Re: [TLS] RFC8447bis

John Mattsson <john.mattsson@ericsson.com> Fri, 12 November 2021 07:36 UTC

Return-Path: <john.mattsson@ericsson.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C4D863A1331 for <tls@ietfa.amsl.com>; Thu, 11 Nov 2021 23:36:19 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.101
X-Spam-Level:
X-Spam-Status: No, score=-2.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id T3tUnSmrAymG for <tls@ietfa.amsl.com>; Thu, 11 Nov 2021 23:36:15 -0800 (PST)
Received: from EUR02-HE1-obe.outbound.protection.outlook.com (mail-eopbgr10081.outbound.protection.outlook.com [40.107.1.81]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0A4653A1330 for <tls@ietf.org>; Thu, 11 Nov 2021 23:36:14 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=M5MThiuqLC4v6cjrJB4uYA0MYsR6p4EVXyU92igMB32FrtJ5eqBHUsdxT3hOY+BYEb+bd9teEk8OsJC6EC7oGnH7myDCqOKDjZhjDewRCI6GXEyr3okkml7kj/EXoqVTp4m++xWVPJfGRpDaXhdIYBhezm0GaNo4hZeA+OSeshEW9R4CYm0LyLG0d5jSq9rEGVP8KNf9O7sQ+2AyyAhR76q3h518ETIf35lhGvF+/OOGh0+1Ik9ytqAffofljdDtXHIflDLBI4JNnCBnBxb1NnRYsvcjo1NvrAnjrwTVJTQHXJS+N/2Q1skmxzCQEgsuDlOpipCmmWYiMGdLCoXEfw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=P/qU4b2QEzluBfK+Yx8kDSHpn33Ew66e4b75W0QLOU4=; b=Vx9YVGeQzZJj76umppeYb1msNPqjfLS2nK0zjrAVonc3lbOqrxAoy44lemMSPpQXoGjE0h6fTW5nrM5EHoyZvPQBjXvEHyFfF3mJ3SHMwI3zbMJl8sTRhjEkhQsWneelEcAT369iRqh0ZoaM57jy6Rt71dO9VK98jYpVwJ7YnKjZR9cc3FdFN9ZV1iLRy+A/DQmxrFNvMh2922mN2CeQYLCw68yr7kSh1f+e3hcJOBRlhtKHBXCmN0Q+IDll9oHzE6I+DjQIKIXEB075mLM3qroqX7qIC60+fo0F2RTGSXNjVQUpKA1C9AuCLsyVnTh0YWxqlW9Cdq/plsd8utm5rA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=P/qU4b2QEzluBfK+Yx8kDSHpn33Ew66e4b75W0QLOU4=; b=XkwyuDM/v3/XpqURXcAxzir6HWsk3NX0OoPpc6/jg04KAFm/eLHj8nxbJu1/W+nvLJ7zh0dNxjEO4nyE1l3v3WX9WmTCJEZl2lLfg2IjscyE/a8tN1GWhrlpDCFRFakjJpLoLg3Kcdzv0nOMe61PSN4SmZpv2lM3JJkc3rfAGb4=
Received: from HE1PR0701MB3050.eurprd07.prod.outlook.com (2603:10a6:3:4b::8) by HE1PR0701MB2778.eurprd07.prod.outlook.com (2603:10a6:3:98::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4690.8; Fri, 12 Nov 2021 07:36:01 +0000
Received: from HE1PR0701MB3050.eurprd07.prod.outlook.com ([fe80::acd7:51e8:bdfe:c133]) by HE1PR0701MB3050.eurprd07.prod.outlook.com ([fe80::acd7:51e8:bdfe:c133%7]) with mapi id 15.20.4690.026; Fri, 12 Nov 2021 07:36:01 +0000
From: John Mattsson <john.mattsson@ericsson.com>
To: TLS List <tls@ietf.org>
Thread-Topic: [TLS] RFC8447bis
Thread-Index: AQHXlQeqUlHQ3PYX70ytHuhJmjXBIqwABTnX
Date: Fri, 12 Nov 2021 07:36:01 +0000
Message-ID: <HE1PR0701MB3050CAB18D91015237B6DC9989959@HE1PR0701MB3050.eurprd07.prod.outlook.com>
References: <b2a65504-4d9b-40bd-b0bb-3b2fa5d37f26@www.fastmail.com> <03560d15-6b48-435b-a509-7cbebce153b9@www.fastmail.com> <2760D629-9990-45F4-A9DE-B41B7698E9CE@sn3rd.com> <d17461d5-9ac6-4f8f-81ed-c65aba6870b1@www.fastmail.com> <49CEC64F-D7E4-4FAD-B1E5-2C7F04381CA0@akamai.com> <27e99896-c92e-4364-939a-803327a1f2d4@www.fastmail.com> <935206ac-7214-40a7-a5ae-00acaa665c9f@VE1EUR02FT051.eop-EUR02.prod.protection.outlook.com>
In-Reply-To: <935206ac-7214-40a7-a5ae-00acaa665c9f@VE1EUR02FT051.eop-EUR02.prod.protection.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ericsson.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 0072ba4d-57c0-4bc2-cd6f-08d9a5af1394
x-ms-traffictypediagnostic: HE1PR0701MB2778:
x-microsoft-antispam-prvs: <HE1PR0701MB2778FF8752D25742C11F281A89959@HE1PR0701MB2778.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8882;
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:HE1PR0701MB3050.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(366004)(508600001)(5660300002)(38070700005)(122000001)(52536014)(44832011)(8936002)(2906002)(76116006)(55016002)(66556008)(64756008)(316002)(186003)(6916009)(66446008)(66476007)(33656002)(6506007)(86362001)(9686003)(4744005)(91956017)(82960400001)(7696005)(38100700002)(8676002)(66946007)(26005)(71200400001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 9QmU1N0BYS9FQgrDH7gAR3YSV7EuUkOa1UcJbyGnbsmH158dvFq7y1wo5Pc3IuOLOPsFtaQ+32Jjqpvx56EhQw9wOnvb9Zh8+clsWyty0BiRuRJS1+cOBgPibECGf/79DefsjtttHMVCjKKm2VxvpiqDLXhNyYfRvrsdRx/7nGl9HXpqcXTnCK8v9zEAEl4r9a3D5Y8x0dz29cy4tdZvSMTDDhs4F1CBMuVglwPqedyQbLCDql+LVlKgZgT5SgYcV4c4msq0l90cPEkjtV/StduSNaEnPAO4XZ0ZwsywvQC2j03eodmlloVUoA6WMm6u0Y2YZjHTO8gZuwGuRNXZ0fDfJw4iT3Q0A5m+ThPa6j2w3P+eb/DkB98kfhafhg0J3EpR+WCknqjEJ9/vJcaG+QLOdxFrbbfB2rCpxI/pvvZvLXwPfYelwbpHvfHO8Vbb401pPpwvtCwe1OwGtkdzUs5wAwjEDTX0zxMKFVgfhgw2VD93trEPD9CzfVOLYIKOCjxQX1L3T2VPI8pnf4kz+RLkCKOA/lutPvUWbLL2bYXeTJ+t0vGWWcVi5ZucIU3Y8gVTZJzUtWk469qZjcrWSEhQD1Tjf8Sw7u3nEOkUaG+/R9wqz+WYWn8bN+SKVDa07pU/y5pSOCSk2SXNr4RsMK9E9J7eofoDVkibF2dZ8U8/E7y/c2MK2bPuP23nJXuGyOSQ2Yb612sM+eo/zjvfb3QjmOnae5aoujLFxzEAaUpJSsVa3md4mlHK+I05Z0T5sfZgp8FOD/kvBB7fCFXmz+54qPjoGzZwwZ5CWqse7RhhhpXIPOSb96apkLApl4JmcNo0wYPraspeSzi92WpaGRDmhyOd5k1QDbMd1rLreVfBSUtgcKM2Bhios0vDHvMZloLdQKdmVsDjU0ZX8x1q3r+Rfd58fqlwLP64Cdsyje/OnYTnk7z3crZn5/EisIIKF88q8vBHNs69ffd6WoHlR9oxLBHfU/3e4DL/i4B/JJKqF2/+pEBgCaFYGYlXuwIdV0ZTp3v5+MjntCYH/nw8J6WZDuZrBvCPIEr2sYFclvdCGIwXXbq6lqd5yzadJWpz3cNxUr0I+VLoi7zwFAjwQYE2fuDWiM2thY3BL2bXTyqQSVpYwRwj+nV2gRG3SO4/4x/Wf4t4366y/nXyHtST/QyBWXzzvgLQt1r5M54ZpdwoFVC2fPU+QKSi5WH/zSuoAuzzIi/OyEIv745/0KvutcKv42TCvRDhXWIocVt1cqrTPrQdUVyGkBpHkFXkrKVVbXpBEGH+znKlVaCOnApCd+zugCyzHMGG2wDo4+OANMbjaoDVTVQW6uyIxG8Le9C27djOdm7FrNUUHrvIQg+x1/huIO5rQITSTCj1jiANqE8Eb3ZWWKscuNaGR5yeeU5SFT9XJ70EBFhclBaCIZ9YA2GOHd59F4AHp8Eo63jNLtVwHgyvrjpPo67iQfaWTjf0GXSRUYNXYcS0vWCkx3/SJGnhoZxtd6R/eSTuVaUkr2X+a2dES4MqDEEShkHWB9dcZkqF+RUS8+4PGbhglt/DBB8qOKDZkJsQzePtIcNjnR1kRfED8QB0QGFXfgn6yBoBia0RDsOtCZcnv7Int/QC7Ck442M4oN4JqnIzvwm933++8o0M757FjpIIsQH4LJ0wKqVWrqdtaix3NtAxsMF2tYKIsENcsycWGcXvy3aFJYQ=
Content-Type: multipart/alternative; boundary="_000_HE1PR0701MB3050CAB18D91015237B6DC9989959HE1PR0701MB3050_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: HE1PR0701MB3050.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 0072ba4d-57c0-4bc2-cd6f-08d9a5af1394
X-MS-Exchange-CrossTenant-originalarrivaltime: 12 Nov 2021 07:36:01.4505 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: r6H1rYNgA40iPs1CkmN+luUjBxv6zvIY4wVrpAApNdA/8E8FRD7FL4DCHahpxaV2nFOg+TYZdZ6au6cHR72kGr/Unxvd/VegfuQ8a7hbBNs=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0701MB2778
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/d_e8cf6J6LBzSrx66OJlZ-hpf2Q>
Subject: Re: [TLS] RFC8447bis
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 12 Nov 2021 07:36:20 -0000

Hi,

My biggest concern with the "Recommended" column that I raised some year ago is that most people I meet in other SDOs as well as developers using TLS tend to believe that "Recommended" means "Recommended to use". This is unfortunate as there is a huge difference between "recommended to support" and "recommended to use". The RFC8447bis authors and TLS chairs also made this mistake in their slides this week. It is a very easy mistake to make.

Can we plese rename the column to "Recommended to support". I would also suggest to change the text so in RFC8447 as well as the notes in the IANA registries to talk about "Recommended to support" instead of just "Recommended"

Cheers,
John