Re: [tram] Errata 4826 on RFC 7635

Magnus Westerlund <magnus.westerlund@ericsson.com> Wed, 13 January 2021 15:34 UTC

Return-Path: <magnus.westerlund@ericsson.com>
X-Original-To: tram@ietfa.amsl.com
Delivered-To: tram@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E93433A114B for <tram@ietfa.amsl.com>; Wed, 13 Jan 2021 07:34:14 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.351
X-Spam-Level:
X-Spam-Status: No, score=-2.351 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.25, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id elxcGT-22PFs for <tram@ietfa.amsl.com>; Wed, 13 Jan 2021 07:34:13 -0800 (PST)
Received: from EUR05-AM6-obe.outbound.protection.outlook.com (mail-am6eur05on2054.outbound.protection.outlook.com [40.107.22.54]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 01F073A1147 for <tram@ietf.org>; Wed, 13 Jan 2021 07:34:12 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=YUIGBQ8spi1yBCsR8Y5aitXBfO+OPOGpwRbswKuCpRqFYFMbBJ1Yhy2Dn4BT3u8eLeRFJOscfq1N2ah1xNf0ng50c+JAPvhtkkK5tVkSNXqV90U7vMozRFa2bLdbv3ECEWuBPU3V56/XXQcPrMPmqV6gPlwlF2WnfMA3ZvDbVvmQX8ArwF19Pl1UrWIkNpX6Xp1Y4jY6uFa6Y/yBL2UQTsDrvgHsR9jiClQ6AwSPlibHSRe5TIpOkR1F8xs2BpClHLDCb4zN334ERBfsY/FlD0gYHqhMlzodyYe6YJdS5yoqN1L7CZJ3JoN9slUpVNcugmhSKW454DijARL996W/1Q==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=jt0gxDJiYout4djy6k+nAs33Uvj8VcLPQl7G+xUqaOA=; b=TKhRrgDMvSo0r0kPZ4UxvrwUK1moJqV5jmWmmDtFf5IVPzdccRVc2B0hDERx9/PfVaMNO7zqJulIFmXkqq24856d5fYwpYSm/qu1yXyxJzlFeTSdCSGjswXDB9MLDMsHF9GmkkGUIubWzTlg6BfiYeXmXCBHpVk3UxFYZyS0Ee99CiDasl9qI26DDtJx5zulZPfh3CCIW5XNAXwTxID94ms4xn+zLOhEaL0FkDAM2I5zJKUcNcbzAQwGUAGyz7mTNkN1ox5rOMUzMittjWDfQluJbofapae3ioJp/wQwaeqEL+KT4hhh0ARMDI4Tcilau2uaMk8xaESFS4gUatkSPA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=jt0gxDJiYout4djy6k+nAs33Uvj8VcLPQl7G+xUqaOA=; b=kDcgbrjfXbhcA96gNUSBkVNnUm5sJiJ5LigRIrnyoBlW/yhI9AMFAOGXTc7qxe9aX8aXxdR/6B7EZ9tCH6allfCncQkc9Auhg1S1I/F1GJYzyV/F8BXLbXsrDPl55t2krCVWzmVYa2nN/6Vlm4j9Z/sGYI1QevJ8XXpxFeCiTM0=
Received: from HE1PR0702MB3772.eurprd07.prod.outlook.com (2603:10a6:7:8e::14) by HE1PR07MB4169.eurprd07.prod.outlook.com (2603:10a6:7:9d::25) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3763.2; Wed, 13 Jan 2021 15:34:10 +0000
Received: from HE1PR0702MB3772.eurprd07.prod.outlook.com ([fe80::8cd:496:65de:4ace]) by HE1PR0702MB3772.eurprd07.prod.outlook.com ([fe80::8cd:496:65de:4ace%6]) with mapi id 15.20.3763.009; Wed, 13 Jan 2021 15:34:10 +0000
From: Magnus Westerlund <magnus.westerlund@ericsson.com>
To: "tram@ietf.org" <tram@ietf.org>, "magnus.westerlund=40ericsson.com@dmarc.ietf.org" <magnus.westerlund=40ericsson.com@dmarc.ietf.org>
Thread-Topic: [tram] Errata 4826 on RFC 7635
Thread-Index: AQHWkbX4ZUzscKJ4OECwqW+0Y36GFKomX6aA
Date: Wed, 13 Jan 2021 15:34:10 +0000
Message-ID: <2473be81b850a647ea56282ffcbd42e69d6b04d1.camel@ericsson.com>
References: <fca0a26d208b6f4b0739ba3517c78665faa9b724.camel@ericsson.com>
In-Reply-To: <fca0a26d208b6f4b0739ba3517c78665faa9b724.camel@ericsson.com>
Accept-Language: sv-SE, en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
x-mailer: Evolution 3.28.5-0ubuntu0.18.04.2
authentication-results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=ericsson.com;
x-originating-ip: [192.176.1.80]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: c5f93dba-fdb8-42ec-0f31-08d8b7d8ac54
x-ms-traffictypediagnostic: HE1PR07MB4169:
x-microsoft-antispam-prvs: <HE1PR07MB4169F5D47C02EE838BEC1DE795A90@HE1PR07MB4169.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:431;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:HE1PR0702MB3772.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(346002)(376002)(366004)(396003)(136003)(39860400002)(76116006)(478600001)(64756008)(186003)(966005)(66556008)(66446008)(66946007)(66616009)(66476007)(8936002)(99936003)(4001150100001)(6486002)(8676002)(44832011)(83380400001)(66574015)(71200400001)(316002)(6506007)(2616005)(36756003)(86362001)(5660300002)(26005)(110136005)(2906002)(6512007)(99106002); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: multipart/signed; micalg="sha-256"; protocol="application/x-pkcs7-signature"; boundary="=-g0I2ZXJUC0FBM4FL5WHw"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: HE1PR0702MB3772.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: c5f93dba-fdb8-42ec-0f31-08d8b7d8ac54
X-MS-Exchange-CrossTenant-originalarrivaltime: 13 Jan 2021 15:34:10.3225 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: DozavISP0RjUmBtsJUmoqBrwjOiTq0kL56NLERJlptdJQ9i/6wjfooo3V6r4pTN5K1xNXodzeQgxVJRfIs8XzSZX3TVC9kV48Q+Ao4ItPsw=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR07MB4169
Archived-At: <https://mailarchive.ietf.org/arch/msg/tram/3KaK0jy-gVmYpTuno1bF8Y2BYxA>
Subject: Re: [tram] Errata 4826 on RFC 7635
X-BeenThere: tram@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Discussing the creation of a Turn Revised And Modernized \(TRAM\) WG, which goal is to consolidate the various initiatives to update TURN and STUN." <tram.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tram>, <mailto:tram-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tram/>
List-Post: <mailto:tram@ietf.org>
List-Help: <mailto:tram-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tram>, <mailto:tram-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 13 Jan 2021 15:34:15 -0000

Hi,

I plan to put this errata into "Hold for document update". 

I think it a discussion of roles that goes beyond what the document intended
when written. 

Cheers

Magnus Westerlund

On Wed, 2020-09-23 at 14:29 +0000, Magnus Westerlund wrote:
> Hi,
> 
> I would like some feedback on what to do with this Errrata?
> 
> 
https://protect2.fireeye.com/v1/url?k=1654cef0-48f4749e-16548e6b-861d41abace8-2d0610ea7fcbda0e&q=1&e=baf40b99-4805-442e-8782-c21c956c6896&u=https%3A%2F%2Fwww.rfc-editor.org%2Ferrata%2Feid4826
> 
> Errata ID: 4826
> Status: Reported
> Type: Technical
> Publication Format(s) : TEXT
> Reported By: Mihály Mészáros
> Date Reported: 2016-10-10
> 
> Section 8. says:
> 
> 8.  STUN Client Behavior
> 
>    o  The client looks for the MESSAGE-INTEGRITY attribute in the
>       response.  If MESSAGE-INTEGRITY is absent or the value computed
>       for message integrity using mac_key does not match the contents of
>       the MESSAGE-INTEGRITY attribute, then the response MUST be
>       discarded.
> 
>    o  If the access token expires, then the client MUST obtain a new
>       token from the authorization server and use it for new STUN
>       requests.
> 
> It should say:
> 
> 8.  STUN Client Behavior
> 
>    o  The client looks for the MESSAGE-INTEGRITY attribute in the
>       response.  If MESSAGE-INTEGRITY is absent or the value computed
>       for message integrity using mac_key does not match the contents of
>       the MESSAGE-INTEGRITY attribute, then the response MUST be
>       discarded.
> 
> 9.  Application (OAuth Client) Behavior
> 
>    o  If the access token expires, then the Application (OAuth client) 
>       MUST obtain a new token from the authorization server, and update
>       STUN client to use it for new STUN requests.
> 
>    o  Application SHOULD pass only a subset of the received OAuth 
>       parameters to the STUN client. Only parameters SHOULD be passed 
>       that will be really needed and used by the STUN Client. 
>       In this way, only the kid, the mac_key, and the access_token
>       parameters SHOULD be passed to the STUN client.
>       
> 
> ...
> Renumber the sections
> ...
> 
> Notes:
> 
> 1. Remove from STUN client behaviour the access_token renewal function,
> and move this function up to application level.
> 2. Pass to STUN only that subset of the OAuth parameters, that will be really
> used by STUN Client. 
> 
>  
> Cheers
> 
> Magnus Westerlund 
> 
> 
> ----------------------------------------------------------------------
> Networks, Ericsson Research
> ----------------------------------------------------------------------
> Ericsson AB                 | Mobile +46 73 0949079
> Torshamnsgatan 23           |
> SE-164 80 Stockholm, Sweden | mailto: magnus.westerlund@ericsson.com
> ----------------------------------------------------------------------
> 
> _______________________________________________
> tram mailing list
> tram@ietf.org
> https://www.ietf.org/mailman/listinfo/tram