[sidr] FW: New Version Notification for draft-sriram-replay-protection-design-discussion-00.txt

"Sriram, Kotikalapudi" <kotikalapudi.sriram@nist.gov> Fri, 21 September 2012 23:19 UTC

Return-Path: <kotikalapudi.sriram@nist.gov>
X-Original-To: sidr@ietfa.amsl.com
Delivered-To: sidr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A1FB021E8092 for <sidr@ietfa.amsl.com>; Fri, 21 Sep 2012 16:19:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level:
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Mx2wz8oQNOiP for <sidr@ietfa.amsl.com>; Fri, 21 Sep 2012 16:19:28 -0700 (PDT)
Received: from wsget2.nist.gov (wsget2.nist.gov [129.6.13.151]) by ietfa.amsl.com (Postfix) with ESMTP id 5ECA121E805A for <sidr@ietf.org>; Fri, 21 Sep 2012 16:19:28 -0700 (PDT)
Received: from WSXGHUB1.xchange.nist.gov (129.6.18.96) by wsget2.nist.gov (129.6.13.151) with Microsoft SMTP Server (TLS) id 14.1.379.0; Fri, 21 Sep 2012 19:19:17 -0400
Received: from MBCLUSTER.xchange.nist.gov ([fe80::d479:3188:aec0:cb66]) by WSXGHUB1.xchange.nist.gov ([129.6.18.96]) with mapi; Fri, 21 Sep 2012 19:19:22 -0400
From: "Sriram, Kotikalapudi" <kotikalapudi.sriram@nist.gov>
To: "sidr wg list (sidr@ietf.org)" <sidr@ietf.org>
Date: Fri, 21 Sep 2012 19:19:21 -0400
Thread-Topic: New Version Notification for draft-sriram-replay-protection-design-discussion-00.txt
Thread-Index: Ac2YT4fJC0t5HA0aQJeHmSOjvzko+g==
Message-ID: <D7A0423E5E193F40BE6E94126930C4930BA86CE472@MBCLUSTER.xchange.nist.gov>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Subject: [sidr] FW: New Version Notification for draft-sriram-replay-protection-design-discussion-00.txt
X-BeenThere: sidr@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Secure Interdomain Routing <sidr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidr>, <mailto:sidr-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/sidr>
List-Post: <mailto:sidr@ietf.org>
List-Help: <mailto:sidr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 21 Sep 2012 23:19:29 -0000

This submission is an informative design discussion document that provides insights 
into the operation of multiple alternative methods for replay-attack protection. 
We hope that the SIDR WG will take the insights and trade-offs presented here as input 
for deciding on the choice of a mechanism for protection from replay attacks.
It is meant to be a companion document to the standards track 
I-D.-ietf-sidr-bgpsec-rollover that will specify a method to be used 
with BGPSEC for replay-attack protection.

A set slides with figures that is referenced in the document can be found at:
http://www.nist.gov/itl/antd/upload/replay-discussion.pdf 
(the figures are helpful but not necessary to read the document).

Comments welcome.

Sriram

-----Original Message-----
From: internet-drafts@ietf.org [mailto:internet-drafts@ietf.org] 
Sent: Friday, September 21, 2012 7:01 PM
To: sriram.ietf@gmail.com
Cc: Montgomery, Douglas; Sriram, Kotikalapudi
Subject: New Version Notification for draft-sriram-replay-protection-design-discussion-00.txt


A new version of I-D, draft-sriram-replay-protection-design-discussion-00.txt
has been successfully submitted by Kotikalapudi Sriram and posted to the IETF repository.

Filename:	 draft-sriram-replay-protection-design-discussion
Revision:	 00
Title:		 Design Discussion and Comparison of Replay-Attack Protection Mechanisms for BGPSEC
Creation date:	 2012-09-22
WG ID:		 Individual Submission
Number of pages: 17
URL:             http://www.ietf.org/internet-drafts/draft-sriram-replay-protection-design-discussion-00.txt
Status:          http://datatracker.ietf.org/doc/draft-sriram-replay-protection-design-discussion
Htmlized:        http://tools.ietf.org/html/draft-sriram-replay-protection-design-discussion-00


Abstract:
   The BGPSEC protocol requires a method for protection from replay
   attacks, at least to control the window of exposure.  In the context
   of BGPSEC, a replay attack occurs when an adversary suppresses a
   prefix withdrawal (implicit or explicit) or replays a previously
   received BGPSEC announcement for a prefix that has since been
   withdrawn.  This informational document provides design discussion
   and comparison of multiple alternative replay-attack protection
   mechanisms weighing their pros and cons.  It is meant to be a
   companion document to the standards track I-D.-ietf-sidr-bgpsec-
   rollover that will specify a method to be used with BGPSEC for
   replay-attack protection.