[stir] STIR certificate transparency

Chris Wendt <chris-ietf@chriswendt.net> Wed, 06 March 2024 22:41 UTC

Return-Path: <chris-ietf@chriswendt.net>
X-Original-To: stir@ietfa.amsl.com
Delivered-To: stir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 07D05C14F680; Wed, 6 Mar 2024 14:41:07 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.103
X-Spam-Level:
X-Spam-Status: No, score=-7.103 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=chriswendt.net
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BqXLptusVeTF; Wed, 6 Mar 2024 14:41:02 -0800 (PST)
Received: from buffalo.tulip.relay.mailchannels.net (buffalo.tulip.relay.mailchannels.net [23.83.218.24]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 08A60C14F603; Wed, 6 Mar 2024 14:40:56 -0800 (PST)
X-Sender-Id: dreamhost|x-authsender|chris-ietf@chriswendt.net
Received: from relay.mailchannels.net (localhost [127.0.0.1]) by relay.mailchannels.net (Postfix) with ESMTP id 5909E81493; Wed, 6 Mar 2024 22:40:56 +0000 (UTC)
Received: from pdx1-sub0-mail-a250.dreamhost.com (unknown [127.0.0.6]) (Authenticated sender: dreamhost) by relay.mailchannels.net (Postfix) with ESMTPA id EC97580F8A; Wed, 6 Mar 2024 22:40:55 +0000 (UTC)
ARC-Seal: i=1; s=arc-2022; d=mailchannels.net; t=1709764856; a=rsa-sha256; cv=none; b=yfFAnkQ0H8LD+s/FbUNeDJ9KQ/yXqWOWVrTyBBaVjTHWbRkhamPFe1EMdGseEpva/uqef8 KiF18CWu7c6ds+wAxCfMSnN+s7OFVzgHHvsPpBrrG2BJwt7JXlTzRXTZq4qhVuEA3JxtYU IRw/ZtyAvJAjk/8kqVqPi0hhdScHEe/A/jub0fAo2MDfsLMT1pEmr/PuxBIVgUYp7zHrcw posJAYKdOQeYAJ/o2z4c7egC5kS1faHG1DBl5rBrn/ExvOY5bf92EmVGQDif3ymJdm3Tnf C0bFuBdmo2ktXdQy9OKQUntE6MuQQfCllZEbAoJXWUimLDPVrJM1Z0MeJM2mFg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=mailchannels.net; s=arc-2022; t=1709764856; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:cc:mime-version:mime-version:content-type:content-type: dkim-signature; bh=CMxYIgw/2Iek6CY5RDyXF6N8unee7NKYH3X90p9rrDY=; b=lGmVzwCB00wMOcIdOjY8ckdhKlqHBbRDV61Aex45v4sUKKP0CZgg34brh4EalXZNoQpADU jH8neAVXIzyFOqHx/OyxA5AjDhWTHKoJiy8kFkFbsLc4lm7JWloY92mZ5rj3UvH/KQ69bq WBgrkqyg+0nnBhgY3rk66VjN5wQaPgzfCv4+g7QTM9jjQ22fL5IomaxEitjTTqCC3emWfx 1bT7R5fIMC2Xd5Cs/eKVaXFHWlMREma4hNReMH81oyxQcyV9kEjNWjGdHqgW5S+jkfGFLD qWfTKaf3/4pz3lAt5u6xjHanmYHLYTnrMtrlhhbaDhK89cRiLOgkxlCQboPNRw==
ARC-Authentication-Results: i=1; rspamd-7f9dd9fb96-spdjg; auth=pass smtp.auth=dreamhost smtp.mailfrom=chris-ietf@chriswendt.net
X-Sender-Id: dreamhost|x-authsender|chris-ietf@chriswendt.net
X-MC-Relay: Neutral
X-MailChannels-SenderId: dreamhost|x-authsender|chris-ietf@chriswendt.net
X-MailChannels-Auth-Id: dreamhost
X-Desert-Callous: 54d8b52d1969c2c0_1709764856226_4016796900
X-MC-Loop-Signature: 1709764856226:3367880879
X-MC-Ingress-Time: 1709764856226
Received: from pdx1-sub0-mail-a250.dreamhost.com (pop.dreamhost.com [64.90.62.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384) by 100.111.192.177 (trex/6.9.2); Wed, 06 Mar 2024 22:40:56 +0000
Received: from smtpclient.apple (unknown [50.208.22.26]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) (Authenticated sender: chris-ietf@chriswendt.net) by pdx1-sub0-mail-a250.dreamhost.com (Postfix) with ESMTPSA id 4TqnTM3YrMzCW; Wed, 6 Mar 2024 14:40:55 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=chriswendt.net; s=dreamhost; t=1709764855; bh=CMxYIgw/2Iek6CY5RDyXF6N8unee7NKYH3X90p9rrDY=; h=From:Content-Type:Subject:Date:Cc:To; b=UWkwkogL7rO8Q9xQrenp6bknGkLxsmqlWyrA3ES6vye+j9G4P3RpuRYPXF2ZG3/yy LcM8C+rzo7PlQ8Svcgqpsgv61q2yGfVuZszW8t+j/sw22dosCO3MR5cTr3rfbH54Ps Vo1qL1mW6kv0x8uv4J1YpGqTMi17rXBl8DQm3pGqltn7v/atL760n2wVm0bILP3szo GCYp6ZobYRvSV0Hde+ND9KIy/1AOCoRMQRlssYTJtzg64cpANZZTUrUtwRyD16qGKl 5TivWn5LT0/VoTampkfSPtvT/11sCvc3ZSVucjkWubCXGHxZuH6b6/04u3fslXS4we eDpjDflwHfE+Q==
From: Chris Wendt <chris-ietf@chriswendt.net>
Content-Type: multipart/alternative; boundary="Apple-Mail=_37694663-770D-4BAF-B8D6-94AE6B7662B2"
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3774.400.31\))
Message-Id: <71DFF82D-90ED-46F1-894C-9617E9083E51@chriswendt.net>
Date: Wed, 06 Mar 2024 15:40:43 -0700
Cc: STIR Chairs <stir-chairs@ietf.org>
To: IETF STIR Mail List <stir@ietf.org>
X-Mailer: Apple Mail (2.3774.400.31)
Archived-At: <https://mailarchive.ietf.org/arch/msg/stir/n9DBSiJWiKWDnSW6GfMx2hCDqwM>
Subject: [stir] STIR certificate transparency
X-BeenThere: stir@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Secure Telephone Identity Revisited <stir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/stir>, <mailto:stir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/stir/>
List-Post: <mailto:stir@ietf.org>
List-Help: <mailto:stir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/stir>, <mailto:stir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 06 Mar 2024 22:41:07 -0000

Hi All,

I have a new individual draft regarding using certificate transparency in the STIR world.

Would love to have time to discuss in Brisbane and get some feedback.

https://datatracker.ietf.org/doc/html/draft-wendt-stir-certificate-transparency-00

-Chris