Re: [Trans] [trans] #73 (rfc6962-bis): Section 3 text re log cert validation is ambiguous

"trans issue tracker" <trac+trans@tools.ietf.org> Mon, 06 July 2015 12:05 UTC

Return-Path: <trac+trans@tools.ietf.org>
X-Original-To: trans@ietfa.amsl.com
Delivered-To: trans@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DB7BE1ACE46 for <trans@ietfa.amsl.com>; Mon, 6 Jul 2015 05:05:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.91
X-Spam-Level:
X-Spam-Status: No, score=-1.91 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, T_RP_MATCHES_RCVD=-0.01] autolearn=unavailable
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id i1kB0-CfBQZy for <trans@ietfa.amsl.com>; Mon, 6 Jul 2015 05:05:37 -0700 (PDT)
Received: from zinfandel.tools.ietf.org (zinfandel.tools.ietf.org [IPv6:2001:1890:123a::1:2a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 175541A00EA for <trans@ietf.org>; Mon, 6 Jul 2015 05:05:37 -0700 (PDT)
Received: from localhost ([::1]:46365 helo=zinfandel.tools.ietf.org) by zinfandel.tools.ietf.org with esmtp (Exim 4.82_1-5b7a7c0-XX) (envelope-from <trac+trans@tools.ietf.org>) id 1ZC59P-0001Xe-SU; Mon, 06 Jul 2015 05:05:31 -0700
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: trans issue tracker <trac+trans@tools.ietf.org>
X-Trac-Version: 0.12.5
Precedence: bulk
Auto-Submitted: auto-generated
X-Mailer: Trac 0.12.5, by Edgewall Software
To: draft-ietf-trans-rfc6962-bis@tools.ietf.org, rob.stradling@comodo.com, benl@google.com
X-Trac-Project: trans
Date: Mon, 06 Jul 2015 12:05:31 -0000
X-URL: http://tools.ietf.org/trans/
X-Trac-Ticket-URL: http://trac.tools.ietf.org/wg/trans/trac/ticket/73#comment:2
Message-ID: <067.7becba46c4f8b854834f9bb0c27374ce@tools.ietf.org>
References: <052.b3ecc6ca8b28cc47e13443079611ce86@tools.ietf.org>
X-Trac-Ticket-ID: 73
In-Reply-To: <052.b3ecc6ca8b28cc47e13443079611ce86@tools.ietf.org>
X-SA-Exim-Connect-IP: ::1
X-SA-Exim-Rcpt-To: draft-ietf-trans-rfc6962-bis@tools.ietf.org, rob.stradling@comodo.com, benl@google.com, trans@ietf.org
X-SA-Exim-Mail-From: trac+trans@tools.ietf.org
X-SA-Exim-Scanned: No (on zinfandel.tools.ietf.org); SAEximRunCond expanded to false
Resent-To: draft-ietf-trans-rfc6962-bis@ietf.org
Resent-Message-Id: <20150706120537.175541A00EA@ietfa.amsl.com>
Resent-Date: Mon, 06 Jul 2015 05:05:37 -0700
Resent-From: trac+trans@tools.ietf.org
Archived-At: <http://mailarchive.ietf.org/arch/msg/trans/EMXJzkGuPbI-vb1O5GZ_kgdcXjs>
Cc: trans@ietf.org
Subject: Re: [Trans] [trans] #73 (rfc6962-bis): Section 3 text re log cert validation is ambiguous
X-BeenThere: trans@ietf.org
X-Mailman-Version: 2.1.15
List-Id: Public Notary Transparency working group discussion list <trans.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/trans>, <mailto:trans-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/trans/>
List-Post: <mailto:trans@ietf.org>
List-Help: <mailto:trans-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/trans>, <mailto:trans-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 06 Jul 2015 12:05:38 -0000

#73: Section 3 text re log cert validation is ambiguous


Comment (by benl@google.com):

 On the issue of specifying deviations, I am not sure how that could
 realistically be done. For example, our logs will permit whatever
 deviations OpenSSL permits. I don't think anyone knows precisely what
 those are, and I'm prepared to bet they vary between versions.

 Even leaving that aside, experience suggests we have to permit deviations
 in order to admit incorrect certificates that are accepted by browsers. I
 don't think we can anticipate what all of those are.

-- 
-------------------------+-------------------------------------------------
 Reporter:               |       Owner:  draft-ietf-trans-
  kent@bbn.com           |  rfc6962-bis@tools.ietf.org
     Type:  defect       |      Status:  new
 Priority:  critical     |   Milestone:
Component:  rfc6962-bis  |     Version:
 Severity:  -            |  Resolution:
 Keywords:               |
-------------------------+-------------------------------------------------

Ticket URL: <http://trac.tools.ietf.org/wg/trans/trac/ticket/73#comment:2>
trans <http://tools.ietf.org/trans/>