Re: [stir] Roman Danyliw's No Objection on draft-ietf-stir-cert-delegation-03: (with COMMENT)

"Peterson, Jon" <jon.peterson@team.neustar> Mon, 22 February 2021 23:44 UTC

Return-Path: <prvs=5687b5be9a=jon.peterson@team.neustar>
X-Original-To: stir@ietfa.amsl.com
Delivered-To: stir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DEFF23A21CD; Mon, 22 Feb 2021 15:44:50 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=team.neustar header.b=xp6p4UiM; dkim=pass (1024-bit key) header.d=neustar.onmicrosoft.com header.b=jmEdZ+qZ
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Pi0QTFkGExjf; Mon, 22 Feb 2021 15:44:49 -0800 (PST)
Received: from mx0b-0018ba01.pphosted.com (mx0a-0018ba01.pphosted.com [67.231.149.94]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2D6843A2184; Mon, 22 Feb 2021 15:44:49 -0800 (PST)
Received: from pps.filterd (m0078664.ppops.net [127.0.0.1]) by mx0a-0018ba01.pphosted.com (8.16.0.43/8.16.0.43) with SMTP id 11MNZXL2013222; Mon, 22 Feb 2021 18:44:38 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=team.neustar; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-id : content-transfer-encoding : mime-version; s=team-neustar; bh=oildgTzUWA5mxtjdpiOPCBeoGR+kodRGTo2ohVB4d1g=; b=xp6p4UiMXw52glXvqjzvVTt69Xw1pb2QkUzUvw1g4r9rtU+G7k17LO+FfcPM1VotmaUj d4HsHCcOz0K3h2+95fSsrVDl6nk9/lwQJkBUXvZd5q/vFXOB3dFwPkp76suMAw6QbQnT 0oLWOTwgwSOMdE7H+j0qr6m/j4MXoZ2hVEbt0ZrFyA8t0kb4AGdjhF47IDY0FcEaavxd 6jqpZMpFP5lDR2c1zZaPX/HsfTk8e187O+YHjFZGz+CZhCZfU6yLyZgJeAEq8tEU3Wzm ZZEdfotbuweRrwvHm9nekm4+bj4MMUHrcT1yO2vZLmPiN2NNFg+yOSJ+TRbfbe8kryCp fw==
Received: from nam10-mw2-obe.outbound.protection.outlook.com (mail-mw2nam10lp2108.outbound.protection.outlook.com [104.47.55.108]) by mx0a-0018ba01.pphosted.com with ESMTP id 36twy3ddwx-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 22 Feb 2021 18:44:38 -0500
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=O6RfTSMfdOwmDI/w0sXCXTI43LXTW++DrAZuHHL7lENdUv2YEEmV4gGpYY7S4heaCrpA8yzCq3KhLQx/qSGs4NKj+V4EkUdgUtk8akEtIxIH/8fJ8gB2pW4A5Oc2jQUAMsTrqV1H703Ad0vtsuldcXZU2c9hNUM8bRVBxZcauW7BnxUJSEN65Sbk7mbv3qh3KFfCulWTv7dw0If09r6u+9dEeyvUKzsbnzrg2BlXisXmWuAZlHx4zMaPCByxs2ZdsgfYLtKy4i0HH0Q8IPDkIJx4/Ziuv4gjNW3dXouq55W9UdXx2LBnLIg0/Mhv1HIvcgek+vxI4pizPlA2Vu6utw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=oildgTzUWA5mxtjdpiOPCBeoGR+kodRGTo2ohVB4d1g=; b=EHJ6sMa91woQh9K2jHv3b/HI9XHP5/657ylTrYpEkw6XG8JLhzBR5YMUVKB78QWZuyCVtRmkWIIHpvK26VIw+mmrNFCJggt5gnqOoUnnXBcvF+cukbRa3YQcP+yEmk2VajWSZvO5rba8RoLdFBerd8zL/Q8MxB91XDjDNjem8BAISD70xePxIeLEBixgb5rYL6KzdKgwpPH+639Hy7Y0l/vRmRdH56r619XNugZUd5oDNKRUpiYQyfLoBvFTgGxcfp//JPY7r0PNwkpXX6NZE4TNLegSIebSK8D0JYEebBUt/dKpWHlDS5qrXl9ddkUZsFcjr26RSl9mbEsNNeff+A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=team.neustar; dmarc=pass action=none header.from=team.neustar; dkim=pass header.d=team.neustar; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=neustar.onmicrosoft.com; s=selector1-neustar-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=oildgTzUWA5mxtjdpiOPCBeoGR+kodRGTo2ohVB4d1g=; b=jmEdZ+qZCJCSOInY2mJcKCD7SweA27+JNmhYHmpaJYPn9MsyrZLRTcbD1itjL0fuXwEYnPB7SpSc38PsUfmX2pfa1zFGM2aKdFV2accG6aIlP1r1n696FoXCvXUsaBjjXD0QtKm1Dkv308Jeh5cW7+Unqt109UGkjR/UgfL9pOU=
Received: from BY5PR17MB3569.namprd17.prod.outlook.com (2603:10b6:a03:1b9::20) by SJ0PR17MB4399.namprd17.prod.outlook.com (2603:10b6:a03:29c::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3868.30; Mon, 22 Feb 2021 23:44:37 +0000
Received: from BY5PR17MB3569.namprd17.prod.outlook.com ([fe80::fd51:22ce:499d:3ae4]) by BY5PR17MB3569.namprd17.prod.outlook.com ([fe80::fd51:22ce:499d:3ae4%3]) with mapi id 15.20.3868.029; Mon, 22 Feb 2021 23:44:37 +0000
From: "Peterson, Jon" <jon.peterson@team.neustar>
To: Roman Danyliw <rdd@cert.org>, The IESG <iesg@ietf.org>
CC: "draft-ietf-stir-cert-delegation@ietf.org" <draft-ietf-stir-cert-delegation@ietf.org>, "stir-chairs@ietf.org" <stir-chairs@ietf.org>, "stir@ietf.org" <stir@ietf.org>, Russ Housley <housley@vigilsec.com>
Thread-Topic: Roman Danyliw's No Objection on draft-ietf-stir-cert-delegation-03: (with COMMENT)
Thread-Index: AQHWhrLz8u3lJBKZPUSbv0/EA3m9MKplVesA
Date: Mon, 22 Feb 2021 23:44:37 +0000
Message-ID: <80FE8E78-90B1-4781-BACC-AEBD781A6F15@team.neustar>
References: <159966061458.21926.1670711388251011329@ietfa.amsl.com>
In-Reply-To: <159966061458.21926.1670711388251011329@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.10.1b.201012
authentication-results: cert.org; dkim=none (message not signed) header.d=none;cert.org; dmarc=none action=none header.from=team.neustar;
x-originating-ip: [2600:1700:2ec0:8108::3]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 961b6f1b-b266-4d08-6536-08d8d78bd0ab
x-ms-traffictypediagnostic: SJ0PR17MB4399:
x-microsoft-antispam-prvs: <SJ0PR17MB4399CB8ECC229D486A1A151EE2819@SJ0PR17MB4399.namprd17.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: UTsU8enqMkQDh61WpuMPU87r7j/cmRP2c4ZAcNsEDn8IWlmeYcDy1txd6QSTfF4nFJroJoZSGrsBFoilmfRoCiHcLEj435GIP5GYl6s+kSpCMETqsiY0xirYhGyDso/6X14duhcPmtjWewb3lIhvGXjYk1raghTahMy1T53C+5D/jwSYpUr4J0RZL0ECrdDzW9uLNHu92/l5i/m56IPRvv5HitrNGV8vWN6w7KUdsN53se2DglhkS9gDcwtXIuBcShuSH0euhfy7tRhp+HoUmYL/Rb5uAu3O/p9ov5cZ2A95rlWseJKf0c2o1uKD78w2bifdO2JhiEWJdU2EPXlxiKpmX51tnesF1M+HYIKtF6qutZQUQRQa/YHE4nJCF7PV6/yLmcsBoylg/eGMDnu23GrYaO86dcAx6OKejQ/CLFh1yysbhaQwwJVUsc+HZL/KppxiUIkB5aSKiBC78f8Egr0qdJz4KmSc8U56usYlD0acGTV7yg2qjkKbyC7hKphnGCd43q0egvHWbgoSiDfeqWHgZrQxUkDWH1KFsDGR39mxUutLCHTU40QqhOdket4YTPbstJ0MyBBJJ/mTYD06iBQAjZ+drs2RiUaXpdmtzKI=
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BY5PR17MB3569.namprd17.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(346002)(136003)(39860400002)(396003)(376002)(366004)(316002)(478600001)(2906002)(54906003)(110136005)(66556008)(8936002)(8676002)(4326008)(71200400001)(6486002)(186003)(83380400001)(6506007)(33656002)(2616005)(5660300002)(4744005)(64756008)(6512007)(76116006)(86362001)(66476007)(66446008)(66946007)(46492009)(45980500001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <6726A7D29FB5754FBF8EAA28F48A4D96@namprd17.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: team.neustar
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BY5PR17MB3569.namprd17.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 961b6f1b-b266-4d08-6536-08d8d78bd0ab
X-MS-Exchange-CrossTenant-originalarrivaltime: 22 Feb 2021 23:44:37.2705 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 73a2bbc1-f307-47c4-8f94-5f379c68bc30
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: ZKaaZJInnV6lDgQecSynz4z/Pcy/81FJLXir5ehlwOUTw5KVdNvVxawrPcPICOkX/lsy8okeL9SONkjeyyoU4sdrxExgaxmg7hBmVAE7LrA=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SJ0PR17MB4399
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.369, 18.0.761 definitions=2021-02-22_08:2021-02-22, 2021-02-22 signatures=0
X-Proofpoint-Spam-Details: rule=outbound_notspam policy=outbound score=0 mlxscore=0 bulkscore=0 clxscore=1011 suspectscore=0 lowpriorityscore=0 malwarescore=0 mlxlogscore=576 spamscore=0 adultscore=0 priorityscore=1501 impostorscore=0 phishscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2009150000 definitions=main-2102220203
Archived-At: <https://mailarchive.ietf.org/arch/msg/stir/iFh4QqTIx9YLsnJLWIHfVCnDM2s>
Subject: Re: [stir] Roman Danyliw's No Objection on draft-ietf-stir-cert-delegation-03: (with COMMENT)
X-BeenThere: stir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Secure Telephone Identity Revisited <stir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/stir>, <mailto:stir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/stir/>
List-Post: <mailto:stir@ietf.org>
List-Help: <mailto:stir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/stir>, <mailto:stir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 22 Feb 2021 23:44:58 -0000

Hi Roman,

Thanks for the fixes on this document - there was one comment I left open, though...
    
    ** Given that this document specifies the delegation model alluded to in
    Section 5 of RFC8226 with normative guidance, is there a reason it doesn’t
    formally update RFC8226?

I'm on the fence about this. I've seen comments that it should update pretty much all of RFC8224-6. I think of it more as expanded guidance on the (brief) text about delegation in RFC8226, so if it's going to update anything, it should probably be that. I'd leave it to the discretion of the IESG, though.

Jon Peterson
Neustar, Inc.