Re: [lamps] I-D Action: draft-ietf-lamps-ocsp-nonce-05.txt

Roman Danyliw <rdd@cert.org> Fri, 02 October 2020 17:57 UTC

Return-Path: <rdd@cert.org>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 364353A1194 for <spasm@ietfa.amsl.com>; Fri, 2 Oct 2020 10:57:17 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cert.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id SaEUXzZUInA4 for <spasm@ietfa.amsl.com>; Fri, 2 Oct 2020 10:57:15 -0700 (PDT)
Received: from veto.sei.cmu.edu (veto.sei.cmu.edu [147.72.252.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 52CE63A1173 for <spasm@ietf.org>; Fri, 2 Oct 2020 10:57:15 -0700 (PDT)
Received: from korb.sei.cmu.edu (korb.sei.cmu.edu [10.64.21.30]) by veto.sei.cmu.edu (8.14.7/8.14.7) with ESMTP id 092HvDbg033513; Fri, 2 Oct 2020 13:57:13 -0400
DKIM-Filter: OpenDKIM Filter v2.11.0 veto.sei.cmu.edu 092HvDbg033513
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cert.org; s=yc2bmwvrj62m; t=1601661433; bh=FotmADZ8XpBirXI6izAJYNbJcd5PtWY/Ul9+jsvLPYE=; h=From:To:Subject:Date:References:In-Reply-To:From; b=ItFz1QvMb3cwcDyBIdSOtuEFhhgpBViAGcBx9LTjx92lIZNBZXU1Q3OqmhuT2/y4W He/Z43YHwtIeslmwXfwyg5AL5127u0JpnYIooEW2xMquWUoHAcdDR4cmMwzK8dnwoA jIO2IsdE5w1VPIMQwMimMcsXtyM6KeUmNy1lQON0=
Received: from MURIEL.ad.sei.cmu.edu (muriel.ad.sei.cmu.edu [147.72.252.47]) by korb.sei.cmu.edu (8.14.7/8.14.7) with ESMTP id 092Hv9AO029348; Fri, 2 Oct 2020 13:57:09 -0400
Received: from MORRIS.ad.sei.cmu.edu (147.72.252.46) by MURIEL.ad.sei.cmu.edu (147.72.252.47) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.1979.3; Fri, 2 Oct 2020 13:57:08 -0400
Received: from MORRIS.ad.sei.cmu.edu ([fe80::555b:9498:552e:d1bb]) by MORRIS.ad.sei.cmu.edu ([fe80::555b:9498:552e:d1bb%13]) with mapi id 15.01.1979.003; Fri, 2 Oct 2020 13:57:08 -0400
From: Roman Danyliw <rdd@cert.org>
To: Mohit Sahni <mohit06jan@gmail.com>, LAMPS WG <spasm@ietf.org>
Thread-Topic: [lamps] I-D Action: draft-ietf-lamps-ocsp-nonce-05.txt
Thread-Index: AQHWh52VSMBbnKv0Z0el19UMLhS8B6l3EOAAgA2pIDA=
Date: Fri, 02 Oct 2020 17:57:07 +0000
Message-ID: <d961c7b95c404f3e93513981ab6a56a4@cert.org>
References: <159976138559.5681.14788420431984800275@ietfa.amsl.com> <CAEpwuw0iX4+=jff9MF9HT+NJFqFDZcB_HQ4=-N_jSJVKqCwVuA@mail.gmail.com>
In-Reply-To: <CAEpwuw0iX4+=jff9MF9HT+NJFqFDZcB_HQ4=-N_jSJVKqCwVuA@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.64.202.177]
Content-Type: multipart/alternative; boundary="_000_d961c7b95c404f3e93513981ab6a56a4certorg_"
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/qcntbiljdRUiv1IeZ0ruCzvDvOM>
Subject: Re: [lamps] I-D Action: draft-ietf-lamps-ocsp-nonce-05.txt
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 02 Oct 2020 17:57:17 -0000

Hi Mohit!

Thanks for closing the loop in -05 on almost all of the IESG Comments.  As the remaining item, can you please quickly respond to Rob’s inquiry on the rational behind the nonce size:

https://mailarchive.ietf.org/arch/msg/spasm/2Th0eZ57vhIVO4NQ1ruKCxpRXUQ/

Regards,
Roman



From: Mohit Sahni <mohit06jan@gmail.com>
Sent: Wednesday, September 23, 2020 5:15 PM
To: LAMPS WG <spasm@ietf.org>; Roman Danyliw <rdd@cert.org>
Subject: Re: [lamps] I-D Action: draft-ietf-lamps-ocsp-nonce-05.txt

Hi Roman,
draft-ietf-lamps-ocsp-nonce now has enough Ballot positions to pass and the latest version (05) takes care of NITS from  SECDIR and GENART. Is there anything else required from my side at this point?

Regards,
Mohit

---------- Forwarded message ---------
From: <internet-drafts@ietf.org<mailto:internet-drafts@ietf.org>>
Date: Thu, Sep 10, 2020 at 11:09 AM
Subject: [lamps] I-D Action: draft-ietf-lamps-ocsp-nonce-05.txt
To: <i-d-announce@ietf.org<mailto:i-d-announce@ietf.org>>
Cc: <spasm@ietf.org<mailto:spasm@ietf.org>>



A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Limited Additional Mechanisms for PKIX and SMIME WG of the IETF.

        Title           : OCSP Nonce Extension
        Author          : Mohit Sahni
        Filename        : draft-ietf-lamps-ocsp-nonce-05.txt
        Pages           : 6
        Date            : 2020-09-10

Abstract:
   This document specifies the updated format of the Nonce extension in
   the Online Certificate Status Protocol (OCSP) request and response
   messages.  OCSP is used to check the status of a certificate and the
   Nonce extension is used to cryptographically bind an OCSP response
   message to a particular OCSP request message.  This document updates
   RFC 6960.


The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-lamps-ocsp-nonce/

There are also htmlized versions available at:
https://tools.ietf.org/html/draft-ietf-lamps-ocsp-nonce-05
https://datatracker.ietf.org/doc/html/draft-ietf-lamps-ocsp-nonce-05

A diff from the previous version is available at:
https://www.ietf.org/rfcdiff?url2=draft-ietf-lamps-ocsp-nonce-05


Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org<http://tools.ietf.org>.

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/


_______________________________________________
Spasm mailing list
Spasm@ietf.org<mailto:Spasm@ietf.org>
https://www.ietf.org/mailman/listinfo/spasm