Re: [Iotops] Secure IoT Bootstrapping: A Survey

Wouter van der Beek <w.vanderbeek@cascoda.com> Tue, 30 March 2021 15:21 UTC

Return-Path: <w.vanderbeek@cascoda.com>
X-Original-To: iotops@ietfa.amsl.com
Delivered-To: iotops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CA16A3A1841; Tue, 30 Mar 2021 08:21:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, NICE_REPLY_A=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cascoda.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xVo6ugwbJ1h9; Tue, 30 Mar 2021 08:21:44 -0700 (PDT)
Received: from cs43706557.123-cloud-server.co.uk (cs43706557.123-cloud-server.co.uk [91.109.11.113]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4F1253A1840; Tue, 30 Mar 2021 08:21:43 -0700 (PDT)
Received: from [192.168.178.85] (unknown [93.92.10.229]) by cs43706557.123-cloud-server.co.uk (Postfix) with ESMTPSA id 324307C28A; Tue, 30 Mar 2021 16:21:38 +0100 (BST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cascoda.com; s=default; t=1617117699; bh=UXn3kqG1rJxeL7zXyHukPFQIgcxQIbnpkUmeK+ftPQ8=; h=Subject:To:From; b=XHg3z+A988qIsLXGqH+UQYGIIB1DYzvrYxR6ilObc1iuI6Ps93BUij6V5NJ7IngKF rtI4DTPAbdXNMDidWWoATAVSFqf4wX4Gg2+k7C/PY2FPdvCApmtifsVJmRgN7DxU7d KFQ9b4aDTcPGj2mNe2n/gYUi9B1I8b0VqzJV1YwE=
Authentication-Results: cs43706557; spf=pass (sender IP is 93.92.10.229) smtp.mailfrom=w.vanderbeek@cascoda.com smtp.helo=[192.168.178.85]
Received-SPF: pass (cs43706557: connection is authenticated)
To: sarikaya@ieee.org
Cc: Carsten Bormann <cabo@tzi.org>, Eliot Lear <lear@cisco.com>, Ari Keränen <ari.keranen=40ericsson.com@dmarc.ietf.org>, "draft-sarikaya-t2trg-sbootstrapping@ietf.org" <draft-sarikaya-t2trg-sbootstrapping@ietf.org>, "iotops@ietf.org" <iotops@ietf.org>, "t2trg@irtf.org" <t2TRG@irtf.org>
References: <HE1PR07MB322618CA30FA751216790E6285849@HE1PR07MB3226.eurprd07.prod.outlook.com> <55009522-4B31-4248-B07F-5905B8BFB8CF@cisco.com> <58405701-32CD-42E1-8E84-6BC6A875537E@tzi.org> <7a8814c0-f6c0-8206-42af-8f23ec18c995@cascoda.com> <CAC8QAcdd9qm-ZhcLrHkP3VJjEz8R_a5hAP9MQTeoarkizHtAsA@mail.gmail.com>
From: Wouter van der Beek <w.vanderbeek@cascoda.com>
Message-ID: <a06e71e9-bc4d-ae3a-234b-043fc449a324@cascoda.com>
Date: Tue, 30 Mar 2021 16:21:38 +0100
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Thunderbird/78.9.0
MIME-Version: 1.0
In-Reply-To: <CAC8QAcdd9qm-ZhcLrHkP3VJjEz8R_a5hAP9MQTeoarkizHtAsA@mail.gmail.com>
Content-Type: multipart/alternative; boundary="------------B34D2DBED1F030F962B4A107"
Content-Language: en-US
Archived-At: <https://mailarchive.ietf.org/arch/msg/iotops/1tpJ2XKd9BI_cPjK6VLxjK2TYmw>
Subject: Re: [Iotops] Secure IoT Bootstrapping: A Survey
X-BeenThere: iotops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IOT Operations <iotops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/iotops>, <mailto:iotops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/iotops/>
List-Post: <mailto:iotops@ietf.org>
List-Help: <mailto:iotops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/iotops>, <mailto:iotops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 30 Mar 2021 15:21:50 -0000

Frankly, as author I would have reached out to OCF.

I never saw a request in OCF for a review of this text.

for starters current version of specs of OCF is v2.2.2 version 1.0 is a 
long long time ago.

one can also reference the ISO/IEC version 
(https://www.iso.org/standard/74239.html ) that is also way better than 
the v1.0.0 version referenced.


Also the Fairhair spec is not listed in this draft RFC. This document is 
regarded in the building industry as a guiding document.

https://openconnectivity.org/wp-content/uploads/2019/11/fairhair-specification-version-10_approved_april-2019.pdf

Kind Regard,

Wouter


On 30/03/2021 16:12, Behcet Sarikaya wrote:
>
>
> On Tue, Mar 30, 2021 at 6:29 AM Wouter van der Beek 
> <w.vanderbeek@cascoda.com <mailto:w.vanderbeek@cascoda.com>> wrote:
>
>     Hi All,
>
>     who wrote the OCF section?
>
>
> It was introduced in Rev. 08.
> I think Mohit wrote it.
> Why did you ask?
>
> Behcet
>
>     Kind Regards,
>
>     Wouter
>
>     On 30/03/2021 12:13, Carsten Bormann wrote:
>>     On 2021-02-19, at 16:38, Eliot Lear<lear@cisco.com>  <mailto:lear@cisco.com>  wrote:
>>>     Very well timed.  I look forward to discussing this.
>>     Thanks!
>>
>>     Now would be a good time to get some initial feedback — we plan to adopt it as an RG document on April 6th.
>>
>>     Grüße, Carsten
>>
>>>     Eliot
>>>
>>>>     On 19 Feb 2021, at 16:24, Ari Keränen<ari.keranen=40ericsson.com@dmarc.ietf.org>  <mailto:ari.keranen=40ericsson.com@dmarc.ietf.org>  wrote:
>>>>
>>>>     Hi IoTOPS folks,
>>>>
>>>>     At T2TRG the "Secure IoT Bootstrapping: A Survey" draft has been updated:
>>>>     https://datatracker.ietf.org/doc/draft-sarikaya-t2trg-sbootstrapping/  <https://datatracker.ietf.org/doc/draft-sarikaya-t2trg-sbootstrapping/>
>>>>
>>>>     The draft has been discussed and developed quite some time in the T2TRG and we chairs think it's now getting close to ready for adoption. We would like to hear views on this from the IoT operational community. In particular we'd like to hear if the technologies considered important for security setup and bootstrapping by this group are covered in the document.
>>>>
>>>>
>>>>     Thanks,
>>>>     Ari & Carsten
>>>>
>>>>     --
>>>>     Iotops mailing list
>>>>     Iotops@ietf.org  <mailto:Iotops@ietf.org>
>>>>     https://www.ietf.org/mailman/listinfo/iotops  <https://www.ietf.org/mailman/listinfo/iotops>
>     -- 
>
>     Wouter van der Beek
>
>     Principal Engineer
>     Cascoda Ltd
>
>     *Southampton Office:* 	*Taipei Office:*
>      Threefield House
>      Threefield Lane
>      Southampton
>      SO14 3LP
>      UK
>     	 Rm.918, 9F, No.96, Chia Hsin Bldg.
>      Sec.2, Zhongshan N.Rd.
>      Zhongshan Dist.
>      Taipei
>      Taiwan
>      Tel: +353 852448780 	
>
>     _<https://www.cascoda.com><https://twitter.com/cascoda><https://www.linkedin.com/company/cascoda-ltd/><https://www.youtube.com/channel/UCi9zbpSBLnWJ4Xf79NnES4Q>
>
>     *Registered Office:* 12-14 Carlton Place, Southampton SO15 2EA, UK
>     *Registered in England and Wales:* 6174299
>
>     *Confidentiality:* This e-mail transmission is strictly
>     confidential and intended solely for the addressee. It may contain
>     privileged and confidential information and if you are not the
>     intended recipient, you must not copy or distribute it. If you
>     have received this e-mail in error, please notify the sender and
>     delete the e-mail transmission immediately.
>     *Viruses:* Although we have taken steps to ensure that this e-mail
>     and attachments are free from any virus, we advise that in keeping
>     with good computing practice the recipient should ensure they are
>     actually virus free.
>     *Security Warning:* Please note that this e-mail has been created
>     in the knowledge that internet e-mail is not a 100% secure
>     communications medium. We advise that you understand this lack of
>     security and take any necessary measures when e-mailing us.
>
-- 

Wouter van der Beek

Principal Engineer
Cascoda Ltd

*Southampton Office:* 	*Taipei Office:*
  Threefield House
  Threefield Lane
  Southampton
  SO14 3LP
  UK
	 Rm.918, 9F, No.96, Chia Hsin Bldg.
  Sec.2, Zhongshan N.Rd.
  Zhongshan Dist.
  Taipei
  Taiwan
  Tel: +353 852448780 	

_<https://www.cascoda.com><https://twitter.com/cascoda><https://www.linkedin.com/company/cascoda-ltd/><https://www.youtube.com/channel/UCi9zbpSBLnWJ4Xf79NnES4Q>

*Registered Office:* 12-14 Carlton Place, Southampton SO15 2EA, UK
*Registered in England and Wales:* 6174299

*Confidentiality:* This e-mail transmission is strictly confidential and 
intended solely for the addressee. It may contain privileged and 
confidential information and if you are not the intended recipient, you 
must not copy or distribute it. If you have received this e-mail in 
error, please notify the sender and delete the e-mail transmission 
immediately.
*Viruses:* Although we have taken steps to ensure that this e-mail and 
attachments are free from any virus, we advise that in keeping with good 
computing practice the recipient should ensure they are actually virus free.
*Security Warning:* Please note that this e-mail has been created in the 
knowledge that internet e-mail is not a 100% secure communications 
medium. We advise that you understand this lack of security and take any 
necessary measures when e-mailing us.