Re: [Hipsec] Mirja Kühlewind's No Objection on draft-ietf-hip-rfc4423-bis-19: (with COMMENT)

Miika Komu <miika.komu@ericsson.com> Mon, 17 December 2018 12:37 UTC

Return-Path: <miika.komu@ericsson.com>
X-Original-To: hipsec@ietfa.amsl.com
Delivered-To: hipsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6CBB31294D7 for <hipsec@ietfa.amsl.com>; Mon, 17 Dec 2018 04:37:21 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -5.761
X-Spam-Level:
X-Spam-Status: No, score=-5.761 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-1.46, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com header.b=Gl7VUIKE; dkim=pass (1024-bit key) header.d=ericsson.com header.b=fRpbc9Kf
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 47y0va-I0jRi for <hipsec@ietfa.amsl.com>; Mon, 17 Dec 2018 04:37:20 -0800 (PST)
Received: from sessmg23.ericsson.net (sessmg23.ericsson.net [193.180.251.45]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6A293128D68 for <hipsec@ietf.org>; Mon, 17 Dec 2018 04:37:18 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; d=ericsson.com; s=mailgw201801; c=relaxed/simple; q=dns/txt; i=@ericsson.com; t=1545050235; x=1547642235; h=From:Sender:Reply-To:Subject:Date:Message-ID:To:CC:MIME-Version:Content-Type: Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To:References:List-Id: List-Help:List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=3grXRkuJG7qK6NXEWAFAMNwfbIzITPbe0vTvJErRXRE=; b=Gl7VUIKERYaT2/fZKRT/WaDspjFsYE+m1ZwhG6skcVTatf4eO6BbGyjwdnBotDLH 5q2FGNkXt1SiN5BFDCFbUJXuclUT/efwIXI8meUrLVUGX1ooZwzweqUFegMzbr6+ ExLax39OTs1m8uQpCWMKAzd3PjsFJZM1RuOIMNIDk+Q=;
X-AuditID: c1b4fb2d-2198b9e00000062f-cc-5c17987b4e49
Received: from ESESSMB504.ericsson.se (Unknown_Domain [153.88.183.122]) by sessmg23.ericsson.net (Symantec Mail Security) with SMTP id 6C.FF.01583.B78971C5; Mon, 17 Dec 2018 13:37:15 +0100 (CET)
Received: from ESESSMB504.ericsson.se (153.88.183.122) by ESESSMB504.ericsson.se (153.88.183.122) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1466.3; Mon, 17 Dec 2018 13:37:13 +0100
Received: from EUR01-DB5-obe.outbound.protection.outlook.com (153.88.183.157) by ESESSMB504.ericsson.se (153.88.183.165) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1466.3 via Frontend Transport; Mon, 17 Dec 2018 13:37:13 +0100
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=3grXRkuJG7qK6NXEWAFAMNwfbIzITPbe0vTvJErRXRE=; b=fRpbc9Kf0lDl0tzG6TP5qzvBd3rlfZJIf29YMVcQR7KQkJC5HBTaHyGEo6YRmsXodKW5y5d+FI9Sl73YZlQ9h8hh5fvZoDZQul6e0Q5VO2HWG2T7eEoHtrVcaecsEl5dw4+ad3RPhsK0vERs/SRhXLN1ybgWZzyMr/Pho2ewTPo=
Received: from VI1PR0701MB2957.eurprd07.prod.outlook.com (10.173.72.135) by VI1PR0701MB2077.eurprd07.prod.outlook.com (10.167.210.13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1446.9; Mon, 17 Dec 2018 12:37:12 +0000
Received: from VI1PR0701MB2957.eurprd07.prod.outlook.com ([fe80::116c:b456:232b:a2ea]) by VI1PR0701MB2957.eurprd07.prod.outlook.com ([fe80::116c:b456:232b:a2ea%3]) with mapi id 15.20.1446.015; Mon, 17 Dec 2018 12:37:12 +0000
From: Miika Komu <miika.komu@ericsson.com>
To: Mirja Kühlewind <ietf@kuehlewind.net>, The IESG <iesg@ietf.org>
CC: "draft-ietf-hip-rfc4423-bis@ietf.org" <draft-ietf-hip-rfc4423-bis@ietf.org>, Gonzalo Camarillo <gonzalo.camarillo@ericsson.com>, "hip-chairs@ietf.org" <hip-chairs@ietf.org>, "hipsec@ietf.org" <hipsec@ietf.org>
Thread-Topic: Mirja Kühlewind's No Objection on draft-ietf-hip-rfc4423-bis-19: (with COMMENT)
Thread-Index: AQHT5glFynvGcTsE0Eaw/ZSl33KifaWEPlgA
Date: Mon, 17 Dec 2018 12:37:12 +0000
Message-ID: <64c22106-3396-3771-e316-5acca78ff5f0@ericsson.com>
References: <152570055924.1427.16939102336092145446.idtracker@ietfa.amsl.com>
In-Reply-To: <152570055924.1427.16939102336092145446.idtracker@ietfa.amsl.com>
Accept-Language: fi-FI, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-clientproxiedby: AM5PR06CA0017.eurprd06.prod.outlook.com (2603:10a6:206:2::30) To VI1PR0701MB2957.eurprd07.prod.outlook.com (2603:10a6:800:87::7)
authentication-results: spf=none (sender IP is ) smtp.mailfrom=miika.komu@ericsson.com;
x-ms-exchange-messagesentrepresentingtype: 1
x-originating-ip: [89.166.49.243]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; VI1PR0701MB2077; 6:8sqTdlfkVuQ9oPrFbMG3iktgN21xMpWW4rhm+lVlsxtm34t32nSDw14aE0zYoPxgLCOEUk6g6BoO18IWvDLA9lzfPDYsZGqB5JLyG0KFJxbmaWpGZk28BPFt0pqtCf02Nfq7HA5joABxt6nW/8QD/AnwL3aKFbsfMMO/sh07nB7nUH8SjdZYzpogoNtvk9+gL96qv8oE107qRAZdh+deMQnep7yI6azVJw/zvYGg1HH4xraBP6M9PL/c0s8FegAPeKB5RqiUHFJ0Lo3dtmqx9Fg3zKwPzniFfF0quqyP7Fm0YE0hoauF9gn64hsRZanphNq21R5B8reIVQUsgytMHth0GZwhrhRlWsT1Uim4MQFyVLGcGILTflqvqTGST9Kwr5YkHzxAuHFudgreiaJanq/+IwygyddUR+EnEOELPw4XXS5tcJQfATLWWlLuSL+1ofB6NF7vaX3MEt9NjpTi0w==; 5:rKUBBd7T07dqg67fLKHpiCy1US81A1xbiWz6QWs/i+TdrY5n7a7dUAxftZdUSBiP6Cie1sOegu37JbbbKMHqOU5VUYYRQlaAJTtHDIsmuqoeNj/JzB8021qEXRm8XmQvjgmrHepGNtpqiuUkfJEsXprXZjYgnE0Z/4ojFBYgDKE=; 7:WUMR+wodo80R2wiUKOXYLHhRE8GRx2xemzQUoRY/1OZQK7h6Y4gzx5MClfnh5LJYa+GLYSHXvpkWdbGN62Ok+Vy+2WqupGNzirUoHcVhKRBczCmd/zP4xe+KOM8u3BMgf6CUYl5C2e74xRGmbKPmFQ==
x-ms-office365-filtering-correlation-id: 723e1017-ef80-4acc-2c80-08d6641c5e1f
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600074)(711020)(2017052603328)(7153060)(7193020); SRVR:VI1PR0701MB2077;
x-ms-traffictypediagnostic: VI1PR0701MB2077:
x-microsoft-antispam-prvs: <VI1PR0701MB2077F705FA65FA40F86670BCFCBC0@VI1PR0701MB2077.eurprd07.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(8211001083)(3230021)(999002)(6040522)(2401047)(5005006)(8121501046)(3231475)(944501520)(52105112)(93006095)(93001095)(10201501046)(3002001)(148016)(149066)(150057)(6041310)(20161123562045)(20161123560045)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123558120)(20161123564045)(201708071742011)(7699051)(76991095); SRVR:VI1PR0701MB2077; BCL:0; PCL:0; RULEID:; SRVR:VI1PR0701MB2077;
x-forefront-prvs: 08897B549D
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(136003)(39860400002)(396003)(346002)(366004)(376002)(199004)(189003)(31686004)(305945005)(99286004)(52116002)(102836004)(106356001)(53546011)(6486002)(224303003)(6512007)(76176011)(44832011)(224313004)(26005)(6506007)(386003)(7736002)(6306002)(14444005)(256004)(966005)(6246003)(4326008)(105586002)(14454004)(71190400001)(36756003)(3846002)(6116002)(53936002)(25786009)(8936002)(31696002)(68736007)(81156014)(5660300001)(229853002)(71200400001)(97736004)(66066001)(316002)(446003)(11346002)(86362001)(186003)(486006)(110136005)(476003)(54906003)(66574012)(2906002)(81166006)(478600001)(6436002)(2616005); DIR:OUT; SFP:1101; SCL:1; SRVR:VI1PR0701MB2077; H:VI1PR0701MB2957.eurprd07.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: ericsson.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: fz7zxzl+D8WWqHkyO1342noJLmaE9dZrPVbszj/3QNmH/xZeYez5hHYo6cthZx8lW25z2S4eq0J4AuVzFz7RyGqCglsvDQTUDjTkvA2U7ozUD9YIiUve0DxVU4oSLVwgaBWQe8WKkKKAzu/NK/wIRr5cLzIKZlsKkRbI4bGv5Zmp0a3UqNQCa0CxIj+b9QmC7wTMyc1dVX6nGX+s3Pl/yvpEuJQo0TD3FEpliB79lpssUnkWQ8/VNSduGtDyCaHcH/VCRhK8MduI8o/NBUbHBH8U6VtOVMnif9299arlWQE+3kHhWUeX2l8GGB60Dlij
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-ID: <97086CEB6118FF4AA884E3D5CD4AED47@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-Network-Message-Id: 723e1017-ef80-4acc-2c80-08d6641c5e1f
X-MS-Exchange-CrossTenant-originalarrivaltime: 17 Dec 2018 12:37:12.2810 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR0701MB2077
X-OriginatorOrg: ericsson.com
X-Brightmail-Tracker: H4sIAAAAAAAAA02SbUhTURjHOffebXfD4XE576Ni4SAi8y3zwyqzIjAFjb4VMqiRF13qtF2T tKBRSr6m5buFmqwoLQ2TDF8+ZLPUdJpg0yxztUQtzFVY4pLcvQp9+z3n+f//5zkPhyYVJpEP rdNnsAa9NkUlllE1Jzuygy5WM5rQup9+6g/mOonanFsgUVc0lpHqaucNUj1ndZCHRNEm0woR neO4IzpOxMsiEtgUXSZrCIk8LUuaGilA6WvKC509lRIjalcWICkNOBze9q+IC5CMVmAzAof5 BRKKZQTzVZOEUJgImCgaoFwFhUtJsLxpJIVOJQHOzlsioZhFMDjdR7mSxTgAmt5bSRd74niw 9/ySuEQknkLQVlzGZ23B1xCUtI/zWZ44D0HuyoJYsISB82opb6fwdmjpaiZcLMcHYbLPwmsU OA5GjXf566T4GHQ//cCfI+wHD56s8V4SM/DOXk8Ij8Vg6h4hBVbC/Oc1fm7AVQhGHE5CMMdD 4UIJJYgCYdhqRwL7w/CibSPID8bqC5FgnhCDqerHhiEOHEOLEqExtr7BskXRZlLLTOsGp8H1 V5/EAm+FpmIbVYrCav+bthbR67wTWjtDBIyGnEeUoPCH8kKbpJbfhQcM1NipBiRqQkqO5bjU xLA9waxBd4bj0vTBejajDa3/neftq0HPUPPXw70I00jlJlcWMRqFSJvJZaX2IqBJlae8eK+X RiFP0GZls4a0U4bzKSzXi3xpSsXInQoPjQInajPYZJZNZw2bXYKW+hiRJDb2T9HZErV3zA7L y/2MI/X3ktXCzUiI7/1z0/5TvveGXh9huMAr86b7xlqZpUMaE5h/e1vUsvzyrojqWeWBLz5L /u6XkmUN3czfE41Uo4MIH41oc96sD3/o1fLY7Vv+IKwy7qqF2Lxh7326inPQ3J8U6m6LnDma WP5xPKpLRXFJ2t0BpIHT/gMgm5C2NwMAAA==
Archived-At: <https://mailarchive.ietf.org/arch/msg/hipsec/Gc2fpXsh3oRD7u0zxFhHzKpYGMg>
Subject: Re: [Hipsec] Mirja Kühlewind's No Objection on draft-ietf-hip-rfc4423-bis-19: (with COMMENT)
X-BeenThere: hipsec@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is the official IETF Mailing List for the HIP Working Group." <hipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/hipsec>, <mailto:hipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/hipsec/>
List-Post: <mailto:hipsec@ietf.org>
List-Help: <mailto:hipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/hipsec>, <mailto:hipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 17 Dec 2018 12:37:22 -0000

Hi Mirja,

On 5/7/18 16:42, Mirja Kühlewind wrote:
> Mirja Kühlewind has entered the following ballot position for
> draft-ietf-hip-rfc4423-bis-19: No Objection
> 
> When responding, please keep the subject line intact and reply to all
> email addresses included in the To and CC lines. (Feel free to cut this
> introductory paragraph, however.)
> 
> 
> Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
> for more information about IESG DISCUSS and COMMENT positions.
> 
> 
> The document, along with other ballot positions, can be found here:
> https://datatracker.ietf.org/doc/draft-ietf-hip-rfc4423-bis/
> 
> 
> 
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
> 
> A few minor high-level comments/questions:
> 
> 1) To me it feels that sec 11 doesn't really belong in this bis doc. Maybe that
> is rather an own report or can just go in the appendix?

ok, moving this to appendix.

> 2) Should this document maybe discuss connection migration as used by QUIC as
> an alternative (based on short term connection identifiers instead of course)?
> Background: to provide identities between two endpoints, I'd say that TLS is
> sufficient or even the more appropriate solution. However, this document does
> not talk very much about cases where the identify of other IP hosts (not
> endpoints) is important. Oft course it covers the mobility use case but that
> also seems less relevant with migration support in QUIC.

There are many protocols that HIP could be compared against but the WG 
did not pursue to do it in the context of this document. TLS and QUIC 
are application-layer protocols whereas HIP operates between transport 
and network layers, so I am not sure how fair comparison we could make. 
Also, at this stage of the draft I think it would better to reference 
some existing peer reviewed work but I doubt anyone has done a 
comparison of HIP and QUIC.