[Uta] London Meeting Notes

2014-03-27 Thread Orit Levin (LCA)
All, The meeting notes have been uploaded at http://www.ietf.org/proceedings/89/minutes/minutes-89-uta . Please, let us know in case of any corrections/additions. Allow for enough time before the proceedings submission corrections cutoff date at UTC 23:59 2014-04-18 (Friday). Thanks, Orit. ___

[Uta] FW: [saag] new terminology ID posted

2014-04-02 Thread Orit Levin (LCA)
FYI for the benefit of those, who hasn't read it on the SAAG list. Please, don't reply to this email. This draft is obviously relevant to UTA's charter. So, please, read the document and provide your feedback on SAAG. It would be really helpful to capture the discussed points and clarifications

[Uta] Getting ready for Last Call

2014-05-22 Thread Orit Levin (LCA)
So far, there has been almost no discussion on the three UTA drafts: draft-ietf-uta-tls-attacks, draft-ietf-uta-tls-bcp, and draft-ietf-uta-xmpp. Based on that, do people think that these drafts are ready for the last call? Reading the notes from London http://www.ietf.org/proceedings/89/min

Re: [Uta] Getting ready for Last Call

2014-05-22 Thread Orit Levin (LCA)
comments/suggestions, especially in case of disagreement. Support or lack of support will be judged by these comments and suggestions. Thanks, Orit. From: Keith Moore Sent: Thursday, May 22, 2014 1:28 PM To: Orit Levin (LCA) Cc: Leif Johansson Subject

[Uta] Call for agenda items for Toronto

2014-06-02 Thread Orit Levin (LCA)
Leif and I are looking into requesting a two hour session (and a big room ☺ ) for Toronto. We ask the authors of the WG IDs (draft-ietf-uta-tls-attacks, draft-ietf-uta-tls-bcp, and draft-ietf-uta-xmpp) and any additional relevant (existing or planned) drafts to send us a short request for a pre

[Uta] Agenda is available

2014-07-14 Thread Orit Levin (LCA)
Please, see the draft of the agenda for Toronto at http://www.ietf.org/proceedings/90/agenda/agenda-90-uta . We will use the f2f meeting to raise and discuss all remaining open issues on the three UTA IDs, so the authors will be able to submit the (slightly) updated versions as needed right aft

Re: [Uta] TLS BCP Review

2014-07-21 Thread Orit Levin (LCA)
would be willing to submit a patch and a related message explaining changes (if need be) to this list. is that acceptable? - absolutely! Orit. From: Aaron Zauner Sent: ‎7/‎21/‎2014 5:54 PM To: uta@ietf.org Subj

Re: [Uta] What are the actual best practices in the TLS BCP

2014-07-21 Thread Orit Levin (LCA)
+1 (as an individual reader). Orit. > > Personally I think it would be confusing in this document to do what you > suggest. In RFC 2083 the rationale text is much longer, whereas here we > have a sentence briefly justifying each recommendation. Moving those > paragraphs to the end would make it h

[Uta] UTA Summary

2014-07-24 Thread Orit Levin (LCA)
UTA WG @IETF 90, Toronto / TUESDAY, July 22, 2014 / 0900-1130 Morning Session I Short summary The three existing UTA drafts have a broad consensus on their technical content. Multiple participants promised to provide thorough editorial review (especially of the BCP draft) in the following tw

Re: [Uta] AD Evaluation of draft-ietf-uta-tls-attacks-03

2014-09-29 Thread Orit Levin (LCA)
Pete, Leif and I talked and we suggest to Last Call it now. Thanks, The chairs. > -Original Message- > From: Uta [mailto:uta-boun...@ietf.org] On Behalf Of Pete Resnick > Sent: Sunday, September 28, 2014 6:29 AM > To: uta@ietf.org > Subject: [Uta] AD Evaluation of draft-ietf-uta-tls-attack

Re: [Uta] Opportunistic TLS and draft-ietf-uta-tls-bcp-04

2014-10-06 Thread Orit Levin (LCA)
> > So we could: > > > > 1. Say explicitly that opportunistic TLS is out of scope. > > 2. Or say explicitly that it is in scope, and with the same requirements as > "regular" TLS. > > 3. Or come up with a different set of requirements for opportunistic TLS. > > > > I tend towards #2, because: > +1.

Re: [Uta] IMAP/TLS BCP...

2014-10-06 Thread Orit Levin (LCA)
Hi Stephen, Thanks for sharing this helpful information with the list! We don't have the IMAP/email BCP yet; we are still working on getting the general BCP out in the following weeks. That being said, we fully expect that the work on the email BCP(s) takes off closer to the Honolulu meeting. UTA

Re: [Uta] Opportunistic TLS and draft-ietf-uta-tls-bcp-04

2014-10-08 Thread Orit Levin (LCA)
> > As a chair: when you mention the "opportunistic encryption/security" > in the document for the first time, please, add the reference to the > relevant draft > https://datatracker.ietf.org/doc/draft-dukhovni-opportunistic-security/. > > Well, no. > > Opportunistic xx got a fair bit of disc

Re: [Uta] Opportunistic TLS and draft-ietf-uta-tls-bcp-04

2014-10-09 Thread Orit Levin (LCA)
> Orit said > "We have the "Opportunistic TLS" topic as one of the UTA potential > deliverables, so we welcome the interested parties to write a separate > draft on the subject . " On Jan 17, the charter was mapped to a list of proposed deliverable. Please, see the WG archive for the correspo

Re: [Uta] Fwd: New Version Notification for draft-ietf-uta-tls-bcp-05.txt

2014-10-14 Thread Orit Levin (LCA)
Guys, These are hardly editorial changes, so we need to resolve them ASAP and have a new version ready. Please, see below, Orit. > > > > I agree we SHOULD tone down a few of the requirements, to make sure we do > > accommodate the opportunistic use case. > It would be unfortunate to simply tone

Re: [Uta] [uta] TLS BCP -05 detailed comments. draft-ietf-uta-tls-bcp-05.txt

2014-10-15 Thread Orit Levin (LCA)
Victor, Thanks for your thorough review and feedback. This has been a fascinating and an educational read for me and has tones of useful information for those who deploy or consider deploying TLS "opportunistically" in its broadest sense. It seems that I have been under the false assumption that

Re: [Uta] reminder: call for agenda items

2014-11-04 Thread Orit Levin (LCA)
We posted the agenda earlier today. This is how it looks: Meeting Agenda UTA WG @IETF 91, Honolulu Tuesday, Nov 11, 2014 0900-1130 Morning Session I, Coral 2 9:00 - 9:20 Note Well and status update by the chairs 9:20 - 10:00 "Deployable Enhanced Email Privacy (DEEP)" Presented

[Uta] Brief summary of the UTA WG meeting @IETF 91, Honolulu

2014-11-11 Thread Orit Levin (LCA)
Brief summary of the UTA WG meeting @IETF 91, Honolulu Tuesday, Nov 11, 2014 https://datatracker.ietf.org/doc/draft-ietf-uta-tls-bcp/ The new version incorporating all comments from the LC is available as -07. Short one week last call starts from today. All are encouraged to double check that th

Re: [Uta] Recommendations for Secure Use of TLS and DTLS

2014-11-15 Thread Orit Levin (LCA)
Hannes, This BCP is not targeted to Web applications alone, rather it is an applications' independent document recommending best existing and future practices for using TLS. Please see the discussion on the UTA's charter and the scope of each deliverable from January 2014 here: http://www.ietf

Re: [Uta] Recommendations for Secure Use of TLS and DTLS

2014-11-16 Thread Orit Levin (LCA)
> Hannes: if you want to carve out IoT from the draft, please do so with > different wording. Instead of making the title and abstract more > cumbersome, maybe just add a paragraph early in the introduction to say > why IoT is special and thus not included in this document. > Hannes, please, targe

[Uta] draft-ietf-uta-tls-bcp-07 WG LC completed

2014-11-22 Thread Orit Levin (LCA)
All, The WG LC on draft-ietf-uta-tls-bcp-07 ended yesterday. We have got a small number of specific suggestions and corrections. The chairs trust the authors to collect and incorporate these into the -08 version of the draft. It will be submitted for the IETF LC as soon as it is available. Tha

Re: [Uta] Recommendations for Secure Use of TLS and DTLS

2014-12-09 Thread Orit Levin (LCA)
Sent: Tuesday, December 09, 2014 2:37 AM > To: Orit Levin (LCA); Leif Johansson; uta@ietf.org > Subject: Re: [Uta] Recommendations for Secure Use of TLS and DTLS > > Hi Orit, > > On 11/16/2014 05:44 AM, Orit Levin (LCA) wrote: > > In addition, Section 5 contains the detailed discu

Re: [Uta] Recommendations for Secure Use of TLS and DTLS

2015-01-09 Thread Orit Levin (LCA)
Aaron, You are absolutely correct. Nothing hinders its submission (apart from a season flue). The draft (with its write up) will be submitted to IESG on Monday. Cheers, Orit. > -Original Message- > From: Uta [mailto:uta-boun...@ietf.org] On Behalf Of Aaron Zauner > Sent: Friday, January 0

Re: [Uta] AD Evaluation of draft-ietf-uta-tls-bcp-08

2015-01-25 Thread Orit Levin (LCA)
Pete, Leif, +1. These are editorial improvements and we are ready to move to the next stage. Thanks a lot to everyone! Orit. > -Original Message- > From: Uta [mailto:uta-boun...@ietf.org] On Behalf Of Leif Johansson > Sent: Sunday, January 25, 2015 7:24 AM > To: uta@ietf.org > Subject: Re:

[Uta] Agenda Items for Dallas

2015-01-26 Thread Orit Levin (LCA)
>Please send your agenda requests for Dallas to the list as soon as possible! > > Cheers Leif To help the ball rolling, here is the conclusion from Honolulu: Brief summary of the UTA WG meeting @IETF 91, Honolulu Tuesday, Nov 11, 2014 https://datatracker.ietf.org/doc/draft-ietf-uta-tls-bcp

[Uta] Agenda Items for Dallas and draft-newman-email-deep

2015-02-02 Thread Orit Levin (LCA)
incorporate comments and resubmit the revised document as a new UTA ID. For more initiatives discussed at the last meeting, please, see this thread below. Thanks, The chairs. > -Original Message- > From: Orit Levin (LCA) > Sent: Monday, January 26, 2015 12:53 PM > To: &

Re: [Uta] Alissa Cooper's Discuss on draft-ietf-uta-tls-bcp-09: (with DISCUSS and COMMENT)

2015-02-18 Thread Orit Levin (LCA)
y possible confusion and prevent segregation of the Internet community." Orit. From: Ralph Holz [mailto:ralph.i...@gmail.com] Sent: Wednesday, February 18, 2015 4:18 AM To: Leif Johansson Cc: Peter Saint-Andre - &yet; Alissa Cooper; uta-cha...@ietf.org; uta@ietf.org; Orit Levin (LCA); Y

Re: [Uta] Alissa Cooper's Discuss on draft-ietf-uta-tls-bcp-09: (with DISCUSS and COMMENT)

2015-02-19 Thread Orit Levin (LCA)
ha...@ietf.org; uta@ietf.org; Alissa > Cooper; > Orit Levin (LCA); Yaron Sheffer; draft-ietf-uta-tls-bcp@ietf.org; IESG > Subject: Re: [Uta] Alissa Cooper's Discuss on draft-ietf-uta-tls-bcp-09: (with > DISCUSS and COMMENT) > > > > > > > 18 feb 2015 kl. 20:1

Re: [Uta] ID Tracker State Update Notice:

2015-02-19 Thread Orit Levin (LCA)
+1 ! > -Original Message- > From: Uta [mailto:uta-boun...@ietf.org] On Behalf Of Leif Johansson > Sent: Thursday, February 19, 2015 12:11 PM > To: uta@ietf.org > Subject: Re: [Uta] ID Tracker State Update Notice: 09.txt> > > On 02/19/2015 08:37 PM, Pete Resnick wrote: > > On 2/19/15 1:30

Re: [Uta] New Version Notification - draft-ietf-uta-tls-bcp-11.txt

2015-02-20 Thread Orit Levin (LCA)
et-dra...@ietf.org [mailto:internet-dra...@ietf.org] > Sent: Friday, February 20, 2015 1:26 PM > To: uta@ietf.org; uta-cha...@ietf.org; Orit Levin (LCA); draft-ietf-uta-tls- > bcp@ietf.org; presn...@qti.qualcomm.com; r...@ipv.sx > Subject: New Version Notification - draft-ietf-uta-tls-bcp-11

[Uta] Splitting the draft? [was RE: draft-ietf-uta-email-deep-00 comments]

2015-03-02 Thread Orit Levin (LCA)
During the last meeting, I expressed my opinion (as an individual, not as a chair) that it would be reasonable to split the draft into two: 1. A "best current practices for e-mail" document expanding the tls-bcp document and based on existing protocols and mechanisms. 2. A separate "pro

Re: [Uta] Review of security latches mechanism in draft-ietf-uta-email-deep

2015-03-05 Thread Orit Levin (LCA)
Thanks, Russ! Forwarding to the list for visibility and discussion. Orit. > -Original Message- > From: Russ Housley [mailto:hous...@vigilsec.com] > Sent: Thursday, March 05, 2015 12:30 PM > To: Orit Levin (LCA) > Cc: Sean Turner; Leif Johansson; Chris Newman; Keith Moor

Re: [Uta] Splitting the draft? [was RE: comments]

2015-03-16 Thread Orit Levin (LCA)
. Cheers, Orit. > -Original Message- > From: Alexey Melnikov [mailto:alexey.melni...@isode.com] > Sent: Thursday, March 05, 2015 3:13 AM > To: Orit Levin (LCA); uta@ietf.org > Subject: Re: [Uta] Splitting the draft? [was RE: draft-ietf-uta-email-deep-00 > comments] >

[Uta] Comments [was: RE: Splitting the draft? [was RE: draft-ietf-uta-email-deep-00 comments]]

2015-03-16 Thread Orit Levin (LCA)
mail security; using DANE for MUAs would be an orthogonal approach to include and potentially explore. Hope this makes sense, Orit. From: Ralph Holz [mailto:ralph.i...@gmail.com] Sent: Monday, March 02, 2015 4:36 PM To: Orit Levin (LCA) Cc: uta@ietf.org Subject: Re: [Uta] Splitting the draft? [wa

Re: [Uta] Comments [was: RE: Splitting the draft? [was RE: draft-ietf-uta-email-deep-00 comments]]

2015-03-23 Thread Orit Levin (LCA)
is.new...@oracle.com] > Sent: Sunday, March 22, 2015 10:31 PM > To: Orit Levin (LCA); Ralph Holz > Cc: uta@ietf.org > Subject: Re: [Uta] Comments [was: RE: Splitting the draft? [was RE: > draft-ietf- > uta-email-deep-00 comments]] > > I'm not clear on what is &qu

Re: [Uta] draft-ietf-uta-email-deep-01 is ready for WGLC

2015-11-03 Thread Orit Levin (LCA)
Thanks, Aaron. Actually, I am not sure that we are looking at the right document yet. draft-ietf-uta-email-deep-01 was posted just before the last IETF. We have been waiting for the authors to post an updated version incorporating the feedback from that session and then call for the review. Chri

Re: [Uta] draft-ietf-uta-email-deep-01 is ready for WGLC

2015-11-04 Thread Orit Levin (LCA)
is encouraged to (re)read the current -01 version and send any feedback that they may have to the list/editors as well. Orit. From: Chris Newman [mailto:chris.new...@oracle.com] Sent: Wednesday, November 04, 2015 11:10 AM To: Orit Levin (LCA) ; Leif Johansson ; Aaron Zauner Cc: uta@ietf.org