Re: [Iotops] Secure IoT Bootstrapping: A Survey
Wouter van der Beek <w.vanderbeek@cascoda.com> Tue, 30 March 2021 15:21 UTC
Return-Path: <w.vanderbeek@cascoda.com>
X-Original-To: iotops@ietfa.amsl.com
Delivered-To: iotops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CA16A3A1841; Tue, 30 Mar 2021 08:21:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, NICE_REPLY_A=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cascoda.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xVo6ugwbJ1h9; Tue, 30 Mar 2021 08:21:44 -0700 (PDT)
Received: from cs43706557.123-cloud-server.co.uk (cs43706557.123-cloud-server.co.uk [91.109.11.113]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4F1253A1840; Tue, 30 Mar 2021 08:21:43 -0700 (PDT)
Received: from [192.168.178.85] (unknown [93.92.10.229]) by cs43706557.123-cloud-server.co.uk (Postfix) with ESMTPSA id 324307C28A; Tue, 30 Mar 2021 16:21:38 +0100 (BST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cascoda.com; s=default; t=1617117699; bh=UXn3kqG1rJxeL7zXyHukPFQIgcxQIbnpkUmeK+ftPQ8=; h=Subject:To:From; b=XHg3z+A988qIsLXGqH+UQYGIIB1DYzvrYxR6ilObc1iuI6Ps93BUij6V5NJ7IngKF rtI4DTPAbdXNMDidWWoATAVSFqf4wX4Gg2+k7C/PY2FPdvCApmtifsVJmRgN7DxU7d KFQ9b4aDTcPGj2mNe2n/gYUi9B1I8b0VqzJV1YwE=
Authentication-Results: cs43706557; spf=pass (sender IP is 93.92.10.229) smtp.mailfrom=w.vanderbeek@cascoda.com smtp.helo=[192.168.178.85]
Received-SPF: pass (cs43706557: connection is authenticated)
To: sarikaya@ieee.org
Cc: Carsten Bormann <cabo@tzi.org>, Eliot Lear <lear@cisco.com>, Ari Keränen <ari.keranen=40ericsson.com@dmarc.ietf.org>, "draft-sarikaya-t2trg-sbootstrapping@ietf.org" <draft-sarikaya-t2trg-sbootstrapping@ietf.org>, "iotops@ietf.org" <iotops@ietf.org>, "t2trg@irtf.org" <t2TRG@irtf.org>
References: <HE1PR07MB322618CA30FA751216790E6285849@HE1PR07MB3226.eurprd07.prod.outlook.com> <55009522-4B31-4248-B07F-5905B8BFB8CF@cisco.com> <58405701-32CD-42E1-8E84-6BC6A875537E@tzi.org> <7a8814c0-f6c0-8206-42af-8f23ec18c995@cascoda.com> <CAC8QAcdd9qm-ZhcLrHkP3VJjEz8R_a5hAP9MQTeoarkizHtAsA@mail.gmail.com>
From: Wouter van der Beek <w.vanderbeek@cascoda.com>
Message-ID: <a06e71e9-bc4d-ae3a-234b-043fc449a324@cascoda.com>
Date: Tue, 30 Mar 2021 16:21:38 +0100
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Thunderbird/78.9.0
MIME-Version: 1.0
In-Reply-To: <CAC8QAcdd9qm-ZhcLrHkP3VJjEz8R_a5hAP9MQTeoarkizHtAsA@mail.gmail.com>
Content-Type: multipart/alternative; boundary="------------B34D2DBED1F030F962B4A107"
Content-Language: en-US
Archived-At: <https://mailarchive.ietf.org/arch/msg/iotops/1tpJ2XKd9BI_cPjK6VLxjK2TYmw>
Subject: Re: [Iotops] Secure IoT Bootstrapping: A Survey
X-BeenThere: iotops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IOT Operations <iotops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/iotops>, <mailto:iotops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/iotops/>
List-Post: <mailto:iotops@ietf.org>
List-Help: <mailto:iotops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/iotops>, <mailto:iotops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 30 Mar 2021 15:21:50 -0000
Frankly, as author I would have reached out to OCF. I never saw a request in OCF for a review of this text. for starters current version of specs of OCF is v2.2.2 version 1.0 is a long long time ago. one can also reference the ISO/IEC version (https://www.iso.org/standard/74239.html ) that is also way better than the v1.0.0 version referenced. Also the Fairhair spec is not listed in this draft RFC. This document is regarded in the building industry as a guiding document. https://openconnectivity.org/wp-content/uploads/2019/11/fairhair-specification-version-10_approved_april-2019.pdf Kind Regard, Wouter On 30/03/2021 16:12, Behcet Sarikaya wrote: > > > On Tue, Mar 30, 2021 at 6:29 AM Wouter van der Beek > <w.vanderbeek@cascoda.com <mailto:w.vanderbeek@cascoda.com>> wrote: > > Hi All, > > who wrote the OCF section? > > > It was introduced in Rev. 08. > I think Mohit wrote it. > Why did you ask? > > Behcet > > Kind Regards, > > Wouter > > On 30/03/2021 12:13, Carsten Bormann wrote: >> On 2021-02-19, at 16:38, Eliot Lear<lear@cisco.com> <mailto:lear@cisco.com> wrote: >>> Very well timed. I look forward to discussing this. >> Thanks! >> >> Now would be a good time to get some initial feedback — we plan to adopt it as an RG document on April 6th. >> >> Grüße, Carsten >> >>> Eliot >>> >>>> On 19 Feb 2021, at 16:24, Ari Keränen<ari.keranen=40ericsson.com@dmarc.ietf.org> <mailto:ari.keranen=40ericsson.com@dmarc.ietf.org> wrote: >>>> >>>> Hi IoTOPS folks, >>>> >>>> At T2TRG the "Secure IoT Bootstrapping: A Survey" draft has been updated: >>>> https://datatracker.ietf.org/doc/draft-sarikaya-t2trg-sbootstrapping/ <https://datatracker.ietf.org/doc/draft-sarikaya-t2trg-sbootstrapping/> >>>> >>>> The draft has been discussed and developed quite some time in the T2TRG and we chairs think it's now getting close to ready for adoption. We would like to hear views on this from the IoT operational community. In particular we'd like to hear if the technologies considered important for security setup and bootstrapping by this group are covered in the document. >>>> >>>> >>>> Thanks, >>>> Ari & Carsten >>>> >>>> -- >>>> Iotops mailing list >>>> Iotops@ietf.org <mailto:Iotops@ietf.org> >>>> https://www.ietf.org/mailman/listinfo/iotops <https://www.ietf.org/mailman/listinfo/iotops> > -- > > Wouter van der Beek > > Principal Engineer > Cascoda Ltd > > *Southampton Office:* *Taipei Office:* > Threefield House > Threefield Lane > Southampton > SO14 3LP > UK > Rm.918, 9F, No.96, Chia Hsin Bldg. > Sec.2, Zhongshan N.Rd. > Zhongshan Dist. > Taipei > Taiwan > Tel: +353 852448780 > > _<https://www.cascoda.com><https://twitter.com/cascoda><https://www.linkedin.com/company/cascoda-ltd/><https://www.youtube.com/channel/UCi9zbpSBLnWJ4Xf79NnES4Q> > > *Registered Office:* 12-14 Carlton Place, Southampton SO15 2EA, UK > *Registered in England and Wales:* 6174299 > > *Confidentiality:* This e-mail transmission is strictly > confidential and intended solely for the addressee. It may contain > privileged and confidential information and if you are not the > intended recipient, you must not copy or distribute it. If you > have received this e-mail in error, please notify the sender and > delete the e-mail transmission immediately. > *Viruses:* Although we have taken steps to ensure that this e-mail > and attachments are free from any virus, we advise that in keeping > with good computing practice the recipient should ensure they are > actually virus free. > *Security Warning:* Please note that this e-mail has been created > in the knowledge that internet e-mail is not a 100% secure > communications medium. We advise that you understand this lack of > security and take any necessary measures when e-mailing us. > -- Wouter van der Beek Principal Engineer Cascoda Ltd *Southampton Office:* *Taipei Office:* Threefield House Threefield Lane Southampton SO14 3LP UK Rm.918, 9F, No.96, Chia Hsin Bldg. Sec.2, Zhongshan N.Rd. Zhongshan Dist. Taipei Taiwan Tel: +353 852448780 _<https://www.cascoda.com><https://twitter.com/cascoda><https://www.linkedin.com/company/cascoda-ltd/><https://www.youtube.com/channel/UCi9zbpSBLnWJ4Xf79NnES4Q> *Registered Office:* 12-14 Carlton Place, Southampton SO15 2EA, UK *Registered in England and Wales:* 6174299 *Confidentiality:* This e-mail transmission is strictly confidential and intended solely for the addressee. It may contain privileged and confidential information and if you are not the intended recipient, you must not copy or distribute it. If you have received this e-mail in error, please notify the sender and delete the e-mail transmission immediately. *Viruses:* Although we have taken steps to ensure that this e-mail and attachments are free from any virus, we advise that in keeping with good computing practice the recipient should ensure they are actually virus free. *Security Warning:* Please note that this e-mail has been created in the knowledge that internet e-mail is not a 100% secure communications medium. We advise that you understand this lack of security and take any necessary measures when e-mailing us.
- [Iotops] Secure IoT Bootstrapping: A Survey Ari Keränen
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Eliot Lear
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Carsten Bormann
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Wouter van der Beek
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Eliot Lear
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Behcet Sarikaya
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Wouter van der Beek
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Michael Richardson
- Re: [Iotops] [T2TRG] Secure IoT Bootstrapping: A … Mohit Sethi M
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Carsten Bormann
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Mohit Sethi M
- Re: [Iotops] Secure IoT Bootstrapping: A Survey Warren Kumari