Re: [Spasm] Fwd: New Version Notification for draft-ietf-lamps-eai-addresses-09.txt

Viktor Dukhovni <ietf-dane@dukhovni.org> Sun, 16 April 2017 19:13 UTC

Return-Path: <ietf-dane@dukhovni.org>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5336212422F for <spasm@ietfa.amsl.com>; Sun, 16 Apr 2017 12:13:35 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CUGuqCPPUM1a for <spasm@ietfa.amsl.com>; Sun, 16 Apr 2017 12:13:34 -0700 (PDT)
Received: from mournblade.imrryr.org (mournblade.imrryr.org [108.5.242.66]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3DAF21200FC for <spasm@ietf.org>; Sun, 16 Apr 2017 12:13:34 -0700 (PDT)
Received: by mournblade.imrryr.org (Postfix, from userid 1034) id F1F2B7A3309; Sun, 16 Apr 2017 19:13:32 +0000 (UTC)
Date: Sun, 16 Apr 2017 19:13:32 +0000
From: Viktor Dukhovni <ietf-dane@dukhovni.org>
To: SPASM <spasm@ietf.org>
Message-ID: <20170416191332.GC25754@mournblade.imrryr.org>
Reply-To: spasm@ietf.org
References: <149229472895.17667.5213935202883938437.idtracker@ietfa.amsl.com> <CAAFsWK3qNJ4K4e7cVm1cyhyySUCxjMJdoDpfLDnRH+UrvZOPjw@mail.gmail.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <CAAFsWK3qNJ4K4e7cVm1cyhyySUCxjMJdoDpfLDnRH+UrvZOPjw@mail.gmail.com>
User-Agent: Mutt/1.7.2 (2016-11-26)
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/ptKHNlcKTXqIRLQ3AUAim1_YNCo>
Subject: Re: [Spasm] Fwd: New Version Notification for draft-ietf-lamps-eai-addresses-09.txt
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 16 Apr 2017 19:13:35 -0000

On Sat, Apr 15, 2017 at 03:20:23PM -0700, Wei Chuang wrote:
> Hi all,
> 
> An updated draft of "Internationalized Email Addresses in X.509
> certificates" with the latest comments is now posted.  Comments welcome.

This version is I think flawed.

    * It fails to describe how rfc822Name name constraints are to
      be used to restrict SMTPUtf8Name altnames.  (By decoding any
      U-labels in the rfc822Name constraint and then applying to
      the SMTPUtf8Name with byte-for-byte comparison whole domain
      or ancestor domain as appropriate).

    * It incorrectly asserts that SMTPUtf8Name is only for addresses
      with a non-ASCII localpart, while in fact even ASCII localparts
      at UTF-8 domains can be used with SMTPUtf8Name, whenever the
      relevant email address employs a UTF-8 domain name.

    * The new text of section 6 is confusing.  There seems to be
      a misunderstanding here, that may account for both the
      technical errors and the confusing explanatory text.

-- 
	Viktor.