[Anima] FW: New Version Notification for draft-pritikin-anima-bootstrapping-keyinfra-01.txt

"Michael Behringer (mbehring)" <mbehring@cisco.com> Fri, 13 February 2015 10:36 UTC

Return-Path: <mbehring@cisco.com>
X-Original-To: anima@ietfa.amsl.com
Delivered-To: anima@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D07491A6F22 for <anima@ietfa.amsl.com>; Fri, 13 Feb 2015 02:36:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.511
X-Spam-Level:
X-Spam-Status: No, score=-14.511 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rFQJqy3Czc0e for <anima@ietfa.amsl.com>; Fri, 13 Feb 2015 02:36:25 -0800 (PST)
Received: from alln-iport-8.cisco.com (alln-iport-8.cisco.com [173.37.142.95]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 846B51A1BAA for <anima@ietf.org>; Fri, 13 Feb 2015 02:36:25 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=3802; q=dns/txt; s=iport; t=1423823785; x=1425033385; h=from:to:subject:date:message-id:references:in-reply-to: content-transfer-encoding:mime-version; bh=PL1f1uKQIsSAHDE9BJV0MXJptMqSDTOVkVBF+//ozdg=; b=LdezqfuydbPE3CEWW9TOyFNaJe1A361ujQoW90/lmSxL0sS+sTITBrWm m00g1BfhClqgKI+yMgj+FaRFiB+k4a+o85G/GlLlcHPBoDtmxoNhZVJlc Xdi2Hh2xuXiKwtRGD4pQrRcY9KM9oN4HQ718reI04v9/bt1lcaw0DRbzP M=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0ChBQBv091U/49dJa1bgwZSVQUEgn6+NIInhXECHHlDAQEBAQEBfIQMAQEBBCMRQw4EAgEIEQQBAQMCBh0DAgICMBQBBgEBBQMCBBMIAYgkCAW8c5dLAQEBAQEBAQEBAQEBAQEBAQEBAQEYgSGJa4Q8OAaCYi6BFAWPNINWhnc4gk+IH4MJgz4igjKBPG+BRH8BAQE
X-IronPort-AV: E=Sophos;i="5.09,570,1418083200"; d="scan'208";a="123191503"
Received: from rcdn-core-7.cisco.com ([173.37.93.143]) by alln-iport-8.cisco.com with ESMTP; 13 Feb 2015 10:36:24 +0000
Received: from xhc-rcd-x07.cisco.com (xhc-rcd-x07.cisco.com [173.37.183.81]) by rcdn-core-7.cisco.com (8.14.5/8.14.5) with ESMTP id t1DAaOfX013577 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL) for <anima@ietf.org>; Fri, 13 Feb 2015 10:36:24 GMT
Received: from xmb-rcd-x14.cisco.com ([169.254.4.229]) by xhc-rcd-x07.cisco.com ([173.37.183.81]) with mapi id 14.03.0195.001; Fri, 13 Feb 2015 04:36:24 -0600
From: "Michael Behringer (mbehring)" <mbehring@cisco.com>
To: "anima@ietf.org" <anima@ietf.org>
Thread-Topic: New Version Notification for draft-pritikin-anima-bootstrapping-keyinfra-01.txt
Thread-Index: AQHQR2N0aSSh9ETEXU+Qn6ZyPvfxeZzuQgBQ
Date: Fri, 13 Feb 2015 10:36:23 +0000
Message-ID: <3AA7118E69D7CD4BA3ECD5716BAF28DF22EBB377@xmb-rcd-x14.cisco.com>
References: <20150213080241.29611.75227.idtracker@ietfa.amsl.com>
In-Reply-To: <20150213080241.29611.75227.idtracker@ietfa.amsl.com>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.55.238.136]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <http://mailarchive.ietf.org/arch/msg/anima/kdE9BUZAujRtkMgYKx7EYHne70w>
Subject: [Anima] FW: New Version Notification for draft-pritikin-anima-bootstrapping-keyinfra-01.txt
X-BeenThere: anima@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Autonomic Networking Integrated Model and Approach <anima.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/anima>, <mailto:anima-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/anima/>
List-Post: <mailto:anima@ietf.org>
List-Help: <mailto:anima-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/anima>, <mailto:anima-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 13 Feb 2015 10:36:28 -0000

We just posted an update to this document, incorporating most of the comments received so far. We are not addressing the symmetric schemes yet (comment from Fuyu).

This document addresses a WG deliverable, and we would like to work towards adoption of this document as a WG document. 

While of course this document requires a lot of work, we would like to solicit feedback on whether the overall structure and content of the document is going in the right direction. We would like this document to be a generic way to bootstrap a trust infrastructure, in all possible deployment scenarios, from simple networks like a homenet or sensor network, to SP networks. 

Please share your thoughts with us, so that we can possibly do another revision before the IETF. 

Michael


> -----Original Message-----
> From: internet-drafts@ietf.org [mailto:internet-drafts@ietf.org]
> Sent: 13 February 2015 09:03
> To: Max Pritikin (pritikin); Michael Behringer (mbehring); Steinthor
> Bjarnason (sbjarnas); Michael Behringer (mbehring); Max Pritikin (pritikin);
> Steinthor Bjarnason (sbjarnas)
> Subject: New Version Notification for draft-pritikin-anima-bootstrapping-
> keyinfra-01.txt
> 
> 
> A new version of I-D, draft-pritikin-anima-bootstrapping-keyinfra-01.txt
> has been successfully submitted by Michael H. Behringer and posted to the
> IETF repository.
> 
> Name:		draft-pritikin-anima-bootstrapping-keyinfra
> Revision:	01
> Title:		Bootstrapping Key Infrastructures
> Document date:	2015-02-13
> Group:		Individual Submission
> Pages:		23
> URL:            http://www.ietf.org/internet-drafts/draft-pritikin-anima-
> bootstrapping-keyinfra-01.txt
> Status:         https://datatracker.ietf.org/doc/draft-pritikin-anima-
> bootstrapping-keyinfra/
> Htmlized:       http://tools.ietf.org/html/draft-pritikin-anima-bootstrapping-
> keyinfra-01
> Diff:           http://www.ietf.org/rfcdiff?url2=draft-pritikin-anima-
> bootstrapping-keyinfra-01
> 
> Abstract:
>    This document specifies automated bootstrapping of an key
>    infrastructure using vendor installed IEEE 802.1AR manufacturing
>    installed certificates, in combination with a vendor based service on
>    the Internet.  Before being authenticated, a new device has only
>    link-local connectivity, and does not require a routable address.
>    When a vendor provides an Internet based service, devices can be
>    forced to join only specific domains but for constrained environments
>    we describe a variety of options that allow bootstrapping to proceed.
> 
> 
> 
> 
> Please note that it may take a couple of minutes from the time of
> submission until the htmlized version and diff are available at tools.ietf.org.
> 
> The IETF Secretariat