Re: [Autoconf] Call for comments to a new AUTOCONF charter proposal.

"Dearlove, Christopher (UK)" <Chris.Dearlove@baesystems.com> Wed, 30 June 2010 11:40 UTC

Return-Path: <Chris.Dearlove@baesystems.com>
X-Original-To: autoconf@core3.amsl.com
Delivered-To: autoconf@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 3EF833A68B9 for <autoconf@core3.amsl.com>; Wed, 30 Jun 2010 04:40:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.824
X-Spam-Level:
X-Spam-Status: No, score=-4.824 tagged_above=-999 required=5 tests=[AWL=0.286, BAYES_05=-1.11, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xB0csegdnxgh for <autoconf@core3.amsl.com>; Wed, 30 Jun 2010 04:40:40 -0700 (PDT)
Received: from ukmta3.baesystems.com (ukmta3.baesystems.com [20.133.40.55]) by core3.amsl.com (Postfix) with ESMTP id F1E043A67D9 for <autoconf@ietf.org>; Wed, 30 Jun 2010 04:40:39 -0700 (PDT)
X-IronPort-AV: E=Sophos; i="4.53,511,1272841200"; d="scan'208,223"; a="73708833"
Received: from unknown (HELO baemasodc004.greenlnk.net) ([10.108.36.11]) by Baemasodc001ir.sharelnk.net with ESMTP; 30 Jun 2010 12:40:50 +0100
Received: from glkms1102.GREENLNK.NET (glkms1102.greenlnk.net [10.108.36.193]) by baemasodc004.greenlnk.net (Switch-3.4.3/Switch-3.4.3) with ESMTP id o5UBenWH024893; Wed, 30 Jun 2010 12:40:50 +0100
Received: from GLKMS2100.GREENLNK.NET ([10.15.184.93]) by glkms1102.GREENLNK.NET with Microsoft SMTPSVC(6.0.3790.3959); Wed, 30 Jun 2010 12:40:49 +0100
Content-class: urn:content-classes:message
MIME-Version: 1.0
Content-Type: text/plain; charset="US-ASCII"
Content-Transfer-Encoding: 7bit
x-mimeole: Produced By Microsoft Exchange V6.5
Date: Wed, 30 Jun 2010 12:40:49 +0100
Message-ID: <ABE739C5ADAC9A41ACCC72DF366B719D0333F820@GLKMS2100.GREENLNK.NET>
In-Reply-To: <4C2B2805.5060307@piuha.net>
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
thread-topic: [Autoconf] Call for comments to a new AUTOCONF charter proposal.
thread-index: AcsYRgbuEx3S39WHRcKdFCHpIboOxAAAm/Cg
References: <BFD8FF22-FD36-436E-9985-7BFA2E234081@gmail.com> <201006290803.34192.henning.rogge@fkie.fraunhofer.de><ABE739C5ADAC9A41ACCC72DF366B719D0333F14C@GLKMS2100.GREENLNK.NET><4C2A723E.3020806@piuha.net><ABE739C5ADAC9A41ACCC72DF366B719D0333F6EC@GLKMS2100.GREENLNK.NET><4C2B1762.1070600@piuha.net><ABE739C5ADAC9A41ACCC72DF366B719D0333F7DC@GLKMS2100.GREENLNK.NET> <4C2B2805.5060307@piuha.net>
From: "Dearlove, Christopher (UK)" <Chris.Dearlove@baesystems.com>
To: Jari Arkko <jari.arkko@piuha.net>
X-OriginalArrivalTime: 30 Jun 2010 11:40:49.0969 (UTC) FILETIME=[16851210:01CB1849]
Cc: autoconf@ietf.org
Subject: Re: [Autoconf] Call for comments to a new AUTOCONF charter proposal.
X-BeenThere: autoconf@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Ad-Hoc Network Autoconfiguration WG discussion list <autoconf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/autoconf>, <mailto:autoconf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/autoconf>
List-Post: <mailto:autoconf@ietf.org>
List-Help: <mailto:autoconf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/autoconf>, <mailto:autoconf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 Jun 2010 11:40:41 -0000

>From RFC 3971

   To protect Router Discovery, SEND requires that routers be authorized
   to act as routers.  This authorization is provisioned in both routers
   and hosts.  Routers are given certificates from a trust anchor, and
   the hosts are configured with the trust anchor(s) to authorize
   routers.  

That's both significant pre-configuration, and problematic in an ad hoc
network. (The rest of section 6 has a whole lot more complexity.)

-- 
Christopher Dearlove
Technology Leader, Communications Group
Networks, Security and Information Systems Department
BAE Systems Advanced Technology Centre
West Hanningfield Road, Great Baddow, Chelmsford, CM2 8HN, UK
Tel: +44 1245 242194  Fax: +44 1245 242124

BAE Systems (Operations) Limited
Registered Office: Warwick House, PO Box 87,
Farnborough Aerospace Centre, Farnborough, Hants, GU14 6YU, UK
Registered in England & Wales No: 1996687

-----Original Message-----
From: autoconf-bounces@ietf.org [mailto:autoconf-bounces@ietf.org] On
Behalf Of Jari Arkko
Sent: 30 June 2010 12:18
To: Dearlove, Christopher (UK)
Cc: autoconf@ietf.org
Subject: Re: [Autoconf] Call for comments to a new AUTOCONF charter
proposal.


                    *** WARNING ***

  This message has originated outside your organisation,
  either from an external partner or the Global Internet. 
      Keep this in mind if you answer this message.
 

Christopher,

> Any references? Right now I don't follow how that would work.
> But willing to be educated.
>   

I'm just waving my hands and I have no references. But RFC 3971 does 
something similar for SLAAC. Its not the only approach, over the years 
people have looked at different ways in allocating mobile IPv6 home 
addresses as well.

> But the key point is I think that security really needs to be
> up front, part of the requirements/problem statement, and hence
> in the charter. This really is a case where security cannot be
> an afterthought.
>   

OK. That makes sense.

Jari

_______________________________________________
Autoconf mailing list
Autoconf@ietf.org
https://www.ietf.org/mailman/listinfo/autoconf


********************************************************************
This email and any attachments are confidential to the intended
recipient and may also be privileged. If you are not the intended
recipient please delete it from your system and notify the sender.
You should not copy it or use it for any purpose nor disclose or
distribute its contents to any other person.
********************************************************************