Re: [Ace] EST over CoAP in ACE wg

Martin Furuhed Nexus <martin.furuhed@nexusgroup.com> Thu, 24 November 2016 18:17 UTC

Return-Path: <martin.furuhed@nexusgroup.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3D5F5129509 for <ace@ietfa.amsl.com>; Thu, 24 Nov 2016 10:17:31 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.902
X-Spam-Level:
X-Spam-Status: No, score=-1.902 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=technologynexus.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UKgPGuK-BaPg for <ace@ietfa.amsl.com>; Thu, 24 Nov 2016 10:17:29 -0800 (PST)
Received: from EUR02-AM5-obe.outbound.protection.outlook.com (mail-eopbgr00112.outbound.protection.outlook.com [40.107.0.112]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BD864129893 for <ace@ietf.org>; Thu, 24 Nov 2016 10:17:28 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=technologynexus.onmicrosoft.com; s=selector1-nexusgroup-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=5jdx5Ix4z7nBu2Bnxn1C1BLckhixX5CJqhnWAoS4N8c=; b=bW+oDw8XwDSJRTveQqjmeb8ajw662n+YPfat2AmpiN7nHDJq+zmTulXIIKb65L6BfRL0/W78AmIjwwMvY+5lTvYoVBVBAxCtMxyv8RX8l38ka67OhLvBonon8q6FLFFAuFiX8OgC2WM/uFbmAMvLS0tuPgPxQ5XGG340/tsLdgM=
Received: from VI1PR0201MB1886.eurprd02.prod.outlook.com (10.167.206.152) by VI1PR0201MB1886.eurprd02.prod.outlook.com (10.167.206.152) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P384) id 15.1.734.8; Thu, 24 Nov 2016 18:17:26 +0000
Received: from VI1PR0201MB1886.eurprd02.prod.outlook.com ([10.167.206.152]) by VI1PR0201MB1886.eurprd02.prod.outlook.com ([10.167.206.152]) with mapi id 15.01.0734.014; Thu, 24 Nov 2016 18:17:26 +0000
From: Martin Furuhed Nexus <martin.furuhed@nexusgroup.com>
To: "ace@ietf.org" <ace@ietf.org>
Thread-Topic: [Ace] EST over CoAP in ACE wg
Thread-Index: AQHSRn8C/WaJf3aGvk2tAA9Zggej7g==
Date: Thu, 24 Nov 2016 18:17:25 +0000
Message-ID: <CA8F9730-844F-47C7-B0B5-7FB0EB93691D@nexusgroup.com>
Accept-Language: sv-SE, en-US
Content-Language: sv-SE
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=martin.furuhed@nexusgroup.com;
x-ms-exchange-messagesentrepresentingtype: 1
x-originating-ip: [83.241.229.132]
x-microsoft-exchange-diagnostics: 1; VI1PR0201MB1886; 7:/0majNSL+yyoc0t4+PZHEcvA4A2rfhkqqApJDrA5Pp2/Y2jxGUcZA7NPdh5FOswjnEHMhGREczmVMAU3qt7h4r6Plx42sgVM2l4+EI+ZwuEinAdzqRsxAPUQClMw0zLIUnRGQ08dRiBdKfkiFPQgjnj79VVu3Q+6C+kRP7Y8ZWUJMA8r3DtNnq5UdcbH6EOX6C3Q2q/58Z2UhroASWtemtdPwxTbvLO5izqb3mcEZk6r6190ocyV/N2E4EgtrhbIVF1mi2oNTrjbUCB1DFbrmEUETYAohx+i2P5TZeUArm7ALrLgxg9p7zAwAtKKpOWrusQ6CqhZB+iMKC7Q9vd05BCWllMWKMScxfMZgP4SPvI=
x-ms-office365-filtering-correlation-id: 1f4446bd-3c34-45bc-32ea-08d4149624cb
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(22001); SRVR:VI1PR0201MB1886;
x-microsoft-antispam-prvs: <VI1PR0201MB18862D6237DA60CC6B208D5CE1B60@VI1PR0201MB1886.eurprd02.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(158342451672863)(21748063052155);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6045199)(6060326)(6040361)(601004)(2401047)(8121501046)(5005006)(10201501046)(3002001)(6061324)(6041248)(20161123562025)(20161123564025)(20161123555025)(2016111802025)(20161123558021)(20161123560025)(6043046); SRVR:VI1PR0201MB1886; BCL:0; PCL:0; RULEID:; SRVR:VI1PR0201MB1886;
x-forefront-prvs: 0136C1DDA4
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(6009001)(7916002)(199003)(189002)(53754006)(3280700002)(39380400001)(39410400001)(5640700001)(2351001)(77096005)(122556002)(101416001)(3660700001)(6116002)(33656002)(2906002)(8676002)(86362001)(54356999)(92566002)(2900100001)(450100001)(50986999)(106356001)(83716003)(5660300001)(82746002)(102836003)(105586002)(3846002)(106116001)(189998001)(6512003)(6916009)(6506003)(97736004)(8936002)(38730400001)(110136003)(81166006)(229853002)(36756003)(2501003)(68736007)(7846002)(1730700003)(81156014)(7736002)(66066001)(39390400001)(107886002)(39400400001)(104396002); DIR:OUT; SFP:1102; SCL:1; SRVR:VI1PR0201MB1886; H:VI1PR0201MB1886.eurprd02.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: nexusgroup.com does not designate permitted sender hosts)
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_CA8F9730844F47C7B0B57FB0EB93691Dnexusgroupcom_"
MIME-Version: 1.0
X-OriginatorOrg: nexusgroup.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Nov 2016 18:17:25.8026 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 89f9cd6f-fab5-4f61-a85e-b1b24768f7f6
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR0201MB1886
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/Bi1lnYmLCw8cUbsDBxl8COU_ydg>
Subject: Re: [Ace] EST over CoAP in ACE wg
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 Nov 2016 18:17:32 -0000

Hi All,

My first post after joining the list.

As mentioned by Shahid and Samuel, Nexus Group and SICS began a joint project over a year ago for enabling constrained devices enroll for certificates using EST over CoAP.
A standard EST server add-on will soon be part of the Nexus Certificate Manager CA software. Additional EST CoAP server work is now done in parallel with the work on the SICS EST CoAP client. Our current implementation shares many similarities to the draft, and the objective is to update and align our implementation to the draft going forward. We would be happy to contribute experience together with SICS based on our ongoing work.

Kind regards,
Martin Furuhed
Product Manager
Nexus Group, Sweden