XMPP Council - 2020-06-24


  1. bear has left

  2. stpeter has left

  3. debacle has left

  4. Wojtek has left

  5. stpeter has joined

  6. bear has joined

  7. stpeter has left

  8. bear has left

  9. stpeter has joined

  10. bear has joined

  11. Zash has left

  12. stpeter has left

  13. Tobias has joined

  14. stpeter has joined

  15. stpeter has left

  16. adiaholic_ has left

  17. stpeter has joined

  18. stpeter has left

  19. neox has joined

  20. neox has left

  21. sonny has left

  22. sonny has joined

  23. adiaholic_ has joined

  24. sonny has left

  25. sonny has joined

  26. neox has joined

  27. neox has left

  28. neox has joined

  29. sonny has left

  30. sonny has joined

  31. stpeter has joined

  32. sonny has left

  33. sonny has joined

  34. sonny has left

  35. sonny has joined

  36. debacle has joined

  37. debacle has left

  38. debacle has joined

  39. stpeter has left

  40. adiaholic_ has left

  41. adiaholic_ has joined

  42. neox has left

  43. neox has joined

  44. sonny has left

  45. sonny has joined

  46. daniel has left

  47. daniel has joined

  48. sonny has left

  49. sonny has joined

  50. sonny has left

  51. sonny has joined

  52. sonny has left

  53. sonny has joined

  54. neox has left

  55. neox has joined

  56. neox has left

  57. neox has joined

  58. susmit88 has joined

  59. sonny has left

  60. sonny has joined

  61. sonny has left

  62. sonny has joined

  63. susmit88 has left

  64. susmit88 has joined

  65. sonny has left

  66. sonny has joined

  67. sonny has left

  68. sonny has joined

  69. sonny has left

  70. sonny has joined

  71. sonny has left

  72. susmit88 has left

  73. sonny has joined

  74. susmit88 has joined

  75. susmit88 has left

  76. susmit88 has joined

  77. susmit88 has left

  78. susmit88 has joined

  79. stpeter has joined

  80. sonny has left

  81. sonny has joined

  82. susmit88 has left

  83. susmit88 has joined

  84. stpeter has left

  85. sonny has left

  86. sonny has joined

  87. debacle has left

  88. susmit88 has left

  89. susmit88 has joined

  90. Zash has joined

  91. susmit88 has left

  92. susmit88 has joined

  93. sonny has left

  94. sonny has joined

  95. sonny has left

  96. sonny has joined

  97. debacle has joined

  98. sonny has left

  99. sonny has joined

  100. sonny has left

  101. stpeter has joined

  102. daniel has left

  103. daniel has joined

  104. stpeter has left

  105. sonny has joined

  106. Holger has left

  107. susmit88 has left

  108. susmit88 has joined

  109. Holger has joined

  110. sonny has left

  111. sonny has joined

  112. stpeter has joined

  113. susmit88 has left

  114. susmit88 has joined

  115. stpeter has left

  116. susmit88 has left

  117. susmit88 has joined

  118. sonny has left

  119. sonny has joined

  120. sonny has left

  121. sonny has joined

  122. sonny has left

  123. sonny has joined

  124. sonny has left

  125. sonny has joined

  126. susmit88 has left

  127. susmit88 has joined

  128. stpeter has joined

  129. susmit88 has left

  130. susmit88 has joined

  131. jonas’

    1) Roll Call

  132. Zash

    EHLO

  133. Ge0rG

    302 Moved

  134. daniel

    Hi

  135. jonas’

    no dwd?

  136. jonas’

    fun, good thing I can chair

  137. jonas’

    2) Agenda Bashing

  138. jonas’

    nothing? perfect

  139. jonas’

    I’ll still give you a moment, because my MUA is acting up a lot

  140. jonas’

    and I’m trying to open the agenda I sent :)

  141. Wojtek has joined

  142. jonas’

    ok, the MUA does not seem to want to fix itself, so let’s try without

  143. jonas’

    3) Editor’s Update - Calls in progress - LC for XEP-0338 (ends on 2020-06-30)

  144. jonas’

    (where "without" means I’ll be copy-typing from my phone)

  145. jonas’

    4) Items for voting

  146. jonas’

    4a) PR#963: XEP-0178: Clarify SASL-EXTERNAL specification when s2s auth fails URL: https://github.com/xsf/xeps/pull/963

  147. jonas’

    Concerns were raised to the Mailing list about this opening up a downgrade attack vector, which I didn’t have time to look into yet, so on-list

  148. jonas’

    is anyone still here?

  149. Zash

    Yeeeees

  150. jonas’

    or did muc.xmpp.org fail for everyone except me?

  151. Zash

    I guess that reflects reality, but on-list.

  152. Guus

    You're live.

  153. Ge0rG

    MUC reflection is a thing, isn't it?

  154. jonas’

    Ge0rG, doesn’t help if there’s a very non-equally-distributed s2s failure :)

  155. Ge0rG

    I'm on-list as well, but I'd appreciate input from people who are into server development and into SASL and dialback things.

  156. Kev has left

  157. jonas’

    I expect Zash to cover all that, except maybe being "into" dialback things.

  158. Zash

    > I guess that reflects reality

  159. Zash

    Except Dialback is very rare these days given the success of Let's Encrypt

  160. pep.

    LE doing dialback for us :-°

  161. jonas’

    no comment from daniel?

  162. Zash

    Yeah, Dialback is equivalent ish to the verification LE does, so I don't think it's a downgrade attack

  163. daniel

    Sorry changing trains just no. Will read backlog in a second

  164. jonas’

    if we assume that LE is being used

  165. Ge0rG

    both fail under the assumption that the attacker is on the network path between you and the other party, right?

  166. jonas’

    so this certainly looks odd, because it mandates dialback if and only if the hostname did not match

  167. jonas’

    Ge0rG, though LE uses multiple vantage points to make that harder

  168. daniel

    Or at least they will be?

  169. jonas’

    maybe

  170. daniel

    I'm not sure it has been deployed yet

  171. jonas’

    implementations details of LE are not of concern for the spec anyways

  172. dwd has joined

  173. Ge0rG

    We got a dwd

  174. dwd

    Hello, sorry I'm late, got pulled into something last minute.

  175. dwd

    Are we still on 4a)?

  176. Ge0rG

    dwd: yes

  177. dwd

    OK, good.

  178. Ge0rG

    jonas’: I think we need to move that to the list

  179. jonas’

    dwd, no worries

  180. jonas’

    Ge0rG, I tend to agree

  181. Ge0rG

    maybe explicitly ask for input from server developers.

  182. jonas’

    it would be nice if someone else could start a thread right away, because (a) my MUA is a mess right now and (b) I’ll be heading out right after this meeting

  183. Zash

    Wasn't there a thread already?

  184. Zash

    Can continue there

  185. dwd

    So I'm comfortably +1 on this, but really because whether an initiator decides to move onto Dialback (and whether a Receiver accepts it) isn't predicated on whether SASL EXTERNAL failed or not.

  186. dwd

    Also i looked for a thread on this earlier and couldn't spot one - what's the subject line?

  187. jonas’

    I wasn’ta ware of a thread either

  188. Zash

    Subject: Re: [Standards] XMPP Council Agenda 2020-06-24

  189. jonas’

    ah.

  190. jonas’

    well

  191. Zash

    Well. Not a separate thread.

  192. dwd

    Ah-ha.

  193. Ge0rG

    it was just a single mail asking whether that's a downgrade attack

  194. jonas’

    I suppose a separate thread would be more discoverable.

  195. dwd

    It's not a downgrade attack, but I'll explain there in more detail.

  196. jonas’

    do we have a volunteer to start the thread or shall we delegate that to the editors?

  197. Ge0rG

    it would be great if somebody who's both a server developer and in Council could do that.

  198. dwd

    I'll start a thread.

  199. Zash

    dwd: But is it best practice?

  200. jonas’

    dwd, thank you :)

  201. Ge0rG

    dwd: +1

  202. dwd

    Zash, I think whether it's "best" is largely irrelevant.

  203. jonas’

    can we move on?

  204. Zash

    sure

  205. jonas’

    or do you think there’s need to discuss this here?

  206. jonas’

    taking that as a no

  207. dwd

    Let's move on.

  208. jonas’

    5) Outstanding Votes

  209. jonas’

    I incorrectly accused dwd for having one

  210. jonas’

    which I take the full blame for, I misread the doomsheet

  211. Ge0rG

    I've sent a -1 for PR #961

  212. jonas’

    thanks

  213. jonas’

    so we’re clear

  214. jonas’

    6) Date of Next

  215. Ge0rG

    I hope I'm out of old debt now, any only owe a vote for today's 4a

  216. jonas’

    Ge0rG, you are

  217. Ge0rG

    +1W WFM

  218. Kev has joined

  219. daniel

    +1w wfm

  220. jonas’

    +1w most-likely wfm, #thankscorona

  221. Zash

    +1

  222. dwd

    +1WFM.

  223. jonas’

    excellent

  224. jonas’

    7) AOB

  225. jonas’

    dwd, any news on the video call? :)

  226. dwd

    Ah, yes. I remember that now.

  227. jonas’

    I’ll take that as a "no" :)

  228. dwd

    I have scribbled.

  229. jonas’

    I can’t properly interpret that verb

  230. dwd

    I have written something down to remind myself I need to arrange a time, URL, etc for a Council video chat.

  231. jonas’

    ah, right

  232. jonas’

    any other AOB?

  233. Zash

    None here.

  234. daniel

    No

  235. Ge0rG

    nope

  236. jonas’

    thanks

  237. jonas’

    8) Ite Meeting Est

  238. jonas’

    thank you everyone

  239. Ge0rG

    thank you jonas’

  240. Ge0rG

    thank you Tedd

  241. Ge0rG

    thank you everyone

  242. Zash

    Thanks all

  243. dwd

    Thanks jonas’ and Tedd.

  244. sonny has left

  245. sonny has joined

  246. sonny has left

  247. sonny has joined

  248. sonny has left

  249. sonny has joined

  250. sonny has left

  251. sonny has joined

  252. sonny has left

  253. sonny has joined

  254. sonny has left

  255. sonny has joined

  256. sonny has left

  257. sonny has joined

  258. debacle has left

  259. kusoneko has left

  260. kusoneko has joined

  261. kusoneko has left

  262. kusoneko has joined

  263. susmit88 has left

  264. susmit88 has joined

  265. sonny has left

  266. sonny has joined

  267. hotspud has left

  268. hotspud has joined

  269. sonny has left

  270. sonny has joined

  271. susmit88 has left

  272. susmit88 has joined

  273. hotspud has left

  274. hotspud has joined

  275. susmit88 has left

  276. susmit88 has joined

  277. susmit88 has left

  278. susmit88 has joined

  279. debacle has joined

  280. debacle has left

  281. debacle has joined

  282. susmit88 has left

  283. susmit88 has joined

  284. sonny has left

  285. sonny has joined

  286. susmit88 has left

  287. susmit88 has joined

  288. susmit88 has left

  289. susmit88 has joined

  290. neox has left

  291. neox has joined

  292. susmit88 has left

  293. susmit88 has joined

  294. stpeter has left

  295. stpeter has joined

  296. susmit88 has left

  297. susmit88 has joined

  298. susmit88 has left

  299. susmit88 has joined

  300. susmit88 has left

  301. susmit88 has joined

  302. sonny has left

  303. Tobias has left

  304. eta has left

  305. eta has joined

  306. robertooo has left

  307. robertooo has joined

  308. sonny has joined

  309. neox has left

  310. debacle has left