
From nobody Thu Aug  6 06:58:00 2020
Return-Path: <dkg@fifthhorseman.net>
X-Original-To: openpgp@ietfa.amsl.com
Delivered-To: openpgp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7F44C3A05A7; Thu,  6 Aug 2020 06:57:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level: 
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=neutral reason="invalid (unsupported algorithm ed25519-sha256)" header.d=fifthhorseman.net header.b=VYksh6PI; dkim=pass (2048-bit key) header.d=fifthhorseman.net header.b=Ep2rNfmD
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id h5b8tzM5DMiQ; Thu,  6 Aug 2020 06:57:55 -0700 (PDT)
Received: from che.mayfirst.org (che.mayfirst.org [IPv6:2001:470:1:116::7]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C70103A0598; Thu,  6 Aug 2020 06:57:54 -0700 (PDT)
DKIM-Signature: v=1; a=ed25519-sha256; c=relaxed/simple; d=fifthhorseman.net; i=@fifthhorseman.net; q=dns/txt; s=2019; t=1596722273; h=from : to : cc : subject : in-reply-to : references : date : message-id : mime-version : content-type : from; bh=QE6nw9ETbU9aVyiPji4ShkVRx9Z5T8n+wWA64so7VDs=; b=VYksh6PItIMoZm6RrFayk+FPu2gTqsMuAnCOLw/+XXRp0HCdW7JTqXywpJ8hpM6hHGasT 3PBWj3GgF3RV9LpDA==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=fifthhorseman.net; i=@fifthhorseman.net; q=dns/txt; s=2019rsa; t=1596722273; h=from : to : cc : subject : in-reply-to : references : date : message-id : mime-version : content-type : from; bh=QE6nw9ETbU9aVyiPji4ShkVRx9Z5T8n+wWA64so7VDs=; b=Ep2rNfmDK3XZzjkMjgP+GAkwM+iNjGHtCaGZrjdxdwUyAPYCw1E79iCGKO00HDbNl3VS3 Av5PgMZtvcuD1xhKosA/R3oW8n1BKiTR6wa07dyGvI5UF2gIZi3ShGOKJzUX5b8WXdUJQLF 4C+LR2+4mzXBWyfbpS7mFoY0OACLpjI6KR6nUdlX/UzIQCi9TbS7T00NkOEGJHLF8+clzi7 VtVi/bbONbF0jsrRAr4fSd1UbPRCgYn5BiFTPRQDx6Zgj6DnHT0mLf5RgTWNDAtOAugK+e4 Q5xOAlQ35dbR6iDOtVRL6V4XAXRoMd74JcaH7EADeLl2M6w5HyNfuoh+UrpA==
Received: from fifthhorseman.net (unknown [IPv6:2001:470:1f07:60d:f2de:f1ff:fec3:d109]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (No client certificate requested) by che.mayfirst.org (Postfix) with ESMTPSA id 56BBDF9A7; Thu,  6 Aug 2020 09:57:53 -0400 (EDT)
Received: by fifthhorseman.net (Postfix, from userid 1000) id D95D220825; Thu,  6 Aug 2020 09:50:33 -0400 (EDT)
From: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
To: Michael Richardson <mcr+ietf@sandelman.ca>, openpgp@ietf.org
Cc: draft-ietf-sacm-coswid@ietf.org
In-Reply-To: <29058.1596135123@localhost>
References: <29058.1596135123@localhost>
Autocrypt: addr=dkg@fifthhorseman.net; prefer-encrypt=mutual; keydata= mDMEXEK/AhYJKwYBBAHaRw8BAQdAr/gSROcn+6m8ijTN0DV9AahoHGafy52RRkhCZVwxhEe0K0Rh bmllbCBLYWhuIEdpbGxtb3IgPGRrZ0BmaWZ0aGhvcnNlbWFuLm5ldD6ImQQTFggAQQIbAQULCQgH AgYVCgkICwIEFgIDAQIeAQIXgAIZARYhBMS8Lds4zOlkhevpwvIGkReQOOXGBQJd5Hw3BQkFpJWB AAoJEPIGkReQOOXGDYEA/j0ERjPxDleKMZ2LDcWc/3o5cLFwAVzBKQHppu0Be5IWAP0aeTnyEqlp RTE7M8zugwkhYeUYfYu0BjecDUMnYz6iDLgzBF3kewUWCSsGAQQB2kcPAQEHQK1IuW0GZmcrs2mx CYMl8IHse0tMF8cP7eBNXevrlx2ZiPUEGBYIACYCGwIWIQTEvC3bOMzpZIXr6cLyBpEXkDjlxgUC XeR7TwUJAiGl/gCBdiAEGRYIAB0WIQQsv6x2UaqQJzY+dXHEDyVUMvKBDwUCXeR7BQAKCRDEDyVU MvKBD7KmAQCHs+7588C4jto6fMje0Nu97zzoppjJM7lrGF2rVnbHvwD+MgmGUbHzPSUrTWnZBQDi /QM595bxNrBA4N1CiXhs2AMJEPIGkReQOOXGpp0BAM7YeBnt/UNvxJAGm4DidSfHU7RDMWe6Tgux HrH21cDkAQC9leNFXJsQ7F2ZniRPHa8CkictcQEKPL8VCWpfe8LbArg4BF3ke5wSCisGAQQBl1UB BQEBB0Cf+EiAXtntQMf51xpqb6uZ5O0eCLAZtkg0SXHjA1JlEwMBCAeIfgQYFggAJhYhBMS8Lds4 zOlkhevpwvIGkReQOOXGBQJd5HucAhsMBQkCIaVkAAoJEPIGkReQOOXGdYcBANYnW7VyL2CncKH1 iO4Zr0IwfdIv6rai1PUHL98pVi3cAP9tMh85CKGDa0Xi/fptQH41meollLW5tLb/bEWMuUNuBQ==
Date: Thu, 06 Aug 2020 09:50:33 -0400
Message-ID: <87364z7uja.fsf@fifthhorseman.net>
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=-=-="; micalg=pgp-sha256; protocol="application/pgp-signature"
Archived-At: <https://mailarchive.ietf.org/arch/msg/openpgp/Ir1fY8SHP2J_5bK4jE2OB8CLWVg>
Subject: Re: [openpgp] signing COSE (RFC8152) artifacts with openpgp keys
X-BeenThere: openpgp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/openpgp>, <mailto:openpgp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/openpgp/>
List-Post: <mailto:openpgp@ietf.org>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/openpgp>, <mailto:openpgp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 06 Aug 2020 13:58:00 -0000

--=-=-=
Content-Type: text/plain

On Thu 2020-07-30 14:52:03 -0400, Michael Richardson wrote:
> Do you think it's appropriate to use the primary key?
> Would you consider that a specific purpose subkey would be better?

I tend to think that a specific purpose subkey would be better for novel
uses, though i agree with Santiago that i'd probably expect any
signing-capable key to work -- that could be either a dedicated
signing-capable subkey, or a primary key that is marked as
signing-capable.

        --dkg

--=-=-=
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----

iHUEARYIAB0WIQQsv6x2UaqQJzY+dXHEDyVUMvKBDwUCXywKqQAKCRDEDyVUMvKB
DwvkAQCA+4hp1HSS2WTDpT9as719ujMgxuSMOVGbtsaHlUCJkAEAhwhntc/IjRu9
Yf846TaZtV5s2ZhV0BgPdF1XB4kf3Q4=
=ZOge
-----END PGP SIGNATURE-----
--=-=-=--


From nobody Mon Aug 31 07:35:15 2020
Return-Path: <wk@gnupg.org>
X-Original-To: openpgp@ietfa.amsl.com
Delivered-To: openpgp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2ABC83A1400 for <openpgp@ietfa.amsl.com>; Mon, 31 Aug 2020 07:35:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level: 
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=gnupg.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Q-DD0YA4nbk9 for <openpgp@ietfa.amsl.com>; Mon, 31 Aug 2020 07:35:11 -0700 (PDT)
Received: from kerckhoffs.g10code.com (kerckhoffs.g10code.com [IPv6:2001:aa8:fff1:100::22]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 442FA3A13E1 for <openpgp@ietf.org>; Mon, 31 Aug 2020 07:35:11 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=gnupg.org;  s=20181017; h=Content-Type:MIME-Version:Message-ID:Date:Subject:To:From: Sender:Reply-To:Cc:Content-Transfer-Encoding:Content-ID:Content-Description: Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID: In-Reply-To:References:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=XFRRwL0ERxtB/E3SzA3WHAeXe5VR3z+aIE7srZOhFNs=; b=lel1U7R8dhnc9gzSzRF2dQ6LHe 06D8KE3vsTXbCklO5/GDE+YvtwZ8MQkg0QvW//B0HoP0n/yMrbLESOJnd0iT9PIDua0LO/G+DIdFZ JIHvknd79RBqV8bNqiRrBnETzUqddrq+YajiDq1JPU8QFjkpeHVLXpRO2HqpyzzGbFK8=;
Received: from uucp by kerckhoffs.g10code.com with local-rmail (Exim 4.89 #1 (Debian)) id 1kCktp-0007P7-FD for <openpgp@ietf.org>; Mon, 31 Aug 2020 16:35:09 +0200
Received: from wk by wheatstone.g10code.de with local (Exim 4.92 #5 (Debian)) id 1kCksz-0006Fm-Nu for <openpgp@ietf.org>; Mon, 31 Aug 2020 16:34:17 +0200
From: Werner Koch <wk@gnupg.org>
To: openpgp@ietf.org
Organisation: GnuPG e.V.
X-message-flag: Mails containing HTML will not be read! Please send only plain text.
Mail-Followup-To: openpgp@ietf.org
Date: Mon, 31 Aug 2020 16:34:17 +0200
Message-ID: <87pn763mvq.fsf@wheatstone.g10code.de>
User-Agent: Gnus/5.13 (Gnus v5.13)
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=doctrine_AUTODIN_squib_Gazprom_Archives_Aldergrove_ASPIC_SASP_SUSLO="; micalg=pgp-sha256; protocol="application/pgp-signature"
Archived-At: <https://mailarchive.ietf.org/arch/msg/openpgp/LcsG6VA6WW0XDR1gvpO-KUXgCG8>
Subject: [openpgp] [internet-drafts@ietf.org] New Version Notification for draft-ietf-openpgp-rfc4880bis-10.txt
X-BeenThere: openpgp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/openpgp>, <mailto:openpgp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/openpgp/>
List-Post: <mailto:openpgp@ietf.org>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/openpgp>, <mailto:openpgp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 31 Aug 2020 14:35:13 -0000

--=doctrine_AUTODIN_squib_Gazprom_Archives_Aldergrove_ASPIC_SASP_SUSLO=
Content-Type: multipart/mixed; boundary="=STEP_Reynosa_Cohiba_Planet-1_DNDO_Echelon_eavesdropping_MSEE=Suspici"

--=STEP_Reynosa_Cohiba_Planet-1_DNDO_Echelon_eavesdropping_MSEE=Suspici
Content-Type: text/plain

Hi!

expiration date was close so I uploded a new revision.  Collected
changes from the repo since -09 are:

b5c48cf Clarify the use of the 2 hash octets in Signature Packets.
750b19f Fix signature packet description for EdDSA
6c0bd58 Add existing value to list of User Attribute Types.
76177bb Use consistent capitalization for User ID and User Attribute.
722ed9e Typo fix
30d8397 Introduce the Key Block subpacket to align OpenPGP with CMS.
669f73f Typo fix
6fd718d Revert to the RFC4880 requirement of having a User ID.



Shalom-Salam,

   Werner




--=STEP_Reynosa_Cohiba_Planet-1_DNDO_Echelon_eavesdropping_MSEE=Suspici
Content-Type: message/rfc822
Content-Disposition: inline

Return-path: <uucp@wheatstone.g10code.de>
Envelope-to: wk@wheatstone.g10code.de
Delivery-date: Mon, 31 Aug 2020 16:20:08 +0200
Received: from uucp by wheatstone.g10code.de with local-rmail (Exim 4.92 #5 (Debian))
	id 1kCkfI-00065H-75
	for <wk@wheatstone.g10code.de>; Mon, 31 Aug 2020 16:20:08 +0200
Received: from mail.ietf.org ([4.31.198.44])
	by kerckhoffs.g10code.com with esmtps (Exim 4.89 #1 (Debian))
	id 1kCkeV-0007HI-7j
	for <wk@gnupg.org>; Mon, 31 Aug 2020 16:19:19 +0200
Received: from ietfa.amsl.com (localhost [IPv6:::1])
	by ietfa.amsl.com (Postfix) with ESMTP id 578D93A135C;
	Mon, 31 Aug 2020 06:00:23 -0700 (PDT)
From: internet-drafts@ietf.org
To: "brian m. carlson" <sandals@crustytoothpaste.net>,
 "Derek Atkins" <derek@ihtfp.com>, "Ronald Henry Tse" <ronald.tse@ribose.com>,
 "Ronald Tse" <ronald.tse@ribose.com>,
 "Daniel Gillmor" <dkg@fifthhorseman.net>,
 "Daniel Kahn Gillmor" <dkg@fifthhorseman.net>, "Werner Koch" <wk@gnupg.org>,
 "brian carlson" <sandals@crustytoothpaste.net>
Subject: New Version Notification for draft-ietf-openpgp-rfc4880bis-10.txt
X-Test-IDTracker: no
X-IETF-IDTracker: 7.15.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <159887882334.9000.17864290863553937702@ietfa.amsl.com>
Date: Mon, 31 Aug 2020 06:00:23 -0700
X-Sender-Host: mail.ietf.org
MIME-Version: 1.0
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable


A new version of I-D, draft-ietf-openpgp-rfc4880bis-10.txt
has been successfully submitted by Werner Koch and posted to the
IETF repository.

Name:		draft-ietf-openpgp-rfc4880bis
Revision:	10
Title:		OpenPGP Message Format
Document date:	2020-08-31
Group:		Individual Submission
Pages:		111
URL:            https://www.ietf.org/internet-drafts/draft-ietf-openpgp-rfc=
4880bis-10.txt
Status:         https://datatracker.ietf.org/doc/draft-ietf-openpgp-rfc4880=
bis/
Htmlized:       https://tools.ietf.org/html/draft-ietf-openpgp-rfc4880bis-10
Htmlized:       https://datatracker.ietf.org/doc/html/draft-ietf-openpgp-rf=
c4880bis
Diff:           https://www.ietf.org/rfcdiff?url2=3Ddraft-ietf-openpgp-rfc4=
880bis-10

Abstract:
   { Work in progress to update the OpenPGP specification from RFC4880 }

   This document specifies the message formats used in OpenPGP.  OpenPGP
   provides encryption with public-key or symmetric cryptographic
   algorithms, digital signatures, compression and key management.

   This document is maintained in order to publish all necessary
   information needed to develop interoperable applications based on the
   OpenPGP format.  It is not a step-by-step cookbook for writing an
   application.  It describes only the format and methods needed to
   read, check, generate, and write conforming packets crossing any
   network.  It does not deal with storage and implementation questions.
   It does, however, discuss implementation issues necessary to avoid
   security flaws.

=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=
=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=
=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=20=
=20=20=20=20=20=20=20


Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org.

The IETF Secretariat




--=STEP_Reynosa_Cohiba_Planet-1_DNDO_Echelon_eavesdropping_MSEE=Suspici
Content-Type: text/plain
Content-Transfer-Encoding: quoted-printable



=2D-=20
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.

--=STEP_Reynosa_Cohiba_Planet-1_DNDO_Echelon_eavesdropping_MSEE=Suspici--

--=doctrine_AUTODIN_squib_Gazprom_Archives_Aldergrove_ASPIC_SASP_SUSLO=
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----

iHUEARYIAB0WIQSHd0YfKgdOvEgNNZQZzByeCFsQegUCX00KaQAKCRAZzByeCFsQ
ek8SAQDCyRu0SDadhrtfSivRc5Gotoi2iadrB3V0pajNRgUY+QEAj/0loBVvvXoI
vgXCtChqhBloiMpRssNxYtvLXH+E1w4=
=+KPT
-----END PGP SIGNATURE-----
--=doctrine_AUTODIN_squib_Gazprom_Archives_Aldergrove_ASPIC_SASP_SUSLO=--

