[TLS] Consensus Call on draft-ietf-tls-dnssec-chain-extension

Joseph Salowey <joe@salowey.net> Wed, 04 April 2018 17:50 UTC

Return-Path: <joe@salowey.net>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6B163126CD6 for <tls@ietfa.amsl.com>; Wed, 4 Apr 2018 10:50:40 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=salowey-net.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qEs_1pIRzYDM for <tls@ietfa.amsl.com>; Wed, 4 Apr 2018 10:50:37 -0700 (PDT)
Received: from mail-pl0-x232.google.com (mail-pl0-x232.google.com [IPv6:2607:f8b0:400e:c01::232]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D0597124C27 for <tls@ietf.org>; Wed, 4 Apr 2018 10:50:36 -0700 (PDT)
Received: by mail-pl0-x232.google.com with SMTP id g20-v6so15067130plo.9 for <tls@ietf.org>; Wed, 04 Apr 2018 10:50:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=salowey-net.20150623.gappssmtp.com; s=20150623; h=mime-version:from:date:message-id:subject:to; bh=JSKKK/6uuyvg7O8aG4kyWGdqPNFdK6Ad/mH4qcGGA64=; b=g4YP3f8r/sfnC1BNX2L9JBpj5vxc4FwCK8k82SbeJX6XGfaxb5numa+Aby5LFYIrOR zhXfJGO1Vkx1tkzBm/mZuEJ4b2pruzE3XHjspAG5e2e8ReZqCnktCHKs+1pRUdk7fFbk lxuc3+Cs+pqgSbQGF+WF1saYNpkT0FNkD96/qru+HG8XImuCf36ytiVIIRcPvOvKbZBr h3+iU6FOEvIXXqwwiFfHGyE/Rzv+r4kxKGIbG+t5B+WcrHm9LkekriN9AftPFW92ZO2G O1UBZpcYzFIFxtn5D6SErQWWYOD0UnIR2iXFXkP/LecwlfSnlCaZ3WFivfuiemIRgtKO sjsQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:from:date:message-id:subject:to; bh=JSKKK/6uuyvg7O8aG4kyWGdqPNFdK6Ad/mH4qcGGA64=; b=JYX8/+wrzxL2s5JRcKrz3995xo8bbfEhX8SSgDAWJGPpqvKAofcNf4+kpZ+wJ2OF7c 5mi2sQsfYjAtfBZEUkNKfHOtQseNDMbpeVZjtOmA0vDG2YxIEUMKOS/kgOuZtMHvtHqq DOfnlrfBrymHQKT/9jwqknR7Df2cBHWTkXc3Ytln4LI9YW9YTMwxGA+CLj2ujmtKFCeh 6MpZgALxjHNbH+8qGW3iMWHGp2blmYMsMrS2XIIcUHJu2rh0NXUIu39zdVPFjGuO374K xmZlcYaOMgCnl2mehUL+83KsQS2YjWQFdj9w7JbEo+GIXr3OIWk0u3IsOfzZx1ia6OAB tbtw==
X-Gm-Message-State: ALQs6tC0LMFq457v77mKyew5OZ+RHVYM3B0ELua6NCVVVSjG+CkW96hO VcwapEdc1lQ7EMbbyFQA2JfI6o1ZTTIk4bFQX0/9so+S
X-Google-Smtp-Source: AIpwx49TZ+O3ZTZSOtbacwBHGW1WgQiW3QoynvRNcxpHFRay27CSzJIKSvLm87zJfEBt2k+xaP+YADuDL4NgnmU1fsA=
X-Received: by 10.101.101.152 with SMTP id u24mr4328076pgv.226.1522864236002; Wed, 04 Apr 2018 10:50:36 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.236.172.24 with HTTP; Wed, 4 Apr 2018 10:50:15 -0700 (PDT)
From: Joseph Salowey <joe@salowey.net>
Date: Wed, 04 Apr 2018 10:50:15 -0700
Message-ID: <CAOgPGoAhzEtxpW5mzmkf2kv3AcugNy0dAzhvpaqrTSuMSqWqfw@mail.gmail.com>
To: "<tls@ietf.org>" <tls@ietf.org>
Content-Type: multipart/alternative; boundary="089e08251ce8d4177405690975a8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/g7_Rf2FJmLwRmApwUIiroraBBLw>
Subject: [TLS] Consensus Call on draft-ietf-tls-dnssec-chain-extension
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Apr 2018 17:50:40 -0000

Hi Folks,

Some objections were raised late during the review of
the draft-ietf-tls-dnssec-chain-extension. The question before the working
group is either to publish the document as is or to bring the document back
into the working group to address the following issues:

- Recommendation of adding denial of existence proofs in the chain provided
by the extension
- Adding signaling to require the use of this extension for a period of
time (Pinning with TTL)

This is a consensus call on how to progress this document.  Please answer
the following questions:

1) Do you support publication of the document as is, leaving these two
issues to potentially be addressed in follow-up work?

If the answer to 1) is no then please indicate if you think the working
group should work on the document to include

A) Recommendation of adding denial of existence proofs in the chain
provided by the extension
B) Adding signaling to require the use of this extension for a period of
time (Pinning with TTL)
C) Both

This call will be open until April 18, 2018.

Thanks,

Joe