Re: Bruce Schneier's Proposal to dedicate November meeting to saving the Internet from the NSA

Dean Willis <dean.willis@softarmor.com> Fri, 06 September 2013 18:31 UTC

Return-Path: <dean.willis@softarmor.com>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B774F11E81B8 for <ietf@ietfa.amsl.com>; Fri, 6 Sep 2013 11:31:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.444
X-Spam-Level:
X-Spam-Status: No, score=-102.444 tagged_above=-999 required=5 tests=[AWL=0.156, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9pN2fesoJ0xb for <ietf@ietfa.amsl.com>; Fri, 6 Sep 2013 11:31:13 -0700 (PDT)
Received: from mail-ob0-x233.google.com (mail-ob0-x233.google.com [IPv6:2607:f8b0:4003:c01::233]) by ietfa.amsl.com (Postfix) with ESMTP id E12D811E81B6 for <ietf@ietf.org>; Fri, 6 Sep 2013 11:31:12 -0700 (PDT)
Received: by mail-ob0-f179.google.com with SMTP id fb19so3841554obc.10 for <ietf@ietf.org>; Fri, 06 Sep 2013 11:31:12 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=softarmor.com; s=google; h=content-type:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=uL/boaD9nIGGeqyX2hMLLJoT+QmtLEZNfUvfaSm7inM=; b=Du3zVavahQ+jHyHFzQmiJs9epYjZYQKCYEMXs8k7ZfJKn6o+z+VQVn6CufCgD740V6 x4kNecbvP9Hvp0+X36vZHhfrtO4eJQUH/XJ+Lrde8t8HCoN/CT2FD72OZ3Kgi1kd1//C 3h97oHLJMCnzv/SnaOleE8qKTMGMBMfyY8KmA=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:content-type:mime-version:subject:from :in-reply-to:date:cc:content-transfer-encoding:message-id:references :to; bh=uL/boaD9nIGGeqyX2hMLLJoT+QmtLEZNfUvfaSm7inM=; b=IkcUK/uS5Nc37bituR9G/06YGdydDzkRi18ogmhFWluYz/Am+AHpzA0gF8Xo6fCW6G 3HBwXJVy17jH4MfuHjuROnYN/4DnFuHPojT3Gq6KLUEIU3yw5itIaFaX0Qm6jefYhx0c LqAhevRfjJ1sFmytI1FjGFFc3PyjCkoAdFJCHAjzznBWuCw7wyZCgju29tXF7N0KPLXI WniN3C/jeDLqx3OHwwoPvbe2d+WZaSs4lTdUhOaCldxivy7aV1hRGIvdAH0/nmHwyA1H uK0Glua0z7paOR5v4Mtpw+DgqixeJKUQgz+Y0jtbsCNTP+VR+0DcxRsEtK64NZWerop7 /cpQ==
X-Gm-Message-State: ALoCoQnhYSkF55Lix7LGgibvH4Pe2GT7+QgOxldihP4iAbFfREYNCce/ynEnn4iwzP34fzJ4x4YG
X-Received: by 10.60.63.116 with SMTP id f20mr2842488oes.29.1378492272387; Fri, 06 Sep 2013 11:31:12 -0700 (PDT)
Received: from [192.168.2.112] (cpe-72-181-157-19.tx.res.rr.com. [72.181.157.19]) by mx.google.com with ESMTPSA id y1sm3877679oek.4.1969.12.31.16.00.00 (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Fri, 06 Sep 2013 11:31:11 -0700 (PDT)
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 6.5 \(1508\))
Subject: Re: Bruce Schneier's Proposal to dedicate November meeting to saving the Internet from the NSA
From: Dean Willis <dean.willis@softarmor.com>
In-Reply-To: <5229D383.2040309@cisco.com>
Date: Fri, 06 Sep 2013 13:31:10 -0500
Content-Transfer-Encoding: quoted-printable
Message-Id: <4CB918D6-54A4-4397-B99A-95F7989A91C1@softarmor.com>
References: <5F053C0B-4678-4680-A8BF-62FF282ADDCE@softarmor.com> <alpine.BSF.2.00.1309051743130.47262@hiroshima.bogus.com> <52293197.1060809@gmail.com> <5C7FECAB-8A22-4AF1-B023-456458E1B288@nominum.com> <522949C2.8010206@gmail.com> <5229AEDE.8090202@cisco.com> <5229C580.6060108@gmx.net> <5229D2C2.5030903@250bpm.com> <5229D383.2040309@cisco.com>
To: Eliot Lear <lear@cisco.com>
X-Mailer: Apple Mail (2.1508)
Cc: "ietf@ietf.org Discussion" <ietf@ietf.org>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 06 Sep 2013 18:31:13 -0000

On Sep 6, 2013, at 8:07 AM, Eliot Lear <lear@cisco.com> wrote:

> 
> On 9/6/13 3:04 PM, Martin Sustrik wrote:
>> So, what if an NSA guys comes in and proposes backdoor to be added to
>> a protocol? Is it even a valid interest? Does IETF as an organisation
>> have anything to say about that or does it remain strictly neutral?
>> 
> It's happened before and we as a community have said no.  See RFC 2804.

What if they didn't say they were NSA guys, but just discretely worked a weakness into a protocol? What if they were a trusted senior member of the community?

That way lies madness -- but it is a madness we must contemplate. Broader REAL consensus, rather than apathetic agreement with a single contributor's assertions is probably the right way to go.

That means an increasing thrust on educating IETFers, broadly, about security issues. Not just the math, but the whole op-sec envelope.

--
Dean