Re: [MSEC] Application layer multicast security protocol

Mark Baugher <mbaugher@cisco.com> Wed, 24 August 2011 17:27 UTC

Return-Path: <mbaugher@cisco.com>
X-Original-To: msec@ietfa.amsl.com
Delivered-To: msec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6E32921F85B9 for <msec@ietfa.amsl.com>; Wed, 24 Aug 2011 10:27:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hVuuL+rnilVX for <msec@ietfa.amsl.com>; Wed, 24 Aug 2011 10:27:06 -0700 (PDT)
Received: from rcdn-iport-2.cisco.com (rcdn-iport-2.cisco.com [173.37.86.73]) by ietfa.amsl.com (Postfix) with ESMTP id A776521F8562 for <msec@ietf.org>; Wed, 24 Aug 2011 10:27:06 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=mbaugher@cisco.com; l=772; q=dns/txt; s=iport; t=1314206898; x=1315416498; h=subject:mime-version:from:in-reply-to:date:cc: content-transfer-encoding:message-id:references:to; bh=WNavcWkctHZvyTitZUqVXtiBuF3yjWX0Sz4NpIhKYAY=; b=Pe9cG9AJuoLXVnty3gqlR3xBFECgQsjGqqnSh7Z6rdhRBkKwUAqHW9Rt L8Th9YtQZDVkmhu4nh/iLvkoWMD8uaXqmphDOOj04MilWlxs0m4J03jJc EfnWwqr2vbiC1Jr3c5BuPce7KZ5LSxUctKtlgRxwnu4w39d08GADTrKca c=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: Av4EAAs0VU6rRDoH/2dsb2JhbABCp3l3gUABAQEBAgEBAQEPASc0CwULC0YnMAYTIodPBJwsAZ8uhWpfBIdhiziRGw
X-IronPort-AV: E=Sophos;i="4.68,276,1312156800"; d="scan'208";a="16132469"
Received: from mtv-core-2.cisco.com ([171.68.58.7]) by rcdn-iport-2.cisco.com with ESMTP; 24 Aug 2011 17:28:15 +0000
Received: from sjc-mbaugher-8712.cisco.com (sjc-mbaugher-8712.cisco.com [10.19.93.35]) by mtv-core-2.cisco.com (8.14.3/8.14.3) with ESMTP id p7OHSEp7014806; Wed, 24 Aug 2011 17:28:15 GMT
Mime-Version: 1.0 (Apple Message framework v1084)
Content-Type: text/plain; charset="us-ascii"
From: Mark Baugher <mbaugher@cisco.com>
In-Reply-To: <CAODMbr0VCDd+m+3VunK8HOx1r+cmncQubWQAH0hCweVMqrpOzg@mail.gmail.com>
Date: Wed, 24 Aug 2011 10:28:14 -0700
Content-Transfer-Encoding: 7bit
Message-Id: <A33534CC-EBED-4EE5-B4A6-5320F5476DD5@cisco.com>
References: <CAODMbr0VCDd+m+3VunK8HOx1r+cmncQubWQAH0hCweVMqrpOzg@mail.gmail.com>
To: sampreeth ramavana <sampreeth@gmail.com>
X-Mailer: Apple Mail (2.1084)
Cc: msec@ietf.org
Subject: Re: [MSEC] Application layer multicast security protocol
X-BeenThere: msec@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Multicast Security List <msec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/msec>, <mailto:msec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/msec>
List-Post: <mailto:msec@ietf.org>
List-Help: <mailto:msec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/msec>, <mailto:msec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 24 Aug 2011 17:27:07 -0000

Yes, GDOI, like ISAKMP, is intended to support a variety of applications
in user space and in the kernel.  The current open source implementation
is closely tied to IPsec, however, and changes will need to be made to
extend it beyond IPsec.

Mark
On Aug 23, 2011, at 10:35 PM, sampreeth ramavana wrote:

> Hi All,
> 
> Is there any multicast security protocol that can be implemented in
> the application layer?
> 
> I was seeing the GDOI protocol was mainly talking about implementing
> using the IPSec at the IP layer. Can GDOI protocol also be useful if
> implemented at application layer.
> 
> Thanks,
> Sampreeth
> _______________________________________________
> MSEC mailing list
> MSEC@ietf.org
> https://www.ietf.org/mailman/listinfo/msec