Re: [Unbearable] Additional IANA consideration for draft-ietf-tokbind-negotiation

Andrei Popov <Andrei.Popov@microsoft.com> Wed, 04 April 2018 22:59 UTC

Return-Path: <Andrei.Popov@microsoft.com>
X-Original-To: unbearable@ietfa.amsl.com
Delivered-To: unbearable@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A2F29127909 for <unbearable@ietfa.amsl.com>; Wed, 4 Apr 2018 15:59:17 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level:
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xtWslucLp3_f for <unbearable@ietfa.amsl.com>; Wed, 4 Apr 2018 15:59:15 -0700 (PDT)
Received: from NAM02-SN1-obe.outbound.protection.outlook.com (mail-sn1nam02on0114.outbound.protection.outlook.com [104.47.36.114]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E2C5F126FB3 for <unbearable@ietf.org>; Wed, 4 Apr 2018 15:59:14 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=pk1rmM3wcS4smFyi7N7lFMr1ghiB7ldBpnaca2fbcpI=; b=Bvqp1Wffer8VBZ+H9Kpnp+u3J9CRLLsVxtRFIpK8GEsTCqvujeO98TBVCDs5l+d238n0YIav9xiy8mq5BkFF6MYOOsNmyPOVlgQqRdp8WBqYJrHf4o843ebl6AJM8KDi/MuYk3AX7KPk+Vz6FVyhB8PxLAM2kN3XMmRaJLPS6Cg=
Received: from DM5PR21MB0507.namprd21.prod.outlook.com (10.172.91.141) by DM5PR21MB0284.namprd21.prod.outlook.com (10.173.174.19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.675.1; Wed, 4 Apr 2018 22:59:13 +0000
Received: from DM5PR21MB0507.namprd21.prod.outlook.com ([fe80::752b:7708:5b11:3be8]) by DM5PR21MB0507.namprd21.prod.outlook.com ([fe80::752b:7708:5b11:3be8%7]) with mapi id 15.20.0675.003; Wed, 4 Apr 2018 22:59:13 +0000
From: Andrei Popov <Andrei.Popov@microsoft.com>
To: Sean Turner <sean@sn3rd.com>, "unbearable@ietf.org" <unbearable@ietf.org>
Thread-Topic: [Unbearable] Additional IANA consideration for draft-ietf-tokbind-negotiation
Thread-Index: AQHTzF+BGwzHs7A6eE6NLWHWeJzCoKPxN2xQ
Date: Wed, 4 Apr 2018 22:59:13 +0000
Message-ID: <DM5PR21MB0507BF69B2D264713FC2DF948CA40@DM5PR21MB0507.namprd21.prod.outlook.com>
References: <30DE57CA-FCB3-43E7-9D28-012AA35CD8D3@sn3rd.com>
In-Reply-To: <30DE57CA-FCB3-43E7-9D28-012AA35CD8D3@sn3rd.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [2001:4898:80e8:8::4ca]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; DM5PR21MB0284; 7:ENhQLZEomximrqLjiDLnCeBZXtKpZGATCt4WScAy2HwJOQWMbBJy1W/7HKOS/XPmsQkcEDvqdSMcHl4ugYkmAaTj15Rpitw7xgpGcRN1TE6nH61jS9whc+24Zy1WiKMumSe0YD4e7eRLYb30lRpof5WcWEL/GW8KzOawvemQNkTuL1o5w8yb4VimTwU8vUwUEyVbss0WHiIUZLybafwggitdsI2Bcvn9kQtvP0AJ7d5N11+OpXrY81sxEgJ70exZ; 20:gDY9gVg/LU4Qguw560s8001wjy/LRlE8cO8TNZ84tpak4It4m3BohRonLjnfEAy1t43vmFgP1gl7PrdcPPpvI9GdmZOvZAwkVgIEhXt2sgOaUNRFTjSU00NiNmdmd9zzarh0enCGGqT9hhaJ9Ue0TSHxm05O2PXvyfR8nLC23sQ=
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-ms-office365-filtering-correlation-id: e67d773c-b98d-4106-5eba-08d59a7faf52
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(5600026)(4604075)(3008032)(48565401081)(4534165)(4627221)(201703031133081)(201702281549075)(2017052603328)(7193020); SRVR:DM5PR21MB0284;
x-ms-traffictypediagnostic: DM5PR21MB0284:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Andrei.Popov@microsoft.com;
x-microsoft-antispam-prvs: <DM5PR21MB02845A921D805087921E73268CA40@DM5PR21MB0284.namprd21.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(189930954265078)(219752817060721);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(8211001083)(61425038)(6040522)(2401047)(5005006)(8121501046)(3002001)(93006095)(93001095)(10201501046)(3231221)(944501327)(52105095)(6055026)(61426038)(61427038)(6041310)(20161123564045)(20161123558120)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123560045)(20161123562045)(6072148)(201708071742011); SRVR:DM5PR21MB0284; BCL:0; PCL:0; RULEID:; SRVR:DM5PR21MB0284;
x-forefront-prvs: 0632519F33
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(39380400002)(346002)(376002)(366004)(39860400002)(396003)(51914003)(13464003)(199004)(189003)(8990500004)(6116002)(3660700001)(68736007)(2501003)(5250100002)(55016002)(53936002)(9686003)(10090500001)(6306002)(2906002)(106356001)(3280700002)(81166006)(11346002)(8676002)(86612001)(86362001)(476003)(486006)(97736004)(446003)(105586002)(10290500003)(229853002)(8936002)(25786009)(575784001)(81156014)(74316002)(305945005)(102836004)(53546011)(186003)(6506007)(99286004)(966005)(6246003)(6436002)(478600001)(2900100001)(7736002)(72206003)(76176011)(14454004)(59450400001)(5660300001)(7696005)(46003)(33656002)(316002)(110136005)(22452003); DIR:OUT; SFP:1102; SCL:1; SRVR:DM5PR21MB0284; H:DM5PR21MB0507.namprd21.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: microsoft.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: 4YOfKz6ud5v43cbghs9eEr098Vdrv6c7r21amEo9tGorBZtD4V8rJR24lbv0hmKiez2RG7BQXWtuNBtZCEvwYg8COq0CqQGV7wy0vYolVitRZ8Zu0FsC984Ktnmucxvf7oqQHcB0/7udjbgLXr8yAFszpNBbNWcGtRWsPms32c9JKBqSkB7rp99/xJKNxGs9Q5BY0YpttQr1kVdUjJM5ejxfRzmrJKvFZDIuOmwFpIgiDUiWFvv554FmKqqWiRFkfj/1JiMqhGUSbeMLkeZK1yQDIeoTSsgNWBogOSa4pWTd9xnDuobeKvn+qUE6V2+eo7ei2nvxZ+kl9E7SJJq1ZPcCh+mlXiq9X5w10vUjzqKZJzEBFpsATsYsarwQ72LySssFHVXkd9hQWLH/BYR7R6O53xOw/0c6QDLjjH+aumI=
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-Network-Message-Id: e67d773c-b98d-4106-5eba-08d59a7faf52
X-MS-Exchange-CrossTenant-originalarrivaltime: 04 Apr 2018 22:59:13.4187 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM5PR21MB0284
Archived-At: <https://mailarchive.ietf.org/arch/msg/unbearable/WpXoxs7LJCaKZ7DiMXp-9ukDt7Y>
Subject: Re: [Unbearable] Additional IANA consideration for draft-ietf-tokbind-negotiation
X-BeenThere: unbearable@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "\"This list is for discussion of proposals for doing better than bearer tokens \(e.g. HTTP cookies, OAuth tokens etc.\) for web applications. The specific goal is chartering a WG focused on preventing security token export and replay attacks.\"" <unbearable.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/unbearable>, <mailto:unbearable-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/unbearable/>
List-Post: <mailto:unbearable@ietf.org>
List-Help: <mailto:unbearable-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/unbearable>, <mailto:unbearable-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Apr 2018 22:59:18 -0000

Thanks for the reminder, Sean; we'll update IANA considerations to request "Recommended: Yes" as we address other IESG feedback.

Cheers,

Andrei

-----Original Message-----
From: Unbearable <unbearable-bounces@ietf.org> On Behalf Of Sean Turner
Sent: Wednesday, April 4, 2018 2:54 PM
To: unbearable@ietf.org
Subject: [Unbearable] Additional IANA consideration for draft-ietf-tokbind-negotiation

Hi!  In https://na01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-tls-iana-registry-updates%2F&data=02%7C01%7CAndrei.Popov%40microsoft.com%7Cfa118119d4644bcd991d08d59a769f48%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C1%7C636584756626348797&sdata=wlZAkzkt8PQudhhxsS%2BbUUNT%2F0aK8CEWuc1AGrIGrko%3D&reserved=0p;reserved=0, the TLS WG is adding a Recommended column to the extensions registry.  To get a “Yes” the extension needs to be Standards Track.  This one is so to avoid a later surprise just add this to the Value/Extension name/Reference list:

   Recommended: Yes

spt
_______________________________________________
Unbearable mailing list
Unbearable@ietf.org
https://na01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Funbearable&data=02%7C01%7CAndrei.Popov%40microsoft.com%7Cfa118119d4644bcd991d08d59a769f48%7C72f988bf86f141af91ab2d7cd011db47%7C1%7C1%7C636584756626348797&sdata=OMOQ3BKY%2FK59uyHCn3yCctJ2UQijKW0Op1uRBos1%2FTY%3D&reserved=0