Re: [Danish] Charter Text and the Problem Statement

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Mon, 21 June 2021 15:26 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: danish@ietfa.amsl.com
Delivered-To: danish@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D74B33A0B17 for <danish@ietfa.amsl.com>; Mon, 21 Jun 2021 08:26:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0
X-Spam-Level:
X-Spam-Status: No, score=0 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=VIxBLS+G; dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=VIxBLS+G
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hlUbAzxkUrEK for <danish@ietfa.amsl.com>; Mon, 21 Jun 2021 08:26:28 -0700 (PDT)
Received: from EUR04-DB3-obe.outbound.protection.outlook.com (mail-eopbgr60056.outbound.protection.outlook.com [40.107.6.56]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5AFDC3A0B13 for <danish@ietf.org>; Mon, 21 Jun 2021 08:26:28 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=M4GJavGQuUInEkEKfHbDq/gkvMhevLtPev/82jqcUU8=; b=VIxBLS+Gh0g2Pb8eK02SGGX8IRcLUuhHQGbMTss4iKWTMEjMQhK1SPpt0WETJ0220BV0dyiBivfJxjSqK3QIjjmJHrDgDWNjZnq7J06HexPNSriOpLGIePo96FzmFbr1PyebeAbsiB3z8Z6v8XAuBRZtvPeraqp7BMW5C/tktuQ=
Received: from AM6PR10CA0026.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:209:89::39) by VI1PR08MB4270.eurprd08.prod.outlook.com (2603:10a6:803:f9::20) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4242.15; Mon, 21 Jun 2021 15:26:21 +0000
Received: from AM5EUR03FT028.eop-EUR03.prod.protection.outlook.com (2603:10a6:209:89:cafe::28) by AM6PR10CA0026.outlook.office365.com (2603:10a6:209:89::39) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4242.16 via Frontend Transport; Mon, 21 Jun 2021 15:26:21 +0000
X-MS-Exchange-Authentication-Results: spf=pass (sender IP is 63.35.35.123) smtp.mailfrom=arm.com; ietf.org; dkim=pass (signature was verified) header.d=armh.onmicrosoft.com;ietf.org; dmarc=pass action=none header.from=arm.com;
Received-SPF: Pass (protection.outlook.com: domain of arm.com designates 63.35.35.123 as permitted sender) receiver=protection.outlook.com; client-ip=63.35.35.123; helo=64aa7808-outbound-1.mta.getcheckrecipient.com;
Received: from 64aa7808-outbound-1.mta.getcheckrecipient.com (63.35.35.123) by AM5EUR03FT028.mail.protection.outlook.com (10.152.16.118) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4242.16 via Frontend Transport; Mon, 21 Jun 2021 15:26:21 +0000
Received: ("Tessian outbound f88ae75fbd47:v96"); Mon, 21 Jun 2021 15:26:20 +0000
X-CR-MTA-TID: 64aa7808
Received: from 808f7c5f525d.1 by 64aa7808-outbound-1.mta.getcheckrecipient.com id E8285B66-B3BE-42E3-B2A3-63EA93A9F71B.1; Mon, 21 Jun 2021 15:26:13 +0000
Received: from EUR05-DB8-obe.outbound.protection.outlook.com by 64aa7808-outbound-1.mta.getcheckrecipient.com with ESMTPS id 808f7c5f525d.1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384); Mon, 21 Jun 2021 15:26:13 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=EGskhw721ZKtth+gvZoU4RwBOaGhG8Y8UTjCbfcKq1BxBTVEBgoMBQ8fqUsFEz5LTZ1TpNaNDBq4qI7bKkMPq6pro0+EilnPqX0dboKuCZ/V/STA7+tYfYnlZQnXBBBAHA8XPXDbyj/GKNmTs6BB0Cu1X/4LG8LjNLeg0fWXqKSqvkv+Hvu/tPr7BOGVCCO2wsBjCnxBgDYJePQBFAAd8hpI/FOBwyIPL/jlJPijcI0H4To7ZEK2aeNrDZWNXLJucWyq7ehtYiun16HHy2IMmbYgoCARVgOs3byWkhOE3j2XARN1KmWsxlbx/Gfx/Ptdz6ymdUlNguh4EpAHOrsYtQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=M4GJavGQuUInEkEKfHbDq/gkvMhevLtPev/82jqcUU8=; b=MK2ALSR+fzPovh/z1h7zGsNi2Ug8SYjwxa+Il4IFA9SzbIg4iwpD7YJsJJ8Ta/VW8XZ06dEc7SlE8UOltyky2MhsDwBz8taZemD1+Y+3OyLtvsoUFb+d/yWaScN04iU1QxCNgJcTMH7XcQGH1otzT9J7OxhkKnejtWNxSSgb0irUCO5mQI5FJf+PlBFd781zD3O1hTOuIExSKfelRDSZWVS/JMoexED34jECVVYICDNgxEpFcI08yvyt5eqUL4ks4u7wk74ctZHSanYTky2uk3pzTg7O7TabMEVqosk8FnzEtzYzO65HbUU+D/UOK/FPgT2Xvs7OzVpvkfaziHSFMw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=M4GJavGQuUInEkEKfHbDq/gkvMhevLtPev/82jqcUU8=; b=VIxBLS+Gh0g2Pb8eK02SGGX8IRcLUuhHQGbMTss4iKWTMEjMQhK1SPpt0WETJ0220BV0dyiBivfJxjSqK3QIjjmJHrDgDWNjZnq7J06HexPNSriOpLGIePo96FzmFbr1PyebeAbsiB3z8Z6v8XAuBRZtvPeraqp7BMW5C/tktuQ=
Received: from DBBPR08MB5915.eurprd08.prod.outlook.com (2603:10a6:10:20d::17) by DBBPR08MB5915.eurprd08.prod.outlook.com (2603:10a6:10:20d::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4242.19; Mon, 21 Jun 2021 15:26:12 +0000
Received: from DBBPR08MB5915.eurprd08.prod.outlook.com ([fe80::69cf:4429:a804:7f41]) by DBBPR08MB5915.eurprd08.prod.outlook.com ([fe80::69cf:4429:a804:7f41%3]) with mapi id 15.20.4242.023; Mon, 21 Jun 2021 15:26:12 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: Michael Richardson <mcr+ietf@sandelman.ca>, "danish@ietf.org" <danish@ietf.org>
Thread-Topic: [Danish] Charter Text and the Problem Statement
Thread-Index: Addin8Z32g6ibl9RQiW6iIvXVU0WhwAVq2gAABL3x4AAGNNDAAAroAeQAD1ePYAAGAHboAAc2eSAAA9o/EAAFC7HgAAA1Rag
Date: Mon, 21 Jun 2021 15:26:12 +0000
Message-ID: <DBBPR08MB59157E1831783E7657D048A6FA0A9@DBBPR08MB5915.eurprd08.prod.outlook.com>
References: <DBBPR08MB5915066E1CE5BDB2D695A8DAFA0F9@DBBPR08MB5915.eurprd08.prod.outlook.com> <CAEfM=vQehhvSNeBNitJJjisEbimn_gizoo8VTtHWUJ1zSU+rQg@mail.gmail.com> <DBBPR08MB5915D8FC201DFEB31F7D8EA8FA0E9@DBBPR08MB5915.eurprd08.prod.outlook.com> <CAEfM=vTHPmDcOimf9xOvkYgeObbHvpfG1uZUVjBJFhykrZNafg@mail.gmail.com> <DBBPR08MB5915C107E3620968DFE34D97FA0C9@DBBPR08MB5915.eurprd08.prod.outlook.com> <23295.1624134481@localhost> <DBBPR08MB591546610B09B3606721EF2CFA0B9@DBBPR08MB5915.eurprd08.prod.outlook.com> <5631.1624225291@localhost> <DBBPR08MB5915DB801CD6D3FFD8D69E96FA0A9@DBBPR08MB5915.eurprd08.prod.outlook.com> <11057.1624286439@localhost>
In-Reply-To: <11057.1624286439@localhost>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ts-tracking-id: 5AA1C29C7BFF864DA6E71A1F1A10EE42.0
x-checkrecipientchecked: true
Authentication-Results-Original: sandelman.ca; dkim=none (message not signed) header.d=none; sandelman.ca; dmarc=none action=none header.from=arm.com;
x-originating-ip: [80.92.123.248]
x-ms-publictraffictype: Email
X-MS-Office365-Filtering-Correlation-Id: b7704b61-f68a-4129-9350-08d934c8ec59
x-ms-traffictypediagnostic: DBBPR08MB5915:|VI1PR08MB4270:
X-Microsoft-Antispam-PRVS: <VI1PR08MB42707ED5CFD700D18B1AD385FA0A9@VI1PR08MB4270.eurprd08.prod.outlook.com>
x-checkrecipientrouted: true
nodisclaimer: true
x-ms-oob-tlc-oobclassifiers: OLM:9508;OLM:10000;
X-MS-Exchange-SenderADCheck: 1
X-Microsoft-Antispam-Untrusted: BCL:0;
X-Microsoft-Antispam-Message-Info-Original: 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
X-Forefront-Antispam-Report-Untrusted: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DBBPR08MB5915.eurprd08.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(396003)(136003)(346002)(366004)(39860400002)(376002)(52536014)(6506007)(7696005)(53546011)(26005)(38100700002)(122000001)(186003)(8936002)(966005)(5660300002)(66574015)(478600001)(86362001)(66556008)(64756008)(66446008)(66476007)(66946007)(76116006)(33656002)(83380400001)(2906002)(8676002)(110136005)(316002)(71200400001)(55016002)(9686003); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DBBPR08MB5915
Original-Authentication-Results: sandelman.ca; dkim=none (message not signed) header.d=none; sandelman.ca; dmarc=none action=none header.from=arm.com;
X-EOPAttributedMessage: 0
X-MS-Exchange-Transport-CrossTenantHeadersStripped: AM5EUR03FT028.eop-EUR03.prod.protection.outlook.com
X-MS-Office365-Filtering-Correlation-Id-Prvs: 27e51cbe-f474-41a7-9099-08d934c8e71a
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: BwlRfgVepceObqVKWQrNS5b3lzdkQuBviL6FDM9pwsyrelMlxa/v2ekSlqx8Td3lsYzPfs7x115rtMoTa4iNiryd9Rc8xACmSlbcPGyX6PpqOxsZ1o+W8SZ+D3hsPeKBQZ04SFrBv4dZ05pwWSbflx8G+NKa2T5ZNAdcs31NlwtmJW/CENLxLbK3FEOB55wWw/JoT2Bb5T78VChNqA0Nw+n7OYiMk0Z2OzzQSHryH4qUR0k48cLy5gerv+pxrl7ZV2nscrfVj3qL/PU98ZgT8zv2Bym8cEHFMHFxFOyAd7hUysdyVZq9yVHbjbIMFjtK2Q/yU+rS8eFz2daCfTqpGvpr2xp372C+L76Q4HVkfIvGfu64miwZJLHeGmQtLLsDmfoFHgfofzt6FoCQuJXmt71U/y+T0OiD6MxtWDmfU3WvwAyIDg5Wy7L/azLyY4N7XvyAcD1RVT9sqGcigOTyD78E24cbyx7URscWa0/+I/KdjxeWcWSiXY/aTve5YOH6Lae37DPyRuMl4Ktq6V1NEmyE7ed/3lQ8yn8KrpTOloDX/97Dq9IAgOs5i3f9gh7/m9oT7F4g8+FhCd8AvO3DaeSmbFNAh6CKNX3foUKs/yDBNrQFtdKtkQG8U/UOjFA1/RwOi0FP0WP/g2opcd4W+8ELafvSR+OlQtQLmq3wCyRo+G8yeuH++eRuV71/E2y9e1ncIwiOtN3rPGcjc7XIt5le95pj9DOLqyjwpXqSK4N2wjLU5uU/s9FefpjiIWHrBnqqXgSO/cDdevrmahZ3ag==
X-Forefront-Antispam-Report: CIP:63.35.35.123; CTRY:IE; LANG:en; SCL:1; SRV:; IPV:CAL; SFV:NSPM; H:64aa7808-outbound-1.mta.getcheckrecipient.com; PTR:ec2-63-35-35-123.eu-west-1.compute.amazonaws.com; CAT:NONE; SFS:(4636009)(136003)(376002)(39860400002)(396003)(346002)(46966006)(36840700001)(70206006)(26005)(966005)(33656002)(70586007)(53546011)(336012)(6506007)(52536014)(5660300002)(8936002)(2906002)(8676002)(9686003)(55016002)(186003)(316002)(7696005)(356005)(86362001)(66574015)(82740400003)(47076005)(81166007)(82310400003)(36860700001)(110136005)(83380400001)(478600001); DIR:OUT; SFP:1101;
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 21 Jun 2021 15:26:21.2313 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: b7704b61-f68a-4129-9350-08d934c8ec59
X-MS-Exchange-CrossTenant-Id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=f34e5979-57d9-4aaa-ad4d-b122a662184d; Ip=[63.35.35.123]; Helo=[64aa7808-outbound-1.mta.getcheckrecipient.com]
X-MS-Exchange-CrossTenant-AuthSource: AM5EUR03FT028.eop-EUR03.prod.protection.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Anonymous
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR08MB4270
Archived-At: <https://mailarchive.ietf.org/arch/msg/danish/t9duGXyIZHp1HTdQdRcWEeAQsu8>
Subject: Re: [Danish] Charter Text and the Problem Statement
X-BeenThere: danish@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DANE AutheNtication for Iot Service Hardening <danish.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/danish>, <mailto:danish-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/danish/>
List-Post: <mailto:danish@ietf.org>
List-Help: <mailto:danish-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/danish>, <mailto:danish-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 21 Jun 2021 15:26:34 -0000

Hi Michael,

I was not necessarily thinking about IEEE 802.1AR and the way BRSKI uses it. BRSKI is kind of special in the way it is designed.

In general, in security there is the idea to use different keys for different purposes. If that has changed then I completed missed it.

Regarding the management of access with wearables and smart home deployments using standardized protocols I thought that this is why we did all the work in ACE.

Ciao
Hannes

-----Original Message-----
From: Michael Richardson <mcr+ietf@sandelman.ca>
Sent: Monday, June 21, 2021 4:41 PM
To: Hannes Tschofenig <Hannes.Tschofenig@arm.com>; danish@ietf.org
Subject: Re: [Danish] Charter Text and the Problem Statement


Hannes Tschofenig <Hannes.Tschofenig@arm.com> wrote:
    >> If you use DANISH, then you don't need to onboard the device
    >> (i.e. enroll it with a new certificate), because you already have secure
    >> access to the correct certificate via DNS(SEC).

    > In the past we used different keys for different purposes. A
    > manufacturer provided key was used for a relatively small number of
    > tasks (typically for obtaining operational keys). For use with
    > application services we used a different key. We used yet another key
    > for firmware updates and again another for attestation.

    > What has changed?

As you know I'm a big proponent of using an IDevID with an onboarding protocol to obtain an LDevID.
I think that this is still an important path.  But, it's not the only path!

While I think your next comment might be about divergent paths causing market
confusion,  I think that we are already there.   There are presently a number
of incompatible systems out there that deliver keys from the factory to be used in production.

I think that the DANISH might be an interesting way to publish *LDevID*s.
While I might onboard a device into my network, in the future, imagine that different operational networks might need to interact without having an ownership relationship.  For instance, any personal wearables you might have interacting with a variety of building or vehicle systems that you are in.
How will I give you permission to turn on the lights in my house?
I'd surely prefer to list that authorization by DNS name, rather than hash, right?

--
]               Never tell me the odds!                 | ipv6 mesh networks [
]   Michael Richardson, Sandelman Software Works        |    IoT architect   [
]     mcr@sandelman.ca  http://www.sandelman.ca/        |   ruby on rails    [




--
Michael Richardson <mcr+IETF@sandelman.ca>   . o O ( IPv6 IøT consulting )
           Sandelman Software Works Inc, Ottawa and Worldwide




IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.