Re: [Iot-onboarding] EduRoam for IoT

Dan Garcia <dgarcia@odins.es> Mon, 09 December 2019 15:28 UTC

Return-Path: <dgarcia@odins.es>
X-Original-To: iot-onboarding@ietfa.amsl.com
Delivered-To: iot-onboarding@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EE4BF120089 for <iot-onboarding@ietfa.amsl.com>; Mon, 9 Dec 2019 07:28:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=odins.es
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id W2N1aEdLZcQv for <iot-onboarding@ietfa.amsl.com>; Mon, 9 Dec 2019 07:28:26 -0800 (PST)
Received: from correo-05.hosteurope.es (correo-11.hosteurope.es [62.138.138.141]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B32791200D5 for <iot-onboarding@ietf.org>; Mon, 9 Dec 2019 07:28:25 -0800 (PST)
Received: from [62.138.138.133] (port=38538 helo=correo-06.hosteurope.es) by correo-05.hosteurope.es with esmtps (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.92.2) (envelope-from <dgarcia@odins.es>) id 1ieKxR-0006re-Bg; Mon, 09 Dec 2019 16:28:21 +0100
Received: from [62.138.138.12] (port=60116 helo=hl312.hosteurope.es) by correo-06.hosteurope.es with esmtps (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.92.2) (envelope-from <dgarcia@odins.es>) id 1ieKxG-0002D8-Vp; Mon, 09 Dec 2019 16:28:12 +0100
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=odins.es; s=default; h=Content-Type:In-Reply-To:MIME-Version:Date:Message-ID:From: References:To:Subject:Cc:Sender:Reply-To:Content-Transfer-Encoding:Content-ID :Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To: Resent-Cc:Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe :List-Post:List-Owner:List-Archive; bh=vgwLBo8rhjZaRZOhZriaIqb+JQbvNkHADMnYhoByuxs=; b=rrc7NROef5JDN/l8+iZEYnEkSV 5rUP84giSrBjku6Z/t2vUk4L6JcIIBReKuevwW9N9hyYJLwtXO+RQvESY4dxOY2XTmlu0XgNT9y43 zsxmEUzT/OsmVfsDFBm9/mGbrqQL6zlJo5vpNz4Q3Oj6VcMfMij3z7+ePNDAA93W1TK/6fVNVWRxQ BGUrAhxrBBAGR//TdZam0U6+WQilliJpTuA4FnglYKZ/GvArgK/nKsQdXwo1j+VOGPKn42QZnwiAr dyaTK1DAY+EDnfwf+JolEnNEhEqpavaFSXefbwX4MxnInZ3XZdA4SxwnqjZtjDQwew+soILbCqClE d/g/GNxA==;
Received: from [155.54.99.172] (port=64234 helo=pleiades-99-172.inf.um.es) by hl312.hosteurope.es with esmtpsa (TLSv1.2:ECDHE-RSA-AES128-GCM-SHA256:128) (Exim 4.92) (envelope-from <dgarcia@odins.es>) id 1ieKxH-0006Y9-FM; Mon, 09 Dec 2019 16:28:11 +0100
Cc: OdinS - Rafael Marin-Perez <rmarin@odins.es>, "U. López" <rafa@um.es>, schreiner@unistra.fr
To: iot-onboarding@ietf.org, sandoche.balakrichenan@afnic.fr
References: <80fc1573-62f9-26a6-5b55-6ff33c0b1a94@afnic.fr>
From: Dan Garcia <dgarcia@odins.es>
Message-ID: <f6dc44b1-2e03-676c-cd96-f984af96ef70@odins.es>
Date: Mon, 09 Dec 2019 16:28:10 +0100
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:68.0) Gecko/20100101 Thunderbird/68.3.0
MIME-Version: 1.0
In-Reply-To: <80fc1573-62f9-26a6-5b55-6ff33c0b1a94@afnic.fr>
Content-Type: multipart/alternative; boundary="------------40D18D477D4C6A6116092EA4"
Content-Language: en-US
X-RC-Spam-Status: No, score=1.2
X-RC-Spam-Score: 12
X-RC-Spam-Bar: +
X-RC-Spam-Report: DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RDNS_NONE=1.274, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001
X-RC-Spam-Flag:
X-RC-Spam-Checker-Version: MataSpam on correo-06.hosteurope.es
X-Spam-Bar: +
Archived-At: <https://mailarchive.ietf.org/arch/msg/iot-onboarding/Bg7lRNnz3IZzD8rnfZyu64s4LlM>
X-Mailman-Approved-At: Mon, 09 Dec 2019 07:30:19 -0800
Subject: Re: [Iot-onboarding] EduRoam for IoT
X-BeenThere: iot-onboarding@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Discussion of IoT onboarding mechanisms <iot-onboarding.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/iot-onboarding>, <mailto:iot-onboarding-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/iot-onboarding/>
List-Post: <mailto:iot-onboarding@ietf.org>
List-Help: <mailto:iot-onboarding-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/iot-onboarding>, <mailto:iot-onboarding-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 09 Dec 2019 15:28:28 -0000

Dear Sandoche, all,

I think this is an interesting topic. In fact, we started some years ago 
(for my PhD) a work specifically related to that task as well as some 
related work in the area, which I put next.

We designed and developed an EAP lower layer based on CoAP with 
integration with AAA, with the constraints of IoT in mind. We have 
compared it with a current standard (PANA).

  * Here is the draft -
    https://datatracker.ietf.org/doc/draft-marin-ace-wg-coap-eap/

  * Here is the detail design and comparison with PANA  -
    https://www.mdpi.com/1424-8220/16/3/358

  * Here is a re-desing when we started working on LP-WAN where we
    tested on a real LoRa network with IMT Atlantique -
    https://www.mdpi.com/1424-8220/17/11/2646

  * Here is the design, implementation and validation of the
    Intermediaries - alike to the PANA Relay - with three different CoAP
    intermediaries (CoAP proxy, CoAP relay and CoAP stateless proxy)
    compared with PANA - https://ieeexplore.ieee.org/document/8467302

  * We also worked on an extension of LoRaWAN to support AAA with RADIUS
    (https://tools.ietf.org/html/draft-garcia-radext-radius-lorawan-03)
    and DIAMETER
    (https://tools.ietf.org/html/draft-garcia-dime-diameter-lorawan-00)

We are working on this topic and we are interested on following up on it 
if.

Best Regards,

Dan.









On 09/12/2019 15:54, sandoche Balakrichenan wrote:
> Dear all,
>
> I am sure that you might have all heard about EduRoam 
> (https://www.eduroam.org/how/).
>
> We are in discussion with some academic partners to develop a platform 
> similar to EduRoam for IoT, initially for Research purposes.
>
> The idea initially is to have IoT devices (e.g. LoRa devices) 
> authenticated in visited networks based on its identifier. For 
> example, a LoRa end-device which has established authentication in its 
> home network (e.g. in University A) should be able to connect to a 
> gateway and Network Server in a visited network (e.g. In University B) 
> with the same security credentials.
>
> This is not a new idea. We can see that there have been related works 
> at the IETF, WBA alliance etc.
>
> The purpose of this mail is to check if this topic falls under the 
> charter of the IoT-Onboarding discussion and could be discussed in 
> this mailing list.
>
> If otherwise, thanks for your suggestions, contacts, feedback 
> personally to me and Guillaume in cc regarding the topic.
>
> Sandoche.
>
-- 
Firma Correo 
=================================================================
	*Dan García Carrillo
Computer Science PhD
Tlf.: +34 902 570 121
E-mail: dgarcia@odins.es
*******


Odin Solutions, S.L.
Polígono Industrial Oeste
C/ Perú, 5, 3º, Oficina 12
30820 - Alcantarilla (Murcia) - Spain
Tlf.: +34 902 570 121
Web: www.odins.es <http://www.odins.es>
=================================================================

AVISO LEGAL: La información contenida en este correo electrónico, y en 
su caso en los documentos adjuntos, es información privilegiada para uso 
exclusivo de la persona y/o personas a las que va dirigido. No está 
permitido el acceso a este mensaje a cualquier otra persona distinta a 
los indicados. Si usted no es uno de los destinatarios, cualquier 
duplicación, reproducción, distribución, así como cualquier uso de la 
información contenida en él o cualquiera otra acción u omisión tomada en 
relación con el mismo, está prohibida y puede ser ilegal. En dicho caso, 
por favor notifíquelo al remitente y proceda a la eliminación de este 
correo electrónico, así como de sus adjuntos si los hubiere.

Asimismo, y en cumplimiento de Ley Orgánica 3/2018 de protección de 
datos de carácter personal y garantía de los derechos digitales y del 
Reglamento Europeo RGPD 679/2016, le informamos que sus datos están 
siendo objeto de tratamiento por parte de *ODIN SOLUTIONS, S.L.*, con 
N.I.F. B-73.845.893, con la finalidad del mantenimiento y gestión de 
relaciones comerciales y administrativas. La base jurídica del 
tratamiento es el cumplimiento de la legislación fiscal, mercantil y 
contable. No se prevén cesiones y/o transferencias internacionales de 
datos. Para ejercitar sus derechos puede dirigirse a ODIN SOLUTIONS, 
S.L., domiciliada en C/ Perú, 5, 3º, Oficina 12, Pol. Ind. Oeste, 30820 
Alcantarilla (Murcia), o bien enviar un correo electrónico a 
protecciondedatos@odins.es 
<mailto:protecciondedatos@odins.es?subject=Derechos Ley Protección de Datos>, 
con el fin de ejercer sus derechos de acceso, rectificación, supresión 
(derecho al olvido), limitación de tratamiento, portabilidad de los 
datos, oposición, y a no ser objeto de decisiones automatizadas, 
indicando como asunto "Derechos Ley Protección de Datos" y adjuntando 
fotocopia de su D.N.I.