[Trans] Processing feedback from IESG review on draft-ietf-trans-rfc6962-bis

Roman Danyliw <rdd@cert.org> Thu, 29 July 2021 18:30 UTC

Return-Path: <rdd@cert.org>
X-Original-To: trans@ietfa.amsl.com
Delivered-To: trans@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DE17E3A13D5 for <trans@ietfa.amsl.com>; Thu, 29 Jul 2021 11:30:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PoLQZyRr9Vr2 for <trans@ietfa.amsl.com>; Thu, 29 Jul 2021 11:30:00 -0700 (PDT)
Received: from USG02-BN3-obe.outbound.protection.office365.us (mail-bn3usg02on0091.outbound.protection.office365.us [23.103.208.91]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E335B3A159D for <trans@ietf.org>; Thu, 29 Jul 2021 11:29:36 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector5401; d=microsoft.com; cv=none; b=KmHvDTN42UEIHmOV+hhcg8aDUAXRsAKZ7Wxlyq8Yxwe1Q0748DvwZE7aTFZZc8c0SI4K9PACmgCzhZeeJ8O1HXqAzz7mxhlQFiKNVnbajABHb6CqD3fXbqxMg2jX3enzqGBvb2a3P09OfswAE1h19KdocjFWwcV1/tMkfKDftoX/A1b2xuWPadIVC3TYCxixomEeC7QmciA73hsxbEw9DqhIti4T/VlZ5DfouKgcE6j7LCs5p0f1GaESEcEQ6Os3kMRIsAlvLImsdkUlUiDDud9A/nzABEulaZzCBAsMVjSVD/TKFXWag31yBGelhqdkSj8sabgUPJAn/6Rmbo36mQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector5401; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=0MH61sdKEEo5+nP8hcuQQ7tVqyNLYH5zM8EtBiyt6mg=; b=H4xVvuneq9L70g0p+fYoqbqwP9hoBUAsrcBRrTPV62oosTARTlHwjOif/LrLVqv4EJipOuNgJU8mWMv85Jwp2fNXqxnYr3BEeboBqmGzG+vBcbuLTgJuqt5icP7ujVaLoRT1WWc1Or4Yh2zTGwGCUfAD/JpZSLFnCLKHBzloM7tQEcX4REFDwuU5xnwV+yAOg4fVOssZMMhS6a2yz0lOeODgVns6UFgDytj3dfyJZmF9ejv2xiaBZoCVkfbbuma24cp4O5vS96F5vYohJ90hSC34ZZqImtaJWNu2+eTZ6NneKkGaZOVg1Ea7l5lJHrsDiXTkDZxJCDGXU8/xStZEYw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cert.org; dmarc=pass action=none header.from=cert.org; dkim=pass header.d=cert.org; arc=none
Received: from DM3P110MB0538.NAMP110.PROD.OUTLOOK.COM (2001:489a:200:414::9) by DM3P110MB0425.NAMP110.PROD.OUTLOOK.COM (2001:489a:200:412::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4352.30; Thu, 29 Jul 2021 18:29:34 +0000
Received: from DM3P110MB0538.NAMP110.PROD.OUTLOOK.COM ([fe80::8156:6fdb:538a:7d36]) by DM3P110MB0538.NAMP110.PROD.OUTLOOK.COM ([fe80::8156:6fdb:538a:7d36%5]) with mapi id 15.20.4352.032; Thu, 29 Jul 2021 18:29:34 +0000
From: Roman Danyliw <rdd@cert.org>
To: Trans <trans@ietf.org>
Thread-Topic: Processing feedback from IESG review on draft-ietf-trans-rfc6962-bis
Thread-Index: AdeEpl58pl/Z8Y3sTnqNNYNaB8rCBA==
Date: Thu, 29 Jul 2021 18:29:33 +0000
Message-ID: <DM3P110MB0538EDE0FE2B4798749D2DA8DCEB9@DM3P110MB0538.NAMP110.PROD.OUTLOOK.COM>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=cert.org;
x-originating-ip: [71.112.171.248]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 5d64ec9a-2112-49a1-c0c2-08d952bed03c
x-ms-traffictypediagnostic: DM3P110MB0425:
x-microsoft-antispam-prvs: <DM3P110MB0425F298AE93502DF088FB1CDCEB9@DM3P110MB0425.NAMP110.PROD.OUTLOOK.COM>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DM3P110MB0538.NAMP110.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(39850400004)(136003)(376002)(366004)(396003)(346002)(8676002)(2906002)(83380400001)(7696005)(122000001)(38100700002)(33656002)(66446008)(64756008)(76116006)(66556008)(66476007)(66946007)(508600001)(6916009)(86362001)(6506007)(5660300002)(8936002)(55016002)(52536014)(71200400001)(316002)(26005)(9686003)(38070700005)(966005)(186003); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: cert.org
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM3P110MB0538.NAMP110.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 5d64ec9a-2112-49a1-c0c2-08d952bed03c
X-MS-Exchange-CrossTenant-originalarrivaltime: 29 Jul 2021 18:29:33.9182 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 95a9dce2-04f2-4043-995d-1ec3861911c6
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM3P110MB0425
Archived-At: <https://mailarchive.ietf.org/arch/msg/trans/gOXKavAMr7mbYtdOUmoA6vdoUzk>
Subject: [Trans] Processing feedback from IESG review on draft-ietf-trans-rfc6962-bis
X-BeenThere: trans@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Public Notary Transparency working group discussion list <trans.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/trans>, <mailto:trans-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/trans/>
List-Post: <mailto:trans@ietf.org>
List-Help: <mailto:trans-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/trans>, <mailto:trans-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 29 Jul 2021 18:30:05 -0000

Hi!

After the final push, draft-ietf-trans-rfc6962-bis is in the "Approved-announcement to be sent" state.  This means that there are no more blocking comments from the IESG.  Nevertheless there are a number of the ADs suggestions which seem appropriate and would improve the document quality.  Please review this feedback and provide responses as appropriate.

==[ Ben's comments 
https://datatracker.ietf.org/doc/draft-ietf-trans-rfc6962-bis/ballot/#benjamin-kaduk

(1) Section 10.2.2

"Expert Review" with instructions to the experts to ensure that there is
a public specification sounds basically equivalent to "Specification
Required".

[Roman] The described process does appear to be the "Specification Required" (which always also includes Expert Review) + more specific Expert Review guidance (i.e., concurrence with the TLS SignatureScheme Registry and evaluation of the cryptographic signature algorithm)

(2) Appendix B

I think we should actually use the 'id-mod-public-notary-v2' OID
allocated in Section 10.3 as the identifier for the module.

[Roman] Seems right.  Why not do that?

==[ Erik's comments
https://datatracker.ietf.org/doc/draft-ietf-trans-rfc6962-bis/ballot/#erik-kline

[Roman] The first two seem like trivial editorial fixes.

==[ Martin's comments
https://datatracker.ietf.org/doc/draft-ietf-trans-rfc6962-bis/ballot/#martin-duke

[Roman] Please respond the Martin's design questions

Regards,
Roman