attachment
<div dir="ltr"><div>Hi,</div><div><br></div><div>New SSH WG charter in progress.</div><div><br></div><div><div><div dir="ltr" class="gmail_signature" data-smartmail="gmail_signature"><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><div><div dir="ltr"><i><font size="1">Ira McDonald (Musician / Software Architect)</font></i></div><div><i><font size="1">Chair - SAE Trust Anchors and Authentication TF<br></font></i></div><div dir="ltr"><i><font size="1">Co-Chair - TCG Trusted Mobility Solutions WG</font></i></div><div><i><font size="1">Co-Chair - TCG Metadata Access Protocol SG<br></font></i></div><div dir="ltr"><i><font size="1">Chair - Linux Foundation Open Printing WG<br>Secretary - IEEE-ISTO Printer Working Group<br>Co-Chair - IEEE-ISTO PWG Internet Printing Protocol WG<br>IETF Designated Expert - IPP & Printer MIB<br>Blue Roof Music / High North Inc<br><a style="color:rgb(51,51,255)" href="http://sites.google.com/site/blueroofmusic" target="_blank">http://sites.google.com/site/blueroofmusic</a><br><a style="color:rgb(102,0,204)" href="http://sites.google.com/site/highnorthinc" target="_blank">http://sites.google.com/site/highnorthinc</a><br>mailto: <a href="mailto:blueroofmusic@gmail.com" target="_blank">blueroofmusic@gmail.com</a><br>(permanent) PO Box 221 Grand Marais, MI 49839 906-494-2434</font></i></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div></div><br><br><div class="gmail_quote"><div dir="ltr" class="gmail_attr">---------- Forwarded message ---------<br>From: <b class="gmail_sendername" dir="auto">Deb Cooley</b> <span dir="auto"><<a href="mailto:debcooley1@gmail.com">debcooley1@gmail.com</a>></span><br>Date: Tue, Jul 30, 2024 at 3:34 PM<br>Subject: [Ssh] SSH side meeting at IETF 120<br>To: <<a href="mailto:SSH@ietf.org">SSH@ietf.org</a>><br>Cc: Paul Wouters <<a href="mailto:paul.wouters@aiven.io">paul.wouters@aiven.io</a>>, Theo de Raadt <<a href="mailto:deraadt@openbsd.org">deraadt@openbsd.org</a>>, Roman Danyliw <<a href="mailto:rdd@cert.org">rdd@cert.org</a>><br></div><br><br><div dir="ltr">I want to thank everyone that attended Tuesday evening's side meeting in person or remotely. I also want to thank those that worked to bring people together for that meeting. I also want to thank Francois Michel who chaired the session and to David Schinazi who jumped into moderate. I'm sure I've left out people, for which I will apologize.<br><br>It was a healthy, positive discussion about potentially forming a SSH working group and how it would add value to everyone without unnecessarily increasing the burden on implementers. It was great seeing many people with different goals and concerns agree to work together. <br><br>The charter will have clauses about the existence of implementations, recognizing that maintaining interoperability is crucial. <br><br>We discussed a number of work items which include the following (*reflects work that may/may not follow on later): <br><br>1. Updating algorithms (deprecating very old MTI algorithms and updating IANA).<br>2. Cleanup and publish selected drafts (agent draft, SFTP)<br>3. Adding new PQ algorithms (hybrid in the near term).<br>4. Reacting to relevant formal analysis results, e.g. from ufmrg or elsewhere (initial key exchange, user authentication protocol, machine verification of strict kex).<br>*5. Certificates - to understand the landscape - SSH style, X.509, public trust <br>*6. New ideas and experiments - later on, drafts can be written, implement for testing. <br><br>Going forward: It is possible to get a working group chartered without a BOF. But we need to get the charter drafted soonest, so we can get it through the process (there are multiple review windows that take some time).<br><br>Charter: This is step 1. Just remember that charters are not forever, we need an initial working charter that will get the work started, not one that will stand for the ages. What is posted is a first draft, please feel free to post PRs and/or issues that you see. First draft charter language is posted here: <a href="https://github.com/DavidSchinazi/ssh-charter/blob/main/charter.md" target="_blank">https://github.com/DavidSchinazi/ssh-charter/blob/main/charter.md</a> <br><br><div>If there are issues attending meetings (either in person or remote), please contact the Security ADs (me and/or Paul Wouters).</div><div><br></div><div>I look forward to helping to facilitate this work!<br></div><br>Deb<br></div>
_______________________________________________<br>
Ssh mailing list -- <a href="mailto:ssh@ietf.org" target="_blank">ssh@ietf.org</a><br>
To unsubscribe send an email to <a href="mailto:ssh-leave@ietf.org" target="_blank">ssh-leave@ietf.org</a><br>
</div></div></div>