Re: [tram] Stephen Farrell's Discuss on draft-ietf-tram-turn-third-party-authz-13: (with DISCUSS and COMMENT)

"Tirumaleswar Reddy (tireddy)" <tireddy@cisco.com> Wed, 15 April 2015 16:10 UTC

Return-Path: <tireddy@cisco.com>
X-Original-To: tram@ietfa.amsl.com
Delivered-To: tram@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DF2E61B2CEC; Wed, 15 Apr 2015 09:10:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.511
X-Spam-Level:
X-Spam-Status: No, score=-14.511 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id coKHI_KQxPAs; Wed, 15 Apr 2015 09:10:52 -0700 (PDT)
Received: from alln-iport-1.cisco.com (alln-iport-1.cisco.com [173.37.142.88]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7BD5B1B2CC0; Wed, 15 Apr 2015 09:10:52 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=814; q=dns/txt; s=iport; t=1429114253; x=1430323853; h=from:to:cc:subject:date:message-id: content-transfer-encoding:mime-version; bh=5QukTozKKgjY7CJkuLKSITsmaViCE4e+dqYpdfr8ewY=; b=fU8srGKdGuwX6ixic8McQD/7l7fTpypIHz0QYu5G91sz1thYEa7DlTC7 jWbDYyD192wynDB5QxsgJsEGokf55gMHZpyor6xskQaZ395C6sX6neaCR on+ondyAlsKJsfNHtScGQA1UwGqcsyR7tOV664j+U+THVTSoQNp3M8b6h w=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0CLBAAtjS5V/4oNJK1cgwyBM4MQwWhmCYdSAhyBHzgUAQEBAQEBAX2EIQEBBCMRRRIBCA4MAgYZBwIEMBURAQQBDQ2IIq8dlX8BAQEBAQEBAQEBAQEBAQEBAQEBAQEXgSGKCoQxGjGCby+BFgEEkQ6fACKCM4E8gjN/AQEB
X-IronPort-AV: E=Sophos;i="5.11,582,1422921600"; d="scan'208";a="141470142"
Received: from alln-core-5.cisco.com ([173.36.13.138]) by alln-iport-1.cisco.com with ESMTP; 15 Apr 2015 16:10:33 +0000
Received: from xhc-rcd-x14.cisco.com (xhc-rcd-x14.cisco.com [173.37.183.88]) by alln-core-5.cisco.com (8.14.5/8.14.5) with ESMTP id t3FGAXQu008746 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL); Wed, 15 Apr 2015 16:10:33 GMT
Received: from xmb-rcd-x10.cisco.com ([169.254.15.220]) by xhc-rcd-x14.cisco.com ([173.37.183.88]) with mapi id 14.03.0195.001; Wed, 15 Apr 2015 11:10:32 -0500
From: "Tirumaleswar Reddy (tireddy)" <tireddy@cisco.com>
To: Oleg Moskalenko <mom040267@gmail.com>, Martin Thomson <martin.thomson@gmail.com>
Thread-Topic: [tram] Stephen Farrell's Discuss on draft-ietf-tram-turn-third-party-authz-13: (with DISCUSS and COMMENT)
Thread-Index: AdB3lsdc47GGptTVRH68rVdYieKk/Q==
Date: Wed, 15 Apr 2015 16:10:32 +0000
Message-ID: <913383AAA69FF945B8F946018B75898A4120E593@xmb-rcd-x10.cisco.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.65.73.110]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <http://mailarchive.ietf.org/arch/msg/tram/Wm5XS0i49p4VPF3_6CoOWmoLkuQ>
Cc: "tram-chairs@ietf.org" <tram-chairs@ietf.org>, "tram@ietf.org" <tram@ietf.org>, Brandon Williams <brandon.williams@akamai.com>, "rlb@ipv.sx" <rlb@ipv.sx>, "Salz, Rich" <rsalz@akamai.com>, "Stephen Farrell (stephen.farrell@cs.tcd.ie)" <stephen.farrell@cs.tcd.ie>
Subject: Re: [tram] Stephen Farrell's Discuss on draft-ietf-tram-turn-third-party-authz-13: (with DISCUSS and COMMENT)
X-BeenThere: tram@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Discussing the creation of a Turn Revised And Modernized \(TRAM\) WG, which goal is to consolidate the various initiatives to update TURN and STUN." <tram.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tram>, <mailto:tram-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tram/>
List-Post: <mailto:tram@ietf.org>
List-Help: <mailto:tram-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tram>, <mailto:tram-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 15 Apr 2015 16:10:54 -0000

> >
> > Also, I just noticed that this uses base64.  That's arbitrary.  Does
> > the client remove that encoding before including the token in the STUN
> > message?  There's no MUST there, but it seems like it's part of the
> > process somehow.
> 
> more clarifications in the text are always welcome.

The token is opaque to the client and it includes the token in the STUN message as provided by the authorization server. It's already discussed in section 6.2
<snip>
Note that the self-contained token is opaque to the client and the client MUST NOT examine the token.  
</snip>