Skip to main content

Adding Acronyms to Simplify Conversations about DNS-Based Authentication of Named Entities (DANE)
draft-ietf-dane-registry-acronyms-04

Revision differences

Document history

Date Rev. By Action
2014-04-21
04 (System) RFC Editor state changed to AUTH48-DONE from AUTH48
2014-04-17
04 (System) RFC Editor state changed to AUTH48 from RFC-EDITOR
2014-04-17
04 (System) RFC Editor state changed to RFC-EDITOR from EDIT
2014-03-14
04 Gunter Van de Velde Closed request for Last Call review by OPSDIR with state 'No Response'
2014-03-04
04 (System) IANA Action state changed to RFC-Ed-Ack from Waiting on RFC Editor
2014-03-03
04 (System) IANA Action state changed to Waiting on RFC Editor from Waiting on Authors
2014-03-03
04 (System) IANA Action state changed to Waiting on Authors from In Progress
2014-02-25
04 (System) IANA Action state changed to In Progress
2014-02-25
04 Amy Vezza IESG state changed to RFC Ed Queue from Approved-announcement sent
2014-02-24
04 (System) RFC Editor state changed to EDIT
2014-02-24
04 (System) Announcement was received by RFC Editor
2014-02-24
04 Cindy Morgan IESG state changed to Approved-announcement sent from Approved-announcement to be sent
2014-02-24
04 Cindy Morgan IESG has approved the document
2014-02-24
04 Cindy Morgan Closed "Approve" ballot
2014-02-24
04 Cindy Morgan Ballot approval text was generated
2014-02-24
04 Cindy Morgan Ballot writeup was changed
2014-02-20
04 Cindy Morgan IESG state changed to Approved-announcement to be sent from IESG Evaluation
2014-02-20
04 Sean Turner [Ballot Position Update] New position, Yes, has been recorded for Sean Turner
2014-02-20
04 Pete Resnick
[Ballot comment]
Stephen and I spent a couple of billion nanoseconds on this. That's enough of them.

I do think that this document should be …
[Ballot comment]
Stephen and I spent a couple of billion nanoseconds on this. That's enough of them.

I do think that this document should be Informational. Any normative information is buried in an IANA Considerations section that I suspect will not be read after publication. Nothing requires that this be standards track, and the odds that it will advance are zero. The fact that it "Updates" a standards track document or that it is "changing a registry defined by a standards track document" does not require it to be standards track.

But the world will continue to spin. The number of bits spent on this has perturbed the spinning quite enough.
2014-02-20
04 Pete Resnick [Ballot Position Update] Position for Pete Resnick has been changed to Abstain from Discuss
2014-02-20
04 Gonzalo Camarillo [Ballot Position Update] New position, No Objection, has been recorded for Gonzalo Camarillo
2014-02-20
04 Spencer Dawkins [Ballot comment]
I would support either document class ("don't care").
2014-02-20
04 Spencer Dawkins [Ballot Position Update] New position, No Objection, has been recorded for Spencer Dawkins
2014-02-20
04 Stephen Farrell Ballot writeup was changed
2014-02-20
04 Amanda Baber IANA Review state changed to IANA OK - Actions Needed from Version Changed - Review Needed
2014-02-19
04 Richard Barnes [Ballot comment]
I am fine with changing this to Informational.
2014-02-19
04 Richard Barnes [Ballot Position Update] New position, Yes, has been recorded for Richard Barnes
2014-02-19
04 Joel Jaeggli [Ballot Position Update] New position, No Objection, has been recorded for Joel Jaeggli
2014-02-19
04 Jari Arkko [Ballot Position Update] New position, No Objection, has been recorded for Jari Arkko
2014-02-19
04 Ted Lemon [Ballot Position Update] Position for Ted Lemon has been changed to No Objection from No Record
2014-02-19
04 Ted Lemon
[Ballot comment]
In section 2.2, right after the caption for Table 1, the following text appears:

  Other options suggested for 0: PKIX-TA

It appears …
[Ballot comment]
In section 2.2, right after the caption for Table 1, the following text appears:

  Other options suggested for 0: PKIX-TA

It appears that this is what is actually in the table, so this text makes no sense.
2014-02-19
04 Ted Lemon Ballot comment text updated for Ted Lemon
2014-02-19
04 Dan Romascanu Request for Telechat review by GENART Completed: Ready. Reviewer: Dan Romascanu.
2014-02-18
04 Brian Haberman [Ballot comment]
I agree with Pete's point that this should be an Informational document.
2014-02-18
04 Brian Haberman [Ballot Position Update] New position, No Objection, has been recorded for Brian Haberman
2014-02-18
04 Martin Stiemerling [Ballot Position Update] New position, No Objection, has been recorded for Martin Stiemerling
2014-02-17
04 Benoît Claise [Ballot Position Update] New position, No Objection, has been recorded for Benoit Claise
2014-02-17
04 Barry Leiba [Ballot Position Update] New position, No Objection, has been recorded for Barry Leiba
2014-02-15
04 Pete Resnick
[Ballot discuss]
This is a purely administrative point for the IESG. It will not hold up publication for even a nanosecond.

Let's make this "Informational", …
[Ballot discuss]
This is a purely administrative point for the IESG. It will not hold up publication for even a nanosecond.

Let's make this "Informational", shall we? Nothing requires that this be standards track, and the odds that it will advance are zero. (And before you say that it "Updates" a standards track document or that it is "changing a registry defined by a standards track document", I'd like a citation of somewhere that says that you can't do that with an Informational document.)

If the IESG agrees and we change the status, I will clear immediately. If not, I will not stand in the way of publication at all and simply Abstain, no hard feelings at all.
2014-02-15
04 Pete Resnick [Ballot Position Update] New position, Discuss, has been recorded for Pete Resnick
2014-02-15
04 Adrian Farrel [Ballot Position Update] New position, No Objection, has been recorded for Adrian Farrel
2014-02-14
04 Ólafur Guðmundsson IANA Review state changed to Version Changed - Review Needed from IANA OK - Actions Needed
2014-02-14
04 Ólafur Guðmundsson New version available: draft-ietf-dane-registry-acronyms-04.txt
2014-02-13
03 Jean Mahoney Request for Telechat review by GENART is assigned to Dan Romascanu
2014-02-13
03 Jean Mahoney Request for Telechat review by GENART is assigned to Dan Romascanu
2014-02-11
03 Stewart Bryant [Ballot comment]
Please expand DANE and TLSA on first use.
2014-02-11
03 Stewart Bryant [Ballot Position Update] New position, No Objection, has been recorded for Stewart Bryant
2014-02-10
03 Stephen Farrell Placed on agenda for telechat - 2014-02-20
2014-02-10
03 Stephen Farrell IESG state changed to IESG Evaluation from Waiting for Writeup
2014-02-10
03 Stephen Farrell Ballot has been issued
2014-02-10
03 Stephen Farrell [Ballot Position Update] New position, Yes, has been recorded for Stephen Farrell
2014-02-10
03 Stephen Farrell Created "Approve" ballot
2014-02-10
03 Stephen Farrell Ballot writeup was changed
2014-01-30
03 Tero Kivinen Request for Last Call review by SECDIR Completed: Has Nits. Reviewer: Tobias Gondrom.
2014-01-23
03 (System) State changed to Waiting for Writeup from In Last Call (ends 2014-01-23)
2014-01-22
03 Amanda Baber
IESG/Authors/WG Chairs:

IANA has reviewed draft-ietf-dane-registry-acronyms-03.  Authors should review the comments and/or questions below.  Please report any inaccuracies and respond to any questions as soon …
IESG/Authors/WG Chairs:

IANA has reviewed draft-ietf-dane-registry-acronyms-03.  Authors should review the comments and/or questions below.  Please report any inaccuracies and respond to any questions as soon as possible.

IANA's reviewer has the following comments/questions:

IANA understands that, upon approval of this document, there are three actions which IANA must complete.

First, in the three registries contained in the DNS-Based Authentication of Named Entities (DANE) Parameters located at:

http://www.iana.org/assignments/dane-parameters/

the reference for each of the three registries will be changed from [RFC6698] to both [RFC6698] and [ RFC-to-be ].

Second, each one of the registries located at

http://www.iana.org/assignments/dane-parameters/

will have a new column added.  This new field will be called "Acronym."


Third, the three registries will be modified to add the Acronym field and will appear as follows:

TLSA Certificate Usages

+-------+----------+--------------------------------+-------------+
| Value | Acronym  | Short Description              | Reference  |
+-------+----------+--------------------------------+-------------+
|  0  | PKIX-TA  | CA constraint                  | [RFC6698]  |
|  1  | PKIX-EE  | Service certificate constraint | [RFC6698]  |
|  2  | DANE-TA  | Trust anchor assertion        | [RFC6698]  |
|  3  | DANE-EE  | Domain-issued certificate      | [RFC6698]  |
| 4-254 |          | Unassigned                    |            |
|  255  | PrivCert | Reserved for Private Use      | [RFC6698]  |
+-------+----------+--------------------------------+-------------+

TLSA Selectors

+-------+---------+--------------------------+-------------+
| Value | Acronym | Short Description        | Reference  |
+-------+---------+--------------------------+-------------+
|  0  | Cert    | Full certificate        | [RFC6698]  |
|  1  | SPKI    | SubjectPublicKeyInfo    | [RFC6698]  |
| 2-254 |        | Unassigned              |            |
|  255  | PrivSel | Reserved for Private Use | [RFC6698]  |
+-------+---------+--------------------------+-------------+

TLSA Matching types

+-------+-----------+--------------------------+-------------+
| Value | Acronym  | Short Description        | Reference  |
+-------+-----------+--------------------------+-------------+
|  0  | Full      | No hash used            | [RFC6698]  |
|  1  | SHA2-256  | 256 bit hash by SHA2    | [RFC6698]  |
|  2  | SHA2-512  | 512 bit hash by SHA2    | [RFC6698]  |
| 3-254 |          | Unassigned              |            |
|  255  | PrivMatch | Reserved for Private Use | [RFC6698]  |
+-------+-----------+--------------------------+-------------+

IANA understands that these three actions are the only ones required to be completed upon approval of this document.

Note:  The actions requested in this document will not be completed until the document has been approved for publication as an RFC. This message is only to confirm what actions will be performed.
2014-01-22
03 (System) IANA Review state changed to IANA OK - Actions Needed from IANA - Review Needed
2014-01-16
03 Tero Kivinen Request for Last Call review by SECDIR is assigned to Tobias Gondrom
2014-01-16
03 Tero Kivinen Request for Last Call review by SECDIR is assigned to Tobias Gondrom
2014-01-15
03 Dan Romascanu Request for Last Call review by GENART Completed: Ready with Issues. Reviewer: Dan Romascanu.
2014-01-09
03 Jean Mahoney Request for Last Call review by GENART is assigned to Dan Romascanu
2014-01-09
03 Jean Mahoney Request for Last Call review by GENART is assigned to Dan Romascanu
2014-01-09
03 Gunter Van de Velde Request for Last Call review by OPSDIR is assigned to Niclas Comstedt
2014-01-09
03 Gunter Van de Velde Request for Last Call review by OPSDIR is assigned to Niclas Comstedt
2014-01-09
03 Amy Vezza IANA Review state changed to IANA - Review Needed
2014-01-09
03 Amy Vezza
The following Last Call announcement was sent out:

From: The IESG
To: IETF-Announce
CC:
Reply-To: ietf@ietf.org
Sender:
Subject: Last Call:  (Adding acronyms to simplify DANE …
The following Last Call announcement was sent out:

From: The IESG
To: IETF-Announce
CC:
Reply-To: ietf@ietf.org
Sender:
Subject: Last Call:  (Adding acronyms to simplify DANE conversations) to Proposed Standard


The IESG has received a request from the DNS-based Authentication of
Named Entities WG (dane) to consider the following document:
- 'Adding acronyms to simplify DANE conversations'
  as Proposed Standard

The IESG plans to make a decision in the next few weeks, and solicits
final comments on this action. Please send substantive comments to the
ietf@ietf.org mailing lists by 2014-01-23. Exceptionally, comments may be
sent to iesg@ietf.org instead. In either case, please retain the
beginning of the Subject line to allow automated sorting.

Abstract


  Experience has show that people get confused using the three numeric
  fields the TLSA record.  This document specifies descriptive acronyms
  for the three numeric fields in the TLSA records.  This document
  updates the format of the IANA registry created by RFC6698.




The file can be obtained via
http://datatracker.ietf.org/doc/draft-ietf-dane-registry-acronyms/

IESG discussion can be tracked via
http://datatracker.ietf.org/doc/draft-ietf-dane-registry-acronyms/ballot/


No IPR declarations have been submitted directly on this I-D.


2014-01-09
03 Amy Vezza State changed to In Last Call from Last Call Requested
2014-01-09
03 Amy Vezza Last call announcement was generated
2014-01-08
03 Stephen Farrell Last call was requested
2014-01-08
03 Stephen Farrell Ballot approval text was generated
2014-01-08
03 Stephen Farrell Ballot writeup was generated
2014-01-08
03 Stephen Farrell State changed to Last Call Requested from Publication Requested
2014-01-08
03 Stephen Farrell Last call announcement was generated
2014-01-08
03 Stephen Farrell Last call announcement was generated
2014-01-06
03 Cindy Morgan Document shepherd changed to Paul E. Hoffman
2014-01-06
03 Cindy Morgan Notification list changed to : dane-chairs@tools.ietf.org, draft-ietf-dane-registry-acronyms@tools.ietf.org, paul.hoffman@vpnc.org
2014-01-06
03 Warren Kumari IETF WG state changed to Submitted to IESG for Publication
2014-01-06
03 Warren Kumari IESG state changed to Publication Requested
2014-01-06
03 Warren Kumari
1. Summary

Paul Hoffman is the document shepherd; Stephen Farrell is the responsible AD.

This document is a small update to RFC 6698, the …
1. Summary

Paul Hoffman is the document shepherd; Stephen Farrell is the responsible AD.

This document is a small update to RFC 6698, the specification for the DNS-Based Authentication of Named Entities (DANE) Transport Layer Security (TLS) Protocol, also known by its DNS RRset name, TLSA. The revision has one narrow purpose: to give the three numeric fields in the RRtype definition mnemonic names. This is meant to allow easier discussion of TLSA, particular for the "certificate usage" field that specifies what type of public key is in the TLSA record. Because this draft updates a standards track RFC, the draft is meant to be a proposed standard as well.

2. Review and Consensus

The short document was thoroughly reviewed in the WG. That very active discussion among many people led to some very deep divisions in the WG about what the "certificate usage" fields should be called. The WG chairs called rough consensus, but a significant number of people in the WG disagreed that there was consensus at all. It should be noted that the WG has consensus that some terminology is better than just having the numbers in RFC 6698; however, there are strong opinions for three or four different sets of terminology. I do not believe that the wording in the current draft represents "rough consensus" but, at the same time, I don't see any of the other options as having noticeably more consensus.

3. Intellectual Property

I did not confirm that each author has stated that their direct, personal knowledge of any IPR related to this document has already been disclosed, in conformance with BCPs 78 and 79 because that is unnecessary for this document. The document adds synonyms to an existing protocol.

4. Other Points

There is still wide disagreement about the meaning of self-signed certificates and what it means to be part of "PKIX". This disagreement comes from many WG members' discussions of security with people who use IETF security technologies, as well as some strong personal biases. The discussion in the WG was mostly thoughtful even when it was forceful. Given this, it is likely impossible to come up with names for the "certificate usage" that will make even most people happy.
2014-01-06
03 Warren Kumari State Change Notice email list changed to dane-chairs@tools.ietf.org, draft-ietf-dane-registry-acronyms@tools.ietf.org
2014-01-06
03 Warren Kumari Responsible AD changed to Stephen Farrell
2014-01-06
03 Warren Kumari Working group state set to Submitted to IESG for Publication
2014-01-06
03 Warren Kumari IESG state set to Publication Requested
2014-01-06
03 Warren Kumari IESG process started in state Publication Requested
2014-01-06
03 Warren Kumari Intended Status changed to Proposed Standard from None
2014-01-06
03 Ólafur Guðmundsson New version available: draft-ietf-dane-registry-acronyms-03.txt
2013-12-28
02 Paul Hoffman Changed document writeup
2013-12-28
02 Warren Kumari *Rough* consensus. Consensus on utility of document, less so on actual acronyms.
2013-12-28
02 Warren Kumari IETF WG state changed to WG Consensus: Waiting for Write-Up from In WG Last Call
2013-12-28
02 Warren Kumari Document shepherd changed to Paul E. Hoffman
2013-12-01
02 Ólafur Guðmundsson New version available: draft-ietf-dane-registry-acronyms-02.txt
2013-10-18
01 Ólafur Guðmundsson New version available: draft-ietf-dane-registry-acronyms-01.txt
2013-09-24
00 Warren Kumari IETF WG state changed to In WG Last Call from WG Document
2013-09-19
00 Ólafur Guðmundsson New version available: draft-ietf-dane-registry-acronyms-00.txt