XMPP Council - 2020-06-24


  1. bear has left
  2. stpeter has left
  3. debacle has left
  4. Wojtek has left
  5. stpeter has joined
  6. bear has joined
  7. stpeter has left
  8. bear has left
  9. stpeter has joined
  10. bear has joined
  11. Zash has left
  12. stpeter has left
  13. Tobias has joined
  14. stpeter has joined
  15. stpeter has left
  16. adiaholic_ has left
  17. stpeter has joined
  18. stpeter has left
  19. neox has joined
  20. neox has left
  21. sonny has left
  22. sonny has joined
  23. adiaholic_ has joined
  24. sonny has left
  25. sonny has joined
  26. neox has joined
  27. neox has left
  28. neox has joined
  29. sonny has left
  30. sonny has joined
  31. stpeter has joined
  32. sonny has left
  33. sonny has joined
  34. sonny has left
  35. sonny has joined
  36. debacle has joined
  37. debacle has left
  38. debacle has joined
  39. stpeter has left
  40. adiaholic_ has left
  41. adiaholic_ has joined
  42. neox has left
  43. neox has joined
  44. sonny has left
  45. sonny has joined
  46. daniel has left
  47. daniel has joined
  48. sonny has left
  49. sonny has joined
  50. sonny has left
  51. sonny has joined
  52. sonny has left
  53. sonny has joined
  54. neox has left
  55. neox has joined
  56. neox has left
  57. neox has joined
  58. susmit88 has joined
  59. sonny has left
  60. sonny has joined
  61. sonny has left
  62. sonny has joined
  63. susmit88 has left
  64. susmit88 has joined
  65. sonny has left
  66. sonny has joined
  67. sonny has left
  68. sonny has joined
  69. sonny has left
  70. sonny has joined
  71. sonny has left
  72. susmit88 has left
  73. sonny has joined
  74. susmit88 has joined
  75. susmit88 has left
  76. susmit88 has joined
  77. susmit88 has left
  78. susmit88 has joined
  79. stpeter has joined
  80. sonny has left
  81. sonny has joined
  82. susmit88 has left
  83. susmit88 has joined
  84. stpeter has left
  85. sonny has left
  86. sonny has joined
  87. debacle has left
  88. susmit88 has left
  89. susmit88 has joined
  90. Zash has joined
  91. susmit88 has left
  92. susmit88 has joined
  93. sonny has left
  94. sonny has joined
  95. sonny has left
  96. sonny has joined
  97. debacle has joined
  98. sonny has left
  99. sonny has joined
  100. sonny has left
  101. stpeter has joined
  102. daniel has left
  103. daniel has joined
  104. stpeter has left
  105. sonny has joined
  106. Holger has left
  107. susmit88 has left
  108. susmit88 has joined
  109. Holger has joined
  110. sonny has left
  111. sonny has joined
  112. stpeter has joined
  113. susmit88 has left
  114. susmit88 has joined
  115. stpeter has left
  116. susmit88 has left
  117. susmit88 has joined
  118. sonny has left
  119. sonny has joined
  120. sonny has left
  121. sonny has joined
  122. sonny has left
  123. sonny has joined
  124. sonny has left
  125. sonny has joined
  126. susmit88 has left
  127. susmit88 has joined
  128. stpeter has joined
  129. susmit88 has left
  130. susmit88 has joined
  131. jonas’ 1) Roll Call
  132. Zash EHLO
  133. Ge0rG 302 Moved
  134. daniel Hi
  135. jonas’ no dwd?
  136. jonas’ fun, good thing I can chair
  137. jonas’ 2) Agenda Bashing
  138. jonas’ nothing? perfect
  139. jonas’ I’ll still give you a moment, because my MUA is acting up a lot
  140. jonas’ and I’m trying to open the agenda I sent :)
  141. Wojtek has joined
  142. jonas’ ok, the MUA does not seem to want to fix itself, so let’s try without
  143. jonas’ 3) Editor’s Update - Calls in progress - LC for XEP-0338 (ends on 2020-06-30)
  144. jonas’ (where "without" means I’ll be copy-typing from my phone)
  145. jonas’ 4) Items for voting
  146. jonas’ 4a) PR#963: XEP-0178: Clarify SASL-EXTERNAL specification when s2s auth fails URL: https://github.com/xsf/xeps/pull/963
  147. jonas’ Concerns were raised to the Mailing list about this opening up a downgrade attack vector, which I didn’t have time to look into yet, so on-list
  148. jonas’ is anyone still here?
  149. Zash Yeeeees
  150. jonas’ or did muc.xmpp.org fail for everyone except me?
  151. Zash I guess that reflects reality, but on-list.
  152. Guus You're live.
  153. Ge0rG MUC reflection is a thing, isn't it?
  154. jonas’ Ge0rG, doesn’t help if there’s a very non-equally-distributed s2s failure :)
  155. Ge0rG I'm on-list as well, but I'd appreciate input from people who are into server development and into SASL and dialback things.
  156. Kev has left
  157. jonas’ I expect Zash to cover all that, except maybe being "into" dialback things.
  158. Zash > I guess that reflects reality
  159. Zash Except Dialback is very rare these days given the success of Let's Encrypt
  160. pep. LE doing dialback for us :-°
  161. jonas’ no comment from daniel?
  162. Zash Yeah, Dialback is equivalent ish to the verification LE does, so I don't think it's a downgrade attack
  163. daniel Sorry changing trains just no. Will read backlog in a second
  164. jonas’ if we assume that LE is being used
  165. Ge0rG both fail under the assumption that the attacker is on the network path between you and the other party, right?
  166. jonas’ so this certainly looks odd, because it mandates dialback if and only if the hostname did not match
  167. jonas’ Ge0rG, though LE uses multiple vantage points to make that harder
  168. daniel Or at least they will be?
  169. jonas’ maybe
  170. daniel I'm not sure it has been deployed yet
  171. jonas’ implementations details of LE are not of concern for the spec anyways
  172. dwd has joined
  173. Ge0rG We got a dwd
  174. dwd Hello, sorry I'm late, got pulled into something last minute.
  175. dwd Are we still on 4a)?
  176. Ge0rG dwd: yes
  177. dwd OK, good.
  178. Ge0rG jonas’: I think we need to move that to the list
  179. jonas’ dwd, no worries
  180. jonas’ Ge0rG, I tend to agree
  181. Ge0rG maybe explicitly ask for input from server developers.
  182. jonas’ it would be nice if someone else could start a thread right away, because (a) my MUA is a mess right now and (b) I’ll be heading out right after this meeting
  183. Zash Wasn't there a thread already?
  184. Zash Can continue there
  185. dwd So I'm comfortably +1 on this, but really because whether an initiator decides to move onto Dialback (and whether a Receiver accepts it) isn't predicated on whether SASL EXTERNAL failed or not.
  186. dwd Also i looked for a thread on this earlier and couldn't spot one - what's the subject line?
  187. jonas’ I wasn’ta ware of a thread either
  188. Zash Subject: Re: [Standards] XMPP Council Agenda 2020-06-24
  189. jonas’ ah.
  190. jonas’ well
  191. Zash Well. Not a separate thread.
  192. dwd Ah-ha.
  193. Ge0rG it was just a single mail asking whether that's a downgrade attack
  194. jonas’ I suppose a separate thread would be more discoverable.
  195. dwd It's not a downgrade attack, but I'll explain there in more detail.
  196. jonas’ do we have a volunteer to start the thread or shall we delegate that to the editors?
  197. Ge0rG it would be great if somebody who's both a server developer and in Council could do that.
  198. dwd I'll start a thread.
  199. Zash dwd: But is it best practice?
  200. jonas’ dwd, thank you :)
  201. Ge0rG dwd: +1
  202. dwd Zash, I think whether it's "best" is largely irrelevant.
  203. jonas’ can we move on?
  204. Zash sure
  205. jonas’ or do you think there’s need to discuss this here?
  206. jonas’ taking that as a no
  207. dwd Let's move on.
  208. jonas’ 5) Outstanding Votes
  209. jonas’ I incorrectly accused dwd for having one
  210. jonas’ which I take the full blame for, I misread the doomsheet
  211. Ge0rG I've sent a -1 for PR #961
  212. jonas’ thanks
  213. jonas’ so we’re clear
  214. jonas’ 6) Date of Next
  215. Ge0rG I hope I'm out of old debt now, any only owe a vote for today's 4a
  216. jonas’ Ge0rG, you are
  217. Ge0rG +1W WFM
  218. Kev has joined
  219. daniel +1w wfm
  220. jonas’ +1w most-likely wfm, #thankscorona
  221. Zash +1
  222. dwd +1WFM.
  223. jonas’ excellent
  224. jonas’ 7) AOB
  225. jonas’ dwd, any news on the video call? :)
  226. dwd Ah, yes. I remember that now.
  227. jonas’ I’ll take that as a "no" :)
  228. dwd I have scribbled.
  229. jonas’ I can’t properly interpret that verb
  230. dwd I have written something down to remind myself I need to arrange a time, URL, etc for a Council video chat.
  231. jonas’ ah, right
  232. jonas’ any other AOB?
  233. Zash None here.
  234. daniel No
  235. Ge0rG nope
  236. jonas’ thanks
  237. jonas’ 8) Ite Meeting Est
  238. jonas’ thank you everyone
  239. Ge0rG thank you jonas’
  240. Ge0rG thank you Tedd
  241. Ge0rG thank you everyone
  242. Zash Thanks all
  243. dwd Thanks jonas’ and Tedd.
  244. sonny has left
  245. sonny has joined
  246. sonny has left
  247. sonny has joined
  248. sonny has left
  249. sonny has joined
  250. sonny has left
  251. sonny has joined
  252. sonny has left
  253. sonny has joined
  254. sonny has left
  255. sonny has joined
  256. sonny has left
  257. sonny has joined
  258. debacle has left
  259. kusoneko has left
  260. kusoneko has joined
  261. kusoneko has left
  262. kusoneko has joined
  263. susmit88 has left
  264. susmit88 has joined
  265. sonny has left
  266. sonny has joined
  267. hotspud has left
  268. hotspud has joined
  269. sonny has left
  270. sonny has joined
  271. susmit88 has left
  272. susmit88 has joined
  273. hotspud has left
  274. hotspud has joined
  275. susmit88 has left
  276. susmit88 has joined
  277. susmit88 has left
  278. susmit88 has joined
  279. debacle has joined
  280. debacle has left
  281. debacle has joined
  282. susmit88 has left
  283. susmit88 has joined
  284. sonny has left
  285. sonny has joined
  286. susmit88 has left
  287. susmit88 has joined
  288. susmit88 has left
  289. susmit88 has joined
  290. neox has left
  291. neox has joined
  292. susmit88 has left
  293. susmit88 has joined
  294. stpeter has left
  295. stpeter has joined
  296. susmit88 has left
  297. susmit88 has joined
  298. susmit88 has left
  299. susmit88 has joined
  300. susmit88 has left
  301. susmit88 has joined
  302. sonny has left
  303. Tobias has left
  304. eta has left
  305. eta has joined
  306. robertooo has left
  307. robertooo has joined
  308. sonny has joined
  309. neox has left
  310. debacle has left