Re: [Ace] I-D Action: draft-ietf-ace-key-groupcomm-oscore-15.txt

Marco Tiloca <marco.tiloca@ri.se> Mon, 05 September 2022 17:24 UTC

Return-Path: <marco.tiloca@ri.se>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 76E44C1522CC for <ace@ietfa.amsl.com>; Mon, 5 Sep 2022 10:24:58 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.109
X-Spam-Level:
X-Spam-Status: No, score=-2.109 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, NICE_REPLY_A=-0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ri.se
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Avs09he-7R5A for <ace@ietfa.amsl.com>; Mon, 5 Sep 2022 10:24:54 -0700 (PDT)
Received: from emea01-obe.outbound.protection.outlook.com (mail-swedencentralazon11011002.outbound.protection.outlook.com [52.101.81.2]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D837EC1522C4 for <ace@ietf.org>; Mon, 5 Sep 2022 10:24:53 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Aza9uvTCw0kmnURa5v2LI24bPcDxC31bA5+vuUMa+vMG6Q7sQLSJQnBE2oMkIpsALI9Ahejvh6y2BwAPSoLuT5p/toASi3au1Y7TDILlwPWhElh7YeYtUFnof2Np0TeYpUMtNDQ9sbyPYA7r/qtn9Vc0OtnidKEgm+POG3wFiwozAFi3x9iKKOKzpUzq0j9QwaplWtKb9WE3V07SsZrHZMDPy311xym7buAh5ULiQX5y+FatJtIyjQCpf3V0ghbPGbB0kw3JzWivKzjCWRrtx4dYVBbzyO01pEW10EhfT3/BWsnSXs+x1pNAKcATLRzrQPA/YuY3EvywJfg0YuLh0Q==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=XviTQfHyFdnkC8GLFLm+M2KKMoiuBzjtUqvdKDKGqZw=; b=PO4UtYNrP82As0lcJE7aHhTqedWttJth4lsmb+gTDet78cw6UX+LKAg5K/pCbA30XWJ5xzXrfzzf1SNTt9Fmwe0xPDs1Rp6qUMc2flC3vLLFCh8D8HqOAlMf0jgEvUIjBBcZ6+Y7Q3+urS/f2N6ONAszrV7MeN8ty0IdsXp7KC+szvjLf4mA25HB9gkV1u9RfFMTftAFzRsLP2xm2kACMC2O/Tlh1AhL/S3xM2Hz3k94fnWVv+UrTb7G/qngdeOqbTjGVUjisKpSun7CbDolOcuxd+WzlxxZrDQSHfwXwT2EoG+wncS6JIFqT4j/Izyj0LJOY/el6AXXr21W36+TiA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ri.se; dmarc=pass action=none header.from=ri.se; dkim=pass header.d=ri.se; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ri.se; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=XviTQfHyFdnkC8GLFLm+M2KKMoiuBzjtUqvdKDKGqZw=; b=V0USdWejfgT4P7g5eQq6Iwak62qNj5VNH3sW9w1gcGUEkpQmord96hZEb9BetVzNrMZfvnSgtwGXbqtEI7neK9QTCZnilDCwDSvQQKBxUKIxpbzPCjVDkqE10Q4ZBnmT13yPaEqTaSXVP8NVp7VCtPGDvCDG5jqiFwaZPMyyums=
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ri.se;
Received: from GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:37::17) by GVYP280MB0080.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:33::16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5588.10; Mon, 5 Sep 2022 17:24:28 +0000
Received: from GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM ([fe80::69ca:4b78:b6d8:c104]) by GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM ([fe80::69ca:4b78:b6d8:c104%5]) with mapi id 15.20.5588.018; Mon, 5 Sep 2022 17:24:28 +0000
Message-ID: <db98a8d0-15e0-62f5-15ce-651ac9578163@ri.se>
Date: Mon, 05 Sep 2022 19:24:27 +0200
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Thunderbird/91.11.0
Content-Language: en-US
To: ace@ietf.org
References: <166239801637.6820.1491554026612483402@ietfa.amsl.com>
From: Marco Tiloca <marco.tiloca@ri.se>
In-Reply-To: <166239801637.6820.1491554026612483402@ietfa.amsl.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------9JcmLZv0A5C6Hsy3PipmV2z5"
X-ClientProxiedBy: GV3P280CA0023.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:b::24) To GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:37::17)
MIME-Version: 1.0
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: 4ae115eb-121f-4e84-fd79-08da8f637cb6
X-MS-TrafficTypeDiagnostic: GVYP280MB0080:EE_
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230016)(4636009)(396003)(366004)(39860400002)(346002)(136003)(376002)(86362001)(31696002)(45080400002)(31686004)(8936002)(6486002)(66476007)(6916009)(66556008)(66946007)(316002)(8676002)(478600001)(41300700001)(966005)(21480400003)(83380400001)(38100700002)(5660300002)(44832011)(2906002)(235185007)(53546011)(26005)(6512007)(6506007)(66574015)(36756003)(33964004)(186003)(2616005)(43740500002)(45980500001); DIR:OUT; SFP:1101;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: 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
X-OriginatorOrg: ri.se
X-MS-Exchange-CrossTenant-Network-Message-Id: 4ae115eb-121f-4e84-fd79-08da8f637cb6
X-MS-Exchange-CrossTenant-AuthSource: GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 05 Sep 2022 17:24:28.4340 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: 8GW+OjUXcXF2z/v49UeFFjVteLdtPrjo00Zuzq0WScdJmCIkEOM2O6NsWPfsOHBYJiaCdLRi+SiWHwMMkYF2Jw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: GVYP280MB0080
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/qWVLaQKUXge-RL0bojUzLK7mKts>
Subject: Re: [Ace] I-D Action: draft-ietf-ace-key-groupcomm-oscore-15.txt
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Sep 2022 17:24:58 -0000

Hello ACE,

This latest version is consistent and aligned with the latest version 
-16 of draf-ietf-ace-key-groupcomm [1], where the updates proposed in 
[2] have been incorporated.

Best,
/Marco

[1] https://datatracker.ietf.org/doc/draft-ietf-ace-key-groupcomm/

[2] https://mailarchive.ietf.org/arch/msg/ace/cWlidk1FS8h00HSkzgubk_LJ0kI/

On 2022-09-05 19:13, internet-drafts@ietf.org wrote:
> A New Internet-Draft is available from the on-line Internet-Drafts directories.
> This draft is a work item of the Authentication and Authorization for Constrained Environments WG of the IETF.
>
>          Title           : Key Management for OSCORE Groups in ACE
>          Authors         : Marco Tiloca
>                            Jiye Park
>                            Francesca Palombini
>    Filename        : draft-ietf-ace-key-groupcomm-oscore-15.txt
>    Pages           : 104
>    Date            : 2022-09-05
>
> Abstract:
>     This document defines an application profile of the ACE framework for
>     Authentication and Authorization, to request and provision keying
>     material in group communication scenarios that are based on CoAP and
>     are secured with Group Object Security for Constrained RESTful
>     Environments (Group OSCORE).  This application profile delegates the
>     authentication and authorization of Clients, that join an OSCORE
>     group through a Resource Server acting as Group Manager for that
>     group.  This application profile leverages protocol-specific
>     transport profiles of ACE to achieve communication security, server
>     authentication and proof-of-possession for a key owned by the Client
>     and bound to an OAuth 2.0 Access Token.
>
>
> The IETF datatracker status page for this draft is:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-ace-key-groupcomm-oscore%2F&amp;data=05%7C01%7Cmarco.tiloca%40ri.se%7C353c3a2b6bc34a5ae73c08da8f621976%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C637979948743697193%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&amp;sdata=5MEfdiokn0FGhh7ZfZ6sDNCpgBy2H2fBuCv0XUOIOZQ%3D&amp;reserved=0
>
> There is also an HTML version available at:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Farchive%2Fid%2Fdraft-ietf-ace-key-groupcomm-oscore-15.html&amp;data=05%7C01%7Cmarco.tiloca%40ri.se%7C353c3a2b6bc34a5ae73c08da8f621976%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C637979948743697193%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&amp;sdata=lJsRujYtwt5FbZBI%2BqAcZaBXkAsVHlMyfJr8zwAYVUs%3D&amp;reserved=0
>
> A diff from the previous version is available at:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Frfcdiff%3Furl2%3Ddraft-ietf-ace-key-groupcomm-oscore-15&amp;data=05%7C01%7Cmarco.tiloca%40ri.se%7C353c3a2b6bc34a5ae73c08da8f621976%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C637979948743853854%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&amp;sdata=evVmbwkB8YN9cgJFtIuXTm5xo9LFo1ugDZMOv3UvFOc%3D&amp;reserved=0
>
>
> Internet-Drafts are also available by rsync at rsync.ietf.org::internet-drafts
>
>
> _______________________________________________
> Ace mailing list
> Ace@ietf.org
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Face&amp;data=05%7C01%7Cmarco.tiloca%40ri.se%7C353c3a2b6bc34a5ae73c08da8f621976%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C637979948743853854%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&amp;sdata=TQ2T%2Fqkw%2Bim8gEtN7PMmlOlUjCCVK1qXGA2gZ4aKm3E%3D&amp;reserved=0

-- 
Marco Tiloca
Ph.D., Senior Researcher

Phone: +46 (0)70 60 46 501

RISE Research Institutes of Sweden AB
Box 1263
164 29 Kista (Sweden)

Division: Digital Systems
Department: Computer Science
Unit: Cybersecurity

https://www.ri.se