Re: [TLS] OID for delegated credentials

Melinda Shore <melinda.shore@nomountain.net> Sat, 11 August 2018 20:56 UTC

Return-Path: <melinda.shore@nomountain.net>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 84FC5130EAE for <tls@ietfa.amsl.com>; Sat, 11 Aug 2018 13:56:17 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.91
X-Spam-Level:
X-Spam-Status: No, score=-1.91 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, T_DKIMWL_WL_MED=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=nomountain-net.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id fHj7HYrG_9hM for <tls@ietfa.amsl.com>; Sat, 11 Aug 2018 13:56:16 -0700 (PDT)
Received: from mail-pf1-x42d.google.com (mail-pf1-x42d.google.com [IPv6:2607:f8b0:4864:20::42d]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 018A9130EA9 for <tls@ietf.org>; Sat, 11 Aug 2018 13:56:15 -0700 (PDT)
Received: by mail-pf1-x42d.google.com with SMTP id j26-v6so5993406pfi.10 for <tls@ietf.org>; Sat, 11 Aug 2018 13:56:15 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nomountain-net.20150623.gappssmtp.com; s=20150623; h=subject:to:references:from:message-id:date:user-agent:mime-version :in-reply-to:content-language:content-transfer-encoding; bh=nAg7KU0c+etM+9Qdm4dk/WpkH4BfEINUj/p+llHwxAE=; b=RRLVqWG6rSLT0e6yWwzbDaxFW6SU6ULox8kYSN1uPaxvypVdUV2RqvgzdupAZPdu0c VuVDMjjF2sG6WWzD+mx3DDj63jZ0YFhRKjoybGNxAuLuKq7HCGNkDKBx78l6cZAqWOIU eRPMQSqkDJcjdmXMUXqxIHuwWT80KT7yK034gy/QOyzA8r8y5583Bft1hwH8JpYSu8ow fxe/SurCSgi88QsewPXShL9ZyFxiFRfIwXjbUlCojXZ3dC5yTcpBESJnp/NBytg97fGb T7K2qB/CUxi/jWGTY4GxV5JgfR9Q1grY9XZGnyD0NN8G0P451Xmv9WdBeEwIyNmKpmcu oFKg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:references:from:message-id:date :user-agent:mime-version:in-reply-to:content-language :content-transfer-encoding; bh=nAg7KU0c+etM+9Qdm4dk/WpkH4BfEINUj/p+llHwxAE=; b=NSRy/xQLuvpaNdW+wfAD4ESoTvd9SiuZZVlhyGu/SMWlZCVvpArwfdRgHI0k/j7cLg vsNQu1Ormabd+EeC2dLhK4nUQNNH4RJYzMVqeG/C8rzZPH3Pti3r5IeYhEUpob9RPyTp T9xGCgXizEjGmU05K0oKFhVTQEcqFY7LzW5IDSQFNsQCb2n07dIjXD93aZNsLTMEwIOc vMDbJdvG8XV0dWBgiu0hgGCdtO+DA447hDR1ByI7clU0fdpl0tNZtmakMkWPHCHu84ge /oq7sWN8e2I0DGKCNZJs1jfwVToa2Z9T+oMCaXaz53OMLrzPialgERZQg0hCyaha+qOD JcPA==
X-Gm-Message-State: AOUpUlFsJGL93cq8yuF+WZ+QunbUujkrS2/+TzPb1M4ygUe5f7BADDNU PozFZ9/+lCHAgXQegLeqypUoFNSdJA==
X-Google-Smtp-Source: AA+uWPw37DzIdjG7+2PVkVMDSL/1vLrHK5lGxqOf3UXNggnyohmKi/ein4LsucgxegNlumWU1spiHA==
X-Received: by 2002:a62:1c13:: with SMTP id c19-v6mr12596458pfc.148.1534020975275; Sat, 11 Aug 2018 13:56:15 -0700 (PDT)
Received: from aspen.local (216-67-116-106-radius.dynamic.acsalaska.net. [216.67.116.106]) by smtp.gmail.com with ESMTPSA id x2-v6sm24047428pfi.166.2018.08.11.13.56.14 for <tls@ietf.org> (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Sat, 11 Aug 2018 13:56:14 -0700 (PDT)
To: tls@ietf.org
References: <MWHPR15MB1821DFD41E3FD8CD687924F5B6250@MWHPR15MB1821.namprd15.prod.outlook.com>
From: Melinda Shore <melinda.shore@nomountain.net>
Message-ID: <eefcb08f-3e07-4bdc-83b3-00b8e2cc6b18@nomountain.net>
Date: Sat, 11 Aug 2018 12:56:13 -0800
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.12; rv:52.0) Gecko/20100101 Thunderbird/52.9.1
MIME-Version: 1.0
In-Reply-To: <MWHPR15MB1821DFD41E3FD8CD687924F5B6250@MWHPR15MB1821.namprd15.prod.outlook.com>
Content-Type: text/plain; charset="windows-1252"
Content-Language: en-US
Content-Transfer-Encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/pcL9VPJzaxYhJ0YXFpNSkly92jQ>
Subject: Re: [TLS] OID for delegated credentials
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 11 Aug 2018 20:56:17 -0000

On 8/8/18 9:07 PM, Subodh Iyengar wrote:
> So far we've been doing interop with Cloudflare's OID of
> 1.3.6.1.4.1.44363.44.  I'd be fine with putting that as the final OID
> the draft. Does anyone have any thoughts on whether we should / should
> not do this and use a different OID instead.

One thing we've found is that it's inevitable that when an OID
is chosen from a private arc, it's raised as an issue during
various last calls, but I've never seen it be a show-stopper.

Melinda


-- 
Software longa, hardware brevis

PGP fingerprint: 4F68 2D93 2A17 96F8 20F2
                 34C0 DFB8 9172 9A76 DB8F