Re: [Teep] New Version Notification for draft-faibish-iot-ddos-usecases-00.txt

<Faibish.Sorin@dell.com> Mon, 08 July 2019 01:56 UTC

Return-Path: <Faibish.Sorin@dell.com>
X-Original-To: teep@ietfa.amsl.com
Delivered-To: teep@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BFF461200DB for <teep@ietfa.amsl.com>; Sun, 7 Jul 2019 18:56:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.7
X-Spam-Level:
X-Spam-Status: No, score=-2.7 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=dell.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id heCUmFXEYLv0 for <teep@ietfa.amsl.com>; Sun, 7 Jul 2019 18:56:37 -0700 (PDT)
Received: from mx0a-00154904.pphosted.com (mx0a-00154904.pphosted.com [148.163.133.20]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4889412008B for <teep@ietf.org>; Sun, 7 Jul 2019 18:56:37 -0700 (PDT)
Received: from pps.filterd (m0170391.ppops.net [127.0.0.1]) by mx0a-00154904.pphosted.com (8.16.0.27/8.16.0.27) with SMTP id x681scGE018828 for <teep@ietf.org>; Sun, 7 Jul 2019 21:56:36 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=dell.com; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-transfer-encoding : mime-version; s=smtpout1; bh=cahSHFU0Xv0Aa7dVf4c/PlM2bP73nx0zoAEFxYfRxDo=; b=ef7azuYSeey3WQEmiQZnpgg/06NTlC1CYPaOxuojIwM6JvaPoT8GqofGKaW/6L5muCTn ifVXeNsnLJTHxMTJbTB3RQoW5Abfd5FhlmNS73Vq5Wx09M6vGG5n0gitn6LPdd3hae3y 44R2dtvB33XR00R+CE9zfgRsz0DCLqqUpF1fqY+QoLKkYIEExuREicgB3dr/YcfF7v5a E774hyWnZOnGpqpaWgcY6gAbIvztJZRlWBUxADR/QKMTnoDynSEbWEQWNiC4y4BAEq6Z PIKM4fFNcA8xQftfLNufDCT7nQ0XZgS4g6C0UrUSbS7wiNCHJJpx5nW/3UNowDqJemXy IQ==
Received: from mx0b-00154901.pphosted.com (mx0b-00154901.pphosted.com [67.231.157.37]) by mx0a-00154904.pphosted.com with ESMTP id 2tjpsuw47c-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT) for <teep@ietf.org>; Sun, 07 Jul 2019 21:56:36 -0400
Received: from pps.filterd (m0144103.ppops.net [127.0.0.1]) by mx0b-00154901.pphosted.com (8.16.0.27/8.16.0.27) with SMTP id x681qh93083632 for <teep@ietf.org>; Sun, 7 Jul 2019 21:56:35 -0400
Received: from ausxippc101.us.dell.com (ausxippc101.us.dell.com [143.166.85.207]) by mx0b-00154901.pphosted.com with ESMTP id 2tktxm8xrp-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK) for <teep@ietf.org>; Sun, 07 Jul 2019 21:56:35 -0400
X-LoopCount0: from 10.166.132.23
X-PREM-Routing: D-Outbound
X-IronPort-AV: E=Sophos;i="5.60,346,1549951200"; d="scan'208";a="1267799199"
From: Faibish.Sorin@dell.com
To: teep@ietf.org
CC: ncamwing@cisco.com, Hannes.Tschofenig@arm.com
Thread-Topic: New Version Notification for draft-faibish-iot-ddos-usecases-00.txt
Thread-Index: AQHVNS632jLIyKh4jEq5Diu2xKk0VKa/9Q8A
Date: Mon, 08 Jul 2019 01:56:33 +0000
Message-ID: <b2d9239603724ed1bd52da0f0de76962@x13pwdurdag1001.AMER.DELL.COM>
References: <156255024241.5298.14478872880458618445.idtracker@ietfa.amsl.com>
In-Reply-To: <156255024241.5298.14478872880458618445.idtracker@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_17cb76b2-10b8-4fe1-93d4-2202842406cd_Enabled=True; MSIP_Label_17cb76b2-10b8-4fe1-93d4-2202842406cd_SiteId=945c199a-83a2-4e80-9f8c-5a91be5752dd; MSIP_Label_17cb76b2-10b8-4fe1-93d4-2202842406cd_Owner=faibish_sorin@emc.com; MSIP_Label_17cb76b2-10b8-4fe1-93d4-2202842406cd_SetDate=2019-07-08T01:56:23.8484014Z; MSIP_Label_17cb76b2-10b8-4fe1-93d4-2202842406cd_Name=External Public; MSIP_Label_17cb76b2-10b8-4fe1-93d4-2202842406cd_Application=Microsoft Azure Information Protection; MSIP_Label_17cb76b2-10b8-4fe1-93d4-2202842406cd_Extended_MSFT_Method=Manual; aiplabel=External Public
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.143.242.75]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:, , definitions=2019-07-08_01:, , signatures=0
X-Proofpoint-Spam-Details: rule=outbound_notspam policy=outbound score=0 priorityscore=1501 malwarescore=0 suspectscore=0 phishscore=0 bulkscore=0 spamscore=0 clxscore=1015 lowpriorityscore=0 mlxscore=0 impostorscore=0 mlxlogscore=999 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1810050000 definitions=main-1907080023
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 priorityscore=1501 malwarescore=0 suspectscore=0 phishscore=0 bulkscore=0 spamscore=0 clxscore=1015 lowpriorityscore=0 mlxscore=0 impostorscore=0 mlxlogscore=999 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1810050000 definitions=main-1907080024
Archived-At: <https://mailarchive.ietf.org/arch/msg/teep/TfOkk0rZjnlLpU-BojWaR_mDx3U>
Subject: Re: [Teep] New Version Notification for draft-faibish-iot-ddos-usecases-00.txt
X-BeenThere: teep@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: A Protocol for Dynamic Trusted Execution Environment Enablement <teep.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/teep>, <mailto:teep-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/teep/>
List-Post: <mailto:teep@ietf.org>
List-Help: <mailto:teep-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/teep>, <mailto:teep-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 Jul 2019 01:56:40 -0000

Nancy and Hannes,

I posted a new private draft including 3 new IoT usecases targeted to DDoS attacks. I would like to ask for 10 minutes during Montreal meeting to present it to the TEEP WG. Thank you

./Sprin 

-----Original Message-----
From: internet-drafts@ietf.org <internet-drafts@ietf.org> 
Sent: Sunday, July 7, 2019 9:44 PM
To: faibish, sorin
Subject: New Version Notification for draft-faibish-iot-ddos-usecases-00.txt


[EXTERNAL EMAIL] 


A new version of I-D, draft-faibish-iot-ddos-usecases-00.txt
has been successfully submitted by Sorin Faibish and posted to the IETF repository.

Name:		draft-faibish-iot-ddos-usecases
Revision:	00
Title:		Usecases definition for IoT DDoS attacks prevention
Document date:	2019-07-07
Group:		Individual Submission
Pages:		9
URL:            https://www.ietf.org/internet-drafts/draft-faibish-iot-ddos-usecases-00.txt
Status:         https://datatracker.ietf.org/doc/draft-faibish-iot-ddos-usecases/
Htmlized:       https://tools.ietf.org/html/draft-faibish-iot-ddos-usecases-00
Htmlized:       https://datatracker.ietf.org/doc/html/draft-faibish-iot-ddos-usecases


Abstract:
   This document specifies several usecases related to the different
   ways IoT devices are exploited by malicious adversaries to
   instantiate Distributed Denial of Services (DDoS) attacks. The
   attacks are generted from IoT devices that have no proper protection
   against generating unsolicited communication messages targeting a
   certain network and creating large amounts of network traffic. The
   attackers take advantage of breaches in the configuration data in
   unprotected IoT devices exploited for DDoS attacks. The attackers
   take advantage of the IoT devices that can send network packets
   that were generated by malicious code that interacts with an OS
   implementation that runs on the IoT devices. The prupose of this
   draft is to prsent possible IoT DDoS usecases that need to be
   prevented by TEE. The major enabler of such attacks is related to
   IoT devices that have no OS or unprotected EE OS and run
   code that is downloaded to them from the TA and modified by
   man-in-the-middle that inserts malicious code in the OS.

                                                                                  


Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org.

The IETF Secretariat