Re: [TLS] 2nd WGLC for Delegated Credentials for TLS

Daniel Migault <mglt.ietf@gmail.com> Thu, 02 July 2020 21:45 UTC

Return-Path: <mglt.ietf@gmail.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6881D3A0BE2 for <tls@ietfa.amsl.com>; Thu, 2 Jul 2020 14:45:51 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hLK2o6CJtzUZ for <tls@ietfa.amsl.com>; Thu, 2 Jul 2020 14:45:49 -0700 (PDT)
Received: from mail-vk1-xa2a.google.com (mail-vk1-xa2a.google.com [IPv6:2607:f8b0:4864:20::a2a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B4E873A0BE0 for <tls@ietf.org>; Thu, 2 Jul 2020 14:45:49 -0700 (PDT)
Received: by mail-vk1-xa2a.google.com with SMTP id d64so6690859vke.4 for <tls@ietf.org>; Thu, 02 Jul 2020 14:45:49 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=Pf8KrFs520HTAxDyHclFToNCMvifqAt/JsjAE943xfU=; b=Gd/pRjuB5sJt+TlbJL4A5DZZvZRzIgcUW1+WCBJwM5OOdpZKEpDfjA7fTvJ2S/P3S7 xUmNGriRz+ekYNoHw4yRkoqW9wJzAHU0sN+v/Qaah0nJZBY4SPl6Bp3Utv56235vDN5K /5OpgAyv9fEPYqoCDFckaoLcQyoE9ib37e/xKr/Ntjk8lNSPT2zaWZinGSrgVnWrvXfi T7FqAGkHrzg1MzfuQpms8klEsJCI84FE76DwAAw9Ek9w6Bd+ZSAKq5/RoPF9C9dDtq7v wWnZHothgzvML0Tw8Vj/go9LGujcRVNcnOBGAeKjsN30kgKUMQ5yDKVKR8ewwoHOqKMK QRDg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=Pf8KrFs520HTAxDyHclFToNCMvifqAt/JsjAE943xfU=; b=VYqUxpmlhICca2mpAirUuAy1wl0b3b+RO4UUd/Y6ffvzDXF4L3PQvtFMz6ZjSd0CEr N2qC2/BpatzE91n5qe6HFQMcT5FtwXv/wJKeNcEfWnyvPZh4c2bMUC7qcAGVrDBp020s gOZBBNWnSgGoqC2HQI57SJJj93uHSkJCZPFnEMS/uGrXZakSKjyhnLPIauHIUPpvrBAl 4xTlu2/bGStlcXBIOconrSUUH7MA8Y4oO51uVLWeFtqpFertqMtbDNMR9+RFNnjat4st a44c3L4iGINqUMZu39dy32XrMNKQUER1u71NLC7M0MfAibQt/onyUndqPIZM2hbUiwZY cEoA==
X-Gm-Message-State: AOAM533kas/q5EgOcHCPzykhBAMqw/0sXnVQNnXBlzIP0ppmjaUsAld/ wKTy9+Wlt8obSvJ2tuTABWtzjHxj7V13GK2zaFA=
X-Google-Smtp-Source: ABdhPJx2gbceNgyW426/FP1Jfr63WVuIxs3W0zK0lr/7ECxFqNSIhVwxZi27zkJ0C90ZKEgymI6w/eRigDsFrME9khM=
X-Received: by 2002:a1f:d642:: with SMTP id n63mr8783961vkg.77.1593726348590; Thu, 02 Jul 2020 14:45:48 -0700 (PDT)
MIME-Version: 1.0
References: <CAOgPGoB3LDZ2uMJkMyDxMbbWy6yScYuURVB7GqTiwVS0f2UkTw@mail.gmail.com> <CACykbs1zgLW5RS3pH34DjBDz8ap14AmAb4NL1NMrpWc6Octq1A@mail.gmail.com>
In-Reply-To: <CACykbs1zgLW5RS3pH34DjBDz8ap14AmAb4NL1NMrpWc6Octq1A@mail.gmail.com>
From: Daniel Migault <mglt.ietf@gmail.com>
Date: Thu, 02 Jul 2020 17:45:37 -0400
Message-ID: <CADZyTkn58o4_WKPLQow1uug3=BXiZxjwZw_KAVz5dhbCN0WWtw@mail.gmail.com>
To: Jonathan Hoyland <jonathan.hoyland@gmail.com>
Cc: Joseph Salowey <joe@salowey.net>, "<tls@ietf.org>" <tls@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000e0828805a97c5458"
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/Qan-yuJ6fd7S0HiIe1PAv9nTAWc>
Subject: Re: [TLS] 2nd WGLC for Delegated Credentials for TLS
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 02 Jul 2020 21:45:51 -0000

On Thu, Jul 2, 2020 at 10:21 AM Jonathan Hoyland <jonathan.hoyland@gmail.com>
wrote:

> Hi All,
>
> For those interested, I've been working on a formal analysis of DCs the
> results of which should appear online in the next few days.
> I'll post to the list when it's up.
>
> Great! Thanks.

> In summary I managed to prove a server only version of DCs secure (i.e.
> does not violate any of the properties in Appendix E.1) under the Dolev-Yao
> model without resumption, and work on a more general result is ongoing.
>
> Regards,
>
> Jonathan
>
> On Mon, 29 Jun 2020 at 16:59, Joseph Salowey <joe@salowey.net> wrote:
>
>> This is the second working group last call for Delegated Credentials for
>> TLS.  The latest draft can be found here:
>> https://tools.ietf.org/html/draft-ietf-tls-subcerts-09.  There have been
>> 2 revisions since the last review.  Draft 8 contains changes that were not
>> committed in time for draft 7 and draft 9 contains revisions from the
>> previous WGLC.  Links to the Diffs between the draft 9 and draft 7 can be
>> found at the end of this message.   Please focus your review on the changes
>> between draft 7 and draft 9.  Please send your comments to the list by July
>> 13, 2020.
>>
>> Thanks,
>>
>> Sean and Joe
>>
>> [Inline Diff]
>> https://tools.ietf.org/rfcdiff?difftype=--hwdiff&url2=draft-ietf-tls-subcerts-09.txt&url1=draft-ietf-tls-subcerts-07.txt
>> [Side-by-side Diff]
>> https://tools.ietf.org/rfcdiff?url2=draft-ietf-tls-subcerts-09.txt&url1=draft-ietf-tls-subcerts-07.txt
>>
>> _______________________________________________
>> TLS mailing list
>> TLS@ietf.org
>> https://www.ietf.org/mailman/listinfo/tls
>>
> _______________________________________________
> TLS mailing list
> TLS@ietf.org
> https://www.ietf.org/mailman/listinfo/tls
>


-- 
Daniel Migault
Ericsson