[OAUTH-WG] OSCORE

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Wed, 07 February 2018 10:06 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: oauth@ietfa.amsl.com
Delivered-To: oauth@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B9734126D74 for <oauth@ietfa.amsl.com>; Wed, 7 Feb 2018 02:06:46 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.92
X-Spam-Level:
X-Spam-Status: No, score=-1.92 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4uF6rElaSb0b for <oauth@ietfa.amsl.com>; Wed, 7 Feb 2018 02:06:44 -0800 (PST)
Received: from EUR01-DB5-obe.outbound.protection.outlook.com (mail-db5eur01on0078.outbound.protection.outlook.com [104.47.2.78]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D71A0126DC2 for <oauth@ietf.org>; Wed, 7 Feb 2018 02:06:43 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector1-arm-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=A/wHEqHPG11aHlOWUcLh1qLXkWLnTxFqqyUIvKKLwEs=; b=QbRJTmmnV8HEtw7dfhmXz6wVr4FmGvU+s33GqucoXsVO7+LnFYhl5Ays5isd07CYEX/w4e9WfL3k8oib1z8XoGlag23wiJpH5/WcLYRxnk7h+zKbh6UNP8wm6dUpNNeaB6cH1YUnY8xuj3Z+Guf9gG6JI1zMYs5X+1YcX5WY28U=
Received: from AM4PR0801MB2706.eurprd08.prod.outlook.com (10.167.90.148) by AM4PR0801MB1474.eurprd08.prod.outlook.com (10.168.5.136) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.464.11; Wed, 7 Feb 2018 10:06:41 +0000
Received: from AM4PR0801MB2706.eurprd08.prod.outlook.com ([fe80::b863:80d:692b:e64b]) by AM4PR0801MB2706.eurprd08.prod.outlook.com ([fe80::b863:80d:692b:e64b%14]) with mapi id 15.20.0485.009; Wed, 7 Feb 2018 10:06:41 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: oauth <oauth@ietf.org>
Thread-Topic: OSCORE
Thread-Index: AdOf+vC9Bo7oOstGSpuGdOgV/ndnFQ==
Date: Wed, 07 Feb 2018 10:06:41 +0000
Message-ID: <AM4PR0801MB2706E520121559D478FB6D99FAFC0@AM4PR0801MB2706.eurprd08.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Hannes.Tschofenig@arm.com;
x-originating-ip: [88.214.162.174]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; AM4PR0801MB1474; 7:4A8ryii+fBGAisj/jXbd7JsHzdRIe4BKqdoKsfjgM3fEs+TejmQxiqJ7r9IODFM+1CRCwT0PyzXGIUbIMVG/BOQ1m84e347zIPvaqVln3Ce4NTJ0NN11egkeW09/ov0nPrhv0Lk59xLsAj++MfewarUQ+ujoaQ6bA9Tiz98lGBNT11q8N7vpo4DAlSE4K/j5+pnpV951MbZX/gI1aXm6jpBXnneTo+7hQRdNXN7nY+xv8NfghOltnQVwPQ3ilf/k
x-ms-exchange-antispam-srfa-diagnostics: SSOS;
x-ms-office365-filtering-ht: Tenant
x-ms-office365-filtering-correlation-id: 6a67f750-50d4-4fe6-18f6-08d56e127c1e
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(48565401081)(4534165)(4627221)(201703031133081)(201702281549075)(5600026)(4604075)(3008032)(2017052603307)(7153060)(7193020); SRVR:AM4PR0801MB1474;
x-ms-traffictypediagnostic: AM4PR0801MB1474:
x-microsoft-antispam-prvs: <AM4PR0801MB1474B561F7941D42068BACEBFAFC0@AM4PR0801MB1474.eurprd08.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(28532068793085)(192374486261705)(21748063052155);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6040501)(2401047)(5005006)(8121501046)(3002001)(3231101)(2400082)(944501161)(93006095)(93001095)(10201501046)(6055026)(6041288)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123564045)(20161123560045)(20161123562045)(20161123558120)(6072148)(201708071742011); SRVR:AM4PR0801MB1474; BCL:0; PCL:0; RULEID:; SRVR:AM4PR0801MB1474;
x-forefront-prvs: 0576145E86
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(396003)(376002)(39860400002)(366004)(39380400002)(346002)(189003)(40434004)(199004)(2900100001)(25786009)(6116002)(3846002)(7116003)(790700001)(2906002)(5660300001)(74316002)(33656002)(6916009)(7736002)(97736004)(55016002)(186003)(6436002)(53936002)(9686003)(6306002)(54896002)(5250100002)(106356001)(478600001)(221733001)(59450400001)(6506007)(7696005)(26005)(5890100001)(99286004)(86362001)(3480700004)(81166006)(102836004)(81156014)(8676002)(8936002)(3660700001)(14454004)(966005)(72206003)(3280700002)(105586002)(316002)(68736007)(66066001)(215093002); DIR:OUT; SFP:1101; SCL:1; SRVR:AM4PR0801MB1474; H:AM4PR0801MB2706.eurprd08.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; MX:1; A:1; LANG:en;
received-spf: None (protection.outlook.com: arm.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: GtrkBEue3MFuqxEV7GlBfBupwqZorlS6IUmKJRztvhkEO5Im7qPb4Q3NAimhWZHsEvZOmkOf5YOFIxZ084+0Uw==
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_AM4PR0801MB2706E520121559D478FB6D99FAFC0AM4PR0801MB2706_"
MIME-Version: 1.0
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 6a67f750-50d4-4fe6-18f6-08d56e127c1e
X-MS-Exchange-CrossTenant-originalarrivaltime: 07 Feb 2018 10:06:41.2825 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM4PR0801MB1474
Archived-At: <https://mailarchive.ietf.org/arch/msg/oauth/1yHRIu09-Np0JYkI1qqMtT-sxIs>
Subject: [OAUTH-WG] OSCORE
X-BeenThere: oauth@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: OAUTH WG <oauth.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/oauth>, <mailto:oauth-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/oauth/>
List-Post: <mailto:oauth@ietf.org>
List-Help: <mailto:oauth-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/oauth>, <mailto:oauth-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 07 Feb 2018 10:06:47 -0000

Hi guys,

You may be interested to hear that a group of people working on Internet of Things security believe they have found a solution to deal with the challenges we had in protecting HTTP requests/responses.

Here is the draft: https://tools.ietf.org/html/draft-ietf-core-object-security-07
(The draft is mostly focused on CoAP but it is supposed to be applicable also to HTTP.)

Ciao
Hannes
IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.