Re: [Emu] New Version Notification for draft-ietf-ace-wg-coap-eap-04.txt
Dan Garcia Carrillo <garciadan@uniovi.es> Tue, 07 December 2021 22:11 UTC
Return-Path: <garciadan@uniovi.es>
X-Original-To: emu@ietfa.amsl.com
Delivered-To: emu@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1])
by ietfa.amsl.com (Postfix) with ESMTP id 391DB3A193D;
Tue, 7 Dec 2021 14:11:21 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.751
X-Spam-Level:
X-Spam-Status: No, score=-3.751 tagged_above=-999 required=5
tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1,
HTML_MESSAGE=0.001, MSGID_FROM_MTA_HEADER=0.001, NICE_REPLY_A=-1.852,
RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001]
autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key)
header.d=unioviedo.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44])
by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024)
with ESMTP id 5P2rrRAw-LoJ; Tue, 7 Dec 2021 14:11:16 -0800 (PST)
Received: from EUR05-DB8-obe.outbound.protection.outlook.com
(mail-db8eur05on2069.outbound.protection.outlook.com [40.107.20.69])
(using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits))
(No client certificate requested)
by ietfa.amsl.com (Postfix) with ESMTPS id 832A63A1965;
Tue, 7 Dec 2021 14:11:08 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none;
b=MSLyvl1chSDGVfS/61LjxMH8L/Yuf09rBdO3ljiOKr708B1s/kLZHxEQKTJ9Pw43LoMgaFwJ97fjSnOnTKywRtZmtI5nm2bIixmcyAylIRNwH9v3DcZGxgNQ25xv/gxjxFNeoxxglu37N6x335WUXiqJ1LBHrTOXgOn6EBthsiALSDXf3MDUmqLIxvoFOlK3cyVJoU3oRUPUyJUC8Kqla64jDujuWCKjJrIUqt5tLXoKZiur8W3Wg0tDZh6VbD7IEQeoeyOh5BmUKfcKLK3rzM0Hl1nahpUH5+WzmNEYsI8jNT74zJq7Anx5kUa5M5k+7r8Bh+oPmju64MKNaPnPbw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;
s=arcselector9901;
h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1;
bh=WebHgrYavmuPfdkg50QG+RQPOu2ns22bIgCZTsd6sgw=;
b=hPn7iamMrWgHYqxXqrNKUgLUsePrkBwd6sIN4uQjz2FAEOWt9X9PMLBFXq3RBzctR3NR4Y8UqSaDvtBq1bTsOO1l7pDnx1F2UBDEyyUXUbQZI+fQ6OCcOM0MJEHho78dCSOIWB69qiLLTOsDqMe8UdO/YKbRa1FOhF1oOQgMgSMODlihOLx2IvK+StL4XIu7QzqDV5JReHUrSxwCq0Q9Gf+ydqKhb8fcR+KyX/nrG+jX46iZ5KcAse5ssuD4/JztgAJbNutNceYjA+YHzd0NpXb7XtbMhn1HZpDyGGnjwlGFgThhD1y2I4hDYJvqflQnXugprdPyUBC/pHCHof+/mQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass
smtp.mailfrom=uniovi.es; dmarc=pass action=none header.from=uniovi.es;
dkim=pass header.d=uniovi.es; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;
d=unioviedo.onmicrosoft.com; s=selector2-unioviedo-onmicrosoft-com;
h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;
bh=WebHgrYavmuPfdkg50QG+RQPOu2ns22bIgCZTsd6sgw=;
b=TU52XJzSn/gygMV7UMQRfK32Hp1KDVHE3FCVczY29QMNhulDgj8spd26xgq/kpLCCLs66hmLU7HWRwGkbrKMBG4XBpqpgYICEvcfBmfCH14sqrrfK2tMsVkjFACone3rU9JJRltYtRbLlBVDFwusgdKIiOpaW6Tz6eKFMCjsdms=
Authentication-Results: dkim=none (message not signed)
header.d=none;dmarc=none action=none header.from=uniovi.es;
Received: from DBBPR08MB6202.eurprd08.prod.outlook.com (2603:10a6:10:209::9)
by DB9PR08MB6732.eurprd08.prod.outlook.com (2603:10a6:10:2af::14) with
Microsoft SMTP Server (version=TLS1_2,
cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4669.13; Tue, 7 Dec
2021 22:10:56 +0000
Received: from DBBPR08MB6202.eurprd08.prod.outlook.com
([fe80::1434:d823:a6b5:6f50]) by DBBPR08MB6202.eurprd08.prod.outlook.com
([fe80::1434:d823:a6b5:6f50%9]) with mapi id 15.20.4755.022; Tue, 7 Dec 2021
22:10:56 +0000
Content-Type: multipart/alternative;
boundary="------------EmCZrj0QNJ04eyjVKqbCKvs4"
Message-ID: <fe79c222-d9bd-ff22-37ba-9f94980d3a94@uniovi.es>
Date: Tue, 7 Dec 2021 23:10:54 +0100
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:91.0)
Gecko/20100101 Thunderbird/91.3.2
To: =?UTF-8?Q?G=c3=b6ran_Selander?= <goran.selander@ericsson.com>,
EMU WG <emu@ietf.org>, "ace@ietf.org" <ace@ietf.org>
References: <163516103436.11405.13911066633297545379@ietfa.amsl.com>
<bc792146-39c4-73a3-63e2-7db7acf7aa2f@uniovi.es>
<HE1PR0701MB3050A49DC2D32180B2831D6889839@HE1PR0701MB3050.eurprd07.prod.outlook.com>
<AM4PR0701MB219545F3A90E17FD18844F13F4629@AM4PR0701MB2195.eurprd07.prod.outlook.com>
<821f9e4b-c052-6b46-0a72-7974017bf335@uniovi.es>
<AM4PR0701MB2195FA695541F76CE88B7178F46D9@AM4PR0701MB2195.eurprd07.prod.outlook.com>
From: Dan Garcia Carrillo <garciadan@uniovi.es>
In-Reply-To: <AM4PR0701MB2195FA695541F76CE88B7178F46D9@AM4PR0701MB2195.eurprd07.prod.outlook.com>
X-ClientProxiedBy: LO4P123CA0400.GBRP123.PROD.OUTLOOK.COM
(2603:10a6:600:189::9) To DBBPR08MB6202.eurprd08.prod.outlook.com
(2603:10a6:10:209::9)
MIME-Version: 1.0
Received: from [IPV6:2a0c:5a80:3c13:f000:9821:3c33:7b3f:7d2e]
(2a0c:5a80:3c13:f000:9821:3c33:7b3f:7d2e) by
LO4P123CA0400.GBRP123.PROD.OUTLOOK.COM (2603:10a6:600:189::9) with Microsoft
SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id
15.20.4755.20 via Frontend Transport; Tue, 7 Dec 2021 22:10:55 +0000
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: 8f08e6c8-f90b-4e53-9b11-08d9b9ce7124
X-MS-TrafficTypeDiagnostic: DB9PR08MB6732:
X-Microsoft-Antispam-PRVS: <DB9PR08MB6732773C83D7866C06EFA5A4B46E9@DB9PR08MB6732.eurprd08.prod.outlook.com>
X-MS-Oob-TLC-OOBClassifiers: OLM:10000;
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:;
IPV:NLI; SFV:NSPM;
H:DBBPR08MB6202.eurprd08.prod.outlook.com; PTR:; CAT:NONE;
SFS:(366004)(36756003)(66556008)(786003)(107886003)(38100700002)(5660300002)(33964004)(166002)(66476007)(2906002)(53546011)(52116002)(8936002)(4326008)(6486002)(316002)(83380400001)(8676002)(186003)(66946007)(66574015)(86362001)(15650500001)(110136005)(508600001)(31696002)(31686004)(2616005)(45980500001)(43740500002);
DIR:OUT; SFP:1101;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: =?utf-8?B?RENtQUI5bjZFSHBDYmxoZGpac1RQR2VsRVpyQXpORmw3MEN6RGxQeEtuSUM1?=
=?utf-8?B?SGVVeFVjK3VEYUlvb2M5MzRBcUtTcnBsSW51Q21KdlpIWFloVXp2YU9od1R0?=
=?utf-8?B?WUFWSGk0L0VwRXBMMG12Z3FBcVZFanRJWFU5cWxDdzBVYkVtTEdMV1pxN2dK?=
=?utf-8?B?L25iSk1pUVl5WWZBRW1mYlVQV2x0QlM0TDdaNmxoOXBCTWE0Q2JEb25aOWFT?=
=?utf-8?B?TzZ3ZGN5bm95UjZNOG0rcXNQS285M2w0V0VjTlNLZ005YTFzOC8xNkx1bFZ3?=
=?utf-8?B?VE8zeEJCN2EvRENZemlHV0Q4OWtYeW9vZ0x0UVdmK1lxYUJ4eVRnRHlld2N6?=
=?utf-8?B?YXBnVFZSbXlybDNNYkJlQmhNdjQ4TC9LbzM1UUNiZXpucEpvQzlPSWU2OUxK?=
=?utf-8?B?Z2xXMkdRTXByOXNZZnowVmJDd1Y2UGlUZjFSNDJadUk3V0diKzhURllqYm5D?=
=?utf-8?B?a0M2NFZHcEc3dHhYbWVpUjdMVWk3aEcyTGZNc0FKR2JxM3JEL3VBVFZieTg2?=
=?utf-8?B?dEdvWTBFdFlEOTk2bjVxK1RjTGVLWTVCeUd0bkxlOUIrWjRSZEU3RjlSYVM0?=
=?utf-8?B?ZUttTGxLY1hlcEtvUDdpRGRMNGpsdTJUMHNDMmFETmhVbGZINlh4akxqOUpt?=
=?utf-8?B?aS9UaXpETWgxeE5YcFY5NU82dWMveG9heFRpc3owMVhrcHRLbGJKMEx6M3E5?=
=?utf-8?B?dUhoWTNjUlNJbG8xTzdQQ2ErcVF3Zld6L3Z6WEYrZkZXZVQ4SmFmRjJsZFpU?=
=?utf-8?B?cnFEMTc3NUVta2c4Vm95SnlXVEdMcGtnaFZPRHRkcXJyTEJiWnh1NUNpWE85?=
=?utf-8?B?bGNNMndmclNhR3hRR2VZMmJzcFF2UHBCaGJlMnczOEhXYTZ2N0d3RXpscURV?=
=?utf-8?B?OTR5UVpram1mQThQNnJwUXovL0JBVzgvV3p3UmZWcGJtbGVkcDR3cGFKM1JU?=
=?utf-8?B?N1lBK21ONU9pSTRGOGJLT1U0ODRubStVdnlkZjRuWFlEY2IwbUdYcVR0bFM2?=
=?utf-8?B?a21TVncveGlGQlBldnJ5ZGRLeEVNRWJ3Vk1SVTdGNE9sU2t2NmVYZ1FDK3dB?=
=?utf-8?B?eXd0NGlPM29jay9iSU4ya0ptMWNKOUlYM0ROVmFvZHVDVVJ3dW91Wk5CQnhH?=
=?utf-8?B?OE55UThqTGhiZ1JVa2pwalFsSllwUUVKTlBvaGRiL2MrY0huM1hucXFjMEFZ?=
=?utf-8?B?TGtVOEdtVmxtSnpMZHdRLzQweW5JSmNOOXErekxWa0h0TkM5dFhUY1B4MU9F?=
=?utf-8?B?dTllN090NGJ2dnUwVTNGZFpCYlN5WXd0T0xaSXVrcmxyaDJEUHg2VXlML2V0?=
=?utf-8?B?dWFRNnV2SzBoS2luWUVZT2VrRlNvYkZKMWgrZW11Zmkvc3BPYURXSzRBeTht?=
=?utf-8?B?dkpFSVJKNkYvTWtEdmpqS1dsT2RtVDgyVnJyaCt1VTlDWGw5QUhuNm9sSjI1?=
=?utf-8?B?Y0ZYZUNqSDdnWXh3M1JPWjhVSDVxNVdueTUwNEhpdFQ1bzhmQU1DbXBvOFVv?=
=?utf-8?B?dXlmWnhDRWFJeVFIekNUR29jQi9nUTZzaUxGNnh5cC9ZZFU2RHFxNUlJci9j?=
=?utf-8?B?WlJFeG55TGg5ZUU2b3BoNVRSTXFnd013K05ZTjF2TDMzNlJPVXNYeUtuQUFp?=
=?utf-8?B?dVhqcG9aSkhieGFGOFd3NDZaV3NoSW45U3dJOENiTi9XblUzd2crdm9QQk1z?=
=?utf-8?B?c0NhN3UrMjBtMFBRODRxaGJxR2xHcnM0aEt4MWtJNWY1b0UvZ0drWG8vSlFY?=
=?utf-8?B?dDdaVlZOOW00MEdFdHRVTEJOL05EWlV3MGJQTHRTSDA3OUVZZUxWMWRxK3Jq?=
=?utf-8?B?d3lrVmZJemdMemZpZ0s2WlJCZEFHUjc4c1FMd3U4c2duK003U1JuSzFNbXQz?=
=?utf-8?B?Ny9qRWxBbGFQZUxReGxBYXZYOUY5czBzREdndFMwYUN0WFE2L1pFS0xWeEtp?=
=?utf-8?B?RVJmemxmWWNNTERIai80eVREbWEwK1NPQnZ1TWtCQTBLTFAybFRIUEcyWVJ0?=
=?utf-8?B?Mm5nRTZnMXhKOVJjSGZYNEp0emlobm1KMFU3Wm9QQmpqakIrRkM5UlV1V1F4?=
=?utf-8?B?R1BsbXI5azl4cTRqdE1VVzlIYXpWZU9PaWo3Y1hrVTFxamk1RUdjcXhDZmI5?=
=?utf-8?B?ekpyblV1TmRFQTNYcVh0eWNHS282ODVNeENpWnhpRVBoMWg5d0N4MGtaZWNS?=
=?utf-8?B?dHhJMExLOGZraUhUR1JtdGdwekw4ZXNzOG52NXdqZVVGLzJEWDZXdGhCRU9z?=
=?utf-8?Q?pEHjJ8zP2CAKyWOLEsu2q4Use6V9f273cv0qhqIBIY=3D?=
X-OriginatorOrg: uniovi.es
X-MS-Exchange-CrossTenant-Network-Message-Id: 8f08e6c8-f90b-4e53-9b11-08d9b9ce7124
X-MS-Exchange-CrossTenant-AuthSource: DBBPR08MB6202.eurprd08.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 07 Dec 2021 22:10:56.8165 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: 05ea74a3-92c5-4c31-978a-925c3c799cd0
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: +0kL0rOUM3P0wzbCzR2ALjZApQsXD5/NMKQ9Gnyu7qWVKePDzAaybgxsKBVZhnPqkMmlFccjLxhe+rz7tLB5qw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB9PR08MB6732
X-MS-Exchange-CrossPremises-AuthSource: DBBPR08MB6202.eurprd08.prod.outlook.com
X-MS-Exchange-CrossPremises-AuthAs: Internal
X-MS-Exchange-CrossPremises-AuthMechanism: 06
X-MS-Exchange-CrossPremises-Mapi-Admin-Submission:
X-MS-Exchange-CrossPremises-MessageSource: StoreDriver
X-MS-Exchange-CrossPremises-BCC:
X-MS-Exchange-CrossPremises-OriginalClientIPAddress: 2a0c:5a80:3c13:f000:9821:3c33:7b3f:7d2e
X-MS-Exchange-CrossPremises-TransportTrafficType: Email
X-MS-Exchange-CrossPremises-Antispam-ScanContext: DIR:Originating; SFV:NSPM;
SKIP:0;
X-MS-Exchange-CrossPremises-SCL: 1
X-MS-Exchange-CrossPremises-Processed-By-Journaling: Journal Agent
X-OrganizationHeadersPreserved: DB9PR08MB6732.eurprd08.prod.outlook.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/emu/EBrVEj7IqE2PkcACo5f7nWQSz4Q>
Subject: Re: [Emu] New Version Notification for
draft-ietf-ace-wg-coap-eap-04.txt
X-BeenThere: emu@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "EAP Methods Update \(EMU\)" <emu.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/emu>,
<mailto:emu-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emu/>
List-Post: <mailto:emu@ietf.org>
List-Help: <mailto:emu-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/emu>,
<mailto:emu-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 07 Dec 2021 22:11:22 -0000
Hi Göran, Thank you again for your comments. We have incorporated them into the a new 06 version of the draft that we just submitted. Best Regards, Dan. On 6/12/21 12:13, Göran Selander wrote: > > Hi Dan, > > Please find my replies to your two questions about the update inline > below. > > Best regards > > Göran > > *From: *Dan Garcia Carrillo <garciadan@uniovi.es> > > "The communication with the last resource (e.g. '/a/w') from this > point MUST be protected with OSCORE except during a new > (re)authentication (see Section 3.3)." > > I don't understand why there is an exception. OSCORE seems to be > applied to communication with the last resource in all cases: > > * In the case of new authentication the procedure explained in > Section 3.2 applies protection with OSCORE in communication with > the last resource. > > * In the case of re-authentication, the procedure is explained in > Section 3.3 to be "exactly the same" as in Section 3.2. > > [authors] Yes, we agree. We can remove that part from the sentence to > avoid any confusion. Nevertheless, after your comment, it would be > worth stating that if the access to any other resource requires OSCORE > protection can use the generated OSCORE context. Does it sound > reasonable? > > [GS] Yes, the established security context can be used between other > resources if allowed by the application's security policy. Proposed > rephrasing of step 8: > > OLD > > "The IoT Device answers with '2.04 Changed' if the EAP > authentication is a success and the verification of the "POST" > protected with OSCORE in Step 7 is correctly verified. The > communication with the last resource (e.g. '/a/w') from this point > MUST be protected with OSCORE. Any other resource that requires > OSCORE protection MAY be protected with this OSCORE security > context." > NEW > "If the EAPauthentication and the verification of the OSCORE > protected "POST"in Step 7 is successful, thenthe IoT Device answers > with an OSCORE protected '2.04 Changed'. From this point on, the > communication with the last resource (e.g. '/a/w') > MUST be protected with OSCORE. If allowed by application policy, > sameOSCORE securitycontextMAY be use to protect communication toother > resources between the same endpoints." > > ---- > > Another editorial comment refering to the recent update: > > OLD > > "The reception of the POST > > message protected with OSCORE with Sender ID equal to RID-I > > (Recipient ID of the IoT device) sent in Step 2 is considered by > > the IoT device as an alternate indication of success ([RFC3748 > <https://datatracker.ietf.org/doc/html/rfc3748>])." > > I would avoid the term Sender ID since it is all about verification of > a received message, e.g. like this. > > NEW > > "The verification of the received OSCORE protected"POST" > messageusing RID-I(Recipient ID of the IoT device) sent in Step 2 is > considered by > the IoT device as an alternate indication of success ([RFC3748 > <https://datatracker.ietf.org/doc/html/rfc3748>])." > > ---- > > Section 5.1 > > "If the Controller sends a restricted list > > of ciphersuites that is willing to accept, and the ones > supported by > > the IoT device are not in that list, the IoT device will > respond with > > a '4.00 Bad Request', expressing in the payload the ciphersuites > > supported. " > > Make clear (here or in a security consideration) that in case of > an error message containing a cipher suite, the exchange of cipher > suites between EAP authenticator and EAP peer cannot be verified. > For example, a man-in-the-middle could replace cipher suites in > either message which would not be noticed if the protocol is ended > after step 2. > > [authors] That’s right. However, after your comments, we believe this > could be improved. The reason is that by default we can assume that at > least cipher suite 0. AES-CCM-16-64-128, SHA-256 is implemented in > both entities. As such, if the controller includes option 0 in the > list of cipher suites, the controller will not receive a bad request > since at least the IoT device can select cipher suite 0 and therefore > the authentication will follow until the end cipher suite negotiation > can be verified. We think it is simpler and we can get rid of a bad > request. Does it sound reasonable? > > [GS] Sounds OK to me. >
- Re: [Emu] New Version Notification for draft-ietf… Dan Garcia Carrillo
- Re: [Emu] New Version Notification for draft-ietf… John Mattsson
- Re: [Emu] New Version Notification for draft-ietf… Göran Selander
- Re: [Emu] New Version Notification for draft-ietf… Daniel Migault
- Re: [Emu] New Version Notification for draft-ietf… Dan Garcia Carrillo
- Re: [Emu] New Version Notification for draft-ietf… Dan Garcia Carrillo
- Re: [Emu] New Version Notification for draft-ietf… Dan Garcia Carrillo
- Re: [Emu] New Version Notification for draft-ietf… Dan Garcia Carrillo
- Re: [Emu] New Version Notification for draft-ietf… Dan Garcia Carrillo
- Re: [Emu] New Version Notification for draft-ietf… Göran Selander
- Re: [Emu] New Version Notification for draft-ietf… Dan Garcia Carrillo
- Re: [Emu] [Ace] New Version Notification for draf… Daniel Migault