Re: Bruce Schneier's Proposal to dedicate November meeting to saving the Internet from the NSA

Dave Crocker <dhc@dcrocker.net> Fri, 06 September 2013 15:59 UTC

Return-Path: <dhc@dcrocker.net>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0FEC711E82AA for <ietf@ietfa.amsl.com>; Fri, 6 Sep 2013 08:59:20 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.563
X-Spam-Level:
X-Spam-Status: No, score=-6.563 tagged_above=-999 required=5 tests=[AWL=0.036, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xvRgqmhsOX57 for <ietf@ietfa.amsl.com>; Fri, 6 Sep 2013 08:59:08 -0700 (PDT)
Received: from sbh17.songbird.com (sbh17.songbird.com [72.52.113.17]) by ietfa.amsl.com (Postfix) with ESMTP id 7AB4D11E819E for <ietf@ietf.org>; Fri, 6 Sep 2013 08:59:07 -0700 (PDT)
Received: from [192.168.1.66] (76-218-9-215.lightspeed.sntcca.sbcglobal.net [76.218.9.215]) (authenticated bits=0) by sbh17.songbird.com (8.13.8/8.13.8) with ESMTP id r86Fx38X031966 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT) for <ietf@ietf.org>; Fri, 6 Sep 2013 08:59:07 -0700
Message-ID: <5229FBB8.7020300@dcrocker.net>
Date: Fri, 06 Sep 2013 08:58:48 -0700
From: Dave Crocker <dhc@dcrocker.net>
Organization: Brandenburg InternetWorking
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:17.0) Gecko/20130801 Thunderbird/17.0.8
MIME-Version: 1.0
To: ietf@ietf.org
Subject: Re: Bruce Schneier's Proposal to dedicate November meeting to saving the Internet from the NSA
References: <20130906144548.C22C618C0DA@mercury.lcs.mit.edu> <5229F2B1.70109@dcrocker.net> <20130906153409.GA1399@nic.fr>
In-Reply-To: <20130906153409.GA1399@nic.fr>
Content-Type: text/plain; charset="ISO-8859-1"; format="flowed"
Content-Transfer-Encoding: 7bit
X-Greylist: Sender succeeded SMTP AUTH, not delayed by milter-greylist-4.0 (sbh17.songbird.com [72.52.113.66]); Fri, 06 Sep 2013 08:59:07 -0700 (PDT)
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
Reply-To: dcrocker@bbiw.net
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 06 Sep 2013 15:59:20 -0000

On 9/6/2013 8:34 AM, Stephane Bortzmeyer wrote:
> On Fri, Sep 06, 2013 at 08:20:17AM -0700,
>   Dave Crocker <dhc@dcrocker.net> wrote
>   a message of 21 lines which said:
>
>> We currently do not have a concise catalog the basic 'privacy'
>> threats and their typical mitigations, appropriate for concern with
>> IETF protocols.
>
> What about RFC 6973?


It certainly provides useful background.  As such, it's an excellent 
starting point for the topic.

However it is not concise nor does it offer threat templates nor design 
templates.

It also doesn't define privacy...

d/


-- 
Dave Crocker
Brandenburg InternetWorking
bbiw.net