Re: [Iotops] OFFLIST Review of draft-hsothers-iotsens-ps-02

Dirk.von-Hugo@telekom.de Sun, 06 November 2022 21:08 UTC

Return-Path: <Dirk.von-Hugo@telekom.de>
X-Original-To: iotops@ietfa.amsl.com
Delivered-To: iotops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 90A95C14F749 for <iotops@ietfa.amsl.com>; Sun, 6 Nov 2022 13:08:02 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.677
X-Spam-Level:
X-Spam-Status: No, score=-7.677 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.571, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=telekom.de
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id OnEAccoWRiUs for <iotops@ietfa.amsl.com>; Sun, 6 Nov 2022 13:07:58 -0800 (PST)
Received: from mailout41.telekom.de (mailout41.telekom.de [194.25.225.151]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7B7A2C14EB1C for <iotops@ietf.org>; Sun, 6 Nov 2022 13:07:55 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=telekom.de; i=@telekom.de; q=dns/txt; s=dtag1; t=1667768878; x=1699304878; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-transfer-encoding:mime-version; bh=gnvGJR7Kn0xT/c3Cg7wPop02JJVLGAyHZPfpBB+dCYc=; b=JEM06ApNmog5Tt5EWCuSCfHuOpGri4kK1vYDiKKPmT5ZUMHrbr90rIVm MJ3VdBj2vu9UDC3wyZtd3JrmANUArM+AfBuFmrHgD7otKhH9kX6vW5tkb 9CdFkRhL+WLvZsyc7pESQ7gEy6QEuX5eutugpFwZDfbiV0jVznTeqYI1n 31rVUTo12EzHv6FgOh+g2H3NuCXUeREV5oDpXuUSWwpoSciqFfoRLjRoR zrGmBq+R9pCcMu5KDHB3KR3qQMHUTg0Vuc+DGh25HxkNpqlERUy2oO7b6 z7d/Xq6foZwQnd9jm7MhRieuK2/nGRmeHUYtnl+VtUWoEf1CmT6fggFkX A==;
Received: from qdec94.de.t-internal.com ([10.171.255.41]) by mailout41.dmznet.de.t-internal.com with ESMTP/TLS/ECDHE-RSA-AES128-GCM-SHA256; 06 Nov 2022 22:07:54 +0100
IronPort-SDR: waVPADh9vi9O1mnP1MxiO/D6xmbdsBdcP08LgbXOZjJQBg/YnyzNv+HIaJli2VyhFYyhACFJam D76niwo3gTmJeFuoA/SaViBikD6vYUhFA=
X-IronPort-AV: E=Sophos;i="5.96,142,1665439200"; d="scan'208";a="635605782"
X-MGA-submission: MDHikd9U7bAcoum511Pt8U/dSWfiXQ01PDMlDJvv1X3TTtkCrq0kMpNUKM46qgBHvR4epHVNuaVnQfZskb/BOizACQXPf5PAk0a4LGQlqXHti47SfgMYxINdX6X+sZziTewHY3Xu6quy7rGXxjMg0FCLRr3Vw0i47n08hAJhJ9KC+Q==
Received: from he105717.emea1.cds.t-internal.com ([10.169.118.53]) by QDEC97.de.t-internal.com with ESMTP/TLS/ECDHE-RSA-AES128-SHA256; 06 Nov 2022 22:07:54 +0100
Received: from HE105717.EMEA1.cds.t-internal.com (10.169.118.53) by HE105717.emea1.cds.t-internal.com (10.169.118.53) with Microsoft SMTP Server (TLS) id 15.0.1497.42; Sun, 6 Nov 2022 22:07:53 +0100
Received: from HE106564.emea1.cds.t-internal.com (10.171.40.16) by HE105717.EMEA1.cds.t-internal.com (10.169.118.53) with Microsoft SMTP Server (TLS) id 15.0.1497.42 via Frontend Transport; Sun, 6 Nov 2022 22:07:53 +0100
Received: from DEU01-BE0-obe.outbound.protection.outlook.com (104.47.7.174) by O365mail01.telekom.de (172.30.0.234) with Microsoft SMTP Server (TLS) id 15.0.1497.36; Sun, 6 Nov 2022 22:07:53 +0100
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=bcEmed0M1pbyH977CByx38ODXaT709nqinJZVqUsUtkKCq/d890vRycB1T1ZaS8nFy3wdn6w1KHuZ9XQmYIb+1yoDecuCsROS1/7/oElpo/dtUMldQ6u7lFBweryGZAzF2/FuIq0mj+0gmZa6Ky7+l1eDp3qZ/NWyg6371eRJHSVvS1sIPdwZI1qS9X2KlfoSzTZb7Zww83dM7WBsBcvRGellid5ZC9EpmMwPBQtc+TQW8xNDY98Mf9igZ096vnVWOAfIHXaqicR87CF5SpKziNOMPnX7w7LNgomFSBvzQmk5KW4ifAHIh4MILCKrlD2NIovqJl9ZD69QalefKx7ig==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=gnvGJR7Kn0xT/c3Cg7wPop02JJVLGAyHZPfpBB+dCYc=; b=cVxEUIiiWyOMIFglrPxJZX1RqW31QxcPdLiSI2lnORbsa7VhH4jiTjU1MFkvELTM3Yh5znZLLEP5PyhEgvHopcmOlWB7QAVBr2yvKUfzcN6iKG/QzheqXPon6Ns9ea7xUClBXjmlmOV0UcroHH9PY0pEMYfCL8kAY7jD51uY9bNZPuajU/tAUnOY2DNMXD5WxlbuFuaoXTIENA8pecWbxsnsnvJhT8jLMxhjWiBkgBzEWxy6tVtg8Ri+9cpwwInhzKXeSIsU/r+6Pd/v7aRNHvCeRoODifwikgRhBNAsaIaz+vTDoljZMUBzzvqDXWfAASBzIo0b/9gayH2idvQ0fw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=telekom.de; dmarc=pass action=none header.from=telekom.de; dkim=pass header.d=telekom.de; arc=none
Received: from BE1P281MB2854.DEUP281.PROD.OUTLOOK.COM (2603:10a6:b10:4e::11) by BE1P281MB1539.DEUP281.PROD.OUTLOOK.COM (2603:10a6:b10:17::5) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5791.26; Sun, 6 Nov 2022 21:07:52 +0000
Received: from BE1P281MB2854.DEUP281.PROD.OUTLOOK.COM ([fe80::94e5:3bc3:3ca8:2c84]) by BE1P281MB2854.DEUP281.PROD.OUTLOOK.COM ([fe80::94e5:3bc3:3ca8:2c84%4]) with mapi id 15.20.5791.025; Sun, 6 Nov 2022 21:07:52 +0000
From: Dirk.von-Hugo@telekom.de
To: rieckers@dfn.de, iotops@ietf.org
CC: sarikaya2012@gmail.com, dirk.von-hugo@magenta.de
Thread-Topic: [Iotops] OFFLIST Review of draft-hsothers-iotsens-ps-02
Thread-Index: AQHY3xcbcvH2aKsTiEG6b4GPVpfb8a4OfKUAgASuPwCAALfMEIAAiBrAgAFYm4CAHMVWEA==
Date: Sun, 06 Nov 2022 21:07:52 +0000
Message-ID: <BE1P281MB285446263BF02E966C777C76D13D9@BE1P281MB2854.DEUP281.PROD.OUTLOOK.COM>
References: <00c17a24-c856-e6ef-c268-b76d2dcb836f@dfn.de> <BE1P281MB2854CF516D579AE5BE619B42D1259@BE1P281MB2854.DEUP281.PROD.OUTLOOK.COM> <CAC8QAcdU6CWbOYKtKYs5PZOz5SzHeD-mpTaHE36YnnS4XsHTng@mail.gmail.com> <BE1P281MB285488CEC17055A710739A80D1249@BE1P281MB2854.DEUP281.PROD.OUTLOOK.COM> <CAC8QAcd+zOtW6YBr_97zq2SDCSiNga44keyBpsL_hc4SfeyE9g@mail.gmail.com> <BE1P281MB28545E3CA9E8FB34727DA2A8D1289@BE1P281MB2854.DEUP281.PROD.OUTLOOK.COM> <FR2P281MB2858F9C0AEED485D098A0C09D1289@FR2P281MB2858.DEUP281.PROD.OUTLOOK.COM> <19bce1b5-9315-ee8e-7931-78773fc0a946@dfn.de>
In-Reply-To: <19bce1b5-9315-ee8e-7931-78773fc0a946@dfn.de>
Accept-Language: de-DE, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=telekom.de;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: BE1P281MB2854:EE_|BE1P281MB1539:EE_
x-ms-office365-filtering-correlation-id: 02aba76f-1ffd-4724-a116-08dac03af7a3
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BE1P281MB2854.DEUP281.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230022)(4636009)(366004)(396003)(39860400002)(376002)(346002)(136003)(451199015)(2906002)(478600001)(33656002)(9686003)(26005)(53546011)(6506007)(966005)(7696005)(41300700001)(8936002)(38100700002)(316002)(38070700005)(110136005)(54906003)(8676002)(4326008)(66946007)(66556008)(66476007)(66446008)(122000001)(82960400001)(76116006)(64756008)(15974865002)(71200400001)(86362001)(52536014)(55016003)(5660300002)(83380400001)(66574015)(186003); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: ry4Pe8czQJwogB9yPfBxy+X7tZb2iRe1h3GhaBbhLpoI+wXXbJ0JzWY5U117+Dn+xH0xs9Y9eBAxHqCX/0k1An9CrkVil86Jt1s90myhQVM7yGnn6PRklYmrd5Z0rtMErMJvxUz35a6/cHd6EDQeN0MatfcGOmXd5b1as4SEdxuROZ7BJTDrBeCGy0ybw9csh4CqUV5YX9abUn1SjvqXrykpkXRn2RFOsdgRDd8IeOPExqvhLIGVhOFP8jXNE3nLdbrzSG5jlfdUv1AHbAFlhVnKo+IELir4CtFmMEAeZXFsTPSD/2URWQ9EDzhrHB3vJyAzpYsZo2huRjZYciOK/J0vQVkJp3k1kNbs530sc5Tlf2dNM9W/UmqqGqSZnIGmtn9IhqRMTflXg3b3MoLA0bjEX0PjKGUfeutNwiHoz0G56ldSUzVzXb0zhsJAR/i5k0AQjHlNkmxIX/6sODz35XKm4hd/jC62UtpNk6CtDGyGALsOwv1BSc6m1Ks9ty0lKf3CCLigi/SZbmRhArH0v41yjhjnjFuCjJ9JU2dj1CpFWwWJuvYgObozYMCsmJQGW5QuZteHR/9XPTMd6trUHZyCQ0ZHNDcaTo8knr5XwaGTqccQdl7tbv8Zy5Yk56N/EDHDoEg9637WZ/GvVoZsFlzdNTvKbXui4D//5CpqQAsdDZSZYjpZiYmSgFCl6W34gYOUZRoWFSfO8wEdor+Ot9WbtAA6lz4izg8k1BYZUfj+KqyrMTO0pkcGFJ7KYHqd7Y+K/oUYVsNEpnXFgCHJt2oyuElzm9v+WGS3PebP+bJlYtKMGyYfnia9E0O+NVQvRRPczy6Ddzr4ybup0YZ+mf1YJkpylJM+6M/t1YbK8pbTJqsYQ2l57OrlfYM+9LsGin6p+pMWc3YJxiHAL/SNrsdCPBgpgsymBvp/0x8U8hm3E3OjBue/Vvv48GkBw+8ghgWyHyingOJ0NV/+ozC2wXg0ICvlDUn+hwSAG+HmVAAhSEZ4IYyYay1CabjxDR7VzEDYLIkvYPiPk+e3nZIbJ9r58Htlk/irIye8z2lyTS4cxnONFHjJ47qxBm8O5KAZPLZB0yYTZSda3WJpNFJkRegcPZK08qZy+jfhFyQoBL8q7SSyamAZitJ0iW+2gQ9Luk3gKwWHbveCSJM/uf8HS45dWwrkSwa2OzgMFgcOGDzUrmcUqjSlYLsRd5xnX+Yu6wHra6A9TedjKniTHhAZG1Wk1fcOwXKLFLVO9PcXKgpPt+rBSWeF+YEwup3TxA4cq32y7RYvFGHtqLQzEVqqKETO76JwwBl/47QjYvjx/gF787QGEZqSaU0Kn3CMZyJS1lgzGk3ThrJZwTgbOmDXCltw6vOVX8sKOkWsMwOZAZfyDj/hTPtENF/Ga8jq7tCAhWZxRr6xVvJt1gAq3RGeu2Oxzeu6NLoo6sGYtUGeLSCbhSCoYGfmMyZl8Y5IbTa2iimREoqij+o6qunFMLRJKZ2s8/WKGPtmsSMDPxR4US2wnDQ+Kqo0Ube6AsG8bmpv7e9lPqmYj2RwmGi1/BCMrZ3/MtdAgONYU7UmaETGe2unzXlBaoRrW7ht5PjNteoy
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BE1P281MB2854.DEUP281.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 02aba76f-1ffd-4724-a116-08dac03af7a3
X-MS-Exchange-CrossTenant-originalarrivaltime: 06 Nov 2022 21:07:52.1053 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bde4dffc-4b60-4cf6-8b04-a5eeb25f5c4f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: hrQLMVXEx6jdokPDQmT3t2M6XQ7FqvZwG5SrwM8iz/E3y7dKeCBhBCxpkIsQ9bQzX+kBa57BIkMLTsKt4XEZXdEE6i/n8Z+OjCjtu+n+iuM=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BE1P281MB1539
X-OriginatorOrg: telekom.de
Archived-At: <https://mailarchive.ietf.org/arch/msg/iotops/tebbhlmpDY6QYZ9YwF1CfL9pfco>
Subject: Re: [Iotops] OFFLIST Review of draft-hsothers-iotsens-ps-02
X-BeenThere: iotops@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IOT Operations <iotops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/iotops>, <mailto:iotops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/iotops/>
List-Post: <mailto:iotops@ietf.org>
List-Help: <mailto:iotops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/iotops>, <mailto:iotops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 06 Nov 2022 21:08:02 -0000

Hi Janfred,
thanks for the review again.
We meanwhile have submitted a new version as quoted below which hopefully addresses your comments.
Thanks again and 
Viele Grüße/Best regards
Dirk

A new version of I-D, draft-hsothers-iotsens-ps-03.txt has been successfully submitted by Dirk von Hugo and posted to the IETF repository.

Name:		draft-hsothers-iotsens-ps
Revision:	03
Title:		The Need for New Authentication Methods for Internet of Things
Document date:	2022-11-04
Group:		Individual Submission
Pages:		11
URL:            https://www.ietf.org/archive/id/draft-hsothers-iotsens-ps-03.txt
Status:         https://datatracker.ietf.org/doc/draft-hsothers-iotsens-ps/
Htmlized:       https://datatracker.ietf.org/doc/html/draft-hsothers-iotsens-ps
Diff:           https://www.ietf.org/rfcdiff?url2=draft-hsothers-iotsens-ps-03

Abstract:
   In framework of future 6G the need for easy and secure connectivity
   between a great amount of small devices as sensors and household
   appliances will be essential.  Such massive Internet of Things (mIoT)
   requires authentication methods which are reliable also in case of
   vulnerable wireless links and work for simple cheap (dumb) devices.

   Aim of this document is to lay ground for the need for new
   authentication models and admission methods in the framework of
   devices (e.g., machines in IoT communication) within a (wireless or
   wireline-based) network.

   Simple devices may only have a minimum amount of physical interfaces
   available.  As an example for establishing an out-of-band channel for
   exchange of authentication material radio sensing technology may
   serve.  This is currently under investigation for Wireless LAN and
   upcoming cellular radio at both IEEE and 3GPP.



-----Original Message-----
From: Iotops <iotops-bounces@ietf.org> On Behalf Of Jan-Frederik Rieckers
Sent: Mittwoch, 19. Oktober 2022 15:44
To: iotops@ietf.org
Subject: Re: [Iotops] OFFLIST Review of draft-hsothers-iotsens-ps-02

Hi Dirk, hi all,

see inline.

Greetings
Janfred


On 18.10.22 19:15, Dirk.von-Hugo@telekom.de wrote:
>         DH> we will reword the abstract accordingly, e.g. new proposal:
> 
>         In framework of future 6G the need for easy and secure
>         connectivity between a great amount of small devices as sensors
>         and household appliances will be essential.  Such massive
>         Internet of Things (mIoT) requires authentication methods which
>         are reliable also in case of vulnerable wireless links and work
>         for simple cheap (dumb) devices.
> 
>         Aim of this document is to lay ground for the need for new
>         authentication models and admission methods in the framework of
>         devices (e.g., machines in IoT communication) within a (wireless
>         or wireline-based) network.
> 
>         An example for establishing an out-of-band channel for exchange
>         of authentication material may be radio sensing currently under
>         investigation at Wireless LAN/6G (IEEE/3GPP) which would
>         minimize the required amount of physical interfaces at the devices.
> 
>         DH> would the text above work for you?

This text is great.
I think it gives a very clear and concise explanation of the objective of the draft and is easy to read.

>         There are also issues in the explanation of BRSKI (e.g.
>         mentioning the meaning of the abbreviation twice). I dindn't
>         quite get why a BRSKI explanation was included in this draft in
>         the first place.
> 
>         DH> we may leave BRSKI out here to not complicate things

Maybe BRSKI as a way of zero-touch-Provisioning can still be a part of the draft, but then it would be good to explain what challenges BRSKI brings in the current use case.

Since BRSKI is designed especially to provision devices without need to manually configure them, someone may ask why you can't use BRSKI to reach your goal.

Unfortunally, I'm not a BRSKI expert, but maybe I can try to suggest a short text for a BRSKI section in the next few weeks (most likely not before the IETF in London, my schedule is quite full for the next weeks).

>         DH> Indeed very helpful comments – thanks we will consider and
>         provide a new version!

Good to hear it was helpful :)

I'm looking forward to the new draft version.


--
E-Mail: rieckers@dfn.de | Fon: +49 30884299-339 | Fax: +49 30884299-370
Pronomen: er/sein | Pronouns: he/him
__________________________________________________________________________________

DFN - Deutsches Forschungsnetz | German National Research and Education Network Verein zur Förderung eines Deutschen Forschungsnetzes e.V.
Alexanderplatz 1 | 10178 Berlin
www.dfn.de

Vorstand: Prof. Dr. Odej Kao (Vorsitzender) | Dr. Rainer Bockholt | Christian Zens
Geschäftsführung: Dr. Christian Grimm | Jochem Pattloch VR AG Charlottenburg 7729B | USt.-ID. DE 1366/23822