Skip to main content

Telechat Review of draft-ietf-tls-svcb-ech-07
review-ietf-tls-svcb-ech-07-tsvart-telechat-ihlar-2025-05-06-00

Request Review of draft-ietf-tls-svcb-ech
Requested revision No specific revision (document currently at 08)
Type Telechat Review
Team Transport Area Review Team (tsvart)
Deadline 2025-05-06
Requested 2025-04-22
Requested by Gorry Fairhurst
Authors Benjamin M. Schwartz , Mike Bishop , Erik Nygren
I-D last updated 2025-06-16 (Latest revision 2025-06-16)
Completed reviews Dnsdir Early review of -01 by Ted Lemon (diff)
Artart IETF Last Call review of -06 by Barry Leiba (diff)
Genart IETF Last Call review of -06 by Lucas Pardue (diff)
Dnsdir IETF Last Call review of -06 by James Gannon (diff)
Dnsdir IETF Last Call review of -07 by Matt Brown (diff)
Opsdir IETF Last Call review of -07 by Linda Dunbar (diff)
Tsvart Telechat review of -07 by Marcus Ihlar (diff)
Comments
This could be relevent to HAPPY, and similar racing methods.
Assignment Reviewer Marcus Ihlar
State Completed
Request Telechat review on draft-ietf-tls-svcb-ech by Transport Area Review Team Assigned
Posted at https://mailarchive.ietf.org/arch/msg/tsv-art/of6VY3Yfb1idqWTz3qo1d8TN6bo
Reviewed revision 07 (document currently at 08)
Result Ready
Completed 2025-05-06
review-ietf-tls-svcb-ech-07-tsvart-telechat-ihlar-2025-05-06-00
This document has been reviewed as part of the transport area review team's
ongoing effort to review key IETF documents. These comments were written
primarily for the transport area directors, but are copied to the document's
authors and WG to allow them to address any issues raised and also to the IETF
discussion list for information.

When done at the time of IETF Last Call, the authors should consider this
review as part of the last-call comments they receive. Please always CC
tsv-art@ietf.org if you reply to or forward this review.

This is a well written, and important document that defines how to bootstrap
Encrypted Client Hello using the DNS.

The document defines a new SVCB/HTTPS Service Parameter Key named ech with an
associated ECHConfigList. The key pair is published by servers in DNS, and
capable clients can retrieve the list during name resolution to obtain all
necessary information required for sending Encrypted Client Hellos.

The document does not introduce, modify or rely on any specific layer 4
behaviours. Any such considerations are likely found in the main ECH
specification.