Re: [core] I-D Action: draft-ietf-core-oscore-edhoc-11.txt

Marco Tiloca <marco.tiloca@ri.se> Tue, 09 April 2024 08:27 UTC

Return-Path: <marco.tiloca@ri.se>
X-Original-To: core@ietfa.amsl.com
Delivered-To: core@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5A350C14F617 for <core@ietfa.amsl.com>; Tue, 9 Apr 2024 01:27:23 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.096
X-Spam-Level:
X-Spam-Status: No, score=-2.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ri.se
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id jJL77mGBNI9b for <core@ietfa.amsl.com>; Tue, 9 Apr 2024 01:27:19 -0700 (PDT)
Received: from MM0P280CU005.outbound.protection.outlook.com (mail-swedensouthazon11020003.outbound.protection.outlook.com [52.101.74.3]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A7894C14F5EF for <core@ietf.org>; Tue, 9 Apr 2024 01:27:17 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=MdeYOJ/7CiFSRM3ga04q26O7C0gBvDSkON2YtY+hnRcq3nJ0RXn2poUa81/o/IP7Db10qKRBtbvGAAf+l+gD6arskafU0ThUTn0iOlUuA9fwYnCYIrNYs0Zknqu32wQ59ePjDD4FNF0nHVK2hboganXvalaelqxlEHf35jhD7TdkH72fKweCQMrXg6SSDr1Wgtt8WD1ffyKe3LlifHtm2fNEmgOL2onyPQd1OcCJdLcLOH3yo2yl71nMmXrkoRK0zMwLIh2UMuZf2HYIOw5MNhIJMnULUsBnOR3RlDaYzGZU4+bGUkM39Vnl97oOzHLbeHvdaHU0mhIGyZrXqjA75A==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=bEayCVO5b0z3bT063hl6NuMbb/VcTt2M1Ef3qGxsI0o=; b=AYBM643rF9hQeQs+PQHezetwEPktDjSELCHqZpit1Wgy1tGgp/6m+lWWlz70AybPtQQfMJPV0BUuCtQBRSXk/dZG3AHpf9/5WpCb35fIhj1PIVL4CoauJ3eEwLq7GiOunV2r0cu3le+N9LP+93Biom+t0VaDBd/fSV7sVtKUF9ttIGYuTCiXhDE6/gq01GQiIQLBDygQPqMZaeZQfDbq0pskX6wUp1JuCQ1hTgSRv5mxRlOT3/4rCDvClSAZ9waBgd5sS6qgHUMzdrInj7a+vXJ2jQWaxE10IsVDHel9PjbSIJM+hCPiicE1R4fG4ebmhB8X9gLpb/Eof95LswVYpg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ri.se; dmarc=pass action=none header.from=ri.se; dkim=pass header.d=ri.se; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ri.se; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=bEayCVO5b0z3bT063hl6NuMbb/VcTt2M1Ef3qGxsI0o=; b=GU3epaXAtSrvwS6GZQaz7U34gMNs3Ht3D2n9E7RhYK2oaKzFYnGTvdztGai/7Rfc7/ZoeUr/T9bLZF0Q4ARlBqfapFXIMPOKGKk8zQb4eujk1YdVkuWwf0FkAWgIr3R9VUBemtP6A7LjIY2AU006nonwSPN51aeVTqJygFSpTmI=
Received: from GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:37::17) by GV3P280MB0017.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:c::9) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7409.55; Tue, 9 Apr 2024 08:27:12 +0000
Received: from GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM ([fe80::ac07:ed64:c098:f1f9]) by GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM ([fe80::ac07:ed64:c098:f1f9%4]) with mapi id 15.20.7409.042; Tue, 9 Apr 2024 08:27:14 +0000
Message-ID: <f54019a4-48bf-4bb1-8c00-8e5d259cb577@ri.se>
Date: Tue, 09 Apr 2024 10:27:11 +0200
User-Agent: Mozilla Thunderbird
To: Paul Wouters <paul.wouters@aiven.io>, "core@ietf.org" <core@ietf.org>
References: <171265095206.39452.8558022175321301806@ietfa.amsl.com>
Content-Language: en-US
From: Marco Tiloca <marco.tiloca@ri.se>
Autocrypt: addr=marco.tiloca@ri.se; keydata= xsBNBFSNeRUBCAC44iazWzj/PE3TiAlBsaWna0JbdIAJFHB8PLrqthI0ZG7GnCLNR8ZhDz6Z aRDPC4FR3UcMhPgZpJIqa6Zi8yWYCqF7A7QhT7E1WdQR1G0+6xUEd0ZD+QBdf29pQadrVZAt 0G4CkUnq5H+Sm05aw2Cpv3JfsATVaemWmujnMTvZ3dFudCGNdsY6kPSVzMRyedX7ArLXyF+0 Kh1T4WUW6NHfEWltnzkcqRhn2NcZtADsxWrMBgZXkLE/dP67SnyFjWYpz7aNpxxA+mb5WBT+ NrSetJlljT0QOXrXMGh98GLfNnLAl6gJryE6MZazN5oxkJgkAep8SevFXzglj7CAsh4PABEB AAHNNk1hcmNvIFRpbG9jYSAobWFyY28udGlsb2NhQHJpLnNlKSA8bWFyY28udGlsb2NhQHJp LnNlPsLAdwQTAQgAIQUCWkAnkAIbAwULCQgHAgYVCAkKCwIEFgIDAQIeAQIXgAAKCRDuJmS0 DljaQwEvCACJKPJIPGH0oGnLJY4G1I2DgNiyVKt1H4kkc/eT8Bz9OSbAxgZo3Jky382e4Dba ayWrQRFen0aLSFuzbU4BX4O/YRSaIqUO3KwUNO1iTC65OHz0XirGohPUOsc0SEMtpm+4zfYG 7G8p35MK0h9gpwgGMG0j0mZX4RDjuywC88i1VxCwMWGaZRlUrPXkC3nqDDRcPtuEGpncWhAV Qt2ZqeyITv9KCUmDntmXLPe6vEXtOfI9Z3HeqeI8OkGwXpotVobgLa/mVmFj6EALDzj7HC2u tfgxECBJddmcDInrvGgTkZtXEVbyLQuiK20lJmYnmPWN8DXaVVaQ4XP/lXUrzoEzzsBNBFSN eRUBCACWmp+k6LkY4/ey7eA7umYVc22iyVqAEXmywDYzEjewYwRcjTrH/Nx1EqwjIDuW+BBE oMLRZOHCgmjo6HRmWIutcYVCt9ieokultkor9BBoQVPiI+Tp51Op02ifkGcrEQNZi7q3fmOt hFZwZ6NJnUbA2bycaKZ8oClvDCQj6AjEydBPnS73UaEoDsqsGVjZwChfOMg5OyFm90QjpIw8 m0uDVcCzKKfxq3T/z7tyRgucIUe84EzBuuJBESEjK/hF0nR2LDh1ShD29FWrFZSNVVCVu1UY ZLAayf8oKKHHpM+whfjEYO4XsDpV4zQ15A+D15HRiHR6Adf4PDtPM1DCwggjABEBAAHCwF8E GAECAAkFAlSNeRUCGwwACgkQ7iZktA5Y2kPGEwf/WNjTy3z74vLmHycVsFXXoQ8W1+858mRy Ad0a8JYzY3xB7CVtqI3Hy894Qcw4H6G799A1OL9B1EeA8Yj3aOz0NbUyf5GW+iotr3h8+KIC OYZ34/BQaOLzdvDNmRoGHn+NeTzhF7eSeiPKi2jex+NVodhjOVGXw8EhYGkeZLvynHEboiLM 4TbyPbVR9HsdVqKGVTDxKSE3namo3kvtY6syRFIiUz5WzJfYAuqbt6m3TxDEb8sA9pzaLuhm fnJRc12H5NVZEZmE/EkJFTlkP4wnZyOSf/r2/Vd0iHauBwv57cpY6HFFMe7rvK4s7ME5zctO Ely5C6NCu1ZaNtdUuqDSPA==
In-Reply-To: <171265095206.39452.8558022175321301806@ietfa.amsl.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------Bo1dui63VQv0tz7X4Q0Y5S6c"
X-ClientProxiedBy: MM0P280CA0025.SWEP280.PROD.OUTLOOK.COM (2603:10a6:190:a::16) To GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM (2603:10a6:150:37::17)
MIME-Version: 1.0
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: GVYP280MB0464:EE_|GV3P280MB0017:EE_
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230031)(376005)(1800799015)(366007); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: 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
X-OriginatorOrg: ri.se
X-MS-Exchange-CrossTenant-Network-Message-Id: 93b36dac-7097-47da-0513-08dc586edbf0
X-MS-Exchange-CrossTenant-AuthSource: GVYP280MB0464.SWEP280.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 09 Apr 2024 08:27:14.1127 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: 5a9809cf-0bcb-413a-838a-09ecc40cc9e8
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: jGNKRHM4GBMDLP8dC3kL+0XazVDEmjRAuc1649fBp7uuW419z6DYayS3HjJVARl/x0wYbSMkHJ1zCKkneS/k3A==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: GV3P280MB0017
Archived-At: <https://mailarchive.ietf.org/arch/msg/core/hOKInmRNXtnSBlMtNylbxA86plc>
Subject: Re: [core] I-D Action: draft-ietf-core-oscore-edhoc-11.txt
X-BeenThere: core@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Constrained RESTful Environments \(CoRE\) Working Group list" <core.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/core>, <mailto:core-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/core/>
List-Post: <mailto:core@ietf.org>
List-Help: <mailto:core-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/core>, <mailto:core-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 09 Apr 2024 08:27:23 -0000

Hello Paul and CoRE,

This latest version -11 addresses all the comments received during the 
IESG evaluation.

Thanks a lot to all the reviewers for their comments!

Best,
/Marco

On 2024-04-09 10:22, internet-drafts@ietf.org wrote:
> Internet-Draft draft-ietf-core-oscore-edhoc-11.txt is now available. It is a
> work item of the Constrained RESTful Environments (CORE) WG of the IETF.
>
>     Title:   Using Ephemeral Diffie-Hellman Over COSE (EDHOC) with the Constrained Application Protocol (CoAP) and Object Security for Constrained RESTful Environments (OSCORE)
>     Authors: Francesca Palombini
>              Marco Tiloca
>              Rikard Höglund
>              Stefan Hristozov
>              Göran Selander
>     Name:    draft-ietf-core-oscore-edhoc-11.txt
>     Pages:   33
>     Dates:   2024-04-09
>
> Abstract:
>
>     The lightweight authenticated key exchange protocol Ephemeral Diffie-
>     Hellman Over COSE (EDHOC) can be run over the Constrained Application
>     Protocol (CoAP) and used by two peers to establish a Security Context
>     for the security protocol Object Security for Constrained RESTful
>     Environments (OSCORE).  This document details this use of the EDHOC
>     protocol, by specifying a number of additional and optional
>     mechanisms.  These especially include an optimization approach for
>     combining the execution of EDHOC with the first OSCORE transaction.
>     This combination reduces the number of round trips required to set up
>     an OSCORE Security Context and to complete an OSCORE transaction
>     using that Security Context.
>
> The IETF datatracker status page for this Internet-Draft is:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-core-oscore-edhoc%2F&data=05%7C02%7Cmarco.tiloca%40ri.se%7C1ceb94869aa443d834bb08dc586e5102%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638482478042633360%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=s%2Bz893XIEXOrc9clxHGv9D0vwrpMZPH3ciYsP7Yp26I%3D&reserved=0
>
> There is also an HTML version available at:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Farchive%2Fid%2Fdraft-ietf-core-oscore-edhoc-11.html&data=05%7C02%7Cmarco.tiloca%40ri.se%7C1ceb94869aa443d834bb08dc586e5102%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638482478042645523%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=XR8IIXQ5iBVUwSNkzf89km8zc319A0y%2FTT9DjeMJ7bc%3D&reserved=0
>
> A diff from the previous version is available at:
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fauthor-tools.ietf.org%2Fiddiff%3Furl2%3Ddraft-ietf-core-oscore-edhoc-11&data=05%7C02%7Cmarco.tiloca%40ri.se%7C1ceb94869aa443d834bb08dc586e5102%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638482478042654393%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=VErRpQsEh2lg8U7eGIrpc%2FscloumMpNnNOTrZqvsy28%3D&reserved=0
>
> Internet-Drafts are also available by rsync at:
> rsync.ietf.org::internet-drafts
>
>
> _______________________________________________
> core mailing list
> core@ietf.org
> https://eur05.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Fcore&data=05%7C02%7Cmarco.tiloca%40ri.se%7C1ceb94869aa443d834bb08dc586e5102%7C5a9809cf0bcb413a838a09ecc40cc9e8%7C0%7C0%7C638482478042662751%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C0%7C%7C%7C&sdata=%2FKKKAHjU1dvkBXyQdu9PgHSs9dHqQpTJui%2FitzkHSSk%3D&reserved=0

-- 
Marco Tiloca
Ph.D., Senior Researcher

Phone: +46 (0)70 60 46 501

RISE Research Institutes of Sweden AB
Box 1263
164 29 Kista (Sweden)

Division: Digital Systems
Department: Computer Science
Unit: Cybersecurity

https://www.ri.se