Re: [TLS] Review of PR #209

Andrei Popov <Andrei.Popov@microsoft.com> Tue, 04 August 2015 17:04 UTC

Return-Path: <Andrei.Popov@microsoft.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 232DB1A88FA for <tls@ietfa.amsl.com>; Tue, 4 Aug 2015 10:04:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.002
X-Spam-Level:
X-Spam-Status: No, score=-2.002 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0T3HTSaCutFu for <tls@ietfa.amsl.com>; Tue, 4 Aug 2015 10:04:24 -0700 (PDT)
Received: from na01-bl2-obe.outbound.protection.outlook.com (mail-bl2on0101.outbound.protection.outlook.com [65.55.169.101]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DF5E61A88F4 for <tls@ietf.org>; Tue, 4 Aug 2015 10:04:23 -0700 (PDT)
Received: from BLUPR03MB1393.namprd03.prod.outlook.com (10.163.81.14) by BLUPR03MB1331.namprd03.prod.outlook.com (10.163.80.21) with Microsoft SMTP Server (TLS) id 15.1.225.19; Tue, 4 Aug 2015 17:04:22 +0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:To:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=8mApuG7h+b5KYXmVIn3+w4OTxpaGMUCtWWnmu9Vzlyc=; b=eCWEWYwUDAHg5txR8csq7sfZ0TIgQX8GlDpOmCpOIcYF5uW0wZZ4gSPeq5vDCK+QxT9ps0jJ6rftuR4crzHr7/7CsD5rlzv+Twu2Jurh/uIjfAKFR0ojjaTCoElsG53jG/E5BfIpEx4OB1+kgr6PKJTZ4IyAsgCAQMoOnhhFaLM=
Received: from BLUPR03MB1396.namprd03.prod.outlook.com (10.163.81.142) by BLUPR03MB1393.namprd03.prod.outlook.com (10.163.81.14) with Microsoft SMTP Server (TLS) id 15.1.225.19; Tue, 4 Aug 2015 17:04:21 +0000
Received: from BLUPR03MB1396.namprd03.prod.outlook.com ([10.163.81.142]) by BLUPR03MB1396.namprd03.prod.outlook.com ([10.163.81.142]) with mapi id 15.01.0225.018; Tue, 4 Aug 2015 17:04:21 +0000
From: Andrei Popov <Andrei.Popov@microsoft.com>
To: Martin Thomson <martin.thomson@gmail.com>
Thread-Topic: [TLS] Review of PR #209
Thread-Index: AQHQxuqZE5b0AgbP4UGzDBeqZzcHy537BwWQgAEMEQCAAA3XEA==
Date: Tue, 04 Aug 2015 17:04:21 +0000
Message-ID: <BLUPR03MB1396740D0560D960B16F25DE8C760@BLUPR03MB1396.namprd03.prod.outlook.com>
References: <CABkgnnWtUjH1b3xm_peffNxNpxXE9rudJLJpn1ExNpE7B29AhA@mail.gmail.com> <BLUPR03MB139691C8170B9905BA3905168C760@BLUPR03MB1396.namprd03.prod.outlook.com> <CABkgnnUnvmnHnPx19GJhRg7i=kr3X3iAfUuCaGNxg69-bHr2JA@mail.gmail.com>
In-Reply-To: <CABkgnnUnvmnHnPx19GJhRg7i=kr3X3iAfUuCaGNxg69-bHr2JA@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Andrei.Popov@microsoft.com;
x-originating-ip: [2001:4898:80e8:2::1d2]
x-microsoft-exchange-diagnostics: 1; BLUPR03MB1393; 5:FBpFW91Pxx2y3xeVTkF4qKmnPX++lZ2B5fdoJBed1IEvIpU957yQ6W6vROTD9fwHszjlIzDxoJ6896eUE1Oeto8BYQxM14fZwlZghwNwbGJkyCduoMjICYah0DM1sTysuTYPO56gUEXk+RSeDqDqcg==; 24:hLR1itIt5QiCdAeP7LNs+xMfdpoygV8lk04mHrlAYJxME10CHY+xym+SHE8ASbn9bHeOHd9HqkXU0Re93xApkyuXNp3uJOhMYI1zNZ7SS0Y=; 20:xTfx5EO+O8qi6FA6/gdaS2yuk/gn7FKiwJ9eUQ0ITiK86FaTBNLCZBBROa3Mw/PERiVCd6djpL+vA2kCpb69yg==
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:; SRVR:BLUPR03MB1393; UriScan:; BCL:0; PCL:0; RULEID:; SRVR:BLUPR03MB1331;
x-microsoft-antispam-prvs: <BLUPR03MB1393C1D3D00D6026390A72568C760@BLUPR03MB1393.namprd03.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(108003899814671);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(601004)(2401001)(5005006)(3002001); SRVR:BLUPR03MB1393; BCL:0; PCL:0; RULEID:; SRVR:BLUPR03MB1393;
x-forefront-prvs: 0658BAF71F
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(6009001)(377454003)(13464003)(24454002)(199003)(189002)(51444003)(64706001)(62966003)(77156002)(19580395003)(40100003)(76576001)(46102003)(10090500001)(122556002)(74316001)(86362001)(54356999)(2950100001)(77096005)(68736005)(2900100001)(2656002)(99286002)(102836002)(189998001)(19580405001)(106116001)(106356001)(105586002)(5001860100001)(5001960100002)(50986999)(101416001)(33656002)(92566002)(81156007)(110136002)(5003600100002)(97736004)(5001830100001)(5002640100001)(4001540100001)(76176999)(86612001)(87936001)(5005710100001)(3826002); DIR:OUT; SFP:1102; SCL:1; SRVR:BLUPR03MB1393; H:BLUPR03MB1396.namprd03.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: microsoft.com does not designate permitted sender hosts)
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-originalarrivaltime: 04 Aug 2015 17:04:21.3754 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BLUPR03MB1393
X-Microsoft-Exchange-Diagnostics: 1; BLUPR03MB1331; 2:ED8+pAmO2TewhYWw12oDDYWUmAcHRjboyB4/PPPcdgGMFHGhWQowqNvPWhwyVfB4vqBhEBeOtXRrf7DZ5i9+MLIZimz/2mmB62rp7wzidKZSBQwMsgYNnqDRRGU2XgFsE751MuDwddVzgR+bti/ZScUCN6+8R3Quq2Uv49c3KnM=; 3:R6SsgwdS91LawNSxtLxeAxLEbL6XcdmliM1Tu7py4hYZHoMTlyHjp/c0rZJL0nsNlMPM62X3KYh37iN8R7ztovDDIqPV/7FhSA0waIm0rIt3ibiyjaZ0vKfDK91H1c4HiKSAZXaLtep4X/YLmO66WA==; 25:9ssILiQTDiifMa/5dZI0rzUaBewfYspLvQ9ys5WFVw5+NdoXyCtAgDYd2ifuZlQ5QWfQ+R9ho+HNUpC6AnqDhcvMHsN0VM1ke23E44Bysk+k71JHB9N87KxkXpkcSClD/NAOTqlR1+gS3WIprY/zYZXPe46a5YQMFBJjNKY6gSAQrH5rnneHVMmPWjq0JkSgjHklHHP8HYH+16PsA+yS05LGMZryvNIKI7/wEET+5WTdzuzKl2S4Mz0+JbJbgr3zAZbsjBlBakNB4H87HU/yNA==; 23:ScVHIbtvVTTp0efmhXRbaX1j6DWZkGQW14LFfzb6bLeDf75ZAKa0zxcK0RLt3wQCUtT7h9Zm+M63livhVmr8S4NeOfKdkhRtNAuP9wNXXKHAsU34cSNmHf/KmV3Fp6B3m5rBOzUqSDDtQSIbaeTVII08Qn+1GYX+bkxXgOKXQgPVMf+i9LXCLaPUuwo9lzLBN5SS9PFTmoVYb1wwHZ2/JRigqfs3uw9FhyZeaBAy+uHi60NsUZOwtgZ8DzaZEtT3
X-OriginatorOrg: microsoft.com
Archived-At: <http://mailarchive.ietf.org/arch/msg/tls/INmMIF6RPhXq1-9P2RBqU4t_uis>
Cc: "tls@ietf.org" <tls@ietf.org>
Subject: Re: [TLS] Review of PR #209
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 04 Aug 2015 17:04:29 -0000

I'm not opposed to using a new content type in this way, if folks feel that this makes things better.

Cheers,

Andrei

-----Original Message-----
From: Martin Thomson [mailto:martin.thomson@gmail.com] 
Sent: Tuesday, August 4, 2015 9:13 AM
To: Andrei Popov <Andrei.Popov@microsoft.com>
Cc: tls@ietf.org
Subject: Re: [TLS] Review of PR #209

On 3 August 2015 at 17:21, Andrei Popov <Andrei.Popov@microsoft.com> wrote:
>> use CertificateRequest within the handshake, and the new content type outside of it
>
> Would the client then also use this new content type for Certificate and CertificateVerify messages (when these are sent after the handshake is complete)?

Yeah, I think that's best.