Re: [Dime] Re-Confirming HUM: draft-cakulev-ikev2-psk-diamter

"Tschofenig, Hannes (NSN - FI/Espoo)" <hannes.tschofenig@nsn.com> Mon, 28 December 2009 10:00 UTC

Return-Path: <hannes.tschofenig@nsn.com>
X-Original-To: dime@core3.amsl.com
Delivered-To: dime@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id B4D323A68EA for <dime@core3.amsl.com>; Mon, 28 Dec 2009 02:00:57 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.073
X-Spam-Level:
X-Spam-Status: No, score=-2.073 tagged_above=-999 required=5 tests=[AWL=-0.474, BAYES_00=-2.599, J_BACKHAIR_23=1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id q+lgSEDxi4IM for <dime@core3.amsl.com>; Mon, 28 Dec 2009 02:00:57 -0800 (PST)
Received: from demumfd001.nsn-inter.net (demumfd001.nsn-inter.net [93.183.12.32]) by core3.amsl.com (Postfix) with ESMTP id 9754B3A68BD for <dime@ietf.org>; Mon, 28 Dec 2009 02:00:56 -0800 (PST)
Received: from demuprx016.emea.nsn-intra.net ([10.150.129.55]) by demumfd001.nsn-inter.net (8.12.11.20060308/8.12.11) with ESMTP id nBSA0XgG002962 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL); Mon, 28 Dec 2009 11:00:33 +0100
Received: from demuexc024.nsn-intra.net (demuexc024.nsn-intra.net [10.159.32.11]) by demuprx016.emea.nsn-intra.net (8.12.11.20060308/8.12.11) with ESMTP id nBSA0WLa030745; Mon, 28 Dec 2009 11:00:32 +0100
Received: from FIESEXC015.nsn-intra.net ([10.159.0.23]) by demuexc024.nsn-intra.net with Microsoft SMTPSVC(6.0.3790.3959); Mon, 28 Dec 2009 11:00:32 +0100
X-MimeOLE: Produced By Microsoft Exchange V6.5
Content-class: urn:content-classes:message
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
Date: Mon, 28 Dec 2009 12:04:19 +0200
Message-ID: <3D3C75174CB95F42AD6BCC56E5555B450204C48F@FIESEXC015.nsn-intra.net>
In-Reply-To: <5e2406980912160232u1635d1f9pdb64a022e1e097d9@mail.gmail.com>
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
Thread-Topic: [Dime] Re-Confirming HUM: draft-cakulev-ikev2-psk-diamter
Thread-Index: Acp+OxxvWsM3B7JzTYGSStSQt+miOgJaXQyQ
References: <3D3C75174CB95F42AD6BCC56E5555B4501FDFA24@FIESEXC015.nsn-intra.net> <5e2406980912160232u1635d1f9pdb64a022e1e097d9@mail.gmail.com>
From: "Tschofenig, Hannes (NSN - FI/Espoo)" <hannes.tschofenig@nsn.com>
To: ext Julien Bournelle <julien.bournelle@gmail.com>
X-OriginalArrivalTime: 28 Dec 2009 10:00:32.0846 (UTC) FILETIME=[9806F6E0:01CA87A4]
Cc: dime@ietf.org
Subject: Re: [Dime] Re-Confirming HUM: draft-cakulev-ikev2-psk-diamter
X-BeenThere: dime@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Diameter Maintanence and Extentions Working Group <dime.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/dime>, <mailto:dime-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dime>
List-Post: <mailto:dime@ietf.org>
List-Help: <mailto:dime-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dime>, <mailto:dime-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 28 Dec 2009 10:00:57 -0000

Hi Julien, 
 
when you look at the Diameter Mobile IPv6 HA<->AAA interaction then
there are different ways for authenticating the mobile node. We have
supported a number of authentication mechanisms already in
http://www.ietf.org/id/draft-ietf-dime-mip6-split-17.txt and the usage
of a PSK is another possible option, which is documented in
draft-cakulev-ikev2-psk-diameter. 

We had some challenges to get the security mechanisms right when we
worked on draft-ietf-dime-mip6-split but we were also under pressure to
get the document completed and hence we removed the PSK support (and the
Cert support, I believe). It seems that a number of folks in the working
group believe that they can solve these technical challenges and the
feedback from the group was in favor of the document. 
 
Ciao
Hannes

________________________________

	From: ext Julien Bournelle [mailto:julien.bournelle@gmail.com] 
	Sent: 16 December, 2009 12:33
	To: Tschofenig, Hannes (NSN - FI/Espoo)
	Cc: dime@ietf.org
	Subject: Re: [Dime] Re-Confirming HUM:
draft-cakulev-ikev2-psk-diamter
	
	
	Hello,
	
	 A question for this document: do we know the use-case for this
?
	
	 Regards,
	
	 Julien
	
	
	On Tue, Dec 15, 2009 at 9:52 PM, Tschofenig, Hannes (NSN -
FI/Espoo) <hannes.tschofenig@nsn.com> wrote:
	

		Hi all, 

		During the IETF meeting we had a presentation for 
		http://tools.ietf.org/id/draft-cakulev-ikev2-psk-diamter
<http://tools.ietf.org/id/draft-cakulev-ikev2-psk-diamter>  

		I asked for feedback and 7 persons were in favor of the
document becoming a WG item and nobody against. 

		Please provide additional feedback (for or against) by
the 22nd of December. 

		Ciao 
		Hannes 


		_______________________________________________
		DiME mailing list
		DiME@ietf.org
		https://www.ietf.org/mailman/listinfo/dime