Re: Security for the Internet of Things and Other Things (Was: Re: Observations on (non-technical) changes affecting IETF operations)

Theodore V Faber <theodore.v.faber@aero.org> Wed, 09 March 2016 16:03 UTC

Return-Path: <prvs=869aa6279=theodore.v.faber@aero.org>
X-Original-To: ietf@ietfa.amsl.com
Delivered-To: ietf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E782E12E1F8 for <ietf@ietfa.amsl.com>; Wed, 9 Mar 2016 08:03:15 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RP_MATCHES_RCVD=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=neutral reason="invalid (public key: not available)" header.d=aero.org header.b=dQxkQzxf; dkim=pass (1024-bit key) header.d=aerospacecloud.onmicrosoft.com header.b=UtsuIjM0
Received: from mail.ietf.org ([127.0.0.1]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hpctLzKOXmJ9 for <ietf@ietfa.amsl.com>; Wed, 9 Mar 2016 08:03:13 -0800 (PST)
Received: from email3-east.aero.org (email3-east.aero.org [130.221.184.167]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A73B412E104 for <ietf@ietf.org>; Wed, 9 Mar 2016 07:53:24 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=aero.org; i=@aero.org; q=dns/txt; s=mailhub; t=1457538804; x=1489074804; h=from:to:subject:date:message-id:references: content-transfer-encoding:mime-version; bh=UbFFUvlRJGNMojiHE7o61DPx+e6qWnbkFaiJSLBZzMk=; b=dQxkQzxfqUYRZEdz4URUUR/NtBT4dYJl4GG9649nKsbDIMu4HaoDpbkT vy2A5xSyz/OdjkNTF5RaATBseG7RDJsNuM211x5BsOjATBN7aeZYSliwy OfYDBqZWfCjfTxRZ8z0ss136/JlvjuxysgLjt5iIHD1zoFP/4g7fr3L7r 0=;
x-SBRS: None
x-SenderGroup: Inbound_Office365
X-IronPort-AV: E=McAfee;i="5700,7163,8098"; a="2276012"
X-IronPort-AV: E=Sophos;i="5.24,311,1454994000"; d="scan'208";a="2276012"
X-IPAS-Result: A2ECAgAbfddW/zXGZxdbAxkBAQIPAQEBAQYBAQEBg1JtBrgNghMBDYFnGYV2AoF3FAEBAQEBAQEDYRwLgjc4PAEBAQEBASMCDSc4AQEBAxIBJwYBATgPAgEIGB4FCzIlAgQTCBqHagMSnmUBgScBHGEFKAKKaIUnAQSGDxiEKgEBAQcBAQEBAQEBEwIEikyEMwIhJoJkgQ+Se4QchVqWf45MHgEBQoF2DBoUgTRqAYdhAX0BAQE
Received: from mail-dm2gcc01lp0053.outbound.protection.outlook.com (HELO gcc01-dm2-obe.outbound.protection.outlook.com) ([23.103.198.53]) by email3-east.aero.org with ESMTP/TLS/AES256-SHA; 09 Mar 2016 10:53:22 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=aerospacecloud.onmicrosoft.com; s=selector1-aero-org; h=From:To:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=UbFFUvlRJGNMojiHE7o61DPx+e6qWnbkFaiJSLBZzMk=; b=UtsuIjM0CQ4ZvkUc7sgi/1J7ejh7cIhc2RfE9ml4QRFPYSQGclCS9r4/8UeQiX8PzAmAAAx+LBgZrvaQYarfVI0Y0wPI7IW4gTnYw7eR42HygStm/rRYGK3YGDFuXWdsdCBX2uYiv8SjAgkk7BDFRUEpN1GiDuc39jt9HNDvjwU=
Received: from DM2PR09MB0336.namprd09.prod.outlook.com (10.160.247.153) by DM2PR09MB0334.namprd09.prod.outlook.com (10.160.247.151) with Microsoft SMTP Server (TLS) id 15.1.434.16; Wed, 9 Mar 2016 15:53:03 +0000
Received: from DM2PR09MB0336.namprd09.prod.outlook.com ([10.160.247.153]) by DM2PR09MB0336.namprd09.prod.outlook.com ([10.160.247.153]) with mapi id 15.01.0434.016; Wed, 9 Mar 2016 15:53:03 +0000
From: Theodore V Faber <theodore.v.faber@aero.org>
To: "ietf@ietf.org" <ietf@ietf.org>
Subject: Re: Security for the Internet of Things and Other Things (Was: Re: Observations on (non-technical) changes affecting IETF operations)
Thread-Topic: Security for the Internet of Things and Other Things (Was: Re: Observations on (non-technical) changes affecting IETF operations)
Thread-Index: AQHReVjBaqIMJQ1MX0Gs3KKYEUX2Tg==
Date: Wed, 9 Mar 2016 15:53:03 +0000
Message-ID: <DM2PR09MB03362E05C46A4780F7CEFE68B9B30@DM2PR09MB0336.namprd09.prod.outlook.com>
References: <E83FC2B4-867D-44C9-AE1B-F4C414ABD041@piuha.net> <4A95BA014132FF49AE685FAB4B9F17F657DF2330@dfweml701-chm> <EDFB7D0B-2A49-46BD-A84C-0E1FA07793FA@piuha.net> <20160307133944.GB25576@gsp.org> <56DD876C.6050008@cs.tcd.ie> <CAMm+LwiBT9S-twGVzC-7yVBZ9dHA3+8f4ffPv3LyoZ_8+kdqmw@mail.gmail.com> <32C28750-37FF-4EDC-B0A8-A532B175C201@piuha.net> <9806.1457534345@obiwan.sandelman.ca>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=aero.org;
x-originating-ip: [130.221.224.7]
x-ms-office365-filtering-correlation-id: e5d5e799-3f30-482d-bc82-08d34832e60d
x-microsoft-exchange-diagnostics: 1; DM2PR09MB0334; 5:/FCx6FIZQ3NP4iICs2HU6YfdkpcQPMJKdUcuBrMCf8ZnjrWRjUtR1cPX3Z5y82smCMrZTPOmSx0c6VD0RdRLGRxZ5KigQofYn65DHtus+VFNSWcrXo3xaZeZKV1RvgtswEUQNV7Ukx4pV0Q5m/fzKw==; 24:fBrWT1rc9bSGWGCb1ePSnKY9NbSoKtRXf6gDD8LGBgCJyQ/ZuYqr+auW4eKYsY5i9MwntqmXY1IMOxYYWRpKZYYgcReMy6rhZA1CSIcaIzE=
x-microsoft-antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:DM2PR09MB0334;
x-microsoft-antispam-prvs: <DM2PR09MB0334D1798FD4559607CF8018B9B30@DM2PR09MB0334.namprd09.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:;
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(601004)(2401047)(5005006)(8121501046)(3002001)(10201501046); SRVR:DM2PR09MB0334; BCL:0; PCL:0; RULEID:; SRVR:DM2PR09MB0334;
x-forefront-prvs: 0876988AF0
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(6009001)(24454002)(479174004)(5004730100002)(76576001)(93886004)(3280700002)(2501003)(15975445007)(50986999)(5008740100001)(122556002)(19580395003)(19580405001)(77096005)(54356999)(66066001)(76176999)(2906002)(450100001)(92566002)(575784001)(5640700001)(2900100001)(81166005)(5003600100002)(74316001)(189998001)(15650500001)(99286002)(86362001)(106116001)(11100500001)(2351001)(3846002)(1730700002)(586003)(3660700001)(110136002)(107886002)(87936001)(33656002)(1220700001)(1096002)(10400500002)(6116002)(102836003)(5002640100001)(19627235001); DIR:OUT; SFP:1101; SCL:1; SRVR:DM2PR09MB0334; H:DM2PR09MB0336.namprd09.prod.outlook.com; FPR:; SPF:None; MLV:sfv; LANG:en;
spamdiagnosticoutput: 1:23
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: aero.org
X-MS-Exchange-CrossTenant-originalarrivaltime: 09 Mar 2016 15:53:03.2252 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: c8294700-c5a4-4ca1-a876-1457d39899fd
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM2PR09MB0334
Archived-At: <http://mailarchive.ietf.org/arch/msg/ietf/jweS1_4DXtDTqj1yh988OpjWWZQ>
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf/>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 09 Mar 2016 16:03:16 -0000

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

On 3/9/16 07:11, Michael Richardson wrote:
> I think the the problem of setting up the "secure" wireless
> connectivity is largely a distraction, and leads regularly to
> insecurity.

Amen.

- -- 
Ted Faber <theodore.v.faber@aero.org>
Engineering Specialist
Computer Systems Research Department
310-336-7373
-----BEGIN PGP SIGNATURE-----
Comment: GPGTools - https://gpgtools.org
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=THqD
-----END PGP SIGNATURE-----