[6tisch-security] (minutes of Wed Jan 14, 2015, 11am EST call) reminder -- 6tisch security call *tomorrow*, Wed Jan 14, 2015, 11am EST (dial-in info at bottom)
Rene Struik <rstruik.ext@gmail.com> Fri, 16 January 2015 22:21 UTC
Return-Path: <rstruik.ext@gmail.com>
X-Original-To: 6tisch-security@ietfa.amsl.com
Delivered-To: 6tisch-security@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1])
by ietfa.amsl.com (Postfix) with ESMTP id C3AE11B29BC
for <6tisch-security@ietfa.amsl.com>; Fri, 16 Jan 2015 14:21:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5
tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1,
DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001,
SPF_PASS=-0.001, WEIRD_PORT=0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44])
by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024)
with ESMTP id QMKIKN8Ghaah for <6tisch-security@ietfa.amsl.com>;
Fri, 16 Jan 2015 14:21:36 -0800 (PST)
Received: from mail-ig0-x233.google.com (mail-ig0-x233.google.com
[IPv6:2607:f8b0:4001:c05::233])
(using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits))
(No client certificate requested)
by ietfa.amsl.com (Postfix) with ESMTPS id E56291ACD4B
for <6tisch-security@ietf.org>; Fri, 16 Jan 2015 14:21:35 -0800 (PST)
Received: by mail-ig0-f179.google.com with SMTP id l13so5636802iga.0
for <6tisch-security@ietf.org>; Fri, 16 Jan 2015 14:21:35 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113;
h=message-id:date:from:user-agent:mime-version:to:subject:references
:in-reply-to:content-type;
bh=mMoF2sQVrPzFv56AiHtUWPOmyQNrQW8DTSYv1kK6Lcs=;
b=nu+KoMmkgDSR1hoNW15T5L0+1zv/9vJGwGq99JjFuhfre2/+6Svsecafqt0rO+Jgc1
R22mHGoKfie7RP/N3ou43DT7v2b8NMNpzwQlFgSZzWv9ehgj39XeKtmtuy9gP/b7d5dg
mE5wVFECL5+Lufcr1vgw6v2SJ1KX5M95i3bYq68u9gMUEjQOMkTH2Pt2PLqRx5H3t+qn
9J2I/P1zRxWovxB/DVQTZaAU1XELnPYd4SbyzrbpqIM13a0Gzrd680lv0CIZTaPMgrmg
n6FKinCzo10WBwG1W4LTwIEWiu+H4ctB4j5e0CrdtxI9TU2SmvMNp8dQXGZv13IaCqa6
X3QA==
X-Received: by 10.50.117.68 with SMTP id kc4mr6193869igb.25.1421446895026;
Fri, 16 Jan 2015 14:21:35 -0800 (PST)
Received: from [192.168.0.10]
(CPE7cb21b2cb904-CM7cb21b2cb901.cpe.net.cable.rogers.com. [99.231.49.38])
by mx.google.com with ESMTPSA id aw9sm2118733igc.18.2015.01.16.14.21.34
for <6tisch-security@ietf.org>
(version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128);
Fri, 16 Jan 2015 14:21:34 -0800 (PST)
Message-ID: <54B98EEA.1080703@gmail.com>
Date: Fri, 16 Jan 2015 17:21:30 -0500
From: Rene Struik <rstruik.ext@gmail.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64;
rv:31.0) Gecko/20100101 Thunderbird/31.4.0
MIME-Version: 1.0
To: tisch-security <6tisch-security@ietf.org>
References: <54B5BA30.9020200@gmail.com>
In-Reply-To: <54B5BA30.9020200@gmail.com>
X-Forwarded-Message-Id: <54B5BA30.9020200@gmail.com>
Content-Type: multipart/alternative;
boundary="------------010704070106070603050603"
Archived-At: <http://mailarchive.ietf.org/arch/msg/6tisch-security/O3j9Vo4i3XKyD0Dj-pKsVPlzrpg>
Subject: [6tisch-security] (minutes of Wed Jan 14, 2015,
11am EST call) reminder -- 6tisch security call *tomorrow*, Wed Jan 14, 2015,
11am EST (dial-in info at bottom)
X-BeenThere: 6tisch-security@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Extended Design Team for 6TiSCH security architecture
<6tisch-security.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/6tisch-security>,
<mailto:6tisch-security-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/6tisch-security/>
List-Post: <mailto:6tisch-security@ietf.org>
List-Help: <mailto:6tisch-security-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/6tisch-security>,
<mailto:6tisch-security-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 16 Jan 2015 22:21:41 -0000
Dear colleagues:
Please find below the minutes of the 6TiSCH Security conf call as of
January 14, 2015, 11am-12pm EST.
Minutes 6TiSCH Security conf call, Wed January 14, 2015, 11am-12pm EST
{note taker: Rene Struik}
{recording: see 6tisch bitbucket list}
{slides discussed (and referenced in minutes): no slides this time}
1. Attendance:
Michael Richardson, Malisa Vucinic, Mike Seewald, Thomas Watteyne, Rene
Struik
2. Agenda
The suggested agenda was approved.
Agenda:
1) administrativia {agenda bashing/minutes}
2) (brief update) feedback on posted security draft
3) input 6tisch security to the 6tisch architecture draft
4) AOB
3. Minutes
The minutes of the previous 6TiSCH security conference calls will be
first item of agenda for approval at the next 6tTiSCH security
conference call. {Please review.}
4. Feedback on posted security considerations draft
(draft-struik-6tisch-security-architectural-considerations-01)
RS mentioned that he posted (on Fri January 9, 2015) a write-up on
security considerations for 6tisch that provides lots of footnotes on
behavior and security and implementation considerations re MAC,
networking, and join protocol behavior. He also posted a slightly
updated version (#01) that includes a high-level overview of the join
protocol, including phases (authentication, authorization,
configuration), device roles, and diagrams. He suggested that the draft
tried to take into account technical discussions on 6TiSCH security
calls since early December 2014, as well as offline feedback on
pre-draft versions from several participants. While he acknowledged the
draft still had some rough edges that needed polishing, he would welcome
feedback from the group that would help in making the draft better. Kris
Pister already kindly provided some preliminary feedback on the 6TiSCH
mailing list, but more feedback would be much appreciated.
TW volunteered to provide feedback to the list.
5. Input 6tisch security to the architecture draft
(draft-ietf-6tisch-architecture-04)
TW mentioned that there were currently three text proposals that could
be used for inclusion with the architecture draft:
http://www.ietf.org/mail-archive/web/6tisch/current/msg02690.html
http://www.ietf.org/mail-archive/web/6tisch-security/current/msg00328.html
https://tools.ietf.org/html/draft-struik-6tisch-security-considerations-01
MV suggested that the verbiage of the three text proposals differed in
level of detail provided, which made it hard to compare. RS suggested
that at the previous 6TiSCH security conference call (Tue January 5,
2015), everyone agreed that "the the level of detail would reflect
consensus as reached to-date, so as to remove roadblocks by end of week"
and that snippets that do (as yet) not carry this consensus would,
therefore, have to be trimmed out. MR suggested that some of the
language in section 1.3.1 of
draft-struik-6tisch-security-considerations-01 was too high level and
"does not align with what we were told". RS reminded the group that he
simply provided text suitable for inclusion with the architecture draft
that was known to reflect consensus to-date. Moreover, he suggested that
the architecture draft does not have to carry all detailed information,
if only because lots of work is still required to iron this out.
MR suggested that he would like to see inclusion of, e.g., details re
trust relationships, certificate detail, and scalability properties. RS
suggested that those could indeed be considered, but since some aspects
hereof are still highly controversial at this time, this should be left
out for now.
TW summarized some areas of consensus, including (a) identifying three
device roles in the join process (joining node, join assistant, "JCE");
(b) aiming at minimization of long-haul communications between join
assistant and JCE (ideally, only comprising one communication flow to
and from the JCE, as, e.g., w/HART does).
MR suggested that it would be useful to add some verbiage re privacy
aspects of addressing (e.g., that joined nodes would use short
addresses). He further suggested that it would be useful to
cross-reference some actual protocols that could be considered. As to
the latter, RS suggested that it would certainly be possible to add some
verbiage along the lines "the join protocol would consider authenticated
key agreement protocols, such as, e.g., DTLS, and certificate schemes,
such as, e.g., X509", etc., if referring to these acronyms would make
people happy.
TW asked whether RS could review the three text proposals currently on
the table and suggest a way forward that takes into account consensus
and what was discussed during the call. RS agreed to take this on as
homework assignment, with target to report back on this to the group by
the end of Monday next week (January 19, 2015).
6. AOB
RS mentioned that there is no conference call schedule for next calls
yet, but he would poll people re time preferences.
Best regards, Rene
-------- Forwarded Message --------
Subject: reminder -- 6tisch security call *tomorrow*, Wed Jan 14, 2015,
11am EST (dial-in info at bottom)
Date: Tue, 13 Jan 2015 19:37:04 -0500
From: Rene Struik <rstruik.ext@gmail.com>
To: tisch-security <6tisch-security@ietf.org>
Dear colleagues:
Just a quick reminder that we *do* have a conf call tomorrow, Wed Jan
14, 2015, 11am EST.
Currently, the main agenda item is item #4b of last week: input to the
6tisch architecture draft. It would also be good to have some more
comments on the draft I posted.
Minutes of calls later tonight (sorry - extremely busy). For conf call
dial-in info, see bottom of email.
Best regards, Rene
==
Note: next week's call is on Wed Jan 14, 2015, 11am EST.
On 1/6/2015 11:48 AM, Rene Struik wrote:
> Dear colleagues:
>
> Happy New Year!
>
> According to the agreed-upon 6tisch security conf call schedule, we
> will resume the conference call series today, Tue Jan 6, 2015, 5pm EST.
>
> I propose we continue the discussion where we left off prior to
> Christmas (essentially, item 3c below), except that we may have a
> short presentation first (item #2).
>
> Agenda:
> 1) administrativia {agenda bashing/minutes}
> 2) {still to be confirmed} presentation Giuseppe Piro
> 3) join protocol details
> -- a) (done) status update MAC behavior
> -- b) (brief!) recap of routing/communication flow aspects
> -- c) incremental deployment aspects
> 4) input 6tisch security to other 6tisch documents
> -- a) terminology draft
> -- b) architecture draft
>
> Conf call time: 5pm EST = 7am Japan = 2pm PST = 11pm Paris time. {The
> next call, on January 6, 2014) is also at 5pm EST (see schedule till
> half of January 2015)}.
> Note: next week's call is on Wed Jan 14, 2015, 11am EST.
>
> Dial-in info at end of this email.
>
> Best regards,
>
> Rene
>
> -------- Forwarded Message --------
> Subject: Suggested agenda for 6tisch security call of *today*, Tue
> December 16, 2014, 5pm EST (dial-in info at bottom)
> Date: Tue, 16 Dec 2014 09:21:20 -0500
> From: Rene Struik <rstruik.ext@gmail.com>
> To: tisch-security <6tisch-security@ietf.org>
>
>
>
> Dear colleagues:
>
> I propose we continue the discussion where we left off last week.
>
> Agenda:
> 1) administrativia {agenda bashing/minutes}
> 2) join protocol details
> -- a) (brief!) status update MAC behavior
> -- b) continuation of routing/communication flow aspects {last week,
> we did not finish the only two slides on this
> 3) input 6tisch security to other 6tisch documents
>
> Conf call time: 5pm EST = 7am Japan = 2pm PST = 11pm Paris time. {The
> next call, on January 6, 2014) is also at 5pm EST (see schedule till
> half of January 2015)}.
>
> Dial-in info at end of this email.
>
> Best regards,
>
> Rene
>
> -------- Forwarded Message --------
> Subject: suggested agenda for 6tisch security call of tomorrow, Tue
> December 9, 2014, 9am EST (dial-in info at bottom)
> Date: Mon, 08 Dec 2014 17:16:40 -0500
> From: Rene Struik <rstruik.ext@gmail.com>
> To: tisch-security <6tisch-security@ietf.org>
>
>
>
> Dear colleagues:
>
> For last week's Tue Dec 2, 2014, 9am EST conf call I prepared some
> material and posted prior to the call. During the call, we discussed
> all MAC-related aspects relevant for the join protocol and did not
> discuss higher-layer aspects I prepared material for yet. I suggest we
> continue the systematic discussion of last week and take that topic on
> now.
>
> This leads to the following suggested agenda for this week
> (essentially a continuation of last week's one):
>
> Same as last week's, except with
> #1a-b) focus on routing/communication flow related aspects join protocol;
> #2a): confirm concensus on MAC (as discussed last week) and
> routing/communication flow aspects
> #2c) {as consequence of two items above} what to squeeze into
> architecture draft
>
> The detailed agenda and dial-in info is below (#A, resp. #B).
>
> Best regards, Rene
>
> _A) Suggested agenda Tue Dec 9, 2014, 9am EST call_
>
> Proposed agenda:
>
> 0) Agenda bashing
>
> 1) Join protocol details
>
> a) desired properties
> b) realizable properties
>
> #1a-b) focus on routing/communication flow related aspects join
> protocol (we discussed MAC-related join-relevant aspects during
> the conf call of Tue Dec 2, 2014, 9am EST).
> For slides, see
> https://drive.google.com/folderview?id=0B2a6Ilxu1XfCNF9JaXR1ZXlzZlU&usp=sharing
> (same slides as sent out prior to Dec 2, 2014, 9am EST call)
> Relevant slides: Slides 23-25 (contained in entire slide deck
> (ppt), but also in excerpt (pdf))
>
> 2) Next steps:
> a) consensus on 1#a and 1#b
>
> #2a): confirm consensus on MAC (as discussed last week) and
> routing/communication flow aspects
> #2c) {as consequence of two items above} what to squeeze into
> architecture draft
>
> b) form tiger team to work out details
> - project phases
> - communication of sub-results
> c) what to squeeze into architecture draft, etc.
>
> I will prepare material to facilitate discussion on 1) and 2), to be
> discussed during the call.
>
> _B) Dial-in information:_
> English : New York Time 6tisch security
> Tuesday, December 9, 2014 | 9:00 am Eastern Standard Time (GMT-05:00)
> Meeting number: 641 709 118
> Meeting password: joinjoin
> Audio connection:
> 1-877-668-4493 Call-in toll free number (US/Canada)
> 1-650-479-3208 Call-in toll number (US/Canada)
>
> Access code: 641 709 118
> Meeting link:
> https://ietf.webex.com/ietf/j.php?MTID=m1aa12258a83109b4ae291fb0c2bd92d6
>
> The etherpad we have used is at:
> http://etherpad.tools.ietf.org:9000/p/6tisch-security-6top-xml.txt
>
>
> --
> email:rstruik.ext@gmail.com | Skype: rstruik
> cell: +1 (647) 867-5658 | US: +1 (415) 690-7363
>
>
>
>
--
email:rstruik.ext@gmail.com | Skype: rstruik
cell: +1 (647) 867-5658 | US: +1 (415) 690-7363
- [6tisch-security] suggested agenda for 6tisch sec… Rene Struik
- [6tisch-security] Suggested agenda for 6tisch sec… Rene Struik
- Re: [6tisch-security] Suggested agenda for 6tisch… Michael Richardson
- [6tisch-security] Suggested agenda for 6tisch sec… Rene Struik
- Re: [6tisch-security] Suggested agenda for 6tisch… Thomas Watteyne
- [6tisch-security] reminder -- 6tisch security cal… Rene Struik
- [6tisch-security] (minutes of Tue Jan 5, 2015, 5p… Rene Struik
- [6tisch-security] (minutes of Tue Dec 16, 2014, 5… Rene Struik
- [6tisch-security] (w/ slight correction) Fwd: (mi… Rene Struik
- Re: [6tisch-security] reminder -- 6tisch security… Thomas Watteyne
- Re: [6tisch-security] (minutes of Tue Jan 5, 2015… Michael Richardson
- [6tisch-security] (minutes of Wed Jan 14, 2015, 1… Rene Struik
- [6tisch-security] reminder -- 6tisch security cal… Rene Struik
- Re: [6tisch-security] reminder -- 6tisch security… Michael Richardson
- [6tisch-security] (result homework assignment I v… Rene Struik
- Re: [6tisch-security] (result homework assignment… Rene Struik
- [6tisch-security] (Important -- 6tisch security c… Rene Struik
- [6tisch-security] (updated agenda) Re: (Important… Rene Struik
- Re: [6tisch-security] (Important -- 6tisch securi… Michael Richardson
- [6tisch-security] (minutes 6tisch security call T… Rene Struik
- [6tisch-security] (minutes 6tisch security call T… Tero Kivinen
- [6tisch-security] reminder -- 6tisch security cal… Rene Struik
- [6tisch-security] (minutes 6tisch security call T… Rene Struik
- [6tisch-security] Reminder -- 6tisch security cal… Rene Struik
- [6tisch-security] Latency aspects of TSCH Malisa Vucinic
- Re: [6tisch-security] Reminder -- 6tisch security… Rene Struik
- Re: [6tisch-security] Reminder -- 6tisch security… Thomas Watteyne
- [6tisch-security] (simplified explanation of form… Rene Struik
- Re: [6tisch-security] (simplified explanation of … Malisa Vucinic
- Re: [6tisch-security] (simplified explanation of … Rene Struik
- Re: [6tisch-security] (simplified explanation of … Jonathan Simon
- Re: [6tisch-security] (simplified explanation of … Rene Struik
- Re: [6tisch-security] (simplified explanation of … Jonathan Simon
- Re: [6tisch-security] (simplified explanation of … Giuseppe Piro
- Re: [6tisch-security] (simplified explanation of … Malisa Vucinic
- Re: [6tisch-security] (simplified explanation of … Giuseppe Piro
- Re: [6tisch-security] (simplified explanation of … Giuseppe Piro
- Re: [6tisch-security] Latency aspects of TSCH Michael Richardson
- Re: [6tisch-security] (simplified explanation of … Michael Richardson
- Re: [6tisch-security] Latency aspects of TSCH Malisa Vucinic
- [6tisch-security] Reminder -- 6tisch security cal… Rene Struik
- Re: [6tisch-security] Reminder -- 6tisch security… Rene Struik
- [6tisch-security] (minutes 6tisch security call T… Rene Struik
- [6tisch-security] (minutes 6tisch security call F… Rene Struik
- [6tisch-security] (minutes 6tisch security call F… Rene Struik
- Re: [6tisch-security] Reminder -- 6tisch security… Thomas Watteyne
- [6tisch-security] (problem with WebEx link) Re: R… Rene Struik
- Re: [6tisch-security] (problem with WebEx link) R… Rene Struik
- Re: [6tisch-security] (problem with WebEx link) R… Thomas Watteyne