Re: [core] Conclusion -- Endpoint Client Name / Endpoint Name in RD draft

Mohit Sethi <mohit.m.sethi@ericsson.com> Mon, 07 May 2018 13:54 UTC

Return-Path: <mohit.m.sethi@ericsson.com>
X-Original-To: core@ietfa.amsl.com
Delivered-To: core@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 27AA6124319 for <core@ietfa.amsl.com>; Mon, 7 May 2018 06:54:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.31
X-Spam-Level:
X-Spam-Status: No, score=-4.31 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_DKIMWL_WL_HIGH=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id r-8UNcBU_AzZ for <core@ietfa.amsl.com>; Mon, 7 May 2018 06:54:11 -0700 (PDT)
Received: from sessmg22.ericsson.net (sessmg22.ericsson.net [193.180.251.58]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1E707124235 for <core@ietf.org>; Mon, 7 May 2018 06:54:10 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; d=ericsson.com; s=mailgw201801; c=relaxed/simple; q=dns/txt; i=@ericsson.com; t=1525701249; h=From:Sender:Reply-To:Subject:Date:Message-ID:To:Cc:MIME-Version:Content-Type: Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=CIB9jmo4/7j4Z791HPtqxGxesZFUtVrlQaWQX8dNqXs=; b=Hnh1do5h1o9l5zCZEtlnXBttU2399pfG4am2mCOvgVYYhdBqQecKl2VTLLcvs217 9jG9ayTAC9S9ZlNef1LuRwHi+6vMyCk1JzIAC/3eDPPOvQlUi8nUqldMBW9Q+A9h 26RJCS8kYUNa+3rqujjiJbnOWRzCPVTbtu7Z3i/cO2o=;
X-AuditID: c1b4fb3a-d35ff7000000729c-3c-5af05a8154c3
Received: from ESESSHC021.ericsson.se (Unknown_Domain [153.88.183.81]) by sessmg22.ericsson.net (Symantec Mail Security) with SMTP id 25.C1.29340.18A50FA5; Mon, 7 May 2018 15:54:09 +0200 (CEST)
Received: from nomadiclab.fi.eu.ericsson.se (153.88.183.153) by smtp.internal.ericsson.com (153.88.183.83) with Microsoft SMTP Server id 14.3.382.0; Mon, 7 May 2018 15:54:09 +0200
Received: from nomadiclab.fi.eu.ericsson.se (localhost [127.0.0.1]) by nomadiclab.fi.eu.ericsson.se (Postfix) with ESMTP id E1D07481AB8; Mon, 7 May 2018 16:54:08 +0300 (EEST)
Received: from [127.0.0.1] (localhost [IPv6:::1]) by nomadiclab.fi.eu.ericsson.se (Postfix) with ESMTP id 9740D481AA4; Mon, 7 May 2018 16:54:08 +0300 (EEST)
To: Hannes Tschofenig <Hannes.Tschofenig@arm.com>, "core@ietf.org" <core@ietf.org>
References: <VI1PR0801MB2112B9A4410DA3EDE39183BEFA9B0@VI1PR0801MB2112.eurprd08.prod.outlook.com>
From: Mohit Sethi <mohit.m.sethi@ericsson.com>
Message-ID: <bd85e420-c6ce-3e87-406a-4cd5a4fafaa6@ericsson.com>
Date: Mon, 07 May 2018 16:54:08 +0300
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:52.0) Gecko/20100101 Thunderbird/52.7.0
MIME-Version: 1.0
In-Reply-To: <VI1PR0801MB2112B9A4410DA3EDE39183BEFA9B0@VI1PR0801MB2112.eurprd08.prod.outlook.com>
Content-Type: multipart/alternative; boundary="------------7B30B00D553A20E322FF0662"
Content-Language: en-US
X-AV-Checked: ClamAV using ClamSMTP
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFvrFLMWRmVeSWpSXmKPExsUyM2J7oG5j1Icog6WzZS32vV3PbHFzxikm ByaPNfPWMHosWfKTKYApissmJTUnsyy1SN8ugStj7cTTjAWPdCrad9Q1MO5R7mLk5JAQMJE4 ev0TUxcjF4eQwBFGiXPLz7BBONsZJd7872OEcDYzSryYPxOqbCGjxK/ZqxlB+oUFQiTaTkwF s0WA7LWvTzF3MXIAFSVI9B6WAAmzCehJdJ47zgxi8wrYS7Se2Q1mswioSFz/eZkNxBYViJC4 d/4TG0SNoMTJmU9YQGxOgUSJ7gXXwUYyC4RJLOo0BAkzC4hL3HoynwniA2WJBS2LwC4QElCX 2NpxgHECo9AsJJNmIXTPQtINEbaXeLC1DCIsL7H97RxmCFtf4vqd+6ww8eats5kXMLKvYhQt Ti0uzk03MtJLLcpMLi7Oz9PLSy3ZxAiMkYNbflvtYDz43PEQowAHoxIPL2fAhygh1sSy4src Q4wSHMxKIrxsykAh3pTEyqrUovz4otKc1OJDjNIcLErivE5pFlFCAumJJanZqakFqUUwWSYO TqkGRtPV26Q2z7RZbhRtF3RBaGJ5QtkS05azd/9V5cRkb1MX92358EIsqHibjsLpCylFS595 fWydl5l45Caj1/7cgAK1CwIuUu+8Qo0XfnGY+zy3MbquKXWpyMRFLRPXZxQWO+51upLIdO7v eXffgrj8WL2Ee2cXuyyOkJo67c13/Y7KHnE7eS0PJZbijERDLeai4kQA7awrW40CAAA=
Archived-At: <https://mailarchive.ietf.org/arch/msg/core/dWU5v72KTQwb41b0x-SGXMJ73WA>
Subject: Re: [core] Conclusion -- Endpoint Client Name / Endpoint Name in RD draft
X-BeenThere: core@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Constrained RESTful Environments \(CoRE\) Working Group list" <core.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/core>, <mailto:core-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/core/>
List-Post: <mailto:core@ietf.org>
List-Help: <mailto:core-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/core>, <mailto:core-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 07 May 2018 13:54:13 -0000

Hi Hannes,

Thank you for summarizing the discussion on this important topic thus far.

Could you also very briefly explain what does third-party provisioning 
mean for you?

--Mohit


On 05/07/2018 04:50 PM, Hannes Tschofenig wrote:
>
> Hi all,
>
> I hope that all the discussion around the endpoint name / endpoint 
> client name have helped to make you think about the security 
> implications of sending an unauthenticated identifier.
>
> I would like to come to a conclusion and here is my attempt.
>
> Since we the RD document also defines the third party provisioning I 
> would suggest to make the endpoint name optional in the draft.
>
> I would also encourage the chairs to find out whether the third party 
> provisioning is actually something in this group has gained some 
> experience with.
>
> Ciao
>
> Hannes
>
> IMPORTANT NOTICE: The contents of this email and any attachments are 
> confidential and may also be privileged. If you are not the intended 
> recipient, please notify the sender immediately and do not disclose 
> the contents to any other person, use it for any purpose, or store or 
> copy the information in any medium. Thank you.
>
>
> _______________________________________________
> core mailing list
> core@ietf.org
> https://www.ietf.org/mailman/listinfo/core