Re: [Iotops] [T2TRG] Secure IoT Bootstrapping: A Survey

Mohit Sethi M <mohit.m.sethi@ericsson.com> Tue, 30 March 2021 19:51 UTC

Return-Path: <mohit.m.sethi@ericsson.com>
X-Original-To: iotops@ietfa.amsl.com
Delivered-To: iotops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 74D853A200B for <iotops@ietfa.amsl.com>; Tue, 30 Mar 2021 12:51:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.101
X-Spam-Level:
X-Spam-Status: No, score=-2.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, NICE_REPLY_A=-0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GTPTeF-OTTkD for <iotops@ietfa.amsl.com>; Tue, 30 Mar 2021 12:51:43 -0700 (PDT)
Received: from EUR02-AM5-obe.outbound.protection.outlook.com (mail-eopbgr00067.outbound.protection.outlook.com [40.107.0.67]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 95A9B3A2004 for <iotops@ietf.org>; Tue, 30 Mar 2021 12:51:42 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=EtkACK63B+Gz8gL/HgDIxUWqoEpjsYDSaAEvRw0RzV10F+rCvea/6HpWamLdPK6s85GPNufeRoIOivwhNEmQ7FtCaivd6DPwMTUmYOkKNxBwRos4nPgCPsjafpSEZ7lhf/xXG6O5hKixXtW98BxufM5almMtlisC50WIdiGktofKF83vvjpvYT5i4582NOqjALgcaaaVomUdyZas5zz3L2ukmqvQBSpOYFSSoVs9QKCTsGeijkd1IJHDt6aIJfdr1MQVcCBKKAZ/oQ4R7yg+0Ly0DM4ho0OtOuQ/+AM1mTRtX36UzXLj2EUrK2pZft6V8dnt0auXQ4PDVnFW+c801w==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=2zbkn8Oq3RLW3xO/3EvctSMarYocO2riEQ0ICV2e6Cg=; b=XjEShGBCkZwg7/gGXSVcKYkYo95X9/Mnk4XTPvJij8QLYmtbrFawZdsNVlcTBuyFqZhL72kmpE57vebC5lsy78RqevGYkDs+l2OEdEIy5SceThBS81k1ZoM4jqDfjHtpYKNVTSRD1RWEdOS65PivHLXkeOjy8RsMbkSHm1mpAt/WaZJQw4NW8a3wnP8phi1WVZVU5DvhuNEs1ADnQ3As7kc9yzCkawCCpz5/r9JqazKgu/uAS+BeNfcYcKPgOX2AjAGEY9PHx6SVpxq7YF8AQ9NES3FBUbxg6cEOyhn4U1yHQUYnn6thRN9el+FPxfbmwmOz0yjWioaqjdzgIGaC8A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=2zbkn8Oq3RLW3xO/3EvctSMarYocO2riEQ0ICV2e6Cg=; b=ssUiO6PWydN+AeUalsA12MOXK6mVfmxkObWlI3OQMZb8Xb1Qy9Tl/Iw+IhBEYwhBfFplXrNU0XwKImOqXaX+m5hxnda9hiU7HWKLUsHBo1za7fUkpxA3zuPDeNAn8eKjgaB0gHetxQ7lIGpCZKci25/qCUC+sTwTRU0y0wEYCOU=
Received: from HE1PR07MB3436.eurprd07.prod.outlook.com (2603:10a6:7:37::31) by HE1PR07MB4281.eurprd07.prod.outlook.com (2603:10a6:7:95::24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3999.19; Tue, 30 Mar 2021 19:51:39 +0000
Received: from HE1PR07MB3436.eurprd07.prod.outlook.com ([fe80::9028:916a:402e:aa6a]) by HE1PR07MB3436.eurprd07.prod.outlook.com ([fe80::9028:916a:402e:aa6a%6]) with mapi id 15.20.3999.025; Tue, 30 Mar 2021 19:51:39 +0000
From: Mohit Sethi M <mohit.m.sethi@ericsson.com>
To: Wouter van der Beek <w.vanderbeek@cascoda.com>, "sarikaya@ieee.org" <sarikaya@ieee.org>
CC: "iotops@ietf.org" <iotops@ietf.org>, "t2trg@irtf.org" <t2TRG@irtf.org>, Ari Keränen <ari.keranen=40ericsson.com@dmarc.ietf.org>, Carsten Bormann <cabo@tzi.org>
Thread-Topic: [T2TRG] [Iotops] Secure IoT Bootstrapping: A Survey
Thread-Index: AQHXJZ4Yr2qv4wbihU+oNqT/I6eSBg==
Date: Tue, 30 Mar 2021 19:51:39 +0000
Message-ID: <99f6b2c1-15be-687e-f168-a515633092b7@ericsson.com>
References: <HE1PR07MB322618CA30FA751216790E6285849@HE1PR07MB3226.eurprd07.prod.outlook.com> <55009522-4B31-4248-B07F-5905B8BFB8CF@cisco.com> <58405701-32CD-42E1-8E84-6BC6A875537E@tzi.org> <7a8814c0-f6c0-8206-42af-8f23ec18c995@cascoda.com> <CAC8QAcdd9qm-ZhcLrHkP3VJjEz8R_a5hAP9MQTeoarkizHtAsA@mail.gmail.com> <a06e71e9-bc4d-ae3a-234b-043fc449a324@cascoda.com>
In-Reply-To: <a06e71e9-bc4d-ae3a-234b-043fc449a324@cascoda.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Thunderbird/68.10.0
authentication-results: cascoda.com; dkim=none (message not signed) header.d=none;cascoda.com; dmarc=none action=none header.from=ericsson.com;
x-originating-ip: [2001:14bb:170:164:b6af:f443:f174:3f46]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 666d77e4-09fa-410b-062f-08d8f3b53be6
x-ms-traffictypediagnostic: HE1PR07MB4281:
x-microsoft-antispam-prvs: <HE1PR07MB4281B4098EF94DEB5744C158D07D9@HE1PR07MB4281.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:HE1PR07MB3436.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(39860400002)(396003)(136003)(366004)(346002)(376002)(66574015)(66446008)(83380400001)(31696002)(316002)(64756008)(31686004)(6486002)(76116006)(166002)(66476007)(8936002)(21615005)(6512007)(478600001)(36756003)(5660300002)(2616005)(2906002)(53546011)(6506007)(86362001)(8676002)(966005)(110136005)(4326008)(66946007)(71200400001)(54906003)(186003)(66556008)(38100700001)(15398625002)(43740500002)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: JFQrZ+sDMZBDboflr0ATDrZ3o8Bg/qGhmXjcrHRg3wfYDuJ8PnPX5KtOPUf8uhMTszTEh8YOpOrfbA0HqpwHPCoksQhH76YGbPu9GRgoBHjmE2jjBFQsqnHw8VfdgYj+/ILpuJTtb90OW31jfcjtvH5cbV514CKv7j6dPc6IlNuE5dcBtpAcMl3G79xWzLE+K1RfR9Xh4zz5fZbB+e/IHYuogdpYPN1xKCtfpHlfebfrR8h15k4++LLPf7zj41pEmSZau/F+7+MJadk4gfzdZAyiOcXqFEaqgMfUg/7Zo5kkfogpRr5luGCezZfmlTnyohviedWFA4EsyztND9Rpbgs8cgFWZpLNzSHQu4TfVqzAd84L3FZg1BihbfC030Up+31RzY0CcH47DPcy3BO7s58FjPObdgwHbSrnNeux3LE/F7Cxd1WUe1GZEUHYE0jOaOJheUR9XiIxsK234auliGaowTrHq2yxx4OPOpEsfciAqZ8zWEVr1n+S0XDpUgEgVH8EDaFX6J/9H5dgoq1CwdafcGMIqFWaHe0n83krnTuaARmA42rvZx+19D/qidEMbOdwQVQLcFOXN02QKi1zUy15wEDFWe11rCufeeZVPpxZa/NmZ1wom4P4DpAvF6hutQsWk1AbOwGpe/slyTSk/HZoOkKV+62FSrF0p/rdfxdLi1tBciAikd5r0pdIIf5Ywp4Jvd8k6kLz2OY0eaLbE5NdzDvtUi4BvPs9EcjYI/FJ3eJSm3OK7+S62k2Jf4FwV00ldTma+/y32KIiVdfYRQHUuegFcOwqOq+64qGrsvzw4GNcWy5CPssfQVthGTiy6E+ekRq5EPypOmE0Bkz4imtv0sMdphXR/DYD7XYnoYNW8vVv1Pi4AukaZXl3WWiS/YP9tndUtHhiuM1ySKrT1v1SqGk5VpoMW/b+dd9l08W0BvKkp0NiuGKNYKBc8EuanZOrB4ROekuB/hfSqurU2FXfWkuM9LDjTUR4ZUu1Ua5PKqaHvNpb+e1abFlRdUztDX4UO2U/CRE9smq3B7y9qYOdzBE0OYBJINyzh73Ej7LqkNPcCvCaHDNVD2CDGWPUVuU+trxtL8VOdlZtOQUZF0fu/Kw5bPkTsop1Ai0+G5IJQLLcKl4P4/VBWuNI7XPM8sSUkVZ+Jze5ZV7xVysdrr/wkYS0xb6l8C2nIS1X41y4CO/1aGhN5F7F3Co1BxcT55T3oKeMuwVsPULzyW/lf37VFHOpqRArPWmGfp+Yw0Ea47tE84ZazvuxhRa28znANqRpgbKGh62A2kusI9nIHjWf1ClJLbPEi+0mXe49hrpOvdmU++orkZ9Oze/AU5n1+XJWnjHRNYHJwpIPpYD4utDHvuwTt0cKjIEvjLnO/PM=
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_99f6b2c115be687ef168a515633092b7ericssoncom_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: HE1PR07MB3436.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 666d77e4-09fa-410b-062f-08d8f3b53be6
X-MS-Exchange-CrossTenant-originalarrivaltime: 30 Mar 2021 19:51:39.1106 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: F5sR8yeVVE6Ec63suPHUBn5J70xIt0A3dBNS61dycwXSmfSv6W6NGGLBBbQw1hHm0KkVDQ5Mf/zLO2am3zLzz7pVw1qplI67bN2TQzVf5N8=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR07MB4281
Archived-At: <https://mailarchive.ietf.org/arch/msg/iotops/JgmVDi0Tcjgx8VhfExvZdEn9-RE>
Subject: Re: [Iotops] [T2TRG] Secure IoT Bootstrapping: A Survey
X-BeenThere: iotops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IOT Operations <iotops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/iotops>, <mailto:iotops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/iotops/>
List-Post: <mailto:iotops@ietf.org>
List-Help: <mailto:iotops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/iotops>, <mailto:iotops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 30 Mar 2021 19:51:49 -0000

Hi Wouter,

Thank you for the feedback. We will update the reference and the corresponding text for OCF in the next version of the draft.

There are many specifications out there and it may not be possible to cover all of them in a single document. However, I think your pointer to the Fairhair specification is very relevant because of its use of ANIMA and we will add it in the next version of the draft.

Based on your feedback, I have opened 2 issues on the github repository for this draft: https://github.com/t2trg/sbootstrapping/issues.

Perhaps you already know this but I would like to highlight that the research group is currently considering if this draft should be adopted. Adoption does not mean publication. Drafts normally undergo many revisions and reviews before considering publication as an RFC.

--Mohit

On 3/30/21 6:21 PM, Wouter van der Beek wrote:

Frankly, as author I would have reached out to OCF.

I never saw a request in OCF for a review of this text.

for starters current version of specs of OCF is v2.2.2 version 1.0 is a long long time ago.

one can also reference the ISO/IEC version (https://www.iso.org/standard/74239.html ) that is also way better than the v1.0.0 version referenced.


Also the Fairhair spec is not listed in this draft RFC. This document is regarded in the building industry as a guiding document.

https://openconnectivity.org/wp-content/uploads/2019/11/fairhair-specification-version-10_approved_april-2019.pdf

Kind Regard,

Wouter


On 30/03/2021 16:12, Behcet Sarikaya wrote:


On Tue, Mar 30, 2021 at 6:29 AM Wouter van der Beek <w.vanderbeek@cascoda.com<mailto:w.vanderbeek@cascoda.com>> wrote:

Hi All,

who wrote the OCF section?

It was introduced in Rev. 08.
I think Mohit wrote it.
Why did you ask?

Behcet

Kind Regards,

Wouter

On 30/03/2021 12:13, Carsten Bormann wrote:

On 2021-02-19, at 16:38, Eliot Lear <lear@cisco.com><mailto:lear@cisco.com> wrote:


Very well timed.  I look forward to discussing this.


Thanks!

Now would be a good time to get some initial feedback — we plan to adopt it as an RG document on April 6th.

Grüße, Carsten



Eliot



On 19 Feb 2021, at 16:24, Ari Keränen <ari.keranen=40ericsson.com@dmarc.ietf.org><mailto:ari.keranen=40ericsson.com@dmarc.ietf.org> wrote:

Hi IoTOPS folks,

At T2TRG the "Secure IoT Bootstrapping: A Survey" draft has been updated:
https://datatracker.ietf.org/doc/draft-sarikaya-t2trg-sbootstrapping/

The draft has been discussed and developed quite some time in the T2TRG and we chairs think it's now getting close to ready for adoption. We would like to hear views on this from the IoT operational community. In particular we'd like to hear if the technologies considered important for security setup and bootstrapping by this group are covered in the document.


Thanks,
Ari & Carsten

--
Iotops mailing list
Iotops@ietf.org<mailto:Iotops@ietf.org>
https://www.ietf.org/mailman/listinfo/iotops


--

Wouter van der Beek

Principal Engineer
Cascoda Ltd

Southampton Office:     Taipei Office:
 Threefield House
 Threefield Lane
 Southampton
 SO14 3LP
 UK
 Rm.918, 9F, No.96, Chia Hsin Bldg.
 Sec.2, Zhongshan N.Rd.
 Zhongshan Dist.
 Taipei
 Taiwan
 Tel: +353 852448780

[https://www.cascoda.com/wp-content/uploads/2019/03/wordpress_32x32.png]<https://www.cascoda.com>[https://www.cascoda.com/wp-content/uploads/2019/03/twitter_32x32.png]<https://twitter.com/cascoda>[https://www.cascoda.com/wp-content/uploads/2019/03/linkedin_32x32.png]<https://www.linkedin.com/company/cascoda-ltd/>[https://www.cascoda.com/wp-content/uploads/2019/03/youtube_32x32.png]<https://www.youtube.com/channel/UCi9zbpSBLnWJ4Xf79NnES4Q>

Registered Office: 12-14 Carlton Place, Southampton SO15 2EA, UK
Registered in England and Wales: 6174299

Confidentiality: This e-mail transmission is strictly confidential and intended solely for the addressee. It may contain privileged and confidential information and if you are not the intended recipient, you must not copy or distribute it. If you have received this e-mail in error, please notify the sender and delete the e-mail transmission immediately.
Viruses: Although we have taken steps to ensure that this e-mail and attachments are free from any virus, we advise that in keeping with good computing practice the recipient should ensure they are actually virus free.
Security Warning: Please note that this e-mail has been created in the knowledge that internet e-mail is not a 100% secure communications medium. We advise that you understand this lack of security and take any necessary measures when e-mailing us.

--

Wouter van der Beek

Principal Engineer
Cascoda Ltd

Southampton Office:     Taipei Office:
 Threefield House
 Threefield Lane
 Southampton
 SO14 3LP
 UK
 Rm.918, 9F, No.96, Chia Hsin Bldg.
 Sec.2, Zhongshan N.Rd.
 Zhongshan Dist.
 Taipei
 Taiwan
 Tel: +353 852448780

[https://www.cascoda.com/wp-content/uploads/2019/03/wordpress_32x32.png]<https://www.cascoda.com>[https://www.cascoda.com/wp-content/uploads/2019/03/twitter_32x32.png]<https://twitter.com/cascoda>[https://www.cascoda.com/wp-content/uploads/2019/03/linkedin_32x32.png]<https://www.linkedin.com/company/cascoda-ltd/>[https://www.cascoda.com/wp-content/uploads/2019/03/youtube_32x32.png]<https://www.youtube.com/channel/UCi9zbpSBLnWJ4Xf79NnES4Q>

Registered Office: 12-14 Carlton Place, Southampton SO15 2EA, UK
Registered in England and Wales: 6174299

Confidentiality: This e-mail transmission is strictly confidential and intended solely for the addressee. It may contain privileged and confidential information and if you are not the intended recipient, you must not copy or distribute it. If you have received this e-mail in error, please notify the sender and delete the e-mail transmission immediately.
Viruses: Although we have taken steps to ensure that this e-mail and attachments are free from any virus, we advise that in keeping with good computing practice the recipient should ensure they are actually virus free.
Security Warning: Please note that this e-mail has been created in the knowledge that internet e-mail is not a 100% secure communications medium. We advise that you understand this lack of security and take any necessary measures when e-mailing us.



_______________________________________________
T2TRG mailing list
T2TRG@irtf.org<mailto:T2TRG@irtf.org>
https://www.irtf.org/mailman/listinfo/t2trg