Re: [Suit] draft-ietf-suit-architecture-01

Brendan Moran <Brendan.Moran@arm.com> Tue, 03 July 2018 10:06 UTC

Return-Path: <Brendan.Moran@arm.com>
X-Original-To: suit@ietfa.amsl.com
Delivered-To: suit@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8A36B130DE4 for <suit@ietfa.amsl.com>; Tue, 3 Jul 2018 03:06:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.91
X-Spam-Level:
X-Spam-Status: No, score=-1.91 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, T_DKIMWL_WL_MED=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id b4E7pPWejFup for <suit@ietfa.amsl.com>; Tue, 3 Jul 2018 03:05:57 -0700 (PDT)
Received: from EUR01-HE1-obe.outbound.protection.outlook.com (mail-he1eur01on060a.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe1e::60a]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4FAF0130E3B for <suit@ietf.org>; Tue, 3 Jul 2018 03:05:56 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector1-arm-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=08jIwAzJIMQ/L3F57ju/dtfkn48HEYMcDEz9tV2jDuc=; b=O9g2jspkO3Q/k6mOmvvlWWQxGwY+yOF2KjLp9VSED1II4I3EdsQI6ubCFchmlvAUAtyfnOnyioObS5UQoQ/n1eTB7v9vsZ3hyFPXdAyiC0acqq70F5AqV5zL6SKOp6ZaMCWxrrSq5RPiIZ5XM4xmkw+vvL/j/WCEpKRNSeNV/sw=
Received: from AM4PR0802MB2260.eurprd08.prod.outlook.com (10.172.217.150) by AM4PR0802MB2194.eurprd08.prod.outlook.com (10.172.217.20) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.863.19; Tue, 3 Jul 2018 10:05:53 +0000
Received: from AM4PR0802MB2260.eurprd08.prod.outlook.com ([fe80::3c9f:d4ca:23a0:2aad]) by AM4PR0802MB2260.eurprd08.prod.outlook.com ([fe80::3c9f:d4ca:23a0:2aad%4]) with mapi id 15.20.0906.026; Tue, 3 Jul 2018 10:05:53 +0000
From: Brendan Moran <Brendan.Moran@arm.com>
To: Denis <denis.ietf@free.fr>
CC: "suit@ietf.org" <suit@ietf.org>
Thread-Topic: [Suit] draft-ietf-suit-architecture-01
Thread-Index: AQHUErR5GmKFWAWt3UWTuHjbKxqWO6R9RXAA
Date: Tue, 03 Jul 2018 10:05:53 +0000
Message-ID: <FB688460-FC6E-45EA-BB57-3C128D6F9D83@arm.com>
References: <VI1PR0801MB2112A08944328EE625D4DE5CFA430@VI1PR0801MB2112.eurprd08.prod.outlook.com> <ec04d5da-0b76-f4d7-c548-e69579530856@free.fr>
In-Reply-To: <ec04d5da-0b76-f4d7-c548-e69579530856@free.fr>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-mailer: Apple Mail (2.3445.8.2)
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Brendan.Moran@arm.com;
x-originating-ip: [217.140.96.140]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; AM4PR0802MB2194; 7:s132iIbxRHKhJjlka+VolC/tESxu1s/voGiPt93dXvmScKyENRYkhpJQWdTNRvPYwIYtxJzE6QsmxXIHnfZtfqMXEphzEHfUBkB5Lzh+8H8utIVrEYz0QkjEYIjJqraE/qV+yiOErNqDcRM2motamzWtUSE/tgkdbGxGcMDy2LiwD/2nR5C9ZqKdtZibX9uVlnTJR0AkgR8/ClnOi2E0JNhZEsdB4JGbNJkZ4W243+y29D74Aao5dcBykZ25/YLo
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-ms-office365-filtering-correlation-id: d2b6387f-7001-4f38-0ee1-08d5e0cc8ff8
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: UriScan:(223705240517415); BCL:0; PCL:0; RULEID:(7020095)(4652040)(8989117)(5600053)(711020)(48565401081)(4534165)(4627221)(201703031133081)(201702281549075)(8990107)(2017052603328)(7153060)(7193020); SRVR:AM4PR0802MB2194;
x-ms-traffictypediagnostic: AM4PR0802MB2194:
x-microsoft-antispam-prvs: <AM4PR0802MB219445926CE4FA4D6573A669EA420@AM4PR0802MB2194.eurprd08.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(191636701735510)(192374486261705)(189930954265078)(223705240517415)(238713787762100);
x-ms-exchange-senderadcheck: 1
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(8211001083)(6040522)(2401047)(5005006)(8121501046)(10201501046)(3002001)(93006095)(93001095)(3231254)(944501410)(52105095)(6055026)(149027)(150027)(6041310)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123560045)(20161123562045)(20161123558120)(20161123564045)(6072148)(201708071742011)(7699016); SRVR:AM4PR0802MB2194; BCL:0; PCL:0; RULEID:; SRVR:AM4PR0802MB2194;
x-forefront-prvs: 0722981D2A
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(396003)(136003)(346002)(366004)(39860400002)(376002)(53754006)(40434004)(189003)(199004)(446003)(2900100001)(3846002)(966005)(6436002)(54896002)(256004)(486006)(82746002)(6512007)(25786009)(106356001)(4326008)(76176011)(72206003)(236005)(6116002)(50226002)(2616005)(5250100002)(83716003)(26005)(6306002)(53546011)(6486002)(11346002)(4000630100001)(476003)(105586002)(86362001)(186003)(53936002)(6916009)(68736007)(33656002)(8676002)(2906002)(14454004)(81156014)(5024004)(66066001)(57306001)(8936002)(102836004)(5660300001)(99286004)(36756003)(606006)(316002)(6246003)(97736004)(478600001)(7736002)(81166006)(14444005)(6506007)(229853002)(15866825006); DIR:OUT; SFP:1101; SCL:1; SRVR:AM4PR0802MB2194; H:AM4PR0802MB2260.eurprd08.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: arm.com does not designate permitted sender hosts)
x-microsoft-antispam-message-info: rvk8pzVjw31TbNEek13956gnvWF2iv1k1I1sWuoTYXSfI0LMLDwBrx6Wi/cu0qDfbaAbFbiAfh1oGEXBkaSmtulwRV3N63LEQqi9aSND/WgEGwQsVP+k5AJm9zUh+GssyXTSHW6DWC3Nrov4nsfVDS41M4IteL8ZHSyWCBkBYMNxgqb49lWA3RpGR8QBowaf9hETaUwRi3Cj02kyBR6PeFV9vip5ynuyi7TZu666ZY+t90p/cRRQpob/IT+7h3uxFoVk4UtmLYRFKxSxHICvme8qc4GDfeB9zhY+nF3A3vX0FtAFKf8ZCh0RORbDi0MDyxiIFiMpBDDObFw3UZ07zZgsld/8zA1BGQdHreRKJFo=
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_FB688460FC6E45EABB573C128D6F9D83armcom_"
MIME-Version: 1.0
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-Network-Message-Id: d2b6387f-7001-4f38-0ee1-08d5e0cc8ff8
X-MS-Exchange-CrossTenant-originalarrivaltime: 03 Jul 2018 10:05:53.4540 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM4PR0802MB2194
Archived-At: <https://mailarchive.ietf.org/arch/msg/suit/pr2IybhfC1qz9keJ4oQ-9Ne-FGg>
Subject: Re: [Suit] draft-ietf-suit-architecture-01
X-BeenThere: suit@ietf.org
X-Mailman-Version: 2.1.26
Precedence: list
List-Id: Software Updates for Internet of Things <suit.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/suit>, <mailto:suit-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/suit/>
List-Post: <mailto:suit@ietf.org>
List-Help: <mailto:suit-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/suit>, <mailto:suit-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Jul 2018 10:06:01 -0000

Hi Denis,

Is the rollback question adequately covered in the information model?

Thanks,
Brendan

On 3 Jul 2018, at 10:58, Denis <denis.ietf@free.fr<mailto:denis.ietf@free.fr>> wrote:

Hannes,

It is well known that software updates are often done to address a security issue. The same applies
to firmware updates. The current draft is lacking to address protections against the downloading of
an old firmware version. The threat should be mentioned in the security considerations section.

The main body of the document should mention mechanisms to prevent the replay of an old version
of the firmware.

Denis

Hi all,

I have just submitted version -01 of the architecture document. I have incorporate feedback from the working group, such as
•         New terminology,
•         Updates on the operating modes
•         New architecture figures,
•         New use cases (by David Brown)

Here is the new version:
https://tools.ietf.org/html/draft-ietf-suit-architecture-01

Here is the diff:
https://tools.ietf.org/rfcdiff?url2=draft-ietf-suit-architecture-01.txt

Feedback is appreciated.

Ciao
Hannes
IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.


_______________________________________________
Suit mailing list
Suit@ietf.org<mailto:Suit@ietf.org>
https://www.ietf.org/mailman/listinfo/suit



_______________________________________________
Suit mailing list
Suit@ietf.org<mailto:Suit@ietf.org>
https://www.ietf.org/mailman/listinfo/suit

IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.