Re: [wpkops] RV: New Version Notification fordraft-ietf-wpkops-trustmodel-01.txt

i-barreira@izenpe.net Mon, 26 May 2014 07:50 UTC

Return-Path: <i-barreira@izenpe.net>
X-Original-To: wpkops@ietfa.amsl.com
Delivered-To: wpkops@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 437EE1A0024 for <wpkops@ietfa.amsl.com>; Mon, 26 May 2014 00:50:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.8
X-Spam-Level:
X-Spam-Status: No, score=0.8 tagged_above=-999 required=5 tests=[BAYES_50=0.8] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Rdr7VumhWakc for <wpkops@ietfa.amsl.com>; Mon, 26 May 2014 00:50:39 -0700 (PDT)
Received: from ektmail1iron2.euskaltel.es (ektmail1iron2.euskaltel.es [212.142.144.27]) by ietfa.amsl.com (Postfix) with ESMTP id 3D6051A002A for <wpkops@ietf.org>; Mon, 26 May 2014 00:50:38 -0700 (PDT)
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: An8JAD3xglPUNwgN/2dsb2JhbABZg1lRgnGqVo0UhmlRARmBC3SCJQEBAQQBAQEgDQQIATEJDgQCAQgRBAEBAwIGBhcBAgICAQElHwkIAQEFEggBiD0BAwWyTqRGF4EqjHc4BoJvNoEVBJlzgT2RaoF4gUJq
X-IPAS-Result: An8JAD3xglPUNwgN/2dsb2JhbABZg1lRgnGqVo0UhmlRARmBC3SCJQEBAQQBAQEgDQQIATEJDgQCAQgRBAEBAwIGBhcBAgICAQElHwkIAQEFEggBiD0BAwWyTqRGF4EqjHc4BoJvNoEVBJlzgT2RaoF4gUJq
X-IronPort-AV: E=Sophos;i="4.98,911,1392159600"; d="scan'208";a="167261117"
Received: from ektmail1mta2.euskaltel.es (HELO correo.euskaltel.es) ([212.55.8.13]) by ektmail1iron2.euskaltel.es with ESMTP; 26 May 2014 09:35:34 +0200
Received: from ejlp023.ejgv ([195.77.108.247]) by ektmail1mta2.euskaltel.es (Sun Java System Messaging Server 6.2-9.09 (built Jan 8 2008)) with ESMTP id <0N660008P8GAP870@ektmail1mta2.euskaltel.es> for wpkops@ietf.org; Mon, 26 May 2014 09:50:34 +0200 (CEST)
Received: from afe01.ejsarea.net (afe01 [10.200.192.14]) by ejlp023.ejgv (8.13.1/8.13.1) with ESMTP id s4Q7oXFe019938; Mon, 26 May 2014 09:50:33 +0200
Received: from AEX06.ejsarea.net ([10.200.198.15]) by afe01.ejsarea.net with Microsoft SMTPSVC(6.0.3790.4675); Mon, 26 May 2014 09:50:33 +0200
Date: Mon, 26 May 2014 09:50:32 +0200
From: i-barreira@izenpe.net
In-reply-to: A <544B0DD62A64C1448B2DA253C011414607CB33B3A6@TUS1XCHEVSPIN33.SYMC.SYMANTEC.COM>
To: Rick_Andrews@symantec.com, wpkops@ietf.org
Message-id: <763539E260C37C46A0D6B340B5434C3B09854747@AEX06.ejsarea.net>
MIME-version: 1.0
X-MIMEOLE: Produced By Microsoft Exchange V6.5
Content-type: text/plain; charset="utf-8"
Content-transfer-encoding: base64
Content-class: urn:content-classes:message
Thread-topic: [wpkops] RV: New Version Notification fordraft-ietf-wpkops-trustmodel-01.txt
Thread-index: Ac92fmB/AoDvM//YQ9W3I1CXDB0B9gAAERPQAA2Xm9AAgBXNAA==
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
References: <20140523115850.12027.2398.idtracker@ietfa.amsl.com> <763539E260C37C46A0D6B340B5434C3B09854673@AEX06.ejsarea.net> A <544B0DD62A64C1448B2DA253C011414607CB33B3A6@TUS1XCHEVSPIN33.SYMC.SYMANTEC.COM>
X-OriginalArrivalTime: 26 May 2014 07:50:33.0113 (UTC) FILETIME=[2C17A890:01CF78B7]
Archived-At: http://mailarchive.ietf.org/arch/msg/wpkops/Arb7f0jfw8x_fRiYff4uaxewn_o
Subject: Re: [wpkops] RV: New Version Notification fordraft-ietf-wpkops-trustmodel-01.txt
X-BeenThere: wpkops@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: <wpkops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/wpkops>, <mailto:wpkops-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/wpkops/>
List-Post: <mailto:wpkops@ietf.org>
List-Help: <mailto:wpkops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/wpkops>, <mailto:wpkops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 26 May 2014 07:50:42 -0000

Thanks Rick.

Regarding definitions, from the very first draft, the terminology used in RFC 5280 is not defined in this document. We haven´t had defined CA, nor RA,  because it´s "mentioned" in the RFC 5280, and didn´t want to add new definitions. That´s why at the beginning of definitions indicate that the terminology used in RFC 5280 is going to be used, so CA and RA are not going to be incorporated.

For root CA I think you´re considering the "CA" as a company when say "... with one or more root certificates ..." so I prefer to keep the current definition
For root store, is more or less the same when you add "... typically belonging ..." which again I think you´re referring CA as a company. I think the browsers don´t mind if some of the root CAs belong to the same CA company, they just add root CAs.

I´ll correct the typo. Didn´t see it.

Regards

Iñigo Barreira
Responsable del Área técnica
i-barreira@izenpe.net
945067705


ERNE! Baliteke mezu honen zatiren bat edo mezu osoa legez babestuta egotea. Mezua badu bere hartzailea. Okerreko helbidera heldu bada (helbidea gaizki idatzi, transmisioak huts egin) eman abisu igorleari, korreo honi erantzuna. KONTUZ!
ATENCION! Este mensaje contiene informacion privilegiada o confidencial a la que solo tiene derecho a acceder el destinatario. Si usted lo recibe por error le agradeceriamos que no hiciera uso de la informacion y que se pusiese en contacto con el remitente.


-----Mensaje original-----
De: Rick Andrews [mailto:Rick_Andrews@symantec.com] 
Enviado el: sábado, 24 de mayo de 2014 1:40
Para: Barreira Iglesias, Iñigo; wpkops@ietf.org
Asunto: RE: [wpkops] RV: New Version Notification fordraft-ietf-wpkops-trustmodel-01.txt

Iñigo,

I'm confused by the Definitions (Section 1.2). Several of them include "CA" without that being defined. How about:
	CA - Certificate Authority, an entity that issues certificates

	Root CA - a CA with one or more Root certificates whose public key) are included as trust anchors in a root store

	Root store - a set of Root certificates, typically belonging to different Root CAs, which can be trusted by a browser

I suggest that you add a definition for Registration Authority too, since it's used but not defined. Section 2.2.1 doesn't really define it.

 Typo in Section 3.2.1: " the root CA conforms. , inIn addition,"

-Rick

-----Original Message-----
From: wpkops [mailto:wpkops-bounces@ietf.org] On Behalf Of i-barreira@izenpe.net
Sent: Friday, May 23, 2014 5:01 AM
To: wpkops@ietf.org
Subject: [wpkops] RV: New Version Notification for draft-ietf-wpkops-trustmodel-01.txt




Iñigo Barreira
Responsable del Área técnica
i-barreira@izenpe.net
945067705


ERNE! Baliteke mezu honen zatiren bat edo mezu osoa legez babestuta egotea. Mezua badu bere hartzailea. Okerreko helbidera heldu bada (helbidea gaizki idatzi, transmisioak huts egin) eman abisu igorleari, korreo honi erantzuna. KONTUZ!
ATENCION! Este mensaje contiene informacion privilegiada o confidencial a la que solo tiene derecho a acceder el destinatario. Si usted lo recibe por error le agradeceriamos que no hiciera uso de la informacion y que se pusiese en contacto con el remitente.


-----Mensaje original-----
De: internet-drafts@ietf.org [mailto:internet-drafts@ietf.org] Enviado el: viernes, 23 de mayo de 2014 13:59
Para: Barreira Iglesias, Iñigo; Bruce Morton; Barreira Iglesias, Iñigo; Bruce Morton
Asunto: New Version Notification for draft-ietf-wpkops-trustmodel-01.txt


A new version of I-D, draft-ietf-wpkops-trustmodel-01.txt
has been successfully submitted by Inigo Barreira and posted to the IETF repository.

Name:		draft-ietf-wpkops-trustmodel
Revision:	01
Title:		Trust models of the Web PKI
Document date:	2014-05-20
Group:		wpkops
Pages:		11
URL:            http://www.ietf.org/internet-drafts/draft-ietf-wpkops-trustmodel-01.txt
Status:         https://datatracker.ietf.org/doc/draft-ietf-wpkops-trustmodel/
Htmlized:       http://tools.ietf.org/html/draft-ietf-wpkops-trustmodel-01
Diff:           http://www.ietf.org/rfcdiff?url2=draft-ietf-wpkops-trustmodel-01

Abstract:
   This is one of a set of documents to define the operation of the Web
   PKI.  It describes the currently deployed Web PKI trust.

                                                                                  


Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org.

The IETF Secretariat

_______________________________________________
wpkops mailing list
wpkops@ietf.org
https://www.ietf.org/mailman/listinfo/wpkops