Re: [TLS] TLS Opaque

"Scott Fluhrer (sfluhrer)" <sfluhrer@cisco.com> Thu, 01 April 2021 13:08 UTC

Return-Path: <sfluhrer@cisco.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 594393A10C1 for <tls@ietfa.amsl.com>; Thu, 1 Apr 2021 06:08:35 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -11.917
X-Spam-Level:
X-Spam-Status: No, score=-11.917 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_NONE=0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=AaRxufVZ; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=nLrf4Q7e
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mE2KwQqQMpYs for <tls@ietfa.amsl.com>; Thu, 1 Apr 2021 06:08:30 -0700 (PDT)
Received: from alln-iport-6.cisco.com (alln-iport-6.cisco.com [173.37.142.93]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 42DF03A10BC for <tls@ietf.org>; Thu, 1 Apr 2021 06:08:27 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=6276; q=dns/txt; s=iport; t=1617282507; x=1618492107; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=1K6wFQ8tl6sI3jDiDemtkpjGolOcBcLzF1jDOkfWXYY=; b=AaRxufVZ9/UY5PsjV5Xv6oxlWepMWQF2V8vq8tNnyDeEo3++7J0AIIQ4 Pjnd722Dml8eHI5RgxOJNmA/b+NIYK3/2CdW7W63ABDe7IT22qh0Ek1ct DCBqASmIBQQQGpUmT/uP40jUSWLajZSTtYNJpGWBlKsZ0WfzQKiPzqqB/ A=;
X-IPAS-Result: A0DlAQAmxWVgmJldJa1aHAEBAQEBAQcBARIBAQQEAQGCEIEjMFF+WjYxCoQ4g0gDhTmdEoR1glMDVAsBAQENAQEoCgIEAQGEUAIXgWQCJTgTAgMBAQEDAgMBAQEBAQUBAQECAQYEFAEBAQEBAQEBhjYNhkUDAyMKEwEBMAcBDwIBCD8DAgICMBQRAgQBDQUIgmkBgX5XAy8BDqAAAoofd4EygwQBAQaBMwGDXRiCEwMGgTmCdoQHAQGCWYNyJhyBSUKBVYJZPoJgAoFgK4JpNYIrgWlPekMQdGmVGodmnlcKgwmJX5M0g0uhHpUQgg6JV5JUhGECAgICBAUCDgEBBoFrIYFbcBU7gjUBATJQFwINjh8Zg1eFFIVFczgCBgEJAQEDCXyMPAGBDgEB
IronPort-PHdr: A9a23:EVa8RhH47Qmx1nWoUGLcgp1GftIY04WcBSYc94YnhrRSc6+q45XlO gnF6O5wiEPSNa3U7vtFj6zdtKWzEWAD4JPUtncEfdQMUhIekswZkkQmB9LNEkz0KvPmLklYV MRPXVNo5Te3ZE5SHsutaFjbo3n05jkXSV3zMANvLbHzHYjfx828y+G1/cjVZANFzDqwaL9/N lO4twLU48IXmoBlbK02z0ihnw==
IronPort-HdrOrdr: A9a23:LqmhW6PpBHXAI8BcT5Px55DYdL4zR+YMi2QD/3taDTRIb82VkN 2vlvwH1RnyzA0cQm0khMroAsi9aFvm39pQ7ZMKNbmvGDPntmyhMZ144eLZrQHIMxbVstRQ3a IIScdDIfX7B1RikILe6A63D94vzLC8gd+VrM31pk0dKj1CQadm8gt/F0K/Gkp5WAFJCfMCZe Shz+BAoCetfmlSU9SjChA+Lqb+jvDotLajWx4JABY79BKD5AnJ1JfWGwWVty1uKA9n7qwl9Q H+4mnEz4Wl98q20xrNk1LUhq4m5OfJ7vtmKIiyhtMOKjPq4zzYJbhJf7GZpjg6rKWOxT8R4a PxiiwtNchy9H/dF1vdyXCGtmWQs0dN11bYxVCVmnflq8DiLQhKdvZpv55TcRfS9iMbzbdB+Z 9LxG6Qut52Ch7NjU3GlqD1fixqjUa9rD4el/cShRVkIPIjQYJWxLZvmH99IdMlJmbX+YonGO 5hAIX3//BNa26XaHjfoy1G3MGsdm5bJGbHfmEy/uiulxRGlnFwyEUVgOYFmG0byZ47Q55Yo8 zZL6VTkq1URMN+V9M/OM4xBe+MTkDdSxPFN2yfZX79ErscBn7Lo5nrpJI4+f+tY55N6Jcpgp zOXBd5uAcJCgDTIPzL+KcO3gHGQW27Uzio4NpZ/YJFtrr1Q6euPjaETFwojsu8s/QSCsDWQJ +ISdZrKs6mCVGrNZdC3gX4VZUXA2IZStcpttEyXE/Los+jEPysisXrNNLoYJb9GzctXW3yRl EZWiLoGclG5ke3HnvxgB3bXWLxalXylKgAVpTyzqw28swgJ4dMug8ahRCS/ceQMwBPtaQwYQ 95O7PokqSyoGGs5mbW52B1Oh5QZ3wlpYnIYjdvn0snIkn0ebEMt5G0YmZJxkaKIRd5UofLCg JFvk92/qi2NpSUwignB7ucQzunpkpWgEjPY4YXm6WF68ugR4gxCYw+XrdtUS/REQZupApsoG BfSQMNS0PFDAnygaG9gJF8PpCGS/BMxCOQZe9dszb2qFiVr8BHfAprYxeeFeqsxTsIaxURrF tr6KMbiKeHgl+UWBsCqdV9FkZNZmSRCK9BFyKfauxv6+vWUTA1a3uWjjqHjBx2XWzm+ywp9z HcBBzRX+3XCVxAvX0d6ILWyRdfc2WQeF8YUAEhjaR0CXnGtnFv0eWCe6q01C+LZkEfx/wGWQ u1Egc6M0dgwcu62wWSnyvHHXI6xo82NuiYF7g7darPs0ndZbGghOUDH/VO+oxiO82ruugXUf iHcwv9FkKyN8o5nwiUrG0iIi96tT0tlu7pwgTs6Cy90GQkCfTfZFRgSLdzGaDX00H0A/KJ2o 5+l9Q7oK+5NXjwcMePzeXPdCFYQymj11KeXqUts9RZrKgyvLx8E93SVibJzmhO2FE7IN3vnE 0TTaxn6Nn6S8NSVt1Xfzgc8ksildyJIkduqADwD+MkdVwmjnPQPbqykvL1gKtqBlfEqBr7OF GZ/SEY4uzMWDGb06UGT603OmZbZSEHmTtf1fLHc5eVDgqkd+tOpgXndnC8daJQU6iDF/EbqA 1g79SBgu+QcG751WnrzE9GC7ML93ziR8W4RB+IE6pP9dexPFyXmKuk4MKpll7MOHKGQlVdgZ cAbFAaa8RIlyIrg4I22DWjU6CfmDNRr3JOpTV80kP30oeo4G3HDVhLPA3QjJJRRyRSOBGz/L P42Pnd0m/87jhD0YTCE0kVfsgmIaljcrTK
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="5.81,296,1610409600"; d="scan'208,217";a="712954340"
Received: from rcdn-core-2.cisco.com ([173.37.93.153]) by alln-iport-6.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 01 Apr 2021 13:08:26 +0000
Received: from mail.cisco.com (xbe-aln-004.cisco.com [173.36.7.19]) by rcdn-core-2.cisco.com (8.15.2/8.15.2) with ESMTPS id 131D8Q5j022490 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=OK); Thu, 1 Apr 2021 13:08:26 GMT
Received: from xhs-rtp-002.cisco.com (64.101.210.229) by xbe-aln-004.cisco.com (173.36.7.19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.2.792.3; Thu, 1 Apr 2021 08:08:26 -0500
Received: from xfe-rcd-002.cisco.com (173.37.227.250) by xhs-rtp-002.cisco.com (64.101.210.229) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Thu, 1 Apr 2021 09:08:24 -0400
Received: from NAM11-CO1-obe.outbound.protection.outlook.com (72.163.14.9) by xfe-rcd-002.cisco.com (173.37.227.250) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.792.3 via Frontend Transport; Thu, 1 Apr 2021 08:08:24 -0500
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=TkFNJLhzAkhw/BpguK8P91dhrKNNA7bQHi2cs5rB358DmsAgMtxVsytTRZMLHffihVdyn8prQWGpOAu5wpaXcDXACASNacx7SuYveXtbMQL6LjQoqluwgWMSYkWAYwbIc+sYuPEtopg0zO9qKq9c4Xs6FN9lMHbxM1hHYIVPUyw7bzxalau3co6gJHGOmpEaX7LWWpJ2wPY5BfvydLmYzmd7pzFXVFb/8ScUbjt9R3svibQ7rT//E/QFQTb2rPWyuZc2C1YF9up02yKnRzri3csII+4K9ZuQXccfO86evj2Vcvhi+quQ11IYEtdS8VFX/AOS7yZskotm/YX1c0CFHg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=1K6wFQ8tl6sI3jDiDemtkpjGolOcBcLzF1jDOkfWXYY=; b=Gh9+78ldaOnmkIiIX70gfHgxBi4tYQC3N4u34TPkX7v01PO5bSQ+Dt7YoAd2KfGbxaz57YyU4qmEdty6702mrpIW+eWhBn4EsK/Ui+0cnhIpjU/HlAzMJn9WdAcP+bIp9HfPQy3hCRUuIJidwgOJJ0LQ3q4mUtbe65m1Rq2erLwvpib6O4UfQh1PNHVrQyNpMDK2LRq6EADGNge4p7UPAtB9uE5gQ5DMbrjkgJM2eZLeYT9ndbHBJLTD5X6WiI9xODPfORn3KxI+q+CaM+DmUL35iSNq8/Dy26+cr6/Te6lW2nfsRRLqBCyMwB6t1urFD+hCYsrNfSWT1HiPsD/EGQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=1K6wFQ8tl6sI3jDiDemtkpjGolOcBcLzF1jDOkfWXYY=; b=nLrf4Q7e3drwXwx75pbmTs5jNLBdFCjhVshjMc0gCEmtZIqDO/IXPg1NP3R7i3u65p22pZifo/00qSjDmR0WNaRCTAVam5KpfGtH3GTRCWrjj1ztQcLMStBWia21MXEntuzP7tFE079VgydTryItO3BBK2MPhhcRZ5HCu9rHgDs=
Received: from BN7PR11MB2641.namprd11.prod.outlook.com (2603:10b6:406:b1::25) by BN6PR1101MB2275.namprd11.prod.outlook.com (2603:10b6:405:54::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3999.26; Thu, 1 Apr 2021 13:08:23 +0000
Received: from BN7PR11MB2641.namprd11.prod.outlook.com ([fe80::4543:b45a:9f32:bde0]) by BN7PR11MB2641.namprd11.prod.outlook.com ([fe80::4543:b45a:9f32:bde0%7]) with mapi id 15.20.3977.033; Thu, 1 Apr 2021 13:08:23 +0000
From: "Scott Fluhrer (sfluhrer)" <sfluhrer@cisco.com>
To: Rob Sayre <sayrer@gmail.com>, Joseph Salowey <joe@salowey.net>
CC: "<tls@ietf.org>" <tls@ietf.org>
Thread-Topic: [TLS] TLS Opaque
Thread-Index: AQHXJefeYlISU8WCU0mK3644DpA2X6qfFZUAgACN0sA=
Date: Thu, 01 Apr 2021 13:08:22 +0000
Message-ID: <BN7PR11MB2641D0ECFF0E5C95D8DFD167C17B9@BN7PR11MB2641.namprd11.prod.outlook.com>
References: <CAOgPGoBVgnD=s7+DTxsYibvDwe6njJJE=ioeTwxqgSAyF_gEBw@mail.gmail.com> <CAChr6Sz+6a0Mf8deg_r_4V833ZrCtM9oymAsV-5mA0cEhpT6mw@mail.gmail.com>
In-Reply-To: <CAChr6Sz+6a0Mf8deg_r_4V833ZrCtM9oymAsV-5mA0cEhpT6mw@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: gmail.com; dkim=none (message not signed) header.d=none;gmail.com; dmarc=none action=none header.from=cisco.com;
x-originating-ip: [173.38.117.73]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 8092293b-80c4-4c44-4822-08d8f50f3acf
x-ms-traffictypediagnostic: BN6PR1101MB2275:
x-microsoft-antispam-prvs: <BN6PR1101MB22753E957E1BC681BE3183CCC17B9@BN6PR1101MB2275.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BN7PR11MB2641.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(396003)(376002)(366004)(346002)(136003)(39860400002)(8936002)(8676002)(52536014)(186003)(7696005)(33656002)(110136005)(71200400001)(55016002)(4744005)(26005)(83380400001)(9686003)(166002)(86362001)(316002)(478600001)(966005)(66946007)(4326008)(38100700001)(6506007)(53546011)(66446008)(64756008)(66556008)(66476007)(76116006)(5660300002)(2906002); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_BN7PR11MB2641D0ECFF0E5C95D8DFD167C17B9BN7PR11MB2641namp_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BN7PR11MB2641.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 8092293b-80c4-4c44-4822-08d8f50f3acf
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 Apr 2021 13:08:23.1433 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: ge/loHnMmLL7sKL//VPq7YKc0op2LUC5rzw12uZHak8ASLGfg89YhMXKn285ZlX0HqAN6gk1SeSsXZzFYGxznw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN6PR1101MB2275
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.36.7.19, xbe-aln-004.cisco.com
X-Outbound-Node: rcdn-core-2.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/6jvNPvAhOo6FgmN9ct2ZPTYm0Lw>
Subject: Re: [TLS] TLS Opaque
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 01 Apr 2021 13:08:35 -0000

On Tue, Mar 30, 2021 at 9:39 PM Joseph Salowey <joe@salowey.net<mailto:joe@salowey.net>> wrote:

There is at least one question on the list that has gone unanswered for some time [1].

[1] https://mailarchive.ietf.org/arch/msg/tls/yCBYp10QuYPSu5zOoM3v84SAIZE/

I've found most of the OPAQUE drafts are pretty confusing / incorrect / or typo'd when it comes to lines like these. Describing these calculations seems difficult in ASCII, so I don't fault anyone for making mistakes here. The authors have also been pretty responsive in adding test vectors and such.

If the answer is “it’s a typo”, that’s fine – I agree that RFCs are a horrid format for expressing equations.  However, it would be good if there were to state what is the correct relationship here (and possibly update the draft with the corrected versions)