Re: [stir] For the sake of implementers, please verify errata in a timely manner

Chris Wendt <chris-ietf@chriswendt.net> Mon, 12 April 2021 21:09 UTC

Return-Path: <chris-ietf@chriswendt.net>
X-Original-To: stir@ietfa.amsl.com
Delivered-To: stir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3C0823A0D3E for <stir@ietfa.amsl.com>; Mon, 12 Apr 2021 14:09:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.796
X-Spam-Level:
X-Spam-Status: No, score=-1.796 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=chriswendt-net.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id G9PZOcYjK06P for <stir@ietfa.amsl.com>; Mon, 12 Apr 2021 14:09:38 -0700 (PDT)
Received: from mail-qt1-x82a.google.com (mail-qt1-x82a.google.com [IPv6:2607:f8b0:4864:20::82a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D14593A0D43 for <stir@ietf.org>; Mon, 12 Apr 2021 14:09:37 -0700 (PDT)
Received: by mail-qt1-x82a.google.com with SMTP id t11so2548808qtr.8 for <stir@ietf.org>; Mon, 12 Apr 2021 14:09:37 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=chriswendt-net.20150623.gappssmtp.com; s=20150623; h=from:message-id:mime-version:subject:date:in-reply-to:cc:to :references; bh=C4DKtZ6G5qzc4KDVrXaWNO49TIRfRQOOYE4+zQCcb3o=; b=bc2OS76SKEtOpZaCEDi4D8B0LL6d3f+9Fl/6CigyMFqzNwMRmu36R3YO+aowX4y9o1 /1n1N/5aJxRruAfOSf+tggxvU8MwRkzBLisK46AeDLpbFj61mmdMUHXJfG97CIASsTqW SgwxAfi3fx3TLu+Iwty7YK2kLrWRyHCMNrYmD6sU5jtEsbfmv7PZuWqbj0qiXXzU4Cff vgrqPA+Mw+t5TLDlRY+mFGSuJujAY8QvTCOqAE7CpH/01xAZrdpO3oaO8+tW35VqMDQb LAb7kvlNrONiBBkP32ZM/cmCUNl5GUqNOCzBCckLoyAdklvrpPjBD1QC/fEtDvGWZmcj 88sw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:message-id:mime-version:subject:date :in-reply-to:cc:to:references; bh=C4DKtZ6G5qzc4KDVrXaWNO49TIRfRQOOYE4+zQCcb3o=; b=EblA0p7WOnHRINB6Jal4RDPCC1KTjaiIJ4ptSG9l0nthYCUAsm4vWqBXZbF1lVHaj8 VlvDxqIFskXeu3+HPNEBf/QTgqRT+/MRe7ikPAqxWoLy3EWFV3qvuqLzq7jwZp0fcZff snGyxpbFQix4QmSStPe3OXZBKKk5G8xDov4wBkBvwpaF5yLnw9wYczlJYasnez9jZEGS HSGFVzsum2nQUu1DXr4bhvd9m3iXUH/3hH2JyNKB4d/B3kKKYJSft4EUqYwmsF7FYTpL Hxv4GV+5/0BieM2IQJI1M/tILii03F98z4odxF+tVUgoczJpLNpvnCYEaK/zT1Kj/kN7 plUw==
X-Gm-Message-State: AOAM531VO2W2Pd++X66aqS+vL7bHI5XbiKDA7YnAT2DTOy+Zbgz4zARo Jy48BNUm10elUPXkrpoM+npRGA==
X-Google-Smtp-Source: ABdhPJyRfCDYUIepVLfGOmcCmbRU+q5tTUdZ+ukL2F4iHo9Bylm5ZP5doR+PqAgM4TZa2JRtbEnTvQ==
X-Received: by 2002:ac8:7747:: with SMTP id g7mr27158449qtu.144.1618261775300; Mon, 12 Apr 2021 14:09:35 -0700 (PDT)
Received: from [192.168.0.43] (c-68-82-121-87.hsd1.pa.comcast.net. [68.82.121.87]) by smtp.gmail.com with ESMTPSA id f27sm8742117qkh.118.2021.04.12.14.09.34 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Mon, 12 Apr 2021 14:09:34 -0700 (PDT)
From: Chris Wendt <chris-ietf@chriswendt.net>
Message-Id: <19194256-B61E-47D6-B1F6-5317F2F7BE90@chriswendt.net>
Content-Type: multipart/alternative; boundary="Apple-Mail=_599DC5E1-5727-43AB-9038-B143CE715C2E"
Mime-Version: 1.0 (Mac OS X Mail 14.0 \(3654.60.0.2.21\))
Date: Mon, 12 Apr 2021 17:09:30 -0400
In-Reply-To: <BN6PR11MB39211A0A9BB35EB34E1789C599709@BN6PR11MB3921.namprd11.prod.outlook.com>
Cc: Roman Shpount <roman@telurix.com>, "stir@ietf.org Mail List" <stir@ietf.org>, Marc Petit-Huguenin <marc@petit-huguenin.org>, Christer Holmberg <christer.holmberg@ericsson.com>
To: Alec Fenichel <alec.fenichel@transnexus.com>
References: <adc8bd10-a04d-aff5-e03f-183f0d59c22c@petit-huguenin.org> <CAD5OKxvqYSRjaA_eR=nX4sNgTbAtQ3dSqqgAe0-y9EzbA-dRug@mail.gmail.com> <AM0PR07MB386063A2162B5C07319225D393739@AM0PR07MB3860.eurprd07.prod.outlook.com> <CAD5OKxuyT4bmNBYgSMN-9M-c1Tr=gO1rQAg1D7xGSYx=bP9K3A@mail.gmail.com> <5308A309-85DC-4440-ABE9-6C1EEB4E0FEE@chriswendt.net> <CAD5OKxsRh5pgYbc6ULL2c7nCUuAfQiM=r78vxkd0WWg0veDkjA@mail.gmail.com> <E0562367-B7E8-4935-A71A-60D2C105F850@chriswendt.net> <BN6PR11MB39211A0A9BB35EB34E1789C599709@BN6PR11MB3921.namprd11.prod.outlook.com>
X-Mailer: Apple Mail (2.3654.60.0.2.21)
Archived-At: <https://mailarchive.ietf.org/arch/msg/stir/_0A8Ad9H5kzgTSOnSLZmgw05PdA>
Subject: Re: [stir] For the sake of implementers, please verify errata in a timely manner
X-BeenThere: stir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Secure Telephone Identity Revisited <stir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/stir>, <mailto:stir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/stir/>
List-Post: <mailto:stir@ietf.org>
List-Help: <mailto:stir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/stir>, <mailto:stir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 12 Apr 2021 21:09:43 -0000

I think that’s slightly different question, historically i think maybe we included as convention just to potentially have something readable directly to indicate the type of PASSporT contained in Base64, but this is as you say optional, and implementations can’t necessarily rely on this, etc. etc.

So yes, we could leave it off, but like i said other examples we keep it on, and i believe as people tend to code to examples, most identity headers i recall seeing also contain “ppt” :)

> On Apr 12, 2021, at 4:19 PM, Alec Fenichel <alec.fenichel@transnexus.com> wrote:
> 
> Chris,
>  
> Shouldn’t the example be changed to just not include ppt at all? It is an optional parameter that is only needed for compact form PASSporTs.
>  
> Sincerely,
>  
> Alec Fenichel
> Senior Software Architect
> alec.fenichel@transnexus.com <mailto:alec.fenichel@transnexus.com>
> +1 (407) 760-0036
> TransNexus
>  
> From: stir <stir-bounces@ietf.org> on behalf of Chris Wendt <chris-ietf@chriswendt.net>
> Date: Monday, April 12, 2021 at 16:07
> To: Roman Shpount <roman@telurix.com>
> Cc: stir@ietf.org Mail List <stir@ietf.org>, Marc Petit-Huguenin <marc@petit-huguenin.org>, Christer Holmberg <christer.holmberg@ericsson.com>
> Subject: Re: [stir] For the sake of implementers, please verify errata in a timely manner
> 
> Ok, great, and before someone calls me out, the example in rcd-11 is not quoted :) but i’ve fixed that in local version, will fix on next version.
>  
> So, agreed RFC8224 is only thing that needs fixing, and I think Jon sent out note that he also agrees with errata fix for this.  
> 
> 
> On Apr 12, 2021, at 3:53 PM, Roman Shpount <roman@telurix.com <mailto:roman@telurix.com>> wrote:
>  
> Chris,
>  
> As far as I am aware all RFCs and ATS examples have ppt quoted in examples. At the same time, in https://tools.ietf.org/html/rfc8224#section-4 <https://nam12.safelinks.protection.outlook.com/?url=https%3A%2F%2Ftools.ietf.org%2Fhtml%2Frfc8224%23section-4&data=04%7C01%7Calec.fenichel%40transnexus.com%7Cc3ce1516bc694b129cd408d8fdeea848%7C8e2972a2d21d49acb00518e8ceaadee3%7C1%7C0%7C637538548777280771%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&sdata=AXf2UPzKbyDcaOctfF0gRP1iMtFicDoLVSopwTsoB8w%3D&reserved=0>
> ident-type = "ppt" EQUAL token
>  
> This grammar does not allow for a quoted value. Considering that examples are informational, I would argue RFC 8224 should take precedence.
> _____________
> Roman Shpount
>  
>  
> On Mon, Apr 12, 2021 at 3:45 PM Chris Wendt <chris-ietf@chriswendt.net <mailto:chris-ietf@chriswendt.net>> wrote:
> Hi Roman,
>  
> I tried looking at the drafts/RFCs i was aware of and all of them had quoted ppt in examples.  Probably missed some, can you point to a published document that includes ppt as not quoted in examples?
>  
> Thanks.
>  
> -Chris
> 
> 
> On Apr 9, 2021, at 1:19 PM, Roman Shpount <roman@telurix.com <mailto:roman@telurix.com>> wrote:
>  
> Chirster,
>  
> For the record, RFC 8224 was published in February 2018. IETF 101 was in March 2018. The decision was about misreading an already published RFC and using ppt value in quotes in examples in other RFC. There is nothing in RFC 8224 that says that ppt= value should be quoted.
>  
> This makes me think errata should be filed against other documents to fix examples.
>  
> Best Regards,
> _____________
> Roman Shpount
>  
>  
> On Fri, Apr 9, 2021 at 9:42 AM Christer Holmberg <christer.holmberg@ericsson.com <mailto:christer.holmberg@ericsson.com>> wrote:
> Hi,
>  
> Since the errata implements a decision that the WG has made, I don’t think it is appropriate to reject it just because one does not agree with the decision.
>  
> The WG can of course make a new decision.
>  
> Regards,
>  
> Christer
>  
> From: stir <stir-bounces@ietf.org <mailto:stir-bounces@ietf.org>> On Behalf Of Roman Shpount
> Sent: perjantai 9. huhtikuuta 2021 8.31
> To: Marc Petit-Huguenin <marc@petit-huguenin.org <mailto:marc@petit-huguenin.org>>
> Cc: stir@ietf.org <mailto:stir@ietf.org> Mail List <stir@ietf.org <mailto:stir@ietf.org>>
> Subject: Re: [stir] For the sake of implementers, please verify errata in a timely manner
>  
> On Thu, Apr 8, 2021 at 8:50 AM Marc Petit-Huguenin <marc@petit-huguenin.org <mailto:marc@petit-huguenin.org>> wrote:
> 5. https://www.rfc-editor.org/errata/eid6499 <https://nam12.safelinks.protection.outlook.com/?url=https%3A%2F%2Fprotect2.fireeye.com%2Fv1%2Furl%3Fk%3Def89db14-b012e23f-ef899b8f-866038973a15-fdf914a9f542a726%26q%3D1%26e%3D8813711f-31d5-4b19-9e71-65401444b97d%26u%3Dhttps%253A%252F%252Fwww.rfc-editor.org%252Ferrata%252Feid6499&data=04%7C01%7Calec.fenichel%40transnexus.com%7Cc3ce1516bc694b129cd408d8fdeea848%7C8e2972a2d21d49acb00518e8ceaadee3%7C1%7C0%7C637538548777290767%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&sdata=%2F%2BciniHt1piDh3WKBFBbNEgibPlAeGH%2Fmnbzn%2FJ3Yus%3D&reserved=0>
> 
> I disagree with that -- wrong examples, especially from another SDO, should not change normative text.   In itself adding quotes around a token is puzzling.  An additional unintended consequence is that quoted strings are case-sensitive, whereas tokens are case insensitive, so that may create an additional interop issue.
> 
> For these reason my implementation decision is to ignore that errata until it is verified.
>  
> I actually agree with you that the ppt value token should not be quoted. The reason I posted this as an errata was that there was a decision was made during IETF 101 that quotes around ppt values are mandatory (https://mailarchive.ietf.org/arch/msg/stir/tI1dJUYPFiEvYIHBCmsBiVvQ0GE/ <https://nam12.safelinks.protection.outlook.com/?url=https%3A%2F%2Fmailarchive.ietf.org%2Farch%2Fmsg%2Fstir%2FtI1dJUYPFiEvYIHBCmsBiVvQ0GE%2F&data=04%7C01%7Calec.fenichel%40transnexus.com%7Cc3ce1516bc694b129cd408d8fdeea848%7C8e2972a2d21d49acb00518e8ceaadee3%7C1%7C0%7C637538548777290767%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&sdata=FdqigXUAGjauXDnLj5d79L17I84kpDGcTpcnlc6JApQ%3D&reserved=0>). I am also dealing with implementations that quote the value, and I need to be absolutely sure this is incorrect when dealing with them.
> _____________
> Roman Shpount 
> _______________________________________________
> stir mailing list
> stir@ietf.org <mailto:stir@ietf.org>
> https://www.ietf.org/mailman/listinfo/stir <https://nam12.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Fstir&data=04%7C01%7Calec.fenichel%40transnexus.com%7Cc3ce1516bc694b129cd408d8fdeea848%7C8e2972a2d21d49acb00518e8ceaadee3%7C1%7C0%7C637538548777300758%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&sdata=XVdAGpoQaHssZXsEr4pa7H75sDaa6RuKpzDSx6zwTFc%3D&reserved=0>