[Uta] Updated SMTP STS Draft

"Brotman, Alexander" <Alexander_Brotman@cable.comcast.com> Mon, 25 April 2016 13:29 UTC

Return-Path: <Alexander_Brotman@cable.comcast.com>
X-Original-To: uta@ietfa.amsl.com
Delivered-To: uta@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B152B12D501 for <uta@ietfa.amsl.com>; Mon, 25 Apr 2016 06:29:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.897
X-Spam-Level:
X-Spam-Status: No, score=-2.897 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RP_MATCHES_RCVD=-0.996, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id fIPB3pyaIyIF for <uta@ietfa.amsl.com>; Mon, 25 Apr 2016 06:29:38 -0700 (PDT)
Received: from copdcmhout01.cable.comcast.com (copdcmhout01.cable.comcast.com [162.150.44.71]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A00C512D14C for <uta@ietf.org>; Mon, 25 Apr 2016 06:29:38 -0700 (PDT)
X-AuditID: a2962c47-f79e26d0000059b8-29-571e1bc190a6
Received: from COPDCEX18.cable.comcast.com (Unknown_Domain [96.114.156.147]) (using TLS with cipher AES256-SHA (256/256 bits)) (Client did not present a certificate) by copdcmhout01.cable.comcast.com (SMTP Gateway) with SMTP id 08.99.22968.1CB1E175; Mon, 25 Apr 2016 07:29:37 -0600 (MDT)
Received: from COPDCEX19.cable.comcast.com (147.191.124.150) by COPDCEX18.cable.comcast.com (147.191.124.149) with Microsoft SMTP Server (TLS) id 15.0.1130.7; Mon, 25 Apr 2016 07:29:36 -0600
Received: from COPDCEX19.cable.comcast.com ([fe80::3aea:a7ff:fe36:8380]) by COPDCEX19.cable.comcast.com ([fe80::3aea:a7ff:fe36:8380%19]) with mapi id 15.00.1130.005; Mon, 25 Apr 2016 07:29:36 -0600
From: "Brotman, Alexander" <Alexander_Brotman@cable.comcast.com>
To: "uta@ietf.org" <uta@ietf.org>
Thread-Topic: Updated SMTP STS Draft
Thread-Index: AdGe9n/0qHXYPZo0QRGRtT6oVp2B0A==
Date: Mon, 25 Apr 2016 13:29:35 +0000
Message-ID: <f560e7a9f4384a3293ae9f593c1563b5@COPDCEX19.cable.comcast.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [68.87.29.9]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-CFilter-Loop: Forward
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFupgkeLIzCtJLcpLzFFi42JJKJozWfegtFy4warrNhanjjYzOjB6LFny kymAMYrLJiU1J7MstUjfLoEr48TlFewFC7gqfu59xNTAuJGji5GTQ0LARGLC/MNMELaYxIV7 69m6GLk4hASWMkls33OaFcI5xCgxe/t2qMxJRom2FXNZQFrYBBwkfm+4zgxiiwgoSrz4854d xBYWkJeYc34eVFxF4v3m02wQtp7E4kOPgeIcHCwCqhJv/6iAhHkFvCTOPl4GdgUj0BXfT60B s5kFxCVuPZkPdZ2AxJI955khbFGJl4//sULYBhJbl+5jgbDlJJb9vMMM0asjsWD3JzYIW1ti 2cLXzBC7BCVOznwCVS8ucfjIDtYJjGKzkKybhaR9FpL2WUjaFzCyrGKUS84vSEnOzcgvLTEw 1EtOTMpJ1UvOz01OLC4B0ZsYgfGzaJqO+w7GC73OhxgFOBiVeHjbuOXChVgTy4orc4HBysGs JMLLJwEU4k1JrKxKLcqPLyrNSS0+xCjNwaIkzttjKRUuJJCeWJKanZpakFoEk2Xi4JRqYFy2 dEqZUtbGj1MvP9s5Qe+/+/36yI+zeZy6us8cvVJ6ZfMmgV8v51x9Ja5x4t2cex4fvVTKDjut c3nOp3lsnWvs7hp/qUyZYOv6p8+ZL5w68MnS1e5STEO5Z1zTkyw5dynZVSny55yP/k1LvamX M9VVL8vz2/d7ndKi8V8WSa2Zf+L3j+LbAWuUWIozEg21mIuKEwEBKUGBmwIAAA==
Archived-At: <http://mailarchive.ietf.org/arch/msg/uta/p52sUcXwe-jPH-iCFz7evVFOKtg>
Subject: [Uta] Updated SMTP STS Draft
X-BeenThere: uta@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: UTA working group mailing list <uta.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/uta>, <mailto:uta-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/uta/>
List-Post: <mailto:uta@ietf.org>
List-Help: <mailto:uta-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/uta>, <mailto:uta-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 25 Apr 2016 13:29:39 -0000

Hello,

We've incorporated much of the feedback we've received from the community, and would like to present updated drafts. 

* One of the most evident changes is that we've split the draft into two separate documents; one for the STS policy, and one for the TLS reporting.  These are meant to replace the original SMTP STS draft (https://datatracker.ietf.org/doc/draft-margolis-smtp-sts-00).
* We've altered the name a bit from "SMTP STS" to "MTA STS" to be more in line with DEEP, and have also added elements for the DEEP registry.  
* After some deliberation amongst the authors, we've also decided to remove the DNSSEC-related options for the STS policy, which should simplify work for those wishing to deploy STS validation.  
* Within the TLS reporting, we've explicitly mentioned several failure modes, including those specifically relating to DANE and MTA STS.  
* We've also altered the report syntax to use JSON instead of XML.  

Please see drafts here:

https://datatracker.ietf.org/doc/draft-brotman-mta-sts/

And

https://datatracker.ietf.org/doc/draft-brotman-smtp-tlsrpt/

We'd like others to review and encourage further discussion relating to these drafts.  Thank you for your time.

--
Alex Brotman
Engineer, Anti-Abuse
Comcast