Re: [Ace] DTLS proxy in EST-coaps

Sandeep Kumar <sandeep.kumar@philips.com> Fri, 17 November 2017 07:49 UTC

Return-Path: <sandeep.kumar@philips.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7068C128C84 for <ace@ietfa.amsl.com>; Thu, 16 Nov 2017 23:49:25 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.919
X-Spam-Level:
X-Spam-Status: No, score=-1.919 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id F2nbJLW_AAxt for <ace@ietfa.amsl.com>; Thu, 16 Nov 2017 23:49:21 -0800 (PST)
Received: from EUR01-VE1-obe.outbound.protection.outlook.com (mail-ve1eur01on0048.outbound.protection.outlook.com [104.47.1.48]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3BB6112741D for <ace@ietf.org>; Thu, 16 Nov 2017 23:49:20 -0800 (PST)
Received: from VI1P121CA0003.EURP121.PROD.OUTLOOK.COM (129.75.24.209) by AM5P121MB0051.EURP121.PROD.OUTLOOK.COM (129.75.189.218) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.197.13; Fri, 17 Nov 2017 07:49:18 +0000
Received: from HE1EUR02FT045.eop-EUR02.prod.protection.outlook.com (2a01:111:f400:7e05::202) by VI1P121CA0003.outlook.office365.com (2a01:111:e400:e2b2::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.218.15 via Frontend Transport; Fri, 17 Nov 2017 07:49:18 +0000
Received-SPF: Neutral (protection.outlook.com: 13.81.48.91 is neither permitted nor denied by domain of philips.com)
Received: from LIGHT-EDGE-2.lighting.com (13.81.48.91) by HE1EUR02FT045.mail.protection.outlook.com (10.152.11.238) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P384) id 15.20.218.12 via Frontend Transport; Fri, 17 Nov 2017 07:49:17 +0000
Received: from EUR03-AM5-obe.outbound.protection.outlook.com (213.199.154.113) by autodiscover.lighting.com (10.0.0.5) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.1.669.32; Fri, 17 Nov 2017 08:48:54 +0100
Received: from HE1P121MB0012.EURP121.PROD.OUTLOOK.COM (129.75.24.151) by HE1P121MB0011.EURP121.PROD.OUTLOOK.COM (129.75.24.150) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.197.13; Fri, 17 Nov 2017 07:48:52 +0000
Received: from HE1P121MB0012.EURP121.PROD.OUTLOOK.COM ([fe80::1501:196e:f3e9:1dfc]) by HE1P121MB0012.EURP121.PROD.OUTLOOK.COM ([fe80::1501:196e:f3e9:1dfc%13]) with mapi id 15.20.0197.025; Fri, 17 Nov 2017 07:48:52 +0000
From: Sandeep Kumar <sandeep.kumar@philips.com>
To: Michael Richardson <mcr+ietf@sandelman.ca>, "consultancy@vanderstok.org" <consultancy@vanderstok.org>
CC: "ace@ietf.org" <ace@ietf.org>
Thread-Topic: [Ace] DTLS proxy in EST-coaps
Thread-Index: AQHTX0G77SE49NcaUUOJ4dQ6vAUqV6MX07aAgABcfCs=
Date: Fri, 17 Nov 2017 07:48:52 +0000
Message-ID: <HE1P121MB001239049944E7C08C39B5118D2F0@HE1P121MB0012.EURP121.PROD.OUTLOOK.COM>
References: <dc29b128ae34d174f729f4d22cb1e489@xs4all.nl> <HE1P121MB0012C2A56A83DB5B004E3BE08D2E0@HE1P121MB0012.EURP121.PROD.OUTLOOK.COM> <0ad947db-efdc-ebcc-1b6f-6dd8b1074259@cisco.com> <8736.1510870569@obiwan.sandelman.ca> <17202.1510881395@obiwan.sandelman.ca>, <b2e569c3ed738d0de6782895a7c564a7@xs4all.nl>
In-Reply-To: <b2e569c3ed738d0de6782895a7c564a7@xs4all.nl>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
Authentication-Results-Original: spf=none (sender IP is ) smtp.mailfrom=sandeep.kumar@lighting.com;
x-originating-ip: [82.173.121.77]
x-ms-publictraffictype: Email
X-Microsoft-Exchange-Diagnostics-untrusted: 1; HE1P121MB0011; 6:4EhGsWNW28O5+6v68VtINoFNjFcu52w7fboOj/w2dWQmz/kPtip29yBnlOGmuAhGsPeq5mhOqlC/6F1ob/j39brb8S1TkWz1OtFElopPgYwp76thN4bC0YyuEGnxagcpEPDJqbvcSLm0yCtMizgyLi2ldQboCwYOzFcSKUBgiYG/6/1TNGLYlj7AJJi7mL6cHR041tmi4OdiFOMlnyWrPnJYT51GEGrimQ3DcArrw0jFP6xKUct57j628TxVNMCLzR+2Td1KbQf2zKbyFeFVAfEvtx9JY/WkTwz6X8zOxV2Cqvpg/mqHBnEIWaEjs6UR0v7togl/Uc2khr/BiK7JO6wud69FHyMyrWw9vHVYPKo=; 5:CjIpDjCpCVFB/PkmxMcqZNrAlI94xCl0YKBXXIUtYCKQMPiaoGTFCZn/DLCO99iXpSYx96DwQKMps1MW9s9lVYJgm8bo5nh+wEKYxaxxBqQ62xVKh9r1T4VvixE/DUml971aEJTq2oWEOiECu3DwbNTn29r9nprz/Uvc+b7asec=; 24:la8zqf7drgm5bq6cG14SAy5yR08U80qzmPoWU1jbUTo2gGyrf4FPBSK6qnAmG94iMGcnCBYsewuTstjBTe3D1JT6CLlUXUr981ZsokP5HIo=; 7:0Aj/Inyj9jpVEFJJEYrMQwQ+iD6XraiBSLSbK5nFTe2cj0TgtnSmIhU7mM8cBUkvDTLdwTTmWvGR7xeGh8TgCUIcYFJnIYM436rE2IYo8kUIpqLDnpf7T6q8mivvUypaW58pDvl2TaWFo60pNQVQPh0j8jxMFehU5QgWUB9MvnHuuCwolBEhxlIxd0mXi6N2a5WRNduukEx/CC1pXOram2WU5eN+I/24Y1BZmJoldHKOlMT5P5L64I5PQ84FqxXY
x-ms-exchange-antispam-srfa-diagnostics: SSOS;
X-MS-Office365-Filtering-Correlation-Id: ff4bad5b-1345-496d-244d-08d52d8fb4b9
X-Microsoft-Antispam-Untrusted: UriScan:; BCL:0; PCL:0; RULEID:(22001)(4534020)(4602075)(4627115)(201703031133081)(201702281549075)(2017052603258); SRVR:HE1P121MB0011;
X-MS-TrafficTypeDiagnostic: HE1P121MB0011:|AM5P121MB0051:
X-Microsoft-Antispam-PRVS: <AM5P121MB00517777AB4D9BACB319C782E42F0@AM5P121MB0051.EURP121.PROD.OUTLOOK.COM>
x-exchange-antispam-report-test: UriScan:(21532816269658); UriScan:(21532816269658);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(100000700101)(100105000095)(100000701101)(100105300095)(100000702101)(100105100095)(6040450)(2401047)(5005006)(8121501046)(100000703101)(100105400095)(93006095)(93001095)(10201501046)(3231022)(3002001)(6041248)(201703131423075)(201702281528075)(201703061421075)(201703061406153)(20161123558100)(20161123564025)(20161123562025)(20161123555025)(20161123560025)(6072148)(201708071742011)(100000704101)(100105200095)(100000705101)(100105500095);SRVR:HE1P121MB0011;BCL:0;PCL:0;RULEID:(100000800101)(100110000095)(100000801101)(100110300095)(100000802101)(100110100095)(100000803101)(100110400095)(100000804101)(100110200095)(100000805101)(100110500095);SRVR:HE1P121MB0011;BCL:0;PCL:0;RULEID:(100000700101)(100105000095)(100000701101)(100105300095)(100000702101)(100105100095)(6095135)(2401047)(8121501046)(5005006)(100000703101)(100105400095)(3231022)(10201501046)(93006095)(93003095)(3002001)(6055026)(6096035)(20161123561025)(20161123556025)(20161123563025)(201703131430075)(201703131448075)(201703131433075)(201703161259150)(201703151042153)(20161123565025)(20161123559100)(201708071742011)(100000704101)(100105200095)(100000705101)(100105500095);SRVR:AM5P121MB0051;BCL:0;PCL:0;RULEID:(100000800101)(100110000095)(100000801101)(100110300095)(100000802101)(100110100095)(100000803101)(100110400095)(400006)(100000804101)(100110200095)(100000805101)(100110500095);SRVR:AM5P121MB0051;
x-forefront-prvs: 049486C505
X-Forefront-Antispam-Report-Untrusted: SFV:NSPM; SFS:(10019020)(376002)(39860400002)(346002)(199003)(189002)(85714005)(7736002)(8676002)(105586002)(14454004)(189998001)(3660700001)(93886005)(8936002)(86362001)(4326008)(54896002)(9686003)(6306002)(3280700002)(68736007)(2900100001)(966005)(478600001)(53546010)(25786009)(6246003)(106356001)(236005)(81156014)(81166006)(7696004)(606006)(53936002)(50986999)(54356999)(74316002)(110136005)(76176999)(101416001)(2906002)(6506006)(66066001)(6436002)(316002)(55016002)(33656002)(97736004)(2501003)(2950100002)(102836003)(99286004)(5250100002)(6116002)(3846002)(229853002)(5660300001); DIR:OUT; SFP:1102; SCL:1; SRVR:HE1P121MB0011; H:HE1P121MB0012.EURP121.PROD.OUTLOOK.COM; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: lighting.com does not designate permitted sender hosts)
SpamDiagnosticOutput: 1:99
SpamDiagnosticMetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_HE1P121MB001239049944E7C08C39B5118D2F0HE1P121MB0012EURP_"
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1P121MB0011
X-CrossPremisesHeadersFilteredBySendConnector: LIGHT-EDGE-2.lighting.com
X-OrganizationHeadersPreserved: LIGHT-EDGE-2.lighting.com
X-EOPAttributedMessage: 0
X-Matching-Connectors: 131553785578398797; (); (fd2a86c0-868a-4d63-2575-08d435642d86)
X-MS-Exchange-Transport-CrossTenantHeadersStripped: HE1EUR02FT045.eop-EUR02.prod.protection.outlook.com
X-Forefront-Antispam-Report: CIP:13.81.48.91; IPV:NLI; CTRY:US; EFV:NLI; SFV:NSPM; SFS:(10009020)(336005)(376002)(346002)(39860400002)(39380400002)(2980300002)(199003)(85714005)(189002)(97736004)(5660300001)(966005)(498600001)(356003)(68736007)(7736002)(606006)(2950100002)(106466001)(2900100001)(189998001)(7696004)(81156014)(53546010)(93886005)(16586007)(316002)(5250100002)(105586002)(110136005)(81166006)(74316002)(84326002)(25786009)(14454004)(99286004)(69596002)(8676002)(3846002)(6116002)(53936002)(236005)(55016002)(260700001)(102836003)(61614004)(2906002)(2501003)(4326008)(9686003)(6306002)(54896002)(6246003)(8936002)(50986999)(86362001)(66066001)(76176999)(229853002)(33656002)(54356999)(512954002)(6506006); DIR:OUT; SFP:1101; SCL:1; SRVR:AM5P121MB0051; H:LIGHT-EDGE-2.lighting.com; FPR:; SPF:Neutral; PTR:InfoDomainNonexistent; A:1; MX:1; LANG:en;
X-Microsoft-Exchange-Diagnostics: 1; HE1EUR02FT045; 1:aAuCX5jJufCqky+TLto5a1kYh1t+ur/JU7Fir92sLY4m5xK60RbcycVEl9RFZnO2o28e1jz7ISyt7ui9+mst6anGlBJVD5Fcd1ajl6muaZjFkPhghXGHsY8Ia36p2T2e
X-Microsoft-Antispam: UriScan:; BCL:0; PCL:0; RULEID:(22001)(4534020)(4628075)(201703131517081)(2017052603258); SRVR:AM5P121MB0051;
X-Microsoft-Exchange-Diagnostics: 1; AM5P121MB0051; 3:Ea/Q2zftdWDN2vAxgYANXkwjE2d4yUyB3CUdI/dlxDVJcWlRTedg3ugel+pgV6Q9r2xhgDVaI5TY62P/M/olAWMriUHChVNVu4bTCleCogc2rBQx+UcqDm21TP4hexdHFwnJrtfoBD1uBDnqu5CWlGxamr/vljurSH4EposbsvtBF6Woz80kqpuYZSLe/WpQ9FsVEE6ivnNwgO7WPqEtnncO7n0xNccO8RVRuRwd8eIHcBU+by5aT/3vs1xB+9JNCM2csKjK+QWHDKUUT/ZmT2dGyUYDjF4svU8A3WpFy6e6VdCU85uNfwWaN4z65e6PrYUdr3V/RSSmsGMhg6nO1g==; 25:7TW5nAw2MX9Vw2+EEoVwv0EMSElDsVKOWfogdRqVJPNu1OH6AyvUDws7ggZTYEaDywEB4nDcY5fYJNmmv08ndplkcUwIpysH8OlmrvlKv+Se8UI2HfAeB3DNm6xMTpiSA2jVoqDlJYwvsrpl+kKf5/hOTiwOAAve85YGaFrZEl8IUpSsivF4TguJaPeQbChA4gx/Q/OHpRCmohG5bDwxwtu5Z0v7oEceD305VjrjVlq93AG00M7jsyAueiqglFR6OHQ+Gd0yLP1BmMwXNmdkhHAP40qnRd9+cEQqATg8zWqNv7Qp7PII7fMs5MlLfKnrKue5VwiCfN928sx4KwWnBw==; 31:P9I6tZL6I33Hmvd0f6ExfCDPnXpzqqs0eCmaLp3SEoFw9Nm4Xp7487lyiFpjRzlTtoIWDvWYHj+gsaUyiq2W+nWjfmsefN3RuCjtFOsDA//20sRT1Terfn8LRJMM+V9HmJNkTDLua7+kHyZHPfd/xdaN7ZP/G0kBkUSjWMq9MIJT57ZZJ+LkrvxBTMCEUTKHUBi6mVm+h8mXz71pI6gbRbPcCiikVxVttdF3YR5KkFY=
X-Microsoft-Exchange-Diagnostics: 1; AM5P121MB0051; 4:vvJj5+n22HXjp6FBV3IKgHUc8spTEr8q4/cYsMTXWvKzSbXR8UwxQ/GfRlC0/6rekctl0yuIIvLIzY/ZeI4d2ZFuRgTmJV2/6iu0h+HFv24ajWW7sFhykX32tOsx4IJiYbmfSecF9HD2ctAbOkaS9ytlmwyvTpV2ojUa1DbY8abOO5l12Ne3hPnxJ5yg0t/NUJVfuTuNOHMFQtPeHUimLMDX4KL/565KT8nK28qLpRB6hOmHB/FZmUEQX4sOiz7wAj3Qq4MNPXtrAZkoq6YRwrXvhzlizeu2TEoUMx2452Mu8BXCcKPpfEMss5MI/Zup
X-Forefront-PRVS: 049486C505
X-Microsoft-Exchange-Diagnostics: 1; AM5P121MB0051; 23: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
X-Microsoft-Exchange-Diagnostics: 1; AM5P121MB0051; 6:DFTC7txDYFlOxzypJ3lhI+zzFLKhjdCd0YpIKHs2dWtaByHvcHx6YcMopsta6UNoDZOWFuM9wOoa0O8VF2ojyp1jam1kXTLrdxRSRIYGqvrfHmGO26dyMsQjoyvr48zASNp5vc9xjbSs8+UXf4RYHoDNXIYeklAxwq3OfB+Ft+E/Bz26HL6K0Mu3v2NbxcAH/XRO1l4OqTuSpxUaRlJgD/8wajko7H2370xCDdbSqOs1j+NinuqEtc6dFMTewdMvKdd3GuXAMqBJdYmEJ2Aw0jVlkFwrZ3pAQmQ+0B/pj1LKFQU8E99XQ2UDHSiMr6ANHKKVyCb4EKSYx1pY93ezy/Icz9VS2LLzdzOBgmCPDAU=; 5:lpElAxRaJkchNe82o01EpjkoZ6nYJhOkMPaos1nHQvyx0EQLMwM2zwhKGdD7/MnuoAoNl+xxtvFxIWrTkuWsVckk0SQ0TZ8O5OHRea+k9iinQGuKzN/9sHhiBoAiomZGZNfDw5ihgaFQwLuX9NNUfOBapVxo7P4wbN7Y46H/Izc=; 24:Kmr4UhiDHnvK97XDSyUnO9Pp1svL3rcZ0Ip+cKFu3K7e8nwFzmxADLg80dYMWmy6BGBd03q6N1MJBJONgtIK20DFv2tB016HvHLXSh5Oaw8=; 7:36LqVdTe2hzHo0j7MsucWUlf+AjGIJ49yjruG44aFVKaDo7dyCqhiLoNIe6U8UJFJZA/uEq95qgIC7b5NF3kRMeU79Zj2MGJGH6rAWUnlHMOLkzakWfoASJPl5WM6cxm0moHFXj22HHmw1ZztQW27K+j1j6QbFUkNK6YgeMWOWo55sViAAEMM/ogQNnvxhH7ovzjWH2nRSidbK/H/QLBA0IpdI8nb74I0G/g2odt3tHpHN3LPc+qlppC48cNHF5l
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 17 Nov 2017 07:49:17.6367 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: ff4bad5b-1345-496d-244d-08d52d8fb4b9
X-MS-Exchange-CrossTenant-Id: 5afe0b00-7697-4969-b663-5eab37d5f47e
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=5afe0b00-7697-4969-b663-5eab37d5f47e; Ip=[13.81.48.91]; Helo=[LIGHT-EDGE-2.lighting.com]
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM5P121MB0051
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/-lABn7kMItgWx4qecJdXs7V5Hhs>
Subject: Re: [Ace] DTLS proxy in EST-coaps
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 17 Nov 2017 07:49:25 -0000

DTLS relaying draft was in DICE wg. The WG was not chartered for the activity. Other SDOs picked it up and filed the gaps.

Sandeep
________________________________
From: Ace <ace-bounces@ietf.org> on behalf of peter van der Stok <stokcons@xs4all.nl>
Sent: Friday, November 17, 2017 3:09:35 AM
To: Michael Richardson
Cc: ace@ietf.org
Subject: Re: [Ace] DTLS proxy in EST-coaps


> I'm slowly absorbing the contents of draft-vanderstok-ace-coap-est-02.
> I'm building draft-ietf-6tisch-zerotouch-join with the assumption that
> it
> might run over DTLS, use EDHOC w/OSCORE, or some DTLS-over-CoAP
> mechanism.

Good
>
> I looked through section 6, and I don't understand why COAPS would be
> used
> From the Registrar through an ESTcoaps-to-HTTPS Proxy to the MASA. The
> Registrar as not in the constrained networks, and can speak HTTPS just
> fine.
> That's why we proxy the COAPS traffic to the Registrar, so that the
> Registrar does not have to live (entirely) in the constrained network.

If this is a unrealistic use case, it should go from the document.
>
> So, in the ANIMA BRSKI context, we have the Join Proxy to connect the
> insecure
> (unencrypted) network with the JRC as we can not assume the registar
> (JRC) is
> within radio distance of all pledges.
>
> For EDHOC and DTLS-over-COAP, we can use the option as described
> in draft-ietf-6tisch-minimal-security section 5.1 to keep the proxy
> stateless.
>
> For DTLS, I thought we had a few IDs on how to relay DTLS in a
> stateless manner.
> I can't seem to find any (Yes, I did look through expired drafts too).

You mean expired est-coaps drafts?
Indeed, the draft never considered these, assuming they were off topic
and were adequately treated elsewhere.
The next version of est-coaps draft will be less BRSKI oriented and I
think the subject of stateless join proxy is off topic. (BTW they are
systematically called "circuit proxy" in keyinfra draft).
>
> Are there some options for DTLS?
> Is there a way to statelessly (on the join proxy) relay traffic?
>
> --
> Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works
>  -= IPv6 IoT consulting =-
>
>
>
>
> _______________________________________________
> Ace mailing list
> Ace@ietf.org
> https://www.ietf.org/mailman/listinfo/ace

_______________________________________________
Ace mailing list
Ace@ietf.org
https://www.ietf.org/mailman/listinfo/ace

________________________________
The information contained in this email may be confidential and/or legally protected under applicable law. The message is intended solely for the addressee(s). If you are not the intended recipient, you are hereby notified that any use, forwarding, dissemination, or reproduction of this email is strictly prohibited and may be unlawful. If you are not the intended recipient, please contact the sender by return e-mail and destroy all copies of the original email.