Re: [Ace] Working group adoption of draft-vanderstok-ace-est

"Beck, Stefan" <S.Beck@osram.com> Thu, 01 February 2018 11:52 UTC

Return-Path: <S.Beck@osram.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DBF9512DA06 for <ace@ietfa.amsl.com>; Thu, 1 Feb 2018 03:52:03 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.02
X-Spam-Level:
X-Spam-Status: No, score=-2.02 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=osram.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id f8rxZALjmivx for <ace@ietfa.amsl.com>; Thu, 1 Feb 2018 03:52:01 -0800 (PST)
Received: from EUR03-VE1-obe.outbound.protection.outlook.com (mail-eopbgr50061.outbound.protection.outlook.com [40.107.5.61]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8441012D881 for <ace@ietf.org>; Thu, 1 Feb 2018 03:52:00 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=Osram.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=HGEorGwtP8Zrn4kEF6SQqmudz9MlxfCSagZmDL+DZys=; b=Hm2kwdayu2XbaN0pVxhIbJPK48tfn4Wk2CqMoVJpqQXdRMltWiAuCVmr9nTiD8ZUcbr/t9uqobc4qBBK10wGCrv+xIbAOc75nNIIGcEYyoyMTSEhGsHBLMrVdDi/wHJ3w6Kkik/mvmDB3sXFnt7Kega8MhpDjhOlp3NAQTYyU8s=
Received: from DB6PR07MB3415.eurprd07.prod.outlook.com (10.175.234.18) by DB6PR07MB3272.eurprd07.prod.outlook.com (10.175.233.31) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.464.6; Thu, 1 Feb 2018 11:51:57 +0000
Received: from DB6PR07MB3415.eurprd07.prod.outlook.com ([fe80::6598:cd6c:bde5:5c6d]) by DB6PR07MB3415.eurprd07.prod.outlook.com ([fe80::6598:cd6c:bde5:5c6d%13]) with mapi id 15.20.0464.012; Thu, 1 Feb 2018 11:51:57 +0000
From: "Beck, Stefan" <S.Beck@osram.com>
To: "ace@ietf.org" <ace@ietf.org>
Thread-Topic: [Ace] Working group adoption of draft-vanderstok-ace-est
Thread-Index: AdOaBxPvuhazfivPQR6hGrReGsdXHwBQaEFA///0YYD//+S7MA==
Date: Thu, 01 Feb 2018 11:51:57 +0000
Message-ID: <DB6PR07MB341528B44D1320B3525C005C85FA0@DB6PR07MB3415.eurprd07.prod.outlook.com>
References: <010f01d39a08$255723c0$70056b40$@augustcellars.com> <DB6P121MB005604AACB19B414668CE0FF8DFA0@DB6P121MB0056.EURP121.PROD.OUTLOOK.COM> <B36EFBB4-DC5F-456A-9BC0-4D75617BC7B5@ri.se>
In-Reply-To: <B36EFBB4-DC5F-456A-9BC0-4D75617BC7B5@ri.se>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=S.Beck@osram.com;
x-originating-ip: [32.66.115.42]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; DB6PR07MB3272; 7:VBt70vw6BhIQ/eYksCPOa56QMNL+9wVswWdeHX9z2C2H6BdseEpNCGVcKAVmJkYRPJ37gGpXJCLjWqdr4MJMk7o/1IGbiPCpo372OGJGPbfv5wTjb6tNxuINxho+ABEkuum4oQN62jAp6Uj7SBhNM/NQiIKxzLvjMHcjQqaSOCtOOv9GV/wRtPAW+r+skfF/EStUHFuTeowBL6/ekt8zavWH9bqx5Ka9dHF61yzk7zLhkcKvl1CIsR+OA5aR5lNO
x-ms-exchange-antispam-srfa-diagnostics: SSOS;
x-ms-office365-filtering-correlation-id: 28fedd12-0da0-4d0b-c6ec-08d5696a324e
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(4534165)(4627221)(201703031133081)(201702281549075)(5600026)(4604075)(3008032)(2017052603307)(7153060)(49563074)(7193020); SRVR:DB6PR07MB3272;
x-ms-traffictypediagnostic: DB6PR07MB3272:
x-microsoft-antispam-prvs: <DB6PR07MB32720856BDD54100C8CCC02485FA0@DB6PR07MB3272.eurprd07.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(192374486261705)(260087099026482);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(102415395)(6040501)(2401047)(8121501046)(5005006)(93006095)(93001095)(3231101)(2400082)(944501161)(3002001)(10201501046)(6041288)(20161123564045)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123560045)(20161123558120)(20161123562045)(6072148)(201708071742011); SRVR:DB6PR07MB3272; BCL:0; PCL:0; RULEID:; SRVR:DB6PR07MB3272;
x-forefront-prvs: 0570F1F193
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(376002)(366004)(39860400002)(396003)(346002)(39380400002)(199004)(189003)(13464003)(85714005)(33656002)(5660300001)(81156014)(1730700003)(8676002)(55016002)(7736002)(66066001)(76176011)(81166006)(102836004)(7696005)(8936002)(106356001)(6506007)(53546011)(26005)(99936001)(2900100001)(59450400001)(2351001)(14454004)(99286004)(53386004)(6246003)(5640700003)(2906002)(97736004)(316002)(186003)(25786009)(5250100002)(229853002)(966005)(478600001)(72206003)(6306002)(305945005)(2501003)(6116002)(68736007)(3846002)(9686003)(74316002)(3280700002)(105586002)(53936002)(3660700001)(6436002)(86362001)(6916009)(2950100002); DIR:OUT; SFP:1101; SCL:1; SRVR:DB6PR07MB3272; H:DB6PR07MB3415.eurprd07.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: osram.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: vHz22FYZMhH9vrpQCPj0rV/qkA/yd7oJ7v8wCR7FV6Q0CIQE0lstwyzr41evhYP92NCawevPbKzpktgoqb9ETw==
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/signed; protocol="application/x-pkcs7-signature"; micalg="SHA1"; boundary="----=_NextPart_000_005E_01D39B5B.7096DA20"
MIME-Version: 1.0
X-OriginatorOrg: Osram.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 28fedd12-0da0-4d0b-c6ec-08d5696a324e
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 Feb 2018 11:51:57.3172 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: ec1ca250-c234-4d56-a76b-7dfb9eee0c46
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB6PR07MB3272
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/g0aaY1Pu-XhZ-OH8FWbtklhdEg0>
Subject: Re: [Ace] Working group adoption of draft-vanderstok-ace-est
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 01 Feb 2018 11:52:04 -0000

+1
I support adoption, as it perfectly complements the existing EST work.

So far, just one general comment:
The draft could emphasize (e.g. in the intro) that coexistence of EST and EST-coaps is supported in target deployments. And you even may have a combination of constrained devices in a non-constrained network and vice versa.
If that matches the authors’ view, then some general statements need to be adapted. Two examples see below

Stevie


1. Abstract:
 "This allows low-resource constrained devices to re-use existing EST functionality. Example low-resource use cases for EST are: secure bootstrapping and certificate enrollment."

Well, to me those are the two main use cases for non-constrained devices using EST, too. So I would write:
 "This allows low-resource constrained devices to re-use existing EST functionality to implement use cases such as secure bootstrapping and certificate enrollment."


2. Chapter 3.5 (Deployment limits):
2a. " Although EST-coaps paves the way for the utilization of EST for constrained devices on constrained networks..."
--> s?on?and/or?

2b. " EST-coaps is intended to ensure that EST works for networks of constrained devices that choose to limit their communications stack to UDP/CoAP."
--> Remove "networks of"

---------------------
From: Ace [mailto:ace-bounces@ietf.org] On Behalf Of Shahid Raza
Sent: Thursday, February 01, 2018 11:56 AM
To: Sandeep Kumar <sandeep.kumar@philips.com>
Cc: Jim Schaad <ietf@augustcellars.com>; ace@ietf.org
Subject: Re: [Ace] Working group adoption of draft-vanderstok-ace-est

As a co-author, I also strongly support the adoption of this draft as a WG document. Recall that , we already have an implementation of this draft, both in constrained devices (SICS Contiki) and in the Nexus CA software. Recently, we have also implemented the "integration of this draft into LwM2M", which is part of the latest LwM2M release.  

Best,
Shahid

Shahid Raza, PhD
Director Security Lab and Expert Researcher
RISE - Research Institutes of Sweden
Division ICT - RISE SICS

Isafjordsgatan 22 / Kistagången 16 
16440, Kista Stockholm 
Mobile: +46 768831797 
shahid.raza@ri.se 
http://www.shahidraza.net 
http://www.sics.se 
The RISE institutes Innventia, SP and Swedish ICT have merged in order to become a stronger research and innovation partner for businesses and society.


On 1 Feb 2018, at 11:40, Sandeep Kumar <sandeep.kumar@philips.com> wrote:

As co-author, I support adoption of the draft as WG document. There is need in industry and multiple standardization bodies for this draft.

Regards
Sandeep

-----Original Message-----
From: Ace [mailto:ace-bounces@ietf.org] On Behalf Of Jim Schaad
Sent: Tuesday, January 30, 2018 9:23 PM
To: ace@ietf.org
Subject: [Ace] Working group adoption of draft-vanderstok-ace-est

This is the start of a two week call for input on the adoption of the WG of the document draft-vanderstok-ace-est.  The document has been presented at the last two meetings and has some significant recent updates to respond to feedback.  There seemed to be support at the last F2F to adopt.

Please provide feedback to the list/chairs if you believe that this document
should be adopted as a WG document.    The adoption call will end on Feb 13
2018.

Jim


_______________________________________________
Ace mailing list
Ace@ietf.org
https://www.ietf.org/mailman/listinfo/ace

________________________________
The information contained in this email may be confidential and/or legally protected under applicable law. The message is intended solely for the addressee(s). If you are not the intended recipient, you are hereby notified that any use, forwarding, dissemination, or reproduction of this email is strictly prohibited and may be unlawful. If you are not the intended recipient, please contact the sender by return e-mail and destroy all copies of the original email.

_______________________________________________
Ace mailing list
Ace@ietf.org
https://www.ietf.org/mailman/listinfo/ace