[saag] MSEC report

Brian Weis <bew@cisco.com> Thu, 26 March 2009 17:54 UTC

Return-Path: <bew@cisco.com>
X-Original-To: saag@core3.amsl.com
Delivered-To: saag@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id D41B23A6E18 for <saag@core3.amsl.com>; Thu, 26 Mar 2009 10:54:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level:
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 62vsz2C58Zvs for <saag@core3.amsl.com>; Thu, 26 Mar 2009 10:54:10 -0700 (PDT)
Received: from sj-iport-2.cisco.com (sj-iport-2.cisco.com [171.71.176.71]) by core3.amsl.com (Postfix) with ESMTP id 1B9193A6E00 for <saag@ietf.org>; Thu, 26 Mar 2009 10:54:10 -0700 (PDT)
X-IronPort-AV: E=Sophos;i="4.38,427,1233532800"; d="scan'208";a="147114211"
Received: from sj-dkim-4.cisco.com ([171.71.179.196]) by sj-iport-2.cisco.com with ESMTP; 26 Mar 2009 17:55:03 +0000
Received: from sj-core-4.cisco.com (sj-core-4.cisco.com [171.68.223.138]) by sj-dkim-4.cisco.com (8.12.11/8.12.11) with ESMTP id n2QHt3fl023159 for <saag@ietf.org>; Thu, 26 Mar 2009 10:55:03 -0700
Received: from xbh-sjc-211.amer.cisco.com (xbh-sjc-211.cisco.com [171.70.151.144]) by sj-core-4.cisco.com (8.13.8/8.13.8) with ESMTP id n2QHt34J005896 for <saag@ietf.org>; Thu, 26 Mar 2009 17:55:03 GMT
Received: from xfe-sjc-211.amer.cisco.com ([171.70.151.174]) by xbh-sjc-211.amer.cisco.com with Microsoft SMTPSVC(6.0.3790.1830); Thu, 26 Mar 2009 10:55:03 -0700
Received: from dhcp-168a.meeting.ietf.org ([10.21.89.78]) by xfe-sjc-211.amer.cisco.com with Microsoft SMTPSVC(6.0.3790.1830); Thu, 26 Mar 2009 10:55:03 -0700
Message-Id: <393D2494-AD9E-4A8F-A3FA-20D43B51CD95@cisco.com>
From: Brian Weis <bew@cisco.com>
To: saag@ietf.org
Content-Type: text/plain; charset="US-ASCII"; format="flowed"; delsp="yes"
Content-Transfer-Encoding: 7bit
Mime-Version: 1.0 (Apple Message framework v930.3)
Date: Thu, 26 Mar 2009 10:55:02 -0700
X-Mailer: Apple Mail (2.930.3)
X-OriginalArrivalTime: 26 Mar 2009 17:55:03.0701 (UTC) FILETIME=[FD8DEC50:01C9AE3B]
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; l=1653; t=1238090103; x=1238954103; c=relaxed/simple; s=sjdkim4002; h=Content-Type:From:Subject:Content-Transfer-Encoding:MIME-Version; d=cisco.com; i=bew@cisco.com; z=From:=20Brian=20Weis=20<bew@cisco.com> |Subject:=20MSEC=20report |Sender:=20; bh=0mV7Q84TsBhjldEWoEpdrAwMOZfLH3Tyu5PLflmaWGg=; b=A8qsIZ5oE7QcB9cQpr+NUrDDkJOxA3whXbhKNfTRdZ+Xk5dJTWT8br3kgQ uSoyE/5rUvBdkR7adYPZcqMF/V/T9bODhOW29BvBtErip+V5JPvGzwuRyydp 2uiY48BXSV;
Authentication-Results: sj-dkim-4; header.From=bew@cisco.com; dkim=pass ( sig from cisco.com/sjdkim4002 verified; );
Subject: [saag] MSEC report
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/saag>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 26 Mar 2009 17:54:10 -0000

The MSEC WG met for about an 1.5 hours on Wednesday morning. It was  
noted that we are coming to the end of our active work items, and that  
it was time to consider whether to take on new work or shut down.

Sheela Rowles presented changes made to the GDOI Update draft (updates  
to RFC 3547). This I-D describes clarifications to the GDOI protocol  
based on implementation experience, and also adds a few new attributes  
to harmonize with other recent WG work items. It is ready for WG last  
call.

We had two proposals for new work items. Sheela stated the need for a  
GDOI MIB. Tim Polk cautioned against taking on MIB work unless there  
is a substantial number of participation from the WG. We'll take that  
to the mailing list. Seokung Yoon presented a draft that adds support  
for the SEED cipher to MIKEY. After discussion, it was determined that  
the WG did not object to its publication, but it was complete enough  
that there was no need for the WG to adopt it. Tim agreed to sponsor  
it as an individual contribution.

We concluded with a discussion of Gregory Lebovitz' KMART Roadmap I-D.  
It was pointed out that a number of the routing protocols mentioned in  
the I-D make use of group security in some or all use cases. A number  
of presentations introducing methods of providing automated key  
management for these routing protocols have been made in past MSEC WG  
meetings. A suggestion was made that since the WG was coming to the  
end of its current work items, it should consider re-chartering to  
allow us to address automated key management which could be used by  
those protocols.