Re: [TLS] I-D on TLS authentication with VC

Achim Kraus <achimkraus@gmx.net> Fri, 05 April 2024 14:47 UTC

Return-Path: <achimkraus@gmx.net>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6F2C1C14F726 for <tls@ietfa.amsl.com>; Fri, 5 Apr 2024 07:47:09 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.099
X-Spam-Level:
X-Spam-Status: No, score=-7.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmx.net
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id uk603gVOYvNJ for <tls@ietfa.amsl.com>; Fri, 5 Apr 2024 07:47:06 -0700 (PDT)
Received: from mout.gmx.net (mout.gmx.net [212.227.15.15]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-256) server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 29A23C14F700 for <tls@ietf.org>; Fri, 5 Apr 2024 07:46:43 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmx.net; s=s31663417; t=1712328399; x=1712933199; i=achimkraus@gmx.net; bh=hnaSx1LCMkNAhu30cCU2jdjdY3zMforG9Si2aCyoxF0=; h=X-UI-Sender-Class:Date:Subject:To:References:From:In-Reply-To; b=ZA1A/10+sNRRAIKILOv3Ml21Q/NCxYf1zk0cKLMVY41uiGQOU6ZV1MdP732P6Csv I6MhIrGsXUSHGK8sxs0BLzguQUf4+debxE6wEcCgyoSeSH/4R+0d9VG+dLJPYiftP Gqk9xxUZ+2c/3Zy1e6zm1Cb6GKT5IdmLXSzPAFLWZv3jan/OVu6Rb7GMO1RB3U72p OLlbWoXLUQWIGjUj7iiJEg41ctevR8pASgws5pRI7G0ZjGmilskcZiVD+VSYselFy DLSNvumlDt4nx+vSdNIGbmxrR/FTWbOVe2MZJ9//2+09AzXidb/YZ9PNozpK+zFGp RRZN1+YlrJxJjqe4NQ==
X-UI-Sender-Class: 724b4f7f-cbec-4199-ad4e-598c01a50d3a
Received: from [192.168.178.10] ([88.152.185.155]) by mail.gmx.net (mrgmx005 [212.227.17.190]) with ESMTPSA (Nemesis) id 1MTABZ-1sNMmW1xR1-00UbWI; Fri, 05 Apr 2024 16:46:39 +0200
Message-ID: <4ea87346-efa2-46c2-8b00-5cf958f841f4@gmx.net>
Date: Fri, 05 Apr 2024 16:46:38 +0200
MIME-Version: 1.0
User-Agent: Mozilla Thunderbird
To: Stephen Farrell <stephen.farrell@cs.tcd.ie>, Andrea Vesco <andrea.vesco@linksfoundation.com>, "tls@ietf.org" <tls@ietf.org>
References: <F515427B-EE5A-4514-9787-8BB3F95FC380@linksfoundation.com> <7d194dc8-65b0-4df5-9ef0-410a38af9e1e@cs.tcd.ie> <70c9b9ff-14fa-4b2f-8d90-2b1a0f1ebf15@gmx.net> <f183ba4b-6876-4cfc-bb66-4b6894e43fd8@cs.tcd.ie>
Content-Language: de-AT-frami, en-US
From: Achim Kraus <achimkraus@gmx.net>
In-Reply-To: <f183ba4b-6876-4cfc-bb66-4b6894e43fd8@cs.tcd.ie>
Content-Type: text/plain; charset="UTF-8"; format="flowed"
Content-Transfer-Encoding: quoted-printable
X-Provags-ID: V03:K1:I6pdaZxWb8HCNEaljSHqRZo8BdaBhbZFviNua/+SHqLYgII/GMO duDMT1FIf52YXbegu57EIed1rkbMaZtiPZ5Cu4sdNZSRVAZ2e1jWOfhMRvilsZFASessLYz r+yZhirSUgr+xbiynb+HM/IeUb6hheVH/105/T7MbJBc4rxS9TOxNjwAP6X+bk7Q71nmFvV +A7QvlLIcUtw6aLcqyu1g==
UI-OutboundReport: notjunk:1;M01:P0:9TzI/NKvQlQ=;wd8OMjlZa/1BYBXFa6xl+WKRgTA 1okSmzbeZqwbAmI1I21HVT48amN9rwD2wlVoJ0/LY5CumTb6zdwGtQm06y8a4FCf3NGviAGC/ wLEcHzWA189ud2mC/Hzug738u+J40NPsnoF9v/Tcr6JpxglYsID8pSW27qqPhBAJdHYxxKN8W FFiHxmkMdOUL+ZlAa/1qZO+OZCLNEEpLT7yqCdrTsujkOEsKj5mOhWGr4n9E7OXoDGbHtpDIn T/XSB+kd5XC+U7lLoqfUnijCq6BJsijIpMw7sQXu8bzPZ1MjS0rx1QHJSoqH0uDZ7aBxOfbki miLkhnb/mqOm4YpBHWI/Y8fD5S6DrPbK8bXZoIazm0zBneSCYB9jQHDAqdutl41RfritHo+H2 bODHtzbWpR5MTUVJH2yNYqjj4Nzl3HqV1yEd08UiQrB7UbcYgUeYikjk9lVI6r6s8me9V5xs4 YtySK4dl4fXQoWfcQ7FaIB82JjR2/GfBqlTK1iI18gsPrl29yWTylAenrozspOUsKlbuPI+TY nbwKbQbFOyhaR74nr7GkHBcAG6KWaODeOwMJ11KWJxA8/mY66YXTHQdZjpvXeYC6foamN309g mO2sDdXuqDcbch13PfZX2kNeu1eDPIQ0+a3WmbL3NRM2g/eUqkPKU25LPRh+kQpM1NRbi1xkR OyGbT8O896jPWT+b8Q9WXAaI/Q1e1r5wsDrEnrzYEjd0ks4Ne/lcmIPrPysoCKcd0PDBX6SmW sIcRchPtH5za2UcpCyF65G0XT3X/mZzmIz4Vc82p7IHWjaE37HIewSiJKQfvBcCmREuuhwVv2 +N+yvuerVvGr9oNXuHpWwG7SyPWblOcMBayfGr1LiYexQ=
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/yfipEjACOCfrJrHZnaf1o2uiQ2E>
Subject: Re: [TLS] I-D on TLS authentication with VC
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 05 Apr 2024 14:47:09 -0000

Hi,

> I'd go further - ISTM an argument for a re-design
> that just doesn't have the privacy problem. (And
> maybe come back to the TLS WG after that's done.)

The "privacy problem" may disappear, if the DLT is
part of that "IoT deployment" and is not considered
as an external component. Anyway, it's the proposal
of others, so it's also their mission to argument
and convince others.

best regards
Achim