Re: [mile] SACM/MILE at IETF 101

John Field <jfield@pivotal.io> Fri, 16 February 2018 15:55 UTC

Return-Path: <jfield@pivotal.io>
X-Original-To: mile@ietfa.amsl.com
Delivered-To: mile@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7C8F8126579 for <mile@ietfa.amsl.com>; Fri, 16 Feb 2018 07:55:16 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=pivotal-io.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2WtYTolBLulT for <mile@ietfa.amsl.com>; Fri, 16 Feb 2018 07:55:12 -0800 (PST)
Received: from mail-vk0-x230.google.com (mail-vk0-x230.google.com [IPv6:2607:f8b0:400c:c05::230]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1F0B71201F2 for <mile@ietf.org>; Fri, 16 Feb 2018 07:55:01 -0800 (PST)
Received: by mail-vk0-x230.google.com with SMTP id o204so2031359vkd.13 for <mile@ietf.org>; Fri, 16 Feb 2018 07:55:01 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=pivotal-io.20150623.gappssmtp.com; s=20150623; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=PEOvIabvEVlnhceAWLIkxyjBbOCkOwcvfq1oSonF0oo=; b=0O1e1jWROmHBY7xPTQ1ta6F44JMwUm88IkKqhecla2eq9BDdCd/zeTzRitTY4qIQti r9MtNmPinv8ZPvAhBVrFScabJF9QXD2A5rgQMNEXB+qdowJTW15QsTM+AZrg/mE9Qlij IOGRAiCJRhmZUrrtOKLhMsiCSSni469eM6i0yvelwEbVPiLjO+jZzxhAnFpCnaIwGQg3 /b6K8CEnho3kMHJrQep2ahuxvdfxV7vv4hkORnk0yIMn27O/SFpmaxEZCTqTNzN5Mc4B COMYp+UEsMkKEgjoWMwnX9YJbE6qebmibDXe72wqZ/KCg4U6ElOlpRjNOTRRODKmf2PX KHDw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=PEOvIabvEVlnhceAWLIkxyjBbOCkOwcvfq1oSonF0oo=; b=ZPgV/Dgv1vkicBxswAdDTXv8l7IUjBW2E4Wza8oz6VBM5sN9E/8fqZKf9ISUCMsRlM Gbmh147tQ9ACRvYMgUajF3Msz2ud5EvFgsL6Aw+WFPKL78zxOZcg2OOJYWwjSlPbYIZm Wh2soRqVqVrRo+vfJvfh+lgKAZ9bJ0Z6aYSj2Sq1x2Khonejx1bpgSgSfTC/Cbd43ykz 0AWBHeeTPPQaD7E5LyMROvEWSzpL5Q9vnBzZPOMlaAA6FkVknrB7639NluB0vLPneF+o QtwG/uL5XKP68LJ1aIoIKT4XzEospWpoDWQiq2PfE+iNh/n0ARW2wuTqu+RxvtoYetFa vewQ==
X-Gm-Message-State: APf1xPCpSPcPxTRVx/9SdE66DicZzl3UU1hA1c+cA98pFqL9exbMvFJE 6ms5HOTFYJWRGNbU5P0aVW89lXJPNMZ+iQN73kRN6Q==
X-Google-Smtp-Source: AH8x226XiAzfXqLZoCtVxy05n6HGxPuPrZeNWfex13PW7HZj+92jSzQYWjBjiKBT940ojJxSh7bjHyB2BMYi9HUrgpY=
X-Received: by 10.31.230.132 with SMTP id d126mr4908084vkh.123.1518796500880; Fri, 16 Feb 2018 07:55:00 -0800 (PST)
MIME-Version: 1.0
Received: by 10.176.79.196 with HTTP; Fri, 16 Feb 2018 07:55:00 -0800 (PST)
In-Reply-To: <F2284577-98CD-47B4-BDA1-FD58AAE11FA3@gmail.com>
References: <F2284577-98CD-47B4-BDA1-FD58AAE11FA3@gmail.com>
From: John Field <jfield@pivotal.io>
Date: Fri, 16 Feb 2018 10:55:00 -0500
Message-ID: <CAC0wChHZUbRiyEk=dqt6hzixOyrgD9d5h03R1OkqGOuhxOf+og@mail.gmail.com>
To: Adam Montville <adam.w.montville@gmail.com>
Cc: hackathon@ietf.org, MILE IETF <mile@ietf.org>, "<sacm@ietf.org>" <sacm@ietf.org>
Content-Type: multipart/alternative; boundary="94eb2c095b36ebed670565565daf"
Archived-At: <https://mailarchive.ietf.org/arch/msg/mile/BA4nq0ulCo0S7oF9ipAv6qBMI3k>
Subject: Re: [mile] SACM/MILE at IETF 101
X-BeenThere: mile@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "Managed Incident Lightweight Exchange, IODEF extensions and RID exchanges" <mile.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mile>, <mailto:mile-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mile/>
List-Post: <mailto:mile@ietf.org>
List-Help: <mailto:mile-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mile>, <mailto:mile-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 16 Feb 2018 15:55:16 -0000

Adam,

Thanks, this sounds like it could be very productive.  Unfortunately due to
scheduling concerns I won't be able to attend IETF 101.  It's possible I
could attend 102, but I won't know until the date draws nearer.

John

On Thu, Feb 15, 2018 at 4:43 PM, Adam Montville <adam.w.montville@gmail.com>
wrote:

> Hello all...
>
> As mentioned in a previous note, a couple of us are getting together to
> work a fairly simple configuration assessment scenario using disparate
> components connected to an XMPP-Grid. We have received some interest
> off-list in the XMPP-Grid side of things (per the latest draft [1], it
> seems that XMPP-Grid is an XMPP server running a few XEP extensions), and
> we are hopeful that we will be able to simply use a grid as clients and not
> have to implement the grid itself or spend time configuring one.
>
> Assuming that works out the way we hope, we will mock up an assessment
> policy publisher and modify an existing assessor and dashboard, so that
> four interfaces must be defined: 1) publisher interface for assessment
> guidance, 2) subscriber interface for assessment guidance, 3) publisher
> interface for assessment results, 4) subscriber interface for assessment
> results.
>
> What we hope to learn is twofold. First we hope to learn more about the
> nuances of working with XMPP-Grid for something other than IODEF payloads.
> Second, we hope to learn more about how we would need to structure drafts
> to specify capability interfaces and then bind them to XMPP-Grid.
>
> Our plan is to share our experience (success/failure) at the hackathon
> itself, but also (at the chairs' pleasure) in the SACM session, whenever
> that may be. We would be happy to do the same for MILE,  if that makes
> sense. There's really nothing there yet, but we've got a GitHub repository
> set up at [2]. Caveat: Not all code will be available in the repository,
> and we intend to use it primarily for the integration pieces and
> documentation.
>
> Kind regards,
>
> Adam (and Bill)
>
>
> [1] https://datatracker.ietf.org/doc/draft-ietf-mile-xmpp-grid/
> [2] https://github.com/CISecurity/Integration
>
> _______________________________________________
> mile mailing list
> mile@ietf.org
> https://www.ietf.org/mailman/listinfo/mile
>
>


-- 

John P. Field | Security PM | Pivotal

Direct: (908) 962-3394 | jfield@ <jfield@gopivotal.com>pivotal.io