From nobody Sun Mar 28 00:42:36 2021
Return-Path: <do_not_reply@mnot.net>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1])
 by ietfa.amsl.com (Postfix) with ESMTP id 876A73A103C
 for <tls@ietfa.amsl.com>; Sun, 28 Mar 2021 00:42:28 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.096
X-Spam-Level: 
X-Spam-Status: No, score=-2.096 tagged_above=-999 required=5
 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1,
 DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001,
 RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H3=0.001,
 RCVD_IN_MSPIKE_WL=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001]
 autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key)
 header.d=mnot.net header.b=oFI4X7Sy;
 dkim=pass (2048-bit key)
 header.d=messagingengine.com header.b=OkyzwAlM
Received: from mail.ietf.org ([4.31.198.44])
 by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024)
 with ESMTP id Ewkv5q1CZ6Ub for <tls@ietfa.amsl.com>;
 Sun, 28 Mar 2021 00:42:23 -0700 (PDT)
Received: from out4-smtp.messagingengine.com (out4-smtp.messagingengine.com
 [66.111.4.28])
 (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits))
 (No client certificate requested)
 by ietfa.amsl.com (Postfix) with ESMTPS id C2A8C3A1001
 for <tls@ietf.org>; Sun, 28 Mar 2021 00:42:23 -0700 (PDT)
Received: from compute1.internal (compute1.nyi.internal [10.202.2.41])
 by mailout.nyi.internal (Postfix) with ESMTP id 7A6F55C0078
 for <tls@ietf.org>; Sun, 28 Mar 2021 03:42:22 -0400 (EDT)
Received: from mailfrontend1 ([10.202.2.162])
 by compute1.internal (MEProxy); Sun, 28 Mar 2021 03:42:22 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=mnot.net; h=
 content-type:mime-version:from:to:subject:message-id:date; s=
 fm2; bh=Cm7exXqPEnKG9jOURJKijcY1aGc6ROQQ12H5HWFWNQc=; b=oFI4X7Sy
 IARuGS3ifF3xE7KN+ASnIXI6hCatRpQx9sAKa25YwVy+PjkwGD8ccdxrfYR8m4+W
 LfQXJ4QCSRjxGe0fRHm6uZhIefyx70kFOO76IQZ2IvmCGlLUBt+WGWdfw24aC+Tr
 xNhC9INzH6QCTEcP1S1mkyAVuk1FunLg+5MZ/m6d6sRBbogt+rIDmLn1sNQ+ayrL
 UMRwhHJ0PIQbgudoX2Jf17gCHFh+gw5gFDHJ0y5l32DZpnaRjCyOXG+U+mogKVmj
 NB9iQwQqqtAXzu5zSSC1iUoFKeEFlCaEJR+FDApf8laA1gAqsmxxo/CYKhjz8SBI
 8wp9NoiwzaPcgA==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=
 messagingengine.com; h=content-type:date:from:message-id
 :mime-version:subject:to:x-me-proxy:x-me-proxy:x-me-sender
 :x-me-sender:x-sasl-enc; s=fm2; bh=Cm7exXqPEnKG9jOURJKijcY1aGc6R
 OQQ12H5HWFWNQc=; b=OkyzwAlM43MsXL+qVtwrt5MgBiIN6QBcGrUtUn/mJeGSs
 Wz8SAdt93AqtkqXhF1xlOiV2whsOALFh2KXLnKaoNjuZMV+Ws5LJ7H77TGPiwRLx
 BshocNlQ5ZoEdG9XZGab1Hj0OO5nf2VeD94HeoNwrDR5SaUf0GlgF1nSJc360QXU
 i2BXdATcJEQd2vK3q3V8ZTDYF9OgSdxkPQb3WWMGfSUbxSreFRR2e7j3d0tktO9F
 A2Ao2XXfcanwoRBhRXgQrKN2EEQ/wvudOzygYQtGBGf4PTb7FYTF3WCAncI9OH+l
 XYUFL+kn+bI25HFCtWJel1HUebGGMwqHF4klIJatw==
X-ME-Sender: <xms:XjNgYE6hUyNxp9uH_opwcp42_WYELDAZlU9YsNYrhO7bfKO2MICybg>
 <xme:XjNgYF7eZc1yMSyuNS5_KIi8VNHMA1FkvJJF_hRBMxMquFSp6lC8yyOjCsCKa7nGk
 scpkc5Yq2MTGvOvDQ>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgeduledrudehhedguddutdcutefuodetggdotefrod
 ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfgh
 necuuegrihhlohhuthemuceftddtnecunecujfgurheptggghffvufesrgdttdertddtje
 enucfhrhhomheptfgvphhoshhithhorhihucettghtihhvihhthicuufhumhhmrghrhicu
 uehothcuoeguohgpnhhothgprhgvphhlhiesmhhnohhtrdhnvghtqeenucggtffrrghtth
 gvrhhnpeekfedvudetjedvfeekheeiveeugfefhfetteevgeffkefffeetffdvleehudei
 teenucffohhmrghinhepghhithhhuhgsrdgtohhmnecukfhppeehvddrudeijedrudeivd
 drjeefnecuvehluhhsthgvrhfuihiivgepvdenucfrrghrrghmpehmrghilhhfrhhomhep
 ughopghnohhtpghrvghplhihsehmnhhothdrnhgvth
X-ME-Proxy: <xmx:XjNgYDd6MHTvqgRiZgYFVRiEb3K07dJDaJ6kFCwPS4k6wCVAvaimVg>
 <xmx:XjNgYJLfCKiCvOsOFGQDZ5HS7LOKUUz68vfAkOnitFNBtgn3m9pQdg>
 <xmx:XjNgYIIhgHfssqRx_fhN34RgX82KP_dwp_IM1TSZO5unDEn0jm8jlg>
 <xmx:XjNgYCiLcUWpzZHKN6VxKfQPFYeK7Yz-UIhnI89rF3620qDdWPiL2Q>
Received: from fv-az186-764.internal.cloudapp.net (unknown [52.167.162.73])
 by mail.messagingengine.com (Postfix) with ESMTPA id 4D25924005A
 for <tls@ietf.org>; Sun, 28 Mar 2021 03:42:22 -0400 (EDT)
Content-Type: multipart/alternative;
 boundary="===============0703342724051186550=="
MIME-Version: 1.0
From: Repository Activity Summary Bot <do_not_reply@mnot.net>
To: tls@ietf.org
Message-Id: <20210328074222.4D25924005A@mailuser.nyi.internal>
Date: Sun, 28 Mar 2021 03:42:22 -0400 (EDT)
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/g0S63X2gWyiTU8T2999XHVDAOlA>
Subject: [TLS] Weekly github digest (TLS Working Group Drafts)
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working
 group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>,
 <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>,
 <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 28 Mar 2021 07:42:35 -0000

--===============0703342724051186550==
MIME-Version: 1.0
Content-Transfer-Encoding: quoted-printable
Content-Type: text/plain; charset="utf-8"; format="flowed"




Issues
------
* tlswg/draft-ietf-tls-esni (+3/-2/=F0=9F=92=AC32)
  3 issues created:
  - Server enforcement of ClientHelloInner invariants (by davidben)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/406=20
  - public_name edge cases and client checks (by davidben)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/405=20
  - [Question] Is there any public-facing setups that currently support ECH=
? (by cujof)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/404=20

  10 issues received 32 new comments:
  - #406 Server enforcement of ClientHelloInner invariants (1 by martinthom=
son)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/406=20
  - #404 [Question] Is there any public-facing setups that currently suppor=
t ECH? (4 by TheDGOfficial, cujof, sftcd)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/404=20
  - #403 public_name and maximum_name_length could be smaller (1 by cjpatto=
n)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/403=20
  - #402 Not all of CHOuter is authenticated (3 by chris-wood, cjpatton, ma=
rtinthomson)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/402=20
  - #401 ECH complexity (1 by chris-wood)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/401=20
  - #400 Hard to imagine ECH handling in constant time - ponder and documen=
t? (6 by chris-wood, cjpatton, davidben, sftcd)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/400=20
  - #398 Is the outer compression really worthwhile? (3 by chris-wood, cjpa=
tton)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/398=20
  - #397 Including the client's ephemeral public key in the AAD precludes u=
se of a single-shot HPKE API (3 by chris-wood, cjpatton, davidben)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/397=20
  - #396 A MUST for inclusion of public_name in outer SNI seems wrong (9 by=
 chris-wood, cjpatton, davidben, sftcd)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/396=20
  - #395 (Editorial) Add some more structure to "Offering ECH" (1 by cjpatt=
on)
    https://github.com/tlswg/draft-ietf-tls-esni/issues/395=20

  2 issues closed:
  - Consider a shorter config ID length https://github.com/tlswg/draft-ietf=
-tls-esni/issues/379=20
  - [Question] Is there any public-facing setups that currently support ECH=
? https://github.com/tlswg/draft-ietf-tls-esni/issues/404=20



Pull requests
-------------
* tlswg/draft-ietf-tls-esni (+1/-0/=F0=9F=92=AC0)
  1 pull requests submitted:
  - Define HelloRetryRequestInner/Outer messages (by cjpatton)
    https://github.com/tlswg/draft-ietf-tls-esni/pull/407=20

* tlswg/dtls13-spec (+1/-0/=F0=9F=92=AC0)
  1 pull requests submitted:
  - Error -> fatal (by ekr)
    https://github.com/tlswg/dtls13-spec/pull/219=20


Repositories tracked by this digest:
-----------------------------------
* https://github.com/tlswg/draft-ietf-tls-semistatic-dh
* https://github.com/tlswg/draft-ietf-tls-md5-sha1-deprecate
* https://github.com/tlswg/draft-ietf-tls-esni
* https://github.com/tlswg/certificate-compression
* https://github.com/tlswg/draft-ietf-tls-external-psk-importer
* https://github.com/tlswg/draft-ietf-tls-ticketrequest
* https://github.com/tlswg/tls13-spec
* https://github.com/tlswg/tls-flags
* https://github.com/tlswg/dtls13-spec
* https://github.com/tlswg/dtls-conn-id
* https://github.com/tlswg/tls-subcerts
* https://github.com/tlswg/oldversions-deprecate
* https://github.com/tlswg/sniencryption
* https://github.com/tlswg/tls-exported-authenticator
* https://github.com/tlswg/draft-ietf-tls-ctls
* https://github.com/tlswg/external-psk-design-team

--===============0703342724051186550==
Content-Type: text/html; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: quoted-printable

<!doctype html>
<html lang=3D"en">
<head>
<meta charset=3D"utf-8">
<title>Weekly github digest (TLS Working Group Drafts)</title>
<style>
body { font-family: Gotham, "Helvetica Neue", Helvetica, Arial, sans-serif;=
 font-size: 14px; }
h2 { margin-top: 3em; color: #A52A2A; font-style: italic; font-weight: norm=
al; }
h3 { margin-bottom:0; margin-top: 2em; font-size: 1.2em; }
h1+h2 { margin-top: 1em; }
a { color: #bb6219; text-decoration: none; }
li { margin-bottom: .35em; }
.repos { margin-bottom: 0; margin-top:0; line-height: 1.2; }
.new { color: red; }
.label { display: inline;
	padding: .2em .6em .3em;
	font-size: 75%;
	font-weight: 700;
	line-height: 1;
	color: #fff;
	text-align: center;
	white-space: nowrap;
	vertical-align: baseline;
	border-radius: .25em;
}
</style>
</head>

<body>
<h1>Sunday March 28, 2021</h1>


<h2>Issues</h2>

<h3>tlswg/draft-ietf-tls-esni (+3/-2/=F0=9F=92=AC32)</h3>
  <p class=3D"new">3 issues created:</p>
  <ul>
  <li>#406 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
06">Server enforcement of ClientHelloInner invariants</a> (by davidben) </l=
i>
 =20
  <li>#405 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
05">public_name edge cases and client checks</a> (by davidben) </li>
 =20
  <li>#404 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
04">[Question] Is there any public-facing setups that currently support ECH=
?</a> (by cujof) </li>
  </ul>

  <p>10 issues received 32 new comments:</p>
  <ul>
  <li>#406 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
06">Server enforcement of ClientHelloInner invariants</a> (1 by martinthoms=
on) </li>
 =20
  <li>#404 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
04">[Question] Is there any public-facing setups that currently support ECH=
?</a> (4 by TheDGOfficial, cujof, sftcd) </li>
 =20
  <li>#403 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
03">public_name and maximum_name_length could be smaller</a> (1 by cjpatton=
) </li>
 =20
  <li>#402 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
02">Not all of CHOuter is authenticated</a> (3 by chris-wood, cjpatton, mar=
tinthomson) </li>
 =20
  <li>#401 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
01">ECH complexity</a> (1 by chris-wood) </li>
 =20
  <li>#400 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
00">Hard to imagine ECH handling in constant time - ponder and document?</a=
> (6 by chris-wood, cjpatton, davidben, sftcd) </li>
 =20
  <li>#398 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/3=
98">Is the outer compression really worthwhile?</a> (3 by chris-wood, cjpat=
ton) </li>
 =20
  <li>#397 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/3=
97">Including the client&#x27;s ephemeral public key in the AAD precludes u=
se of a single-shot HPKE API</a> (3 by chris-wood, cjpatton, davidben) </li>
 =20
  <li>#396 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/3=
96">A MUST for inclusion of public_name in outer SNI seems wrong</a> (9 by =
chris-wood, cjpatton, davidben, sftcd) </li>
 =20
  <li>#395 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/3=
95">(Editorial) Add some more structure to &quot;Offering ECH&quot;</a> (1 =
by cjpatton) </li>
  </ul>

  <p>2 issues closed:</p>
  <ul>
  <li>#379 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/3=
79">Consider a shorter config ID length</a> </li>
 =20
  <li>#404 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/issues/4=
04">[Question] Is there any public-facing setups that currently support ECH=
?</a> </li>
  </ul>



<h2>Pull requests</h2>
<h3>tlswg/draft-ietf-tls-esni (+1/-0/=F0=9F=92=AC0)</h3>
  <p class=3D"new">1 pull requests submitted:</p>
  <ul>
  <li>#407 <a href=3D"https://github.com/tlswg/draft-ietf-tls-esni/pull/407=
">Define HelloRetryRequestInner/Outer messages</a> (by cjpatton) </li>
  </ul>



<h3>tlswg/dtls13-spec (+1/-0/=F0=9F=92=AC0)</h3>
  <p class=3D"new">1 pull requests submitted:</p>
  <ul>
  <li>#219 <a href=3D"https://github.com/tlswg/dtls13-spec/pull/219">Error =
-&gt; fatal</a> (by ekr) </li>
  </ul>




<h2>Repositories tracked by this digest:</h2>
<ul class=3D"repos">
  <li><a href=3D"https://github.com/tlswg/draft-ietf-tls-semistatic-dh">htt=
ps://github.com/tlswg/draft-ietf-tls-semistatic-dh</a></li>
  <li><a href=3D"https://github.com/tlswg/draft-ietf-tls-md5-sha1-deprecate=
">https://github.com/tlswg/draft-ietf-tls-md5-sha1-deprecate</a></li>
  <li><a href=3D"https://github.com/tlswg/draft-ietf-tls-esni">https://gith=
ub.com/tlswg/draft-ietf-tls-esni</a></li>
  <li><a href=3D"https://github.com/tlswg/certificate-compression">https://=
github.com/tlswg/certificate-compression</a></li>
  <li><a href=3D"https://github.com/tlswg/draft-ietf-tls-external-psk-impor=
ter">https://github.com/tlswg/draft-ietf-tls-external-psk-importer</a></li>
  <li><a href=3D"https://github.com/tlswg/draft-ietf-tls-ticketrequest">htt=
ps://github.com/tlswg/draft-ietf-tls-ticketrequest</a></li>
  <li><a href=3D"https://github.com/tlswg/tls13-spec">https://github.com/tl=
swg/tls13-spec</a></li>
  <li><a href=3D"https://github.com/tlswg/tls-flags">https://github.com/tls=
wg/tls-flags</a></li>
  <li><a href=3D"https://github.com/tlswg/dtls13-spec">https://github.com/t=
lswg/dtls13-spec</a></li>
  <li><a href=3D"https://github.com/tlswg/dtls-conn-id">https://github.com/=
tlswg/dtls-conn-id</a></li>
  <li><a href=3D"https://github.com/tlswg/tls-subcerts">https://github.com/=
tlswg/tls-subcerts</a></li>
  <li><a href=3D"https://github.com/tlswg/oldversions-deprecate">https://gi=
thub.com/tlswg/oldversions-deprecate</a></li>
  <li><a href=3D"https://github.com/tlswg/sniencryption">https://github.com=
/tlswg/sniencryption</a></li>
  <li><a href=3D"https://github.com/tlswg/tls-exported-authenticator">https=
://github.com/tlswg/tls-exported-authenticator</a></li>
  <li><a href=3D"https://github.com/tlswg/draft-ietf-tls-ctls">https://gith=
ub.com/tlswg/draft-ietf-tls-ctls</a></li>
  <li><a href=3D"https://github.com/tlswg/external-psk-design-team">https:/=
/github.com/tlswg/external-psk-design-team</a></li>
  </ul>
</body>
</html>

--===============0703342724051186550==--

