Re: [Autoconf] Security (Was: Re: Call for comments to a new AUTOCONF charter proposal.)

Henning Rogge <hrogge@googlemail.com> Wed, 30 June 2010 17:01 UTC

Return-Path: <hrogge@googlemail.com>
X-Original-To: autoconf@core3.amsl.com
Delivered-To: autoconf@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 62DC63A6893 for <autoconf@core3.amsl.com>; Wed, 30 Jun 2010 10:01:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.042
X-Spam-Level:
X-Spam-Status: No, score=-2.042 tagged_above=-999 required=5 tests=[AWL=0.557, BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gDuBduBtu9tq for <autoconf@core3.amsl.com>; Wed, 30 Jun 2010 10:01:52 -0700 (PDT)
Received: from mail-fx0-f44.google.com (mail-fx0-f44.google.com [209.85.161.44]) by core3.amsl.com (Postfix) with ESMTP id A26233A67A3 for <autoconf@ietf.org>; Wed, 30 Jun 2010 10:01:51 -0700 (PDT)
Received: by fxm1 with SMTP id 1so725578fxm.31 for <autoconf@ietf.org>; Wed, 30 Jun 2010 10:02:00 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlemail.com; s=gamma; h=domainkey-signature:received:received:from:to:subject:date :user-agent:cc:references:in-reply-to:mime-version:content-type :content-transfer-encoding:message-id; bh=KbqI0VZkpaKuQl+a6mf4zQK1Eay6HjLfpZ3LiEVm0gI=; b=oNG7xlZeH7Z51Rit/Bta40Rm1Qf1rAxb8fcYXGQ9znUpEM/0RBfvnq7bFtQcsuFEmr QwQ5dCMIUzn8/fOoNDIO+7Bfn/nk5esbSu6vDabqo6qlg7RSmwpquwo51bzjEPCpuCjg nK3xgnxjyzXkeEZLmfWzo3STglTsOg0nNQtNU=
DomainKey-Signature: a=rsa-sha1; c=nofws; d=googlemail.com; s=gamma; h=from:to:subject:date:user-agent:cc:references:in-reply-to :mime-version:content-type:content-transfer-encoding:message-id; b=Y7khHPy16YvKS3TXB9hoC6cmiAo7X1ayyvbG2n5PhIotXhuuG4lP7HF9TN24EGwFR9 IJUIcbp9yHWHa5DJ7HS/RKMvv41OTeLTSa4RpfbD3dT4a0p0c4lOl3mUjOreHxn99R70 6SLYYG6+AZmZBP7Im3qo7X12cQYMIQqkuJD3s=
Received: by 10.204.46.95 with SMTP id i31mr6417114bkf.17.1277917320679; Wed, 30 Jun 2010 10:02:00 -0700 (PDT)
Received: from core2.localnet ([87.79.93.195]) by mx.google.com with ESMTPS id l70sm9396952weq.0.2010.06.30.10.01.58 (version=SSLv3 cipher=RC4-MD5); Wed, 30 Jun 2010 10:01:59 -0700 (PDT)
From: Henning Rogge <hrogge@googlemail.com>
To: autoconf@ietf.org
Date: Wed, 30 Jun 2010 19:01:50 +0200
User-Agent: KMail/1.13.3 (Linux/2.6.34-gentoo-r1; KDE/4.4.4; x86_64; ; )
References: <BFD8FF22-FD36-436E-9985-7BFA2E234081@gmail.com> <4C2B60E4.5070203@piuha.net> <ABE739C5ADAC9A41ACCC72DF366B719D0333FA8C@GLKMS2100.GREENLNK.NET>
In-Reply-To: <ABE739C5ADAC9A41ACCC72DF366B719D0333FA8C@GLKMS2100.GREENLNK.NET>
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="nextPart1725208.iHE7Og4INh"; protocol="application/pgp-signature"; micalg="pgp-sha1"
Content-Transfer-Encoding: 7bit
Message-Id: <201006301901.55567.hrogge@googlemail.com>
Cc: "Dearlove, Christopher (UK)" <Chris.Dearlove@baesystems.com>
Subject: Re: [Autoconf] Security (Was: Re: Call for comments to a new AUTOCONF charter proposal.)
X-BeenThere: autoconf@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Ad-Hoc Network Autoconfiguration WG discussion list <autoconf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/autoconf>, <mailto:autoconf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/autoconf>
List-Post: <mailto:autoconf@ietf.org>
List-Help: <mailto:autoconf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/autoconf>, <mailto:autoconf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 Jun 2010 17:01:53 -0000

Am Mittwoch 30 Juni 2010, 18:14:08 schrieb Dearlove, Christopher (UK):
> If the conclusion is that the issues of address configuration and
> security configuration are intertwined (really both are also part
> of the wider issue of identity) and that therefore this needs to be
> considered by the WG and should be mentioned in the charter, then OK.
I agree to this.

The identity of a router is a very important part of a security concept of a 
MANET/mesh. If the network is compromised during the address configuration, it 
might be difficult or impossible to secure it later.

Henning Rogge

-- 
1) You can't win.
2) You can't break even.
3) You can't leave the game.
— The Laws of Thermodynamics, summarized