[babel] info-model: DTLS config parameters
"STARK, BARBARA H" <bs7652@att.com> Wed, 10 July 2019 18:48 UTC
Return-Path: <bs7652@att.com>
X-Original-To: babel@ietfa.amsl.com
Delivered-To: babel@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B8B8512070D for <babel@ietfa.amsl.com>; Wed, 10 Jul 2019 11:48:52 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.6
X-Spam-Level:
X-Spam-Status: No, score=-2.6 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_LOW=-0.7, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gkk87yeDE5SM for <babel@ietfa.amsl.com>; Wed, 10 Jul 2019 11:48:50 -0700 (PDT)
Received: from mx0a-00191d01.pphosted.com (mx0a-00191d01.pphosted.com [67.231.149.140]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9F56F120703 for <babel@ietf.org>; Wed, 10 Jul 2019 11:48:50 -0700 (PDT)
Received: from pps.filterd (m0049297.ppops.net [127.0.0.1]) by m0049297.ppops.net-00191d01. (8.16.0.27/8.16.0.27) with SMTP id x6AIdi5Q012281 for <babel@ietf.org>; Wed, 10 Jul 2019 14:48:49 -0400
Received: from alpi154.enaf.aldc.att.com (sbcsmtp6.sbc.com [144.160.229.23]) by m0049297.ppops.net-00191d01. with ESMTP id 2tnm6rah87-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for <babel@ietf.org>; Wed, 10 Jul 2019 14:48:46 -0400
Received: from enaf.aldc.att.com (localhost [127.0.0.1]) by alpi154.enaf.aldc.att.com (8.14.5/8.14.5) with ESMTP id x6AIm4QL001770 for <babel@ietf.org>; Wed, 10 Jul 2019 14:48:04 -0400
Received: from zlp30487.vci.att.com (zlp30487.vci.att.com [135.47.91.176]) by alpi154.enaf.aldc.att.com (8.14.5/8.14.5) with ESMTP id x6AIlvts001621 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO) for <babel@ietf.org>; Wed, 10 Jul 2019 14:47:58 -0400
Received: from zlp30487.vci.att.com (zlp30487.vci.att.com [127.0.0.1]) by zlp30487.vci.att.com (Service) with ESMTP id BB2E9400A0A3 for <babel@ietf.org>; Wed, 10 Jul 2019 18:47:57 +0000 (GMT)
Received: from GAALPA1MSGHUBAE.ITServices.sbc.com (unknown [130.8.218.154]) by zlp30487.vci.att.com (Service) with ESMTPS id A8CAA400A0A2 for <babel@ietf.org>; Wed, 10 Jul 2019 18:47:57 +0000 (GMT)
Received: from GAALPA1MSGUSRBF.ITServices.sbc.com ([169.254.5.5]) by GAALPA1MSGHUBAE.ITServices.sbc.com ([130.8.218.154]) with mapi id 14.03.0439.000; Wed, 10 Jul 2019 14:47:57 -0400
From: "STARK, BARBARA H" <bs7652@att.com>
To: 'Babel at IETF' <babel@ietf.org>
Thread-Topic: info-model: DTLS config parameters
Thread-Index: AdU3Tvn3oHfePCKLQ4CJX1+/HOP9ug==
Date: Wed, 10 Jul 2019 18:47:57 +0000
Message-ID: <2D09D61DDFA73D4C884805CC7865E6114E20F015@GAALPA1MSGUSRBF.ITServices.sbc.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [135.70.249.96]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:, , definitions=2019-07-10_07:, , signatures=0
X-Proofpoint-Spam-Details: rule=outbound_policy_notspam policy=outbound_policy score=0 priorityscore=1501 malwarescore=0 suspectscore=0 phishscore=0 bulkscore=0 spamscore=0 clxscore=1015 lowpriorityscore=0 mlxscore=0 impostorscore=0 mlxlogscore=999 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1810050000 definitions=main-1907100211
Archived-At: <https://mailarchive.ietf.org/arch/msg/babel/rEi0z-QsMYGXMyeIIr65hXSxSoA>
Subject: [babel] info-model: DTLS config parameters
X-BeenThere: babel@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "A list for discussion of the Babel Routing Protocol." <babel.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/babel>, <mailto:babel-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/babel/>
List-Post: <mailto:babel@ietf.org>
List-Help: <mailto:babel-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/babel>, <mailto:babel-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 10 Jul 2019 18:48:53 -0000
I was reviewing the minutes from Prague, and saw they indicated we didn't have resolution on whether certain DTLS configuration parameters should be global or at the interface level. ---------------------- The current revision has the following global parameters: babel-dtls-enable: Indicates whether the DTLS security mechanism is enabled (true) or disabled (false). An implementation MAY choose to expose this parameter as read-only ("ro"). babel-dtls-cert-types: List of supported DTLS certificate types. Possible values include "X.509" and "RawPublicKey". ----------------------- And the following are at the interface level: babel-dtls-cached-info: Indicates whether the cached_info extension is included in ClientHello and ServerHello packets. The extension is included if the value is "true". An implementation MAY choose to expose this parameter as read-only ("ro"). babel-dtls-cert-prefer: List of supported certificate types, in order of preference. The values MUST be among those listed in the babel-dtls-cert-types parameter. This list is used to populate the server_certificate_type extension in a Client Hello. Values that are present in at least one instance in the babel-dtls-certs object of a referenced babel-dtls instance and that have a non- empty babel-cert-private-key will be used to populate the client_certificate_type extension in a Client Hello. Please let me know if you disagree with this set of global/interface DTLS config parameters. Barbara
- [babel] info-model: DTLS config parameters STARK, BARBARA H
- Re: [babel] info-model: DTLS config parameters David Schinazi
- Re: [babel] info-model: DTLS config parameters Juliusz Chroboczek
- Re: [babel] info-model: DTLS config parameters Antonin Décimo
- Re: [babel] info-model: DTLS config parameters STARK, BARBARA H
- Re: [babel] info-model: DTLS config parameters Antonin Décimo
- Re: [babel] info-model: DTLS config parameters David Schinazi