ACC device certificates RE: NAT Traversal
"Hallam-Baker, Phillip" <pbaker@verisign.com> Thu, 28 February 2002 16:55 UTC
Received: from lists.tislabs.com (portal.gw.tislabs.com [192.94.214.101]) by above.proper.com (8.11.6/8.11.3) with ESMTP id g1SGtsi09101; Thu, 28 Feb 2002 08:55:54 -0800 (PST)
Received: by lists.tislabs.com (8.9.1/8.9.1) id LAA05195 Thu, 28 Feb 2002 11:01:36 -0500 (EST)
Message-ID: <2F3EC696EAEED311BB2D009027C3F4F4058699A7@vhqpostal.verisign.com>
From: "Hallam-Baker, Phillip" <pbaker@verisign.com>
To: 'Derek Atkins' <derek@ihtfp.com>, "Chinna N.R. Pellacuru" <pcn@cisco.com>
Cc: Markus Stenberg <mstenber@ssh.com>, ipsec@lists.tislabs.com
Subject: ACC device certificates RE: NAT Traversal
Date: Thu, 28 Feb 2002 08:13:38 -0800
MIME-Version: 1.0
X-Mailer: Internet Mail Service (5.5.2653.19)
Content-Type: multipart/mixed; boundary="----_=_NextPart_000_01C1C072.E178CE40"
Sender: owner-ipsec@lists.tislabs.com
Precedence: bulk
> > nodes on your home network when one talks to another. That > would be a bit > > hard to manage: a certificate for each of your machines at > home, possibly > > including home appliances which are on the network. > > Why is a certificate-per-machine hard to manage? It has been made hard because people have been insisting on applying PKI techniques designed to support authentication of humans to authenticate devices. With a device you can embed a private key during manufacture that is unique to the device. We already do this with cable modems (and no the economics are not prohibitive). I just published a White paper on this subject on the VRSN research web site: http://www.verisignlabs.com/Papers/ACC1.html The basic idea is to embed a private key in the device during manufacture, tie the public key to the serial number of the device using a certificate and use the combination for the SOLE PURPOSE of authenticating the device when it applies to authenticate application keys that are generated in the device during initialization. If the device is decomissioned the applications keys are cleared but the ACC key remains so that the next purchaser can initialize it. The genuinely paranoid (i.e. the military) might have the option of paying a lot more to install their own ACC keys The objective is plug and play for cryptography. Every device should initialize with the absolute minimum of fuss. This needs to be simple enough that your granny can install it. This does not remove the need for certs to authenticate humans. But that is a separate layer of authentication. Phill
- ACC device certificates RE: NAT Traversal Hallam-Baker, Phillip