Re: [MEXT] AD review of draft-ietf-mext-aaa-ha-goals-01

marcelo bagnulo braun <marcelo@it.uc3m.es> Thu, 19 June 2008 16:18 UTC

Return-Path: <mext-bounces@ietf.org>
X-Original-To: nemo-archive@megatron.ietf.org
Delivered-To: ietfarch-nemo-archive@core3.amsl.com
Received: from [127.0.0.1] (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id C785628C1E5; Thu, 19 Jun 2008 09:18:10 -0700 (PDT)
X-Original-To: mext@core3.amsl.com
Delivered-To: mext@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id DFDCC28C1DB for <mext@core3.amsl.com>; Thu, 19 Jun 2008 09:18:09 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.415
X-Spam-Level:
X-Spam-Status: No, score=-3.415 tagged_above=-999 required=5 tests=[AWL=0.347, BAYES_00=-2.599, RCVD_BAD_ID=2.837, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id AN-ugDO6U7Hk for <mext@core3.amsl.com>; Thu, 19 Jun 2008 09:18:09 -0700 (PDT)
Received: from smtp01.uc3m.es (smtp01.uc3m.es [163.117.176.131]) by core3.amsl.com (Postfix) with ESMTP id DB04928C11F for <mext@ietf.org>; Thu, 19 Jun 2008 09:18:08 -0700 (PDT)
Received: from marcelo-bagnulos-macbook-pro.local (74.pool85-53-142.dynamic.orange.es [85.53.142.74])by smtp01.uc3m.es (Postfix) with ESMTP id E98716EEC0E; Thu, 19 Jun 2008 18:18:57 +0200 (CEST)
Message-ID: <485A86E6.3030605@it.uc3m.es>
Date: Thu, 19 Jun 2008 18:18:46 +0200
From: marcelo bagnulo braun <marcelo@it.uc3m.es>
User-Agent: Thunderbird 2.0.0.14 (Macintosh/20080421)
MIME-Version: 1.0
To: Jari Arkko <jari.arkko@piuha.net>
References: <48450C23.2080004@it.uc3m.es> <485A83CF.9010000@piuha.net>
In-Reply-To: <485A83CF.9010000@piuha.net>
X-imss-version: 2.051
X-imss-result: Passed
X-imss-scanInfo: M:B L:E SM:2
X-imss-tmaseResult: TT:1 TS:-18.1225 TC:1F TRN:35 TV:5.5.1026(15982.000)
X-imss-scores: Clean:100.00000 C:0 M:0 S:0 R:0
X-imss-settings: Baseline:1 C:1 M:1 S:1 R:1 (0.0000 0.0000)
Cc: Pasi Eronen <Pasi.Eronen@nokia.com>, dime-chairs@tools.ietf.org, draft-ietf-mext-aaa-ha-goals@tools.ietf.org, "mext@ietf.org" <mext@ietf.org>
Subject: Re: [MEXT] AD review of draft-ietf-mext-aaa-ha-goals-01
X-BeenThere: mext@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Mobile IPv6 EXTensions WG <mext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/mext>, <mailto:mext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/pipermail/mext>
List-Post: <mailto:mext@ietf.org>
List-Help: <mailto:mext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mext>, <mailto:mext-request@ietf.org?subject=subscribe>
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
Sender: mext-bounces@ietf.org
Errors-To: mext-bounces@ietf.org

Hi Jari,

thanks for the feedback

just to make sure, is there something you want us (either the MEXT WG or 
the editors of the document) to do about this?

regards, marcelo


Jari Arkko escribió:
> I have done my AD review on this document.
>
> The document is ready to move forward, but I wanted to note something 
> regarding requirement G2.12.
>
> This requirement says that it must be possible to support IKEv2 shared 
> secret authentication. I can see some good and bad ways of implementing 
> this in terms of the solutions. Is the solution already in some document?
>
> I think we want to pay close attention to how this requirement is 
> fulfilled and make sure the architecture is right. (Sending keys vs. 
> specific keys for this HA vs. asking the server to calculate an 
> authentication value, binding of access keys to things that go across 
> accesses, mandatory vs. optional confidentiality of transported keys, 
> etc.) I will ask for early security review on the solutions.
>
> Jari
>
> _______________________________________________
> MEXT mailing list
> MEXT@ietf.org
> https://www.ietf.org/mailman/listinfo/mext
>
>   

_______________________________________________
MEXT mailing list
MEXT@ietf.org
https://www.ietf.org/mailman/listinfo/mext