[Unbearable] Updated TBNEGO and TBPROTO

Andrei Popov <Andrei.Popov@microsoft.com> Sun, 15 October 2017 23:18 UTC

Return-Path: <Andrei.Popov@microsoft.com>
X-Original-To: unbearable@ietfa.amsl.com
Delivered-To: unbearable@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 61E1C13202D for <unbearable@ietfa.amsl.com>; Sun, 15 Oct 2017 16:18:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.8
X-Spam-Level:
X-Spam-Status: No, score=-4.8 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-2.8, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=microsoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id VesDCKIaMjmu for <unbearable@ietfa.amsl.com>; Sun, 15 Oct 2017 16:18:47 -0700 (PDT)
Received: from NAM03-BY2-obe.outbound.protection.outlook.com (mail-by2nam03on0123.outbound.protection.outlook.com [104.47.42.123]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9C1E4133226 for <unbearable@ietf.org>; Sun, 15 Oct 2017 16:18:47 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=CBwyu/hjh8EsFjiprwrraMBDaRzCY4Tqjz86DuHuFnk=; b=hFEJdKBIIIB0YzoL7h0T38F3aQkgPn3pRZlYvryKmPmmxI9SHW+3eMkv8dVQqWD28irD/dxtv01Sz8oNKPF56NUtUUtoEKwXujPEpel1cmh9WdWqEhgYUt2Qb6A3YoGPjmtIUmz0xEEtycmGYNeyw1ReQ4ciHhUU27MgeDfPhMM=
Received: from CY4PR21MB0120.namprd21.prod.outlook.com (10.173.189.14) by CY4PR21MB0791.namprd21.prod.outlook.com (10.175.121.145) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.156.0; Sun, 15 Oct 2017 23:18:46 +0000
Received: from CY4PR21MB0120.namprd21.prod.outlook.com ([10.173.189.14]) by CY4PR21MB0120.namprd21.prod.outlook.com ([10.173.189.14]) with mapi id 15.20.0156.003; Sun, 15 Oct 2017 23:18:46 +0000
From: Andrei Popov <Andrei.Popov@microsoft.com>
To: IETF Tokbind WG <unbearable@ietf.org>
Thread-Topic: Updated TBNEGO and TBPROTO
Thread-Index: AdNGC3OL57V1tOPMQUKG35f9TMdNRA==
Date: Sun, 15 Oct 2017 23:18:46 +0000
Message-ID: <CY4PR21MB0120F19CD3C6AC718B7DF1978C4E0@CY4PR21MB0120.namprd21.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [2001:4898:80e8:d::4ca]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; CY4PR21MB0791; 6:9EOLlJJfsu9noFqEtzfjIXJgiAIV99KtXwUqnzpCXQmRNTwD54GuyT6kKfOj5x8XwrrPw0zBLtUbBkx47eID4b3itX7avZUeQD4MAUKqpPSueQvRwMh+sBF6+uFBF5AjesFRM+MGc6uHnBciGu0/8nJdHE/xSAqkgnFG4w+tJvT0JfVQXaQipHA8oVzcJktOod7FVPzYtdbXQwTOoNWZwKazdsTRdfrRsxFYNaZfBy6on4g4zp+JeXCOEGH5HRZRsE+bssiZi+J48cyVXzv5/zCv33e+TiYLf7aZcC/s9Qv5227gA0OQUByQKE4uIgK6UydwJ8HwFQ9l1vqDghHI+w==; 5:Fn+JKNT64xoi8MYyt66/cBd9yRgFrrMHMpkMHcIM33VTS9phMj3ltEpRfsFnze15+mCUyI/XauaqRXBq8nPnHodyARzjVFgNlQDm3supz+pWC1inSVaQ5KtATgmZ06seQhW/T3iOPhekofcEQ5YTSA==; 24:evbPgGDIMYcuPfe8kpSXJSfbu0xLo/GaBuKcsz+45WJ8ufu1Y/LKLIw0DO8I8X+pnn3dibN26ByK8LyFVU25Iqy9P4XR1PWmCgF3X3ZYZaQ=; 7:ocr0RnQFP74YIaXcjk7e6Tn/uV2cXMmIoXu1E6M1u0kMPTWWeo81eutNiGLxv6iJM/4bMehlffHCU+emgwPyBlIt1AAN339ma67ClXhLE1Ng9mfPwJ8UyFXnys9Ad8/7NFHBmXJdcNsgyCjK4XtyCVx2R6pHzIIhtuBNONqpp8FoQNESDnQl1VRfGj64A9d5Rn3mmydS3D3u9wNG1ByZy3CfNhJlBv8Wpm5Re1Cq20k=
x-ms-exchange-antispam-srfa-diagnostics: SSOS;
x-ms-office365-filtering-correlation-id: 9b50427c-38fb-49d9-46ca-08d5142315b4
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(22001)(2017030254152)(48565401081)(2017052603219)(201703131423075)(201703031133081)(201702281549075); SRVR:CY4PR21MB0791;
x-ms-traffictypediagnostic: CY4PR21MB0791:
x-exchange-antispam-report-test: UriScan:(21748063052155);
x-microsoft-antispam-prvs: <CY4PR21MB0791E42B8E7E1C0C9D4C5D898C4E0@CY4PR21MB0791.namprd21.prod.outlook.com>
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(100000700101)(100105000095)(100000701101)(100105300095)(100000702101)(100105100095)(61425038)(6040450)(2401047)(5005006)(8121501046)(3002001)(10201501046)(100000703101)(100105400095)(93006095)(93001095)(6055026)(61426038)(61427038)(6041248)(20161123560025)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123562025)(20161123555025)(20161123558100)(20161123564025)(6072148)(201708071742011)(100000704101)(100105200095)(100000705101)(100105500095); SRVR:CY4PR21MB0791; BCL:0; PCL:0; RULEID:(100000800101)(100110000095)(100000801101)(100110300095)(100000802101)(100110100095)(100000803101)(100110400095)(100000804101)(100110200095)(100000805101)(100110500095); SRVR:CY4PR21MB0791;
x-forefront-prvs: 046164D5C4
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(346002)(39860400002)(376002)(47760400005)(199003)(189002)(316002)(86612001)(606006)(10290500003)(53936002)(105586002)(5660300001)(8990500004)(6916009)(7696004)(55016002)(189998001)(72206003)(99286003)(22452003)(6306002)(54896002)(478600001)(9686003)(25786009)(236005)(10090500001)(14454004)(2900100001)(86362001)(97736004)(3480700004)(77096006)(6506006)(68736007)(101416001)(6116002)(102836003)(790700001)(54356999)(50986999)(6436002)(33656002)(8676002)(81156014)(81166006)(8936002)(2906002)(106356001)(3660700001)(3280700002)(558084003)(7736002)(74316002); DIR:OUT; SFP:1102; SCL:1; SRVR:CY4PR21MB0791; H:CY4PR21MB0120.namprd21.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: microsoft.com does not designate permitted sender hosts)
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Andrei.Popov@microsoft.com;
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_CY4PR21MB0120F19CD3C6AC718B7DF1978C4E0CY4PR21MB0120namp_"
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 9b50427c-38fb-49d9-46ca-08d5142315b4
X-MS-Exchange-CrossTenant-originalarrivaltime: 15 Oct 2017 23:18:46.2239 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CY4PR21MB0791
Archived-At: <https://mailarchive.ietf.org/arch/msg/unbearable/uxVyQS0Bj9HDp7StelJBo1xw1Io>
Subject: [Unbearable] Updated TBNEGO and TBPROTO
X-BeenThere: unbearable@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "\"This list is for discussion of proposals for doing better than bearer tokens \(e.g. HTTP cookies, OAuth tokens etc.\) for web applications. The specific goal is chartering a WG focused on preventing security token export and replay attacks.\"" <unbearable.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/unbearable>, <mailto:unbearable-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/unbearable/>
List-Post: <mailto:unbearable@ietf.org>
List-Help: <mailto:unbearable-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/unbearable>, <mailto:unbearable-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 15 Oct 2017 23:18:49 -0000

I've uploaded TBNEGO-10<https://tools.ietf.org/html/draft-ietf-tokbind-negotiation-10> and TBPROTO-16<https://tools.ietf.org/html/draft-ietf-tokbind-protocol-16> to address AD review comments. Added "TB_" prefixes to disambiguated structure definitions between TLS and TB specs, (hopefully) clarified the language, and fixed a few nits.

Cheers,

Andrei