Re: [Uta] I-D Action: draft-ietf-uta-tls-for-email-01.txt

Julien ÉLIE <julien@trigofacile.com> Thu, 07 March 2019 21:00 UTC

Return-Path: <julien@trigofacile.com>
X-Original-To: uta@ietfa.amsl.com
Delivered-To: uta@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0629D12E036 for <uta@ietfa.amsl.com>; Thu, 7 Mar 2019 13:00:34 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.121
X-Spam-Level:
X-Spam-Status: No, score=-1.121 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_NEUTRAL=0.779] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qjFYSUEH1fzT for <uta@ietfa.amsl.com>; Thu, 7 Mar 2019 13:00:32 -0800 (PST)
Received: from denver.dinauz.org (denver.dinauz.org [IPv6:2001:41d0:8:730b::1]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D102412F19D for <uta@ietf.org>; Thu, 7 Mar 2019 13:00:31 -0800 (PST)
Received: from localhost (localhost.localdomain [127.0.0.1]) by denver.dinauz.org (Postfix) with ESMTP id F394B6046B for <uta@ietf.org>; Thu, 7 Mar 2019 22:00:29 +0100 (CET)
Received: from denver.dinauz.org ([127.0.0.1]) by localhost (denver.dinauz.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XtFYSXwksUWv for <uta@ietf.org>; Thu, 7 Mar 2019 22:00:29 +0100 (CET)
Received: from macbook-pro-de-julien-elie.home (2a01cb0800a7750064400e08ce7827f8.ipv6.abo.wanadoo.fr [IPv6:2a01:cb08:a7:7500:6440:e08:ce78:27f8]) by denver.dinauz.org (Postfix) with ESMTPSA id B8AEC6008F for <uta@ietf.org>; Thu, 7 Mar 2019 22:00:29 +0100 (CET)
To: uta@ietf.org
References: <155194710801.15993.1887926108707635777@ietfa.amsl.com>
From: Julien ÉLIE <julien@trigofacile.com>
Organization: TrigoFACILE -- http://www.trigofacile.com/
Message-ID: <4dbd79f5-fcb9-9f48-0a97-5dac04e4583b@trigofacile.com>
Date: Thu, 07 Mar 2019 22:00:29 +0100
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.13; rv:60.0) Gecko/20100101 Thunderbird/60.5.0
MIME-Version: 1.0
In-Reply-To: <155194710801.15993.1887926108707635777@ietfa.amsl.com>
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Language: fr
Content-Transfer-Encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/uta/6ZHi1RlE2CW3eLMub2HLXaiK8dY>
Subject: Re: [Uta] I-D Action: draft-ietf-uta-tls-for-email-01.txt
X-BeenThere: uta@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: UTA working group mailing list <uta.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/uta>, <mailto:uta-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/uta/>
List-Post: <mailto:uta@ietf.org>
List-Help: <mailto:uta-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/uta>, <mailto:uta-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 07 Mar 2019 21:00:34 -0000

Hi all,

>       Title           : Use of TLS for Email Submission and Access
>       Authors         : Loganaden Velvindron
>                            Stephen Farrell
> 	Filename        : draft-ietf-uta-tls-for-email-01.txt
> 	Pages           : 5
> 	Date            : 2019-03-07
> 
> Abstract:
>     This specification updates current recommendation for the use of
>     Transport Layer Security (TLS) protocol to provide confidentiality of
>     email between a Mail User Agent (MUA) and a Mail Submission Server or
>     Mail Access Server.  This document updates RFC8314.

Instead of rewording all the sentences mentioning TLS 1.1 to now mention 
TLS 1.2, why not say to follow the recommendations of BCP 195?

Example:

    OLD

    "As soon as practicable, MSPs currently supporting Secure Sockets
    Layer (SSL) 2.x, SSL 3.0, or TLS 1.0 SHOULD transition their users to
    TLS 1.1 or later and discontinue support for those earlier versions
    of SSL and TLS."

    NEW

    "As soon as practicable, MSPs currently supporting Secure Sockets
    Layer (SSL) or TLS versions that MUST NOT be negotiated per [BCP195]
    recommendations SHOULD transition their users to a later TLS version
    encouraged to be used by [BCP195] and discontinue support for those
    earlier versions of SSL and TLS."

-- 
Julien ÉLIE

« Le rire est une chose sérieuse avec laquelle il ne faut pas
   plaisanter. » (Raymond Devos)