[Anima] Last Call: <draft-ietf-anima-brski-prm-17.txt> (BRSKI with Pledge in Responder Mode (BRSKI-PRM)) to Proposed Standard

The IESG <iesg-secretary@ietf.org> Thu, 16 January 2025 17:01 UTC

Return-Path: <iesg-secretary@ietf.org>
X-Original-To: anima@ietf.org
Delivered-To: anima@ietfa.amsl.com
Received: from [10.244.8.241] (unknown [104.131.183.230]) by ietfa.amsl.com (Postfix) with ESMTP id C539EC151524; Thu, 16 Jan 2025 09:01:32 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: The IESG <iesg-secretary@ietf.org>
To: IETF-Announce <ietf-announce@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 12.32.0
Auto-Submitted: auto-generated
Precedence: bulk
Sender: iesg-secretary@ietf.org
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
Message-ID: <173704689246.1104704.14832845406532220711@dt-datatracker-57c4c68d9c-p9khg>
Date: Thu, 16 Jan 2025 09:01:32 -0800
Message-ID-Hash: C4XMWM6JKNHSYYB7UN2254OB2MY6ZPNK
X-Message-ID-Hash: C4XMWM6JKNHSYYB7UN2254OB2MY6ZPNK
X-MailFrom: iesg-secretary@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-anima.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: anima-chairs@ietf.org, anima@ietf.org, draft-ietf-anima-brski-prm@ietf.org, ietf@kovatsch.net, mjethanandani@gmail.com, tte@cs.fau.de
X-Mailman-Version: 3.3.9rc6
Reply-To: last-call@ietf.org
Subject: [Anima] Last Call: <draft-ietf-anima-brski-prm-17.txt> (BRSKI with Pledge in Responder Mode (BRSKI-PRM)) to Proposed Standard
List-Id: Autonomic Networking Integrated Model and Approach <anima.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/anima/4Y-Wqx0wenhB3X5mMnmO-rmFphs>
List-Archive: <https://mailarchive.ietf.org/arch/browse/anima>
List-Help: <mailto:anima-request@ietf.org?subject=help>
List-Owner: <mailto:anima-owner@ietf.org>
List-Post: <mailto:anima@ietf.org>
List-Subscribe: <mailto:anima-join@ietf.org>
List-Unsubscribe: <mailto:anima-leave@ietf.org>

The IESG has received a request from the Autonomic Networking Integrated
Model and Approach WG (anima) to consider the following document: - 'BRSKI
with Pledge in Responder Mode (BRSKI-PRM)'
  <draft-ietf-anima-brski-prm-17.txt> as Proposed Standard

The IESG plans to make a decision in the next few weeks, and solicits final
comments on this action. Please send substantive comments to the
last-call@ietf.org mailing lists by 2025-01-30. Exceptionally, comments may
be sent to iesg@ietf.org instead. In either case, please retain the beginning
of the Subject line to allow automated sorting.

Abstract


   This document defines enhancements to Bootstrapping a Remote Secure
   Key Infrastructure (BRSKI, RFC8995) to enable bootstrapping in
   domains featuring no or only limited connectivity between a pledge
   and the domain registrar.  It specifically changes the interaction
   model from a pledge-initiated mode, as used in BRSKI, to a pledge-
   responding mode, where the pledge is in server role.  For this, BRSKI
   with Pledge in Responder Mode (BRSKI-PRM) introduces new endpoints
   for the Domain Registrar and pledge, and a new component, the
   Registrar-Agent, which facilitates the communication between pledge
   and registrar during the bootstrapping phase.  To establish the trust
   relation between pledge and registrar, BRSKI-PRM relies on object
   security rather than transport security.  The approach defined here
   is agnostic to the enrollment protocol that connects the domain
   registrar to the Key Infrastructure (e.g., domain CA).




The file can be obtained via
https://datatracker.ietf.org/doc/draft-ietf-anima-brski-prm/



No IPR declarations have been submitted directly on this I-D.