[TLS] Re: I-D Action: draft-ietf-tls-deprecate-obsolete-kex-05.txt

Christian Buchgraber <christian@buchgraber.org> Tue, 10 September 2024 23:33 UTC

Return-Path: <christian@buchgraber.org>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7384CC14EB17 for <tls@ietfa.amsl.com>; Tue, 10 Sep 2024 16:33:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.907
X-Spam-Level:
X-Spam-Status: No, score=-1.907 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=buchgraber.onmicrosoft.de
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3j1yWH2GZ5pr for <tls@ietfa.amsl.com>; Tue, 10 Sep 2024 16:33:11 -0700 (PDT)
Received: from BEUP281CU002.outbound.protection.outlook.com (mail-germanynorthazon11020142.outbound.protection.outlook.com [52.101.169.142]) (using TLSv1.2 with cipher ECDHE-ECDSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7145FC14F69E for <tls@ietf.org>; Tue, 10 Sep 2024 16:33:10 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=sS3eh9fibKuRc4wEslJwe4V4K3xlmyqNsuzPQBLvZ/ATdPUdvQ/VltSekectkWWK7GbdBuuBvYoANQaQq0r80ZchA9bvk8dOxjEdOfCo5GWI8oaIquZNRJIB44ukT028TGdmExmBR5g4jx+N7wox8+6gv+GBq+37q0HbcnfdBYGpoyPPdXXapcwA86fmXVA7HBdKABpO1Ds+pAcUyl7DK7RBXykQky35T+druKjlRyjZTsvjB2jpl0JRs6BKdb7YtZreR1MDRrnh0VUDn/dJjs3b0NvE0kLpXG26OpToAeUkJktEr0zUYb81vU68PTduPt253v+R+elE2izvVC06vw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=QyNORE9YzukfwHkmid8I4Ipcos/XfxB9ZMp+hT32sMM=; b=j+ulrGhChVhRRZlUwZWZhYBUEfofDz7uE6rcUZhrpnrtRFYAGFrm/WvWqafpr1m0toSMWX4hMfseGQjGBo6dby5AlYiw/Df2iLdW7H1mFmRZ4jvxy1rB2ZkVZoQi/jBsjXGLpYEUYiOMCp6ULEwX+XcbmyKLHDwb60+ZJZ8Nv5ebFjTir0jqkX/Y/sDs3h1e3qe4iA/7Hm649sCJCsfKv9RA536LftgLQXT01xB842DEMRjMuaE+uEXhziwwHltL2YiEfHVe5H06p1NKWCkdogctrzrf5VusojgkPbTMMYF4uTBvXiNL+t4p3YnZIhsvsD4Gy6y5n08vpo919uw62A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=buchgraber.org; dmarc=pass action=none header.from=buchgraber.org; dkim=pass header.d=buchgraber.org; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=buchgraber.onmicrosoft.de; s=selector1-buchgraber-onmicrosoft-de; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=QyNORE9YzukfwHkmid8I4Ipcos/XfxB9ZMp+hT32sMM=; b=ysAsHe7bwz27/oE84Td+KD7UnlY7JdYbp78v/TzgR8swKmMivu2RAxf/yzHDuYF4XQTe1eOfzTqh4PeXCWp4W1845xl66DB0NxyqCNRMKVZ5bWjgkH5xmOjJv0RAFlZViI/ruGsntNuf7K24Gb9RccKmUzrZNlcqcximDY/b2Uk=
Received: from BE1P281MB3347.DEUP281.PROD.OUTLOOK.COM (2603:10a6:b10:6c::13) by FR5P281MB4649.DEUP281.PROD.OUTLOOK.COM (2603:10a6:d10:14e::8) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7939.24; Tue, 10 Sep 2024 23:33:07 +0000
Received: from BE1P281MB3347.DEUP281.PROD.OUTLOOK.COM ([fe80::265c:d9f0:bd19:6c6d]) by BE1P281MB3347.DEUP281.PROD.OUTLOOK.COM ([fe80::265c:d9f0:bd19:6c6d%5]) with mapi id 15.20.7962.016; Tue, 10 Sep 2024 23:33:07 +0000
From: Christian Buchgraber <christian@buchgraber.org>
To: "tls@ietf.org" <tls@ietf.org>
Thread-Topic: [TLS] Re: I-D Action: draft-ietf-tls-deprecate-obsolete-kex-05.txt
Thread-Index: AQHbA9nKatZrlAPMT0KIWUntl1ah7A==
Date: Tue, 10 Sep 2024 23:33:07 +0000
Message-ID: <6bfb2f4c-c884-48b2-b190-a4d9e9d09245@email.android.com>
Accept-Language: de-DE, en-US
Content-Language: de-DE
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=buchgraber.org;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: BE1P281MB3347:EE_|FR5P281MB4649:EE_
x-ms-office365-filtering-correlation-id: 7ed6c051-e5e2-4498-d616-08dcd1f0ec8f
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|376014|1800799024|366016|38070700018;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:BE1P281MB3347.DEUP281.PROD.OUTLOOK.COM;PTR:;CAT:NONE;SFS:(13230040)(376014)(1800799024)(366016)(38070700018);DIR:OUT;SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: dH2/sCxianrtCNz0enCDVizws5OV1HhU0MxSgZLHVGG4xuT61w114HF3DxUMwTioG81JVUs9d7uDBEeG5/K9VUHT2NmIQac9gb1DxfSxMqF0l5VaPYX3DCEp31HYSalBJb8WpHHj470lSOPXS54b9VBj1BIZROKHcYaLQ1XFvJZ0/SYwC2peJa+91nUYZAe4P4Rdugv5KVpjvWuUmcAS7v91oSrSoCCsdJm8rJRYDAWxUZrTiSxPZIPp1Cdy1TPI/8LGq2ud+ZLzmtAxa3AMUa1TjG4tSed6Q503fVNwdi4bXpKPUB7ndpF1pR8+kwqluuk3sZE2j9s8wW5sNiSsRnbagOlxNrHEFK5WtnHkWeKiWDAQl22b+yIB5xvk9jhQGxs7S2vqdG6hpUMTpMO4+upkrRbOiwjzQ4vk6HSCygTYyyE+Qoin+tsBj1UwWw3R+S3llqL9PnckslAlJAhcC6y3cDK+Pq88kJP7P4qezd1MAJDUK1iV9uSAZ+3Iyq2FeEJaU/lOZTiFADkxZlhTJ+bmfnVYz8Xd3FZcwUQBnnShmv6MpsrgEe2SITe9FmF7f41DApHqaUcmoUsZo//Xe7PLIzIkvLPtYMzjB0w8AybxDo4c5Wl4IguOvBeJ2rFhA+hYLc3MAhVapTCs2MNOgIyumrt4C6m9+qZwl9kpDZQrAGe4IKIdm3iZonInzjPtdb+Iya7iM+kJD157t3laQXeJCDonRx+DykROrKlp3p3HbI2gJmh4Nw0BedThF+5JlNu75eRjLgQS18s4obyO6ZR960Nm0Ia3+D8jiiZvrysx1bAL8tbIWq2ZIcWLedD5lZeqRu1oPqpInKkxVwpEhcNFl3AY3XXKax6FIl4i2A1p5jb0CqayY5vW7G1aNi60Pf8toXYvtFVNA0Jt6xpijyw0Z7QhKFk5H/BMzXDLfchseqoYL/osB69XBKMm9rnCmfQfN6mDWKPEigwFeT5vkzbS49oezHiEeb2vJFvn27Hl2Kh5rh2I44lL8zUN2KjPQYy203rRmNyDIJXgY58Jzp8x83Eqqc/QNKS/Csah3qutJWSkQiNbcYtBFZygzz0kKvM5AHH/VEFBahLi6YpviEQVjh9PLUtVY/AT7uYIJQ7UsBBntryaQH9hhrJxsrs03tvP7e6M0c3j8YRVngeE0+CVoDabpYOR4q2Qibx2IE9VGM6hClNRNJum9SzcrEaBqsdDgWQPrxjk/t+ghmF0NBB2VE7qxmIZ1E8qN+288mCJYYCRc72apo0nzQVVV243cwEl1e3YSawprUMPkaoY8FKS0SR4uLsfnbdErCot9PJUf2nNoo84uNTGQA2OvECQYNfqyBSEaqz7oZxoLMvBhmck0tnTSA0la04zZhWOzaHUoqAUCjrvjedVUoa5Xf0LRNC2diyJDwpBXMcvc80UZrQBIlDbGOMYQlickFJfAlKUFXZyXJnwqpMWQrp3Xy2O/c+HGMQzCg6XAu8/8n5N/VXbl3TbwT02b9LUKuHzS2cJ/C4j3L5veLNhSC0J/AS1HbF6y22mDKEXaXdmoF2hU8gqpPCNP082F/o0bNDNUtJVjSjpxu/3gpe22oJrk+KnC7hdW6cH/INWTaObXbo0OeA5K3f6Wjaf/PQZeOOpBBE4bPd+xkBg/QDlNYBeFoZM3RHL93kEbliu2BLecciqtQ==
Content-Type: multipart/alternative; boundary="_000_6bfb2f4cc88448b2b190a4d9e9d09245emailandroidcom_"
MIME-Version: 1.0
X-OriginatorOrg: buchgraber.org
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BE1P281MB3347.DEUP281.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 7ed6c051-e5e2-4498-d616-08dcd1f0ec8f
X-MS-Exchange-CrossTenant-originalarrivaltime: 10 Sep 2024 23:33:07.0587 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: ed5b1250-11ad-452d-8754-1db9525c6aa6
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: w2C+suv5d+fe/o13sHCi4dpdCTsyDDilxdgt3g76jiSffs51FZ4/8Q09ts7xDrP/wjZ2XF1pWJHY1VIvpUp/NRo3NxGQHPO0o/JCugb0uYc=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: FR5P281MB4649
Message-ID-Hash: QKLPG5DR7APEAZQSJYQN3D3PPZIUQECB
X-Message-ID-Hash: QKLPG5DR7APEAZQSJYQN3D3PPZIUQECB
X-MailFrom: christian@buchgraber.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc4
Precedence: list
Subject: [TLS] Re: I-D Action: draft-ietf-tls-deprecate-obsolete-kex-05.txt
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/ZS1blcZXB5EUFbz_aqr5Sh2brm0>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

I found spelling errors in the last draft version and fixed them in this pull request: https://github.com/tlswg/draft-deprecate-obsolete-kex/pull/18

I also added wildcard cipher suite references in the security considerations chapter for better understanding. TLS_DH_* was already referenced in that chapter.

Cheers,
Chris