Re: [hiaps] [Int-area] request to consider sponsoring http://tools.ietf.org/html/draft-boucadair-intarea-host-identifier-scenarios-04
Dan Wing <dwing@cisco.com> Fri, 07 March 2014 20:31 UTC
Return-Path: <dwing@cisco.com>
X-Original-To: hiaps@ietfa.amsl.com
Delivered-To: hiaps@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com
(Postfix) with ESMTP id C6DD61A02A8; Fri, 7 Mar 2014 12:31:30 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -15.048
X-Spam-Level:
X-Spam-Status: No,
score=-15.048 tagged_above=-999 required=5 tests=[BAYES_00=-1.9,
DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5,
RP_MATCHES_RCVD=-0.547, SPF_PASS=-0.001,
USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com
[127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Ozd262aguzCZ;
Fri, 7 Mar 2014 12:31:27 -0800 (PST)
Received: from mtv-iport-4.cisco.com (mtv-iport-4.cisco.com [173.36.130.15])
by ietfa.amsl.com (Postfix) with ESMTP id CA8B81A0270;
Fri, 7 Mar 2014 12:31:27 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com;
l=3090; q=dns/txt; s=iport; t=1394224283; x=1395433883;
h=mime-version:subject:from:in-reply-to:date:cc: content-transfer-encoding:message-id:references:to;
bh=yVDd8vuO60V9I/WhjqpaZ3oBNd/rnuaBOKBXNB3wlkE=;
b=C/YazWmGQlG2QO+vQgT1gVMwYhHqJMj+c2eiO9cFJDh41e0AHyKBVbGx
4c871zjggrSAsLRTvo8hhKWQn4oxQ3MklVCIkGp/6jXICYGcu8lyZTTlZ
3fzNhFQYvrOTSHBlEW1Xgg6GSXn6JPJMnE3jli4S7iKgC6rHrO+9AH3O8 8=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AgIFAOIrGlOrRDoI/2dsb2JhbABagwY7wgaBFhZ0giUBAQEDAQEBATc0CwULCxgjCyEGMAYTFAeHSgMJBw7JDA2HBReMRIFkMweDJIEUBJZWgW2BMosxhUiBb4E+PQ
X-IronPort-AV: E=Sophos;i="4.97,610,1389744000"; d="scan'208";a="107811463"
Received: from mtv-core-3.cisco.com ([171.68.58.8]) by mtv-iport-4.cisco.com
with ESMTP; 07 Mar 2014 20:31:23 +0000
Received: from sjc-vpn1-413.cisco.com (sjc-vpn1-413.cisco.com [10.21.97.157])
by mtv-core-3.cisco.com (8.14.5/8.14.5) with ESMTP id s27KVLL1011694;
Fri, 7 Mar 2014 20:31:22 GMT
Content-Type: text/plain; charset=us-ascii
Mime-Version: 1.0 (Mac OS X Mail 6.6 \(1510\))
From: Dan Wing <dwing@cisco.com>
In-Reply-To: <5318B86E.1040805@gmail.com>
Date: Fri, 7 Mar 2014 20:31:22 +0000
Content-Transfer-Encoding: quoted-printable
Message-Id: <2CF311E1-929B-4847-A98E-BC495B526D5E@cisco.com>
References: <5318A21D.7020508@bogus.com> <5318B86E.1040805@gmail.com>
To: Brian E Carpenter <brian.e.carpenter@gmail.com>
X-Mailer: Apple Mail (2.1510)
Archived-At: http://mailarchive.ietf.org/arch/msg/hiaps/ZG3FYzSlOVlvZM-Fp7YB9B2jQaE
Cc: joel jaeggli <joelja@bogus.com>, "hiaps@ietf.org" <hiaps@ietf.org>,
Internet Area <int-area@ietf.org>,
draft-boucadair-intarea-host-identifier-scenarios@tools.ietf.org
Subject: Re: [hiaps] [Int-area] request to consider sponsoring
http://tools.ietf.org/html/draft-boucadair-intarea-host-identifier-scenarios-04
X-BeenThere: hiaps@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Host Identification,
Address and Prefix Sharing in Wi-Fi Access \(hiaps\)" <hiaps.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/hiaps>,
<mailto:hiaps-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/hiaps/>
List-Post: <mailto:hiaps@ietf.org>
List-Help: <mailto:hiaps-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/hiaps>,
<mailto:hiaps-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 07 Mar 2014 20:31:31 -0000
On Mar 6, 2014, at 6:03 PM, Brian E Carpenter <brian.e.carpenter@gmail.com> wrote: > a) Since this is fixing some of the damage done by NAT, it's > really unfinished business for BEHAVE, which if iirc was a > Transport Area WG. Just saying... > > b) The word "privacy" doesn't appear in the draft. Discussing > privacy aspects is clearly essential if there is any thought of > advancing this work. Actually I doubt if such a host ID is ever > going to be acceptable from a privacy point of view, unless the > end system is at liberty to change it at random (like RFC 4941). I interpret your statement to mean that address sharing is a desirable security property. If that interpretation is correct, where does that leave IPv6? > c) A hard-nosed argument is that since we want to sunset IPv4, > it's time to stop working on ways of making NAT solutions work > better. Is there anything in the use cases that can't be fixed by > native IPv6? Yes, attackers won't move to IPv6 if IPv4 provides them a superior way to hide their activities. There are attackers already using IPv4 CGN to obfuscate themselves. -d > > (The use case in expired draft > http://tools.ietf.org/html/draft-sarikaya-fmc-prefix-sharing-usecase-01 > is not at all convincing to me, especially when adding the privacy > argument. It actually seems to describe a bug in 3GPP. But in any case, > the draft appears to suggest mitigations.) > > Regards > Brian > > On 07/03/2014 05:28, joel jaeggli wrote: >> Greetings int-area and hiaps-mailing-list folks, >> >> I realize that this is midweek at the IETF, however this question is not >> far from several discussions I've had this week. >> >> I have been asked to consider AD sponsoring >> http://tools.ietf.org/html/draft-boucadair-intarea-host-identifier-scenarios-04 >> >> In the process of considering doing so I'd like to get some input with >> respect to: >> >> A. The appetite for pursuing some or any of this work in existing >> working groups, and in particular within the INT area. >> >> B. A consensus basis for moving beyond RFC 6269 into active work in this >> area. >> >> C. How we address concerns raised by the IETF community expressed >> through draft-farrell-perpass-attack when evaluating scenarios and >> beginning to address requirements and solution-space. >> >> Obviously these are complex questions and I do not expect that we will >> arrive at answers easily nor does work on this or other drafts depend on >> answering them, however it's part of the dialog. >> >> Thanks >> joel >> >> >> >> ------------------------------------------------------------------------ >> >> _______________________________________________ >> Int-area mailing list >> Int-area@ietf.org >> https://www.ietf.org/mailman/listinfo/int-area > > _______________________________________________ > Int-area mailing list > Int-area@ietf.org > https://www.ietf.org/mailman/listinfo/int-area
- [hiaps] request to consider sponsoring http://too… joel jaeggli
- Re: [hiaps] [Int-area] request to consider sponso… Brian E Carpenter
- Re: [hiaps] [Int-area] request to consider sponso… Ted Lemon
- Re: [hiaps] [Int-area] request to consider sponso… Joe Touch
- Re: [hiaps] [Int-area] request to consider sponso… Joe Touch
- Re: [hiaps] [Int-area] request to consider sponso… Behcet Sarikaya
- Re: [hiaps] [Int-area] request to consider sponso… joel jaeggli
- Re: [hiaps] [Int-area] request to consider sponso… Scott Brim
- Re: [hiaps] [Int-area] request to consider sponso… Joe Touch
- Re: [hiaps] [Int-area] request to consider sponso… Dan Wing
- Re: [hiaps] [Int-area] request to consider sponso… Brian E Carpenter
- Re: [hiaps] [Int-area] request to consider sponso… Reinaldo Penno (repenno)
- Re: [hiaps] [Int-area] request to consider sponso… Behcet Sarikaya
- Re: [hiaps] [Int-area] request to consider sponso… Behcet Sarikaya
- Re: [hiaps] [Int-area] request to consider sponso… Scott Brim
- Re: [hiaps] [Int-area] request to consider sponso… Joe Touch
- Re: [hiaps] [Int-area] request to consider sponso… Scott Brim
- Re: [hiaps] [Int-area] request to consider sponso… Joe Touch
- Re: [hiaps] [Int-area] request to consider sponso… mohamed.boucadair
- Re: [hiaps] [Int-area] request to consider sponso… mohamed.boucadair
- Re: [hiaps] [Int-area] request to consider sponso… mohamed.boucadair
- Re: [hiaps] [Int-area] request to consider sponso… Dan Wing
- Re: [hiaps] [Int-area] request to consider sponso… Dan Wing