Re: [TLS] Malware (was Re: draft-green-tls-static-dh-in-tls13-01)

"Roland Dobbins" <rdobbins@arbor.net> Mon, 17 July 2017 16:48 UTC

Return-Path: <rdobbins@arbor.net>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D2F2A131C57 for <tls@ietfa.amsl.com>; Mon, 17 Jul 2017 09:48:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.701
X-Spam-Level:
X-Spam-Status: No, score=-4.701 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-2.8, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=thescout.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id A_Ps_veUZgtH for <tls@ietfa.amsl.com>; Mon, 17 Jul 2017 09:48:41 -0700 (PDT)
Received: from NAM03-DM3-obe.outbound.protection.outlook.com (mail-dm3nam03on0100.outbound.protection.outlook.com [104.47.41.100]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A03CB131C1F for <tls@ietf.org>; Mon, 17 Jul 2017 09:48:41 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=thescout.onmicrosoft.com; s=selector1-arbor-net; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=UshRogoDwUIxGyjr5nhH8e6305KrpLFLSBWDe6gh/ow=; b=WLBvq5L+OBdTE4BPqsimgvLugQC1Pe8O8R02FgtOYbNJ1wkKX81edz6ONtBKq9iL21TuE+yXU+Ywgj2zIHp3hAlpSa1uLtyfeiB6YvLe/Dg4750ruUtqHhCmsXNmJJITZzaZu3Lkk58n8SKIDcZ6tjFOaXQ0h/ny/fXxHVK9x0w=
Authentication-Results: a-oben.org; dkim=none (message not signed) header.d=none;a-oben.org; dmarc=none action=none header.from=arbor.net;
Received: from [172.16.1.3] (88.208.89.131) by DM2PR0101MB1039.prod.exchangelabs.com (2a01:111:e400:3c19::28) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1261.13; Mon, 17 Jul 2017 16:48:39 +0000
From: Roland Dobbins <rdobbins@arbor.net>
To: Simon Friedberger <simon.tls@a-oben.org>
Cc: "tls@ietf.org" <tls@ietf.org>
Date: Mon, 17 Jul 2017 18:48:22 +0200
Message-ID: <64A2BAB5-5EAC-4608-9BF4-856CA0859042@arbor.net>
In-Reply-To: <dfc93b70-0fa4-6cac-8c3d-5f2ff771f85d@a-oben.org>
References: <CABkgnnU8ho7OZpeF=BfEZWYkt1=3ULjny8hcwvp3nnaCBtbbhQ@mail.gmail.com> <2A9492F7-B5C5-49E5-A663-8255C968978D@arbor.net> <CABkgnnX7w0+iH=uV7LRKnsVokVWpCrF1ZpTNhSXsnZaStJw2cQ@mail.gmail.com> <FDDB46BC-876C-49FC-9DAE-05C61BB5EFC9@vigilsec.com> <9C81BE7B-7C21-4504-B60D-96BA95C3D2FD@arbor.net> <CAEa9xj55jzch-v0mysbRSryNM0Y7Bdtevmrc3+FVxMO8EP5zWA@mail.gmail.com> <CC3CE5F8-C8C2-4A70-829D-483E26D20733@arbor.net> <CAEa9xj5eR6b_+CsSDArMWWr-u8hx5B81kDVEMEX8sgfUeMUS8g@mail.gmail.com> <C3B01C35-E3A2-4A8B-9DD7-D6E4153ED39F@arbor.net> <CAEa9xj6p0y9ZzxLJvtv9GDzzfs5s13nnLqm=4_fNDPGV+=Od8Q@mail.gmail.com> <BE4E8E4A-51FC-4211-A16F-EBA8B3F01757@arbor.net> <CAEa9xj7sVcGAR03f3pWsK7giFqmu7GRHN4gqh9Nb6uEAOM88Yw@mail.gmail.com> <637C97B3-DA63-4F61-8EB5-D938136D520C@arbor.net> <dfc93b70-0fa4-6cac-8c3d-5f2ff771f85d@a-oben.org>
MIME-Version: 1.0
Content-Type: text/plain; format="flowed"
X-Mailer: MailMate (1.9.6r5347)
X-Originating-IP: [88.208.89.131]
X-ClientProxiedBy: HE1P195CA0020.EURP195.PROD.OUTLOOK.COM (2603:10a6:3:fd::30) To DM2PR0101MB1039.prod.exchangelabs.com (2a01:111:e400:3c19::28)
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: 1e239e28-6e89-46af-cb5a-08d4cd33ad69
X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(300000500095)(300135000095)(300000501095)(300135300095)(22001)(300000502095)(300135100095)(300000503095)(300135400095)(201703131423075)(201703031133081)(300000504095)(300135200095)(300000505095)(300135600095)(300000506095)(300135500095); SRVR:DM2PR0101MB1039;
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0101MB1039; 3:A5rkVjN57iblSpwaQ9olYnKsls3qQ0+3jNhIFJnq1uDI6Ai2LJEQGhxf8hPuu3p0RCq6sUpD8yNK4zmcUlt5QmbLZun3xWqB0AmkLQTWH6PXdRYtTlXF+oRoRm9lelopFrGF+Q73hZs6TqqlomBUdKnNOHcBnv9wfqJuReCN6qofHLwvoyqDF9Q5S39uyJyVmeL5p0RY+fyVb2nc36ixlDjBOjVsWwWl1kvPqmU/vTPJLLEu9d9chCZ6kf1jrEVdjy68z3l1A52U6qehFqdSS38KVWO0l2XQxuGNH5V7lvp8F3OSYs1HBqLsyPQyUmy3eyZcsND3aFYV7D7rs4zKcjgc0qsFhuQYAAwcUzQu5T3eXXsE7CLpi45i2SMnNzPFHJAIK2sUOZE8la27UImRJJZJnaZFx1+7NwI7OEGF3/VUeZNpFWdBaeS0gahs27mWDcnC5m46EocmfartOA9u3ztQW9FFz6gedayUOXIZntmD5mQgz3zII9LthEF3Bj8/TW6NNMz+OFMVdVV3JLRYHfx9zGPg/A6fFF1JEUPDhcpAP1vA2339+j+ynkkPamuQF12yA6UG/3x47ZhqJDqPHCNxyZFV2wJeFoCkE+yFII8WFDyHDECG+gve2npdsqYeEJIWkJkRnD8MOXDIH5s+8UA0a1mvCYHQ/x7HNxffLeMN2pVTtfSv7NM7uABTAo68fDCrlHUkEAdyYeJy2cbybSBxHL2/ayDVvXrLD4WQ610=
X-MS-TrafficTypeDiagnostic: DM2PR0101MB1039:
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0101MB1039; 25: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
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0101MB1039; 31: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
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0101MB1039; 20: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
X-Exchange-Antispam-Report-Test: UriScan:(236129657087228)(48057245064654);
X-Microsoft-Antispam-PRVS: <DM2PR0101MB10392C8FC253C4ECB097B963CAA00@DM2PR0101MB1039.prod.exchangelabs.com>
X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(100000700101)(100105000095)(100000701101)(100105300095)(100000702101)(100105100095)(6040450)(2401047)(2017060910075)(5005006)(8121501046)(3002001)(10201501046)(93006095)(93001095)(100000703101)(100105400095)(6041248)(20161123558100)(20161123555025)(20161123560025)(20161123564025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(6072148)(100000704101)(100105200095)(100000705101)(100105500095); SRVR:DM2PR0101MB1039; BCL:0; PCL:0; RULEID:(100000800101)(100110000095)(100000801101)(100110300095)(100000802101)(100110100095)(100000803101)(100110400095)(100000804101)(100110200095)(100000805101)(100110500095); SRVR:DM2PR0101MB1039;
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0101MB1039; 4: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
X-Forefront-PRVS: 0371762FE7
X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10019020)(7370300001)(4630300001)(6009001)(6049001)(39840400002)(39450400003)(39400400002)(39410400002)(69234005)(24454002)(53546010)(478600001)(189998001)(7736002)(8676002)(33656002)(305945005)(50466002)(2906002)(229853002)(50986999)(76176999)(77096006)(47776003)(66066001)(4326008)(53936002)(50226002)(6666003)(6486002)(2950100002)(25786009)(81166006)(6916009)(36756003)(110136004)(38730400002)(7350300001)(6246003)(86362001)(83716003)(42186005)(5003940100001)(82746002)(3846002)(5660300001)(230783001)(93886004)(6116002); DIR:OUT; SFP:1102; SCL:1; SRVR:DM2PR0101MB1039; H:[172.16.1.3]; FPR:; SPF:None; MLV:sfv; LANG:en;
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0101MB1039; 23:KtKpvzbL0H3U0G8m7Mqc6o405WLcgqq4vhL+9bFDe5WOYEaLgWm6QzEq1A+ge953ImLkPLZaSYZQFLFuuBC3LJ+RnghORmnxHWAGkMcPRW6naRy4FWq7/SyiVrVDSCZ/w3R4cdBXG9eln4vi8/P+hoNX45CvSBCAUyFsd+JmKZ00jsKhD89RgX8dhz65Gox7mbMGmBvoCbIhzVDlAJJRaJW7+mvN8pYXLy0WG3AwE2z2apwJNyMxz0ssL9s07hF5SDDvX8VsH5sFnGqZ9ZWJiP25Sb0IrG8GgWDzjtPVH5cskrGe+zJus5LsZXRVcL+lJswDIHQPE6dB0xNpVZmIuVGNzIYOmflXZ6YxBF5iB2TBGlmRxkdSDU+jHOcu84W3/DPxhwGHNIOs7jWzUtCv3U6ItRG0OTWgQ6Xalui22wN/Hmp0iNhGO3nVImieQIpWpJIMKGwul+Lq3OOCfQBeQWBj4+JjMBqtXcgw4ohUp8b8mHpqS1G2uG+XFTO4n2aZfpBswcO+d1GISzRq54EaPm/Qvt2cjl3H1tsrgoovgOpM8JTtZV8fEzVDunOqn5FpxRFpbSUs6R0zvMWGP3xGQQNX87StN4b8ByucQeGnM/KKB7l4oo2Xjoo463GTA/dzJQKsmVZ0E9B5OU7i2LMe+5eJZP7xypB8W2FXN85KxZZqKdBXGrhQ9JyI2tSpI6R0KZ1zNdgb5FKZlF3bCxHGx7YhL6NlAzsbitKXN4ITnJX63jXdYLYSx+cA3TyzVn8njEh/oTEpC2/7XzIiW9pBB134dFAdq82ObTBmMlxzqQyN2j+x7pevGWNNIVRKZlxQERMOKLaj0ipPhOLA6+QB6m2MLBXSG7CjUzShZhS75DfHyQPGvooSAc+7x0wiqJ23cznymiFxwIHDhtlx3j4zBWDqnw3/5sMlmryn/CyG0j6AEB3NqKL4piHObG/9GpdOL9eO380mjuliMZQyUZlClJ2wR2zzMjUb1cpBQ/yzka4Y+u3rR6QfxwX3rs02aIO7I5fRSKUnXyQ1MvcBErwHgAYfSO6gA/xq3Xh3wnOOgw3M0jOY8Yh5x5RecKuRRqNOGXE4Wm9cMbE0gOVgOknOY+/ZBhu0myjQGko836ItpidZ25OzbBSeNyL2TzlhjunM93han5Zopf7nUHVpYxdEUUUiazsvbxJhVs8xc5Q6GAe2Tz+XeqV3IdR9amIkpBP+akXHL6UrKydRyaGiNJopIA==
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0101MB1039; 6:zeDUPRUrSBEtPh6H497y5avw8OG6knMpDIHQGltD5TryHbgh9YW/I84A0A/dM1bH2Mmdmuyu5+Tn8EgWQw3bMq4Bey1p47vTjcBZDJa9OwnS3o1Sf3PweKd4aDaKScobc7FmXPYhc4bdLlmsvXl0RNiu2YuK05QOWYbnR8lM3vuWx+xXyNbrEDMSGeJAN7ujsGg57hFt1wK2Gtu7PZPJ0nNSSGOX7Lcn0kUT3VakmImtJAaX39QCPJS0XR3xABSf5TobS1ZszJ+mgvHc3XRXMUxu2hs2k9AYj10UcguOFao5U58inOoqh0PL55Cn5nA9bugQA/ZLUorFl2VZBWsp/cMpnz9GhPP0crPhAGW3y5nY7eS0cgFSZNoBdJlPFrh3MhtICkS3nAoHCZs0zUgxO9cZCYjA+sIsPEEYAbLizGlNyzL+rx/VRSB1qkr6nxd2hhB26axN6gG743mLDNwhtgInJtp1MyyynNuwph9eBC6DQIIgod4xTf20uShMM1BBcQ8Iye++VcgP5BNXfcB0zNRbUWMCgZACr+uWv+2s7bAIGsTAgrel8+l+Gs1VvHnd7m2AZzOdjDgPgY0C3McLnG6FIOdrSXqAlDrsXUl+Lqz17ExskrW6hBSJF6yjGBuuF0RmTWyPMRPA9RAipft3fsfJtC0zp2Cg5vtgey5iI3YyU+90RMdB6TfE9FVcm7zPTu8z+5wSzdy1KurOoXxoStnBufAQtoBPEtKnueGtKUZec7TRAn+YVhBYvM5ac29QjDZjZI7/CxEyRSQY7/R4zflFCuowihG4xu+cUIuYQSCV6ETQQ47haI5mPuVSvgu/qrbRhrYofNXtwHM9pCbMONL5oy4+5Qgga77QpWYhPG0AW/fzsF7jFyq+syNCdJxSWplAKsrLudXboHMJeb01jBR5nqmiHV/95937ITpFXpbcTKx7P7ChcD5eyVanjWcVE16S9lDkhaUd6Dj53U91KhwNNalXkg/iPW+rnHAiTrc=
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0101MB1039; 5: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; 24:fLWl6iegPWqD30xn7J+Voqr2QEX79PSsLgeGqaxe0eXaQ/Lk8datoeEtfeEalbZ522d/GUG4C/yq//kdiLXANOV26/7AKZK9xoWfexy86t0=
SpamDiagnosticOutput: 1:99
SpamDiagnosticMetadata: NSPM
X-Microsoft-Exchange-Diagnostics: 1; DM2PR0101MB1039; 7:X9Z+33rlXiWgNM+KtnNwBNEyp8vAAx/WbAnHCHf0OBcc0TuZMzJyotvg+zx0zOJDidL4yfBoURS5rf9KcXkfeeaFKKXb4gHevSzcKdmEVHljxGZhCxvQrsfOP9TBJ3NixLtp2zKVZ2zul55pR2YTjrWatA5DwSyzBKA6vAkR88bKlGEZNXX3il9ILPlaqdBD83jgudshP0cRvUAUARGOlRyxL9MCWwsjvAZUV2ebaIhMP4uWpY2e/0IwvO7R4HY1gNtH74o7484UT8aG4vB0VK2GmlLxFaa1Fh5MRyXiEjftu5JkN0ucc7rcEDUqGdettHkD23ipPIAPossB/9bhyJVReUCFUYkzGDm6H4u+si4lcbohWx7Ajf/9R3F341M3rW90gvd0b6uJLd814xDmzXQaS2myNtpOhsNgTqAWxH6lJCJPzIluse2QacFyU85T1HpxfVcebjbYXbmjDEsesTGNrgh8ANSASb4AHUQr8NSvyFpFX2pRkRCcCNF1PlQPVaI5pLfPez4kv3FPzBK8zcOK0oSvySHU+r9wI4IgMMuOXmjuXGiCnFWGtA7YDKUxeU3qP9iqb+xULnmAHs3hW98fsFynWbr+TOUtuiQ3e2F6Cl+MCVaZOD/ziteRJuUTtxCHhFm6WykZiZZP3vw2F6GsbQdi8t1iGxJ8AUcvW9xp6EAOv4oms4H4CNr3uVlsito5Oi9/TkhJNkoA577gKmtMf1C5xWn9HSh7Q18+G4yHHbkryJ6auA8Y7EPARVeBbYS/COCP8nJDLMFrB7jzq7ETjJr/+58mctYWRdnCHPQ=
X-OriginatorOrg: arbor.net
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 17 Jul 2017 16:48:39.4062 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM2PR0101MB1039
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/qBdoWzvO-KH8FVES0k8C9i7Gjjc>
Subject: Re: [TLS] Malware (was Re: draft-green-tls-static-dh-in-tls13-01)
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 17 Jul 2017 16:48:43 -0000

On 17 Jul 2017, at 18:40, Simon Friedberger wrote:

> I'm not sure the same considerations should apply to both those 
> situations.

Actually, they do, when you're on your network prior to the egress point 
- apologies for being unclear about that.

Many enterprises force all outbound user-generated traffic through 
proxies, which then inspect TLS-wrapped traffic, blocking bad traffic 
(like data exfiltration) while then opening up proxy connections for 
legitimate traffic, FYI.

Conversely, they do the same with inbound traffic in response to said 
user-generated traffic, and block things like malware downloads.

-----------------------------------
Roland Dobbins <rdobbins@arbor.net>