[netconf] Securing UDP-notif messages with DTLS

Zmail <alex.huang-feng@insa-lyon.fr> Mon, 02 August 2021 08:59 UTC

Return-Path: <alex.huang-feng@insa-lyon.fr>
X-Original-To: netconf@ietfa.amsl.com
Delivered-To: netconf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 475F83A1448 for <netconf@ietfa.amsl.com>; Mon, 2 Aug 2021 01:59:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.47
X-Spam-Level:
X-Spam-Status: No, score=0.47 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_HELO_IP_MISMATCH=2.368, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id nvDhNm-uzpki for <netconf@ietfa.amsl.com>; Mon, 2 Aug 2021 01:59:14 -0700 (PDT)
Received: from smtpout01-ext1.partage.renater.fr (smtpout01-ext1.partage.renater.fr [194.254.240.32]) by ietfa.amsl.com (Postfix) with ESMTP id DC2C33A1441 for <netconf@ietf.org>; Mon, 2 Aug 2021 01:59:13 -0700 (PDT)
Received: from zmtaauth01.partage.renater.fr (zmtaauth01.partage.renater.fr [194.254.240.25]) by smtpout10.partage.renater.fr (Postfix) with ESMTP id 639D6624A7; Mon, 2 Aug 2021 10:59:08 +0200 (CEST)
Received: from zmtaauth01.partage.renater.fr (localhost [127.0.0.1]) by zmtaauth01.partage.renater.fr (Postfix) with ESMTPS id 539BA1401EE; Mon, 2 Aug 2021 10:59:08 +0200 (CEST)
Received: from localhost (localhost [127.0.0.1]) by zmtaauth01.partage.renater.fr (Postfix) with ESMTP id 4CE30140297; Mon, 2 Aug 2021 10:59:08 +0200 (CEST)
X-Virus-Scanned: amavisd-new at zmtaauth01.partage.renater.fr
Received: from zmtaauth01.partage.renater.fr ([127.0.0.1]) by localhost (zmtaauth01.partage.renater.fr [127.0.0.1]) (amavisd-new, port 10026) with ESMTP id 8HBJ3C1FQ46X; Mon, 2 Aug 2021 10:59:08 +0200 (CEST)
Received: from 77.199.85.50 (unknown [194.254.241.250]) by zmtaauth01.partage.renater.fr (Postfix) with ESMTPA id 072A71401EE; Mon, 2 Aug 2021 10:59:08 +0200 (CEST)
From: Zmail <alex.huang-feng@insa-lyon.fr>
Content-Type: multipart/alternative; boundary="Apple-Mail=_32374F64-095F-4D29-A4DA-0BE4FE018AC1"
Mime-Version: 1.0 (Mac OS X Mail 14.0 \(3654.120.0.1.13\))
Message-Id: <51A0785B-F9B3-4644-92E5-06820835291C@insa-lyon.fr>
Date: Mon, 02 Aug 2021 10:59:07 +0200
Cc: pierre francois <pierre.francois@insa-lyon.fr>, "<Marco.Tollini1@swisscom.com>" <Marco.Tollini1@swisscom.com>, zhoutianran@huawei.com
To: netconf@ietf.org
X-Mailer: Apple Mail (2.3654.120.0.1.13)
X-Renater-Ptge-SpamState: clean
X-Renater-Ptge-SpamScore: -100
X-Renater-Ptge-SpamCause: gggruggvucftvghtrhhoucdtuddrgedvtddriedvgddtjecutefuodetggdotefrodftvfcurfhrohhfihhlvgemucftgffptefvgfftnecuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivghnthhsucdlqddutddtmdenucfjughrpefhtggguffkfffvofesrgdtmherhhdtjeenucfhrhhomhepkghmrghilhcuoegrlhgvgidrhhhurghnghdqfhgvnhhgsehinhhsrgdqlhihohhnrdhfrheqnecuggftrfgrthhtvghrnhepgfefuddutedtteeivdetfeefteeiueejgffhteelkeelgedtffdutdffhfeiieegnecuffhomhgrihhnpehivghtfhdrohhrghenucfkphepudelgedrvdehgedrvdeguddrvdehtdenucevlhhushhtvghrufhiiigvpedtnecurfgrrhgrmhepihhnvghtpeduleegrddvheegrddvgedurddvhedtpdhhvghlohepjeejrdduleelrdekhedrhedtpdhmrghilhhfrhhomhepkghmrghilhcuoegrlhgvgidrhhhurghnghdqfhgvnhhgsehinhhsrgdqlhihohhnrdhfrheqpdhrtghpthhtohepnhgvthgtohhnfhesihgvthhfrdhorhhgpdhrtghpthhtohepphhivghrrhgvrdhfrhgrnhgtohhishesihhnshgrqdhlhihonhdrfhhrpdhrtghpthhtohepofgrrhgtohdrvfholhhlihhnihdusehsfihishhstghomhdrtghomhdprhgtphhtthhopeiihhhouhhtihgrnhhrrghnsehhuhgrfigvihdrtghomh
Archived-At: <https://mailarchive.ietf.org/arch/msg/netconf/Y9nXjrv5vny8NHV90JKaIuQm-j0>
Subject: [netconf] Securing UDP-notif messages with DTLS
X-BeenThere: netconf@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: NETCONF WG list <netconf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netconf>, <mailto:netconf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netconf/>
List-Post: <mailto:netconf@ietf.org>
List-Help: <mailto:netconf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netconf>, <mailto:netconf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 02 Aug 2021 08:59:18 -0000

Hello to everyone,

We would like to present a new draft we didn’t have time to show on the last IETF meeting.

https://datatracker.ietf.org/doc/draft-unyte-netconf-udp-notif-dtls/ <https://datatracker.ietf.org/doc/draft-unyte-netconf-udp-notif-dtls/>

This draft defines a mechanism to secure UDP-notif protocol messages using DTLS 1.3. 
It defines the different layers involved, the DTLS session lifecycle and the mandatory cipher suites to use. It also explicits that no extensions of DTLS are needed and that IP fragmentation should be avoided.
We would like to have some feedback for this draft.

We will present the draft to the WG on the next IETF meeting.

Looking forward to hearing from you,

Alex Huang Feng