Re: [Danish] Proposed WG Charter

Jacques Latour <Jacques.Latour@cira.ca> Thu, 24 June 2021 20:07 UTC

Return-Path: <Jacques.Latour@cira.ca>
X-Original-To: danish@ietfa.amsl.com
Delivered-To: danish@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E81223A2996 for <danish@ietfa.amsl.com>; Thu, 24 Jun 2021 13:07:50 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.188
X-Spam-Level:
X-Spam-Status: No, score=-4.188 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_KAM_HTML_FONT_INVALID=0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Gh-zoxHl_JHn for <danish@ietfa.amsl.com>; Thu, 24 Jun 2021 13:07:46 -0700 (PDT)
Received: from nestor.zerospam.ca (nestor.zerospam.ca [209.172.38.88]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 18CDF3A2994 for <danish@ietf.org>; Thu, 24 Jun 2021 13:07:45 -0700 (PDT)
X-ZEROSPAM_FILTERED: true
Received: from nestor.zerospam.ca (localhost [127.0.0.1]) by nestor.zerospam.ca (Postfix) with ESMTP id 4G9rlh0Lchz8sWY; Thu, 24 Jun 2021 16:07:44 -0400 (EDT)
Authentication-Results: nestor.zerospam.ca (ip=192.228.22.11); spf=none smtp.helo=mx1.cira.ca; spf=pass smtp.mailfrom=Jacques.Latour@cira.ca; dkim=none; dmarc=none (action=none) reason="No DMARC policy found" header.from=cira.ca
Received: from 127.0.0.1 (127.0.0.1:12000) (original ip: 192.228.22.11) by nestor.zerospam.ca (Themis) with ESMTP id skuqLMuo2PevpK1yCBp; Thu, 24 Jun 2021 16:07:41 -0400
Received: from mx1.cira.ca (nat.crp.cira.ca [192.228.22.11]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by nestor.zerospam.ca (Postfix) with ESMTPS id 4G9rld46F4z8sWm; Thu, 24 Jun 2021 16:07:41 -0400 (EDT)
Received: from CRP-EX16-02.CORP.CIRA.CA (10.2.36.121) by CRP-EX16-01.CORP.CIRA.CA (10.2.36.120) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P384) id 15.1.2242.10; Thu, 24 Jun 2021 16:07:40 -0400
Received: from CRP-EX16-02.CORP.CIRA.CA ([fe80::c50f:56f4:1f3c:b748]) by CRP-EX16-02.CORP.CIRA.CA ([fe80::c50f:56f4:1f3c:b748%14]) with mapi id 15.01.2242.010; Thu, 24 Jun 2021 16:07:40 -0400
From: Jacques Latour <Jacques.Latour@cira.ca>
To: Michael Richardson <mcr+ietf@sandelman.ca>, Roman Danyliw <rdd@cert.org>, "danish@ietf.org" <danish@ietf.org>
Thread-Topic: [Danish] Proposed WG Charter
Thread-Index: AQHXZwpimiTIhpz3QUe5h0WPSBMEFKsjlnrw
Date: Thu, 24 Jun 2021 20:07:40 +0000
Message-ID: <8236b61aa6d64f3db5e23b5345730dbf@cira.ca>
References: <YMZwG/l/pne2tHJF@straasha.imrryr.org> <A7723DDA-3B78-46AD-9449-B6DF7F211706@nohats.ca> <18269.1623628404@localhost> <DM3P110MB05387F1E477021BB812910B2DC0A9@DM3P110MB0538.NAMP110.PROD.OUTLOOK.COM> <18462.1624327218@localhost>
In-Reply-To: <18462.1624327218@localhost>
Accept-Language: en-CA, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_ee0e450f-d653-41c9-9b6c-2295bb19e3b2_Enabled=true; MSIP_Label_ee0e450f-d653-41c9-9b6c-2295bb19e3b2_SetDate=2021-06-24T20:07:39Z; MSIP_Label_ee0e450f-d653-41c9-9b6c-2295bb19e3b2_Method=Standard; MSIP_Label_ee0e450f-d653-41c9-9b6c-2295bb19e3b2_Name=Confidential; MSIP_Label_ee0e450f-d653-41c9-9b6c-2295bb19e3b2_SiteId=f349b30c-7550-4f17-88da-269417631f54; MSIP_Label_ee0e450f-d653-41c9-9b6c-2295bb19e3b2_ActionId=dc02ece4-feb6-4cd1-b5ed-80c25830ae4e; MSIP_Label_ee0e450f-d653-41c9-9b6c-2295bb19e3b2_ContentBits=2
x-originating-ip: [10.2.36.1]
Content-Type: multipart/alternative; boundary="_000_8236b61aa6d64f3db5e23b5345730dbfciraca_"
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/danish/GcL1VOt3XEx78z5yi3A_YGdKVsY>
Subject: Re: [Danish] Proposed WG Charter
X-BeenThere: danish@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DANE AutheNtication for Iot Service Hardening <danish.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/danish>, <mailto:danish-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/danish/>
List-Post: <mailto:danish@ietf.org>
List-Help: <mailto:danish-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/danish>, <mailto:danish-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 Jun 2021 20:07:51 -0000

Hi,



"In response to the challenges related to ambiguity between client identities issued by different CAs, application owners frequently choose to onboard IoT devices to a single private CA specific to that vertical. This creates a silo effect where different parts of large deployment can not communicate. For instance the heating/cooling system of a building wishing to turn lights off to reduce room temperatures can not authenticate to the lighting control system.



This does not resonate with me yet " This creates a silo effect where different parts of large deployment can not communicate. " I think the problem is that each silo cannot authenticate each other in trusted manner,  if IoT device company A knows it's allow turn the light switch on IoT device company B when the sun sets, then there's no mechanism today to authenticate themselves with a unique identity?...   and there needs to be a control system somewhere that says IoT device A can control IoT device B, that controls system today also need to authenticate the IoT devices....



It's clearer in my head than on the email... ☹



Jack







> -----Original Message-----

> From: Danish <danish-bounces@ietf.org> On Behalf Of Michael Richardson

> Sent: June 21, 2021 10:00 PM

> To: Roman Danyliw <rdd@cert.org>; danish@ietf.org

> Subject: Re: [Danish] Proposed WG Charter

>

>

> So, the initial charter from June 12 is now at:

>

>   https://github.com/mcr/danish-<https://github.com/mcr/danish-bof/commit/6c9a50804d086679c06172f085915b9dad7970db>

> bof/commit/6c9a50804d086679c06172f085915b9dad7970db<https://github.com/mcr/danish-bof/commit/6c9a50804d086679c06172f085915b9dad7970db>

>

> My proposed revised charter is at:

>   https://github.com/mcr/danish-bof/pull/1/files?short_path=d22b3d6#diff-<https://github.com/mcr/danish-bof/pull/1/files?short_path=d22b3d6#diff-d22b3d6550c34594a6e2d6b2148ed17907c5d598b10f407b6fbecf07bf25ea97>

> d22b3d6550c34594a6e2d6b2148ed17907c5d598b10f407b6fbecf07bf25ea97<https://github.com/mcr/danish-bof/pull/1/files?short_path=d22b3d6#diff-d22b3d6550c34594a6e2d6b2148ed17907c5d598b10f407b6fbecf07bf25ea97>

>

> In all it's github annotated Markdown glory!

>

> These are my edits this evening based upon Roman's comments earlier today.

>

>   https://github.com/mcr/danish-bof/pull/2/files?short_path=d22b3d6#diff-<https://github.com/mcr/danish-bof/pull/2/files?short_path=d22b3d6#diff-d22b3d6550c34594a6e2d6b2148ed17907c5d598b10f407b6fbecf07bf25ea97>

> d22b3d6550c34594a6e2d6b2148ed17907c5d598b10f407b6fbecf07bf25ea97<https://github.com/mcr/danish-bof/pull/2/files?short_path=d22b3d6#diff-d22b3d6550c34594a6e2d6b2148ed17907c5d598b10f407b6fbecf07bf25ea97>

>

> I would appreciate github level comments on the comments, particularly from

> Roman.

>

> --

> Michael Richardson <mcr+IETF@sandelman.ca<mailto:mcr+IETF@sandelman.ca>>   . o O ( IPv6 IøT consulting )

>            Sandelman Software Works Inc, Ottawa and Worldwide

>

>

>




CLASSIFICATION:CONFIDENTIAL