Re: [TLS] [EXTERNAL] Re: WG Adoption for TLS Trust Expressions
Brendan McMillion <brendanmcmillion@gmail.com> Sat, 27 April 2024 18:42 UTC
Return-Path: <brendanmcmillion@gmail.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 92929C14F5F4 for <tls@ietfa.amsl.com>; Sat, 27 Apr 2024 11:42:12 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.094
X-Spam-Level:
X-Spam-Status: No, score=-2.094 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uDOqk1nWxxpQ for <tls@ietfa.amsl.com>; Sat, 27 Apr 2024 11:42:07 -0700 (PDT)
Received: from mail-yw1-x1132.google.com (mail-yw1-x1132.google.com [IPv6:2607:f8b0:4864:20::1132]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E1535C14F60A for <tls@ietf.org>; Sat, 27 Apr 2024 11:42:07 -0700 (PDT)
Received: by mail-yw1-x1132.google.com with SMTP id 00721157ae682-617cd7bd929so34514687b3.3 for <tls@ietf.org>; Sat, 27 Apr 2024 11:42:07 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1714243327; x=1714848127; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=7Q+HQHN3h8eekt6OBRvukNrnvV6Xb78GXlgsNG3VJuk=; b=Ixe81TEDk1v1FZd+Ka3gTyY5KZ5ySruGvwjktQwWrm0wL8bpRqQ4hfS/5ktQ7r0dYS n7Ee1vUCAmNnvFOXFr4BKsTOMt0m02WsikCDxdB3u+K4k9/lS/yso+CvZ45saHCBE8G9 H/tvlRNPmTqUZvaQNgjZFgLvu+aye8DbXmJlt+D1xiMBEnlt2G5loNRGdC8gAuhOHd9o YUdRgKyqbtXI1IwArravXldE9gCMHvxryTv2wYd1IlRzwZEfG3LymfOe/f3H/oWJ13vC 2OrmNf8HgEewkRNQcaeyL2ZRXmgomB9+ltwAsxTQJZQ52pdiKMCFGaRFN0UdMHMT6m1o WfcA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1714243327; x=1714848127; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=7Q+HQHN3h8eekt6OBRvukNrnvV6Xb78GXlgsNG3VJuk=; b=RSdqpMAaB64J34sbW7wbzlu7dBRiJfxf6KHxErgLwerDoMG8sZ0Tau8JsjoIW8393f imPNK21CY/DoGCl1T/o+ZywMe/SmSjnTmfcoAOzfs0HT84eHejUfXsXBe5kmb+8YRr4s //L2KwYrM/onN4axr1R6cV2x5wCJf1FOAa7sT/387vIEOGsqsCMECErpysuX8UE47cOf myt7vbIqR4rKQgQ2eW1xwtXrd2z4eoQ5d4yFzpEZsuTvckcHsnsfHEHskEbofYFlIxU1 oi9jyiRvvJBJzPJCxp7fMlLp1u5ez/xDT79AzwUTOqr9VNE0QUtatqalwIWkHURcoy76 5feQ==
X-Forwarded-Encrypted: i=1; AJvYcCV+CSQIMDqtKfrGiWeYOJgOVrkUYsKlkPER8pOWAFHgnTqsO7Y64OV1UYjrBeEwwY+6o0u0tZnfzeRAS5Q=
X-Gm-Message-State: AOJu0YzxBU2nmo71Gv7MXcBsMrk8q9f27cvhIKXWKPsdEOAsQ7+Rx9dB zsbiwb8UDfLTxAoWbvLECZVcZRzFAkBzDMf60yrKVJdY/SI/vvTRN13EZpswLKBsVILEgRvyCv0 SYsYOSyyZ/cxRx6w2y5heMWkl4As=
X-Google-Smtp-Source: AGHT+IGnjEP0K2NCdNLx3eAlL/PH8lpZImFmJG9jyYvNLmV+gMl+LpIKs8LfYKUJWEyfw8HQ+9HJ3akPdCBe6x7X0AU=
X-Received: by 2002:a05:690c:d84:b0:618:7be0:4b3b with SMTP id da4-20020a05690c0d8400b006187be04b3bmr8855581ywb.0.1714243326903; Sat, 27 Apr 2024 11:42:06 -0700 (PDT)
MIME-Version: 1.0
References: <CAD2nvsQafns7PB72uV2CBgrt1N+f3YK6p_=EO-A_Bs-mb9=g1Q@mail.gmail.com> <CACsn0cnb9Aq80cUAQ6rctgCJF0Dmsxe+1zy=Axtu-tAV3sr_JA@mail.gmail.com> <MW2PR2101MB1083F82C2B4C9681B270D1208C152@MW2PR2101MB1083.namprd21.prod.outlook.com>
In-Reply-To: <MW2PR2101MB1083F82C2B4C9681B270D1208C152@MW2PR2101MB1083.namprd21.prod.outlook.com>
From: Brendan McMillion <brendanmcmillion@gmail.com>
Date: Sat, 27 Apr 2024 11:41:56 -0700
Message-ID: <CAJTd26+hSFAnRxhe0pvk=ST0y-ST55tM6WUYnR2px8hH1MZ3Cw@mail.gmail.com>
To: Andrei Popov <Andrei.Popov=40microsoft.com@dmarc.ietf.org>
Cc: Watson Ladd <watsonbladd@gmail.com>, Devon O'Brien <asymmetric=40google.com@dmarc.ietf.org>, "tls@ietf.org" <tls@ietf.org>, Bob Beck <bbe@google.com>
Content-Type: multipart/alternative; boundary="0000000000008f104106171860b5"
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/a4XGQwMYk9oBDrsU7GrzbHYIHAw>
Subject: Re: [TLS] [EXTERNAL] Re: WG Adoption for TLS Trust Expressions
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 27 Apr 2024 18:42:12 -0000
Hi Devon I support adoption On Fri, Apr 26, 2024 at 7:38 PM Andrei Popov <Andrei.Popov= 40microsoft.com@dmarc.ietf.org> wrote: > I support adoption. > > Cheers, > > Andrei > > -----Original Message----- > From: TLS <tls-bounces@ietf.org> On Behalf Of Watson Ladd > Sent: Friday, April 26, 2024 7:13 PM > To: Devon O'Brien <asymmetric=40google.com@dmarc.ietf.org> > Cc: tls@ietf.org; Bob Beck <bbe@google.com> > Subject: [EXTERNAL] Re: [TLS] WG Adoption for TLS Trust Expressions > > On Tue, Apr 23, 2024 at 1:39 PM Devon O'Brien <asymmetric= > 40google.com@dmarc.ietf.org> wrote: > > > > After sharing our first draft of TLS Trust Expressions and several > discussions across a couple IETFs, we’d like to proceed with a call for > working group adoption of this draft. We are currently prototyping trust > expressions in BoringSSL & Chromium and will share more details when > implementation is complete. > > > > > > As we mentioned in our message to the mailing list from January, our > primary goal is to produce a mechanism for supporting multiple subscriber > certificates and efficiently negotiating which to serve on a given TLS > connection, even if that ends up requiring significant changes to the draft > in its current state. > > > > > > To that end, we’re interested in learning whether wg members support > adoption of this deployment model and the currently-described certificate > negotiation mechanism or if they oppose adoption (and why!). > > We absolutely need to solve the problem and the draft is a good starting > point. > > > > > > > Thanks! > > > > David, Devon, and Bob > > > > > > _______________________________________________ > > TLS mailing list > > TLS@ietf.org > > https://www/. > > ietf.org%2Fmailman%2Flistinfo%2Ftls&data=05%7C02%7CAndrei.Popov%40micr > > osoft.com%7C6ca75aa932344f322d9f08dc665fa375%7C72f988bf86f141af91ab2d7 > > cd011db47%7C1%7C0%7C638497808164901299%7CUnknown%7CTWFpbGZsb3d8eyJWIjo > > iMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C% > > 7C&sdata=2n8iljUXBtb4Jf%2FZTqN2Nl5j81WoatTYA64c5%2FRoH0A%3D&reserved=0 > > > > -- > Astra mortemque praestare gradatim > > _______________________________________________ > TLS mailing list > TLS@ietf.org > https://www.ietf.org/mailman/listinfo/tls > _______________________________________________ > TLS mailing list > TLS@ietf.org > https://www.ietf.org/mailman/listinfo/tls >
- [TLS] WG Adoption for TLS Trust Expressions Devon O'Brien
- Re: [TLS] WG Adoption for TLS Trust Expressions Ilari Liusvaara
- Re: [TLS] WG Adoption for TLS Trust Expressions Kyle Nekritz
- Re: [TLS] WG Adoption for TLS Trust Expressions Watson Ladd
- Re: [TLS] [EXTERNAL] Re: WG Adoption for TLS Trus… Andrei Popov
- Re: [TLS] [EXTERNAL] Re: WG Adoption for TLS Trus… Brendan McMillion
- Re: [TLS] WG Adoption for TLS Trust Expressions S Moonesamy
- Re: [TLS] [EXTERNAL] Re: WG Adoption for TLS Trus… Eric Rescorla
- Re: [TLS] [EXTERNAL] Re: WG Adoption for TLS Trus… Devon O'Brien
- Re: [TLS] WG Adoption for TLS Trust Expressions Dennis Jackson
- Re: [TLS] WG Adoption for TLS Trust Expressions Bas Westerbaan
- Re: [TLS] WG Adoption for TLS Trust Expressions Loganaden Velvindron
- Re: [TLS] WG Adoption for TLS Trust Expressions Brendan McMillion
- Re: [TLS] WG Adoption for TLS Trust Expressions Eric Rescorla
- Re: [TLS] WG Adoption for TLS Trust Expressions Watson Ladd
- Re: [TLS] WG Adoption for TLS Trust Expressions Dennis Jackson
- Re: [TLS] WG Adoption for TLS Trust Expressions Stephen Farrell
- Re: [TLS] WG Adoption for TLS Trust Expressions David Benjamin
- Re: [TLS] WG Adoption for TLS Trust Expressions Dennis Jackson
- Re: [TLS] WG Adoption for TLS Trust Expressions Dennis Jackson
- Re: [TLS] WG Adoption for TLS Trust Expressions Eric Rescorla
- Re: [TLS] WG Adoption for TLS Trust Expressions David Benjamin
- Re: [TLS] [EXTERNAL] Re: WG Adoption for TLS Trus… Sean Turner
- Re: [TLS] WG Adoption for TLS Trust Expressions Dennis Jackson
- Re: [TLS] WG Adoption for TLS Trust Expressions Brendan McMillion
- Re: [TLS] WG Adoption for TLS Trust Expressions Dennis Jackson
- Re: [TLS] WG Adoption for TLS Trust Expressions Eric Rescorla
- Re: [TLS] WG Adoption for TLS Trust Expressions Eric Rescorla
- Re: [TLS] WG Adoption for TLS Trust Expressions Brendan McMillion
- Re: [TLS] WG Adoption for TLS Trust Expressions Watson Ladd
- Re: [TLS] WG Adoption for TLS Trust Expressions Dennis Jackson
- Re: [TLS] WG Adoption for TLS Trust Expressions Dennis Jackson
- [TLS]Re: WG Adoption for TLS Trust Expressions Richard Barnes
- [TLS]Re: WG Adoption for TLS Trust Expressions David Benjamin
- [TLS]Re: WG Adoption for TLS Trust Expressions David Benjamin
- [TLS]Re: WG Adoption for TLS Trust Expressions Dennis Jackson
- [TLS]Re: WG Adoption for TLS Trust Expressions David Benjamin
- [TLS]Re: WG Adoption for TLS Trust Expressions David Benjamin
- [TLS]Re: WG Adoption for TLS Trust Expressions Nick Harper
- [TLS]Re: WG Adoption for TLS Trust Expressions Dennis Jackson
- [TLS]Re: WG Adoption for TLS Trust Expressions Watson Ladd
- [TLS]Re: WG Adoption for TLS Trust Expressions Stephen Farrell
- [TLS]Re: WG Adoption for TLS Trust Expressions Nick Harper
- [TLS]Re: [EXTERNAL] Re: WG Adoption for TLS Trust… Andrei Popov
- [TLS]Re: [EXTERNAL] Re: WG Adoption for TLS Trust… Joseph Salowey
- [TLS]Re: [EXTERNAL] Re: WG Adoption for TLS Trust… Carl Wallace
- [TLS]Re: WG Adoption for TLS Trust Expressions Dennis Jackson
- [TLS]Re: WG Adoption for TLS Trust Expressions David Adrian
- [TLS]Re: WG Adoption for TLS Trust Expressions Dennis Jackson
- [TLS]Re: WG Adoption for TLS Trust Expressions David Benjamin
- [TLS]Re: WG Adoption for TLS Trust Expressions Sean Turner
- [TLS]Re: WG Adoption for TLS Trust Expressions Watson Ladd
- [TLS]Re: WG Adoption for TLS Trust Expressions Ryan Hurst
- [TLS]Re: WG Adoption for TLS Trust Expressions Dennis Jackson
- [TLS]Re: WG Adoption for TLS Trust Expressions Dennis Jackson
- [TLS]Re: WG Adoption for TLS Trust Expressions Ilari Liusvaara
- [TLS]Re: WG Adoption for TLS Trust Expressions Christian Huitema
- [TLS]Re: WG Adoption for TLS Trust Expressions Nick Harper
- [TLS]Re: WG Adoption for TLS Trust Expressions Bob Beck