Re: [IPsec] Call for adoption: MOBIKEv2: MOBIKE extension for Transport mode

"Frederic Detienne (fdetienn)" <fdetienn@cisco.com> Fri, 19 September 2014 00:19 UTC

Return-Path: <fdetienn@cisco.com>
X-Original-To: ipsec@ietfa.amsl.com
Delivered-To: ipsec@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3D3201A9109 for <ipsec@ietfa.amsl.com>; Thu, 18 Sep 2014 17:19:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -16.153
X-Spam-Level:
X-Spam-Status: No, score=-16.153 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, RP_MATCHES_RCVD=-1.652, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3mOuy1o3XI9X for <ipsec@ietfa.amsl.com>; Thu, 18 Sep 2014 17:19:22 -0700 (PDT)
Received: from alln-iport-7.cisco.com (alln-iport-7.cisco.com [173.37.142.94]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C69721A910B for <ipsec@ietf.org>; Thu, 18 Sep 2014 17:19:19 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=970; q=dns/txt; s=iport; t=1411085959; x=1412295559; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-id:content-transfer-encoding: mime-version; bh=sfHw6aQq5mMjY9vC1S8v4jvMcUZvMUbkSzx9ZzC+soY=; b=m9E2UjiI0qTGvSBRXh1zZumPUgofYUnvC1SQ682qUVaWF3EOgor4CsLw vYDsxIenbpQSqkfZtTvAJ3bcoLtDw//ZO7uU8ksSJPTc5lFLDOus1l+Kp n+hWgNFrNmNfSVNu7JjzwdfXeYUqW2qwf1wWh+koxox0j1e+xPHk8B1X8 E=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: Ah4FAIx1G1StJV2P/2dsb2JhbABggw1TVwTJPwqHTQGBChYBeYQEAQEDAQEBARpRCwULAgEIRiEGCyUCBA4FiCoDCQgNun4Nhy4BEwSNSoFcAQEcMweDLoEdBZFOiS6CEI8GhkKDXmyBDzmBAgEBAQ
X-IronPort-AV: E=Sophos;i="5.04,550,1406592000"; d="scan'208";a="79286371"
Received: from rcdn-core-7.cisco.com ([173.37.93.143]) by alln-iport-7.cisco.com with ESMTP; 19 Sep 2014 00:19:19 +0000
Received: from xhc-rcd-x08.cisco.com (xhc-rcd-x08.cisco.com [173.37.183.82]) by rcdn-core-7.cisco.com (8.14.5/8.14.5) with ESMTP id s8J0JJOJ028687 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL); Fri, 19 Sep 2014 00:19:19 GMT
Received: from xmb-aln-x06.cisco.com ([169.254.1.175]) by xhc-rcd-x08.cisco.com ([173.37.183.82]) with mapi id 14.03.0195.001; Thu, 18 Sep 2014 19:19:18 -0500
From: "Frederic Detienne (fdetienn)" <fdetienn@cisco.com>
To: Yaron Sheffer <yaronf.ietf@gmail.com>
Thread-Topic: [IPsec] Call for adoption: MOBIKEv2: MOBIKE extension for Transport mode
Thread-Index: AQHPzqT0URE9vbfrOUeGsYI2zD11hJwH9TkA
Date: Fri, 19 Sep 2014 00:19:18 +0000
Message-ID: <5FC503C4-B291-4CA9-BC52-B6A4482BAFD6@cisco.com>
References: <54131C57.2060605@gmail.com>
In-Reply-To: <54131C57.2060605@gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.154.67.0]
Content-Type: text/plain; charset="Windows-1252"
Content-ID: <D98B6813FC5B134F82963D0106CC1A1F@emea.cisco.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Archived-At: http://mailarchive.ietf.org/arch/msg/ipsec/5mHgyeBln9DJxVLGvk5JZVfM37I
Cc: ipsec <ipsec@ietf.org>
Subject: Re: [IPsec] Call for adoption: MOBIKEv2: MOBIKE extension for Transport mode
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipsec/>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 19 Sep 2014 00:19:24 -0000

Answer: yes, should pursue

Transport mode is an important use case.

I concur with Joe Touch’s arguments on Tunnel Mode. There are much more powerful overlay methods than IPsec Tunnel mode yet IPsec/IKE security is the best in its class. In this area, transport mode and is needed.

For native applications, tunnel mode simply adds unnecessary burden and overhead.

MOBIKE for transport mode is relevant and useful even if transport mode is misunderstood.

thanks,

	fred

On 12 Sep 2014, at 09:16, Yaron Sheffer <yaronf.ietf@gmail.com> wrote:

> Dear working group,
> 
> 
> This is a call for adopting draft-mglt-ipsecme-mobikev2 as a WG document. Please respond to this mail with a Yes or No and a short rationale, at latest by Friday Sep. 19.
> 
> Thanks,
> 	Yaron
> 
> 
> _______________________________________________
> IPsec mailing list
> IPsec@ietf.org
> https://www.ietf.org/mailman/listinfo/ipsec