Re: [lamps] [Errata Held for Document Update] RFC8398 (5418)

Corey Bonnell <Corey.Bonnell@digicert.com> Wed, 17 January 2024 17:05 UTC

Return-Path: <Corey.Bonnell@digicert.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DBF21C151990; Wed, 17 Jan 2024 09:05:22 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.108
X-Spam-Level:
X-Spam-Status: No, score=-2.108 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=digicert.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xcd74bX4RKhj; Wed, 17 Jan 2024 09:05:19 -0800 (PST)
Received: from NAM11-BN8-obe.outbound.protection.outlook.com (mail-bn8nam11on2100.outbound.protection.outlook.com [40.107.236.100]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D4C18C14F5E7; Wed, 17 Jan 2024 09:05:18 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=W1cPqMvBfQfzenHn6ePXL+kIfcjuVJ8Vz3cbGgoGpMOh7V0Fira393MN8ADdnzvoA7Zu5KzrXZqq2dwCTOLhrAINcqUT3ChYvK4YAPQ9TupPJMq8l5g2XMoBnuByAa+pHfau++0/LmwFzyp5VedxfdxkC5RZqkrkNbDCVh1E086rTr75UTB6Y34kZ2XM6pZeRAR71NebSfh33Gx0hLnxbNgT66gu9Hb+bWrgw5eYnWp1tTdaFYPEpg0XVHJ0uzuoSgvAq74XzhJ26esHqi4y5+vgrAsNaO22zXuZLzgrfTB0mO1XVGejgrmvX0Sa2Czw9NbRTdRjZSHn0WYPcI0iPw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=HCf2DWgshYPLYnosj02dRlcwPfYk7VfdJUB2gbOS/lo=; b=Qq5KfQyz8CiFJA4rve6WZLgdX+eYxjdtKCYjrUOqYtBGX7TO/VjLFBsBRlde+Lqer4GSaOISR4sm0AYuDAMndh/JuugMOl1Dq5b4IHM59wut6imzUEqRt9Lr3KfmoVfPK3t4T4wT6mCiH3lzhpWjckn6LiwcnS/JgjQ1T1vhNEjrE85DzsmjniKYYAqDpTcTV3YV7SGRmiwaEGb2FvQxFjmNHDKwBpp2caktvqltTOeeHCnFk0Ep+A9lVa6EAiZpdV9FbgaG/G4LYd8ZQa92xYsmmYF5Zj4hViQB41DtSZV4iOiwnbP/7X1oO+MbSHHTzPp7KQLdo3F4ek+ybiVPRg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=digicert.com; dmarc=pass action=none header.from=digicert.com; dkim=pass header.d=digicert.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=digicert.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=HCf2DWgshYPLYnosj02dRlcwPfYk7VfdJUB2gbOS/lo=; b=wCfsCM2kOOFs+p6iNRjq7QIuOJTJ5XJmiMiqqMorckGvzyy6e9TYkTLFmS4t5rOhxahkX6lmlmLqXlaukz4vAw1NzSjMMZQOROSW2gYn04+5rFuJpFJZm7UQUeB14dWz5bMKVZO1XwUcbSaRDhOmhu/36g0FxEQFpUOJBy8uu8cwwNrYc3drxaCfMSeKUHdWN7YECUm6sxqRvAUwSGRfJ/NdlJUy1x4IusnJAvXyGRnO9FjqqLjj5/uPx1VpGx8ZXw8RwIKKqDDY/DXBXSJrHzMg9+YvuksejyJmgTAC8wnw+E9nup20G4FNcMeUf963VPAWr4lKbTHYOzF96RFjlA==
Received: from DM6PR14MB2186.namprd14.prod.outlook.com (2603:10b6:5:b6::16) by DS0PR14MB7280.namprd14.prod.outlook.com (2603:10b6:8:156::21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7181.21; Wed, 17 Jan 2024 17:05:15 +0000
Received: from DM6PR14MB2186.namprd14.prod.outlook.com ([fe80::a33c:97c7:a146:1ad4]) by DM6PR14MB2186.namprd14.prod.outlook.com ([fe80::a33c:97c7:a146:1ad4%3]) with mapi id 15.20.7202.020; Wed, 17 Jan 2024 17:05:15 +0000
From: Corey Bonnell <Corey.Bonnell@digicert.com>
To: RFC Errata System <rfc-editor@rfc-editor.org>, "beldmit@gmail.com" <beldmit@gmail.com>, "alexey.melnikov@isode.com" <alexey.melnikov@isode.com>, "weihaw@google.com" <weihaw@google.com>
CC: "paul.wouters@aiven.io" <paul.wouters@aiven.io>, "iesg@ietf.org" <iesg@ietf.org>, "spasm@ietf.org" <spasm@ietf.org>
Thread-Topic: [lamps] [Errata Held for Document Update] RFC8398 (5418)
Thread-Index: AQHaSWWtTSJDaXBMnUeIT7TacPe0DrDeOubw
Date: Wed, 17 Jan 2024 17:05:15 +0000
Message-ID: <DM6PR14MB2186515C73E02C02EA4C5EC692722@DM6PR14MB2186.namprd14.prod.outlook.com>
References: <20240117165300.7DE8DEDFA8@rfcpa.amsl.com>
In-Reply-To: <20240117165300.7DE8DEDFA8@rfcpa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=digicert.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DM6PR14MB2186:EE_|DS0PR14MB7280:EE_
x-ms-office365-filtering-correlation-id: af5b969d-72df-48d3-2cfe-08dc177e79a6
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DM6PR14MB2186.namprd14.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(396003)(136003)(346002)(376002)(39860400002)(366004)(230922051799003)(1800799012)(186009)(64100799003)(451199024)(4326008)(8936002)(5660300002)(15650500001)(66446008)(66476007)(54906003)(66556008)(64756008)(76116006)(8676002)(19627235002)(66946007)(26005)(71200400001)(99936003)(33656002)(86362001)(110136005)(2906002)(52536014)(316002)(55016003)(53546011)(478600001)(7696005)(6506007)(9686003)(966005)(41300700001)(38100700002)(122000001)(38070700009)(83380400001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/signed; protocol="application/x-pkcs7-signature"; micalg="SHA1"; boundary="----=_NextPart_000_0015_01DA493D.6C84B4C0"
MIME-Version: 1.0
X-OriginatorOrg: digicert.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM6PR14MB2186.namprd14.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: af5b969d-72df-48d3-2cfe-08dc177e79a6
X-MS-Exchange-CrossTenant-originalarrivaltime: 17 Jan 2024 17:05:15.3854 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: cf813fa1-bde5-4e75-9479-f6aaa8b1f284
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: T/kg2J8bHkAfG/yQNDzsmMCbPGIRaSOYOmk/AKaTCro/9O3XO+EJizfmrBCSlYKpa8AHYzk5WkaiLlzWdFiS2sUWq0Wic/13xaj3jGjZjL4=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DS0PR14MB7280
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/k4MQqp5deNtNkGnmnrdPnIkoTvQ>
Subject: Re: [lamps] [Errata Held for Document Update] RFC8398 (5418)
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: This is the mail list for the LAMPS Working Group <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 17 Jan 2024 17:05:22 -0000

This erratum is addressed in 8398-bis, albeit a bit differently due to the
use of A-label representation of the first label of the domain part:
https://www.ietf.org/archive/id/draft-ietf-lamps-rfc8398bis-02.html#appendix
-B.

-----Original Message-----
From: Spasm <spasm-bounces@ietf.org> On Behalf Of RFC Errata System
Sent: Wednesday, January 17, 2024 11:53 AM
To: beldmit@gmail.com; alexey.melnikov@isode.com; weihaw@google.com
Cc: paul.wouters@aiven.io; iesg@ietf.org; spasm@ietf.org;
rfc-editor@rfc-editor.org
Subject: [lamps] [Errata Held for Document Update] RFC8398 (5418)

The following errata report has been held for document update for RFC8398,
"Internationalized Email Addresses in X.509 Certificates". 

--------------------------------------
You may review the report below and at:
https://www.rfc-editor.org/errata/eid5418

--------------------------------------
Status: Held for Document Update
Type: Technical

Reported by: Belyavskiy Dmitry <beldmit@gmail.com> Date Reported: 2018-07-11
Held by: Paul Wouters (IESG)

Section: Appendix B

Original Text
-------------
   This non-normative example demonstrates using SmtpUTF8Mailbox as an
   otherName in GeneralName to encode the email address
   "u+8001u+5E2B@example.com".

      The hexadecimal DER encoding of the email address is:
      A022060A 2B060105 05070012 0809A014 0C12E880 81E5B8AB 40657861
      6D706C65 2E636F6D

      The text decoding is:
        0  34: [0] {
        2  10:   OBJECT IDENTIFIER '1 3 6 1 5 5 7 0 18 8 9'
       14  20:   [0] {
       16  18:     UTF8String '..@example.com'
             :     }
             :   }

                                 Figure 2

   The example was encoded on the OSS Nokalva ASN.1 Playground and the
   above text decoding is an output of Peter Gutmann's "dumpasn1"
   program.


Corrected Text
--------------
   This non-normative example demonstrates using SmtpUTF8Mailbox as an
   otherName in GeneralName to encode the email address
   "u+533Bu+751F@u+5927u+5B66.example.com".

   The hexadecimal DER encoding of the block is:
   a0330608 2b060105 05070809 a0270c25 c3a5c28c c2bbc3a7 c294c29f 
   40c3a5c2 a4c2a7c3 a5c2adc2 a62e6578 616d706c 652e636f 6d


   The text decoding is:
     2  51: [0] {
     4   8:   OBJECT IDENTIFIER '1 3 6 1 5 5 7 8 9'
    14  39:   [0] {
    16  37:     UTF8String '..@...example.com'
          :     }
          :   }

                                 Figure 2

   The example was encoded on the OSS Nokalva ASN.1 Playground and the
   above text decoding is an output of Peter Gutmann's "dumpasn1"
   program.

Notes
-----
The OID used in Appendix B does not match the OID for id-on-SmtpUTF8Mailbox
defined in "Appendix A.  ASN.1 Module" and is not mentioned anywhere in the
RFC.

Paul Wouters (AD): Note that it seems different versions of the dumpasn1
tool seem to handle non-ASCII characters in the output differently, so the
tool output can slightly vary from the Reporter's corrected output. The OID
correction has been verified by my and Russ Housley

--------------------------------------
RFC8398 (draft-ietf-lamps-eai-addresses-18)
--------------------------------------
Title               : Internationalized Email Addresses in X.509
Certificates
Publication Date    : May 2018
Author(s)           : A. Melnikov, Ed., W. Chuang, Ed.
Category            : PROPOSED STANDARD
Source              : Limited Additional Mechanisms for PKIX and SMIME
Area                : Security
Stream              : IETF
Verifying Party     : IESG

_______________________________________________
Spasm mailing list
Spasm@ietf.org
https://www.ietf.org/mailman/listinfo/spasm