[6tisch] (suggested disposition) Re: Last call for draft-ietf-6tisch-architecture-05

Rene Struik <rstruik.ext@gmail.com> Fri, 06 March 2015 00:27 UTC

Return-Path: <rstruik.ext@gmail.com>
X-Original-To: 6tisch@ietfa.amsl.com
Delivered-To: 6tisch@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5FB071A6FFA for <6tisch@ietfa.amsl.com>; Thu, 5 Mar 2015 16:27:12 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id VaJV3IoIX2JZ for <6tisch@ietfa.amsl.com>; Thu, 5 Mar 2015 16:27:08 -0800 (PST)
Received: from mail-ie0-x22d.google.com (mail-ie0-x22d.google.com [IPv6:2607:f8b0:4001:c03::22d]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B20CF1A6FF7 for <6tisch@ietf.org>; Thu, 5 Mar 2015 16:27:08 -0800 (PST)
Received: by iecar1 with SMTP id ar1so81544863iec.0 for <6tisch@ietf.org>; Thu, 05 Mar 2015 16:27:08 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=message-id:date:from:user-agent:mime-version:to:cc:subject :references:in-reply-to:content-type; bh=6ERtMuyfpzQcexjHtAiZm9FJPd6V7O03S4nNELVRSYU=; b=xH2HNF8vOtEfykKqRC4LnlRTVzsnX+Q9Dcl3RBswQB/yFMtDzeGEHmhFbWPcR9+XBI FNxFmGRj4rxWToyk3pH5RBa1DpKa6/pZ9+zjDnZmXyxkGATlc5ild4K8pvUnviADAvr2 BNcgJRcHVN+NqPellg7KFbgdOieBYF2YM4dRvTH5VT+0N2so+B6tv3PhSpz9Fs3jD2wm F7xqpTMWgCz72KWSepViw/3QtPIg7tdZlDtEgo+eU9xLv858ydRY9QpsOh2B5t6CxYwN abO7aRl6ZNLcDgX4htFkgRP1DpRprV7lCcHBMZltvJSpzVKG0+AObvyKBcKqicbVtdXO m1uQ==
X-Received: by 10.50.254.4 with SMTP id ae4mr24064336igd.10.1425601628208; Thu, 05 Mar 2015 16:27:08 -0800 (PST)
Received: from [192.168.0.10] (CPE7cb21b2cb904-CM7cb21b2cb901.cpe.net.cable.rogers.com. [99.231.49.38]) by mx.google.com with ESMTPSA id ue2sm60864igc.1.2015.03.05.16.27.07 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Thu, 05 Mar 2015 16:27:07 -0800 (PST)
Message-ID: <54F8F44C.2040003@gmail.com>
Date: Thu, 05 Mar 2015 19:26:52 -0500
From: Rene Struik <rstruik.ext@gmail.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:31.0) Gecko/20100101 Thunderbird/31.5.0
MIME-Version: 1.0
To: Jonathan Simon <jsimon@linear.com>, "Shwetha Bhandari (shwethab)" <shwethab@cisco.com>
References: <D102A287.1FF12F%shwethab@cisco.com> <59402AFF-A6D9-4F74-9B95-A7275431F767@linear.com>
In-Reply-To: <59402AFF-A6D9-4F74-9B95-A7275431F767@linear.com>
Content-Type: multipart/alternative; boundary="------------090603020105090800020102"
Archived-At: <http://mailarchive.ietf.org/arch/msg/6tisch/_x5ykshuuEiLsp5lrLCbgD0P_8k>
Cc: "6tisch@ietf.org" <6tisch@ietf.org>
Subject: [6tisch] (suggested disposition) Re: Last call for draft-ietf-6tisch-architecture-05
X-BeenThere: 6tisch@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Discuss link layer model for Deterministic IPv6 over the TSCH mode of IEEE 802.15.4e, and impacts on RPL and 6LoWPAN such as resource allocation" <6tisch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/6tisch>, <mailto:6tisch-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/6tisch/>
List-Post: <mailto:6tisch@ietf.org>
List-Help: <mailto:6tisch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/6tisch>, <mailto:6tisch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 06 Mar 2015 00:27:12 -0000

Hi Jonathan:

Please find below my suggested resolution of your comments related to 
security.

Best regards, Rene


On 2/17/2015 1:49 PM, Jonathan Simon wrote:
> My 2¢ feedback on the security section:
>
> 13 - Sending link-layer frames in the clear in the initial stage of 
> joining is not providing any benefit. We should always use 
> authentication, even if the key is not secret, as it provides the 
> ability to reject similar frames from other 802.15.4-based protocols. 
>  It also isn’t necessary to discuss such a detail here.
RS>>
I would suggest we replace the first sentence of p. 31, 1st para by the 
following one:
"This architecture operates on IEEE802.15.4 and expects link-layer 
security to be enabled at all times between connected devices, except 
for the very first step of the device join process, where a joining 
device may need some initial, unsecured exchanges so as to obtain its 
initial key material."
<<RS
>
> 13.1  -
> * "Triage" - So the JCE decides which nodes are more important and 
> assigns resources to them first? How?  Note this term is not used in 
> draft-richardson-6tisch-security-architecture-02.
> * "arbitrage" should be “arbitrate”
RS>>
I would suggest changing the definition of the JCE (p. 31, logical 
elements enumeration) to the following, to reflect this: "A Join 
Coordination Entity (JCE) that arbitrates network access and hands out 
network parameters (such as keying material);".

This brings it nicely in line with the use of arbitraging on the next 
page (p. 32, 3rd para, third line), where "that arbitrages" is replaced 
by "that arbitrates".
<<RS
>
> Other than that, it seem to be capturing the overall spirit of the 
> security architecture and highlights the open areas of security 
> discussion, e.g. that PANA is an open issue.
>
> Couple minor points:
> -- 
> Jonathan Simon, Ph. D
> Director of Systems Engineering
> Linear Technology, Dust Networks product group
> 32990 Alvarado-Niles Road, Suite 910
> Union City, CA 94587
> (510) 400-2936
> (510) 489-3799 FAX
> jsimon@linear.com <mailto:jsimon@linear.com>
>
> **LINEAR TECHNOLOGY CORPORATION**
> *****Internet Email Confidentiality Notice*****
>  This e-mail transmission, and any documents, files or previous 
> e-mail messages attached to it may contain confidential information 
> that is legally privileged. If you are not the intended recipient, or 
> a person responsible for delivering it to the intended recipient, you 
> are hereby notified that any disclosure, copying, distribution or use 
> of any of the information contained in or attached to this 
> transmission is STRICTLY PROHIBITED. If you have received 
> this transmission in error, please immediately notify me by reply 
> e-mail, or by telephone at (510) 400-2936, and destroy the 
> original transmission and its attachments without reading or saving in 
> any manner. Thank you.
>
> On Feb 12, 2015, at 5:06 AM, Shwetha Bhandari (shwethab) 
> <shwethab@cisco.com <mailto:shwethab@cisco.com>> wrote:
>
>> Hello All,
>>
>> We are down to the last week of this last call, and haven't received 
>> any comments/vote yet.
>> Please review and send in your comments / vote, this last call ends 
>> on 18th Feb.
>>
>> Thanks,
>> Shwetha
>>
>> From: Shwetha bhandari <shwethab@cisco.com <mailto:shwethab@cisco.com>>
>> Date: Wednesday, January 28, 2015 7:05 PM
>> To: "6tisch@ietf.org <mailto:6tisch@ietf.org>" <6tisch@ietf.org 
>> <mailto:6tisch@ietf.org>>
>> Subject: [6tisch] Last call for draft-ietf-6tisch-architecture-05
>>
>> Hello All,
>>
>> As discussed at the interim meeting last week, we are continuing a 
>> series of last calls for the drafts that the group produced over the 
>> course of the last 2 years.
>> This call is for the architecture draft 
>> http://tools.ietf.org/html/draft-ietf-6tisch-architecture-05 
>> <http://cp.mcafee.com/d/1jWVIqdEI9IzC76jhOyrKrhs7cFCQn1PbVJ5MsqekkSjhOrsuuusoLsS8QAHm0afB3ZzOVI-kfSfbCNPX-SgovW_cnKqemmeLsKCOOeUttBBdDBHFShjlhhsVkffGhBrwqrhdECXYyMCY-ehojd79KVI07eJjWtbVKY01M7ox7npBVvdQKVelb4O-NIjBfXjrzVuXVJOsGm9BO5mUm-waBYTu00CQrInsdwLQzh0qmT9OFoCqnjh05tFcQgmQYYQgeRyq848WXcLbVKBT9OFoCnSdysF_qrsvbTvdKndDCi_Ys-j>. 
>> Since both chairs are co-authors, I will be shepherding this 
>> particular document.
>> The call will last for three weeks ending on 18-Feb-2015 and outcome 
>> of the last call will be discussed at the interim call on Friday 
>> 20-Feb-2015, 7AM pacific; please express support or concerns about 
>> the publication of this work, which is originally aimed at 
>> informational status.
>>
>> Thanks,
>> Shwetha
>> _______________________________________________
>> 6tisch mailing list
>> 6tisch@ietf.org <mailto:6tisch@ietf.org>
>> http://cp.mcafee.com/d/1jWVIp4wUq43qb2r8VxNAQsECXCQn1PapJ5MsO-rhs76zB5dAQsCT7DDD6bTdyd9aRw2zVg_oYKrfB3ZzOVIs-_JA67-LP5XCzBBzHTbFIIzK7nppjpVqWtAkRkknel3PWApmU6CQjq9K_8I9LfzAm4PhOrKr9PCJhbcatbVKY01MjlS67OFek7qUVelb4PrAVkIjbAaJMJZ0lbVKY01dEToKUr1vF6y0QJKjBiNcQKCy0aXipEwJFVVEwtH4Qg8hRSpunPtbKjBiNcLIr4Vj-QSU-nK-rsKrcD2a
>
>
>
> _______________________________________________
> 6tisch mailing list
> 6tisch@ietf.org
> https://www.ietf.org/mailman/listinfo/6tisch


-- 
email: rstruik.ext@gmail.com | Skype: rstruik
cell: +1 (647) 867-5658 | US: +1 (415) 690-7363