From nobody Fri Mar 27 10:17:26 2015 Return-Path: X-Original-To: emu@ietfa.amsl.com Delivered-To: emu@ietfa.amsl.com Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 441E11B2A4C; Fri, 27 Mar 2015 10:17:24 -0700 (PDT) X-Virus-Scanned: amavisd-new at amsl.com X-Spam-Flag: NO X-Spam-Score: -1.999 X-Spam-Level: X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FPQdkEoOj6Gk; Fri, 27 Mar 2015 10:17:23 -0700 (PDT) Received: from mail-lb0-x22a.google.com (mail-lb0-x22a.google.com [IPv6:2a00:1450:4010:c04::22a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E97151B2A38; Fri, 27 Mar 2015 10:17:16 -0700 (PDT) Received: by lbdc10 with SMTP id c10so14289284lbd.2; Fri, 27 Mar 2015 10:17:15 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:date:message-id:subject:from:to:content-type; bh=bO5FHY6P5hCOl2S1A4AMHGIK4ULmqQBzH4UZOBVh+Lk=; b=MnPSWFW2YE3OQ5pakHmQffFLExwoIzCSl4xvXrQGatdtnXXBpiJsa/9TZN1mTd/hJ/ jbET/lxetkfDePYx1kdt0DnbASxTrBOI/JQi2yY+Knqmk0afWuNEPAvf005KOb6LF/YY vlyO5f8NMC04mlQq2om+IbpkBMumRRuPEYQ+4/LffTcBgPU+S/ybBukg4J6opZaQVGWY 4ce3P5/gSdPqVlXfni+Xqs7dKnThffKRDsKa3ltvx+JvpZMAVkm2V4JF03xwDQ3KRA+S B9pTVgziRBcfiwSlnKLPtAddldSHaiAbGAX2Zv9YJvBbRrEU7gMKYEQfShgl7iEPZx7/ lmtQ== MIME-Version: 1.0 X-Received: by 10.112.12.4 with SMTP id u4mr18561547lbb.4.1427476635528; Fri, 27 Mar 2015 10:17:15 -0700 (PDT) Received: by 10.112.167.101 with HTTP; Fri, 27 Mar 2015 10:17:15 -0700 (PDT) Date: Fri, 27 Mar 2015 13:17:15 -0400 Message-ID: From: Kathleen Moriarty To: "saag@ietf.org" , emu@ietf.org Content-Type: multipart/alternative; boundary=001a11c3b394c935820512484d08 Archived-At: Subject: [Emu] Feedback on Salted EAP draft X-BeenThere: emu@ietf.org X-Mailman-Version: 2.1.15 Precedence: list List-Id: "EAP Methods Update \(EMU\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 27 Mar 2015 17:17:24 -0000 --001a11c3b394c935820512484d08 Content-Type: text/plain; charset=UTF-8 Hello, Dan Harkin's asked that I AD sponsor the following draft: https://www.iab.org/activities/workshops/caris/ I'm considering it, reviews and opinions are welcome. Thank you. -- Best regards, Kathleen --001a11c3b394c935820512484d08 Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: quoted-printable
Hello,

Dan Harkin's asked that I AD= sponsor the following draft:


--001a11c3b394c935820512484d08-- From nobody Fri Mar 27 10:25:17 2015 Return-Path: X-Original-To: emu@ietfa.amsl.com Delivered-To: emu@ietfa.amsl.com Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 375831B2A88; Fri, 27 Mar 2015 10:25:15 -0700 (PDT) X-Virus-Scanned: amavisd-new at amsl.com X-Spam-Flag: NO X-Spam-Score: -1.999 X-Spam-Level: X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id w8GaMZjw4azb; Fri, 27 Mar 2015 10:25:13 -0700 (PDT) Received: from mail-la0-x22d.google.com (mail-la0-x22d.google.com [IPv6:2a00:1450:4010:c03::22d]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8A0FC1B2A80; Fri, 27 Mar 2015 10:25:13 -0700 (PDT) Received: by lahp7 with SMTP id p7so56773992lah.2; Fri, 27 Mar 2015 10:25:12 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :content-type; bh=pnXy5VdvPdtrdRrtH5FCznulB9UVRyjnXsk+62rcTZc=; b=uP3W1l++FpmQM4ho3B8YyQE8A/4zr+aoHsrGksvK49Bq/nI4eLg7NAWVqPaKwaLJJA YTYi6fDA/sQ1CejH19gQMUeNw7O+nTEHJkKH523MWKgoznSFdIrC5qvP5F57alLrYbOp DB+G4y2mWZJb586C/dKyYgRO1zb86V0NjJJCEcyhKSTUOfY5wxME+OaPDNl8S1LEzsTG /7WRy0z4mKzl3Ki0tUBP/6OvLk/ChtNH3gqqj4RmltghlEMJBuSzQDKv9UyLA5yLxFmV RzEYNJNNb8tbcb6qaMAxQFSp0bi/gSi4nKPEO5gBisa1zRSu+B5fhGzBtH4OtBHI+qKf CJxg== MIME-Version: 1.0 X-Received: by 10.112.12.4 with SMTP id u4mr18586355lbb.4.1427477112109; Fri, 27 Mar 2015 10:25:12 -0700 (PDT) Received: by 10.112.167.101 with HTTP; Fri, 27 Mar 2015 10:25:12 -0700 (PDT) In-Reply-To: References: Date: Fri, 27 Mar 2015 13:25:12 -0400 Message-ID: From: Kathleen Moriarty To: "saag@ietf.org" , emu@ietf.org Content-Type: multipart/alternative; boundary=001a11c3b394313ece0512486a06 Archived-At: Subject: Re: [Emu] Feedback on Salted EAP draft X-BeenThere: emu@ietf.org X-Mailman-Version: 2.1.15 Precedence: list List-Id: "EAP Methods Update \(EMU\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 27 Mar 2015 17:25:15 -0000 --001a11c3b394313ece0512486a06 Content-Type: text/plain; charset=UTF-8 I meant to send the link to Dan's draft: https://tools.ietf.org/html/draft-harkins-salted-eap-pwd-01 Long week... On Fri, Mar 27, 2015 at 1:17 PM, Kathleen Moriarty < kathleen.moriarty.ietf@gmail.com> wrote: > Hello, > > Dan Harkin's asked that I AD sponsor the following draft: > https://www.iab.org/activities/workshops/caris/ > > I'm considering it, reviews and opinions are welcome. > > Thank you. > > -- > > Best regards, > Kathleen > -- Best regards, Kathleen --001a11c3b394313ece0512486a06 Content-Type: text/html; charset=UTF-8 Content-Transfer-Encoding: quoted-printable
I meant to send the link to Dan's draft:

Long week...

On Fri, Mar 27, 2015 at 1:17 PM, Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com> wrote:
Hello,

Dan Ha= rkin's asked that I AD sponsor the following draft:

I&= #39;m considering it, reviews and opinions are welcome.

Thank you.

--

Best regards,
Kathleen



--

Best regards,
Kath= leen
--001a11c3b394313ece0512486a06-- From nobody Fri Mar 27 10:34:15 2015 Return-Path: X-Original-To: emu@ietfa.amsl.com Delivered-To: emu@ietfa.amsl.com Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EBCA41A88DA; Fri, 27 Mar 2015 10:34:14 -0700 (PDT) X-Virus-Scanned: amavisd-new at amsl.com X-Spam-Flag: NO X-Spam-Score: -1.235 X-Spam-Level: X-Spam-Status: No, score=-1.235 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_SOFTFAIL=0.665] autolearn=no Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NHnOcAuvr3f1; Fri, 27 Mar 2015 10:34:14 -0700 (PDT) Received: from mail.painless-security.com (mail.painless-security.com [23.30.188.241]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DC5721A88C6; Fri, 27 Mar 2015 10:34:13 -0700 (PDT) Received: from localhost (localhost [127.0.0.1]) by mail.painless-security.com (Postfix) with ESMTP id 9DECB20684; Fri, 27 Mar 2015 13:32:26 -0400 (EDT) Received: from mail.painless-security.com ([127.0.0.1]) by localhost (mail.suchdamage.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id zLup-bTwW398; Fri, 27 Mar 2015 13:32:26 -0400 (EDT) Received: from carter-zimmerman.suchdamage.org (c-50-177-26-195.hsd1.ma.comcast.net [50.177.26.195]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "laptop", Issuer "laptop" (not verified)) by mail.painless-security.com (Postfix) with ESMTPS; Fri, 27 Mar 2015 13:32:26 -0400 (EDT) Received: by carter-zimmerman.suchdamage.org (Postfix, from userid 8042) id 807B788A7D; Fri, 27 Mar 2015 13:34:12 -0400 (EDT) From: Sam Hartman To: Kathleen Moriarty References: Date: Fri, 27 Mar 2015 13:34:12 -0400 In-Reply-To: (Kathleen Moriarty's message of "Fri, 27 Mar 2015 13:25:12 -0400") Message-ID: User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/24.3 (gnu/linux) MIME-Version: 1.0 Content-Type: text/plain Archived-At: Cc: "saag@ietf.org" , emu@ietf.org Subject: Re: [Emu] [saag] Feedback on Salted EAP draft X-BeenThere: emu@ietf.org X-Mailman-Version: 2.1.15 Precedence: list List-Id: "EAP Methods Update \(EMU\)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 27 Mar 2015 17:34:15 -0000 >>>>> "Kathleen" == Kathleen Moriarty writes: Kathleen> I meant to send the link to Dan's draft: Kathleen> https://tools.ietf.org/html/draft-harkins-salted-eap-pwd-01 Kathleen> Long week... I have briefly reviewed the goals behind this proposal and a sketch of the details but have not done a technical review of the proposal. The underlying goal is important and valuable. This issue is the same issue that was behind my response to your AD review of the oauth dynamic registration draft. The more we can do to make it possible to use deployed password databases with more modern security, the more we will be able to employ that modern security. However, take careful note of section 5 of the draft. Assuming that you can get positive technical reviews of the proposal, this draft seems to solve an important problem that would be valuable to solve in the EAP community.