Re: [perpass] Tiny stacks

Brian E Carpenter <brian.e.carpenter@gmail.com> Tue, 10 December 2013 00:28 UTC

Return-Path: <brian.e.carpenter@gmail.com>
X-Original-To: perpass@ietfa.amsl.com
Delivered-To: perpass@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 50E8A1ADFD8 for <perpass@ietfa.amsl.com>; Mon, 9 Dec 2013 16:28:58 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id s6ppYI6zC2uO for <perpass@ietfa.amsl.com>; Mon, 9 Dec 2013 16:28:57 -0800 (PST)
Received: from mail-pd0-x22f.google.com (mail-pd0-x22f.google.com [IPv6:2607:f8b0:400e:c02::22f]) by ietfa.amsl.com (Postfix) with ESMTP id 04AD71ADFD2 for <perpass@ietf.org>; Mon, 9 Dec 2013 16:28:56 -0800 (PST)
Received: by mail-pd0-f175.google.com with SMTP id w10so6167884pde.34 for <perpass@ietf.org>; Mon, 09 Dec 2013 16:28:52 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:organization:user-agent:mime-version:to:cc :subject:references:in-reply-to:content-type :content-transfer-encoding; bh=jNTzk1NQGhgRCjejh9Uj5zQ0VT4yPDmePg6CJEkOjp8=; b=YDQfXj5w2aQ7mfGMVgCSn5bkLlnBCMEumDpYSu6wkvu7V6CBx9AFW5Kg7lzsOUbUEg ozCSNg0cdy0LP/6GHiu30v6DWEfhu+fBfTbXTqlxRR7Gl7zewNTov7w1mNn4ZxhlwJcC sIE9GRe0LDqK7XfA1RwLI8R1kI8hcKKxrAoaxPuQuUpj3VinkxQRPjYhxMWL4Y+NumpP WHCR+MXiTt2PSD6Pz9CL9FdMJyU5YTOa9+yalSqIDXuOWtoVPkaZRVWhjznQXkCllMIy Iouuo+fFCc1fxQEJ5NXp2JwBiNkGJR95t/Jm7fZdzE95rClAzj1CY6/LWEOAIacdXjeT 9dDA==
X-Received: by 10.66.144.227 with SMTP id sp3mr24513555pab.100.1386635332118; Mon, 09 Dec 2013 16:28:52 -0800 (PST)
Received: from [192.168.178.20] (208.199.69.111.dynamic.snap.net.nz. [111.69.199.208]) by mx.google.com with ESMTPSA id gv10sm20984763pbd.0.2013.12.09.16.28.49 for <multiple recipients> (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Mon, 09 Dec 2013 16:28:51 -0800 (PST)
Message-ID: <52A66042.9060801@gmail.com>
Date: Tue, 10 Dec 2013 13:28:50 +1300
From: Brian E Carpenter <brian.e.carpenter@gmail.com>
Organization: University of Auckland
User-Agent: Thunderbird 2.0.0.6 (Windows/20070728)
MIME-Version: 1.0
To: Stephen Farrell <stephen.farrell@cs.tcd.ie>
References: <290E20B455C66743BE178C5C84F1240847E5103799@EXMB01CMS.surrey.ac.uk> <2C66A416-5F07-4803-A4C0-BB61734BA42E@nominum.com> <290E20B455C66743BE178C5C84F1240847E510379A@EXMB01CMS.surrey.ac.uk> <529F7690.2050302@gmx.net> <290E20B455C66743BE178C5C84F1240847E510379C@EXMB01CMS.surrey.ac.uk> <52A1BBBC.9090509@cs.tcd.ie> <290E20B455C66743BE178C5C84F1240847E510379D@EXMB01CMS.surrey.ac.uk> <52A4D7D9.9000603@cs.tcd.ie> <52A4E412.4030804@gmail.com> <72B86100-E73E-46BD-ABD6-8E35D56DBDDA@cisco.com> <52A61E4C.6020403@gmail.com> <52A62E98.2060705@gmx.net> <52A63CF9.7020303@gmail.com> <CAL02cgRYNNC7Emx=98a621PTPHDweLRTc=wjVhpRo-5yhVD=-Q@mail.gmail.com> <52A65049.2070903@cs.tcd.ie>
In-Reply-To: <52A65049.2070903@cs.tcd.ie>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: 7bit
Cc: Richard Barnes <rlb@ipv.sx>, perpass <perpass@ietf.org>, Hannes Tschofenig <hannes.tschofenig@gmx.net>, "Stewart Bryant (stbryant)" <stbryant@cisco.com>
Subject: Re: [perpass] Tiny stacks
X-BeenThere: perpass@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "The perpass list is for IETF discussion of pervasive monitoring. " <perpass.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/perpass>, <mailto:perpass-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/perpass/>
List-Post: <mailto:perpass@ietf.org>
List-Help: <mailto:perpass-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/perpass>, <mailto:perpass-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 10 Dec 2013 00:28:58 -0000

On 10/12/2013 12:20, Stephen Farrell wrote:
...
> Its not directly relevant to pervasive monitoring, but IMO the
> worst security thing about tiny devices is the lack of s/w or
> firmware update. Without that, we're basically screwed istm. And
> we don't look like we're getting that, not even in proprietary
> flavours. Or maybe I'm out of date on that? Would love to be.

We're not screwed if (and only if) such devices can only communicate
with the rest of the world via some larger box. That needs to
include all forms of communication, of course, including near-field,
to avoid walk-by snooping.

Indeed I am not sure that's possible. At some point we'll need
to start suspecting give-away pens of being surveillance devices
distributed by the thousand.

     Brian