Re: [Ace] I-D Action: draft-ietf-ace-key-groupcomm-oscore-16.txt

Marco Tiloca <marco.tiloca@ri.se> Mon, 06 March 2023 21:42 UTC

Return-Path: <marco.tiloca@ri.se>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 385FAC152EF0 for <ace@ietfa.amsl.com>; Mon, 6 Mar 2023 13:42:23 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.096
X-Spam-Level:
X-Spam-Status: No, score=-2.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, NICE_REPLY_A=-0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ri.se
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id XimxM4RJSKIa for <ace@ietfa.amsl.com>; Mon, 6 Mar 2023 13:42:18 -0800 (PST)
Received: from MM0P280CU005-vft-obe.outbound.protection.outlook.com (mail-swedensouthazlp170110001.outbound.protection.outlook.com [IPv6:2a01:111:f403:c203::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 586EAC14E511 for <ace@ietf.org>; Mon, 6 Mar 2023 13:42:17 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=UJn3LBebKvCcEUre91Uka2yvZmrenDemmpnc1Huj1mmXK6srjM+0nmxMXiNuMT0HJbyoIVQWSWQttjU4CjPsw/J0V02/jAb0sI+sAppRpK02zfLd6eR730drUIBHtODHnePq8m4b3lqoFA7e5rZDYRhE40LuBKGZCKy7V+E3mwzhjlnikw2b5p6Ybp9W8Pc5877nbRcpDi5epH0bunxmy3lnrZwDIAtN/cWaJTQNQkiwHHmuuAHvKZnrEthhcRsUg+WmAfET00F2I1ARGz4HHHnTNqCctpGlp8FlwnFJ+kkLHnuhFT0fRFGhocUiyh/p4fgbN6M9xj97elIAKLyb5A==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=EXlxEPl5f8loIFOqWTcwiZkc72fo4sS46+Kg5lTy38E=; b=IEoUvnFObBTU4EuzHmLCyWhRoAmcetLoX3foPWZqHIvBgarsAZ6wn7OLUSbRLPl39DGZLrKBNqhp+h/HEw0FGY5XcRfuF11/N7Bg2cIbOMy0kInf+biqvuW0M6Bj5qUOrkUG5nYPem2NYuvSbVFS3HYIfz+FmcDFS0vxFL147zCBGX482v8RAubGVzTvSy3Pq//ryBYSgOJD6+XW65UYL+rA7sWyEITrXFSUMqz1hJV0nxPDV4mMWBKxXEuubyw8lF0L4Wou4S+E7Lmtwyixhw3alWa0zqJHcAc5gIaO81ZER/AVSWQ9cneIceLSDNo18NEOX021nd+xtOrw74ktJw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ri.se; dmarc=pass action=none header.from=ri.se; dkim=pass header.d=ri.se; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ri.se; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=EXlxEPl5f8loIFOqWTcwiZkc72fo4sS46+Kg5lTy38E=; b=D859FSk5XTEAa9jKNuvWeYVh/bOuAV2IB6QUaqkOT56HEcnXq4OGLvek+Kv8P8MmH5G8/zHWH59kvLFIAllKv1usYveSi+rPPXCwpLaBtP2TWryzGnAjJa+4OSaK3XEeKQL6VUhdU9FMeF6Tpa3u/bIhaTAMVZcXPemIkDiMgQQ=
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ri.se;
Received: from GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:37::17) by GVZP280MB0918.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:f5::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6156.28; Mon, 6 Mar 2023 21:42:14 +0000
Received: from GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM ([fe80::c92:6f2f:7738:ed9b]) by GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM ([fe80::c92:6f2f:7738:ed9b%9]) with mapi id 15.20.6156.029; Mon, 6 Mar 2023 21:42:14 +0000
Message-ID: <08171693-3561-9bbf-2752-24c230d89ae3@ri.se>
Date: Mon, 06 Mar 2023 22:42:12 +0100
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:102.0) Gecko/20100101 Thunderbird/102.7.1
Content-Language: en-US
To: Ace Wg <ace@ietf.org>
References: <167813720730.46898.870988783951511647@ietfa.amsl.com>
From: Marco Tiloca <marco.tiloca@ri.se>
In-Reply-To: <167813720730.46898.870988783951511647@ietfa.amsl.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------UZwfQA91bXXeHa49K7u43Ev2"
X-ClientProxiedBy: FR0P281CA0075.DEUP281.PROD.OUTLOOK.COM (2603:10a6:d10:1e::10) To GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:37::17)
MIME-Version: 1.0
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: GVYP280MB0464:EE_|GVZP280MB0918:EE_
X-MS-Office365-Filtering-Correlation-Id: 3516272b-0119-4e68-f394-08db1e8ba694
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230025)(4636009)(396003)(366004)(39860400002)(376002)(136003)(346002)(451199018)(8936002)(33964004)(53546011)(6506007)(26005)(86362001)(186003)(966005)(6486002)(31696002)(6512007)(38100700002)(166002)(66574015)(2616005)(44832011)(36756003)(83380400001)(21480400003)(235185007)(478600001)(5660300002)(2906002)(45080400002)(316002)(41300700001)(31686004)(66556008)(66946007)(66476007)(6916009)(8676002)(43740500002)(45980500001); DIR:OUT; SFP:1101;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: /fJs78WB8ee9E8TmqITxQyeHxBRNyhqTubKQpgwte9RmZu37ll/cJhU0KhOrM8PLgpupLdlmHfSRp6dTl5OSqYmHv6XYNJHVxe4MCokaooxCRQ1TyLiYy+O8V+HY0xXlLxzE/xP7nKRJjKCjbTE9qBOzx1EGsI4UxQTayGDfl+TuNkUnHcZ+TXfOEl4KeAq4urvQou5tUejFjYY53Tu4MGUKXCYoBREuX8QKjHDrHVrvOZbj9KzdSPu+Zk2G1VhQw+ZFJ5MFCkTZfLQK7yOxiK4LI6ShHa+UFpsm2fu+fJgS8lDXIOQwrhabnjf+lUm4/oPbD8aR0NO6onVzOTLmVhHv/rSH2D0Y01vw/i04cmlT3W9/h0bo5J+eXeABO3KoENtQgK4XmiF9sW2kJnBv9pMQ8GOFVrsAnRrTggJ4npuRfxvEfI3r5jJ3o8k7ZjyaOMIgHsoQ/5v/rT+oA3SkORXEkaBC0xNiqoPh5To6bLtglYtHY7ZuslWJVI0dEjj1ME6CHwM/4DYWzSbuTjlVCvYwqnMZLAvOpdbJiW2NJM6HAM3ZvpqZbyvVfu/tf+hApF1ycfBnxHRRZbYl05DHpl8sKqNJgNLpzQ1MhqXKnhyE/Gmmodws9C/m16Ka2yJINfYcVA0MUWw0ceAY4AMDXuXrHJ3wynKtHj3G46i3Zy3PAle1nWfnt5WKaGltzABdhlDo0pXYDlMZyStaAUgB1j/T6TBURSbtIg80tDHkCkEBsb1nPvkNXSPDRhL0eT2Bj/EL8z9tMWktOQkemhaYTA3Xkc8DeNT4HLGG9bGz3gWoUkwfnOWZiFzPEvdasjSMeGT6uNFGrfIahTUKgaqagK77hedeezq1eWj2mD7IsZivw1S2D+OXsiUbEXMdABsf8o338qnPrM/65zqFzAxHY1ALAjElqMtI+PaVd1/Y2NLbDROHbKzW1Wv4SyoIr+qRXYzD1oLsMU6zKDnrHMzZYJQgHzk2fVqvSUkqx9SONZcPOjJV6GE8DKeAO5zUmygFMu+JfYbz0debBX9Y5GWwsEA1L8QgDzEqyLiRw+Z4capm4RS5FrN5feNk2Ei5jJdF3HGYH8NjBGTbTfJzd2Z7bs5GHCWqfLVWktPGrXEHFPjVRqRGIDBmzWPlI2fLPLHBhAEu7yAOwXf6g0+wwMiLF0vj1+feDSIul0AXOXsbRM3OEj9/X9YITH9GF0syL4dXWIH3GhLoV8Bz1yXFwvASwo9Y4W9Yqe3lZkTpBmDDAaSyubjK9m1KH8VtF9S0Vj+h4AdDnmk0pQJE0L15E+WuXFQKy0HThmovBLa76axxe79rHbVrjTFyw1ciPW6tzr63JiCTsErmZEj3RlPz9gbC93bzkXl7c1p1j4tzsLYNhyFZdupbYUiKBHV4IJECwHgLl0+aQ75ratblqXPdEAs7Vlt0OIRgGID7uZ9iL+dOhm628ktqnVAsoqKq7L28cumRT7fXjSqVcsetbWlngrjsRKhH8IUWUuoP10DXG31TT4FlVs49lXo/bnJwX/YhbJejr+Rk4THuLY+qhBm30Xgt6cX5IfwPX1BWygseH4q9YTPfstA0HEyqLzHi0Ze2O/aw
X-OriginatorOrg: ri.se
X-MS-Exchange-CrossTenant-Network-Message-Id: 3516272b-0119-4e68-f394-08db1e8ba694
X-MS-Exchange-CrossTenant-AuthSource: GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 Mar 2023 21:42:14.8217 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: lKoilsz5CxuxldVxTh8sbM5atC7JYt4BIwMLYG01mcuJ8IU4fJjNAPgq3DfTUApeEBrL7FHcvQE94ANCGMPyxA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: GVZP280MB0918
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/DDwVCQTP7_0a-aIeNLvDXkiiK7M>
Subject: Re: [Ace] I-D Action: draft-ietf-ace-key-groupcomm-oscore-16.txt
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 06 Mar 2023 21:42:23 -0000

Hello ACE,

I have just submitted version -16 addressing the Shepherd's review from 
Rikard (thanks a lot!)

This version of the draft should be ready for submission to the IESG.

Best,
/Marco

On 2023-03-06 22:13, internet-drafts@ietf.org wrote:
> A New Internet-Draft is available from the on-line Internet-Drafts directories.
> This Internet-Draft is a work item of the Authentication and Authorization for Constrained Environments WG of the IETF.
>
>          Title           : Key Management for OSCORE Groups in ACE
>          Authors         : Marco Tiloca
>                            Jiye Park
>                            Francesca Palombini
>    Filename        : draft-ietf-ace-key-groupcomm-oscore-16.txt
>    Pages           : 104
>    Date            : 2023-03-06
>
> Abstract:
>     This document defines an application profile of the ACE framework for
>     Authentication and Authorization, to request and provision keying
>     material in group communication scenarios that are based on CoAP and
>     are secured with Group Object Security for Constrained RESTful
>     Environments (Group OSCORE).  This application profile delegates the
>     authentication and authorization of Clients, that join an OSCORE
>     group through a Resource Server acting as Group Manager for that
>     group.  This application profile leverages protocol-specific
>     transport profiles of ACE to achieve communication security, server
>     authentication and proof-of-possession for a key owned by the Client
>     and bound to an OAuth 2.0 Access Token.
>
>
> The IETF datatracker status page for this Internet-Draft is:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-ace-key-groupcomm-oscore%2F&data=05%7C01%7Cmarco.tiloca%40ri.se%7Cfdc72ff7770b41e5949f08db1e87a666%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638137340189013353%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=tfO5wTEdDPN2S%2Bu6gzqMOmpUTLIybxKznAipPVvz1Oo%3D&reserved=0
>
> There is also an HTML version available at:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Farchive%2Fid%2Fdraft-ietf-ace-key-groupcomm-oscore-16.html&data=05%7C01%7Cmarco.tiloca%40ri.se%7Cfdc72ff7770b41e5949f08db1e87a666%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638137340189013353%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=uca9tq6rbAwBDwQlz58w8wue3tsu96dozx%2Fwd%2FUviv4%3D&reserved=0
>
> A diff from the previous version is available at:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fauthor-tools.ietf.org%2Fiddiff%3Furl2%3Ddraft-ietf-ace-key-groupcomm-oscore-16&data=05%7C01%7Cmarco.tiloca%40ri.se%7Cfdc72ff7770b41e5949f08db1e87a666%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638137340189013353%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=dicb9CfYAADXPH688hv7Jr3BtEkfkA5%2FI%2B%2BLOgBJCDU%3D&reserved=0
>
>
> Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts
>
>
> _______________________________________________
> Ace mailing list
> Ace@ietf.org
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Face&data=05%7C01%7Cmarco.tiloca%40ri.se%7Cfdc72ff7770b41e5949f08db1e87a666%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638137340189013353%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=%2BMjc8uj7D1mctEef%2BfirjYZKlzZYdI9w3CuPlb5yy9Q%3D&reserved=0

-- 
Marco Tiloca
Ph.D., Senior Researcher

Phone: +46 (0)70 60 46 501

RISE Research Institutes of Sweden AB
Box 1263
164 29 Kista (Sweden)

Division: Digital Systems
Department: Computer Science
Unit: Cybersecurity

https://www.ri.se