Re: [tsvwg] DTLS 1.3 over SCTP

Claudio Porfiri <claudio.porfiri@ericsson.com> Fri, 14 July 2023 06:04 UTC

Return-Path: <claudio.porfiri@ericsson.com>
X-Original-To: tsvwg@ietfa.amsl.com
Delivered-To: tsvwg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E9279C151AF1 for <tsvwg@ietfa.amsl.com>; Thu, 13 Jul 2023 23:04:09 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.1
X-Spam-Level:
X-Spam-Status: No, score=-2.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id A1rHCd27BfBF for <tsvwg@ietfa.amsl.com>; Thu, 13 Jul 2023 23:04:06 -0700 (PDT)
Received: from EUR02-VI1-obe.outbound.protection.outlook.com (mail-vi1eur02on2054.outbound.protection.outlook.com [40.107.241.54]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1DDC1C15199B for <tsvwg@ietf.org>; Thu, 13 Jul 2023 23:04:05 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=HMlrdtNcwTgctoplwFdeiqu5+/rFL+n6rhgvFxr6iCm3QU2KdKtKDZzkpwBU0GPLT7oqYJRJWQcafeCoO9WliO9nILnrENrfxnSMj9BpNGz+vmP/J2fx0z91beHMHo46o8yREKJeEPKfraHnwYZJsl+p6td0Zm5pTn0D77KgUSaGIThG5CVHqqaIvUgw7PUCVDWTc/sneM4XedKS3/MuhckPjEDcY3e3Vg6jJpU8QPwZtYDY3wxx/hmYijvndex+4YkjaauJY3vRM5xnKZEUSzHTLPRH2wPrTD8VqcJqjWFilOkcl9wYigQoZ05aSs53q26DbYX/PUUohsvE6PFvGQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Pf407IZUheSKiMAohEywmY9Y2eJ/vee4rtFwnNwZ154=; b=DdVh69UYlXyAYDcSrg64PN/poszKWck4o3ubCj1Bfke28ZhJSzH4jSmW2lkERSANLcJAkz1Yvfg3S+apIk64U6DQLWu4Vkb1bc1vLAOBNFnUEhqoSBd4Zw+w+7XktR5qa2Gi0YISnW7B0BwBKvaPghq83pJHZzaCcCU0Ijutbft3tcX7X2aeL0eCfokav9yElQVtm2Z/RmSkkNuZh4LjobOtobVrFQKwDXVazt9i1n1GT36ZUpGyr2+AfZuz+fkz6V9sj84UwARs1P5JBASEmYI15Ih/C1LwnD1P1cIaitV7z/AH7zbQo8njJiGNoHoCHV/rozvbagav+jm7F1JWYA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Pf407IZUheSKiMAohEywmY9Y2eJ/vee4rtFwnNwZ154=; b=t4nKjvvbeMXzaMy9BJHv0ud7yqf/fE3aRsGgiUKmYl0BU8A2O1Mx+t6aG66TrNj+IqLQaGkBWxIMcviwxS5afDbDFA7D7CrSXEANYxPqDg0zosxI/FFN9/QgOl6uWNcQTjjGHFQzpPwC3qb604J60Wv/XtQh9U8MVagqAhrcfew=
Received: from PA4PR07MB7568.eurprd07.prod.outlook.com (2603:10a6:102:c7::23) by VI1PR07MB6511.eurprd07.prod.outlook.com (2603:10a6:800:188::19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6588.27; Fri, 14 Jul 2023 06:04:03 +0000
Received: from PA4PR07MB7568.eurprd07.prod.outlook.com ([fe80::1da7:c3f9:8b83:f094]) by PA4PR07MB7568.eurprd07.prod.outlook.com ([fe80::1da7:c3f9:8b83:f094%4]) with mapi id 15.20.6588.027; Fri, 14 Jul 2023 06:04:03 +0000
From: Claudio Porfiri <claudio.porfiri@ericsson.com>
To: Michael Tuexen <michael.tuexen@lurchi.franken.de>
CC: tsvwg IETF list <tsvwg@ietf.org>
Thread-Topic: [tsvwg] DTLS 1.3 over SCTP
Thread-Index: AQHZtZdZY+0UEjTvCk2Bg7ZjVc5Tlq+4xbtQ
Date: Fri, 14 Jul 2023 06:04:02 +0000
Message-ID: <PA4PR07MB7568B70C363F70CA9CF005648734A@PA4PR07MB7568.eurprd07.prod.outlook.com>
References: <0C990143-D450-4288-9390-E06D3469FF1D@lurchi.franken.de>
In-Reply-To: <0C990143-D450-4288-9390-E06D3469FF1D@lurchi.franken.de>
Accept-Language: en-US, sv-SE
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ericsson.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: PA4PR07MB7568:EE_|VI1PR07MB6511:EE_
x-ms-office365-filtering-correlation-id: 2a6f77c1-92f7-49bf-2a5a-08db84301fd7
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: nZHQ86VBPEyLHPjqVpas6UkIe0xpt5W/XxwvwArkSHS1ZVYzD0YhPgLoUECET9j8JhsF/TPl/mtiPyj/mkmKAXIT8QyEt6M9WTHAILLcIE1jnn6dfzyqrlpjMQgeZ38jXlnVy9j9ERjT4f03Swn++OWyhEpxYgkd/U55kXbOSkJIurrirBblsOvokbSIqq1Q3qtOBPOVNCa8tweytsLZTaKslwGx1Px7yYPsKNAOIGFt6cCwh3uQXuS4mtwRIk+b3SOsmvCXTjRGX0GN820X8gdoZgEXGM0ZcQt/AXwWgcM31vlCYB+j4Sabv5c+FCtV/F2iMJRZTOLQChe5IfKueyEDufkMp787TUdfFdee/P/UbrTClbn705sotimkcB9Mz+ooI1hxBZypy2fn9yxIiAXos1v8nml5agOUGWfLi8on9p2a7bR/4JesC9POwmKaUhMWsdwBo/dsP09gwbje3a57YPAwW0fPuRDC59r+3Li/RgiHPO0GVYCXSwsvcpmtP/rM5v/oIfWDYhDnAo18qM3bof5JWnXRhwV6rl8e7BySSWry6qabqHiL8wAENcNFUdv6ksrCW2ODryGY+VNeeUiwPneyd0SyggmD7RmkFkkHojAxexMQvxxgrsEPiqYiKpJ6XnLBPGBTGb9P/7I25mwWe+YHsZxCwYCPYv0A71qwIJim3jcQEV4KoOuHJdPB
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PA4PR07MB7568.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230028)(4636009)(346002)(136003)(366004)(376002)(396003)(39860400002)(451199021)(41300700001)(55016003)(44832011)(66476007)(66446008)(64756008)(76116006)(4326008)(66946007)(66556008)(6916009)(478600001)(5660300002)(52536014)(66899021)(2906002)(8936002)(8676002)(316002)(71200400001)(7696005)(966005)(86362001)(82960400001)(26005)(9686003)(6506007)(53546011)(186003)(33656002)(83380400001)(38070700005)(38100700002)(122000001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PA4PR07MB7568.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 2a6f77c1-92f7-49bf-2a5a-08db84301fd7
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Jul 2023 06:04:03.0018 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: VzakVuYIbnZlKIWovahX4Pc86dwM+dcM3ZCmwMb7q8ZI9tdrQ9onGlJKckBSquIln2PNgzexc40SMnmxogKmtkdXZXZNrJ+rce3qBMPCmR4=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR07MB6511
Archived-At: <https://mailarchive.ietf.org/arch/msg/tsvwg/J6GtnEolgQyiufb5kKwqY7KoYiM>
Subject: Re: [tsvwg] DTLS 1.3 over SCTP
X-BeenThere: tsvwg@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Transport Area Working Group <tsvwg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tsvwg>, <mailto:tsvwg-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tsvwg/>
List-Post: <mailto:tsvwg@ietf.org>
List-Help: <mailto:tsvwg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tsvwg>, <mailto:tsvwg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 14 Jul 2023 06:04:10 -0000

Hi Michael,
I am reading this new draft but I have a quick comment at once.
The requirements from 3GPP towards SCTP are far beyond the limit of 64k, for instance S1-AP needs up to 142k.
This new draft improves the situation but doesn't solve it.

Best regards,
Claudio

-----Original Message-----
From: tsvwg <tsvwg-bounces@ietf.org> On Behalf Of Michael Tuexen
Sent: Thursday, 13 July 2023 16:35
To: tsvwg IETF list <tsvwg@ietf.org>
Subject: [tsvwg] DTLS 1.3 over SCTP

Dear all,

Hannes Tschofenig and myself have submitted an ID for using DTLS 1.3 over SCTP:
https://www.ietf.org/archive/id/draft-tuexen-tsvwg-rfc6083-bis-02.html

This is an alternative to
https://www.ietf.org/archive/id/draft-ietf-tsvwg-dtls-over-sctp-bis-06.html

Our document is based on RFC 6083. The major differences are:
* Use DTLS 1.3 instead of DTLS 1.0
* Use key updates instead of renegotiation. This limits the number of
  rekeyings to 2^64, but that should not limit in real world scenarios.
* Bump the maximum user message size to 64KB by using RFC 8449.

Any comments welcome.

Best regards
Michael