[stir] Re: Call for adoption: draft-barnes-stir-8588bis-01 (Ends 2025-11-26)

Pierce Gorman <Pierce.Gorman@numeracle.com> Thu, 06 November 2025 18:02 UTC

Return-Path: <Pierce.Gorman@numeracle.com>
X-Original-To: stir@mail2.ietf.org
Delivered-To: stir@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id EA62084958E9; Thu, 6 Nov 2025 10:02:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_VALIDITY_SAFE_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=numeracle.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4wSScw2qNtTW; Thu, 6 Nov 2025 10:02:27 -0800 (PST)
Received: from PH0PR06CU001.outbound.protection.outlook.com (mail-westus3azon11021083.outbound.protection.outlook.com [40.107.208.83]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-384) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 31FD484958E3; Thu, 6 Nov 2025 10:02:27 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=BLVMPtJgILEQGjNSPJifUkGTc0bSoHnhWItG2uN4M/TR76x4FOj1obZfq/pRjDp2peFFBpcNDFKseWpLDhebj60bjb2MR2O8JCzfFnBCs/IUc9WpancjVPf4r0/II2967NqcnzjNPJjW/y9wtME7LcCEut671vm27wza+AlzCLfVl2oXOYv9/f3G41vigACo+E/3vrcmvIqKd7FSFo8y0VudzlHZXKHdjN589TNU18cH+uiyNfV3jvnio7prC7HFGKo3niHxUf7M9rhGuFTXDeQFEp3oT9gaDNblStbvgNHybFGGadVzeefVBng9qIdq5oVxP1uMSRkp2oRQa1QmBg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=atGYLsKuOnHik0GU3ECQjHlPnrr5sPyQRiNlLipoJTg=; b=Xclt9RNCghLtP2HK12fDO+Mgv/9Epwlj6UX3hUY00W3WwaBWzn7jO/x0uqVtjQ7me2HlnMhBMTmvKhlNysy/+9pTXUXG4f6BRAmtXi1EbXyY5u49/ros7zb1yYUDSSmKCo8XKQ4EXS0butZO3wGC14MaEQO+iHFnVGe0EsnlNaAr0z11Gp1kdOjfthhyDCZVoAlVhkUU7nof5hsWjGGVtaOvMfeIufvxdsy30MO0JIOeARkYMUEgXQ37R2KvJUEAMTGiLkhtGXDE0gPbANTZJRxyBiLF5/VMH7XBBj73LLzJAgWaxLsU9lmHtnkAc+vV4lTjtUqBepDHhpbHMKZw6g==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=numeracle.com; dmarc=pass action=none header.from=numeracle.com; dkim=pass header.d=numeracle.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=numeracle.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=atGYLsKuOnHik0GU3ECQjHlPnrr5sPyQRiNlLipoJTg=; b=icPv989y5vUyVvfTr+vD0Wte60BKDIFPh/gEO7lp5ZCxKpDSdX5ZJdurRUwzCtztprM288TQmaf0dl/oufk1hS+VRTy6J79aAXxGkrwzFvetnDKD43Ny2TAHMGfXNriiM2AwySAWwW2xxWrx2RXXZjOq6YEAZ9MePCU2mniwDNipX0woISiNAE8byOqpJ3VlXXekeGhwWmis2C4wF5COcqxdlKDOHkbDjLqdob2qTFnyy8ifwPbnDSOh1AwKMnjDwensW6LldN/urqt5CzFuU+zIU92LVf0HvFQN5b9tTUogh6lKBCWc0ZtTRmU4MR0Dw40EuprwB2We8OtDrYsuhg==
Received: from CH3PR13MB6747.namprd13.prod.outlook.com (2603:10b6:610:1e4::5) by SA1PR13MB4941.namprd13.prod.outlook.com (2603:10b6:806:1a9::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9298.12; Thu, 6 Nov 2025 18:02:16 +0000
Received: from CH3PR13MB6747.namprd13.prod.outlook.com ([fe80::2f39:dcae:9ef7:d518]) by CH3PR13MB6747.namprd13.prod.outlook.com ([fe80::2f39:dcae:9ef7:d518%4]) with mapi id 15.20.9298.010; Thu, 6 Nov 2025 18:02:16 +0000
From: Pierce Gorman <Pierce.Gorman@numeracle.com>
To: "housley@vigilsec.com" <housley@vigilsec.com>, "stir@ietf.org" <stir@ietf.org>
Thread-Topic: [stir] Re: Call for adoption: draft-barnes-stir-8588bis-01 (Ends 2025-11-26)
Thread-Index: AQHcTyZgDgTJGMpiLU+h2FfHYAKcd7Tl2Bsg
Date: Thu, 06 Nov 2025 18:02:16 +0000
Message-ID: <CH3PR13MB6747E8AA5A02D71E5369676CE1C2A@CH3PR13MB6747.namprd13.prod.outlook.com>
References: <176238358413.1053311.9790952901545201791@dt-datatracker-5df8666cb-7l4w5> <cd94b0a88236e29573841ba455defb8f@vigilsec.com>
In-Reply-To: <cd94b0a88236e29573841ba455defb8f@vigilsec.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_15e9b572-a956-451d-b5da-feb99663c3d1_Enabled=True;MSIP_Label_15e9b572-a956-451d-b5da-feb99663c3d1_SiteId=b807d15e-47b0-447f-a656-f397dba6285c;MSIP_Label_15e9b572-a956-451d-b5da-feb99663c3d1_SetDate=2025-11-06T16:34:20.0000000Z;MSIP_Label_15e9b572-a956-451d-b5da-feb99663c3d1_Name=Confidential;MSIP_Label_15e9b572-a956-451d-b5da-feb99663c3d1_ContentBits=3;MSIP_Label_15e9b572-a956-451d-b5da-feb99663c3d1_Method=Standard
x-codetwoprocessed: true
x-codetwo-clientsignature-inserted: true
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=numeracle.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CH3PR13MB6747:EE_|SA1PR13MB4941:EE_
x-ms-office365-filtering-correlation-id: 3034c3a7-604f-45e5-9d0f-08de1d5e9ee3
x-ms-exchange-atpmessageproperties: SA
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|376014|10070799003|366016|1800799024|4022899009|38070700021|7053199007;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:CH3PR13MB6747.namprd13.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(376014)(10070799003)(366016)(1800799024)(4022899009)(38070700021)(7053199007);DIR:OUT;SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: oGGu3AT4hfyh3h+HRtPrLx3rOFfpx57TayVgQaLtGls68AhI/+laTV9TAq8ge1otCAqpEYBGZwhma+t4A94bpXHxTOsSBC4s08JOPxsFqBlU6Oq2kDd6xkyiiRyfdIRzDAnLor4gmMYtyfdOfSCHGCoSnW9rU+MXxNknB4LBlT3PK884gaW3AijnJIKiSA4QP8Ca+O0C+juwIS/KWFuLL3nk2kCLTb4CLmuO6pk5d9ZiOxB3DpOBF0dC+EfUnuxlW7VCdh1sU3ByXYOSnUpLcOlW3Pa2QUawF+ekacBqMszAM33T6Pv9/sE4pRclSO146MNyE2I6BHNbvcJN0Dc5axQMHBKrmKB6y6+jSxb2p135VFMASB0F6+AVEgDFiboRLvdLQHRw01UYfY91rJrP83lDeZE5UG0B1zFN2rEzKD/B9TPDyoy4vjWdEUKJCGIztEDsqtxGQzVN+/j+ik2PZIOxXHyA0OpL8hwL6MTc6+r840IVzcMuar3N/tkHIoJ+S1uomDZl4iHKaWRGNxTZNYb3UIh7EGRPN5zyntoCWpgBkJxay4X9GV/x4DiFwClVJMj+ZN595rhm45D2epsFCTkCsjcN4MMHgIzc41uYD0TiCpCPTqSIjDbFXq9vfKFrK+vLWxshaasaXBoUP2Q+/RReOsB6gy0Ny02jX1IgVf7bRJOO7pHRoDsfdsQAKXqF1Q8zsmuxRIgqv7/6M2XMe955/YbE4o9qpJ/RWKPMfbH7wz/9qmbSx9LVOX5G58GiBnewqkoyx0ovsWH9lqhrAuWlTP76zifYlO1owRHc44sC3QHBOoZSeUOdGcN0WvOiQuc/kBXi/4gznH7jZhSYV5IXYpMAiY2/yl1mCL1Yru82vPKODyNoJcI8q/HqMQuIQgvSU/CBqrxQkjsgmJHg1fjYCfMk0QAVRGZyAkDalvvnBazvV6n0KPGvoBxdD980gcNkbKqg3J5NJmU4oebbW5UxMT7eVzYtBOhS0UuYUf7iM0jgGxEWnIr05LWcs7VBPWd5zdfHWVbXLr4ekSGx7QxZYgPouOEmSGN/U1vMyeZGI5ROWdaMVR+NzsbGl5IjQdVdWN+pofB1R8tctqbhvBqqJw+I+sqzvqWQhEEBaPvaOkOcU8tDKZ1byK12HKYHre8pHQNZSFp8PYJjh/dwGqyU9iwkbPxGhUCyLuGiNCBzbaK0AAhHqDs8Ht6SgXB8iroTOo7WKye+HEvNKE1ykC9tu3DglCB5+TSOuhJL4FKU2ScQm9aJAIpPq1r3bw8L3zubDUa72UzOSeITIhDx7p8PxUFs22+3T7AFdt6tBCdFu6oXtYn08+wdjkbZyohAhtIItDhwvRIyX0d+6I4Vk4kXoGnKrvwTfXOpYBR8cgtfmUCYG9rnPOxyz72mN9aGJjYuXxUsR0dAdYqIYJnBK9A+bTX6PKPWhr3h/wG77o3ssPV0/S3/6sS9rdCR+1orZCRbU1UVLb7jGBddOFF07Jw078szIHQFk+xjuncWz7DaNAPqz1UBaymmZuNCLkXKcDfOL9MVQV9lMpHHyQryL92neAwaiIBNGwLvu2hA5x0V4h8t6rjDHaYEEiBGnkYTSqClswFFiEQzVFjhrhosN6AjijPAafVRXOMWHwEB4R7aB2dO8vJeAqsf10ftheHQzq3MMcPPREpCUNsM14itVQ==
Content-Type: text/plain; charset="utf-7"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: numeracle.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CH3PR13MB6747.namprd13.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 3034c3a7-604f-45e5-9d0f-08de1d5e9ee3
X-MS-Exchange-CrossTenant-originalarrivaltime: 06 Nov 2025 18:02:16.2449 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: b807d15e-47b0-447f-a656-f397dba6285c
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: TXJ4j7+EaL7W+csQclhIGBrbV7DH0+E4DIZL0YtXUMrSLyr/KhUjuEbGMW72kb6ZBuvxoPhB6q3iERIRmCSxBCg4fA5OKD6j3USSPYeT2cw=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SA1PR13MB4941
Message-ID-Hash: MVOSH5NDDBVISCOORJLWHON2VTZTTW4I
X-Message-ID-Hash: MVOSH5NDDBVISCOORJLWHON2VTZTTW4I
X-MailFrom: Pierce.Gorman@numeracle.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-stir.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: "draft-barnes-stir-8588bis@ietf.org" <draft-barnes-stir-8588bis@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [stir] Re: Call for adoption: draft-barnes-stir-8588bis-01 (Ends 2025-11-26)
List-Id: Secure Telephone Identity Revisited <stir.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/stir/2NPEdMrbXY4iIMSmy52i9jZu5OI>
List-Archive: <https://mailarchive.ietf.org/arch/browse/stir>
List-Help: <mailto:stir-request@ietf.org?subject=help>
List-Owner: <mailto:stir-owner@ietf.org>
List-Post: <mailto:stir@ietf.org>
List-Subscribe: <mailto:stir-join@ietf.org>
List-Unsubscribe: <mailto:stir-leave@ietf.org>

I reviewed (browsed) earlier this morning.  I noticed it says UUID is required for origid claim.  There was a big argument one day in one of the IP-NNI meetings where this point was debated because not every implementation was using UUID, and the IP-NNI came down squarely on the side of not requiring UUID. FWIW, I was in the camp that said it should be UUID but we were over-ruled.

The only point I'm trying to make is differences in the (interpretation of?) ATIS standards and IETF standards on the same claim are likely to be unhelpful.  And, does this imply Service Providers should now start failing verification of calls that formerly were ok with strings in origid like "This is the origid"?

Beyond that, I didn't see what was different in the bis versus 8588.  Is there a simple "this is what is different in the bis" description I'm overlooking?

Thanks in advance for help.

Pierce

CONFIDENTIAL
-----Original Message-----
From: housley@vigilsec.com <housley@vigilsec.com>
Sent: Wednesday, November 5, 2025 5:24 PM
To: stir@ietf.org
Cc: draft-barnes-stir-8588bis@ietf.org
Subject: [stir] Re: Call for adoption: draft-barnes-stir-8588bis-01 (Ends 2025-11-26)

As discussed in the STIR session earlier today, please read this document as you would for WG Last Call.  We want to do the call for adoption and the WG Last Call concurrently.

For the STIR WG Chairs,
  Russ


On 05.11.2025 17:59, Russ Housley via Datatracker wrote:
> Subject: Call for adoption: draft-barnes-stir-8588bis-01  (Ends
> 2025-11-26)
>
> This message starts a 3-week Call for Adoption for this document.
>
> Abstract:
>    This document extends the Personal Assertion Token (PASSporT), which
>    is a token object that conveys cryptographically signed information
>    about the participants involved in communications.  The extension is
>    defined based on the "Signature-based Handling of Asserted
>    information using toKENs (SHAKEN)" specification by the ATIS/SIP
>    Forum IP-NNI Task Group.  It provides both (1) a specific set of
>    levels of confidence in the correctness of the originating identity
>    of a call originated in a SIP-based telephone network as well as (2)
>    an identifier that allows the Service Provider (SP) to uniquely
>    identify the origin of the call within its network.  This document
>    obsoletes RFC8588.
>
> File can be retrieved from:
> https://datatracker.ietf.org/doc/draft-barnes-stir-8588bis/
>
> Please reply to this message keeping stir@ietf.org in copy by
> indicating whether you support or not the adoption of this draft as a
> WG document.
> Comments to motivate your preference are highly appreciated.
>
> Authors, and WG participants in general, are reminded of the
> Intellectual Property Rights (IPR) disclosure obligations described in
> BCP 79 [2].
> Appropriate IPR disclosures required for full conformance with the
> provisions of BCP 78 [1] and BCP 79 [2] must be filed, if you are
> aware of any.
> Sanctions available for application to violators of IETF IPR Policy
> can be found at [3].
>
> Thank you.
> [1] https://datatracker.ietf.org/doc/bcp78/
> [2] https://datatracker.ietf.org/doc/bcp79/
> [3] https://datatracker.ietf.org/doc/rfc6701/
>
>
>
> _______________________________________________
> stir mailing list -- stir@ietf.org
> To unsubscribe send an email to stir-leave@ietf.org