Re: [Iotops] Secure IoT Bootstrapping: A Survey

Mohit Sethi M <mohit.m.sethi@ericsson.com> Tue, 30 March 2021 20:54 UTC

Return-Path: <mohit.m.sethi@ericsson.com>
X-Original-To: iotops@ietfa.amsl.com
Delivered-To: iotops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9EF543A0CB0 for <iotops@ietfa.amsl.com>; Tue, 30 Mar 2021 13:54:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.103
X-Spam-Level:
X-Spam-Status: No, score=-2.103 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, NICE_REPLY_A=-0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ulhGo3rxGGNc for <iotops@ietfa.amsl.com>; Tue, 30 Mar 2021 13:54:05 -0700 (PDT)
Received: from EUR01-DB5-obe.outbound.protection.outlook.com (mail-eopbgr150049.outbound.protection.outlook.com [40.107.15.49]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D97363A0CB2 for <iotops@ietf.org>; Tue, 30 Mar 2021 13:54:04 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=GSKjnsGwU0I0ch9OxRxKDgNPW29s2aDCq+LdfslzeNzsinTRoroFCH+m/yYNCRHB0a34cFhWdwn4li2hDgR59deFWeto/Wk7q+3G81RR8oUvdGQRmvPD/24uE+BVszTetbSHTn6RG6x4ICA8XraVNf+FshI6104YnfoP9cX//dvh5TDywEW/rvaAhG6AXPtC4VHWtVL4PEJeRC0apelCl14XN/0uT8msCCRJMjbgps+Xh5RuUvBqwfL98KccdnWr6lfsTqazlAC8m/aA1NO9zrvAx28GPjAJFDT/52OomMn4EcZ3/48fTeOnYIAxzUyuVurMoaqg+KgxokbWPL7qJg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=6vrWAGN98MS1zqhm+8coeNjzIXayw8spSBes+mfmTaY=; b=kN8ka8Qmpi2vsVJnFnDrrDGAkjxKlsbCu7zsfsz0Y2vSw8oxywzZ166ciCUzJwjCXGiICwmoxyFYdQfZMpHcem+ucuo0o/YhCjtLhYofsSn6dQK/OwEixiRN9UNJt7bL/lCn0VJLyi8pgfYcDWfL3NqCjzQF4NqI+gIHVGa81b6Knt5GzEcH8cMIYeC+PkrIOxVYv1CgI5c/PcXKSYFKHeRdX6gUYgoU4jhQZTEH0WqB04x8pXNPdkPTH0eQG+N6cUaSoJ+cNFqhFHx/dMSZ9OD84RVrd1w5VLZx8A5xsz7HSLXbq7V4eJ9Ag0S48GcmHg+EYNIyfjQrRZstOnsWDA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=6vrWAGN98MS1zqhm+8coeNjzIXayw8spSBes+mfmTaY=; b=kOdYa2bo5XDDgNcm7Aivqsq85eWw1WTWaQRwCwbIxbmHwfSmcQWkCFZZF8YYliceJnUKC8IVKQrisHbbDQXMg1sQ8hBhGpAF/Qs/quR1JnHALt9yPpQNmzU4cRM1QXHZVmhtt7FL7/k2InewHgPqdkxe5T9swxw6OV/P3KWlR5A=
Received: from HE1PR07MB3436.eurprd07.prod.outlook.com (2603:10a6:7:37::31) by HE1PR0701MB2089.eurprd07.prod.outlook.com (2603:10a6:3:2a::20) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3999.16; Tue, 30 Mar 2021 20:54:01 +0000
Received: from HE1PR07MB3436.eurprd07.prod.outlook.com ([fe80::9028:916a:402e:aa6a]) by HE1PR07MB3436.eurprd07.prod.outlook.com ([fe80::9028:916a:402e:aa6a%6]) with mapi id 15.20.3999.025; Tue, 30 Mar 2021 20:54:01 +0000
From: Mohit Sethi M <mohit.m.sethi@ericsson.com>
To: Carsten Bormann <cabo@tzi.org>, Michael Richardson <mcr+ietf@sandelman.ca>
CC: "iotops@ietf.org" <iotops@ietf.org>, "t2trg@irtf.org" <T2TRG@irtf.org>
Thread-Topic: [Iotops] Secure IoT Bootstrapping: A Survey
Thread-Index: AQHXJabP98VJZE+IvkWJY+N8d8DjyQ==
Date: Tue, 30 Mar 2021 20:54:01 +0000
Message-ID: <08b7f4d5-03a6-3cd1-e36b-9e57932517d2@ericsson.com>
References: <HE1PR07MB322618CA30FA751216790E6285849@HE1PR07MB3226.eurprd07.prod.outlook.com> <55009522-4B31-4248-B07F-5905B8BFB8CF@cisco.com> <58405701-32CD-42E1-8E84-6BC6A875537E@tzi.org> <21967.1617129551@localhost> <53C7C8C0-1995-4FEB-98D5-3F3EF26F3527@tzi.org>
In-Reply-To: <53C7C8C0-1995-4FEB-98D5-3F3EF26F3527@tzi.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Mozilla/5.0 (X11; Linux x86_64; rv:68.0) Gecko/20100101 Thunderbird/68.10.0
authentication-results: tzi.org; dkim=none (message not signed) header.d=none;tzi.org; dmarc=none action=none header.from=ericsson.com;
x-originating-ip: [2001:14bb:170:164:b6af:f443:f174:3f46]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: c5664bfa-fd8e-4d1f-a55d-08d8f3bdf28e
x-ms-traffictypediagnostic: HE1PR0701MB2089:
x-microsoft-antispam-prvs: <HE1PR0701MB208951A877707142F804EA96D07D9@HE1PR0701MB2089.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:HE1PR07MB3436.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(396003)(376002)(136003)(346002)(39860400002)(366004)(6506007)(64756008)(6512007)(31686004)(66574015)(2616005)(8676002)(8936002)(38100700001)(86362001)(71200400001)(4326008)(83380400001)(66476007)(186003)(31696002)(5660300002)(54906003)(66946007)(36756003)(76116006)(110136005)(66556008)(2906002)(66446008)(316002)(6486002)(53546011)(478600001)(43740500002)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: xB4nYOjYc8CyTcL5o9v/zI7KPlkTxYfQOqQlsAfvNfnivpb3LNP0XcJYJoEcZEfOZi21XHex9imI4kAGsVhKcvdVjJgHdRA5pgJC7aECeozHfeDgqIDr65M4LGbRM7x46PoJbMtt/joZ74pjaEmIA+IgK3PUyWU70eYDrBIu3yz/cWSjk+uwpK3QH1mvkrM3B/cGBrvnCizuH2NXqXe7Xvv00fxEpmOftLunm8VsfUIu2TPbJynPnwd2u7kSUaiYu2N7e9e4xv+PnG5M9cV8Gs0Iseq7Ww9ybqTyszgLn9KdQ3xL0hvQa3xw9arhz5b7GSUEqWL7tp5UY//1CahC5X53aWt+CZg7IcpIjw29SS3Sf9L3vIbtffZ1izxAfhwJ3wGM2NG3QOJ/5CZjo3qzq3hFZcr+VX3hfH52S8vKzW1TdWHiUpLX8dxcbFMCm7XKWOSYNGvLuFaaf8rRN0PMTDEqgfZRRDl7pZSIqcgEqTlyZMh02x0Zvwx+Px1f3F7MulkZFyH7wd6yLIlX5uo4gY8ahyyVn94BXYHCWvCNlQVzBLHhB+hBebQJyrSvYAmJNeYuga4ctZSw+rtb69f8wZXkmvOmAxnGY9enok9m6Tl8ngiwUl9mZMZyZ2MvH/mnalPwcmyw6WhaygqzzwNx7QBHBQXBbyVVQZbmYSWe52CekHy+XqynR2G4A0O8/LY5umqi9sE4DIq78WDkA3oju7VqgEwUpDXsOsItil5ztAMtccvaNQRYZW6xdhmzBEnwt/n2t4NkZVnj8hNVRubrbou0iV9YctGDxp4GENWPdohNb/zPDkDaEPC2pjDedew340Qu5FcHzngj3Jq1aMTHRytkQAV9MQ2IKkwPV7GFJsdjJUFq3rvU56HzGpJ2nk//Kc5R1Acl8g1yQtfZpAP+Y8UwFztjIjEl2eI+JM8JXuSMjRI/2DdMIrqUEqfYaab9oJ5plb8EMROxZnfe4O/HHlMi4UyiOf2DsKxRS1zQiSF0FjX8QX39IPaoZhpKO5U4h2XhvpUqN/zKxbQzQB6jDWBflnVTSfcST65fLlmsDeasTjRbDbBJ0hURdc+qpLUEZoqsucccJ0E97BIujRitI0ApHyeP6Tgxj4N52TAPuDg2wu9LmktiIXNyn1Ibp1FsWVYr50JfjfR7j2oHEorENnx30sHnaQxWATgcwBp5w2j3aMJzqyCVkQ8W86I93RhCAahCqjxcwPXrbek95pWb9UUKVqKAhJSNlfYkQDny08BuzBdo6XDDZeWSPycYpeo/pvSs6GnBpd+c9DyQ5j7PcTV4K0/N3wnZxlJ5WYakcY2IyzlfkQ80WXy859D1UpCyPuMGfDFqTw+m4YxE5Zt8oS9dkbYf4JU4ia/X2El+YSM=
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <1B72DCD9A698D746B7C0A653096E2A97@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: HE1PR07MB3436.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: c5664bfa-fd8e-4d1f-a55d-08d8f3bdf28e
X-MS-Exchange-CrossTenant-originalarrivaltime: 30 Mar 2021 20:54:01.5978 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: +hO5l3tHPLgKP8EAo7R1wWByn7Xs3qwkUNpZ/UZVsQffGAQwJeU7umeAJWjq2Q7QuwXQ5IdA65eUWqhPJLCnaaU3onOpxB3G32XUOsrm0Jk=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0701MB2089
Archived-At: <https://mailarchive.ietf.org/arch/msg/iotops/iW1EYQKjofLjCrwiEAdSKNKpOIc>
Subject: Re: [Iotops] Secure IoT Bootstrapping: A Survey
X-BeenThere: iotops@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IOT Operations <iotops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/iotops>, <mailto:iotops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/iotops/>
List-Post: <mailto:iotops@ietf.org>
List-Help: <mailto:iotops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/iotops>, <mailto:iotops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 30 Mar 2021 20:54:11 -0000

Dear Carsten, Michael,

On 3/30/21 11:11 PM, Carsten Bormann wrote:
> On 30. Mar 2021, at 20:39, Michael Richardson <mcr+ietf@sandelman.ca> wrote:
>>
>> Carsten Bormann <cabo@tzi.org> wrote:
>>>> Very well timed.  I look forward to discussing this.
>>> Thanks!
>>> Now would be a good time to get some initial feedback — we plan to
>>> adopt it as an RG document on April 6th.
>> I wonder if having it adopted in IOTOPS might make more sense.
> Certainly — addressing that might be part of that feedback.
> It appears to me that the document would be covered by its charter, even if "Taking input and discussing issues” is not that well-defined an activity.
> It is not clear to me whether working on this in the WG would give the document a new spin, beyond its current approach as a survey, and whether that would actually be a welcome change to the authors and consumers of that document.
> Input from WG members and leadership could help understand this.

Speaking for myself: I feel that such a survey document is better-suited 
for a research group (RG) rather than a working group (WG). It would be 
in line with the previous security document from T2TRG: "Internet of 
Things (IoT) Security: State of the Art and Challenges" 
(https://tools.ietf.org/html/rfc8576). I am not fundamentally opposed to 
pursuing this in IoTops but I feel that perhaps an evolution of this 
document (Carsten writes about a new spin) in the near future would be 
more suitable for IoTops. I am of course interested in contributing to 
that potential future document as well.

--Mohit

>
> Grüße, Carsten
>