[ipwave] comments on the TLS certs draft

Alexandre Petrescu <alexandre.petrescu@gmail.com> Fri, 29 March 2019 12:37 UTC

Return-Path: <alexandre.petrescu@gmail.com>
X-Original-To: its@ietfa.amsl.com
Delivered-To: its@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C8D4E120279 for <its@ietfa.amsl.com>; Fri, 29 Mar 2019 05:37:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.632
X-Spam-Level:
X-Spam-Status: No, score=-2.632 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_ADSP_CUSTOM_MED=0.001, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, NML_ADSP_CUSTOM_MED=0.9, RCVD_IN_DNSWL_MED=-2.3, SPF_SOFTFAIL=0.665] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Iq9OUrSW6fd7 for <its@ietfa.amsl.com>; Fri, 29 Mar 2019 05:37:00 -0700 (PDT)
Received: from cirse-smtp-out.extra.cea.fr (cirse-smtp-out.extra.cea.fr [132.167.192.148]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6390012014F for <its@ietf.org>; Fri, 29 Mar 2019 05:37:00 -0700 (PDT)
Received: from pisaure.intra.cea.fr (pisaure.intra.cea.fr [132.166.88.21]) by cirse-sys.extra.cea.fr (8.14.7/8.14.7/CEAnet-Internet-out-4.0) with ESMTP id x2TCawGG007419 for <its@ietf.org>; Fri, 29 Mar 2019 13:36:58 +0100
Received: from pisaure.intra.cea.fr (localhost [127.0.0.1]) by localhost (Postfix) with SMTP id 584A4203478 for <its@ietf.org>; Fri, 29 Mar 2019 13:36:58 +0100 (CET)
Received: from muguet1-smtp-out.intra.cea.fr (muguet1-smtp-out.intra.cea.fr [132.166.192.12]) by pisaure.intra.cea.fr (Postfix) with ESMTP id 4C13A2028E9 for <its@ietf.org>; Fri, 29 Mar 2019 13:36:58 +0100 (CET)
Received: from [10.8.68.100] ([10.8.68.100]) by muguet1-sys.intra.cea.fr (8.14.7/8.14.7/CEAnet-Internet-out-4.0) with ESMTP id x2TCawIC021070 for <its@ietf.org>; Fri, 29 Mar 2019 13:36:58 +0100
To: "its@ietf.org" <its@ietf.org>
From: Alexandre Petrescu <alexandre.petrescu@gmail.com>
Message-ID: <e4f79bf5-4b61-73f3-3fef-6080a95d2209@gmail.com>
Date: Fri, 29 Mar 2019 13:36:57 +0100
User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:60.0) Gecko/20100101 Thunderbird/60.6.1
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="------------BA8D92292136072EE315DA07"
Content-Language: fr
Archived-At: <https://mailarchive.ietf.org/arch/msg/its/Vw_eKd-rJyX_dPVhm9z7pjtpUcQ>
Subject: [ipwave] comments on the TLS certs draft
X-BeenThere: its@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IPWAVE - IP Wireless Access in Vehicular Environments WG at IETF <its.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/its>, <mailto:its-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/its/>
List-Post: <mailto:its@ietf.org>
List-Help: <mailto:its-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/its>, <mailto:its-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 29 Mar 2019 12:37:03 -0000

draft-tls-certieee1609-02

draft-msahli-ipwave-ieee1609-00.txt


The certificates are highly necessary for securing IP based 
communications in vehicle networks.

But the conditions of their use may prevent deployment.

- can I use an open source package to generate now a certificate with 
features of these drafts?

- is there a Certificate Authority that I can ask now to sign them?

- can I do these two things for free now?

Because in absence of these conditions, I am highly tempted to use 
openvpn and its associated free tools to generate my own CA and my own 
certificates to put in the cars I deal with.

I think in practice several people do just that.

I think it is a situation that needs to be prevented, because it means 
the drafts are not used.

Alex