[TLS] New Internet-Draft: draft-housley-tls-tls13-cert-with-extern-psk-00

Russ Housley <housley@vigilsec.com> Thu, 01 March 2018 21:38 UTC

Return-Path: <housley@vigilsec.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CB5ED12FAB8 for <tls@ietfa.amsl.com>; Thu, 1 Mar 2018 13:38:00 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YRy1bENjiqAW for <tls@ietfa.amsl.com>; Thu, 1 Mar 2018 13:37:58 -0800 (PST)
Received: from mail.smeinc.net (mail.smeinc.net [209.135.209.11]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A632D126BF7 for <tls@ietf.org>; Thu, 1 Mar 2018 13:37:58 -0800 (PST)
Received: from localhost (localhost [127.0.0.1]) by mail.smeinc.net (Postfix) with ESMTP id 82A20300687 for <tls@ietf.org>; Thu, 1 Mar 2018 16:37:56 -0500 (EST)
X-Virus-Scanned: amavisd-new at mail.smeinc.net
Received: from mail.smeinc.net ([127.0.0.1]) by localhost (mail.smeinc.net [127.0.0.1]) (amavisd-new, port 10026) with ESMTP id ox7gXxQXjKm7 for <tls@ietf.org>; Thu, 1 Mar 2018 16:37:55 -0500 (EST)
Received: from new-host-5.home (pool-108-45-101-150.washdc.fios.verizon.net [108.45.101.150]) by mail.smeinc.net (Postfix) with ESMTPSA id 29971300590 for <tls@ietf.org>; Thu, 1 Mar 2018 16:37:55 -0500 (EST)
From: Russ Housley <housley@vigilsec.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_30D7AAF9-06C1-4A30-B050-770D3AD2E023"
Mime-Version: 1.0 (Mac OS X Mail 10.3 \(3273\))
Message-Id: <1DD2B1C1-23E7-48F7-A1FB-76D3DFCEA755@vigilsec.com>
References: <151993882481.21672.8815898642665419019.idtracker@ietfa.amsl.com>
To: IETF TLS <tls@ietf.org>
Date: Thu, 01 Mar 2018 16:37:57 -0500
X-Mailer: Apple Mail (2.3273)
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/_pVh6vKhrzRguV2_O-UxV_yYo5I>
Subject: [TLS] New Internet-Draft: draft-housley-tls-tls13-cert-with-extern-psk-00
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 01 Mar 2018 21:38:01 -0000

I would like to get comments on this Internet-Draft.  Once a round of comments have been received and folded into -01, I would like to work with folks that did the earlier proofs with Tamarin to make sure that the this does not negatively impact the TLS 1.3 protocol changes that were made to eliminate the man-in-the-middle attack that they found in 2015.

Thanks,
  Russ


> From: internet-drafts@ietf.org
> Subject: New Version Notification for draft-housley-tls-tls13-cert-with-extern-psk-00.txt
> Date: March 1, 2018 at 4:13:44 PM EST
> To: "Russ Housley" <housley@vigilsec.com>
> 
> 
> A new version of I-D, draft-housley-tls-tls13-cert-with-extern-psk-00.txt
> has been successfully submitted by Russ Housley and posted to the
> IETF repository.
> 
> Name:		draft-housley-tls-tls13-cert-with-extern-psk
> Revision:	00
> Title:		TLS 1.3 Extension for Certificate-based Authentication with an External Pre-Shared Key
> Document date:	2018-03-01
> Group:		Individual Submission
> Pages:		9
> URL:            https://www.ietf.org/internet-drafts/draft-housley-tls-tls13-cert-with-extern-psk-00.txt
> Status:         https://datatracker.ietf.org/doc/draft-housley-tls-tls13-cert-with-extern-psk/
> Htmlized:       https://tools.ietf.org/html/draft-housley-tls-tls13-cert-with-extern-psk-00
> Htmlized:       https://datatracker.ietf.org/doc/html/draft-housley-tls-tls13-cert-with-extern-psk-00
> 
> 
> Abstract:
>   This document specifies a TLS 1.3 extension that allows a server to
>   authenticate with a combination of a certificate and an external pre-
>   shared key (PSK).
> 
> 
> 
> 
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org.
> 
> The IETF Secretariat
>