Re: [TLS] [OPSEC] OpSec WGLC for draft-ietf-opsec-ns-impact

tom petch <ietfa@btconnect.com> Tue, 28 July 2020 16:07 UTC

Return-Path: <ietfa@btconnect.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 14B583A0E60; Tue, 28 Jul 2020 09:07:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=btconnect.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aR1Ys6Xuo731; Tue, 28 Jul 2020 09:07:57 -0700 (PDT)
Received: from EUR05-AM6-obe.outbound.protection.outlook.com (mail-am6eur05on2100.outbound.protection.outlook.com [40.107.22.100]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F04123A0E5B; Tue, 28 Jul 2020 09:07:55 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=DJA2DYXBo+0NyrnbKetspsITRzTxe5cN4kVfiNWGjPtxEYnopLlFvIiZtkKFLiTwW19A7J+fZ/nIh9dSHJOAe/hdkW7u4T4IF0dB1CRlX7b2XtnQOlqeuDW+Qlj8n5idYWihEstmnF0xjYZRrE50YWF4jrRlT5BsedfxJQkCgv50ph1cRALULI1YARGXpR+asOhKpaaIMB2w1uge6T8pIbwLUQjSpB/zDbt+X+7fusWefJwuX09Lj/Tq9+RPpmNgf+vCDZwOrw05nuEPHBVMIwd+lzHiaeht5Y86GBlBMf/s/Z5YJl4w7e+q8HAbLd5ToBBnsN5ctgODQITBNeCYqQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ypebEWp61esNOAeQn43CpzYf/o1XIUKNwJgO8p4jrvM=; b=k9mn8zmGMBLKh6C3gn6IpEFMkAa6Y91wbSh1XEsml0jY63ntbMb1RA6F9/lgRtEJeITqb8KrWYwBCsPLqrxytVevMpmS6bvGxMB6buW3rSkSx3MMUmiZUSZIZXSifMhuAIfF7EeG4DtruRXsRm/s/ZU3W0pg/StcnGM0mVRYNDq+7YADZG7L5WwulvwbmjZwi+5TPLuD7s7H+3hEjV2FE8DCBJqDPz7u2Cs9Tjynu0IJk2shCxTmbahLuMj2vcnskvSsO3aQW4HwJ+zLL2WyycQ0MmCFY5bvUb1SwKxyTE2Q1ssenaU6dTlax5PLg0KgFzFVhqS02Ph0zlF4A2Cc8A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=btconnect.com; dmarc=pass action=none header.from=btconnect.com; dkim=pass header.d=btconnect.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=btconnect.onmicrosoft.com; s=selector2-btconnect-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ypebEWp61esNOAeQn43CpzYf/o1XIUKNwJgO8p4jrvM=; b=LbU6moEPiE757zPylLt10YxVKwj7+60VM/DTvacaxl2Q6ZzXnjsIGXz6kTvC+soocOpDSwp0+aCVkcLRcxc7wgls8Ivf4vs616lSf2xdx2WfguV5TsdZHz+twPFQNHpbfRDxlRDZcKMoJu1NGW2yDJksfb/i8XvCxQqOlzCJofc=
Received: from DB7PR07MB5340.eurprd07.prod.outlook.com (2603:10a6:10:69::25) by DB6PR07MB3318.eurprd07.prod.outlook.com (2603:10a6:6:1e::30) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3239.9; Tue, 28 Jul 2020 16:07:52 +0000
Received: from DB7PR07MB5340.eurprd07.prod.outlook.com ([fe80::f911:a06:2f4e:a103]) by DB7PR07MB5340.eurprd07.prod.outlook.com ([fe80::f911:a06:2f4e:a103%4]) with mapi id 15.20.3239.015; Tue, 28 Jul 2020 16:07:52 +0000
From: tom petch <ietfa@btconnect.com>
To: Jen Linkova <furry13@gmail.com>, opsec WG <opsec@ietf.org>
CC: "tls@ietf.org" <tls@ietf.org>
Thread-Topic: [OPSEC] OpSec WGLC for draft-ietf-opsec-ns-impact
Thread-Index: AQHWZOAEUv5F9DjalEW4QGtE95/kRakdJpAB
Date: Tue, 28 Jul 2020 16:07:52 +0000
Message-ID: <DB7PR07MB5340B0AB5194B177DA1E6C38A2730@DB7PR07MB5340.eurprd07.prod.outlook.com>
References: <CAFU7BAT9LxVJJxE8OhhzTXgrbS6SHYb7U9LQdMvOZQQREC2Etg@mail.gmail.com>
In-Reply-To: <CAFU7BAT9LxVJJxE8OhhzTXgrbS6SHYb7U9LQdMvOZQQREC2Etg@mail.gmail.com>
Accept-Language: en-GB, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: gmail.com; dkim=none (message not signed) header.d=none;gmail.com; dmarc=none action=none header.from=btconnect.com;
x-originating-ip: [81.131.229.35]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 5a760cc4-e3b8-424e-87d3-08d833106196
x-ms-traffictypediagnostic: DB6PR07MB3318:
x-microsoft-antispam-prvs: <DB6PR07MB33183CB70D5A6719561FC691A2730@DB6PR07MB3318.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8882;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: jJE/7KiPRtar8ksXvc/903RW2CeUTJF8fuHr36HJ/usZnHoCPIy8+1LanKPbWxCON4axufnhyiUvO8FpkvzqAJ7lRJheI0WQ8qbmvfzw43oXDxwOCGq/vUvUO5vXixSNpwKbHlS4UW4tXqsTUMfoLZ/lpXjK7gusiSnbwa4+QTwFVOHkRrpuDLxdDsQLvGjmzuNVMmsMXxt/JSVEtZTCZCZoHQp1kAhgIaI5/eeutwRwz8v5nFyV6Zhx4d++rcvW0fif+FaM6uNZyaUmEqstJwJyA7PFa2EGc79PXzReEoEA8yVNbRrI1oJNZUdb+uWIVvQxnjaFWWZLjL7geD52VsUch25DkU/KmqH8IWGdO0L7sKA7iQODCQzj43H243mBIHS0apTzFpvbC27n453W9w==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB7PR07MB5340.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFTY:; SFS:(6029001)(366004)(33656002)(966005)(9686003)(86362001)(498600001)(55016002)(8676002)(8936002)(110136005)(5660300002)(71200400001)(26005)(2906002)(186003)(52536014)(4326008)(91956017)(83380400001)(76116006)(66946007)(66476007)(66446008)(7696005)(64756008)(66556008)(6506007); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata: DjTY60y1ubJQ0gB+LleLodcg2wW5Yc/SDAnfU9vHRMOtOqP795ZFTMFwI8QBX2ClLScs4a0jlTY8CVkum68LfRyq1shzZLu8hreajRwgiq4+PKmLCEUmxpGuAooL5Tpq56UW/iXQhJBHlbINAP5/UNYjUQpF8Jh1Xh26MEvIbDS02w0R8UJh8vMqlAkjsH3ku48OfJt6pmxAC1xTDM7WMCrYOtv3N4+wqsJ847jkvx2LSR96DQYcLrUH+0k9dwDr45CoCSwAA2BSl3N1R57AWEJxOFUEEvdYQRH460fThREWAEfZy6biCL8x7JJ3MAuKj6+vD58IRiOz01wYX1NiEPGvEBnC/8t8EY9JVsdwLEi103k2R/x/t1OkFrPl4lVhLxTUxk0KjRWMUBtNZxnk2qCYc2sYtE2eg4uiGxbryMh27C8dInOfK0dQf/LUMQfok5lsMR37xECBoga4qV1JfIzAaVprAm0FAkM7MV2JW28KBvP11/PJHAemcEHpVI6584URpY+PD8IpXt/lujkmIc+IhrEGhzugmz2I+2Of4vTrSVuOEqT3hSjUKwnW7rx2OV4PPLTM4mO1cbWmNC3/6/TjZhC57oLmdwm9CbaBWgd+PdJg+eaKqBga5FPBWarpY9W0UxqSOcMjmqbjOWkx4A==
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: btconnect.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DB7PR07MB5340.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 5a760cc4-e3b8-424e-87d3-08d833106196
X-MS-Exchange-CrossTenant-originalarrivaltime: 28 Jul 2020 16:07:52.1934 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: cf8853ed-96e5-465b-9185-806bfe185e30
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: QxnpPboW6FHx2AVcPX/mgwTzsDiSXQeSujdD8ioCZFxoHmni356V4jIhXicmmCrLb52jjDbq5PTGcH7nL2NGjQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB6PR07MB3318
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/VTlNrLAsrqENcLNM4ooP74HJ6tA>
Subject: Re: [TLS] [OPSEC] OpSec WGLC for draft-ietf-opsec-ns-impact
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 28 Jul 2020 16:07:59 -0000

From: OPSEC <opsec-bounces@ietf.org> on behalf of Jen Linkova <furry13@gmail.com>
Sent: 28 July 2020 14:05

This email starts the WG Last Call for draft-ietf-opsec-ns-impact ,

Impact of TLS 1.3 to Operational Network Security Practices,

https://datatracker.ietf.org/doc/draft-ietf-opsec-ns-impact/.

Taking into account  IETF108, the WGLC is extended to 3 weeks and ends
on Aug 18th, 23:59:59 UTC.

Please review the document and express your support or concerns/comments.

<tp>
OPPOSE (yes, I am shouting)

This is nowhere near ready and putting it forward so soon is ... well ludicrous comes to mind.

After WG adoption, comments were made to which there was no acknowledgement, no response,  I was about to oppose the adoption of the other I-D from these authors on the grounds that until they respond to comments nothing else should happen because when they do there are more comments waiting to be aired.  I am still of that view.

I do see that a revised I-D has just appeared in among the thousand or so I-D that appear around the time of an IETF meeting, a timing that I sometimes think is designed to let it slip through unnoticed.  Given all those other I-D - silly authors - it may be more than three weeks before I get my thoughts together.

Tom Petch

Thanks!

--
SY, Jen Linkova aka Furry on behalf of the OpSec Chairs.

_______________________________________________
OPSEC mailing list
OPSEC@ietf.org
https://www.ietf.org/mailman/listinfo/opsec