Re: [Ideas] [E] Spencer Dawkins' Yes on charter-ietf-ideas-00-00: (with COMMENT)

"Bogineni, Kalyani" <Kalyani.Bogineni@VerizonWireless.com> Mon, 11 September 2017 19:40 UTC

Return-Path: <Kalyani.Bogineni@verizonwireless.com>
X-Original-To: ideas@ietfa.amsl.com
Delivered-To: ideas@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7E015132F32; Mon, 11 Sep 2017 12:40:08 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.699
X-Spam-Level:
X-Spam-Status: No, score=-2.699 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=verizonwireless.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id He9xjeD5CfDg; Mon, 11 Sep 2017 12:40:05 -0700 (PDT)
Received: from mercury.verizonwireless.com (mercury.verizonwireless.com [162.115.227.109]) (using TLSv1.2 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0D6EF1331CB; Mon, 11 Sep 2017 12:39:58 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=verizonwireless.com; i=@verizonwireless.com; q=dns/txt; s=prodmail; t=1505158799; x=1536694799; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=nfUMweYeGPizG0Sk1PBdJSKowoFiRLqnUqz1N1UTXNY=; b=I+BfVINnvrdBlPjx+6UrAiKezo87etFY7m7R1xlnn3poSfaGoavMCkRS oH8bII0ecUzIYNRZm5GeczZglkeI53c5VPfRs5CCvpZYoXijb8KMPDxrZ Y9jXjh8dqzp4PLhq2orhChS6qQPwWoyzdI9K4CeHfXYBVsoNUts1sSjk6 M=;
X-Host: ranger.odc.vzwcorp.com
Received: from casac1exh001.uswin.ad.vzwcorp.com ([10.11.218.43]) by mercury.verizonwireless.com with ESMTP/TLS/AES128-SHA256; 11 Sep 2017 19:39:57 +0000
Received: from scwexch13apd.uswin.ad.vzwcorp.com (153.114.130.32) by CASAC1EXH001.uswin.ad.vzwcorp.com (10.11.218.43) with Microsoft SMTP Server (TLS) id 14.3.248.2; Mon, 11 Sep 2017 12:39:42 -0700
Received: from scwexch12apd.uswin.ad.vzwcorp.com (153.114.130.31) by scwexch13apd.uswin.ad.vzwcorp.com (153.114.130.32) with Microsoft SMTP Server (TLS) id 15.0.1263.5; Mon, 11 Sep 2017 12:39:41 -0700
Received: from scwexch12apd.uswin.ad.vzwcorp.com ([153.114.130.31]) by scwexch12apd.uswin.ad.vzwcorp.com ([153.114.130.31]) with mapi id 15.00.1263.000; Mon, 11 Sep 2017 12:39:41 -0700
From: "Bogineni, Kalyani" <Kalyani.Bogineni@VerizonWireless.com>
To: 'Spencer Dawkins at IETF' <spencerdawkins.ietf@gmail.com>
CC: The IESG <iesg@ietf.org>, "aretana@cisco.com" <aretana@cisco.com>, "ideas@ietf.org" <ideas@ietf.org>, "ideas-chairs@ietf.org" <ideas-chairs@ietf.org>
Thread-Topic: [E] [Ideas] Spencer Dawkins' Yes on charter-ietf-ideas-00-00: (with COMMENT)
Thread-Index: AQHTKO4qpJGvFLFQ0E2PFMiDVvqWHaKwDKAQgAB8DYD//5BFkA==
Date: Mon, 11 Sep 2017 19:39:41 +0000
Message-ID: <e80beb9766564305b7beb5012c3bf57b@scwexch12apd.uswin.ad.vzwcorp.com>
References: <150490809267.17244.96544246533076816.idtracker@ietfa.amsl.com> <44fc229a947949199a2506f532b7a801@scwexch12apd.uswin.ad.vzwcorp.com> <CAKKJt-fipwWsDWO3UsOzoeZx+hPZEgzdw14BpVTNH2jwheX3Hg@mail.gmail.com>
In-Reply-To: <CAKKJt-fipwWsDWO3UsOzoeZx+hPZEgzdw14BpVTNH2jwheX3Hg@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.11.60.250]
Content-Type: multipart/alternative; boundary="_000_e80beb9766564305b7beb5012c3bf57bscwexch12apduswinadvzwc_"
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/ideas/I9Vk45K5FhbDza7NVKIKPD2F3DE>
Subject: Re: [Ideas] [E] Spencer Dawkins' Yes on charter-ietf-ideas-00-00: (with COMMENT)
X-BeenThere: ideas@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Discussions relating to the development, clarification, and implementation of control-plane infrastructures and functionalities in ID enabled networks." <ideas.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ideas>, <mailto:ideas-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ideas/>
List-Post: <mailto:ideas@ietf.org>
List-Help: <mailto:ideas-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ideas>, <mailto:ideas-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 11 Sep 2017 19:40:08 -0000

Spencer:

We are supportive of IDEAS charter that includes what is of interest to us: mapping system and
control plane protocols.

Regards,
Kalyani Bogineni
Verizon

From: Spencer Dawkins at IETF [mailto:spencerdawkins.ietf@gmail.com]
Sent: Monday, September 11, 2017 3:17 PM
To: Bogineni, Kalyani
Cc: The IESG; aretana@cisco.com; ideas@ietf.org; ideas-chairs@ietf.org
Subject: Re: [E] [Ideas] Spencer Dawkins' Yes on charter-ietf-ideas-00-00: (with COMMENT)

Hi, Kalyani,

On Mon, Sep 11, 2017 at 1:55 PM, Bogineni, Kalyani <Kalyani.Bogineni@verizonwireless.com<mailto:Kalyani.Bogineni@verizonwireless.com>> wrote:
charter-ietf-ideas-00-00: Yes
We support standardizing the mapping system and control plane protocols.

I'm sorry, but I don't understand this as a response to whether security analysis at the framework level is in scope for IDEAS?

Thanks,

Spencer


Kalyani Bogineni
Verizon

-----Original Message-----
From: Ideas [mailto:ideas-bounces@ietf.org<mailto:ideas-bounces@ietf.org>] On Behalf Of Spencer Dawkins
Sent: Friday, September 08, 2017 6:02 PM
To: The IESG
Cc: aretana@cisco.com<mailto:aretana@cisco.com>; ideas@ietf.org<mailto:ideas@ietf.org>; ideas-chairs@ietf.org<mailto:ideas-chairs@ietf.org>
Subject: [E] [Ideas] Spencer Dawkins' Yes on charter-ietf-ideas-00-00: (with COMMENT)

Spencer Dawkins has entered the following ballot position for
charter-ietf-ideas-00-00: Yes

When responding, please keep the subject line intact and reply to all email addresses included in the To and CC lines. (Feel free to cut this introductory paragraph, however.)



The document, along with other ballot positions, can be found here:
https://urldefense.proofpoint.com/v2/url?u=https-3A__datatracker.ietf.org_doc_charter-2Dietf-2Dideas_&d=DwICAg&c=udBTRvFvXC5Dhqg7UHpJlPps3mZ3LRxpb6__0PomBTQ&r=IdiSODh8aDRjdCeGgd9Mzr2tsDA8-g976yWB1sPbdMo&m=4iTQevao0FvmGJ2lQosFV_brUjdjM9g2wGBLFxgT5Fs&s=w6TJbOQo5YtxXCLwzLkvFZmbH9XAyByGSWycK2md3Hs&e=



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

If only "Yes, but ..." was a position I could select ...

I'm really glad to see this going forward - enough to ballot "Yes".

This looks like a framework that could be used in a number of use cases, and my "Yes, but ..." is that it's not clear to me, how much analysis of ID/Loc separation security implications that some folks downstream are going to have to do, when using this framework.

I'm remembering an exchange with a document editor on the last telechat that could be summarized as "we didn't do the work on general security implications of X, so each usage of X has to do that work itself, rather than pointing to previous work". OK, if that's where we are, but IDEAS hasn't already done the same thing (yet).

I'm looking at deliverables like "Requirements for identity authentication and authorization service (for GRIDS)" and "Threat model document", so I know there's SOMEthing in there, but I don't know what else might be required, if someone wanted to think about the general security implications of GRIDS, and I note that those deliverables are listed as living drafts or wiki entries, which doesn't sound like anything GRIDS framework usages would be able to point to, when they need to look at security implications.

Is a look at general security implications, in a form that specific framework usages can point to, on the table for IDEAS?

(It doesn't have to be, for me to ballot Yes, but I did have to ask, right?)


_______________________________________________
Ideas mailing list
Ideas@ietf.org<mailto:Ideas@ietf.org>
https://urldefense.proofpoint.com/v2/url?u=https-3A__www.ietf.org_mailman_listinfo_ideas&d=DwICAg&c=udBTRvFvXC5Dhqg7UHpJlPps3mZ3LRxpb6__0PomBTQ&r=IdiSODh8aDRjdCeGgd9Mzr2tsDA8-g976yWB1sPbdMo&m=4iTQevao0FvmGJ2lQosFV_brUjdjM9g2wGBLFxgT5Fs&s=t9wokY80pZ8u3yVsBlAumHv46uTMT6LWzptTTFlFlys&e=