[Lake] FW: New Version Notification for draft-selander-lake-edhoc-00.txt

John Mattsson <john.mattsson@ericsson.com> Thu, 07 November 2019 12:28 UTC

Return-Path: <john.mattsson@ericsson.com>
X-Original-To: lake@ietfa.amsl.com
Delivered-To: lake@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E42EA120178 for <lake@ietfa.amsl.com>; Thu, 7 Nov 2019 04:28:24 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level:
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5swYHq15c5kR for <lake@ietfa.amsl.com>; Thu, 7 Nov 2019 04:28:22 -0800 (PST)
Received: from EUR03-DB5-obe.outbound.protection.outlook.com (mail-eopbgr40050.outbound.protection.outlook.com [40.107.4.50]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5220E1202A0 for <lake@ietf.org>; Thu, 7 Nov 2019 04:28:21 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=mAjVsdmV9A20ykfo1pn1UJK1RdMdt/26I9bS+b/swL1O2v+Z8JRovo9yXqTaYEReFOCepTSyVWqJKamwuqRCgYsE0t6liPfl4YANh+P7IfsN7Rouj7GqId9QLZui+Gy/zlY2mPCeG/4/wR+dWTrVn39424EdDTpj8/yGVB4x1wxdmCyfc7hjMerSGNOjtoA5E2VwpR4uJ2MAVEO/tSxA3XOM0kfsIQAmhFzjhbP/uKw0evvSzct+90kO9imi5GGpJu9HWOuzji+/7StMb2bMUzWI+aAcpGc2j7gIh7hGDcwQ3Vzj3WticR/UwVdyxisXCGVq7XGy8TdWYA0s+gbBXg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=jCeCVW3rS3pYa/BUT9WZfflxYjvEu/Lm6UExqmGzKbE=; b=dUGR3NYKtZ8W9tHQkSg9vaLurLOby3jTIhkXiUPpNJiDuHCfJ6ipEw1PglCb3mxO8Wb48pzUv6Ok7UbFzoB3KkrHyv9Rt5kEFNJpBH8/G703In9YSzAe3PkpXWZBXXm6njVmrpb8uKLmkYVDg7kQTz2NJ+iUcvSQFS6ycaM+QOQhnxNVy9p3RgcDEv/G5vZpB5tLGod3SOseZvbJU3kVZR+Z2nQZ2t2LrVSJetQ2Aan+nO525DW/R80DZZY878bnoQU6GezEaeKe2vv8j07Y64MSltwDbT4Ixvel5qAYi/2ltaJGL7OkCe1foWkQuhpS0vweB+XcFuAlTR7sTWNKhg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=jCeCVW3rS3pYa/BUT9WZfflxYjvEu/Lm6UExqmGzKbE=; b=YOgL+fGxsfCwYsPrj/DOgxb7D2q8Br26pSnC/w4jgEiKUWeOvZ15sdz0CMCorKgn2CctOPER95EEYOa2XbL4TIvroenPBsKGqev25hqRwZ6/Ot5V8W2YsJXyMN9ELWmxlv7L+b0pbHUcQeuuvNjIFpxQpMvb+g65wTVwjU8JDvY=
Received: from HE1PR07MB4169.eurprd07.prod.outlook.com (20.176.165.153) by HE1PR07MB3466.eurprd07.prod.outlook.com (10.170.246.18) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2430.16; Thu, 7 Nov 2019 12:28:19 +0000
Received: from HE1PR07MB4169.eurprd07.prod.outlook.com ([fe80::c176:1bc:5909:8fe0]) by HE1PR07MB4169.eurprd07.prod.outlook.com ([fe80::c176:1bc:5909:8fe0%5]) with mapi id 15.20.2430.020; Thu, 7 Nov 2019 12:28:19 +0000
From: John Mattsson <john.mattsson@ericsson.com>
To: "lake@ietf.org" <lake@ietf.org>
Thread-Topic: New Version Notification for draft-selander-lake-edhoc-00.txt
Thread-Index: AQHVk02FTQJPxKKgYkWxob7jRH42VKd/t9MA
Date: Thu, 07 Nov 2019 12:28:18 +0000
Message-ID: <C0B946D7-FAFF-4AD5-9330-3B05D71A52EF@ericsson.com>
References: <157289891663.13876.6782386626195085361.idtracker@ietfa.amsl.com>
In-Reply-To: <157289891663.13876.6782386626195085361.idtracker@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.1e.0.191013
authentication-results: spf=none (sender IP is ) smtp.mailfrom=john.mattsson@ericsson.com;
x-originating-ip: [192.176.1.84]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 9dcfaff5-09bc-4929-9653-08d7637df8b0
x-ms-traffictypediagnostic: HE1PR07MB3466:
x-ms-exchange-purlcount: 4
x-microsoft-antispam-prvs: <HE1PR07MB34660838D31535BF0F3BFFBC89780@HE1PR07MB3466.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-forefront-prvs: 0214EB3F68
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(4636009)(346002)(366004)(39860400002)(376002)(396003)(136003)(199004)(189003)(13464003)(31014005)(2501003)(58126008)(446003)(2616005)(2351001)(33656002)(66066001)(66574012)(76116006)(486006)(99286004)(64756008)(66946007)(86362001)(11346002)(71200400001)(66446008)(66476007)(316002)(71190400001)(66556008)(476003)(36756003)(8676002)(5660300002)(6486002)(15650500001)(26005)(6916009)(478600001)(6512007)(81166006)(76176011)(81156014)(14454004)(966005)(186003)(8936002)(305945005)(5640700003)(44832011)(6506007)(2473003)(6306002)(2906002)(7736002)(256004)(25786009)(14444005)(1730700003)(3846002)(6436002)(53546011)(6116002)(102836004)(229853002); DIR:OUT; SFP:1101; SCL:1; SRVR:HE1PR07MB3466; H:HE1PR07MB4169.eurprd07.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: ericsson.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: ciz4N+yHNuN7Z5uKNMxW+uGpzKzTGdx/zbf4sm/q0MZUdvZZuKiiAnhpJXE2WgXTyDAUZLjNWvNTE44nUwA7cBddmyX8DW8wp6RMRa2BXeYs/sjvJaUn273hfBwUYAEKHy7jOELkWrn0LFj0eF0BmMClYeVgZEoM6gZ40UvnAGDn58t7ooe5/xmdMuitXCeqH/Vb2JWvvK34l25rOE6iUVCWc5N5IJuEUMBUV6GwBjkOJNCNWq4H9LL4+IT7O+KkZFwE5B8/w8PnGEiLb9FzcQ8Logy93aylIwWaYYn3ucMTH1Zkl9Y0hGtH1iF7bv0UD52F2OU4xwoIRlzTU+E83rLaSKDQnmhxBwX5qK1mf2fsngdg7kBsMYCfLtUSJ7l6AUSpj40XrwkiCkgG5oiuFslBRR+OyNMdCrXE39XgGT2A1zMzj3RPYAJGb/IkrbL8ilMJqjwHq0hNwdHPLid2czLoiINpjT45BTLS3ueNz8c=
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <021A3A58DC2C9B4E836501A484046DEA@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 9dcfaff5-09bc-4929-9653-08d7637df8b0
X-MS-Exchange-CrossTenant-originalarrivaltime: 07 Nov 2019 12:28:18.9589 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: FKiH3LryhdZgp1kQKv/hObAA6zcct+/qJYhzDYO269W4d5GC5jNw7WjTEa7glRg4TAI2ppupgS0s+GpMvBGKAtPflPE/HIb4a/hO0mPHHIc=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR07MB3466
Archived-At: <https://mailarchive.ietf.org/arch/msg/lake/JjkFKVIdQKgBlU_LRUr2nQv2byg>
Subject: [Lake] FW: New Version Notification for draft-selander-lake-edhoc-00.txt
X-BeenThere: lake@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Lightweight Authenticated Key Exchange <lake.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/lake>, <mailto:lake-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/lake/>
List-Post: <mailto:lake@ietf.org>
List-Help: <mailto:lake-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/lake>, <mailto:lake-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 07 Nov 2019 12:28:25 -0000

Hi,

We have submitted a new version of draft-selander-ace-cose-ecdhe to LAKE with the new name draft-selander-lake-edhoc-00

The changes from draft-selander-ace-cose-ecdhe-14 are:

- We merged the static Diffie-Hellman branch and moved it to the main body of the document instead of an appendix. The benefits of using static Diffie-Hellman keys was recently pointed out by Karthik. We think static Diffie-Hellman keys are the best option for RPKs. 

- Added a sentence that EDHOC with symmetric authentication does not offer protection of the PSK identifier ID_PSK (as pointed out by Karthik). 

- Added an additional sentence on key compromise and passive attackers.

New issues on GitHub:

- I added Karthiks mail about static Diffie-Hellman keys to the existing issue of static Diffie-Hellman key

- I created a new issue on PSK identifier protection with a link to Karthiks mail.

Cheers,
John

-----Original Message-----
From: "internet-drafts@ietf.org" <internet-drafts@ietf.org>
Date: Monday, 4 November 2019 at 21:22
To: Göran Selander <goran.selander@ericsson.com>, John Mattsson <john.mattsson@ericsson.com>, Göran Selander <goran.selander@ericsson.com>, John Mattsson <john.mattsson@ericsson.com>, Francesca Palombini <francesca.palombini@ericsson.com>
Subject: New Version Notification for draft-selander-lake-edhoc-00.txt

    
    A new version of I-D, draft-selander-lake-edhoc-00.txt
    has been successfully submitted by John Preuß Mattsson and posted to the
    IETF repository.
    
    Name:		draft-selander-lake-edhoc
    Revision:	00
    Title:		Ephemeral Diffie-Hellman Over COSE (EDHOC)
    Document date:	2019-11-04
    Group:		Individual Submission
    Pages:		74
    URL:            https://www.ietf.org/internet-drafts/draft-selander-lake-edhoc-00.txt
    Status:         https://datatracker.ietf.org/doc/draft-selander-lake-edhoc/
    Htmlized:       https://tools.ietf.org/html/draft-selander-lake-edhoc-00
    Htmlized:       https://datatracker.ietf.org/doc/html/draft-selander-lake-edhoc
    
    
    Abstract:
       This document specifies Ephemeral Diffie-Hellman Over COSE (EDHOC), a
       very compact, and lightweight authenticated Diffie-Hellman key
       exchange with ephemeral keys.  EDHOC provides mutual authentication,
       perfect forward secrecy, and identity protection.  EDHOC is intended
       for usage in constrained scenarios and a main use case is to
       establish an OSCORE security context.  By reusing COSE for
       cryptography, CBOR for encoding, and CoAP for transport, the
       additional code footprint can be kept very low.
    
                                                                                      
    
    
    Please note that it may take a couple of minutes from the time of submission
    until the htmlized version and diff are available at tools.ietf.org.
    
    The IETF Secretariat