Request for Authenticated but not Encrypted Traffic
"Randy Armstrong (OPC)" <randy.armstrong@opcfoundation.org> Thu, 29 September 2022 12:31 UTC
Return-Path: <randy.armstrong@opcfoundation.org>
X-Original-To: quic@ietfa.amsl.com
Delivered-To: quic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E5339C1524C4 for <quic@ietfa.amsl.com>; Thu, 29 Sep 2022 05:31:52 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.107
X-Spam-Level:
X-Spam-Status: No, score=-2.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=opcfoundation.org
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kgVE2VKzC2FT for <quic@ietfa.amsl.com>; Thu, 29 Sep 2022 05:31:48 -0700 (PDT)
Received: from NAM02-BN1-obe.outbound.protection.outlook.com (mail-bn1nam07on2043.outbound.protection.outlook.com [40.107.212.43]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BA5D4C1522D5 for <quic@ietf.org>; Thu, 29 Sep 2022 05:31:48 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Qk0ZCCh9KaAoE4eiURtdXxnPRiyn3GPpmnKe5tTjRpc6gURzJC6HWz1qWeeo3bpatOvOHhW3Qrsutkjyz89wHlztoQePhvX79RPYyHC2XPz/c3ng+S0RiUj5rDaMOua/qgIvyXohX9FKOVPmU8iWBxY0D5lLpsFaephS4Tsbu2BaWJp9Tmje6dB2xHErO2pIz8PCv200oyO+cK2DHQfHu4+fHhQmzE0ya6Qu+m8SRMZ4nqmMBUtooDAGcUKUoIZh+jDLK1mazd7HHuo2GiWsafRMiE3D+fEZyJuEVuROhVWq6IEIxT1TLQvQf9ask9xCk476q0inrpcg4tDbl9Qo9g==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=rC3gAocR1RitCbw/tMIXP48A5TUX2JQCF9AfbVCVNZk=; b=GismfxeMn7lBChfHa8qf5jXmcTSoZNvdRl/C4raoUA1iJfwW02WmFMo07TflIMwKYZRh72AVEMmD3Rn8SXJ0GL0RKQAqr/F38wkzapSiLgbKShstWuj/kS/tZVbDWPhA1z8zNWddBk+Yl+TQzv/snjncCrK4KyLG9W6i8PipK7ir5aUGrGBRdgsinFAy6XMUQ4RAjudlr+6yRNNwobrp9QoiCOOl8WCXMnXGdm2m5xWj9d3Ka0/UGLKrp/19PZ+nOZQ/gIaw7EW3zSfOt2F2SQfriAdt+8s2QopEQVamAGlPOhnG1LHX69nj+QMSnfem/oag9d1EoDH8Wmmwlu2qHQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=opcfoundation.org; dmarc=pass action=none header.from=opcfoundation.org; dkim=pass header.d=opcfoundation.org; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=opcfoundation.org; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=rC3gAocR1RitCbw/tMIXP48A5TUX2JQCF9AfbVCVNZk=; b=C8hOgHIEGaNGHmd/QtmTLCmhYmI1fyfd1y0GX6ZN/ID6RpEDNWUnZyOzfSLEUkRp9sExzHhfHDL0mlUu6QvAeObgviJmNnvsNN0t9OuQvhiMzQZZSfgmd8oVgbrWL3+0pjFJcgvYZMZnZEAMpc2EmA6WwDIsf7BI2/c6rMukpIo=
Received: from SJ0PR08MB8288.namprd08.prod.outlook.com (2603:10b6:a03:41a::13) by SJ0PR08MB6589.namprd08.prod.outlook.com (2603:10b6:a03:2af::10) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5676.15; Thu, 29 Sep 2022 12:31:45 +0000
Received: from SJ0PR08MB8288.namprd08.prod.outlook.com ([fe80::708f:4a6d:ca77:cef0]) by SJ0PR08MB8288.namprd08.prod.outlook.com ([fe80::708f:4a6d:ca77:cef0%9]) with mapi id 15.20.5676.017; Thu, 29 Sep 2022 12:31:45 +0000
From: "Randy Armstrong (OPC)" <randy.armstrong@opcfoundation.org>
To: "quic@ietf.org" <quic@ietf.org>
Subject: Request for Authenticated but not Encrypted Traffic
Thread-Topic: Request for Authenticated but not Encrypted Traffic
Thread-Index: AdjT/etteyPc96T0SA+BuKbhQ9/5AQ==
Date: Thu, 29 Sep 2022 12:31:45 +0000
Message-ID: <SJ0PR08MB82889F488CCA7D8FC4997ACEFA579@SJ0PR08MB8288.namprd08.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=opcfoundation.org;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: SJ0PR08MB8288:EE_|SJ0PR08MB6589:EE_
x-ms-office365-filtering-correlation-id: e0df13e3-e394-44d6-9f49-08daa216923f
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SJ0PR08MB8288.namprd08.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230022)(376002)(396003)(346002)(366004)(39840400004)(136003)(451199015)(33656002)(122000001)(2906002)(66476007)(86362001)(38070700005)(478600001)(64756008)(76116006)(8676002)(66946007)(66556008)(186003)(316002)(66446008)(6916009)(5660300002)(52536014)(4744005)(8936002)(83380400001)(71200400001)(41300700001)(55016003)(26005)(7696005)(9686003)(38100700002)(6506007); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_SJ0PR08MB82889F488CCA7D8FC4997ACEFA579SJ0PR08MB8288namp_"
MIME-Version: 1.0
X-OriginatorOrg: opcfoundation.org
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SJ0PR08MB8288.namprd08.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: e0df13e3-e394-44d6-9f49-08daa216923f
X-MS-Exchange-CrossTenant-originalarrivaltime: 29 Sep 2022 12:31:45.2813 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 2d8ef4e4-d41c-489c-8004-bb99304b60fe
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: GDFGMdsU9KH/4Hf7V7xgBxPmIphfRBN8K2AqeyO9m1PdjlA5b2lN3o737WtuobW3M5Amp270jOBpp2/fYKBab/ywjX3LIqyKUbWIrN7AEOWFRwMzP7KRNPhvxN2QCnjl
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SJ0PR08MB6589
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic/fITE0SQbw88XlAzDBaUn4DYWnp8>
X-BeenThere: quic@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Main mailing list of the IETF QUIC working group <quic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic>, <mailto:quic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic/>
List-Post: <mailto:quic@ietf.org>
List-Help: <mailto:quic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic>, <mailto:quic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 29 Sep 2022 12:31:53 -0000
The OPC Foundation is looking at deploying QUIC within factories as means for different OT devices to communicate with each other. In this environment, factory owners often wish to monitor traffic to check for anomalies. Encryption prevents this. For this reason, an authentication only option is essential to making QUIC a viable choice for communication within factories. Regards, Randy Armstrong OPC UA Security WG Chair
- Request for Authenticated but not Encrypted Traff… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Paul Vixie
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Roberto Peon
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Salz, Rich
- Re: Request for Authenticated but not Encrypted T… Paul Vixie
- Re: Request for Authenticated but not Encrypted T… Phillip Hallam-Baker
- Re: Request for Authenticated but not Encrypted T… Martin Thomson
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Eliot Lear
- Re: Request for Authenticated but not Encrypted T… Paul Vixie
- Re: Request for Authenticated but not Encrypted T… Carsten Bormann
- Re: Request for Authenticated but not Encrypted T… Paul Vixie
- Re: Request for Authenticated but not Encrypted T… Carsten Bormann
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Eliot Lear
- Re: Request for Authenticated but not Encrypted T… Lucas Pardue
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Eliot Lear
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Lars Eggert
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Behcet Sarikaya
- Re: Request for Authenticated but not Encrypted T… Phillip Hallam-Baker
- Re: Request for Authenticated but not Encrypted T… Phillip Hallam-Baker
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Matt Joras
- Re: Request for Authenticated but not Encrypted T… Paul Vixie
- Re: Request for Authenticated but not Encrypted T… Dave Taht
- Re: Request for Authenticated but not Encrypted T… Lucas Pardue
- Re: Request for Authenticated but not Encrypted T… Phillip Hallam-Baker
- Re: Request for Authenticated but not Encrypted T… Christian Huitema
- Re: Request for Authenticated but not Encrypted T… Phillip Hallam-Baker
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Christian Huitema
- Re: Request for Authenticated but not Encrypted T… Christian Huitema
- Re: Request for Authenticated but not Encrypted T… Phillip Hallam-Baker
- RE: Request for Authenticated but not Encrypted T… Randy Armstrong (OPC)
- Re: Request for Authenticated but not Encrypted T… Willy Tarreau
- Re: Request for Authenticated but not Encrypted T… Paul Vixie
- Re: Request for Authenticated but not Encrypted T… Lucas Pardue
- Re: Request for Authenticated but not Encrypted T… Phillip Hallam-Baker
- RE: Request for Authenticated but not Encrypted T… Antoine FRESSANCOURT
- Re: Request for Authenticated but not Encrypted T… Dirkjan Ochtman
- Re: Request for Authenticated but not Encrypted T… Behcet Sarikaya
- Re: Request for Authenticated but not Encrypted T… Lucas Pardue
- Re: Request for Authenticated but not Encrypted T… Phillip Hallam-Baker
- Re: Request for Authenticated but not Encrypted T… Lucas Pardue
- Re: Request for Authenticated but not Encrypted T… Martin Duke
- Re: Request for Authenticated but not Encrypted T… Michael Tuexen
- Re: Request for Authenticated but not Encrypted T… Roberto Peon
- Re: Request for Authenticated but not Encrypted T… Behcet Sarikaya
- Re: Request for Authenticated but not Encrypted T… Lucas Pardue
- Re: Request for Authenticated but not Encrypted T… Eliot Lear
- Re: Request for Authenticated but not Encrypted T… Phillip Hallam-Baker