[Int-area] CGA & SeND extensions discussion

marcelo bagnulo braun <marcelo@it.uc3m.es> Mon, 20 November 2006 13:08 UTC

Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1Gm8tJ-0002rJ-Ky; Mon, 20 Nov 2006 08:08:53 -0500
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1Gm8tH-0002qt-UX; Mon, 20 Nov 2006 08:08:51 -0500
Received: from smtp02.uc3m.es ([163.117.136.122]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1Gm8tF-0007GC-EL; Mon, 20 Nov 2006 08:08:51 -0500
Received: from smtp02.uc3m.es (localhost [127.0.0.1]) by localhost.uc3m.es (Postfix) with ESMTP id 8C000C2C2E; Mon, 20 Nov 2006 13:58:10 +0100 (CET)
Received: from [163.117.139.71] (chelo-it-uc3m-es.it.uc3m.es [163.117.139.71]) by smtp02.uc3m.es (Postfix) with ESMTP id B65CBC39F7; Mon, 20 Nov 2006 13:17:11 +0100 (CET)
Mime-Version: 1.0 (Apple Message framework v624)
Content-Type: text/plain; charset="US-ASCII"; format="flowed"
Message-Id: <c21dd5dda8a5ba865571fdbd64c11c3b@it.uc3m.es>
Content-Transfer-Encoding: 7bit
From: marcelo bagnulo braun <marcelo@it.uc3m.es>
Date: Mon, 20 Nov 2006 13:17:42 +0100
To: INT Area <int-area@ietf.org>, SEND WG <ietf-send@standards.ericsson.net>
X-Mailer: Apple Mail (2.624)
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 7aafa0432175920a4b3e118e16c5cb64
Cc: cga-ext@ietf.org
Subject: [Int-area] CGA & SeND extensions discussion
X-BeenThere: int-area@lists.ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: IETF Internet Area Mailing List <int-area.lists.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@lists.ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/int-area>
List-Post: <mailto:int-area@lists.ietf.org>
List-Help: <mailto:int-area-request@lists.ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@lists.ietf.org?subject=subscribe>
Errors-To: int-area-bounces@lists.ietf.org

Hi,

As a follow-up from James Kempf presentation in the Internet Area 
meeting in San Diego, we have created a mailing list to discuss 
potential future work related to CGA and SeND extensions. The main goal 
is to identify possible work items that the community is interested in 
doing some work on.

You can subscribe to the list through: 
https://www1.ietf.org/mailman/listinfo/cga-ext

I include a list of extensions that have been proposed over the last 
few years that could be possible candidates to work on, depending on 
the interest expressed. Please note that this is rough list, so maybe 
some of the items included may not be clearly within the scope of the 
work and there may be other items that i have missed.

- Proxy SeND. The idea here is to define SeND and CGA extensions so 
that SeND can be used with Proxy ND. Reference: 
draft-kempf-mobopts-ringsig-ndproxy-01.txt
- Define extensions to Multi-Key CGAs: The idea here is to allow the 
possibility of including multiple public keys in a single CGA  
Parameter Data Structure, so that multiple parties can claim address 
ownership. Reference: J. Kempf, J. Wood, Z. Ramzan, C. Gentry, "IP 
Address Authorization for Secure Address Proxying using Multi-key CGAs 
and Ring Signatures", IWSEC'06.
- Perform a threat analysis of the current dependency of CGAs with 
SHA-1 and Update CGAs so that other hash functions can be used. (this 
work is already been discussed in the Int area ml, but i guess it would 
benefit from additional discussion in a specialized forum). Reference: 
draft-bagnulo-multiple-hash-cga-01.txt
- Define CGA extensions to support other public key algorithms. this 
would be a generic extension that would allow using other public key 
schemes in CGAs. In particular, the extension for using Elliptic Curve 
encryption have been suggested.
- Usage of CGAs with IPSec. The goal here would be to use the key of 
the CGA to create an IPSec SA. Possible IKEv2 extensions need to be 
defined for this. Reference: draft-laganier-ike-ipv6-cga-01.txt
- CGAs and DHCP. The goal here would be to analyze possible mechanisms 
to allow to assign CGAs using DHCP and to produce a recommendation 
about how this can be done. The actual DHCP extensions are to be 
defined in the DHC wg.
- Define CGA extensions for including Link Layer information in the 
CGA. Reference: draft-laganier-send-ll-hba-00.txt
- Define CGA extensions to include a certified MAC address
- Define CGA extensions to include symmetric keys. Reference: 
draft-narayanan-pba-01.txt

Other items?

comments on the items above?

Regards, marcelo


_______________________________________________
Int-area mailing list
Int-area@lists.ietf.org
https://www1.ietf.org/mailman/listinfo/int-area