[Secdispatch] EDHOC Summary

Thomas Watteyne <thomas.watteyne@inria.fr> Sat, 30 March 2019 17:31 UTC

Return-Path: <thomas.watteyne@inria.fr>
X-Original-To: secdispatch@ietfa.amsl.com
Delivered-To: secdispatch@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9060B1200CC; Sat, 30 Mar 2019 10:31:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.899
X-Spam-Level:
X-Spam-Status: No, score=-6.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PCSEyB2ypii5; Sat, 30 Mar 2019 10:31:54 -0700 (PDT)
Received: from mail2-relais-roc.national.inria.fr (mail2-relais-roc.national.inria.fr [192.134.164.83]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 16B801201B1; Sat, 30 Mar 2019 10:31:52 -0700 (PDT)
X-IronPort-AV: E=Sophos;i="5.60,289,1549926000"; d="scan'208,217";a="376473409"
X-MGA-submission: MDHNPEqKlJbWPaW2lqKSfzv9HAnL3RECr8KU9DbVxa66qk/uaz4W8gohYyuHHsv8ut3S/HfHGEO1cpJ4sIiHp99lu6aqt0re9uzfvBYGi3C6A5qQdd/6a/OvHLI9NH6vyWI2pS2T5iw2rQr5C4ASqV479T/voV+u8lkgMNpnyVcpEw==
Received: from zcs-store9.inria.fr ([128.93.142.36]) by mail2-relais-roc.national.inria.fr with ESMTP; 30 Mar 2019 18:31:29 +0100
Date: Sat, 30 Mar 2019 18:31:29 +0100
From: Thomas Watteyne <thomas.watteyne@inria.fr>
To: secdispatch@ietf.org
Cc: 6tisch <6tisch@ietf.org>, 6tisch-chairs <6tisch-chairs@ietf.org>
Message-ID: <1912967484.2862085.1553967089097.JavaMail.zimbra@inria.fr>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="=_de9eb10a-f277-465d-95ba-1c814628f32d"
X-Originating-IP: [128.93.183.45]
X-Mailer: Zimbra 8.7.11_GA_3789 (ZimbraWebClient - GC73 (Win)/8.7.11_GA_3789)
Thread-Index: 3ogcPYDenFGsRTCB8gJNHpq5AmS49w==
Thread-Topic: EDHOC Summary
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdispatch/nHQhxQ1v40HJ_8LuHvu3mC7b9Vg>
Subject: [Secdispatch] EDHOC Summary
X-BeenThere: secdispatch@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Dispatch <secdispatch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdispatch/>
List-Post: <mailto:secdispatch@ietf.org>
List-Help: <mailto:secdispatch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 30 Mar 2019 17:31:57 -0000

The 6TiSCH WG has produced a set of documents [1,2] that specify the use of OSCORE to secure message exchanges at the application layer including network access. At the side meeting in Prague two years ago involving several ADs and WG chairs, the 6TiSCH chairs have indicated the need for an efficient authenticated key exchange protocol that we could use during the network access to key OSCORE. We have also restated this request at the SECDISPATCH interim a couple of weeks ago. 

The EDHOC specification was discussed on numerous occasions during the 6TiSCH working group meetings and the approach on using it for the extension of [1] towards zero-touch [3] deployments had a wide consensus. We welcome the work in this area to be done, and strongly support any decision of the security ADs that leads to the fast progress of this specification. 

[1] [ https://datatracker.ietf.org/doc/draft-ietf-6tisch-minimal-security/ | https://datatracker.ietf.org/doc/draft-ietf-6tisch-minimal-security/ ] 
[2] [ https://datatracker.ietf.org/doc/draft-ietf-6tisch-architecture/ | https://datatracker.ietf.org/doc/draft-ietf-6tisch-architecture/ ] 
[3] [ https://datatracker.ietf.org/doc/draft-ietf-6tisch-dtsecurity-zerotouch-join/ | https://datatracker.ietf.org/doc/draft-ietf-6tisch-dtsecurity-zerotouch-join/ ]