Re: [ippm] Question on encrypting the start-time field

"Jeff W. Boote" <boote@internet2.edu> Thu, 03 April 2008 18:56 UTC

Return-Path: <ippm-bounces@ietf.org>
X-Original-To: ippm-archive@megatron.ietf.org
Delivered-To: ietfarch-ippm-archive@core3.amsl.com
Received: from core3.amsl.com (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id A94DD3A6C56; Thu, 3 Apr 2008 11:56:41 -0700 (PDT)
X-Original-To: ippm@core3.amsl.com
Delivered-To: ippm@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 4CCF428C1C1 for <ippm@core3.amsl.com>; Thu, 3 Apr 2008 11:56:40 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.798
X-Spam-Level:
X-Spam-Status: No, score=-1.798 tagged_above=-999 required=5 tests=[AWL=0.801, BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3T5zjtUX8Wgs for <ippm@core3.amsl.com>; Thu, 3 Apr 2008 11:56:35 -0700 (PDT)
Received: from basie.internet2.edu (basie.internet2.edu [207.75.164.22]) by core3.amsl.com (Postfix) with ESMTP id E89243A6C56 for <ippm@ietf.org>; Thu, 3 Apr 2008 11:56:34 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by basie.internet2.edu (Postfix) with ESMTP id C963147F9E; Thu, 3 Apr 2008 14:56:38 -0400 (EDT)
Received: from basie.internet2.edu ([127.0.0.1]) by localhost (basie.internet2.edu [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 18125-09; Thu, 3 Apr 2008 14:56:38 -0400 (EDT)
Received: from [192.168.1.101] (unknown [69.92.68.112]) by basie.internet2.edu (Postfix) with ESMTP id 17BCC47F7C; Thu, 3 Apr 2008 14:56:38 -0400 (EDT)
From: "Jeff W. Boote" <boote@internet2.edu>
To: "Murtaza Chiba (mchiba)" <mchiba@cisco.com>
In-Reply-To: <D492339CC466C84EA5E0AF1CECB20081056EAD2E@xmb-sjc-21b.amer.cisco.com>
References: <47C2C60C.9070807@ripe.net><B61A3FFF-657E-4210-AF53-8587694D3628@nokia.com> <FBC472B9-6DE1-4D39-9AC2-8BA3A4815A95@internet2.edu> <D492339CC466C84EA5E0AF1CECB20081056EAAAB@xmb-sjc-21b.amer.cisco.com> <A56A9185-8C25-48D0-9731-B24B84FDDBC5@internet2.edu> <D492339CC466C84EA5E0AF1CECB20081056EAC5C@xmb-sjc-21b.amer.cisco.com> <6867B003-50C7-4AE5-B02A-00656B9E4B32@internet2.edu> <D492339CC466C84EA5E0AF1CECB20081056EAD2E@xmb-sjc-21b.amer.cisco.com>
Message-Id: <FCB479D2-A7E4-4F9C-AACF-EE493B5941FD@internet2.edu>
Mime-Version: 1.0 (Apple Message framework v919.2)
Date: Thu, 03 Apr 2008 12:56:37 -0600
X-Mailer: Apple Mail (2.919.2)
X-Virus-Scanned: by mail.internet2.edu virus scanner
Cc: IETF IPPM WG <ippm@ietf.org>
Subject: Re: [ippm] Question on encrypting the start-time field
X-BeenThere: ippm@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: IETF IP Performance Metrics Working Group <ippm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ippm>, <mailto:ippm-request@ietf.org?subject=unsubscribe>
List-Post: <mailto:ippm@ietf.org>
List-Help: <mailto:ippm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ippm>, <mailto:ippm-request@ietf.org?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Sender: ippm-bounces@ietf.org
Errors-To: ippm-bounces@ietf.org

On Apr 3, 2008, at 12:31 PM, Murtaza Chiba (mchiba) wrote:
> Well, the real problem I see with this is that the there can be no
> concurrent processing of messages within a connection if the CBC mode
> spans messages.  Of course the RFC precludes this, but it would really
> be nice if the CBC mode were limited to exchanges for a given SID so
> that parallel processing could be done across SIDs instead of  
> forcing a
> new connection.  :(

TCP is a stream protocol. OWAMP-Control is over TCP. You can't  
parallelize the reading/writing of a stream socket. Given this, I  
don't see any benefit to confusing the encryption by making it  
stateful relative to SID. It is stateful with respect to the stream.

jeff
--
Jeff W. Boote
boote@internet2.edu




_______________________________________________
ippm mailing list
ippm@ietf.org
https://www.ietf.org/mailman/listinfo/ippm