My apologies for the tardiness of these last call comments.

Overall, I think draft-ietf-jose-cfrg-curves-03 needs a little more
editorial work before it is ready to be published.

* It seems odd that RFC7515 and RFC7516 are not referenced at all.
It seems appropriate to at least informatively reference that the
signature portion of this document relates to RFC7515 and the ECDH
portion relate to RFC7516.  However, I think at least RFC7515 needs
to be a normative reference; I don't think someone can implement
the signing/verifying portions of this document without knowing
what "JWS Signing Input" means (see bullet #N).

* It seems odd that RFC7517, RFC7518, and RFC7638 are informative
references rather than normative.  I'm especially not sure one can
implement the ECDH portion of this document without understanding
at least RFC 7518 § 4.6.

* This document is using terms from RFC7515, RFC7517, and RFC7518,
yet this is not mentioned at all.  It seems to me § 1.1 ought to
state this document is using terms from those documents.


--
- m&m

Matt Miller
Cisco Systems, Inc.

> On Jun 10, 2016, at 18:07, Jim Schaad <[email protected]> wrote:
> 
> I have not seen any reviews yet except mine.  Part of the reason why this
> work is being done in the JOSE working group is because we have a better
> understanding of how it should work in JOSE.  If we get to the end of the
> last call and there are not "a sufficient number" reviews, I will talk with
> the AD about bouncing it to the CURDLE working group for completion.
> 
> Jim
> 
> 
>> -----Original Message-----
>> From: jose [mailto:[email protected]] On Behalf Of Jim Schaad
>> Sent: Friday, June 03, 2016 8:06 AM
>> To: [email protected]
>> Subject: [jose] WGLC for draft-ietf-jose-crfg-curves
>> 
>> This starts a (roughly) two-week last call on this document.
>> 
>> Last call will end on 20 June.  Please read the document and give comments
>> even if it is as simple as "I did not see any problems with this draft".
>> 
>> Thanks
>> 
>> Jim
>> 
>> 
>> _______________________________________________
>> jose mailing list
>> [email protected]
>> https://www.ietf.org/mailman/listinfo/jose
> 
> _______________________________________________
> jose mailing list
> [email protected]
> https://www.ietf.org/mailman/listinfo/jose

Attachment: signature.asc
Description: Message signed with OpenPGP using GPGMail

_______________________________________________
jose mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/jose

Reply via email to