Re: [lamps] I-D Action: draft-ietf-lamps-lightweight-cmp-profile-21.txt

"Brockhaus, Hendrik" <hendrik.brockhaus@siemens.com> Fri, 17 February 2023 14:39 UTC

Return-Path: <hendrik.brockhaus@siemens.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1F43BC14CEFE for <spasm@ietfa.amsl.com>; Fri, 17 Feb 2023 06:39:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=siemens.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id bRquso4tfzqu for <spasm@ietfa.amsl.com>; Fri, 17 Feb 2023 06:39:32 -0800 (PST)
Received: from EUR04-DB3-obe.outbound.protection.outlook.com (mail-db3eur04on2049.outbound.protection.outlook.com [40.107.6.49]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 46F03C14F6EC for <spasm@ietf.org>; Fri, 17 Feb 2023 06:39:29 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=cwIRMZGjaeujP01Qof2u7KZ0LZgmCRiWpCLK0BP0u8RGLV7JIDApbVxztMi+1+SM57oSfYDrEPcAuneeuyXQZa8SZB+EWAsIpzhw1hlka/MwcUfGY5MyUn+dR7rDOsh9WaiacqSfoD7gy8uZiNPXPJHy5SdFR9ojSoNt20b96+ZznyA2G0G/+NRtyScQEXh51gDNUer0rJqUR0mxlM/hk7VW02kkw4tAn3EUmbFGFxETfqjq1dvj6JuUwrOq7ZIzA/lOZmH1tIAYZVXuqObq+dQxa7yxJmrLakxHMVgUKLj82/FRx5Ics2OFdrQXh8uZ8W9oRaYaF7ZvRS0V5sJaTg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=qyj6lqSkZlJmb9DTKmIXxfd09dgC/B740z3r663ektA=; b=I4rktd9M8QVhpZWEb/bm55qfj3fKG9DA36+bk5h70VMRDHApe0DD5+Hk5Ai7cpXaFcIogpFVTIgUKM76p+d1+tBr1UIRSV1dUkKaOi2Fnm3TJsxRwWOfNvoCqMQGzmYvsvcrN0F4lEFDRV6qHU6rSxnX/p877GyMK+3z9epjFAIqWeVcJSDCo+SSDNeWJvJdIr2SSC5LTDi5u469NVgYZzueSZN96KQFbDug1Kk+kLsR3OKU4nkREqoTDclG70R0kU1kT3e9Ap0L6SfQHLEVgHFf9gLemZHak5r5NRW/ruapjJE7ofnsUS9WIGd2LxjEAan8Do2BMEPg2/NyRDC2pQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=siemens.com; dmarc=pass action=none header.from=siemens.com; dkim=pass header.d=siemens.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=siemens.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=qyj6lqSkZlJmb9DTKmIXxfd09dgC/B740z3r663ektA=; b=t5KI0fgy11X58v+BK+8QsIvnK0jbrQHwkdjd3BVZdRWgX0p/EQtnLXTf7JNm2RvKhaoGwJT8p7CenGH2q78VFAQh0VK+nFlf9eYBbZGzkoIaLZTjcUnl1gnOwB8nfpLuFB2ci6mR+FGBjdGkBh4HU18YLplKyhLz1e6CjU8mhk99nxyXCNteqoJP6DeLiMpl9Vnb4OTon06jDbLFrH3kF0EQro4VygMLrzeeDgCQbqcE4zf+IO3HUUEgNjt1vXifnOO4cfEoToCEVUy8C9Dsf6t05BOAVgAsODa0l0u0CKgdgJpwaq8MDE7UgSUh0yPNQuBOC6gGULtAuYPVrK6QDg==
Received: from GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:150:7d::8) by GV2PR10MB7605.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:150:bd::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6111.13; Fri, 17 Feb 2023 14:39:26 +0000
Received: from GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM ([fe80::5f5c:cc72:2750:c5cd]) by GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM ([fe80::5f5c:cc72:2750:c5cd%8]) with mapi id 15.20.6086.026; Fri, 17 Feb 2023 14:39:26 +0000
From: "Brockhaus, Hendrik" <hendrik.brockhaus@siemens.com>
To: "spasm@ietf.org" <spasm@ietf.org>, Murray Kucherawy <superuser@gmail.com>, "John.Gray@entrust.com" <John.Gray@entrust.com>, Roman Danyliw <rdd@cert.org>
CC: "von Oheimb, David" <david.von.oheimb@siemens.com>, "Fries, Steffen" <steffen.fries@siemens.com>
Thread-Topic: [lamps] I-D Action: draft-ietf-lamps-lightweight-cmp-profile-21.txt
Thread-Index: AQHZQty0WA+6Fi49GEu++0kEvS2Ki67TM+Xg
Date: Fri, 17 Feb 2023 14:39:26 +0000
Message-ID: <GV2PR10MB62100EAD932D095D0CDFF9E1FEA19@GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM>
References: <167664431893.20324.17569587239798964142@ietfa.amsl.com>
In-Reply-To: <167664431893.20324.17569587239798964142@ietfa.amsl.com>
Accept-Language: de-DE, en-US
Content-Language: de-DE
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_Enabled=true; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_SetDate=2023-02-17T14:39:25Z; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_Method=Standard; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_Name=restricted; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_SiteId=38ae3bcd-9579-4fd4-adda-b42e1495d55a; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_ActionId=170e0c23-4809-47e3-b663-4635afbed6ff; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_ContentBits=0
document_confidentiality: Restricted
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=siemens.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: GV2PR10MB6210:EE_|GV2PR10MB7605:EE_
x-ms-office365-filtering-correlation-id: 1b2b487d-844f-4a6a-52ff-08db10f4c4de
x-ld-processed: 38ae3bcd-9579-4fd4-adda-b42e1495d55a,ExtAddr
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230025)(4636009)(366004)(136003)(346002)(39860400002)(376002)(396003)(451199018)(66899018)(83380400001)(55016003)(2906002)(966005)(33656002)(7696005)(45080400002)(478600001)(71200400001)(6506007)(186003)(26005)(9686003)(86362001)(107886003)(38100700002)(38070700005)(66574015)(122000001)(82960400001)(52536014)(41300700001)(4326008)(8936002)(5660300002)(8676002)(66476007)(66946007)(76116006)(66446008)(66556008)(64756008)(316002)(110136005)(54906003); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: t5j7+FuEt+lvpml+Ry+JQt8JDD3mSoI73HOXmet2jmV/WLlei3V3o5Ry7/PkMahoZ8jvqpjPGr6Pp2fx+uw6GgUebV3blgfvfGx0Dpx/mHe/YeXN8GqByumTpHiX+pNbOsQWYc8HZJY4Tsbu8EANA7uiu3zXrsAmzfxKazouSnr5/exFRha2e68Bm6HjY1JgOG9K+RG0rSHHpbjBSyA+ZfCDIDufPJ1qnhKvMu/rwcVbbmJvCAowm4BwDGoVHByCjjMvkKvKhS1GPybZTP/ezn88r8UUoQpSagYj2ZCpW7kkpmYN8OxgOyxMIuKLngQMXgBbjqzdMUpqnlfE7sLKAgou+Ax1JBojbugkDWpga43Woz8FAWXsIs5fMBEVbY3W0JKidVulivsPAvPQMrGZ07CvueRO0l/swLacx1tE73ihvqLqZWp2L3VidUatt6IkTY93aOimfeMIsGLJk92mQPlD93mVHwq91TzyANnwav7vzhnbAyYfeFdqWjxTP2gl0S5X2f2wuhYO8JVUqp07rdh6rulGY0Yc7BCH4sGAyuIvsz1NFfVHah1iCzS9l0NGTAkiOceteIBnTmKa9n8OHqr7AYwYl+PVVE0R0iXd1aITA7Z7a6lym8UxCEz9lw/GoEgUBQzJXHmWiM+hAUJ5JOzjUC17bKsFGWMscc2XHDhEpl+YtbjECXjzl9iASj9o/wIkjUAruFql9BU9s1rh94uhsV3YR73Tfk2ORaptOMrE3bgNYUMbBtPGVv49qL1D9XsvRMp2zeGT45ibtb6dgvjWxgUe4PAhxUdYeWqB8S3y1xld84afKA9JMxvtACqcojiZyCimR+v5LKa/uamJC0UmMGMYQtHFZa+FiWUJBxzKLlkgPtdiw9Vmk/cVOb9eNvSGRGpPGgC0H6F3/AVrIZawHTYGlzTuTwW6dpWyktBPr66AMnFamXJSOPaj/IO1WpivsQUhkQVqskrSWBYm3gHDZeYyHgOW030KUnwH5m8HSs4Xgx3WxRfqbK3S3Yrl308tUDv8NVlltNL704b0RzN88TSve4wNDRzxaJp1vYlJN2NZvKlbACLhMtinReWlFhzwBcD8mbi1FW1nFSy8mHG45HqUgN6LT7axXGroB1DjIVrO2SLiw/Cc5epa7XuSiQ4eZEVh9yUj6kVMplspC6iDyTmQGrCGOo73oxBhGthWcpXis4RfFt9k5bx4fZhVvOyV/2YvzvN2jzx0RlM8AZSL9NpRs/lledHFRX7XlgMf94Noj7NcuC7QC9Wl3jMoWGVZWqKR84nsLWdA7Drbhh3UJkByCYSPMzYpI66kuTKjkdLRSwcdtISyHNabHfVZ/qzRYuKDjp+VeymJKSMnbozCrlKDzAgjyZlaDT6pz2JTSdjbEztAXp6WBRUWpa0Whw7fWly8oU+xcY8UT0B7thXH5/P1K54RQLBh7eQrvj/LOt67sw2YoOf/N3tU8HY3o1bvwz5hK5PI0VcIPwm1oy67KGLJkEluacEGEl8cWrSjoLLVTukSuMYvnh2EJ1cPES42aeqve6dKqNA6gRQYB3YuUbZkd1Xu2T2PUxKZt7h/oRETSOoW04Kol9poLSb/aK1TJcjC9uG9P0V2SNLVEQ==
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: siemens.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: GV2PR10MB6210.EURPRD10.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 1b2b487d-844f-4a6a-52ff-08db10f4c4de
X-MS-Exchange-CrossTenant-originalarrivaltime: 17 Feb 2023 14:39:26.3870 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 38ae3bcd-9579-4fd4-adda-b42e1495d55a
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 1RWnblcl4yVWTo10F7rqvsTu6i8voR3KEdnvKEaMQPom87LGYg9SGnujO+TJNWk3TjwDYPdvB2fjZiKWYlqRCmd7Q4MMTjRglwhivewqnrA=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: GV2PR10MB7605
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/x9cJTL1H3iSbPFaJQyG_I9_kguc>
Subject: Re: [lamps] I-D Action: draft-ietf-lamps-lightweight-cmp-profile-21.txt
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 17 Feb 2023 14:39:37 -0000

David, Steffen, and I reviewed the usage of normative language in the whole
Document and performed several changes following Murray's valuable guidance.
The previous update also addressed John's IANA expert review.

>From version 20 -> 21:
   *  Addressed comment from Murray checking each usage of key word
      "SHOULD" and changing it to "MUST", "MAY", or "should" where
      needed or adding an explanation how interoperability may be
      affected (see thread "Murray Kucherawy's No Objection on draft-
      ietf-lamps-lightweight-cmp-profile-18: (with COMMENT)")
   *  Some minor editorial changes

>From version 19 -> 20:
   *  Addressed comment from John (see thread "[IANA #1261900] expert
      review for draft-ietf-lamps-lightweight-cmp-profile (cmp)")

Any feedback is welcome.

Hendrik

> -----Ursprüngliche Nachricht-----
> Von: Spasm <spasm-bounces@ietf.org> Im Auftrag von internet-drafts@ietf.org
> Gesendet: Freitag, 17. Februar 2023 15:32
> An: i-d-announce@ietf.org
> Cc: spasm@ietf.org
> Betreff: [lamps] I-D Action: draft-ietf-lamps-lightweight-cmp-profile-21.txt
> 
> 
> A New Internet-Draft is available from the on-line Internet-Drafts directories.
> This Internet-Draft is a work item of the Limited Additional Mechanisms for PKIX
> and SMIME WG of the IETF.
> 
>         Title           : Lightweight Certificate Management Protocol (CMP) Profile
>         Authors         : Hendrik Brockhaus
>                           David von Oheimb
>                           Steffen Fries
>   Filename        : draft-ietf-lamps-lightweight-cmp-profile-21.txt
>   Pages           : 107
>   Date            : 2023-02-17
> 
> Abstract:
>    This document aims at simple, interoperable, and automated PKI
>    management operations covering typical use cases of industrial and
>    IoT scenarios.  This is achieved by profiling the Certificate
>    Management Protocol (CMP), the related Certificate Request Message
>    Format (CRMF), and HTTP-based or CoAP-based transfer in a succinct
>    but sufficiently detailed and self-contained way.  To make secure
>    certificate management for simple scenarios and constrained devices
>    as lightweight as possible, only the most crucial types of operations
>    and options are specified as mandatory.  More specialized or complex
>    use cases are supported with optional features.
> 
> 
> The IETF datatracker status page for this Internet-Draft is:
> https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatrac
> ker.ietf.org%2Fdoc%2Fdraft-ietf-lamps-lightweight-cmp-
> profile%2F&data=05%7C01%7Chendrik.brockhaus%40siemens.com%7C69913d9
> 1528d4129e5e408db10f3d57f%7C38ae3bcd95794fd4addab42e1495d55a%7C1
> %7C0%7C638122411680989497%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4
> wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C
> %7C%7C&sdata=MrslwnopgiJ1XWeGDb8d4QGYDTwGbhDs7lx0q7pLtLo%3D&res
> erved=0
> 
> There is also an HTML version available at:
> https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf
> .org%2Farchive%2Fid%2Fdraft-ietf-lamps-lightweight-cmp-profile-
> 21.html&data=05%7C01%7Chendrik.brockhaus%40siemens.com%7C69913d915
> 28d4129e5e408db10f3d57f%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7
> C0%7C638122411680989497%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLj
> AwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C
> %7C&sdata=j%2BPQAaq7IDvuIAwjH7o02mmQoaKN%2BLBrEufykGWLhTk%3D&r
> eserved=0
> 
> A diff from the previous version is available at:
> https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fauthor-
> tools.ietf.org%2Fiddiff%3Furl2%3Ddraft-ietf-lamps-lightweight-cmp-profile-
> 21&data=05%7C01%7Chendrik.brockhaus%40siemens.com%7C69913d91528d4
> 129e5e408db10f3d57f%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7
> C638122411680989497%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwM
> DAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C
> &sdata=yIMuM%2BT7Y1F5ElLEylLSBn5jURNmcC9KQ6mVHoAqjKw%3D&reserve
> d=0
> 
> 
> Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts
> 
> 
> _______________________________________________
> Spasm mailing list
> Spasm@ietf.org
> https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf
> .org%2Fmailman%2Flistinfo%2Fspasm&data=05%7C01%7Chendrik.brockhaus%
> 40siemens.com%7C69913d91528d4129e5e408db10f3d57f%7C38ae3bcd95794f
> d4addab42e1495d55a%7C1%7C0%7C638122411680989497%7CUnknown%7CT
> WFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXV
> CI6Mn0%3D%7C3000%7C%7C%7C&sdata=VQBSAu3jdNQSjIVimQDWBHGjKSq8Y
> x5RzUF5mviEav8%3D&reserved=0