Re: [6tisch-security] people who have responded -- planned meetings

"Nancy Cam-Winget (ncamwing)" <ncamwing@cisco.com> Tue, 10 May 2016 15:11 UTC

Return-Path: <ncamwing@cisco.com>
X-Original-To: 6tisch-security@ietfa.amsl.com
Delivered-To: 6tisch-security@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E40EE12D1B7 for <6tisch-security@ietfa.amsl.com>; Tue, 10 May 2016 08:11:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -15.516
X-Spam-Level:
X-Spam-Status: No, score=-15.516 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, RP_MATCHES_RCVD=-0.996, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dIcrztsVroxK for <6tisch-security@ietfa.amsl.com>; Tue, 10 May 2016 08:11:16 -0700 (PDT)
Received: from rcdn-iport-3.cisco.com (rcdn-iport-3.cisco.com [173.37.86.74]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A15AB12D700 for <6tisch-security@ietf.org>; Tue, 10 May 2016 08:11:16 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=15626; q=dns/txt; s=iport; t=1462893076; x=1464102676; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=Psw3JaOHHuou+HvSeobadDJEXvukFAyz+B8ksAW16ks=; b=AnShohS/NY9HnqcakxTKH/l6LTE01jBiEwYtYKvh94qYIc8bffeTVuIR Wpfcpl7dW6fBLm+7b12JZcTeGFuy/zQ8lIQ3wdiPj8b1i9riE2hYoiKJ4 ZQYPkGPrEHhiwQG4raoqInU/ylRjHTnJDie3EFjSkxHwdb6izB4Kr0Xms A=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0A7AgC9+TFX/4YNJK1RAgqCbExVfQa0LoR3AQ2BdhcBCoI8gmhKAoExOBQBAQEBAQEBZSeEQQEBAQMBAQEBGlELBQsCAQgRAwECAScHJwsUCQgCBAENBYgjCA64GwEBAQEBAQEBAQEBAQEBAQEBAQEBARWKbIE5AYJSAQpIHoUbBY4XihABhX2IIIFpToIqgVeDKoU3jz8BHgEBQoIFDQ6BS26IC38BAQE
X-IronPort-AV: E=Sophos;i="5.24,604,1454976000"; d="scan'208,217";a="106367395"
Received: from alln-core-12.cisco.com ([173.36.13.134]) by rcdn-iport-3.cisco.com with ESMTP/TLS/DHE-RSA-AES256-SHA; 10 May 2016 15:11:15 +0000
Received: from XCH-RTP-011.cisco.com (xch-rtp-011.cisco.com [64.101.220.151]) by alln-core-12.cisco.com (8.14.5/8.14.5) with ESMTP id u4AFBEq0021981 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL); Tue, 10 May 2016 15:11:15 GMT
Received: from xch-rtp-015.cisco.com (64.101.220.155) by XCH-RTP-011.cisco.com (64.101.220.151) with Microsoft SMTP Server (TLS) id 15.0.1104.5; Tue, 10 May 2016 11:11:14 -0400
Received: from xch-rtp-015.cisco.com ([64.101.220.155]) by XCH-RTP-015.cisco.com ([64.101.220.155]) with mapi id 15.00.1104.009; Tue, 10 May 2016 11:11:14 -0400
From: "Nancy Cam-Winget (ncamwing)" <ncamwing@cisco.com>
To: Thomas Watteyne <thomas.watteyne@inria.fr>, Michael Richardson <mcr+ietf@sandelman.ca>
Thread-Topic: [6tisch-security] people who have responded -- planned meetings
Thread-Index: AQHRqJhw6CgPDiPlAkKyEJrlpk7jR5+vhcaAgAFxEQCAARipgIAAAX6AgAAcRID//+ujAA==
Date: Tue, 10 May 2016 15:11:14 +0000
Message-ID: <D35747F7.16C118%ncamwing@cisco.com>
References: <21545.1462542640@obiwan.sandelman.ca> <CAAdgstQ_=vcon+WjBT7DLc=7203arCAXVHdjZgovtAYRy2z9rA@mail.gmail.com> <3938.1462650078@obiwan.sandelman.ca> <CADJ9OA_DN9me1ge5Fp6sWgpVqM847Vu9hS498Q+ao=gJ0iVRug@mail.gmail.com> <6807.1462805584@obiwan.sandelman.ca> <CADJ9OA9W4OShG+eeM1N0oAYj6g636_oziKEBJF2NeZTvchLdJQ@mail.gmail.com> <CADJ9OA-zFs_j9LZD9_w_5DQcbRzUn7EQRWvxVQa2m09KCAw+KQ@mail.gmail.com> <CADJ9OA_1jr7bNGFxMcFWQrvwsmntq6BvZiMizqr8GNWuaRs_YQ@mail.gmail.com>
In-Reply-To: <CADJ9OA_1jr7bNGFxMcFWQrvwsmntq6BvZiMizqr8GNWuaRs_YQ@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/14.6.2.160219
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.155.84.51]
Content-Type: multipart/alternative; boundary="_000_D35747F716C118ncamwingciscocom_"
MIME-Version: 1.0
Archived-At: <http://mailarchive.ietf.org/arch/msg/6tisch-security/_G8B1BmuTtn2tucMWHrnORgqV64>
Cc: 6tisch-security <6tisch-security@ietf.org>
Subject: Re: [6tisch-security] people who have responded -- planned meetings
X-BeenThere: 6tisch-security@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Extended Design Team for 6TiSCH security architecture <6tisch-security.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/6tisch-security>, <mailto:6tisch-security-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/6tisch-security/>
List-Post: <mailto:6tisch-security@ietf.org>
List-Help: <mailto:6tisch-security-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/6tisch-security>, <mailto:6tisch-security-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 10 May 2016 15:11:39 -0000

Apologies for the late response, as I am in Califorina, 1pm Paris would be 4am my time which I don't think I can make.
I did do a very late response to the doodle....

Nancy

From: 6tisch-security <6tisch-security-bounces@ietf.org<mailto:6tisch-security-bounces@ietf.org>> on behalf of Thomas Watteyne <thomas.watteyne@inria.fr<mailto:thomas.watteyne@inria.fr>>
Date: Tuesday, May 10, 2016 at 2:24 AM
To: Michael Richardson <mcr+ietf@sandelman.ca<mailto:mcr+ietf@sandelman.ca>>
Cc: 6tisch-security <6tisch-security@ietf.org<mailto:6tisch-security@ietf.org>>
Subject: Re: [6tisch-security] people who have responded -- planned meetings

All,
The most popular date for meeting is Thursday 1pm Paris time. Let's meet then.
Thomas



On Tue, May 10, 2016 at 9:42 AM, Thomas Watteyne <thomas.watteyne@inria.fr<mailto:thomas.watteyne@inria.fr>> wrote:
PS: please note that one of the first discussion items is to fix a discussion slot for possible periodic calls.

On Tue, May 10, 2016 at 9:37 AM, Thomas Watteyne <thomas.watteyne@inria.fr<mailto:thomas.watteyne@inria.fr>> wrote:
Reminder, fill in http://doodle.com/poll/zugwwi9nkfqg2sk5 in the next hours.

On Mon, May 9, 2016 at 4:53 PM, Michael Richardson <mcr+ietf@sandelman.ca<mailto:mcr+ietf@sandelman.ca>> wrote:

Thomas Watteyne <thomas.watteyne@inria.fr<mailto:thomas.watteyne@inria.fr>> wrote:
    > Great! I would like to move fast on this, and suggest to have the
    > security
    > call at least 24 before the meeting so that we can complete the action
    > items
    > we will have discussed by the time of the 6TiSCH call.

I had already proposed to have the meeting 45 minutes before the 6tisch call,
but to do it weekly.


    > Would Thursday 7am Pacific (same time as 6TiSCH meeting) work for all?

It would not work for me on a sufficient number of Thursdays that it would be
a problem.

Thomas Watteyne <thomas.watteyne@inria.fr<mailto:thomas.watteyne@inria.fr>> wrote:
    > Would you agree that the agenda for the next sec meeting is to identify
    > the potential for using Object Security for secure joining a 6TiSCH
    > network, and that the homework to prepare is to read:

    > - [high] draft-selander-ace-object-security
    > - [med] draft-ietf-cose-msg
    > - [low] draft-selander-ace-cose-ecdhe
    > - [low] draft-hartke-core-e2e-security-reqs
    > - [low] draft-ietf-ace-oauth-authz

I'm fortunate that I've read most of these documents in detail.
I agree that this is an important thing to consider.

I want to point out that OSCOAP does not have a clear session key exchange
protocol as yet (several ideas proposed), and once it does, it still needs to
do enough certificate processing and ownership voucher analysis to enable the
security.

I had proposed DTLS/COAP (are we calling this coaps yet.. rhymes with soaps?)
with blockwise support.  From my point of view, sitting inside the
unconstrained JCE, it matters little if it's OSCOAP (security inside COAP) vs
DTLS/COAP (security outside of COAP).  They seem to have the same essential
properties in the end.

**to the constrained node it matters that we reuse as much code as possible**

--
Michael Richardson <mcr+IETF@sandelman.ca<mailto:mcr%2BIETF@sandelman.ca>>, Sandelman Software Works
 -= IPv6 IoT consulting =-




_______________________________________________
6tisch-security mailing list
6tisch-security@ietf.org<mailto:6tisch-security@ietf.org>
https://www.ietf.org/mailman/listinfo/6tisch-security




--
_______________________________________

Thomas Watteyne, PhD
Research Scientist & Innovator, Inria
Sr Networking Design Eng, Linear Tech
Founder & co-lead, UC Berkeley OpenWSN
Co-chair, IETF 6TiSCH

www.thomaswatteyne.com<http://www.thomaswatteyne.com>
_______________________________________



--
_______________________________________

Thomas Watteyne, PhD
Research Scientist & Innovator, Inria
Sr Networking Design Eng, Linear Tech
Founder & co-lead, UC Berkeley OpenWSN
Co-chair, IETF 6TiSCH

www.thomaswatteyne.com<http://www.thomaswatteyne.com>
_______________________________________



--
_______________________________________

Thomas Watteyne, PhD
Research Scientist & Innovator, Inria
Sr Networking Design Eng, Linear Tech
Founder & co-lead, UC Berkeley OpenWSN
Co-chair, IETF 6TiSCH

www.thomaswatteyne.com<http://www.thomaswatteyne.com>
_______________________________________