Re: [TLS] Connection ID Draft

"Fossati, Thomas (Nokia - GB/Cambridge, UK)" <thomas.fossati@nokia.com> Fri, 03 November 2017 09:59 UTC

Return-Path: <thomas.fossati@nokia.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F30BD13FD39 for <tls@ietfa.amsl.com>; Fri, 3 Nov 2017 02:59:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.92
X-Spam-Level:
X-Spam-Status: No, score=-1.92 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H4=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=nokia.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Cf434gVpZl8g for <tls@ietfa.amsl.com>; Fri, 3 Nov 2017 02:59:10 -0700 (PDT)
Received: from EUR02-HE1-obe.outbound.protection.outlook.com (mail-eopbgr10104.outbound.protection.outlook.com [40.107.1.104]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D90B513FD3A for <tls@ietf.org>; Fri, 3 Nov 2017 02:59:09 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nokia.onmicrosoft.com; s=selector1-nokia-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=CqaWDw4IwWPSsw4bdStrvE0ARSd1irHVDFrKO6b0/QU=; b=DZUstemLpduZabRgKd8leuEJ8q/BliX9mmhSY6Qalin02gIr4R91eQhL89XGV5P9TtSoaFUiRnay02zfFX/k1xD9E+RhzpWeq4kt9AzeAGokOiXiiJR7ScyWJH1dRWMHJkaVgU5o0nEsskHODI/kp9Qz7Z3Cp6gnyC1QC0k2Bv8=
Received: from VI1PR07MB1102.eurprd07.prod.outlook.com (10.163.168.26) by VI1PR07MB1104.eurprd07.prod.outlook.com (10.163.168.28) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.197.4; Fri, 3 Nov 2017 09:59:07 +0000
Received: from VI1PR07MB1102.eurprd07.prod.outlook.com ([fe80::e157:80bf:7ba7:b2ed]) by VI1PR07MB1102.eurprd07.prod.outlook.com ([fe80::e157:80bf:7ba7:b2ed%13]) with mapi id 15.20.0197.017; Fri, 3 Nov 2017 09:59:06 +0000
From: "Fossati, Thomas (Nokia - GB/Cambridge, UK)" <thomas.fossati@nokia.com>
To: Martin Thomson <martin.thomson@gmail.com>, Matt Caswell <matt@openssl.org>
CC: "tls@ietf.org" <tls@ietf.org>, "Fossati, Thomas (Nokia - GB/Cambridge, UK)" <thomas.fossati@nokia.com>
Thread-Topic: [TLS] Connection ID Draft
Thread-Index: AQHTQ6/ei1Eh6DPTUUK7WLQddJSSYqLnKXUAgADEnwCAAKpMgIAY0IwAgAB11wCAAKJeAIAAA8mAgAAIewA=
Date: Fri, 03 Nov 2017 09:59:06 +0000
Message-ID: <756DAAB1-83B9-4DC7-A05C-440175F6A0AA@nokia.com>
References: <CABcZeBPXB6cOSztzDHtKSWUCJrgET+9cF_rAiiE8CYCUSY_uLA@mail.gmail.com> <CABkgnnXT7nv9aNQh12deeitF1CurENpxgUicn9GHjMbojcEvJg@mail.gmail.com> <D0524862-083C-4576-98B8-6D8A4825D458@nokia.com> <CABkgnnW4d=H5RZ0E+Hwo4jQptDpshVVuFtD-xQudJzxLXyReAQ@mail.gmail.com> <4833b54e-880b-c2c4-99ed-4dde0c96fc5c@openssl.org> <CABkgnnUSBQ3+YG4BkGPAqmMt3YLiDVcivp_vYcdeOHrsD0ca4A@mail.gmail.com> <f128b6ea-4d2f-5aa3-9289-2439e71ee21a@openssl.org> <CABkgnnW=sYnzWUE8zVdo_kjFdES5PG74vmbc4aExrHOAJvWrKQ@mail.gmail.com>
In-Reply-To: <CABkgnnW=sYnzWUE8zVdo_kjFdES5PG74vmbc4aExrHOAJvWrKQ@mail.gmail.com>
Accept-Language: en-GB, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/f.20.0.170309
authentication-results: spf=none (sender IP is ) smtp.mailfrom=thomas.fossati@nokia.com;
x-originating-ip: [88.109.163.48]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; VI1PR07MB1104; 6:bujBnMX9C/BGM46hSrMZ+J3yxNxeL2CJrFvHb9Y5Ww5gICWwKY0QYlnlEbxrimfRlIjTiUnXNrLTKadUJBrl2Ab8DGbEI+La+hyuIccZ48vcKMdDxjKYCxQyV0gqKwLsPqe/lWGrAa/tkAmRUIanBZP1EY9GpUgvnAJp6Nx9uaASxgFdrQsdAUkE+Tq9WrDFTAF4FgVNAcaKI5HaARw+8ZpRqVCkLBgbMpbvpzDJRwSt/YYWNrp9+4Y3/JuEZTckMIHr6nzFCpUZWlmYBPcW8GgSfMSIgJsiVN3vEb3DLymMp0At1py7UlwutJNbo7UI4CVpPomcT65xKN7ZLAlaCx0RqoPlFmTMOePKlLo2zws=; 5:tJwqnIPWQfqqGEziPACTmP99SjMO33Cg8uMS5gN3MbPZrtIwwXett5UvPRY2bGToqEtalfeBp9H6enYqeR/DiQkPT3INKEfxrjrt5QQkQ9s9caN1Cd3snTZMRmNbtTzZUmxNUPpq5tl3kVQqsWfPwjwQsVaTcTxSgUXMWDVvf7Q=; 24:RIYKeHIkiD8NY4EdvlH+ImMH2ZcY9Neh4pgicubq+0B6SeKz2xzZd6OhA4Yg/837xyl0am4JxoU/5CVeVRTVzAmKN4qrux4OLxUVhYeUbHw=; 7:UVL+XEAG/swChnHd7GUxBssQzW5w+flx/LyN0r0wbADRXZJz+A3E+GJ2/z/zpfR2gJkRF1Hled8HuJ0PCPCC7uIONYAFk4A0Z9SNOgCVmvrrZ8nElXlxdFn9wLSpqtMXojtjk5iFOIt96Y/NHlu21jSGh1mMRGe0fgmbxp2a+UXJ/bo88JIWccMaepUqPjBlyWCU4NwiOGfXQ7U4YJ+ouegnU0v4DDbUxGcVaFrWrBOeTSwxNrYWfsqWZZM6OFgp
x-ms-exchange-antispam-srfa-diagnostics: SSOS;SSOR;
x-forefront-antispam-report: SFV:SKI; SCL:-1; SFV:NSPM; SFS:(10019020)(6009001)(346002)(376002)(39860400002)(189002)(199003)(24454002)(8936002)(99286004)(478600001)(7736002)(305945005)(14454004)(83506002)(36756003)(97736004)(189998001)(83716003)(68736007)(3280700002)(86362001)(3660700001)(5250100002)(53546010)(2900100001)(5660300001)(2906002)(25786009)(66066001)(54356999)(33656002)(229853002)(2950100002)(50986999)(76176999)(101416001)(316002)(6512007)(93886005)(53936002)(82746002)(102836003)(6116002)(107886003)(6506006)(6246003)(3846002)(8676002)(81166006)(81156014)(105586002)(4326008)(110136005)(39060400002)(58126008)(6436002)(106356001)(6486002)(54906003); DIR:OUT; SFP:1102; SCL:1; SRVR:VI1PR07MB1104; H:VI1PR07MB1102.eurprd07.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; MX:1; A:1; LANG:en;
x-ms-office365-filtering-correlation-id: b814a413-f080-4f69-c564-08d522a18558
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(22001)(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(48565401081)(2017052603199); SRVR:VI1PR07MB1104;
x-ms-traffictypediagnostic: VI1PR07MB1104:
x-exchange-antispam-report-test: UriScan:;
x-microsoft-antispam-prvs: <VI1PR07MB11043861BD6B206ED8438299805D0@VI1PR07MB1104.eurprd07.prod.outlook.com>
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(100000700101)(100105000095)(100000701101)(100105300095)(100000702101)(100105100095)(6040450)(2401047)(5005006)(8121501046)(93006095)(93001095)(3002001)(10201501046)(3231021)(100000703101)(100105400095)(6055026)(6041248)(20161123560025)(20161123555025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123564025)(20161123562025)(20161123558100)(6072148)(201708071742011)(100000704101)(100105200095)(100000705101)(100105500095); SRVR:VI1PR07MB1104; BCL:0; PCL:0; RULEID:(100000800101)(100110000095)(100000801101)(100110300095)(100000802101)(100110100095)(100000803101)(100110400095)(100000804101)(100110200095)(100000805101)(100110500095); SRVR:VI1PR07MB1104;
x-forefront-prvs: 0480A51D4A
received-spf: None (protection.outlook.com: nokia.com does not designate permitted sender hosts)
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-ID: <FEFA03B82EBD5F40AEEAEA55A9AE80FD@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: nokia.com
X-MS-Exchange-CrossTenant-Network-Message-Id: b814a413-f080-4f69-c564-08d522a18558
X-MS-Exchange-CrossTenant-originalarrivaltime: 03 Nov 2017 09:59:06.4434 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5d471751-9675-428d-917b-70f44f9630b0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR07MB1104
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/kJlmZQBl0yYlgfb8KP19cULzoZU>
Subject: Re: [TLS] Connection ID Draft
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 03 Nov 2017 09:59:12 -0000

On 03/11/2017, 09:28, "TLS on behalf of Martin Thomson" <tls-bounces@ietf.org on behalf of martin.thomson@gmail.com> wrote:
> On Fri, Nov 3, 2017 at 8:15 PM, Matt Caswell <matt@openssl.org> wrote:
> > It was my understanding that it is precisely this sort of problem
> > that this draft was attempting to address. Explicit marking would
> > solve this.
> 
> Yes, and the connection ID is that marking.  The contention - I think
> - is what to do when there is a mix of marked connections and
> unmarked.

Specifically, the two lines of contention seem to be:
- On the receiver side, whether to favour survival of CID v non-CID
  bearing sessions;
- Packet analyser friendliness (i.e., being able to correctly parse
  the stream without requiring it to keep state.)

Cheers