[TLS] Re: 2nd Working Group Last Call for The SSLKEYLOGFILE Format for TLS
"Bellebaum, Thomas" <thomas.bellebaum@aisec.fraunhofer.de> Thu, 20 February 2025 13:25 UTC
Return-Path: <thomas.bellebaum@aisec.fraunhofer.de>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6F136C151538 for <tls@ietfa.amsl.com>; Thu, 20 Feb 2025 05:25:47 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.305
X-Spam-Level:
X-Spam-Status: No, score=-4.305 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H5=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=aisec.fraunhofer.de header.b="Rh5mJ3As"; dkim=pass (1024-bit key) header.d=fraunhofer.onmicrosoft.com header.b="X3FuxZlP"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id lNnq9aEBwSUt for <tls@ietfa.amsl.com>; Thu, 20 Feb 2025 05:25:42 -0800 (PST)
Received: from mail-edgeMUC221.fraunhofer.de (mail-edgemuc221.fraunhofer.de [192.102.154.221]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 29FEAC14CE36 for <tls@ietf.org>; Thu, 20 Feb 2025 05:25:34 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=aisec.fraunhofer.de; i=@aisec.fraunhofer.de; q=dns/txt; s=emailbd1; t=1740057942; x=1771593942; h=from:to:subject:date:message-id:mime-version; bh=u8WCZb+wvR59J78FL+34Dskr+Lx3HexvJCBalptWzxw=; b=Rh5mJ3AsrzCjdAJfc8AzYnFP4WIA+elHnapS+h0VI8nnC/n9xOAeRaFC 0vLmXDw45c9qnJArN1r+ALqoddyLeGTmEkE5HKL9xA+9EEIMx04Bn9AB1 LJ6K3DaZYSgp53Ig8S7kfgU4ISdPyfBCfZ4L/wY1xfMhx93/DbZofzW/J DKEOaQRuNMkEZ/ZfF530KFmh+irT9ZnEKHlooxx1LXO2SjJ6wasHGYvyi TuAOLi73Uuwx69i6sDac/cqx7SL5PVzYQ/jlgD0cXjWHm6ugiv7ItKU0o 89lCbIa9T3hOatjW+F9GhqTZVHP7pR8dq8NYgridakYzzEIlK/eN7Tasz Q==;
X-CSE-ConnectionGUID: 5oDlwr1BTjKhxCzLkBKrVg==
X-CSE-MsgGUID: xUGUIDlaR9upt6GIkyONmQ==
Authentication-Results: mail-edgeMUC221.fraunhofer.de; dkim=pass (signature verified) header.i=@fraunhofer.onmicrosoft.com
X-IPAS-Result: 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
IronPort-PHdr: A9a23:PDfiVhd4HG4HWCvREoRHtHOplGM+4d/LVj580XJao6wbK/fr9sH4J 0Wa/vVk1gKXDs3QvuhJj+PGvqynQ2EE6IaMvCNnEtRAAhEfgNgQnwsuDdTDDkv+LfXwaDc9E tgEX1hgrDmgZFNYHMv1e1rI+Di89zcPHBX4OwdvY+PzH4/ZlcOs0O6uvpbUZlYt5nK9NJ1oK xDkgQzNu5stnIFgJ60tmD7EuWBBdOkT5E86DlWVgxv6+oKM7YZuoQFxnt9kycNaSqT9efYIC JljSRk2OGA84sLm8CLOSweC/FIweWUbmRkbZmqN5hGvQ8fOmRnw9fVj4nTLH5KmY5R3AmiO9 KRxCzv40wcKJyAb20vejtRss7BLv0fywn43ydvkO6+IJMh6Ror7JI5GSlBjAOlaR315E5iHb IEhJccjBuRKt5PQ9l4llECSBirvVOjd5DVQ3U/o0LUV788bNS70whQMB5ULgmXftpKybooiT 8W7x5fLlDnmS6N23BX44azaNRBmm+CvRYszY8zd0UU3R1nMinSKqtD0OTOo3b4A8ES2svpNc OOxpV416F1ymiGw+f01i4zLoKJS9XnPxR16mbxlLIeSUFFfTf/xQ9NA8iCAMI1uRdk+Bntlo zs+1ugesIWgL0Diqbwizh/bLvGLfIWt3zm5Dr/XLy1xmXRlf7yynVC+/Bvoxu79U5ys2U1R5 mpek9bKv2wQzRGb9MWdS/V880vgkTaC3gze8KdFdGg6j6PGLZ4mzLMq0J0VtEXIBCjtn0vqy qSRcy0Z
X-Talos-CUID: 9a23:eFILD2CzwJlDpE/6E3Rg2EoLAJkPTn/+zGf7MWu7I0VzdrLAHA==
X-Talos-MUID: 9a23:uLMilgwTmaOcILx/LVA5QVBRJYOaqLSTJ30svZEPgZiZLTAuFBaenRORR7Zyfw==
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="6.13,301,1732575600"; d="p7s'346?scan'346,208,346";a="7775433"
Received: from mail-mtamuc217-intra.mx.fraunhofer.de (HELO mail-mtaMUC217.fraunhofer.de) ([10.226.5.39]) by mail-edgeMUC221.fraunhofer.de with ESMTP/TLS/TLS_AES_256_GCM_SHA384; 20 Feb 2025 14:25:31 +0100
X-CSE-ConnectionGUID: A33A/HIdTpW9NjAU1cQbgg==
X-CSE-MsgGUID: eT/w76JCQAiI33K0MWDZsQ==
IronPort-SDR: 67b72d4b_uppbS5KlRD5sbUhJ9211GFpf7fKezP80ZjQMtkRdrEWtRaQ PrIP7o/rhg/+mVe+tYohBN8h8bN0jezgYMVlO1g==
X-IPAS-Result: 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
IronPort-PHdr: A9a23:Jap8ih/CpS2j2P9uWXK9ngc9DxPPxp3qa1dGopNykalHN7+j9s6/Y h+X7qB3gVvATYjXrOhJj+PGvqyzPA5I7cOPqnkfdpxLWRIfz8IQmg0rGsmeDkPnavXtan9yB 5FZWVto9G28KxIQFtz3elvSpXO/93sVHBD+PhByPeP7BsvZiMHksoL6+8j9eQJN1ha0fb4gF wi8rwjaqpszjJB5I6k8jzrl8FBPffhbw38tGUOLkkTZx+KduaBu6T9RvPRzx4tlauDXb684R LpXAXEdPmY56dfCmTLDQACMtR5+Gm8WxwcYPCP35lLlQK2s4wml5sRZm3LGEdb1V/MQSW+C4 rd1ajTCgSMfKwEr4H6C2akSxKgOkEmPugxNx7b9RtjIaPVEXP3ydsNLfXtaZcVbeQZsILi+f ZMVIrsEFt8Dg4re5AsFnzW0HVKcGu735QNjvFvZ77Mi//xmFDPX1xZnWIgjgGrxot7LN/4ed MTl7KzqyDznfbRWng3sy5DxMQInremAReIqeM7w00pzBgXFs17KpM/JEm6F+8EMrUar/ak8V tq2lFEdsgB0oB6PgfgFgbnxhdsvmlme3z1m5KoUcI7wWAt6e9miCJxKq2SAOpBrRt93W2hzo 3VSItwuvJe6eG0P1J0C+jWFMqPBfZKB/xTjU+icO3F0iSEtdLG+gkOq+FO7gq3nV8ay2UpXt CcNjNTWt34M2hCSosiKQ/dw5AGgjB6BzQnO7OFDL00u063dLp8q2LkrkZQP90/EG0fL
IronPort-Data: A9a23:OG6tmqmb7YDOtV21fjo+C5Do5gy1I0RdPkR7XQ2eYbSJt1+Wr1Gzt xIaCmrUM67YajehLdx2YYjl8E1SvJaHnIBkHQU5pXowQVtH+JHPbTi7wugcHM8ywunrFh8PA xA2M4GYRCwMZiaB4Erraf659yUUOZigHtLUEPTDNj16WThqQSIgjQMLs+Mii+aEu/Dga++2k Y20+pa31GONgWYubzpOsfrb8XuDgdyr0N8mlgxmDRx0lAKG/5UlJMp3Db28KXL+Xr5VEoaSL 87fzKu093/u5BwkDNWoiN7TKiXmlZaLYGBiIlIPM0STqkAqSh4ai87XB9JAAatjsAhlqvgqo Dl7WTxcfi9yVkHEsLx1vxC1iEiSN4UekFPMCSDXXcB+UyQqflO0q8iCAn3aMqUxob1eRkFv+ cAAF2ErbDm+3umPyr20H7wEasQLdKEHPasEv214izzJBvZgT4rKXqPK4tFVxnE8i6iiH96HO pFfOGUpNUuRJUQVZT/7C7pm9AusrmX/dDhRsxSfqK4z7mLa0QlZ2bn2PdGTdMaDWMNVmUiVv CTK8gwVBzlDaozGmGbUrxpAgMfCoWTkB9wwP4SR998x237L41M/OgYvAA7TTf6RzxTWt8hkA 1AQ4QIvoLQ8skuxQbHAswaQ+SPf+09DHoMPQqhjsl7L1K+S6ECXHGEZSD5GZtE88sM7LdA36 mK0cxrSLWUHmJWbU3uA8LeToz6ofy8TKG4JfygfSgUZpdLkpekOYtjnF76PyYbs1oKlSwLji SuHtjY/jLg1hMsGnffzt1Pejj7m4tCDQgcp70+FFiio/yFoVr6DPoaI0Fn86eofDYC7SlLag mMItfLD588zDLaMthe3fsMzIJ+T6cy4bQLs2WxUI8F59hCG2WKSQoRL0TQveGZrKpklfBHqU m/yuCRQxsdaEyq2XJ9SfrO0Nd8g4pbhJOTbSsn7QMJFOKZzUAq17RBeW1OZ8DHoongNjJMQB Ja/WuSvBEY8Fq5I4meXReAc8Llz3QE45zrZaq7axiSd84i1RSCqW4ZeFWCRf8YF7K+giyfEw eZ1bsel5U1Wb7zjX3Px74UWE2EvEVE6IpLH8+psae+JJ1tdKlELUvP+7+soRN14ov5ziOzNw 3CaX31YwnrZgVnsC12DSlJnWYPVcadPl1AJFg1yAg/wwFkmW5il04kHfZhufbUHyv1q/cQpc 9Y7Ife/EtZ9YRWZ3Q8CbKvNjp1oLzWqogOsAxCLQhYCe7xYegiY3eO8IyXO8nEVAzuVpPkOh eSq9jnmTKopQyVgC8fra8yT8W6hgEhFmMxOchvJBvJxZHTT9JNbLn2tr/0vfOAJBxbx5hqb8 Ae0Ex0on/bpprFpwYPGmJKCjYelLLZ5FBBoG2LasLWEDgjB32+Z2YQbev25TTPcc2LV+auZe uReyc/nAsAHhFpnt4ldEa5h66A19//DhuZ94Fx/PXPpa1+LNOtREkOe15MSipwXl65rhwSmf 2mupP9YAOytE+H4GgczIAEFULyy5csMkGOP0cVvcVTI3w4pzr+pSk4IAgKtjhZaJ75LMI8I5 +ctlcoVyg6ngCoRLde0oXFIxluIM0A/ff0rhrMCDK/vrzgb+FVITJjfKy3xubWkSdFHNGs0K T612ovGoZlhxXT5TnliLkiVgNJhhqkPtitak34EBVCCweTeitENgRZ+zDUQTyZu9Cth7d5dA GZQGndOFf28xAsw3MlndEKwKj5FHyycqxDQyUNWtWj3THuId23qLU9lMMnc4HEp1n9tewZA9 p6myVfVbyrTU+/p1XEMW2pgme3SfeJs/yKTnfKXPtm3MKQ7RRHHgaaeQ3UChDW6IME2hXTCm /Jg09hxWJ3FKQo7iZAyJNiG5IQ1SR6/O21JR896zp4JBW3xfDKT2yCEDUK6audhBqXt3xejK spMIslvaUyP5ByWpGpGOZ9Wcq5GovE5wfEjJJXpHDcimJmCpGNLtJnwyHDPtFUzSY8zrfdne 5LjTBPcIGm+nnAOpnTsqvNDMW+GYdUpQg3w8eS20ecRHaI4r+BeXhAu44SwokmqHlNrzzCMs CPHQp3m/eho5IBvvonrS4FoJQG/L/HtX+WpriG3lflzbu30DMSfjDNN92HbPDlXM4VICp4z3 f6IvcXs1UzIgKcuXiqL09OdHq1O/oOpUPARLsvzK2JAkDCfXNP3pSEO4H28NYcDheY1ChNLn OdkQJDYmQYpZupg
IronPort-HdrOrdr: A9a23:JrYkzao/Lon+ZaFH6Jgs6d0aV5ojeYIsimQD101hICG9E/b0qy nKpp9w6faaskdzZJheo6HkBEDtexzhHP1OkOss1NWZPDUO0VHARL2KhrGC/9SPIUPDHnQ078 tdmqFFebnNMWQ=
X-Talos-CUID: 9a23:/aH+M2xJd/LkGYFzvPDTBgU9QZsMNV38wEvIHB6eC09UEbasQ1CfrfY=
X-Talos-MUID: 9a23:bq5aeg0emzf3OFnaAmv0fj5X5zUj7pjpFx9Ts74/ksilbndTYxKioAase9py
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="6.13,301,1732575600"; d="p7s'346?scan'346,208,346";a="16819495"
Received: from 153-97-179-127.vm.c.fraunhofer.de (HELO smtp.exch.fraunhofer.de) ([153.97.179.127]) by mail-mtaMUC217.fraunhofer.de with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 20 Feb 2025 14:25:31 +0100
Received: from XCH-HYBRID-04.ads.fraunhofer.de (10.225.9.46) by XCH-HYBRID-03.ads.fraunhofer.de (10.225.9.57) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.1544.11; Thu, 20 Feb 2025 14:25:30 +0100
Received: from BEUP281CU002.outbound.protection.outlook.com (40.93.77.4) by XCH-HYBRID-04.ads.fraunhofer.de (10.225.9.46) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.1544.11 via Frontend Transport; Thu, 20 Feb 2025 14:25:30 +0100
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=HPaZIa9kinq+YyHI8ATVmlrg4wfsllHtR8iwwfF212u5oEtb50LCyC3fqhPuam6Cm9yrlF369XrVlJsAeagHOI7wn7a+2h4ZI+6ZlhqX5LjUZhCfKwHCYOEvXEbpuxitgZ3vJvvTST9v0GbozVLgmjjFuXDyXsf6D1Umm+Ik4EPUJ/kGNjdp90CYSQCVqS5Ze5dVDLBHO1WaroFEwTnF4E8onXhyTisgzi1USzdLc6AtORwG5mG1yizv3J8q29UtHvAIeCjYYAM0+qgei8RLE5sYOkAITUp1UZMt4V/TToG5AIaEO8BlrcUSu/bhB8Qn3h04VZLGPqo0Yj//UQ8Wzw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=u8WCZb+wvR59J78FL+34Dskr+Lx3HexvJCBalptWzxw=; b=EWzF0WKprXSZNzhvfghNsj9zDHNoxPFWCpvJgGKkTlLcR8NhBQ7YNcRPQ5+0Ax6hI32ia2F8avDifmtHde6dvEW3ALNxRPj/wjYXESiNMeggzydIFYIlakhtLwy2Leug1z7pkHJRp/vKTT+SE/0AU3ujMDOTmiMfF4Ome/XprvOrvAypHdy20OVheaA0694eq/rgpgDDp9I+VhmAV0EE3a45q4D3pwMqy945cg1Vkc6HtTx7mgxI6Vlw2ckKpuR/NYYdBML5pIOknb7Q/a9VxZtOQSNILqfWMghzMZYaWaMfn2L0IpD4A1JmwZ/oow2fQum1dQ4ScgHhhL8bZMaVUw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=aisec.fraunhofer.de; dmarc=pass action=none header.from=aisec.fraunhofer.de; dkim=pass header.d=aisec.fraunhofer.de; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fraunhofer.onmicrosoft.com; s=selector2-fraunhofer-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=u8WCZb+wvR59J78FL+34Dskr+Lx3HexvJCBalptWzxw=; b=X3FuxZlPAN154gRJ6Gcx9PysSkbFBEJSjzprE9mCQ3DkK+8cZFbp3XvepGTCRLGZvpDp/mZycr//2EXvMfcVk1dML8HmJmaLz/h/RyKpQ+zndpdp82alIrk4ynhUc2e+DE5xEMivFXz+4kPqwWRqimjNH/WAcXPk1R8a2BpwLDI=
Received: from FR1PPF809320EF6.DEUP281.PROD.OUTLOOK.COM (2603:10a6:d18::f66) by FR2PPFE52B53818.DEUP281.PROD.OUTLOOK.COM (2603:10a6:d18:2::a0) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.8466.16; Thu, 20 Feb 2025 13:25:28 +0000
Received: from FR1PPF809320EF6.DEUP281.PROD.OUTLOOK.COM ([fe80::c703:bde1:d68c:b748]) by FR1PPF809320EF6.DEUP281.PROD.OUTLOOK.COM ([fe80::c703:bde1:d68c:b748%3]) with mapi id 15.20.8466.015; Thu, 20 Feb 2025 13:25:28 +0000
From: "Bellebaum, Thomas" <thomas.bellebaum@aisec.fraunhofer.de>
To: "tls@ietf.org" <tls@ietf.org>
Thread-Topic: [TLS] Re: 2nd Working Group Last Call for The SSLKEYLOGFILE Format for TLS
Thread-Index: AQHbg5royujFNt4KJUWNbklaa/2f/A==
Date: Thu, 20 Feb 2025 13:25:28 +0000
Message-ID: <4d29bfa387555c730ef17723322e4ff223d5aa33.camel@aisec.fraunhofer.de>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: FR1PPF809320EF6:EE_|FR2PPFE52B53818:EE_
x-ms-office365-filtering-correlation-id: 82ad355d-95a6-4ce6-3a24-08dd51b20af7
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|376014|1800799024|366016|4053099003|38070700018;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:FR1PPF809320EF6.DEUP281.PROD.OUTLOOK.COM;PTR:;CAT:NONE;SFS:(13230040)(376014)(1800799024)(366016)(4053099003)(38070700018);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/signed; micalg="sha-256"; protocol="application/pkcs7-signature"; boundary="=-k+rQ2Jg2GqgdzsZJYCzZ"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: FR1PPF809320EF6.DEUP281.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 82ad355d-95a6-4ce6-3a24-08dd51b20af7
X-MS-Exchange-CrossTenant-originalarrivaltime: 20 Feb 2025 13:25:28.6398 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: f930300c-c97d-4019-be03-add650a171c4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 6sQurVe+zcZAL0vIxchMMyK+3B2fQQuK+8w32wjnSx15/yNlG0fse8M6y58QYxAbBKqrM9U8gFqtFTQ0ZkUnP78WmVqUeqEK9YrK8S4twSBkjG7XR+tgG7U1+Atz7ZR0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: FR2PPFE52B53818
X-OriginatorOrg: aisec.fraunhofer.de
Message-ID-Hash: 3LGPQCLF6LH2IB6HRJ7UPER43NGLI3WD
X-Message-ID-Hash: 3LGPQCLF6LH2IB6HRJ7UPER43NGLI3WD
X-MailFrom: thomas.bellebaum@aisec.fraunhofer.de
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: 2nd Working Group Last Call for The SSLKEYLOGFILE Format for TLS
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/F4HkcLmrkV0fpSUiSz7Il4lIkKk>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>
> I think we should abandon this effort and not publish. > > When initially proposed this was supposed to be documenting a > deployed reality. I could just about hold my nose with that, > but adding in ECH (for which key exfiltration is not currently > deployed, nor seemingly needed) and the IANA considerations make > this much more unacceptable. > > While I expected to be in the rough for the initial proposal I > do hope others find this as unacceptable as I do and we don't > publish. > > Including ECH here is IMO not necessary - there is no history > of needing that for debugging purposes so adding it based on > speculation is IMO wrong and a fatal error. > > This is now extensible (via IANA specification required) which > is a problem as that means anyone can likely define new ways > to exfiltrate secrets from TLS implementations without any WG > overview. That IMO is another fatal error. > > Less importantly, but still substantively, the draft does not, > but should, recommend that this feature only be available via > conditional compilation (where available) and not be part of > any standard library or other release. If publishing, we should > be aiming for the strongest possible implementation guidance > in that respect. > > Thanks, > S. It seems to me that there are multiple concerns about the real-world (rather than just technical) implications of this specification. Might I suggest polling for opinions regarding the concerns at the IRTF working groups concerned with affected real-world implications? Concretely, according to their RG charters: - HRPC aims "To expose the relation between protocols and human rights, with a focus on the rights to freedom of expression and freedom of assembly." - Similarly, PEARG aims to "understand the privacy implications in a wider context", although this may refer mainly to the specific privacy enhancing technologies intended by the RG members. Best, TBB -- ``` M.Sc. Thomas Bellebaum Applied Privacy Technologies Fraunhofer Institute for Applied and Integrated Security AISEC Lichtenbergstraße 11, 85748 Garching near Munich (Germany) Tel. +49 89 32299 86 1039 thomas.bellebaum@aisec.fraunhofer.de https://www.aisec.fraunhofer.de ```
- [TLS] 2nd Working Group Last Call for The SSLKEYL… Sean Turner
- [TLS] Re: 2nd Working Group Last Call for The SSL… Salz, Rich
- [TLS] Re: 2nd Working Group Last Call for The SSL… David Benjamin
- [TLS] Re: 2nd Working Group Last Call for The SSL… Salz, Rich
- [TLS] Re: 2nd Working Group Last Call for The SSL… David Benjamin
- [TLS] Re: 2nd Working Group Last Call for The SSL… David Benjamin
- [TLS] Re: 2nd Working Group Last Call for The SSL… Salz, Rich
- [TLS] Re: 2nd Working Group Last Call for The SSL… Sean Turner
- [TLS] Re: 2nd Working Group Last Call for The SSL… Salz, Rich
- [TLS] Re: 2nd Working Group Last Call for The SSL… David Benjamin
- [TLS] Re: 2nd Working Group Last Call for The SSL… Stephen Farrell
- [TLS] Re: 2nd Working Group Last Call for The SSL… Bellebaum, Thomas
- [TLS] Re: 2nd Working Group Last Call for The SSL… Ben Smyth
- [TLS] Re: 2nd Working Group Last Call for The SSL… Bellebaum, Thomas
- [TLS] Re: 2nd Working Group Last Call for The SSL… Stephen Farrell
- [TLS] Re: 2nd Working Group Last Call for The SSL… Salz, Rich
- [TLS] Re: 2nd Working Group Last Call for The SSL… Bellebaum, Thomas
- [TLS] Re: 2nd Working Group Last Call for The SSL… Ben Smyth
- [TLS] Re: 2nd Working Group Last Call for The SSL… Bellebaum, Thomas
- [TLS] Re: 2nd Working Group Last Call for The SSL… Andrei Popov
- [TLS] Re: 2nd Working Group Last Call for The SSL… _ _
- [TLS] Re: 2nd Working Group Last Call for The SSL… Martin Thomson
- [TLS] Re: 2nd Working Group Last Call for The SSL… Stephen Farrell
- [TLS] Re: 2nd Working Group Last Call for The SSL… David Adrian
- [TLS] Re: 2nd Working Group Last Call for The SSL… Alicja Kario
- [TLS] Re: 2nd Working Group Last Call for The SSL… Muhammad Usama Sardar
- [TLS] Re: 2nd Working Group Last Call for The SSL… Aaron Zauner (azet)
- [TLS] Re: 2nd Working Group Last Call for The SSL… Arnaud Taddei
- [TLS] Re: 2nd Working Group Last Call for The SSL… Achim Kraus
- [TLS] Re: 2nd Working Group Last Call for The SSL… S Moonesamy
- [TLS] Re: 2nd Working Group Last Call for The SSL… Alicja Kario
- [TLS] Re: 2nd Working Group Last Call for The SSL… Alicja Kario
- [TLS] Re: 2nd Working Group Last Call for The SSL… Aaron Zauner
- [TLS] Re: 2nd Working Group Last Call for The SSL… Arnaud Taddei
- [TLS] Re: 2nd Working Group Last Call for The SSL… Stephen Farrell
- [TLS] Re: 2nd Working Group Last Call for The SSL… Arnaud Taddei
- [TLS] Re: 2nd Working Group Last Call for The SSL… Ben Smyth
- [TLS] Re: 2nd Working Group Last Call for The SSL… Sean Turner
- [TLS] Re: 2nd Working Group Last Call for The SSL… Christian Huitema
- [TLS] Re: 2nd Working Group Last Call for The SSL… Bellebaum, Thomas
- [TLS] Re: 2nd Working Group Last Call for The SSL… Aaron Zauner
- [TLS] Re: 2nd Working Group Last Call for The SSL… Martin Thomson
- [TLS] Re: 2nd Working Group Last Call for The SSL… Aaron Zauner
- [TLS] Re: 2nd Working Group Last Call for The SSL… Arnaud Taddei
- [TLS] Re: [EXTERNAL] Re: 2nd Working Group Last C… Yaakov Stein
- [TLS] Re: [EXTERNAL] Re: 2nd Working Group Last C… Andrei Popov
- [TLS] Re: [EXTERNAL] 2nd Working Group Last Call … Alicja Kario
- [TLS] Re: 2nd Working Group Last Call for The SSL… Salz, Rich
- [TLS] Re: 2nd Working Group Last Call for The SSL… Ilari Liusvaara