Hi all,

We recently published draft-ietf-tls-trust-anchor-ids-00:
URL:
https://www.ietf.org/archive/id/draft-ietf-tls-trust-anchor-ids-00.txt
Status:   https://datatracker.ietf.org/doc/draft-ietf-tls-trust-anchor-ids/
HTML:
https://www.ietf.org/archive/id/draft-ietf-tls-trust-anchor-ids-00.html
HTMLized:
https://datatracker.ietf.org/doc/html/draft-ietf-tls-trust-anchor-ids

Other than the name change, it's the same as
draft-beck-tls-trust-anchor-ids-03, which we discussed recently. The
repository has also moved to https://github.com/tlswg/tls-trust-anchor-ids
with some shuffling[1,2] since it used to be the home of a predecessor
design as well. Hopefully we haven't missed anything[3]!

Bangkok is soon, so we don't have a whole lot for you right now, but we've
been pondering how best to iterate on the starting point here. To that end,
we're thinking:

- Where the document doesn't do a great job of describing the initial
starting design, we'll go ahead and make editorial fixes (e.g.
https://github.com/tlswg/tls-trust-anchor-ids/issues/92) as reviewed PRs
and whatnot.

- Beyond that, we've been collecting points of interest from the various
discussions. Nothing coherent yet (been a busy week), but I've requested
some time at Bangkok to try to present and go over things. In the work
leading up to draft-00, we made a lot of educated guesses on tradeoffs, and
I'm particularly eager to reexamine those guesses with a broader
perspective.

- (Your thoughts here!)

Finally, some of us are looking at some initial prototyping. As the current
design touches several entities in the ecosystem, it seems valuable to get
some experience early, to help guide this work. To that end, we've started
a table of initial trust anchor ID allocations in the repository. (As with
all other work at this stage in this WG, this is all for initial
prototyping, to be replaced with wherever things settle. Perhaps we'll
decide to use a different ID allocation scheme, or something else entirely.
But this seemed a coherent enough place to start gathering experience for
the WG, and I'd rather have information like initial IDs somewhere broadly
accessible.)

David

[1] https://github.com/tlswg/tls-trust-anchor-ids/pull/93
[2] https://github.com/tlswg/tls-trust-anchor-ids/pull/94
[3] I noticed the draft isn't marked as replacing
draft-beck-tls-trust-anchor-ids in the datatracker. I think that's
something only the chairs can fix? Chairs, do you all mind pushing that
button? Thanks!
_______________________________________________
TLS mailing list -- tls@ietf.org
To unsubscribe send an email to tls-le...@ietf.org

Reply via email to