Re: [dhcwg] WGLC for draft-ietf-dhc-sedhcpv6-04 - Respond by Nov 3, 2014

"Templin, Fred L" <Fred.L.Templin@boeing.com> Mon, 03 November 2014 16:40 UTC

Return-Path: <Fred.L.Templin@boeing.com>
X-Original-To: dhcwg@ietfa.amsl.com
Delivered-To: dhcwg@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C9B231A1A18 for <dhcwg@ietfa.amsl.com>; Mon, 3 Nov 2014 08:40:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.794
X-Spam-Level:
X-Spam-Status: No, score=-4.794 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RP_MATCHES_RCVD=-0.594, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id akZl16z_m8ez for <dhcwg@ietfa.amsl.com>; Mon, 3 Nov 2014 08:40:49 -0800 (PST)
Received: from stl-mbsout-02.boeing.com (stl-mbsout-02.boeing.com [130.76.96.170]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1B4861A1A05 for <dhcwg@ietf.org>; Mon, 3 Nov 2014 08:40:49 -0800 (PST)
Received: from localhost (localhost [127.0.0.1]) by stl-mbsout-02.boeing.com (8.14.4/8.14.4/DOWNSTREAM_MBSOUT) with SMTP id sA3GemcJ002991; Mon, 3 Nov 2014 10:40:48 -0600
Received: from XCH-BLV-502.nw.nos.boeing.com (xch-blv-502.nw.nos.boeing.com [130.247.25.191]) by stl-mbsout-02.boeing.com (8.14.4/8.14.4/UPSTREAM_MBSOUT) with ESMTP id sA3Gedub002291 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=OK); Mon, 3 Nov 2014 10:40:40 -0600
Received: from XCH-BLV-504.nw.nos.boeing.com ([169.254.4.66]) by XCH-BLV-502.nw.nos.boeing.com ([169.254.2.226]) with mapi id 14.03.0210.002; Mon, 3 Nov 2014 08:40:38 -0800
From: "Templin, Fred L" <Fred.L.Templin@boeing.com>
To: Sheng Jiang <jiangsheng@huawei.com>, "Bernie Volz (volz)" <volz@cisco.com>, "dhcwg@ietf.org" <dhcwg@ietf.org>
Thread-Topic: [dhcwg] WGLC for draft-ietf-dhc-sedhcpv6-04 - Respond by Nov 3, 2014
Thread-Index: AQHP94Tl+Wh0q1ysg0GAxSPtw7toFg==
Date: Mon, 03 Nov 2014 16:40:37 +0000
Message-ID: <2134F8430051B64F815C691A62D9831832D7791A@XCH-BLV-504.nw.nos.boeing.com>
References: <489D13FBFA9B3E41812EA89F188F018E1B6F6882@xmb-rcd-x04.cisco.com> <489D13FBFA9B3E41812EA89F188F018E1B703F70@xmb-rcd-x04.cisco.com> <2134F8430051B64F815C691A62D9831832D76AAE@XCH-BLV-504.nw.nos.boeing.com> <489D13FBFA9B3E41812EA89F188F018E1B704F15@xmb-rcd-x04.cisco.com>, <2134F8430051B64F815C691A62D9831832D7700C@XCH-BLV-504.nw.nos.boeing.com> <5D36713D8A4E7348A7E10DF7437A4B923AF6D0A3@nkgeml512-mbx.china.huawei.com>
In-Reply-To: <5D36713D8A4E7348A7E10DF7437A4B923AF6D0A3@nkgeml512-mbx.china.huawei.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [130.247.104.6]
Content-Type: multipart/alternative; boundary="_000_2134F8430051B64F815C691A62D9831832D7791AXCHBLV504nwnosb_"
MIME-Version: 1.0
X-TM-AS-MML: disable
Archived-At: http://mailarchive.ietf.org/arch/msg/dhcwg/Re8lm3CaBRCwVricght86pS0_WU
Cc: Zhangdacheng <IMCEAEX-_O=HUAWEI+20EXCHANGE+20ORG_OU=EXCHANGE+20ADMINISTRATIVE+20GROUP+20+28FYDIBOHF23SPDLT+29_CN=RECIPIENTS_CN=Zhangdacheng+20WX148450@huawei.com>
Subject: Re: [dhcwg] WGLC for draft-ietf-dhc-sedhcpv6-04 - Respond by Nov 3, 2014
X-BeenThere: dhcwg@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: <dhcwg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dhcwg/>
List-Post: <mailto:dhcwg@ietf.org>
List-Help: <mailto:dhcwg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 03 Nov 2014 16:40:53 -0000

Hi Sheng,

I can accept that - thanks for clarifying!

Fred
fred.l.templin@boeing.com

From: Sheng Jiang [mailto:jiangsheng@huawei.com]
Sent: Sunday, November 02, 2014 4:15 PM
To: Templin, Fred L; Bernie Volz (volz); dhcwg@ietf.org
Cc: Zhangdacheng
Subject: RE: [dhcwg] WGLC for draft-ietf-dhc-sedhcpv6-04 - Respond by Nov 3, 2014


Hi, Fred,



This seems a misunderstanding of current draft. The current draft does have the client to sign its messages with its own private key. The certificate of client is actually from the public/private key pair of the client. The client sends public key to authorized CA, out of band normally. The returned certificate contains the original client public key. So, the certificate is still paired with the private key of the client. The message is signed by the client's private key. It is verified by the client's public key (containing within the certificate).



Best regards,



Sheng



________________________________
From: dhcwg [dhcwg-bounces@ietf.org] on behalf of Templin, Fred L [Fred.L.Templin@boeing.com]
Sent: 03 November 2014 5:32
To: Bernie Volz (volz); dhcwg@ietf.org<mailto:dhcwg@ietf.org>
Subject: Re: [dhcwg] WGLC for draft-ietf-dhc-sedhcpv6-04 - Respond by Nov 3, 2014
Hi Bernie,

OK, I object to the removal of the client's ability to sign its messages with its own
private key (i.e., so that the server can verify the signature using the client's
public key). Let's talk about it at IETF91.

Thanks - Fred
fred.l.templin@boeing.com<mailto:fred.l.templin@boeing.com>

From: Bernie Volz (volz) [mailto:volz@cisco.com]
Sent: Sunday, November 02, 2014 7:58 AM
To: Templin, Fred L; dhcwg@ietf.org<mailto:dhcwg@ietf.org>
Subject: RE: [dhcwg] WGLC for draft-ietf-dhc-sedhcpv6-04 - Respond by Nov 3, 2014

Fred:

This document (and its predecessor) have had a long and rocky journey. It would be nice to finally wrap this up and move on.

If you have significant concerns or feel that functionality is not there that is needed (and couldn't be added later on by a follow-on document), please raise those issues now and on the WG Mailing List - there's little point in waiting until the WG session.


-          Bernie

From: Templin, Fred L [mailto:Fred.L.Templin@boeing.com]
Sent: Sunday, November 02, 2014 8:47 AM
To: Bernie Volz (volz); dhcwg@ietf.org<mailto:dhcwg@ietf.org>
Subject: RE: [dhcwg] WGLC for draft-ietf-dhc-sedhcpv6-04 - Respond by Nov 3, 2014

Hi Bernie,

Is there any reason this needs to be finalized before the IETF91 meeting? I am not
100% certain that the document meets my needs in its current form and was hoping
to have discussion on it at the end of my presentation.

Thanks - Fred
fred.l.templin@boeing.com<mailto:fred.l.templin@boeing.com>

From: dhcwg [mailto:dhcwg-bounces@ietf.org] On Behalf Of Bernie Volz (volz)
Sent: Saturday, November 01, 2014 12:41 PM
To: dhcwg@ietf.org<mailto:dhcwg@ietf.org>
Subject: Re: [dhcwg] WGLC for draft-ietf-dhc-sedhcpv6-04 - Respond by Nov 3, 2014

Just a reminder that this WGLC is in progress and feedback is needed by Nov 3.

Please participate and indicate your support, or lack thereof, for this document.


-          Bernie

From: dhcwg [mailto:dhcwg-bounces@ietf.org] On Behalf Of Bernie Volz (volz)
Sent: Sunday, October 26, 2014 6:11 PM
To: dhcwg@ietf.org<mailto:dhcwg@ietf.org>
Subject: [dhcwg] WGLC for draft-ietf-dhc-sedhcpv6-04 - Respond by Nov 3, 2014


Hi all,



This message starts the (short) DHC working group last call to advance "Secure DHCPv6", draft-ietf-dhc-sedhcpv6-04, document as a Standards Track (Proposed Standard) RFC. The authors believe that this version is ready. We had a WGLC earlier (May 2014 for the -02 version) and there were some comments, so this is primarily to assure that those comments were addressed.



The draft is available here:

http://tools.ietf.org/html/draft-ietf-dhc-sedhcpv6-04



Please send your comments by November 3rd, 2014. If you do not feel this document should advance, please state your reasons why.



There are no IPR claims reported at this time.



Tomek is the assigned shepherd for this document.



- Tomek & Bernie