Re: [Iotops] WG Adoption Call on draft-moran-iot-nets-02

Michael Sweet <msweet@msweet.org> Thu, 02 March 2023 15:49 UTC

Return-Path: <msweet@msweet.org>
X-Original-To: iotops@ietfa.amsl.com
Delivered-To: iotops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E8B6FC15DF4A; Thu, 2 Mar 2023 07:49:59 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.096
X-Spam-Level:
X-Spam-Status: No, score=-2.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=msweet.org
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EdQNW_luRWtU; Thu, 2 Mar 2023 07:49:56 -0800 (PST)
Received: from mail.msweet.org (mail.msweet.org [173.255.209.91]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 42DC2C15DF54; Thu, 2 Mar 2023 07:49:55 -0800 (PST)
Received: from smtpclient.apple (cbl-66-186-76-47.vianet.ca [66.186.76.47]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.msweet.org (Postfix) with ESMTPSA id AA14980438; Thu, 2 Mar 2023 15:49:54 +0000 (UTC)
DKIM-Filter: OpenDKIM Filter v2.11.0 mail.msweet.org AA14980438
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=msweet.org; s=default; t=1677772195; bh=JSwbl1AaJD55C792arYEFB0eMSX3/wxrlK+ZOqRAEp0=; h=Subject:From:In-Reply-To:Date:Cc:References:To:From; b=VHcpNHnGlTcRLjSyDSeDS9feTHp9Y9sxUuTS1nNiXTsdkHhldnBWzKNW0zkG0RVfu 1x4U22ZMhDySHjCSfwtJwxjgH754dtEzde/90NkXXV38LrNQgGJZEGNCBA0YWAMV+q sjEsMEpGI6nRbHCawR92BXtPfM0uCthKQojKo97M=
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3731.400.51.1.1\))
From: Michael Sweet <msweet@msweet.org>
In-Reply-To: <2b042daf-a7a4-84b4-bd9a-bb293849ca43@isode.com>
Date: Thu, 02 Mar 2023 10:49:43 -0500
Cc: iotops@ietf.org, "iotops-chairs@ietf.org" <iotops-chairs@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <B7823C75-ECBA-4A77-B159-1567634870E4@msweet.org>
References: <2b042daf-a7a4-84b4-bd9a-bb293849ca43@isode.com>
To: Alexey Melnikov <alexey.melnikov@isode.com>
X-Mailer: Apple Mail (2.3731.400.51.1.1)
Archived-At: <https://mailarchive.ietf.org/arch/msg/iotops/DnJLCXE0qIzeZRRrjaIVRGjvTYQ>
Subject: Re: [Iotops] WG Adoption Call on draft-moran-iot-nets-02
X-BeenThere: iotops@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IOT Operations <iotops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/iotops>, <mailto:iotops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/iotops/>
List-Post: <mailto:iotops@ietf.org>
List-Help: <mailto:iotops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/iotops>, <mailto:iotops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 02 Mar 2023 15:50:00 -0000

I support adoption, although I have concerns over reliance on immutable hardware/manufacturer roots of trust.  Manufacturers are notoriously bad at keeping secrets (private keys) safe, the typical hardware X.509 certificate rarely lasts the life of a device, and today's crypto probably won't be suitable in 10+ years.  Also, I'd like to see a discussion of privacy considerations (and am happy to contribute text), as immutable values need to be treated as PII...


> On Mar 2, 2023, at 7:34 AM, Alexey Melnikov <alexey.melnikov@isode.com> wrote:
> 
> Dear IOTOPS participants,
> 
> This message starts a 3 week call for Working Group Adoption of "A summary of security-enabling technologies for IoT devices" (draft-moran-iot-nets-02 <https://datatracker.ietf.org/doc/draft-moran-iot-nets/>)
> 
> ending on Thursday, March 23rd.
> 
> 
> Please reply to this email with your support (or lack thereof) and especially any substantive comments you may have. When including comments, please consider whether or not they need to be resolved before document adoption by the WG.
> 
> Alternatively you can email chairs directly at <iotops-chairs@ietf.org>.
> 
> 
> Best Regards,
> 
> Alexey,
> For the IOTOPS co-chairs,
> 
> -- 
> Iotops mailing list
> Iotops@ietf.org
> https://www.ietf.org/mailman/listinfo/iotops
> 

________________________
Michael Sweet