[TLS] Re: Working Group Last Call for Use of ML-DSA in TLS 1.3

"Ackermann, Michael" <MAckermann@bcbsm.com> Wed, 06 May 2026 19:36 UTC

Return-Path: <MAckermann@bcbsm.com>
X-Original-To: tls@mail2.ietf.org
Delivered-To: tls@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id D7AF0EA1FB64 for <tls@mail2.ietf.org>; Wed, 6 May 2026 12:36:51 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1778096211; bh=CPS3lOioYYLtSN2KIDxDaptSP9AS67dR6WaxOJAC8xc=; h=From:To:CC:Subject:Date:References:In-Reply-To; b=TaZlAyygT2XV1syAlW+AiVhIWrG+ybuMHvat0YZlnj9ARkCQ2XaH0D8vhYXnBVyZC mB+lyfeyaT6MfzmUfYMoIhTFaPk3ytzqzCp89/tZ/+gzhlg0kGEcu/mbXV7Xy7iJ4Q 8XQx6BGx7Qzn+Jsl1CIJ5facThWNbXae6M650ixw=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -1.995
X-Spam-Level:
X-Spam-Status: No, score=-1.995 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=bcbsm.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kh1Gjtd773ud for <tls@mail2.ietf.org>; Wed, 6 May 2026 12:36:47 -0700 (PDT)
Received: from mx0a-003f7301.pphosted.com (mx0a-003f7301.pphosted.com [148.163.146.130]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 50AA4EA1FB55 for <tls@ietf.org>; Wed, 6 May 2026 12:36:45 -0700 (PDT)
Received: from pps.filterd (m0384324.ppops.net [127.0.0.1]) by mx0a-003f7301.pphosted.com (8.18.1.11/8.18.1.11) with ESMTP id 6469xX0v2553573; Wed, 6 May 2026 15:36:37 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bcbsm.com; h=cc :content-type:date:from:in-reply-to:message-id:mime-version :references:subject:to; s=8122024POD; bh=CPS3lOioYYLtSN2KIDxDapt SP9AS67dR6WaxOJAC8xc=; b=LMhuuQLRsyHlHPee9bEmpUNL8AZzd3Dh30w+xYI d7IXz9AG23MUOH56+uiyTHSFtjliU27r7K4pUsx2w9Jbkzx0CXv4Z+75xLeKQoQV vkOerPhgFmtMp/mJAq8G06F8vszrFlbhg6o2LodThjY3xi46K6OztcD7ImDasSe/ TZlJl2O5VdKAUqS+5IdSg1WYINL3XlcijqVL3pOlLeeQk8GovJgPdJCvbE4Vn86J SQV1Mj9ciTNdAPkRONEGfOiDOxpb2IKLgBevwkSnPCgw9dltCdIAeYOAJAuzViuX ddL5WUKUV69mSp55LB+PjABo4gytENcgAdOTPxRfXzDk+0w==
Received: from ph7pr06cu001.outbound.protection.outlook.com (mail-westus3azon11010066.outbound.protection.outlook.com [52.101.201.66]) by mx0a-003f7301.pphosted.com (PPS) with ESMTPS id 4dx2wu547j-1 (version=TLSv1.3 cipher=TLS_AES_256_GCM_SHA384 bits=256 verify=OK); Wed, 06 May 2026 15:36:36 -0400 (EDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=W2/1a4SIedsJoaO6fXEYEHGpLcV/LCwC2nUXGr20c/S061joq8oaViiZYsImLLWpX1S3VF5ptR5StuEaly3svWIsxoDaPTTS5tMyykuoRIZiIkWEdxB7RA1oRduq/CsyN3qjTHPVRiYT02WKfjXzVPeBtNapHT+zsFY2zoJpo12/ss/zvoGF/340d+3c7lgjkDrwUGg27DrvUHxafuBUNrmRyPkicBQpoNeYD/C8CS5NCqr9ay3SJTXzr48BpK7mWIC+WHvCnzD9hY9GDAMWLs2ZFVuNMlG1HOSpDGfUyaIeQg59tkn+hEzY8NqxI0ZtoGDm91oNiIR3Lo6YnhdJwQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=UeWEmN6CUbVhV3yAGNfPSSYuynYm9jVmGLfPKcBjcjs=; b=Kbn6z3J9ZbU/x2msyRfszyQQw0V0s8FaMfQF8LYBFZG3N/xPx+YFHPtcYJ9OjDgRBXOP5rr7MHvdGWLyfJOIeuLSR959QAe8N/3XoMLdZwdYUy9X4PcxguTdwQTmzYp5/THIMzDSt/Mzbi/Q+gfw6Oru2QKhUhxT/0cG7mUsAhu6tHU7M6yCwsU1LYcnzOJjabZ2GC67enHhwjJRql9z/v0QjV6QTDUWcJkCXsAtoJzFMQx85HVrXHnSal4Nj7/Oe93B/rdmYP130unUVHV0dvG58jN51fRcEXSjOYywIPjbswbjxlQuvDvP6TO2wC98VTXtjSBEVvrQvwe/EEAYVA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=bcbsm.com; dmarc=pass action=none header.from=bcbsm.com; dkim=pass header.d=bcbsm.com; arc=none
Received: from BYAPR14MB2885.namprd14.prod.outlook.com (2603:10b6:a03:14c::19) by PH8PR14MB6014.namprd14.prod.outlook.com (2603:10b6:510:229::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9870.25; Wed, 6 May 2026 19:36:34 +0000
Received: from BYAPR14MB2885.namprd14.prod.outlook.com ([fe80::1e91:5451:5d6a:b8cb]) by BYAPR14MB2885.namprd14.prod.outlook.com ([fe80::1e91:5451:5d6a:b8cb%5]) with mapi id 15.20.9870.023; Wed, 6 May 2026 19:36:33 +0000
From: "Ackermann, Michael" <MAckermann@bcbsm.com>
To: Eric Rescorla <ekr@rtfm.com>, David Benjamin <davidben@chromium.org>
Thread-Topic: [TLS] Re: Working Group Last Call for Use of ML-DSA in TLS 1.3
Thread-Index: AQHc100IKE8mRaHjTU+j+AEOWj4Ic7YBA+2AgAADqYCAADrTAIAALjRw
Date: Wed, 06 May 2026 19:36:33 +0000
Message-ID: <BYAPR14MB288524DF36A25332DC1FA6E6D73F2@BYAPR14MB2885.namprd14.prod.outlook.com>
References: <16CF0FDA-7263-461A-9F2B-D37DBEAF5DD9@sn3rd.com> <038E2DBD-EE06-4091-8401-9818FB692459@sn3rd.com> <3E4481D4-A20E-4B3B-B5BE-B71BBDA42176@sn3rd.com> <CAF8qwaBU3-VvY2TregAg7VezK6b4dmOUTsEFNmq=zj1eMoPgHQ@mail.gmail.com> <CABcZeBNzQ3-qQgQCpEigo9cVRZNQScO3cB+QEvjuNJ-xP_fQGw@mail.gmail.com>
In-Reply-To: <CABcZeBNzQ3-qQgQCpEigo9cVRZNQScO3cB+QEvjuNJ-xP_fQGw@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: BYAPR14MB2885:EE_|PH8PR14MB6014:EE_
x-ms-office365-filtering-correlation-id: 5d0d8ef4-7da0-4736-a7e9-08deaba6c7c5
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|1800799024|4022899009|366016|376014|38070700021|4133799003|8096899003|13003099007|56012099003|22082099003|18002099003;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:BYAPR14MB2885.namprd14.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(1800799024)(4022899009)(366016)(376014)(38070700021)(4133799003)(8096899003)(13003099007)(56012099003)(22082099003)(18002099003);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_BYAPR14MB288524DF36A25332DC1FA6E6D73F2BYAPR14MB2885namp_"
MIME-Version: 1.0
X-Exchange-RoutingPolicyChecked: Av/tqzHcpdZWIK6vkdJBH7gcp8mw+rBUuS5RisJa4cXbnusTikdqHEd7WeTRLL/nPyIoXhZWiS2aEdQHhNILTUs1Hy9/wF54hQ5ijvutHQIB7xPkoMkDAbrTSBZEKWyWlslif80A9AOiQ7WXHEUecY+MVY5d2h2UI38J1bFnbZfLliKOG/bzKpRIp81Nm5JEuMcA79mVdKKpGuXzVLdF23g/naJZNVxaPJBi6VpYXVEDNm5abVkutQ1cfkJyukFPMlFuLgeCBpk7JkcOsxNZ6DWLC5kY7ZpaTjUgPMZTA5j+ntHu+Do8MeW/mbl5Smq38EUTArN7JUDbqav0ZNC83Q==
X-MS-Exchange-AntiSpam-ExternalHop-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-ExternalHop-MessageData-0: BlKWQz44ewNLLuVhLrhYi64MZ1sNiguwLyYzaoonvtaKyX+cHzSfpCt4q4q1D9F1ngEhO5xiDxar7DQ7lCerOEzkAbro7VsBck4qYRbmZo6x9tgP8uKPWAHG1hS8RJ/iqNd97qGjTlvHTfE1xIqMS41ciBhtw/ArC0KzeZjPLLl9nczQST+ek4kVk5RXj6pBM6GuSmG9fdfCtMNjSss/affhRqgN5tN04poUPIzHgn36mkNOlHtLz3sK6EE47+KIe0eRzw+iKRI2Eq6RdXtWcYGI3xrgb7Ey4Rxi4hLb7SpVJ0eVRMRgn6olePd0+fd8nWojsPqgSszkO9fZqOtfmSvDv7v7xwqMbn3TCWEkIzd6hNvqZnXGSWozH60rXzaXVwa6LVe9Th53twh3RVGxO8JznBDzfKqIh9CHBrV+WB1GXuUq4rdrR7rWv0wCKjLlV2jkUtt+WkYEjXOfTxPlUSbaL5hAdiUINBtaaXArv83a85ziEuQ2byaKKOK1wacx6ze0UzwwfUltEzQ//II60cVryergs1XWQsj1KZtovgio7oonPynCD0BcS0dL00UABdSp3VEUUEAOsz/k+8uqA6BoLNGvv/0pJJWmA4RdYmboPf0k4Ps9KfOdYvf4Q+bD
X-OriginatorOrg: bcbsm.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BYAPR14MB2885.namprd14.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 5d0d8ef4-7da0-4736-a7e9-08deaba6c7c5
X-MS-Exchange-CrossTenant-originalarrivaltime: 06 May 2026 19:36:33.7186 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 6f56d3fa-5682-4261-b169-bc0d615da17c
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: KWsEeJaSv69hND+ouEID6P4EExaijF9Q1YmqooV6mHB1v6r7mKkhI7B6NfOw7o4AWTxRmGcgrQ1OIx/KTrIylA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PH8PR14MB6014
X-Proofpoint-GUID: jckh4WMgK_z1aHjhfARaer7PpKA3ADaf
X-Authority-Analysis: v=2.4 cv=HMvz0Itv c=1 sm=1 tr=0 ts=69fb9844 cx=c_pps a=sAaYeWWHS4LdRs88aTULxQ==:117 a=z/mQ4Ysz8XfWz/Q5cLBRGdckG28=:19 a=lCpzRmAYbLLaTzLvsPZ7Mbvzbb8=:19 a=xqWC_Br6kY4A:10 a=NGcC8JguVDcA:10 a=VkNPw1HP01LnGYTKEx00:22 a=TzBOwhZN07QqnHmAFyNm:22 a=zsI_Wben6aoH3NpMxpdd:22 a=cm27Pg_UAAAA:8 a=BivtZg0fAAAA:8 a=48vgC7mUAAAA:8 a=5IsXbjgYAAAA:8 a=t7tYCJv79GJvDXFuLGIA:9 a=lqcHg5cX4UMA:10 a=QEXdDO2ut3YA:10 a=yMhMjlubAAAA:8 a=SSmOFEACAAAA:8 a=SerFZoItAjmlC1-jK2QA:9 a=8jhmobLHVLN4Phf7:21 a=gKO2Hq4RSVkA:10 a=UiCQ7L4-1S4A:10 a=hTZeC7Yk6K0A:10 a=6UIaq3Bcl8oA:10 a=frz4AuCg-hUA:10 a=6hzDGdwgND3JRs1QQWkJ:22 a=RR2nPHISKLg-FD_FhCoU:22
X-Proofpoint-ORIG-GUID: jckh4WMgK_z1aHjhfARaer7PpKA3ADaf
X-Proofpoint-Spam-Details-Enc: AW1haW4tMjYwNTA2MDE5MiBTYWx0ZWRfX9hJwxUiUm/ir PB8vf0QTuvWU3jHdHZjePuTp2Ruvs+Oca8uVhEh/eZ4Ct8+ztZrK64ygeexyDUYAaFxixPXzAME H0IgvULYpMu+Cvi1cLkq0cn2aJUMZyvtp7Lr4vAPsGVkAEOzLJ8xeJAHSOqtWjgXgpKDJh0GCel ccDyVDLyLkBIRWAoCbQUmvvfAAGjw0zKyDi5ZAp+xWliw62b8JSoH/qSztBdypXIEpcyv7jEr7m S+CQVtLWHkMEGcwk+iimKb2eiZTie0buiLtYuois4BtpoVCGebVm10SCBPipb9USuoHbtqeQhCR JI8cll26yy/ON8gBNAWoN2N8IvGv9UM/iO8Tn/Vp9SZqTZOPKMCloiv6aqZ3mmWFKEsenjujdWf 2a9f8lQrX9MM8F1UahOX7+NPMM6/lpLG0sY2Y9YEUzPtqAtJNNKKMVVXr02W7Ru3kkDvkn0AK+w PCs473kikmeKEl7Zl5A==
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.293,Aquarius:18.0.1143,Hydra:6.1.51,FMLib:17.12.100.49 definitions=2026-05-06_01,2026-05-06_01,2025-10-01_01
Message-ID-Hash: 4SHCBCEXQLWIUG34ILHQ4JZCJZHXWRZG
X-Message-ID-Hash: 4SHCBCEXQLWIUG34ILHQ4JZCJZHXWRZG
X-MailFrom: MAckermann@bcbsm.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: TLS List <tls@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: Working Group Last Call for Use of ML-DSA in TLS 1.3
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/jc-nEpVgZaQ1jwZ3WHnRdAIjijQ>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

HOSTILE TAKEOVER???????????

From: Eric Rescorla <ekr@rtfm.com>
Sent: Wednesday, May 6, 2026 12:51 PM
To: David Benjamin <davidben@chromium.org>
Cc: TLS List <tls@ietf.org>
Subject: [TLS] Re: Working Group Last Call for Use of ML-DSA in TLS 1.3

[External email]
+100 to this.

With any luck, we can take a pause on the discussion of this topic on-list. I am aware that there may be pending appeals, but we have a process for addressing those that does not require on-list debate.

-Ekr


On Wed, May 6, 2026 at 6:23 AM David Benjamin <davidben@chromium.org<mailto:davidben@chromium.org>> wrote:
Thanks, Deirdre, Joe, and Sean, for all your hard work in navigating these WG discussions!

On Wed, May 6, 2026 at 9:09 AM Sean Turner <sean@sn3rd.com<mailto:sean@sn3rd.com>> wrote:

Replying to the original consensus call message.



RFC 2418 Section 3.3 lays out the criteria for “rough consensus”:


   Working groups make decisions through a "rough consensus" process.

   IETF consensus does not require that all participants agree although

   this is, of course, preferred.  In general, the dominant view of the

   working group shall prevail.  (However, it must be noted that

   "dominance" is not to be determined on the basis of volume or

   persistence, but rather a more general sense of agreement.) Consensus

   can be determined by a show of hands, humming, or any other means on

   which the WG agrees (by rough consensus, of course).  Note that 51%

   of the working group does not qualify as "rough consensus" and 99% is

   better than rough.  It is up to the Chair to determine if rough

   consensus has been reached.


In this case, during WGLC there was an almost 4:1 ratio for progressing this draft, which we judge fits within the numeric “more than 51% and less than 99%” range suggested by this text for “rough consensus” and represents the “dominant view of the working group”.


In assessing rough consensus, we also considered the nature of the objections. In reviewing the list traffic, the majority of objections related to the status of pure MLDSA versus composite MLDSA-ECC, including (1) we should not publish a pure MLDSA specification at all; (2) we should recommend composites over pure MLDSA; (3) we should publish the composite and pure MLDSA specifications concurrently. While there was substantial disagreement on these points, we believe that the discussion on-list sufficiently aired the respective points of view and that the right approach is fundamentally a judgement call based on weighing various technical factors, which each WG participant needs to make for themselves. We see no reason to believe that participants were not able to make informed judgements.


Conclusion: The chairs believe there is consensus to proceed with publication of this draft as an RFC with Recommended=N for those people that want to use this algorithm, and a future Standards Action will be needed to make a change to Recommended=Y, if anyone has the willingness to undergo this heated discussion again.

For transparency purposes, the chairs note that we received a complaint/appeal about the consensus call. The message was moderated due to a previous notice of moderation; see [1], and the complaint/appeal contains a derivative work notice. As a result, the message was not sent to the mail list and we will not process the complaint/appeal as-is. If the message is resubmitted without the notice, the message can be posted to the mail list and we will process the complaint/appeal.


The Chairs,
Deirdre, Joe, and Sean

[1] https://mailarchive.ietf.org/arch/msg/tls/no0lW8r_wIPGF1ZXWB3EaGywh9Q/<https://urldefense.com/v3/__https:/mailarchive.ietf.org/arch/msg/tls/no0lW8r_wIPGF1ZXWB3EaGywh9Q/__;!!DVqnNCPqsA!H9Py_Rt__O8pjzUI4OMX2OusR6HFRbXek-Wm9dHUdjLkLaTuW7-CKZAvUaDoN8M1vUJ4yLIQHQ$>


On Apr 28, 2026, at 16:24, Sean Turner <sean@sn3rd.com<mailto:sean@sn3rd.com>> wrote:

Hi! The chairs have judged that there is consensus to progress this I-D. We will work with the authors to get a new version submitted and we will get to work on the Shepherd Write-Up.

The Chairs,
Deirdre, Joe, and Sean


On Apr 9, 2026, at 15:30, Sean Turner <sean@sn3rd.com<mailto:sean@sn3rd.com>> wrote:

This is the working group last call for Use of ML-DSA in TLS 1.3. Please review draft-ietf-tls-mldsa [1] and reply to this thread indicating if you think it is ready for publication or not. If you do not think it is ready please indicate why. This call will end on April 23, 2026.

REMINDER: If you have not done so recently, review the TLS WG's Mail List Procedures; see [2].

The Chairs,
Deirdre, Joe, and Sean

[1] https://datatracker.ietf.org/doc/draft-ietf-tls-mldsa/<https://urldefense.com/v3/__https:/datatracker.ietf.org/doc/draft-ietf-tls-mldsa/__;!!DVqnNCPqsA!H9Py_Rt__O8pjzUI4OMX2OusR6HFRbXek-Wm9dHUdjLkLaTuW7-CKZAvUaDoN8M1vUKcrqJCBA$>
[2] https://mailarchive.ietf.org/arch/msg/tls/ucdImHExlbOf4Q3BCG81gjzi2xE/<https://urldefense.com/v3/__https:/mailarchive.ietf.org/arch/msg/tls/ucdImHExlbOf4Q3BCG81gjzi2xE/__;!!DVqnNCPqsA!H9Py_Rt__O8pjzUI4OMX2OusR6HFRbXek-Wm9dHUdjLkLaTuW7-CKZAvUaDoN8M1vUJmOlAILQ$>


_______________________________________________
TLS mailing list -- tls@ietf.org<mailto:tls@ietf.org>
To unsubscribe send an email to tls-leave@ietf.org<mailto:tls-leave@ietf.org>
_______________________________________________
TLS mailing list -- tls@ietf.org<mailto:tls@ietf.org>
To unsubscribe send an email to tls-leave@ietf.org<mailto:tls-leave@ietf.org>

The information contained in this communication is highly confidential and is intended solely for the use of the individual(s) to whom this communication is directed. If you are not the intended recipient, you are hereby notified that any viewing, copying, disclosure or distribution of this information is prohibited. Please notify the sender, by electronic mail or telephone, of any unintended receipt and delete the original message without making any copies.

Blue Cross Blue Shield of Michigan and Blue Care Network of Michigan are nonprofit corporations and independent licensees of the Blue Cross and Blue Shield Association.