Re: [dispatch] Updated PERC Charter proposal

Eric Rescorla <ekr@rtfm.com> Wed, 03 June 2015 13:03 UTC

Return-Path: <ekr@rtfm.com>
X-Original-To: dispatch@ietfa.amsl.com
Delivered-To: dispatch@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 87E671A877A for <dispatch@ietfa.amsl.com>; Wed, 3 Jun 2015 06:03:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.977
X-Spam-Level:
X-Spam-Status: No, score=-1.977 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FM_FORGED_GMAIL=0.622, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id nqfCN0fl1Upq for <dispatch@ietfa.amsl.com>; Wed, 3 Jun 2015 06:03:24 -0700 (PDT)
Received: from mail-wg0-f50.google.com (mail-wg0-f50.google.com [74.125.82.50]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C60C21A1F20 for <dispatch@ietf.org>; Wed, 3 Jun 2015 06:03:23 -0700 (PDT)
Received: by wgez8 with SMTP id z8so8651310wge.0 for <dispatch@ietf.org>; Wed, 03 Jun 2015 06:03:22 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc:content-type; bh=dF16hBy2MNUIRGyetjkSVu4fVwFxZ6KVaNxcg8VLJno=; b=kpQO9rlfe+mFwW7pd/WYjGGE2NQCGinSqZs3Lk4ol0endbBkxhQW+euypQWfutmBe9 ur7/jFG60suYPKNUOMJPZe0xi9YNXTIh8lUytgjTxQEGOy1AGMq67LgaUVqyl6SIRQ4E t6Kzn2oL+kDpf+rRlX/3bGqfvdik9iUAwJQERZFavol6qiUKMvCpaAP2/cKRa8yeJzjz +JBBkxvyJ+ApVD6WZnKu2yw3jXq6O7Zhaw8q+Q4dvUNRvAzR46hWKQYMLRTkEZJSkw+H x/z9EjiXWZmlKm3UTVrEcri0OufcFsBYHhzo4VLkhCJRT7CzaSP02o5xQS65Kq6qtmaH VbhA==
X-Gm-Message-State: ALoCoQm5U5PP5W5EY+ShNAPgqNPZvsJ1972I2JQIbJbSx0k/h1VyjhKthFc+kNAtzzBuIzPD0uD1
X-Received: by 10.180.75.8 with SMTP id y8mr41463791wiv.31.1433336602534; Wed, 03 Jun 2015 06:03:22 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.27.225.14 with HTTP; Wed, 3 Jun 2015 06:02:42 -0700 (PDT)
In-Reply-To: <556EFA0E.8050408@ericsson.com>
References: <CAHBDyN6BeyL-wh_=t7jN+tfhTTnZK0uTBra-F7MR11x9eFkGpg@mail.gmail.com> <D188F24E.14D48%goran.ap.eriksson@ericsson.com> <55683230.3020600@ericsson.com> <CAHBDyN68U=KiyM8aTzbmmFzN9cZJ_MgZs00VPCODyufMn=JpUA@mail.gmail.com> <556C2A44.8010805@ericsson.com> <D193CBFB.32759%rmohanr@cisco.com> <CABcZeBMGUG0A8ypCz2kF8hqfsKemXK4CX8ujLFOi2HjGWunJ9g@mail.gmail.com> <556DDC0C.3010107@andyet.net> <CABcZeBPtc-Wp=4WSc_NXCZM+SSY6o0eFDbnPE+zCLTB_LY7PvQ@mail.gmail.com> <556DF837.8050704@alum.mit.edu> <D1946A1E.32827%rmohanr@cisco.com> <A634ECAF-9D68-41B7-85C6-F521F5BC821B@MRS> <556EFA0E.8050408@ericsson.com>
From: Eric Rescorla <ekr@rtfm.com>
Date: Wed, 03 Jun 2015 06:02:42 -0700
Message-ID: <CABcZeBPDrSR3ne+V3mG5GrXotXpdFkdyUCGjq1S52Hv55WGV+Q@mail.gmail.com>
To: Magnus Westerlund <magnus.westerlund@ericsson.com>
Content-Type: multipart/alternative; boundary="f46d043c7b9c09bb0705179cafd2"
Archived-At: <http://mailarchive.ietf.org/arch/msg/dispatch/WyTjG25qgaEukoCiYyi6I64LhWc>
Cc: "dispatch@ietf.org" <dispatch@ietf.org>
Subject: Re: [dispatch] Updated PERC Charter proposal
X-BeenThere: dispatch@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: DISPATCH Working Group Mail List <dispatch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dispatch>, <mailto:dispatch-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dispatch/>
List-Post: <mailto:dispatch@ietf.org>
List-Help: <mailto:dispatch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dispatch>, <mailto:dispatch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Jun 2015 13:03:26 -0000

I like Magnus's position here and I appreciate him stating it so clearly.

-Ekr


On Wed, Jun 3, 2015 at 5:58 AM, Magnus Westerlund <
magnus.westerlund@ericsson.com> wrote:

> Hutton, Andrew skrev den 2015-06-03 10:42:
>
>> I agree there is some value in exploring the recording use case it is
>> one of the first questions everybody asks when discussing PERC.
>>
>
> From my perspective there are two ways of doing recording of media content
> in PERC.
>
> 1. Invite the recorder as a full fledged authenticated session participant
> that use the normal way of getting the keys to the media as any other
> endpoint.
>
> 2. The recorder only stores the encrypted media content, thus being a
> semi-trusted entity to that are allowed to get a copy or be integrated into
> the central forwarders. At the time one wants to access the recorded
> content one will have to request the relevant keys from the key-management
> function, that will also have to have stored the relevant group keys for
> the session to enable decryption.
>
> I would claim that the second one is the securer, and enables better
> tracking of who access recordings of a secured conference.
>
>
>> Hope we are allowed to consider this.
>>
>
> The charter talks about informing and coordinating with SIPREC. This to
> have an exchange about the possibilities. However, it is not a work item of
> the PERC WG to specify a solution for recording. I would expect any
> technical work on solving PERC recording would need to be chartered in the
> most relevant WG. I think the ones interested in recording should be active
> in the WG work to ensure that the developed solution do support recording.
> If there are contention between the goals, then we will need to have a
> serious discussion. But, remember that we have clear goals of ensuring end
> to end security, thus compromises to the security model to fit recording
> will be unlikely to be accepted.
>
> Cheers
>
> Magnus Westerlund
>
> ----------------------------------------------------------------------
> Services, Media and Network features, Ericsson Research EAB/TXM
> ----------------------------------------------------------------------
> Ericsson AB                 | Phone  +46 10 7148287
> Färögatan 6                 | Mobile +46 73 0949079
> SE-164 80 Stockholm, Sweden | mailto: magnus.westerlund@ericsson.com
> ----------------------------------------------------------------------
>
> _______________________________________________
> dispatch mailing list
> dispatch@ietf.org
> https://www.ietf.org/mailman/listinfo/dispatch
>