Re: [Uta] Adoption call for draft-sheffer-uta-rfc7525bis-00

Eric Rescorla <ekr@rtfm.com> Fri, 01 May 2020 21:36 UTC

Return-Path: <ekr@rtfm.com>
X-Original-To: uta@ietfa.amsl.com
Delivered-To: uta@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 554E13A1CEE for <uta@ietfa.amsl.com>; Fri, 1 May 2020 14:36:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.895
X-Spam-Level:
X-Spam-Status: No, score=-1.895 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=rtfm-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id U7aDPWRNvAey for <uta@ietfa.amsl.com>; Fri, 1 May 2020 14:36:00 -0700 (PDT)
Received: from mail-lj1-x22f.google.com (mail-lj1-x22f.google.com [IPv6:2a00:1450:4864:20::22f]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 21E443A1CEF for <uta@ietf.org>; Fri, 1 May 2020 14:36:00 -0700 (PDT)
Received: by mail-lj1-x22f.google.com with SMTP id f18so3806714lja.13 for <uta@ietf.org>; Fri, 01 May 2020 14:35:59 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=rtfm-com.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=Wo0mcu1au2hEnoPMqUDjZ3BTkL5gTn6/gRaIajwh+C8=; b=1x015BSqxemCVL4wJ2WhCVWO5GHQNMrl5awJQL5daP6FDR7ce9HBBI9uqcb1GW+Kc5 Tqjn7ci2NKfQTeef3Qw9+I5Q32cFkjutLl/C7168p+N4aEwGfcwOHLO2uVAHfT3B1Ijp uZAdgskpXaqKkgl6Ftf3DZbQTVfaXskFnNAWrCA0fF+rWyD7NCCm+Wigaq2Kxscl61fR AXzjPAbk3HeCZvCCEFUDffT3FozcY/sr9k4+nPc+0NAMKU4bcTOLgOZuaLMe/EbkkWFi iVrRSwV9lJiCkj1Bm/lejpgNiZJwR+omxKKk/cgjvN5LYtOiNVWVxcCiZvOJ8JJgYSdZ Tg7A==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=Wo0mcu1au2hEnoPMqUDjZ3BTkL5gTn6/gRaIajwh+C8=; b=gcaa8Db0Xk9n1Jkgfca8wezmp19xCd7UTVQXVKNnUTNNiY9P6VdSC0MpK4KlWG5c9F HEOp+smunO7VStlwra/i0EFoW3ekypzsUDTuJFvNHHWxUVpMAut5mAzXJwoK0Qlcwvdz 8spTccwEhAFFcO9gWlO/SIKeRGbp+wrx5RQPxxcQlons5wnXgxI0qII/vMmlcRTlZXEJ s9V+t7FYUrwvjjAGV4XDpwr3H7s+Oy7GHbcdgFPMGdFZxwx7+q+Oxv8UJit4q3+C+JQV AjvVpyVana4IZIhwjA4bM82d5l3BdBFGhxYERE8nhywGNPMdowCVQ+NUlPFw/rOy+fyN WIag==
X-Gm-Message-State: AGi0PubgYQOLox12WAb3ZT7I4PiaMrfcR4Vik/8ET6kx+MnvWA9q6KCM BxVwtPM9GKId6m2c2MY9DnlTPMcLXDKyxhKy05Kh2A==
X-Google-Smtp-Source: APiQypJbb78VJzhLbaaIMTedkIM5I7GQOEFWNasp6d2KjOrTOf+JIRc5jena8z8YO+YvQs0pTBgFhmcrTrJi0IHobbE=
X-Received: by 2002:a2e:8813:: with SMTP id x19mr3556271ljh.83.1588368958102; Fri, 01 May 2020 14:35:58 -0700 (PDT)
MIME-Version: 1.0
References: <004801d61bae$08a61590$19f240b0$@smyslov.net> <1UW7qWO4vA.17rUXhBMkf8@pc8xp>
In-Reply-To: <1UW7qWO4vA.17rUXhBMkf8@pc8xp>
From: Eric Rescorla <ekr@rtfm.com>
Date: Fri, 01 May 2020 14:35:21 -0700
Message-ID: <CABcZeBPfcVepMegf36wMnAHkqWuOUyEggR0xHwvgjZUaKoMXng@mail.gmail.com>
To: tom petch <daedulus@btconnect.com>
Cc: Valery Smyslov <valery@smyslov.net>, "uta@ietf.org" <uta@ietf.org>, Yaron Sheffer <yaronf.ietf@gmail.com>, "uta-chairs@ietf.org" <uta-chairs@ietf.org>, Peter Saint-Andre <stpeter@mozilla.com>, Ralph Holz <ralph.holz@gmail.com>
Content-Type: multipart/alternative; boundary="00000000000085325a05a49cf7cd"
Archived-At: <https://mailarchive.ietf.org/arch/msg/uta/bF2oS_HhyYfmO9hl7tmfL8k0Gng>
Subject: Re: [Uta] Adoption call for draft-sheffer-uta-rfc7525bis-00
X-BeenThere: uta@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: UTA working group mailing list <uta.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/uta>, <mailto:uta-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/uta/>
List-Post: <mailto:uta@ietf.org>
List-Help: <mailto:uta-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/uta>, <mailto:uta-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 01 May 2020 21:36:06 -0000

On Mon, Apr 27, 2020 at 2:04 AM tom petch <daedulus@btconnect.com> wrote:

> What is the point of rfc7525bis?  Why do we need it?
>
> It seems to me that RFC7525 is a good set of recommendations and little
> has changed, in practical terms, since it was produced, although
> cryptanalysts can find weaknesses therein
>
> ---
> New Outlook Express and Windows Live Mail replacement - get it here:
> https://www.oeclassic.com/
>
> ..
>
> The one change I am aware of is that the TLS WG has produced TLS 1.3 - I
> follow the TLS WG mailing list - but so what?  TLS 1.3 failed to meet one
> key requirement


What is that key requirement?


and I am unclear whether or not TLS 1.3 will gain widespread use in the
> Internet, with HTTP, SMTP and such like.


I don't know about SMTP, but TLS 1.3 has *already* achieved widespread use
on the Internet.

28% of sites support it [https://www.ssllabs.com/ssl-pulse/]
Upward of 40% of TLS connections on Firefox Beta are TLS 1.3 [
https://telemetry.mozilla.org/new-pipeline/dist.html#!cumulative=0&end_date=2020-04-22&include_spill=0&keys=__none__!__none__!__none__&max_channel_version=beta%252F76&measure=SSL_HANDSHAKE_VERSION&min_channel_version=beta%252F73&processType=*&product=Firefox&sanitize=1&sort_by_value=0&sort_keys=submissions&start_date=2020-04-07&table=0&trim=1&use_submission_date=1
]


So, I am against adoption until it is clear that the I-D will endorse TLS
> 1.2 as adequate for most purposes.  After all, the TLS WG has yet to
> propose an I-D 'TLS 1.2 - Die, Die, Die'
>

Nor do we expect to in the near future. There is a difference between (1)
you should use version X and (2) you should not support version Y < X. The
question is what is best practice?

-Ekr



>
> ----- Original Message -----
> From: Valery Smyslov <valery@smyslov.net>
> To: <uta@ietf.org>
> Cc: 'Yaron Sheffer' <yaronf.ietf@gmail.com>, <uta-chairs@ietf.org>,
> 'Ralph Holz' <ralph.holz@gmail.com>, 'Peter Saint-Andre' <
> stpeter@mozilla.com>
> Sent: 26/04/2020 10:35:30
> Subject: [Uta] Adoption call for draft-sheffer-uta-rfc7525bis-00
>
> ________________________________________________________________________________
>
> Hi,
>
> during the last  virtual interim meeting the draft
> draft-sheffer-uta-bcp195bis-00 was presented and the authors asked for its
> adoption.
> The general feeling in the room was in favor of the adoption, however
> the authors were asked to rename it to *-rfc7525-bis.
> The authors have renamed the draft and asked the chairs for its adoption.
> Since our responsible AD thinks agrees that this work is within the charter
> of the WG, the chairs are issuing a formal call for adoption
> to confirm the results we had at the meeting.
>
> This message starts a two weeks call for adoption of the
> draft-sheffer-uta-rfc7525bis-00 draft.
> The call will end up 10 May 2020. Please send your opinions to the list
> before this date.
>
> Please if possible include any reasons supporting your opinion. If you
> support this adoption,
> please indicate whether you are ready to review this draft if it becomes a
> WG document.
>
> Regards,
> Leif & Valery.
>
>
> _______________________________________________
> Uta mailing list
> Uta@ietf.org
> https://www.ietf.org/mailman/listinfo/uta
>
> _______________________________________________
> Uta mailing list
> Uta@ietf.org
> https://www.ietf.org/mailman/listinfo/uta
>