Re: [CGA-EXT] New Version for draft-krishnan-csi-proxy-send-00

Suresh Krishnan <suresh.krishnan@ericsson.com> Thu, 19 June 2008 21:55 UTC

Return-Path: <cga-ext-bounces@ietf.org>
X-Original-To: cga-ext-archive@optimus.ietf.org
Delivered-To: ietfarch-cga-ext-archive@core3.amsl.com
Received: from [127.0.0.1] (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 2C6173A69A0; Thu, 19 Jun 2008 14:55:37 -0700 (PDT)
X-Original-To: cga-ext@core3.amsl.com
Delivered-To: cga-ext@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id BE3FC3A695A for <cga-ext@core3.amsl.com>; Thu, 19 Jun 2008 14:55:35 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4
X-Spam-Level:
X-Spam-Status: No, score=-4 tagged_above=-999 required=5 tests=[RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id OC6yZ2q3Dn5o for <cga-ext@core3.amsl.com>; Thu, 19 Jun 2008 14:55:35 -0700 (PDT)
Received: from imr1.ericy.com (imr1.ericy.com [198.24.6.9]) by core3.amsl.com (Postfix) with ESMTP id F2F4F3A698D for <cga-ext@ietf.org>; Thu, 19 Jun 2008 14:55:34 -0700 (PDT)
Received: from eusrcmw750.eamcs.ericsson.se (eusrcmw750.exu.ericsson.se [138.85.77.50]) by imr1.ericy.com (8.13.1/8.13.1) with ESMTP id m5JLtWkT002186; Thu, 19 Jun 2008 16:55:32 -0500
Received: from eusrcmw751.eamcs.ericsson.se ([138.85.77.51]) by eusrcmw750.eamcs.ericsson.se with Microsoft SMTPSVC(6.0.3790.1830); Thu, 19 Jun 2008 16:55:51 -0500
Received: from [142.133.10.113] ([142.133.10.113]) by eusrcmw751.eamcs.ericsson.se with Microsoft SMTPSVC(6.0.3790.1830); Thu, 19 Jun 2008 16:55:50 -0500
Message-ID: <485AD60E.7070806@ericsson.com>
Date: Thu, 19 Jun 2008 17:56:30 -0400
From: Suresh Krishnan <suresh.krishnan@ericsson.com>
User-Agent: Thunderbird 2.0.0.14 (X11/20080505)
MIME-Version: 1.0
To: Jean-Michel Combes <jeanmichel.combes@gmail.com>
References: <729b68be0806061730y7bf7f8e7ld3d2b2a5de4155f5@mail.gmail.com> <200806121653.22293.julien.IETF@laposte.net> <729b68be0806181102n12449c7ahe631c725a5ce3ad1@mail.gmail.com> <485950F5.9020107@ericsson.com> <729b68be0806181414q2b8cdc17vd37b6fee1aa83892@mail.gmail.com>
In-Reply-To: <729b68be0806181414q2b8cdc17vd37b6fee1aa83892@mail.gmail.com>
X-OriginalArrivalTime: 19 Jun 2008 21:55:50.0861 (UTC) FILETIME=[3D1197D0:01C8D257]
Cc: cga-ext@ietf.org, Julien Laganier <julien.IETF@laposte.net>
Subject: Re: [CGA-EXT] New Version for draft-krishnan-csi-proxy-send-00
X-BeenThere: cga-ext@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: CGA and SeND Extensions <cga-ext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/cga-ext>, <mailto:cga-ext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/pipermail/cga-ext>
List-Post: <mailto:cga-ext@ietf.org>
List-Help: <mailto:cga-ext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cga-ext>, <mailto:cga-ext-request@ietf.org?subject=subscribe>
Content-Transfer-Encoding: 7bit
Content-Type: text/plain; charset="us-ascii"; Format="flowed"
Sender: cga-ext-bounces@ietf.org
Errors-To: cga-ext-bounces@ietf.org

Hi Jean-Michel,

Jean-Michel Combes wrote:
> Hi Suresh,
> 
> Sorry but some points are unclear for me.
> 
> At first, what are assumptions you have regarding the MN?
> From my point of view, the MN is able to use SEND: in using either CGA
> or a cert linked to its address. Is it the same assumption for you
> because I am not sure this is the case? :)

Yes. I am working under the same assumption as you :-).

> 
> Second point, if the MN have a CGA, how does the ND Proxy get the cert
> which will allow it to sign the NDP signaling instead of the MN?

I think I am beginning to understand your issue. One thing I would like 
to point out is that the ND proxy gets the authority to do this not from 
the MN being proxied but from some other entity that is trusted by the 
receiving MN.

> 
> Last point, if the MN have a cert linked to its address, how does this
> cert is provided to the MN?

This is out of scope of this document. The document does not talk about 
certificates for end nodes.

Cheers
Suresh

_______________________________________________
CGA-EXT mailing list
CGA-EXT@ietf.org
https://www.ietf.org/mailman/listinfo/cga-ext