=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BL3PR11MB6532
X-Proofpoint-ORIG-GUID: JfavY5IBcWEQxEK3kZpepIgiYwvl_FId
X-Proofpoint-GUID: JfavY5IBcWEQxEK3kZpepIgiYwvl_FId
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.272,Aquarius:18.0.1011,Hydra:6.0.619,FMLib:17.11.176.26 definitions=2024-03-18_12,2024-03-18_03,2023-05-22_02
X-Proofpoint-Spam-Details: rule=outbound_notspam policy=outbound score=0 mlxscore=0 mlxlogscore=756 adultscore=0 clxscore=1011 impostorscore=0 suspectscore=0 priorityscore=1501 lowpriorityscore=0 bulkscore=0 malwarescore=0 spamscore=0 phishscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.19.0-2403140001 definitions=main-2403190034
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/_-W5bXk3awuxlHIaDIEvkaPKJZY>
Subject: Re: [lamps] [EXTERNAL] CMP vs RFC5280
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: This is the mail list for the LAMPS Working Group <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 19 Mar 2024 04:42:39 -0000

Hmm. 4210 pre-dates 5280. I suppose there are two questions here:

1) can someone who was around please illuminate on why 2510/4210 references an ISO doc and not an IETF doc (2459/3280/5280)?

2) Is it a trivial change to swap out the X.509 reference? Or will that turn into a cascade of difference-hunting and backwards compatibility? Is that worth doing?

- Mike Ounsworth
________________________________
From: Spasm <spasm-bounces@ietf.org> on behalf of Michael Richardson <mcr+ietf@sandelman.ca>
Sent: Tuesday, March 19, 2024 12:09:59 PM
To: spasm@ietf.org <spasm@ietf.org>
Subject: [EXTERNAL] [lamps] CMP vs RFC5280


In https://datatracker.ietf.org/doc/draft-ietf-lamps-rfc4210bis/  it says:

   The term
   "certificate" in this document refers to an X.509v3 Certificate as
   defined in [ITU.X509.2000].

and I wondered why an ITU document is referred to, rather than RFC5280.
Further, why the 2000 era document, when I think there is a 2019 one.

{at least, the 2019 version is freely available, but I can't find the 2000
era document easily}

--
Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works
 -= IPv6 IoT consulting =-                      *I*LIKE*TRAINS*



Any email and files/attachments transmitted with it are intended solely for the use of the individual or entity to whom they are addressed. If this message has been sent to you in error, you must not copy, distribute or disclose of the information it contains. Please notify Entrust immediately and delete the message from your system.