Re: [lamps] Draft LAMPS Recharter

Tim Hollebeek <tim.hollebeek@digicert.com> Thu, 03 May 2018 22:01 UTC

Return-Path: <tim.hollebeek@digicert.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 53FC112DA27 for <spasm@ietfa.amsl.com>; Thu, 3 May 2018 15:01:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=digicert.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id D_sx2nJLF6dH for <spasm@ietfa.amsl.com>; Thu, 3 May 2018 15:01:07 -0700 (PDT)
Received: from mail1.bemta8.messagelabs.com (mail1.bemta8.messagelabs.com [216.82.243.201]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D02A91267BB for <spasm@ietf.org>; Thu, 3 May 2018 15:01:06 -0700 (PDT)
Received: from [216.82.241.100] (using TLSv1.2 with cipher DHE-RSA-AES256-GCM-SHA384 (256 bits)) by server-9.bemta-8.messagelabs.com id 43/15-15733-1A68BEA5; Thu, 03 May 2018 22:01:05 +0000
X-Brightmail-Tracker: H4sIAAAAAAAAA1WTe0xTVxzHe+69vffqqDmUKr/VV1bnYzVFNNl opsYXf9QMjVmyORmJ3sq1vdgW7K2K0QW10SiY4IMGKZYSxT0QzSQsPhAz0WKKMaBR0FlCGEQG hdjZEXAYtt7e+vrvc87nm/P93ZNzWVI9RmtZvtDFOx2cTUdPptrSzqkN1YfD2en3K5YZB/96y hhPRCqR8WS3DxmrOrYay5s6GOP5lgixkjZdLHlMm655uxhT+4URwlRT84owuRsbKVNt6B/lBj pbKTjM+YVblNZudx8quJBZeOqncWI/OrCqGE1mKfyCAF/4GSMt1PgUAUdOPCfkRReC602VZDG axNI4HTqa7saFBh9E4HVHGEmQeAuMRq8pJU7BevjTc4eWWIMXwunjEwnOg189VYTEFP4U2n6+ GT9UhXMgGugl5bbXFLRXuJEkJuHl0NnyIl6A8DQYba0j5LJU+KPPH2fAGuh5cI+WeSoM9E4o5 XwO+KLNiX0dXBoKJfIz4aG/BEllgBsIOD9SopSFASIeDymL3xEM9f+XEHpoKG+NMRvj7VA6+o 28/SXU3B5n5PxvJBx7foaRxQzwTfySaCiloW60npKEGudCWa00kiR6ERRX1jHyhWmh69FRdBz pve99njeWI7EfQWDgMOmNX1QyBCv6KDmkB8/FwQTPhivDZ0iZl8Lpf2/RMn8CZSU9jMyfQzjw N6pGbC1aIPLOXbzTsOSLNLNTsFhddk6wGRanG9PsvChyFt7GmcW0rfn2ehR7hUUKBbqKXvata 0Yfs4Ruqmr+xnC2eoo5P3ePlROtm507bbzYjGawrA5UmYdiLtnJW/jCbYIt9pTfaGCTdBqVVt IqsYCzi4JFVq3IwIYaTh4j1ZQj38FrU1VZUghLIetOx9sj3vwQD9FMbYoKKRQKdVIB77QLrg/ 9IEplkS5FtUk6JUlwuN42DcaGIGJDREf6pSFc3Dul3Y+W+Y8s7yZw5rZns23frlwdXrF+DufP utxZf/nrvLG1SwydPy543T7Wdttn5u7uyNswp7qof025Zp84j1HuiUw5a90VFa5+NRx8GfTPn R4YCA0tasmsuHErK/Rd9Q5bsFT4rNFVhDMu7f4hY8Sd0xH+aO+sXEuPIVj1JPDqe/347rIMHS VaucV60ily/wMcm1QTCwQAAA==
X-Env-Sender: tim.hollebeek@digicert.com
X-Msg-Ref: server-2.tower-220.messagelabs.com!1525384864!179058683!1
X-Originating-IP: [207.46.163.18]
X-SYMC-ESS-Client-Auth: mailfrom-relay-check=pass
X-StarScan-Received:
X-StarScan-Version: 9.9.15; banners=-,-,-
X-VirusChecked: Checked
Received: (qmail 22546 invoked from network); 3 May 2018 22:01:04 -0000
Received: from mail-dm3nam03lp0018.outbound.protection.outlook.com (HELO NAM03-DM3-obe.outbound.protection.outlook.com) (207.46.163.18) by server-2.tower-220.messagelabs.com with AES256-GCM-SHA384 encrypted SMTP; 3 May 2018 22:01:04 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=digicert.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=nLyv3upGDxxcTQ4BFqxRVDUydTgYzbtKzirnlNZfq8Y=; b=OKu9uGz0AJjFzz/hN0jmtrR2Ed4cxX9I+nOlA79ryPyNGxwyGRsAqIb304r2Uay7+sNS0txSHQ3FbDV7zK/blxB/ydCzU89r9iFbL+WXpmkbOFXHBW59ipYZZuHI/enidCMyQFUaGmF7dswXRUzn+B7XEKJNCrp7d5y3v8VrM+w=
Received: from DM5PR14MB1116.namprd14.prod.outlook.com (10.173.131.10) by DM5PR14MB1500.namprd14.prod.outlook.com (10.173.224.12) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.715.18; Thu, 3 May 2018 22:01:03 +0000
Received: from DM5PR14MB1116.namprd14.prod.outlook.com ([fe80::1907:795:e104:1cf1]) by DM5PR14MB1116.namprd14.prod.outlook.com ([fe80::1907:795:e104:1cf1%17]) with mapi id 15.20.0715.024; Thu, 3 May 2018 22:01:03 +0000
From: Tim Hollebeek <tim.hollebeek@digicert.com>
To: Stephen Farrell <stephen.farrell@cs.tcd.ie>, Ryan Sleevi <ryan-ietf@sleevi.com>, Phillip Hallam-Baker <phill@hallambaker.com>
CC: LAMPS <spasm@ietf.org>, Russ Housley <housley@vigilsec.com>, Yoav Nir <ynir.ietf@gmail.com>
Thread-Topic: [lamps] Draft LAMPS Recharter
Thread-Index: AQHT4iO4XCAxwA/3hUqSDHZXOfUBwaQc7owAgAAEBgCAAFOQgIAAnn6AgAAbiwCAAAnWAIAAC1SAgAABfwCAAHbucA==
Date: Thu, 03 May 2018 22:01:03 +0000
Message-ID: <DM5PR14MB1116B81FEEBF66FDD403292983870@DM5PR14MB1116.namprd14.prod.outlook.com>
References: <1D329233-AFCE-421B-81FE-EDDC30386260@vigilsec.com> <94C70910-6BA3-4364-BE43-3316AE1E51C6@vigilsec.com> <CAErg=HF40T1CLuu=5GebtsvFMphtSRyK+O5TpTn0pTz1v9jMgQ@mail.gmail.com> <64CD1067-8639-4C2C-A8EC-ED5FBC14F633@gmail.com> <CAErg=HHXj4tVoQ06Z_ZNJKnCF9efd64DOx5Hf_sLaqATX6+OWQ@mail.gmail.com> <CAMm+LwhkugUvtd_rmbXYDXCzBhKD=fc7gbxpWeSzzasmGFDFZw@mail.gmail.com> <CAErg=HF89sRyUrYcqcG=_onnW_NnsyNN2CKWQ8ty=Xb_v8nOkw@mail.gmail.com> <CAMm+LwjSTBfV32NT66_vA=EX4OPnx5qxYjbHG92NVzJpCwq8nw@mail.gmail.com> <CAErg=HFaS1g-S2zu04sCXZ_58OUPJ26Tg0RzS1V4UkTWejfO9Q@mail.gmail.com> <2696d841-c5bf-d0b4-5ef1-c4a0839bba94@cs.tcd.ie>
In-Reply-To: <2696d841-c5bf-d0b4-5ef1-c4a0839bba94@cs.tcd.ie>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
x-originating-ip: [98.111.253.132]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; DM5PR14MB1500; 7:hWx7GrDH5+n/Htxj8eKxc0KF27y/qlVmFeNjVQ1depQwT6Ki4nj4h1SwIuLknyvSEjLCzBnXEldp/89P281IkRjuLf1KWahAvyraN7J0RfixaGJNLXcqCCmbK/x3yS01nAjkZIV6wuXJKSxabrez6kM9IzOriTvhrUXElSRFqS8VOWrVDJdAFi8ppXzGgdbmMRXtcxobAvu0JKBHJ7HuF2RupFtsEa24eUH518iBqwWohQBlCoiD8RkRIqFBO19t
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(5600026)(4534165)(4627221)(201703031133081)(201702281549075)(2017052603328)(7153060)(49563074)(7193020); SRVR:DM5PR14MB1500;
x-ms-traffictypediagnostic: DM5PR14MB1500:
x-microsoft-antispam-prvs: <DM5PR14MB150019B64DFA19BBFB1A252483870@DM5PR14MB1500.namprd14.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(85827821059158);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(102415395)(6040522)(2401047)(8121501046)(5005006)(93006095)(93001095)(3231254)(944501410)(52105095)(10201501046)(3002001)(6041310)(20161123560045)(20161123564045)(201703131423095)(201703031522075)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123562045)(20161123558120)(6072148)(201708071742011); SRVR:DM5PR14MB1500; BCL:0; PCL:0; RULEID:; SRVR:DM5PR14MB1500;
x-forefront-prvs: 066153096A
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(39380400002)(39860400002)(366004)(376002)(346002)(396003)(199004)(189003)(13464003)(86362001)(6506007)(66066001)(99286004)(446003)(53546011)(5250100002)(106356001)(316002)(99936001)(44832011)(25786009)(7696005)(105586002)(11346002)(76176011)(486006)(296002)(476003)(229853002)(97736004)(39060400002)(4326008)(55016002)(6436002)(9686003)(53936002)(68736007)(6246003)(3846002)(93886005)(33656002)(110136005)(478600001)(8936002)(81166006)(102836004)(2906002)(186003)(2900100001)(54906003)(7736002)(26005)(8676002)(3280700002)(305945005)(3660700001)(74316002)(5660300001)(14454004)(6116002)(81156014); DIR:OUT; SFP:1102; SCL:1; SRVR:DM5PR14MB1500; H:DM5PR14MB1116.namprd14.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: digicert.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: buP6o0BtiDPc6E/Jy+KGQD2S7Ymv0wtB9qPtLRN5gO5r+F3pr1tnFKNsLjx+bJkED3i/TPLY6qMnxAG+ntBhrHF1tAORO2bgIj3vFkrFIa1KOfOxkyxUYgr8Re74Xiis97wsxoA5120d+ATJNxubEzgMUB9cC4YuKeX/1hXcO5Acc6Kkbujmj0y7rVbR19Y/
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/signed; protocol="application/x-pkcs7-signature"; micalg="2.16.840.1.101.3.4.2.1"; boundary="----=_NextPart_000_0144_01D3E308.B28F0FC0"
MIME-Version: 1.0
X-MS-Office365-Filtering-Correlation-Id: 301377ec-461d-490c-868a-08d5b1415d24
X-OriginatorOrg: digicert.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 301377ec-461d-490c-868a-08d5b1415d24
X-MS-Exchange-CrossTenant-originalarrivaltime: 03 May 2018 22:01:03.5677 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: cf813fa1-bde5-4e75-9479-f6aaa8b1f284
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM5PR14MB1500
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/s5VLRAhPQ6WO_tmDIm78eJ79E9c>
Subject: Re: [lamps] Draft LAMPS Recharter
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 03 May 2018 22:01:13 -0000

(chair hat off)

I was at SECDISPATCH in London.  I'm in favor of short-lived certificates in 
general, but as I stated in London, I have many serious problems with this 
draft, which include the problems Ryan mentioned, and many more.  It's going 
to need a lot of work before we can consider adopting it.

That said, it's a draft, and it was pretty clear that SECDISPATCH wanted LAMPS 
to re-charter and consider it.  And I actually agree with that.  I think the 
issues with the draft that people have raised deserve discussion, and I hope 
Yoav understands that these serious concerns will need to be addressed before 
the document can be adopted.

But I support changing the LAMPS charter so that LAMPS can discuss the draft.

-Tim

> -----Original Message-----
> From: Spasm [mailto:spasm-bounces@ietf.org] On Behalf Of Stephen Farrell
> Sent: Thursday, May 3, 2018 10:47 AM
> To: Ryan Sleevi <ryan-ietf@sleevi.com>; Phillip Hallam-Baker
> <phill@hallambaker.com>
> Cc: LAMPS <spasm@ietf.org>; Russ Housley <housley@vigilsec.com>; Yoav Nir
> <ynir.ietf@gmail.com>
> Subject: Re: [lamps] Draft LAMPS Recharter
>
>
> I don't have a position on the draft in question but...
>
> On 03/05/18 15:41, Ryan Sleevi wrote:
> > The nature of this question is what plagued PKIX, and if we're trying
> > to ensure that LAMPS does not succumb to the overbroad, unadopted,
> > zombie effort that WGs can succumb to, then my $.02 we should make
> > sure that the goal and uses are as crisp as possible before adopting that 
> > work
> as a WG.
>
> ... that certainly resonates with me;-)
>
> I hope lamps does stick with the "only adopt if we think it's really quite 
> likely to
> be used" aspect of the charter.
>
> S.