[TLS] Re: Mike Bishop's Yes on draft-ietf-tls-8773bis-10: (with COMMENT)
Mike Bishop <mbishop@evequefou.be> Wed, 03 September 2025 12:20 UTC
Return-Path: <mbishop@evequefou.be>
X-Original-To: tls@mail2.ietf.org
Delivered-To: tls@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 736E65CA2169; Wed, 3 Sep 2025 05:20:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -1.897
X-Spam-Level:
X-Spam-Status: No, score=-1.897 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_VALIDITY_SAFE_BLOCKED=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (1024-bit key) header.d=evequefou.onmicrosoft.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pV_odrYgfO57; Wed, 3 Sep 2025 05:20:45 -0700 (PDT)
Received: from NAM12-BN8-obe.outbound.protection.outlook.com (mail-bn8nam12on2097.outbound.protection.outlook.com [40.107.237.97]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-384) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id C43075CA2150; Wed, 3 Sep 2025 05:20:45 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=hG+ry4oBukA0iW8SKAd+qYCcNJ6weqLMvjStqsgcD788wxJXo0WnDHbhR28mi6J3HwNzxAzAYnPQ2XrxNiad/2cNy99Vd0DRtmVu8D4m8/D5DXYANwBV4X4DMbF/FAYaQVrpcB7sDZdW2d9mitffSOCgLzk/RRWFO9PyhHHxX3PeBTgVq5g3eWEM2DRhqs0oNoVzNsatoV1z+d+AZA+NhmFCjeCxLXIyJQbWyzN3Qx0/L92APsNOghcFcybq78puin1wvcymF6RdHN9QZLjvkX+ZFg8Qz2n1U1tp4wl0RH47OaRHSiNPfsYUwaqvAdlZZ4CY978Zg9HWClHNc+7OGg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=JeqPhBYH63kNsP6wy48OokcCJfnx/YA3bdN9NYYaCnA=; b=XD5PJKLVP3g31MOhpdSgr3rsLl21MwNKtTtPPigtebuBLlGnN38EcGKKYxiKgO8+rTXVrBeU7RSaOmWaPA+8cV8ArQ3uKWuzkbaygxEqsQTUI9s/jLBywueLbFc2za984Dir4yz2rIs6l6BPCShN+MTO/LGGXMcPUe6cCVeN1iVfwAGPp5/tZXBIDetKPFwa8d7YANsXgDLvypnHdz1MP3u8Wl1O2MsbFGf2Wg2xqxq8OqsyWtGhW8hIMxQ+Hq1YQgASMyBcVrOOFsaiuGSwugQUZIK8a8WgPdlxBld/Bln1h2Fk2rkr7eanqTDlOuTOwfnOXVwVl5RraWMhZxivZg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=evequefou.be; dmarc=pass action=none header.from=evequefou.be; dkim=pass header.d=evequefou.be; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=evequefou.onmicrosoft.com; s=selector2-evequefou-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=JeqPhBYH63kNsP6wy48OokcCJfnx/YA3bdN9NYYaCnA=; b=Z2mD+q9mOu0cWHQ+VmykKvBl0Wt+AI22UzMepjLa/ONdhKKdohwgfMtBihpPhl6q4VPHK9Am+y65Ywooh78Dh4mbP0IrdMd9l/T1gEm95UODVfJDrAHHvPwV88+IP18mFWqgIMgdqSQzT+WwFlOs9lXMj2/jrxI6YGLiVwPHtVs=
Received: from IA0PPF726CD7A1F.namprd22.prod.outlook.com (2603:10b6:20f:fc04::d2b) by DM3PPFBA471AB43.namprd22.prod.outlook.com (2603:10b6:f:fc00::e46) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9052.21; Wed, 3 Sep 2025 12:20:41 +0000
Received: from IA0PPF726CD7A1F.namprd22.prod.outlook.com ([fe80::6c2e:9662:da13:59d2]) by IA0PPF726CD7A1F.namprd22.prod.outlook.com ([fe80::6c2e:9662:da13:59d2%7]) with mapi id 15.20.9073.026; Wed, 3 Sep 2025 12:20:41 +0000
From: Mike Bishop <mbishop@evequefou.be>
To: Russ Housley <housley@vigilsec.com>
Thread-Topic: Mike Bishop's Yes on draft-ietf-tls-8773bis-10: (with COMMENT)
Thread-Index: AQHcHDa1Ho1GibR700ivIns4N7MDn7SAQO4AgAEg+O0=
Date: Wed, 03 Sep 2025 12:20:41 +0000
Message-ID: <6db481aa-267e-4973-8817-e28fc2b0b1b7@evequefou.be>
References: <175683741490.1938744.15847517342041403830@dt-datatracker-67876766b7-bkzgr> <2E75F643-FD38-41C3-9011-09E1070C98AF@vigilsec.com>
In-Reply-To: <2E75F643-FD38-41C3-9011-09E1070C98AF@vigilsec.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=evequefou.be;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: IA0PPF726CD7A1F:EE_|DM3PPFBA471AB43:EE_
x-ms-office365-filtering-correlation-id: 2eec5022-c2c9-4a70-da2e-08ddeae44c60
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|366016|1800799024|376014|7053199007|8096899003|38070700018;
x-microsoft-antispam-message-info: URvhjgHkxLFoFBkPtOvbnaJlYAaOgQ+mjpcpTcXcTXRw3KYpJXfV8MFFNjx74GofVWzD8W7l4kz9JUwJ0RwUPDk1JbywPL+3moE13kq9GLCQg6Qe5lLuMTuUOCOZFitZvJvsgRD89ILaM+lPMzTEbChF+E1mA8ORNNCiRuhPddvL/avguZ1/ZwkKFXPBB0u1xV5KMNOxqIrd5craoih2ugVbQMjo4krIot26nDvW/QyYIvbeV7frP6+LUSSSx3C210pazUSY93uGgoaIlEQ3qlUikX9aZ/OXal+o0hmXNojF5d/pEG0u9bHT1H+knyZ5RWU4kaybu9UiCasnYoy1LT5xtoBp3LGjkBTtw761WWPVM7XE9gJZGhA+8XJ+9i0PX6JefxUccMbbCcYbnP7Efjru83eUpxc3sOeB1VoC3VHsLkDFMUuvMWhAYGQQEJdOfsXDtb797X5Xw3FTd4iUe0CV/+/+WLCuB1HCE67RF3apdfPUSJfnytcTXcTI3zEtrjZUKf3hqkdzfD9y90xNa83nhRnSLasorbNQnXu1Nu2nsg8nofxNdhAi7YJ4ncBs5Qc9dl9TNH5NiaL4BocN/kGly3K0qETtCqrrbSAWLYoLkYyGTH/Ea+00s6J3OzIZqcDEHLoy3AkJDRAZLo1f7+UC8z6aXEqbBS7yR307UHmnohJssQHBtMp4NFCLKazfWCb295+mv8NbdwcY4m2h/Hk1nG09IYdhA0IrBJry3r+9NJkmEFraYIx+oE1cX6Kp2s2ZcmlwF7tfiNBiCexB3Rz6lH8xxeZlP6KuJDOeyLQ0EXov9l7WWq65Kg2TPnPxOstwgoTqmxbd53jY4CQctcfJ8enDBvODpFMjyU2b8hgRgcOUJ+XuqG1faboK4Xiz3qE3isRz4ArnN1tQPoU/iCR/QagpWqiu5dyyMWO0aZgrxFlmZFhVQ4BBNoZgThcOAJBsAeN0upjhGNjHAQpP6Y2H4bp/YtSiFCqUn5PU2y0etG1wLz9KslZuToZxTIx+AlA6e0Z6c1WuF67b1tHSKUF9zsOvepw3ZQptwGAPhxjtCcz73pRHjXh3Z/95TQQcap/+OS+/xWY4BtIb5hLUySStSRxdFyAtMnwPGh7+BiFShpUKdZfFIGqG8Mb+tU0zUpdO9w4MrpDn/9loPN+gBiiVCSh/kFD5KA3kG5tQIjbdz5aDFX46Bkicf6fE9vysK7UVMiQv28F9BJzXRlC2k9tOlve3GqpL6hrdwAsfNzsJ5Wr3tYHaru637WRuYMrvb3JdUTKYBLsUOuvwVfhhPJ9rf4V56phR79D52dZbBSRJQs02cJ+TmNty/uARxacCGz8ErMkvzGP0dzXfndEIVu6U1xhX58k32li9kN+VOaAT7MaCalMhjeW3oPSDQPhhEAtXAvEP0U4MRRK4hFDtPsYmXMln3JiYwlqXVgTy77s64K8TgVsbfGyMWCIDNPfT9FRVeES+bOGoWvjWe0gJhg==
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:IA0PPF726CD7A1F.namprd22.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(366016)(1800799024)(376014)(7053199007)(8096899003)(38070700018);DIR:OUT;SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: vAN7YLy/c/oEwsKwwExhpvZkzjnXiFH3+LcUvLCMuJNYiC/8pESGS9gNVC/d6Qik2BL1Z8hV7SIn1p8dApZG1ukGxhnyFtR04ZwBEzq4GN2dslm+CZE0w6JZGMMr25c/TNOB5wYayes023pAQxjY725IigzozfszYUMEMXfgem1BDEUn77QbSHWd9gD2yWjxyeSZKPDgx9VUnfb5fEt8WI1YRtdGFLfnkNLw8j6nlba7ef6D9X+iVOEBR3grJ33SzKDxSEUNNY+QSaMvLaT7amjfHUckaqW0V0YOKATz12LzwwtUVWYfiJV8T7/8U0oascat5VvZqFktW4mjVOuMlDgy97PLXxaEt+GQsb589EyNSHyonv0ey3sR+WpLW+8AKVq5bLX9m6TpuNydK8PIGifJZ8CJcI1/a2MvC2JlQkJZuJCpbbjxdgiaXfCBJ9jqVDu+So8mrxbWJ47K6USbt6gqxe8z6BP++zvKFtjpGQcuxAQqpaB73ZI+TenD7mHr6btTbh1b9L4Wdf9rNsl3ICZvdDhCCjF6PpFqqy49DZyYEvx2va5EgyidPLyaZ7NF7M1F3/WLCuoIxWzRRlH5gHCXVFJ22Ol9Tg2ow8b2ROwr8mu7ZFjwt9pRMCbg4MfibsItKkU2pHYeeLlU9kxdmEJ+7Yn8GrB4H7oaYMyxNUDLJVRNIPfqfg3plkFfFNXtfQ/kAlLdaAs6CXyeZb6IRpKuMwFmuGyF5YAr59Gv1ZYBSV/7/NR0OyJpAaYgjzt+98UaAYuJ6H131dXP7AVFhs2yyaQTpb540Lmodj4aBifHJDvOrqtEe4G0/+XuqEnyUc5nZq1kxkhw1HDETP+K0FzlllkySAXrRuuIoS1tI4gHEUxT1OFdUYQdviYM1C5hbFoTl/JggbLWePhaNEd8afoMfsUree2sBpmrDcG28FBYAl6Jwplcu0tLU0w2+GqnAtM5W0Lg2DzIJaGPI9RyKvXyRZ2azgigln21AXDEkWVs44nnGE6p6iMYEicJ9knqq3hWk8HH3jy+NGescR/4AX+LnxeHJqBEQHv2NTPOpXuoCj7OXxqwABgqHymfRiGfB/r2t6dC1DH291WbRt0Xfj8y4lngGvO6QEz/WblL8YClJpklOzX9myJt17LgOLvZCdwJdwetarMEnRgbJgpbhwk0EM4aRxfoY7U95v/6IqU0h8f2xkp3/7g12fr7en1MDtjGVhKnu5m5onm/+hWGudgYRF1SbKASFF0E82kOEhYW04zA5p9JJDanAjAlXmIGTQpf/Qc+88njUVPPLVf8RWrsgJOrVBWEalHZmfFa4BU9ag/SzM/EwtXVwmebB30uBGA+62Twh+0hbsfo0aPJxcph6RJX5rP5Vdlcdu22gBADIUiB1/+dxGuK8Fbv8fiuGLLaZQBpAdHnMuIvmtvoGeSnvsqwuFaToGQTwrtD6RsGUd9l/NiWqzV/GWCZyS0Jv0PZ0eGG0yx/mS07wbfsteqbAUbQjTgWEAqSwM7Xmw85bf92ArAakN9MxT+XPAvHBL2okheK0t6aOBrj3Decqa97vYkeVs+NsKcnggt27IwuKxJh5y4Pbo8BWAUDnSN4
Content-Type: multipart/alternative; boundary="_000_6db481aa267e49738817e28fc2b0b1b7evequefoube_"
MIME-Version: 1.0
X-OriginatorOrg: evequefou.be
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: IA0PPF726CD7A1F.namprd22.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 2eec5022-c2c9-4a70-da2e-08ddeae44c60
X-MS-Exchange-CrossTenant-originalarrivaltime: 03 Sep 2025 12:20:41.0901 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 41eaf50b-882d-47eb-8c4c-0b5b76a9da8f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: psDFdanYMgDvpHku4sdvofTP8652vQB5UBoewTqlAFhAr7RLCtNOtiXoLjBAWz3UYibD71i4RkA47HU5RqYG3g==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM3PPFBA471AB43
Message-ID-Hash: 737DC7Q5LPZ2ZS2OHSDIUB2Y74DNE5GV
X-Message-ID-Hash: 737DC7Q5LPZ2ZS2OHSDIUB2Y74DNE5GV
X-MailFrom: mbishop@evequefou.be
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: IESG <iesg@ietf.org>, "draft-ietf-tls-8773bis@ietf.org" <draft-ietf-tls-8773bis@ietf.org>, "tls-chairs@ietf.org" <tls-chairs@ietf.org>, IETF TLS <tls@ietf.org>, Joe Salowey <jsalowey@gmail.com>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: Mike Bishop's Yes on draft-ietf-tls-8773bis-10: (with COMMENT)
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/6IOQMs2-pRTNJRV3i_yhNwiZFV0>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>
That would be fine. ________________________________ From: Russ Housley <housley@vigilsec.com> Sent: Tuesday, September 2, 2025 3:06 PM To: Mike Bishop Cc: IESG; draft-ietf-tls-8773bis@ietf.org; tls-chairs@ietf.org; IETF TLS; Joe Salowey Subject: Re: Mike Bishop's Yes on draft-ietf-tls-8773bis-10: (with COMMENT) Mike: > ---------------------------------------------------------------------- > COMMENT: > ---------------------------------------------------------------------- > > Section 4: "MAY also find it useful" means that the client is permitted, but > not required, to find the extension useful. Is that the intended sense? I'd > suggest that this is a lowercase "may" or better yet "might". Suggestion: The client MAY also include the "supported_groups" extension. Russ
- [TLS] Mike Bishop's Yes on draft-ietf-tls-8773bis… Mike Bishop via Datatracker
- [TLS] Re: Mike Bishop's Yes on draft-ietf-tls-877… Russ Housley
- [TLS] Re: Mike Bishop's Yes on draft-ietf-tls-877… Mike Bishop
- [TLS] Re: Mike Bishop's Yes on draft-ietf-tls-877… Eric Rescorla