Re: [Pwg-Announce] Fwd: [Isms] RFC 5953 - TLS Transport Model for SNMP

Randy Turner <rturner@amalfisystems.com> Sun, 22 August 2010 17:20 UTC

Return-Path: <pwg-announce-bounces@pwg.org>
X-Original-To: ietfarch-ipp-archive@core3.amsl.com
Delivered-To: ietfarch-ipp-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id BE9CE3A6839 for <ietfarch-ipp-archive@core3.amsl.com>; Sun, 22 Aug 2010 10:20:21 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, J_CHICKENPOX_93=0.6]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Le3Ul+egBcdM for <ietfarch-ipp-archive@core3.amsl.com>; Sun, 22 Aug 2010 10:20:20 -0700 (PDT)
Received: from pwg.org (www.pwg.org [192.146.101.49]) by core3.amsl.com (Postfix) with ESMTP id 6328F3A67B5 for <ipp-archive@lists.ietf.org>; Sun, 22 Aug 2010 10:20:20 -0700 (PDT)
Received: from pwg.org (localhost.localdomain [127.0.0.1]) by pwg.org (Postfix) with ESMTP id 22E9879374; Sun, 22 Aug 2010 13:20:50 -0400 (EDT)
X-Original-To: pwg-announce@pwg.org
Delivered-To: pwg-announce@pwg.org
Received: from omr14.networksolutionsemail.com (omr14.networksolutionsemail.com [205.178.146.64]) by pwg.org (Postfix) with ESMTP id A1EEA79372 for <pwg-announce@pwg.org>; Sun, 22 Aug 2010 13:20:45 -0400 (EDT)
Received: from cm-omr2 (mail.networksolutionsemail.com [205.178.146.50]) by omr14.networksolutionsemail.com (8.13.6/8.13.6) with ESMTP id o7MHKj12019632 for <pwg-announce@pwg.org>; Sun, 22 Aug 2010 13:20:45 -0400
Authentication-Results: cm-omr2 smtp.user=rturner@amalfisystems.com; auth=pass (CRAM-MD5)
X-Authenticated-UID: rturner@amalfisystems.com
Received: from [75.16.40.111] ([75.16.40.111:49604] helo=[192.168.0.101]) by cm-omr2 (envelope-from <rturner@amalfisystems.com>) (ecelerity 2.2.2.41 r(31179/31189)) with ESMTPA id 75/45-18253-C6C517C4; Sun, 22 Aug 2010 13:20:45 -0400
Subject: Re: [Pwg-Announce] Fwd: [Isms] RFC 5953 - TLS Transport Model for SNMP
Mime-Version: 1.0 (Apple Message framework v1081)
Content-Type: text/plain; charset="us-ascii"
From: Randy Turner <rturner@amalfisystems.com>
In-Reply-To: <AANLkTimiX1E9eay6La9R3muRVTkuJQ2VW02VuJ14iyJ4@mail.gmail.com>
Date: Sun, 22 Aug 2010 10:20:43 -0700
Content-Transfer-Encoding: quoted-printable
Message-Id: <026CD5B5-74F5-4D4A-8D1C-37FAB2849589@amalfisystems.com>
References: <AANLkTimiX1E9eay6La9R3muRVTkuJQ2VW02VuJ14iyJ4@mail.gmail.com>
To: Ira McDonald <blueroofmusic@gmail.com>
X-Mailer: Apple Mail (2.1081)
X-pwg-MailScanner: Found to be clean, Found to be clean
Cc: pwg-announce@pwg.org
X-BeenThere: pwg-announce@pwg.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: Printer Working Group Announcement List <pwg-announce.pwg.org>
List-Unsubscribe: <https://www.pwg.org/mailman/listinfo/pwg-announce>, <mailto:pwg-announce-request@pwg.org?subject=unsubscribe>
List-Archive: <http://www.pwg.org/archives/pwg-announce>
List-Post: <mailto:pwg-announce@pwg.org>
List-Help: <mailto:pwg-announce-request@pwg.org?subject=help>
List-Subscribe: <https://www.pwg.org/mailman/listinfo/pwg-announce>, <mailto:pwg-announce-request@pwg.org?subject=subscribe>
Sender: pwg-announce-bounces@pwg.org
Errors-To: pwg-announce-bounces@pwg.org
X-pwg-MailScanner-Information: Please contact the ISP for more information
X-pwg-MailScanner-ID: 22E9879374.ACE19
X-pwg-MailScanner-From: pwg-announce-bounces@pwg.org

Good catch Ira,...yes, this is a long-awaited publication.

Looking forward to the "next" long-awaited doc (at least I'm waiting for it :) that enables using NAC mechanisms
to provision SNMP VACM agents...

Pretty soon....SNMPv3 will become easy to deploy :)  Hopefully, that will create a catalyst for more folks using it.

R.


On Aug 20, 2010, at 1:53 PM, Ira McDonald wrote:

> Hi,
> 
> The long-awaited enterprise network-friendly way to deploy SNMP
> authentication and security using TLS and DTLS.
> 
> Recommended reading.
> 
> Cheers,
> - Ira
> 
> 
> ---------- Forwarded message ----------
> From:  <rfc-editor@rfc-editor.org>
> Date: Fri, Aug 20, 2010 at 2:14 PM
> Subject: [Isms] RFC 5953 on Transport Layer Security (TLS) Transport
> Model for the Simple Network Management Protocol (SNMP)
> To: ietf-announce@ietf.org, rfc-dist@rfc-editor.org
> Cc: isms@ietf.org, rfc-editor@rfc-editor.org
> 
> 
> 
> A new Request for Comments is now available in online RFC libraries.
> 
> 
>        RFC 5953
> 
>        Title:      Transport Layer Security (TLS) Transport
>                    Model for the Simple Network Management
>                    Protocol (SNMP)
>        Author:     W. Hardaker
>        Status:     Standards Track
>        Stream:     IETF
>        Date:       August 2010
>        Mailbox:    ietf@hardakers.net
>        Pages:      65
>        Characters: 147393
>        Updates/Obsoletes/SeeAlso:   None
> 
>        I-D Tag:    draft-ietf-isms-dtls-tm-14.txt
> 
>        URL:        http://www.rfc-editor.org/rfc/rfc5953.txt
> 
> This document describes a Transport Model for the Simple Network
> Management Protocol (SNMP), that uses either the Transport Layer
> Security protocol or the Datagram Transport Layer Security (DTLS)
> protocol.  The TLS and DTLS protocols provide authentication and
> privacy services for SNMP applications.  This document describes how
> the TLS Transport Model (TLSTM) implements the needed features of a
> SNMP Transport Subsystem to make this protection possible in an
> interoperable way.
> 
> This Transport Model is designed to meet the security and operational
> needs of network administrators.  It supports the sending of SNMP
> messages over TLS/TCP and DTLS/UDP.  The TLS mode can make use of
> TCP's improved support for larger packet sizes and the DTLS mode
> provides potentially superior operation in environments where a
> connectionless (e.g., UDP) transport is preferred.  Both TLS and DTLS
> integrate well into existing public keying infrastructures.
> 
> This document also defines a portion of the Management Information
> Base (MIB) for use with network management protocols.  In particular,
> it defines objects for managing the TLS Transport Model for SNMP.
> [STANDARDS TRACK]
> 
> This document is a product of the Integrated Security Model for SNMP
> Working Group of the IETF.
> 
> This is now a Proposed Standard Protocol.
> 
> STANDARDS TRACK: This document specifies an Internet standards track
> protocol for the Internet community,and requests discussion and suggestions
> for improvements.  Please refer to the current edition of the Internet
> Official Protocol Standards (STD 1) for the standardization state and
> status of this protocol.  Distribution of this memo is unlimited.
> 
> This announcement is sent to the IETF-Announce and rfc-dist lists.
> To subscribe or unsubscribe, see
>  http://www.ietf.org/mailman/listinfo/ietf-announce
>  http://mailman.rfc-editor.org/mailman/listinfo/rfc-dist
> 
> For searching the RFC series, see http://www.rfc-editor.org/rfcsearch.html.
> For downloading RFCs, see http://www.rfc-editor.org/rfc.html.
> 
> Requests for special distribution should be addressed to either the
> author of the RFC in question, or to rfc-editor@rfc-editor.org.  Unless
> specifically noted otherwise on the RFC itself, all RFCs are for
> unlimited distribution.
> 
> 
> The RFC Editor Team
> Association Management Solutions, LLC
> 
> 
> _______________________________________________
> Isms mailing list
> Isms@ietf.org
> https://www.ietf.org/mailman/listinfo/isms
> 
> -- 
> This message has been scanned for viruses and
> dangerous content by MailScanner, and is
> believed to be clean.
> 
> _______________________________________________
> pwg-announce mailing list
> pwg-announce@pwg.org
> https://www.pwg.org/mailman/listinfo/pwg-announce
> 


-- 
This message has been scanned for viruses and
dangerous content by MailScanner, and is
believed to be clean.

_______________________________________________
pwg-announce mailing list
pwg-announce@pwg.org
https://www.pwg.org/mailman/listinfo/pwg-announce