Re: [Emu] draft-ietf-emu-aka-pfs and IMSI privacy for Wi-Fi

Heikki Vatiainen <hvn@radiatorsoftware.com> Fri, 23 December 2022 09:51 UTC

Return-Path: <hvn@radiatorsoftware.com>
X-Original-To: emu@ietfa.amsl.com
Delivered-To: emu@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BC8E8C14F732 for <emu@ietfa.amsl.com>; Fri, 23 Dec 2022 01:51:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=radiatorsoftware-com.20210112.gappssmtp.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Z1MZ8bHoTZ6j for <emu@ietfa.amsl.com>; Fri, 23 Dec 2022 01:51:37 -0800 (PST)
Received: from mail-ed1-x534.google.com (mail-ed1-x534.google.com [IPv6:2a00:1450:4864:20::534]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 095BAC14CE28 for <emu@ietf.org>; Fri, 23 Dec 2022 01:51:36 -0800 (PST)
Received: by mail-ed1-x534.google.com with SMTP id r26so1219056edc.5 for <emu@ietf.org>; Fri, 23 Dec 2022 01:51:36 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=radiatorsoftware-com.20210112.gappssmtp.com; s=20210112; h=to:subject:message-id:date:from:in-reply-to:references:mime-version :from:to:cc:subject:date:message-id:reply-to; bh=Lm8cnlqt81exhv89I7qeOiNfa+y6tsGVLtuT5qJJ4c4=; b=lgQjwgjpeHRyg+5FUH/T3ZWqabo9eCTA+6nTNtoARRJ5Kdka83Vp6lgmNGndgVjCO2 nuSaGL2fO4QHqfXs44SZ4l5k+RDrt2wAFh6gNVhZcsbEcf2XX9uX6K1PXRgZ5S+c4jLP 9/AewE2NcTFpjVVoNcHevwijjl0nu4MUamXun8J0dRy6R2D+jQAjbLX0Vox7uUq9dGXX ezybAHfRk6Ej+KJTlRH6G4/CkmZ0fqAHXaykBxkzeSPQwHKYrCjmn3jmhchNxU6LjV6R q0W8JpdAGmy6674DJTTHlYkm9Ao5ehTcpMEMjJ2HBOG3XBk2Kk7V5rAbatklSgY5flqV 08Gw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=to:subject:message-id:date:from:in-reply-to:references:mime-version :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=Lm8cnlqt81exhv89I7qeOiNfa+y6tsGVLtuT5qJJ4c4=; b=0vJaOyZrftfcog1PBRLywygZxD3GRrvMlIk18TUYHRvobSKSZ9VUprCzi0PqxMtHfj eNJW6HUjlxIbEQTEKkqzeFV/Nu2SBQC5i62j82Lw5tyjB1Kaen4kUkgO38BPXH8ERE26 2092XpDcFoSOeXGILM6+8eD4VUSKItiXF0ZDA6NMYUsJKPmfjyLnWgW5oRSbgb1kJi+o duL5Wlk4pdtPLz0NqX+jTSjHi1toDDvkb/L03VySUcewRnCx38ezwBsrih+ZkG/rqoki ct6rDkgf8KehC9n+ugunviUAS/fhrAn4CUrvj9bmyIf/1hJMHEYXrAjCaPiBk1kOoFeL OK1Q==
X-Gm-Message-State: AFqh2kq71zProWz8KTqllh013iKk1Dv7MkH471Hu/vU85uWY4cPtn0bF CyEY3yK7ulbI17Xkw4zBHpXfTY4oETuBGGwjcqbJmgyelaNCwA==
X-Google-Smtp-Source: AMrXdXsLwGARc1rRo3qd8a6SLJvJhc4jxgD6smLBmYUll8NUPf4+ieZCrSUyOMiArroQ8S/NXFEFCr9cbSjyV3IUdO8=
X-Received: by 2002:a05:6402:1b07:b0:469:e6ef:9164 with SMTP id by7-20020a0564021b0700b00469e6ef9164mr1016683edb.185.1671789095298; Fri, 23 Dec 2022 01:51:35 -0800 (PST)
MIME-Version: 1.0
References: <CAA7Lko8-pouLJDR6X08Gn-OW957BA94POBoaDXUJYr_2Ej1vyQ@mail.gmail.com> <HE1PR0701MB3050A7982141BEB256F429C989E79@HE1PR0701MB3050.eurprd07.prod.outlook.com>
In-Reply-To: <HE1PR0701MB3050A7982141BEB256F429C989E79@HE1PR0701MB3050.eurprd07.prod.outlook.com>
From: Heikki Vatiainen <hvn@radiatorsoftware.com>
Date: Fri, 23 Dec 2022 11:51:19 +0200
Message-ID: <CAA7Lko81JECr3sWp21AAx1wnTMximWptgq850t-kSm71jPshkw@mail.gmail.com>
To: EMU WG <emu@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000002a432405f07bbb15"
Archived-At: <https://mailarchive.ietf.org/arch/msg/emu/V6473WeWjOwSBGnglBGe-V7GV1U>
Subject: Re: [Emu] draft-ietf-emu-aka-pfs and IMSI privacy for Wi-Fi
X-BeenThere: emu@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "EAP Methods Update \(EMU\)" <emu.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/emu>, <mailto:emu-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emu/>
List-Post: <mailto:emu@ietf.org>
List-Help: <mailto:emu-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/emu>, <mailto:emu-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 23 Dec 2022 09:51:37 -0000

On Sat, 17 Dec 2022 at 16:43, John Mattsson <john.mattsson@ericsson.com>
wrote:


> It is always great with more privacy, but the IMSI Privacy Protection for
> Wi-Fi seems a bit weird to me. Do anybody know the background and reason
> behind the standard? 3GPP standardized a mechanism to encrypt IMSIs already
> in 2018. I have a hard time seeing what the WBA standard adds that is not
> available in the 3GPP mechanism.
>

This might be related to timing. When we were asked about implementing IMSI
privacy done this way on the Radius server side, it was already known that
some Wi-Fi clients were implementing it. In other words, maybe this had
started before the 5G privacy protection method was published.

Thanks,
Heikki

-- 
Heikki Vatiainen
hvn@radiatorsoftware.com