Re: [Tls-reg-review] TLS ALPN registry: request to add SMTP

"Salz, Rich" <rsalz@akamai.com> Fri, 01 December 2023 13:53 UTC

Return-Path: <rsalz@akamai.com>
X-Original-To: tls-reg-review@ietfa.amsl.com
Delivered-To: tls-reg-review@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5E4C1C151089 for <tls-reg-review@ietfa.amsl.com>; Fri, 1 Dec 2023 05:53:57 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.105
X-Spam-Level:
X-Spam-Status: No, score=-2.105 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=akamai.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id t0VONFLSCC6C for <tls-reg-review@ietfa.amsl.com>; Fri, 1 Dec 2023 05:53:53 -0800 (PST)
Received: from mx0b-00190b01.pphosted.com (mx0b-00190b01.pphosted.com [IPv6:2620:100:9005:57f::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6F90DC151072 for <tls-reg-review@ietf.org>; Fri, 1 Dec 2023 05:53:53 -0800 (PST)
Received: from pps.filterd (m0050096.ppops.net [127.0.0.1]) by m0050096.ppops.net-00190b01. (8.17.1.22/8.17.1.22) with ESMTP id 3B1CYZFF016003; Fri, 1 Dec 2023 13:53:49 GMT
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=akamai.com; h= from:to:subject:date:message-id:references:in-reply-to :content-type:content-id:content-transfer-encoding:mime-version; s=jan2016.eng; bh=3DORX+95nCAC5cEU4ijEPl3Ww0IGXRc5ZzNMU5+QF4s=; b= RaDlXPn1qP9M+fFJJx61EeDLH24rQtT7xYPZyymms0tGDq93KhSbCePH7ThYXI1e 3xKgaPyKyVNhjiBPzl8nF/XNNRTMkIzpgO/fbwZC30/LVlsvf0ht5YtGSwVm5c0s RPqnfsSBEv1LKj4zcybVrwNOWA8z1WyCWdwv0ubQEsYvzji9RBqBdmMO2KcF98m0 7Kfda04tIeRmUco6eZKdpPQKR51XP/tJdmxMSBffyDtnKsZOPpr4rQy7MZxIlaHc 6olSlEqBkcrrpfZYuL59ZFNcjMSqpMiIWiIOdPkKmpymuP6iLB5N77WGBP5gd699 cZtzUhumsaomUlM/1t9UUg==
Received: from prod-mail-ppoint7 (a72-247-45-33.deploy.static.akamaitechnologies.com [72.247.45.33] (may be forged)) by m0050096.ppops.net-00190b01. (PPS) with ESMTPS id 3upat3ed8f-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Fri, 01 Dec 2023 13:53:49 +0000 (GMT)
Received: from pps.filterd (prod-mail-ppoint7.akamai.com [127.0.0.1]) by prod-mail-ppoint7.akamai.com (8.17.1.19/8.17.1.19) with ESMTP id 3B1DI3Dv011139; Fri, 1 Dec 2023 08:53:19 -0500
Received: from email.msg.corp.akamai.com ([172.27.50.203]) by prod-mail-ppoint7.akamai.com (PPS) with ESMTPS id 3ukd535k22-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Fri, 01 Dec 2023 08:53:19 -0500
Received: from ustx2ex-dag4mb4.msg.corp.akamai.com (172.27.50.203) by ustx2ex-dag4mb4.msg.corp.akamai.com (172.27.50.203) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.1258.27; Fri, 1 Dec 2023 05:53:18 -0800
Received: from ustx2ex-dag4mb4.msg.corp.akamai.com ([172.27.50.203]) by ustx2ex-dag4mb4.msg.corp.akamai.com ([172.27.50.203]) with mapi id 15.02.1258.027; Fri, 1 Dec 2023 05:53:18 -0800
From: "Salz, Rich" <rsalz@akamai.com>
To: Simon Ser <contact@emersion.fr>, "tls-reg-review@ietf.org" <tls-reg-review@ietf.org>
Thread-Topic: [Tls-reg-review] TLS ALPN registry: request to add SMTP
Thread-Index: AQHaJD4MNmHmlQWUeE6OHG9ipeoI2LCUpUeA
Date: Fri, 01 Dec 2023 13:53:18 +0000
Message-ID: <50B0AE6A-7037-4D35-98B4-53E0D7890465@akamai.com>
References: <RECmtoQB48mRB8wGTCO91YuonGAoQ4kmzutPdhz8nbmD-oKYGiFrmNImTwdgCoMoiNYs5OPt1W3szOq-gGlYb16hmYaeVmfx1gYlIp4lR-4=@emersion.fr>
In-Reply-To: <RECmtoQB48mRB8wGTCO91YuonGAoQ4kmzutPdhz8nbmD-oKYGiFrmNImTwdgCoMoiNYs5OPt1W3szOq-gGlYb16hmYaeVmfx1gYlIp4lR-4=@emersion.fr>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.78.23102801
x-originating-ip: [172.27.118.139]
Content-Type: text/plain; charset="utf-8"
Content-ID: <0A66D29A487EFF45980E65D667DE60D4@akamai.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.272,Aquarius:18.0.997,Hydra:6.0.619,FMLib:17.11.176.26 definitions=2023-12-01_11,2023-11-30_01,2023-05-22_02
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 mlxlogscore=795 adultscore=0 spamscore=0 malwarescore=0 phishscore=0 mlxscore=0 bulkscore=0 suspectscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2311060000 definitions=main-2312010094
X-Proofpoint-GUID: qVY977I-PEy-LukdVqdj8oErokWHTDdd
X-Proofpoint-ORIG-GUID: qVY977I-PEy-LukdVqdj8oErokWHTDdd
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.272,Aquarius:18.0.997,Hydra:6.0.619,FMLib:17.11.176.26 definitions=2023-12-01_12,2023-11-30_01,2023-05-22_02
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 priorityscore=1501 lowpriorityscore=0 adultscore=0 spamscore=0 malwarescore=0 phishscore=0 suspectscore=0 clxscore=1011 mlxlogscore=825 bulkscore=0 mlxscore=0 impostorscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.19.0-2311060001 definitions=main-2312010095
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls-reg-review/Z0CpgJ7tQon6WIK-wBFrkkBbBOg>
Subject: Re: [Tls-reg-review] TLS ALPN registry: request to add SMTP
X-BeenThere: tls-reg-review@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: TLS REVIEW <tls-reg-review.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls-reg-review>, <mailto:tls-reg-review-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls-reg-review/>
List-Post: <mailto:tls-reg-review@ietf.org>
List-Help: <mailto:tls-reg-review-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls-reg-review>, <mailto:tls-reg-review-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 01 Dec 2023 13:53:57 -0000

> The SMTP protocol is defined in RFC 2821. I'd like to request
registration for an SMTP TLS ALPN ID. I would suggest the value "smtp".

There's a. couple of things here:
1. That RFC does not mention TLS. 

2. A requirement for being in the registry is that SOME kind of documentation exists, even if it's an individual internet-draft that never does anything else.

3. SMTP and TLS have a complicated relationship. For example there is already port 587 assigned to SMTPS, which is SMTP over TLS. There's the STARTTLS SMTP command in RFC 3207. There's the whole "opportunistic" discussion.

4. So are you proposing port 443 for SMTP/TLS? Do POP and IMAP get involved?

5. Have you had dicussions with other people in the email community about this?  Perhaps the IETF mail extensions working group is a good place to start, https://datatracker.ietf.org/wg/mailext/about/

I think, for now, we have to reject this request, even if only8 for 1 and 2 above.

Thanks for trying to make things more secure.