Re: [TLS] Call for adoption of draft-thomson-tls-keylogfile

Andrei Popov <Andrei.Popov@microsoft.com> Mon, 28 November 2022 19:01 UTC

Return-Path: <Andrei.Popov@microsoft.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 07AF3C1526E5 for <tls@ietfa.amsl.com>; Mon, 28 Nov 2022 11:01:47 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ChsidlYgV43G for <tls@ietfa.amsl.com>; Mon, 28 Nov 2022 11:01:43 -0800 (PST)
Received: from NAM06-BL2-obe.outbound.protection.outlook.com (mail-bl2nam06on070e.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe55::70e]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 384D4C14F72C for <tls@ietf.org>; Mon, 28 Nov 2022 11:01:42 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=c7zV+zncUqaBvJsA9S2NotNiZ3MTjxGnU7x23Sfhwyqd8J9zSN4PiGsAaF4bs4/6Wy/38glwwAjiNqI427DqJk43b3WoOq2vWPZgPT/Vvbk8jQD65HPthPfKzcTerAJXKIgLIsh32cWU77fJ0S5+XTiS7+MZ6hodfat0PRjpQm2RFvC6ZqfwNKWTZOCoxFi0Ui29+gRCIPF2mn4PnTgT2dzJtLbYfyXkggmI2ZHIRx7I1eax7ZjfyydNXQqQZULJF1PADXVq8GDLD8r8k8qGAQO9CGQ+YLIcBpT8S+kUyM2+hVBRognxt1VTr+Yk2isgR4rGpWrLTgx07oB/m6j3qg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=DuPkpJRTKIrVEnBLgla7Eh8xeQCqsVvSbpgFoRcpWYI=; b=fFeBzkT58i35mzi77K5BHJ8wUC3xSkUF8Ru06VkFYp+TcIvVPDvqEsObxz702fVHXJRga+sKauBEGKIoNi5dtON8fHjYjrvPic93zeynPqwq1UUFOmp6ryhCRoWZcBt8swvEfulXUT32E5Yqiy2lLqc9/vd+7ngsBUAbVHe7WFOF8R4HlKb3wNsNP0kpwKTtLxALVDNzFREW/rGGTGXIaRGWuBZpiA4S5KAFf4VQa9pERm6S8osqoVR/Pgtx7j26io9eQnteudGe84MDjiKwBTFVfU5dcMZtc59WECu0xSYefR0xgux0T1UaTtss8t7vFxUOkS5LbOLCBvm8EDsCNg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=microsoft.com; dmarc=pass action=none header.from=microsoft.com; dkim=pass header.d=microsoft.com; arc=none
Received: from BY5PR00MB0675.namprd00.prod.outlook.com (2603:10b6:a03:208::8) by DS1PEPF0000B07B.namprd00.prod.outlook.com (2603:10b6:2c:400::9) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5875.0; Mon, 28 Nov 2022 19:01:37 +0000
Received: from BY5PR00MB0675.namprd00.prod.outlook.com ([fe80::b1e3:80e7:3451:8397]) by BY5PR00MB0675.namprd00.prod.outlook.com ([fe80::b1e3:80e7:3451:8397%3]) with mapi id 15.20.5914.000; Mon, 28 Nov 2022 19:01:37 +0000
From: Andrei Popov <Andrei.Popov@microsoft.com>
To: "Salz, Rich" <rsalz=40akamai.com@dmarc.ietf.org>, Sean Turner <sean@sn3rd.com>, TLS List <tls@ietf.org>
Thread-Topic: [TLS] Call for adoption of draft-thomson-tls-keylogfile
Thread-Index: AQHZA1rk9+dges3mAkmdeRt1VmHLq65UsKZw
Date: Mon, 28 Nov 2022 19:01:37 +0000
Message-ID: <BY5PR00MB067585D07C38C2A3739F848B8C139@BY5PR00MB0675.namprd00.prod.outlook.com>
References: <15D5BB25-508F-42E3-B843-BCB81B668355@sn3rd.com> <9FB98E17-8580-4B23-AA1D-D29739E924AD@akamai.com>
In-Reply-To: <9FB98E17-8580-4B23-AA1D-D29739E924AD@akamai.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ActionId=ef547621-cd3a-4592-a946-c04b42f5bcbe; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ContentBits=0; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=true; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Method=Standard; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=Internal; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2022-11-28T19:00:27Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47;
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=microsoft.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: BY5PR00MB0675:EE_|DS1PEPF0000B07B:EE_
x-ms-office365-filtering-correlation-id: 0de842cf-6413-4c0b-2961-08dad172f9a7
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BY5PR00MB0675.namprd00.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230022)(4636009)(39860400002)(346002)(366004)(396003)(136003)(376002)(451199015)(33656002)(82950400001)(122000001)(38100700002)(86362001)(53546011)(38070700005)(82960400001)(66946007)(52536014)(76116006)(7696005)(478600001)(6506007)(64756008)(71200400001)(316002)(8936002)(10290500003)(966005)(8990500004)(66556008)(8676002)(41300700001)(2906002)(55016003)(66446008)(83380400001)(5660300002)(66476007)(186003)(110136005)(9686003)(26005); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BY5PR00MB0675.namprd00.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 0de842cf-6413-4c0b-2961-08dad172f9a7
X-MS-Exchange-CrossTenant-originalarrivaltime: 28 Nov 2022 19:01:37.0935 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 42e33Krbn9L9Sl8KVl9tkDEYt4fZofAP/oC+7Bb8LKk6P6YcjcIu0lYqcBQ0ztqcpqgmrSvuXvsrU2+VxU46rA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DS1PEPF0000B07B
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/gb8-nwX1O3R82O4xVICgfk69Gz0>
Subject: Re: [TLS] Call for adoption of draft-thomson-tls-keylogfile
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 28 Nov 2022 19:01:47 -0000

I oppose adoption of draft-thomson-tls-keylogfile. The stated goal was to find a permanent, discoverable location for this document, other than NSS project's repository. Perhaps it's fine to create an RFC for this purpose, but then I'd argue that it should not be an Informational RFC.

Standards-track RFC that promotes the export of TLS secrets in clear-text sends the wrong message, can (and will) be used to push TLS stack vendors to implement this.

Cheers,

Andrei

-----Original Message-----
From: TLS <tls-bounces@ietf.org> On Behalf Of Salz, Rich
Sent: Monday, November 28, 2022 10:54 AM
To: Sean Turner <sean@sn3rd.com>; TLS List <tls@ietf.org>
Subject: [EXTERNAL] Re: [TLS] Call for adoption of draft-thomson-tls-keylogfile

I support adoption.

I assume the wireshark folk(s), etc., will review ...

_______________________________________________
TLS mailing list
TLS@ietf.org
https://nam06.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Ftls&data=05%7C01%7CAndrei.Popov%40microsoft.com%7Ce5d4a41309dd44fe5e2108dad172043a%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C0%7C638052584901610518%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C2000%7C%7C%7C&sdata=ffuQE0lqf5IzkYWzizCPKXA4lEHU6e9Nh5kJ4gwd998%3D&reserved=0