Re: [ietf-smtp] Characteristics of Isolated (or mostly-isolated) industrial IP Networks

Dave Crocker <dhc@dcrocker.net> Sun, 05 January 2020 05:58 UTC

Return-Path: <dhc@dcrocker.net>
X-Original-To: ietf-smtp@ietfa.amsl.com
Delivered-To: ietf-smtp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D700612006F for <ietf-smtp@ietfa.amsl.com>; Sat, 4 Jan 2020 21:58:33 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.601
X-Spam-Level:
X-Spam-Status: No, score=-2.601 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BwOgYHQS4RX7 for <ietf-smtp@ietfa.amsl.com>; Sat, 4 Jan 2020 21:58:32 -0800 (PST)
Received: from simon.songbird.com (simon.songbird.com [72.52.113.5]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E42B812004D for <ietf-smtp@ietf.org>; Sat, 4 Jan 2020 21:58:32 -0800 (PST)
Received: from [192.168.1.85] (108-226-162-63.lightspeed.sntcca.sbcglobal.net [108.226.162.63]) (authenticated bits=0) by simon.songbird.com (8.14.4/8.14.4/Debian-4.1ubuntu1.1) with ESMTP id 0055xQ3Y016052 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES128-SHA bits=128 verify=NOT); Sat, 4 Jan 2020 21:59:26 -0800
To: Keith Moore <moore@network-heretics.com>
References: <20200105021840.51DEA11FA155@ary.qy> <e222998e-374f-07aa-024e-2b6fb9d39003@network-heretics.com>
From: Dave Crocker <dhc@dcrocker.net>
Organization: Brandenburg InternetWorking
Cc: ietf-smtp@ietf.org
Reply-To: dcrocker@bbiw.net
Message-ID: <3c50a793-dd26-3254-f9e3-b642793918b7@dcrocker.net>
Date: Sat, 04 Jan 2020 21:58:26 -0800
User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:68.0) Gecko/20100101 Thunderbird/68.3.1
MIME-Version: 1.0
In-Reply-To: <e222998e-374f-07aa-024e-2b6fb9d39003@network-heretics.com>
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Language: en-US
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf-smtp/RFkYUuptDM5QWe-DoWPRkz5COMs>
Subject: Re: [ietf-smtp] Characteristics of Isolated (or mostly-isolated) industrial IP Networks
X-BeenThere: ietf-smtp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Discussion of issues related to Simple Mail Transfer Protocol \(SMTP\) \[RFC 821, RFC 2821, RFC 5321\]" <ietf-smtp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf-smtp>, <mailto:ietf-smtp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf-smtp/>
List-Post: <mailto:ietf-smtp@ietf.org>
List-Help: <mailto:ietf-smtp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf-smtp>, <mailto:ietf-smtp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 05 Jan 2020 05:58:34 -0000

On 1/4/2020 8:03 PM, Keith Moore wrote:
> I suspect ietf-smtp would do better to define the behavior of a 
> submission service that is designed to accept inbound email from devices 
> in such an environment 

The clients in such an environment appear to simply be MUAs.  The 
submission server appears simply to be an MSA.

I gather what makes them distinctive is methods of identification and 
authentication -- notably reliance on network address rather than domain 
names -- rather than anything involving email semantics or basic 
protocol details (beyond ID & Auth)?

What else is distinctive?


and forward such email to a "smarthost"

What are the differences from a classic originating MTA?



 From your note, the reliance on IP Address and boundary security rather 
than encryption appear to be the primary points of distinction.

In any event, I suspect it would be helpful to create an Informational 
RFC that discusses design, administration and operations issues that are 
noteworthy in common IoT environments.  Sounds like it doesn't need to 
be lengthy of complicated, but formulating a discrete set of statements 
and getting community consensus on it could facilitate detailed wg 
decision-making, here and elsewhere.


d/
-- 
Dave Crocker
Brandenburg InternetWorking
bbiw.net