Re: [Atlas] Application Transport LAyer Security (ATLAS) Charter Text

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Fri, 02 February 2018 12:35 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: atlas@ietfa.amsl.com
Delivered-To: atlas@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8B1A312D778 for <atlas@ietfa.amsl.com>; Fri, 2 Feb 2018 04:35:04 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.921
X-Spam-Level:
X-Spam-Status: No, score=-1.921 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id crD-zVoeIAdt for <atlas@ietfa.amsl.com>; Fri, 2 Feb 2018 04:35:02 -0800 (PST)
Received: from EUR01-DB5-obe.outbound.protection.outlook.com (mail-db5eur01on0047.outbound.protection.outlook.com [104.47.2.47]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5E6C1129C59 for <atlas@ietf.org>; Fri, 2 Feb 2018 04:35:02 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector1-arm-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=Z4RKGXZ15LM2oZpEy79gUxLTm28idWJ9WbF2txAkK2Y=; b=RiAA0TyjTVrvQJmXuIydQPuj8dtIfEOdaHypxTeSxcxXHiNPQhlPmEpNvQ1huDCGDO50BBDf5OuZaYkH7LK+On+aJnRV3rvG0WUA63eUNBDFs/5FnKEKpsoIfb7W2b8fhKYjwZdPNLF6Kxc15rZVua4QdH5kR6Tg0YXBxKxElLY=
Received: from AM4PR0801MB2706.eurprd08.prod.outlook.com (10.167.90.148) by AM4PR0801MB1475.eurprd08.prod.outlook.com (10.168.5.137) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.444.14; Fri, 2 Feb 2018 12:34:59 +0000
Received: from AM4PR0801MB2706.eurprd08.prod.outlook.com ([fe80::b863:80d:692b:e64b]) by AM4PR0801MB2706.eurprd08.prod.outlook.com ([fe80::b863:80d:692b:e64b%14]) with mapi id 15.20.0444.022; Fri, 2 Feb 2018 12:34:59 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: Carsten Bormann <cabo@tzi.org>
CC: "atlas@ietf.org" <atlas@ietf.org>
Thread-Topic: [Atlas] Application Transport LAyer Security (ATLAS) Charter Text
Thread-Index: AdOTwyPirW/e5/LOQWOr6hMZrGuG4wIH6BIAAAfsLsAAByEdgAAAkZVQ
Date: Fri, 02 Feb 2018 12:34:59 +0000
Message-ID: <AM4PR0801MB2706FE84AD9FA00A183E07A7FAF90@AM4PR0801MB2706.eurprd08.prod.outlook.com>
References: <AM4PR0801MB2706895905D2634096D4A11BFAEC0@AM4PR0801MB2706.eurprd08.prod.outlook.com> <548BB4CB-78F1-4CA8-92D6-E7174D8B1D8A@tzi.org> <AM4PR0801MB2706D8559615536F8F794F73FAF90@AM4PR0801MB2706.eurprd08.prod.outlook.com> <96D36092-5451-41AB-B441-5B93D6072561@tzi.org>
In-Reply-To: <96D36092-5451-41AB-B441-5B93D6072561@tzi.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
x-originating-ip: [80.92.119.5]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; AM4PR0801MB1475; 6:sWmYG/XKfu14Y6SV5iDO3fpMNlALBn4ANhp6esuwuPckFy+m4wnVywHI1mco3fQyp8HZyUToMqR84AGPEJ6pt/KgboyJdrow91d3iVT20601lPC7mO9k9QdfGjnrW9IivUN8xDxiELZB2phj0fh2I9BJw/93RUXoCU1lDWzTderWPnElt01SBMVkddfU2nFlC96skrI2WV5e/4f9tLH4/A6DKJBo7NPZhSAWsOLD3KZiVc+7Xe61o0zY8+dWNACLyM/BmvNRtZkVVmFsR2Rvav7Z/jasagRMHRavZ5asC6CcwsOcs+7xkClN+x6WilprRIBzmHye2O7NFYwTyao03QjTljM4pAfQIFYPRIAPxN3S+Xmt4KR5c2zum4sd249U; 5:3UAaOxoxJnRjTsD/fY0nc8kZXwm9/dfjw2glQPDV5ffEbKx5x9RJbYaonW76UGbDu5zZeLzat63g60BOXFy6XYJAiP+t276X8MM5/9h4VFem7fxv6sdJoaaudqtWBgit0K34l5LMDKUxx2JoPJR9Luoxp//BylYqPehSz74xOCk=; 24:mcLD5aG37IF54bggsmKrSlNXUvlgyA2QkSCcZmQT+orNlEudB+fDVh5OOWWIGtIT8bBGiqzpcc8N1HWHi7IHusthZiWp3a3MEICWFLaVS74=; 7:nxDu3kJEm3AENu/WB69+QoD//nCCiyo2s4FbcbFWVo+7vVmzfKYPnnq80V6zlwTRP2I8QWIyzn9aGdZ1BTJ/0Gu0N6OMwu/ofWl+6X87MXj5z+VBm5IdAO6BYdajO+7Io7Jfy7XLkFH8V5Z2Wb0JwsZnhwHypFQ3Y+iu95AyQV+8M8TmJF/O5SQEU/JK0iLT3UXaFBYDlN3BWRp50A0ZOjDxCs4y3DeXAtCe1SXFaCPI7Fve6idLAYbQRqk+60gn
x-ms-exchange-antispam-srfa-diagnostics: SSOS;
x-ms-office365-filtering-ht: Tenant
x-ms-office365-filtering-correlation-id: cfcd6089-147f-4f66-a229-08d56a395fee
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(4534165)(4627221)(201703031133081)(201702281549075)(48565401081)(5600026)(4604075)(3008032)(2017052603307)(7153060)(7193020); SRVR:AM4PR0801MB1475;
x-ms-traffictypediagnostic: AM4PR0801MB1475:
x-microsoft-antispam-prvs: <AM4PR0801MB147552918EB3B110991102ACFAF90@AM4PR0801MB1475.eurprd08.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(180628864354917)(192374486261705);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6040501)(2401047)(5005006)(8121501046)(3231101)(2400082)(944501161)(3002001)(93006095)(93001095)(10201501046)(6055026)(6041288)(20161123560045)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123564045)(20161123562045)(20161123558120)(6072148)(201708071742011); SRVR:AM4PR0801MB1475; BCL:0; PCL:0; RULEID:; SRVR:AM4PR0801MB1475;
x-forefront-prvs: 05715BE7FD
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(39380400002)(366004)(376002)(346002)(396003)(39860400002)(13464003)(40434004)(199004)(189003)(74316002)(66066001)(5890100001)(4326008)(5250100002)(305945005)(7736002)(106356001)(186003)(6506007)(99286004)(102836004)(59450400001)(26005)(97736004)(25786009)(86362001)(72206003)(7696005)(76176011)(53546011)(478600001)(33656002)(81166006)(81156014)(316002)(105586002)(6436002)(55016002)(14454004)(3846002)(9686003)(2900100001)(93886005)(229853002)(8676002)(5660300001)(6916009)(2950100002)(6116002)(6246003)(3660700001)(3280700002)(8936002)(2906002)(68736007)(53936002)(15650500001); DIR:OUT; SFP:1101; SCL:1; SRVR:AM4PR0801MB1475; H:AM4PR0801MB2706.eurprd08.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: arm.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: ndNyiLwq+VxRiUZS5OIrcmeEmOQdIYa7AywIdfhktlE7UR5nTbG14AF8SdDwtIoVi9HG8UtMBrKER0cFSunIcQ==
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-Network-Message-Id: cfcd6089-147f-4f66-a229-08d56a395fee
X-MS-Exchange-CrossTenant-originalarrivaltime: 02 Feb 2018 12:34:59.7166 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM4PR0801MB1475
Archived-At: <https://mailarchive.ietf.org/arch/msg/atlas/qBl2CABQcMwBDn-m34N6ORoTFrM>
Subject: Re: [Atlas] Application Transport LAyer Security (ATLAS) Charter Text
X-BeenThere: atlas@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Application Transport LAyer Security <atlas.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/atlas>, <mailto:atlas-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/atlas/>
List-Post: <mailto:atlas@ietf.org>
List-Help: <mailto:atlas-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/atlas>, <mailto:atlas-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 02 Feb 2018 12:35:04 -0000

Hi Carsten,

A few remarks below:

-----Original Message-----
From: Carsten Bormann [mailto:cabo@tzi.org]
Sent: 02 February 2018 13:12
To: Hannes Tschofenig
Cc: atlas@ietf.org
Subject: Re: [Atlas] Application Transport LAyer Security (ATLAS) Charter Text

On Feb 2, 2018, at 12:53, Hannes Tschofenig <Hannes.Tschofenig@arm.com> wrote:
>
> embeddings for different application protocols, such as CoAP, HTTP, and Bluetooth Smart

Hannes,

I’d sure like to complete CoDTLS, so that looks much better for me now.
I would expect we can define media types that work for both CoAP and HTTP, so that integration should probably be left open as something for the WG to decide.

[Hannes] That's also my thinking. Working on the ATLS draft(s) I had the impression that the differences between CoAP and HTTP are small enough to justify putting the functionality in one document.

Not so sure about “Bluetooth Smart” — are we optimistic with respect to attracting enough people that at least know that this is no longer the name of Bluetooth Low Energy :-)

[Hannes] A fair concern. I have just have seen repeatedly how people mess up Bluetooth Smart security. Hence, I wonder whether a standardized approach in the IETF (which is the home of TLS) would make sense, or is at least worthwhile to try.

I’m also not so sure about the Architecture and Use Case document as a separate item; we could simple add a page or two to the introduction of the media types document.

[Hannes] I wasn't quite sure about this either. On one hand draft-friel-tls-atls-00, for example, contains use cases but on the other hand I also know that there are various use cases to describe (from my work in the OMA Device Management group). If there are different profiles for the various application layer protocols then you may not want to repeat the same content over and over again. Maybe this is something for the group or the ADs/IESG to decide.

Finally, I’ll have to add the ceterum censeo that I don’t think the complex TLS should have a monopoly on key agreement protocols, and that I think we should also complete EDHOC.

[Hannes] I does not have a monopoly even today since we have the great IKE/IPsec stuff as well.

Do we have a position on TLS/DTLS 1.3?  Or is that for the WG to decide?

[Hannes] I believe we need a solution that works for TLS / DTLS 1.2 and 1.3. Deployment-wise I would favour 1.3 due to the better performance and improved security.

Ciao
Hannes

Grüße, Carsten

IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.