Re: [TLS] PR#625: Change alert requirements

Andrei Popov <Andrei.Popov@microsoft.com> Wed, 07 September 2016 18:19 UTC

Return-Path: <Andrei.Popov@microsoft.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C6EF812B33B for <tls@ietfa.amsl.com>; Wed, 7 Sep 2016 11:19:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.022
X-Spam-Level:
X-Spam-Status: No, score=-2.022 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QcSU_ks5_g8I for <tls@ietfa.amsl.com>; Wed, 7 Sep 2016 11:19:56 -0700 (PDT)
Received: from NAM03-DM3-obe.outbound.protection.outlook.com (mail-dm3nam03on0092.outbound.protection.outlook.com [104.47.41.92]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5C02012B317 for <tls@ietf.org>; Wed, 7 Sep 2016 11:19:56 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=LMD7QTWsilZK+OOlc9M9CW/Yb+MZU9qXIRw6gCw9dV4=; b=HDc7vuUTn8yOqeSHcelFj4y088V/pL2llSTYdVANxMGFP4pKs+/BrIOHL7B9czqDbCU5q0+26oQhGV4I0aTmqv/QRhTB3ve++DVUR1kqc8ij316Lrp74kF9b6gUnxvisG6EI0hMJtsYN/md6BrWIm3fXbTVRRSnqJ9Rd1XWkmCQ=
Received: from DM2PR0301MB0847.namprd03.prod.outlook.com (10.160.215.145) by DM2PR0301MB0845.namprd03.prod.outlook.com (10.160.215.143) with Microsoft SMTP Server (version=TLS1_0, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA_P384) id 15.1.599.9; Wed, 7 Sep 2016 18:19:55 +0000
Received: from DM2PR0301MB0847.namprd03.prod.outlook.com ([10.160.215.145]) by DM2PR0301MB0847.namprd03.prod.outlook.com ([10.160.215.145]) with mapi id 15.01.0599.016; Wed, 7 Sep 2016 18:19:55 +0000
From: Andrei Popov <Andrei.Popov@microsoft.com>
To: Hubert Kario <hkario@redhat.com>, Eric Rescorla <ekr@rtfm.com>
Thread-Topic: [TLS] PR#625: Change alert requirements
Thread-Index: AQHSB5/fIhysr8GDaEKJolM9zuwaaKBuRNSAgAADxwCAAAnyAIAABovQ
Date: Wed, 07 Sep 2016 18:19:54 +0000
Message-ID: <DM2PR0301MB0847A61D65DBF3AEC2149E168CF80@DM2PR0301MB0847.namprd03.prod.outlook.com>
References: <CABcZeBMeLgqjvr2cjWL=AHTQJbS9siNBB6U2=0654yigbBGkYA@mail.gmail.com> <1558569.9rZYFBiQ0G@pintsize.usersys.redhat.com> <CABcZeBMCkSJ1nGfZDjx3CJcUsLhH4AMZ=0wOc+uNs0YKu6kW1Q@mail.gmail.com> <3902031.op4bE2I96X@pintsize.usersys.redhat.com>
In-Reply-To: <3902031.op4bE2I96X@pintsize.usersys.redhat.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Andrei.Popov@microsoft.com;
x-originating-ip: [2001:4898:80e8:5::1d2]
x-ms-office365-filtering-correlation-id: 5876331d-e35d-4af8-518a-08d3d74b9163
x-microsoft-exchange-diagnostics: 1; DM2PR0301MB0845; 6:TI22k45g5eikU3ZHL9O6l8+tvyGlpHvY3o/IMrJkKpit9yGVcoBsgCDuA2Gt2SVoWVWxlH8+uy+d7i0Ty252J9cgF45KmHEbTizXnNy+vvhbRFNrmGesuWdHaJ0HOoJ43qp7dQ4ZSDbET7jYErKajNLsd0FBQR0vV0mCrE0529L4t5+Ekd0r4tYFI5ukOSrT8ghkF7Lln11VJC/WfmGkqHcD2oR4VafYfwQ4e0rJeF4kE5b9cHdkI1hW6JFBh6phs8ryl5cUAzfmyUrnyXr/pwqT1nUxeNaleelNXqpIBc5Slvr+l9ptmqPhbIKZuVlmfeerllaU2qzeDbe6MNlOGA==; 5:h6/+QwUhSjs9HtHfF9DFFisqZhCbTHhzDPo/aIQKkMIKGVv8t5sls+2Vy3peTUmFd8mAsTFHklXqpn3rlXU61ypkPfFFLNxHgpIJM4Q/QA5LthfP0WCYpr47mXfypSJ00uyMuh4iIiJw4PTmMG1V9A==; 24:7k6eDZaOkpij9IXzxLR7FuZa0wn52KXAFJ5lLoysQ/rdqMS+s7I92nSWIFT0PX7ev/S5EC+F+jbNOqMxvEao6ZQJJAhc1EDZVAyT8k4UB7c=; 7:xRECssQ9ONxInQZ3rsZs2wZxWbMbnLkB7kdA6p3UpWfU9ThCw6BRGJDxADEtBnVVItRfq7y1FPrgcGR9xJuoUU1dr6Ien/WIlSXXFAMbh0V2Nt6pIadDOzvSl11HuHloPTRNfIhSdb4EQQD3GVHcFHrpjgtLCqB0bD1SgE7NYHsHAohWd084UIlHcpUuB34KYlUQE/clsqbEj2HoOYYHIse5ewi9/shnHmkqf25dmYiwBwUb0zNBQye9cIjNKXE3
x-microsoft-antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:DM2PR0301MB0845;
x-microsoft-antispam-prvs: <DM2PR0301MB084501F31B5AD881E85B43E58CF80@DM2PR0301MB0845.namprd03.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:;
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(61425038)(6040176)(601004)(2401047)(8121501046)(5005006)(3002001)(10201501046)(6055026)(61426038)(61427038); SRVR:DM2PR0301MB0845; BCL:0; PCL:0; RULEID:; SRVR:DM2PR0301MB0845;
x-forefront-prvs: 0058ABBBC7
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(6009001)(7916002)(199003)(189002)(7696003)(4326007)(2906002)(122556002)(7846002)(86612001)(74316002)(86362001)(33656002)(9686002)(5002640100001)(586003)(305945005)(102836003)(87936001)(54356999)(76576001)(6116002)(50986999)(3660700001)(106356001)(76176999)(7736002)(8936002)(92566002)(99286002)(3280700002)(97736004)(106116001)(105586002)(81166006)(81156014)(10090500001)(189998001)(558084003)(5001770100001)(68736007)(10400500002)(10290500002)(101416001)(8676002)(77096005)(5005710100001)(11100500001)(8990500004)(93886004)(5660300001)(2900100001)(15650500001)(2950100001)(3826002); DIR:OUT; SFP:1102; SCL:1; SRVR:DM2PR0301MB0845; H:DM2PR0301MB0847.namprd03.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: microsoft.com does not designate permitted sender hosts)
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 07 Sep 2016 18:19:54.9174 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM2PR0301MB0845
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/e1EWbS6YvZby9dMA9yDO-LMGZqM>
Cc: "tls@ietf.org" <tls@ietf.org>
Subject: Re: [TLS] PR#625: Change alert requirements
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 07 Sep 2016 18:19:58 -0000

> > the only popular stack I found that does not seem to send alerts is 
> > the schannel from Microsoft

To clarify, schannel does generate alerts per RFC, but the HTTP stack (which actually owns the socket) sees no value in sending them.

Cheers,

Andrei