Bing Liu (speaker), Sheng WG, ietf96, July 2016

Slides:



Advertisements
Similar presentations
EAP Channel Bindings Charles Clancy Katrin Hoeper IETF 76 Hiroshima, Japan November 08-13, 2009.
Advertisements

Multi-homed network in EVPN draft-hao-evpn-mhn-00 July 20131MHN in EVPN Weiguo Hao(Huawei) Yizhou Li(Huawei) Pei Xu(Huawei)
Long-term Archive Service Requirements draft-ietf-ltans-reqs-00.txt.
Key Management Guidelines. 1. Introduction 2. Glossary of Terms and Acronyms 3. Cryptographic Algorithms, Keys and Other Keying Material 4. Key Management.
Security using Encryption Security Features Message Origin Authentication - verifying that the sender is who he or she says they are Content Integrity.
IPv6 Site Renumbering Gap Analysis draft-ietf-6renum-gap-analysis-02 draft-ietf-6renum-gap-analysis-02 Bing Liu (speaker), Sheng Jiang, Brian.E.Carpenter,
Automated XML Content Data Exchange and Management draft-waltermire-content-repository-00
IPv6 Site Renumbering Gap Analysis draft-liu-6renum-gap-analysis-01 draft-liu-6renum-gap-analysis-01 Bing Liu Sheng Jiang IETF July
Authorization architecture sketches draft-selander-core-access-control-02 draft-gerdes-core-dcaf-authorize-02 draft-seitz-ace-design-considerations-00.
MOBILE AD-HOC NETWORK(MANET) SECURITY VAMSI KRISHNA KANURI NAGA SWETHA DASARI RESHMA ARAVAPALLI.
Draft-campbell-dime-load- considerations-01 IETF 92 DIME Working Group Meeting Dallas, Texas.
ISIS Auto-Configuration (draft-liu-isis-auto-conf-01) Bing Liu Bruno Decraene
0 NAT/Firewall NSLP IETF 62th – March 2005 draft-ietf-nsis-nslp-natfw-05.txt Martin Stiemerling, Hannes Tschofenig, Cedric Aoun.
Autonomic Prefix Management in Large-scale Networks ANIMA WG IETF 91, November 2014 draft-jiang-anima-prefix-management Sheng Jiang Brian Carpenter Qiong.
1 Brian Carpenter (editor) Bing Liu (editor) Michael Richardson Tom Taylor Laurent Ciavaglia Michael Behringer Jéferson Campos Nobre IETF 93 July 2015.
PAWS: Security Considerations Yizhuang WU, Yang CUI PAWS WG
DHCPv6/SLAAC Address Configuration Interaction Problems and Operational Guidance Bing Liu, Ronald Bonica (Speaker) Sheng Jiang, Xiangyang Gong, Wendong.
Slide title In CAPITALS 50 pt Slide subtitle 32 pt RTSP 2.0 TLS handling Magnus Westerlund draft-ietf-mmusic-rfc2326bis-12.
RPL Applicability Statement for AMI IETF #81, IETF ROLL WG Québec City, Canada July 25-29, 2011 Jorjeta Jetcheva
CDNI Requirements (draft-lefaucheur-cdni-requirements-02) CDNI Working Group IETF 81 Quebec City, Canada July 28, 2011 Kent Leung Yiu.
Guidance for Running Multiple IPv6 Prefixes (draft-liu-v6ops-running-multiple-prefixes-02) Bing Liu, Sheng Jiang (Speaker), Yang Bo IETF91
Analysis and recommendation for the ULA usage draft-liu-v6ops-ula-usage-analysis-00 draft-liu-v6ops-ula-usage-analysis-00 Bing Liu(speaker), Sheng Jiang.
Implications of Trust Relationships for NSIS Signaling (draft-tschofenig-nsis-casp-midcom.txt) Authors: Hannes Tschofenig Henning Schulzrinne.
Security Threats and Security Requirements for the Access Node Control Protocol (ANCP) IETF 68 - ANCP WG March 18-23, 2007 draft-ietf-ancp-security-threats-00.txt.
2/25/2016CSI WG/IETF761 Open Source Project SEND & Extensions Beijing University of Posts & Telecommunications HUAWEI Yuhong LI (Speaker) Wendong WANG.
Copyright 2004 MayneStay Consulting Group Ltd. - All Rights Reserved Jan-041 Security using Encryption Security Features Message Origin Authentication.
Netconf Schema Query Mark Scott IETF 70 Vancouver December 2007
CSI WG / IETF741/12 Implementation of SeND/CGA and Extensions Beijing University of Posts and Telecommunications HUAWEI.
1 IETF 91, 10 Nov 2014draft-behringer-anima-reference-model-00.txt A Reference Model for Autonomic Networking draft-behringer-anima-reference-model-00.txt.
1 Brian Carpenter (editor) Bing Liu (editor) Carsten Bormann IETF 95 April 2016 GeneRic Autonomic Signaling Protocol draft-ietf-anima-grasp-04.
A Security Framework for ROLL draft-tsao-roll-security-framework-00.txt T. Tsao R. Alexander M. Dohler V. Daza A. Lozano.
Extension of the MLD proxy functionality to support multiple upstream interfaces 1 Luis M. Contreras Telefónica I+D Carlos J. Bernardos Universidad Carlos.
Draft-ietf-ccamp-lmp-02.txt Link Management Protocol (LMP) LMP draft updates…  draft-ietf-ccamp-lmp-07.txt  draft-ietf-ccamp-lmp-wdm-01.txt  draft-ietf-ccamp-lmp-test-sonet-sdh-00.txt.
Anima IETF 93 draft-pritikin-anima-bootstrapping- keyinfra-02 Design Team Update.
Bootstrapping Key Infrastructures
91th IETF, 10 Nov 2014  Michael Behringer Steinthor Bjarnason Balaji BL
Bing Liu (speaker), Sheng WG, ietf97, November 2016
PANA Issues and Resolutions
Kumiko Ono End-to-middle Security in SIP draft-ietf-sipping-e2m-sec-reqs-04 draft-ono-sipping-end2middle-security-03 Kumiko Ono.
Autonomic Prefix Management in Large-scale Networks
A Reference Model for Autonomic Networking draft-ietf-anima-reference-model-03.txt 97th IETF, Nov 2016 Michael Behringer (editor), Brian Carpenter, Toerless.
Panagiotis Demestichas
DHCPv6/SLAAC Address Configuration Interaction Problems
draft-ietf-geopriv-lbyr-requirements-02 status update
Radius Attribute for MAP draft-jiang-softwire-map-radius-03
CARD Designteam A. Singh, D. Funato, H. Chaskar, M. Liebsch
Towards PubSub and Storage integration in ANIMA
Ariadne A Secure On-Demand Routing Protocol for Ad Hoc Networks
Charles Clancy Katrin Hoeper IETF 73 Minneapolis, USA 17 November 2008
Sheng Jiang, Artur Hecker, Zoran Despotovic
Bing Liu, Fanghong Duan, Yongkang Zhang IETF July 2017
Maryna Komarova (ENST)
Wednesday, 9:30-12:00 Morning session I, Van Horne
Securing the CASP Protocol
Tuesday , 9:30-12:00 Morning session I, Buckingham
ITIS 6010/8010 Wireless Network Security
1 Guidelines for Autonomic Service Agents draft-carpenter-anima-asa-guidelines-00 Brian Carpenter Sheng Jiang IETF 97 November
By co-authors Sheng Jiang & Toerless Eckert
GeneRic Autonomic Signaling Protocol draft-ietf-anima-grasp-08
Recap At IETF 97 we presented the Voucher document for the first time as an ANIMA draft Bootstrapping Design team has met weekly since, about 50% discussion.
draft-eckert-anima-noc-autoconfig-00 draft-eckert-anima-grasp-dnssd-01
Bing Liu, Yuefeng Wu IETF July 2017
draft-ietf-dtn-bpsec-06
Bing Liu, Xun Xiao, Sheng Jiang, Artur Hecker
Tuesday (July 23rd, 2019) Two sessions ( minutes)
ACP status IETF 103 Montreal 2018
ANIMA recharter IETF 103 Bangkok
Georgios Karagiannis, Tom Taylor, Kwok Chan, Michael Menth
Update on BRSKI-AE – Support for asynchronous enrollment
Bing Liu (Ed. Presenter), Xun Xiao (Ed
Presentation transcript:

Bing Liu (speaker), Sheng Jiang @Anima WG, ietf96, July 2016 Information Distribution over GRASP (draft-liu-anima-grasp-distribution-01) Bing Liu (speaker), Sheng Jiang @Anima WG, ietf96, July 2016

Look back 00 version Technical requirements - Node behavior Flooding behavior loop avoidance Selective Flooding Point to Point exchange Technical requirements - Protocol Indicate the distributed information The autonomic nodes need to know which messages are to be distributed. Indicate the selective flooding criteria The node needs to be indicated which interfaces/addresses should be sent the distributed information.

01 version Technical requirements - Node behavior Flooding behavior loop avoidance relevant mechanism added in GRASP-04 Selective Flooding relevant mechanism added in 01 version Point to Point exchange Technical requirements - Protocol Indicate the distributed information The autonomic nodes need to know which messages are to be distributed. New “Flood Sync” message in GRASP-02 Indicate the selective flooding criteria The node needs to be indicated which interfaces/addresses should be sent the distributed information. Added in 01 version

Selective Flooding Mechanism Selective flooding criteria Matching condition: which represents the criteria of the selection (e.g. "Device role=IPRAN_RSG") Matching objective: the matching objective is either the node itself or the neighbors (e.g. “Neighbors”) Action: the action is either continuing the distribution or terminating it (e.g."Distribute“) Node behavior 1) The distribution initial node Includes the Selecting Criteria in the distributed information. [Open Question] Include the criteria in the GRASP message or the distribution content? 2) The receiving node does the matching indicated by the Selecting Flooding Criteria Matching Objective="Neighbors“: the node only distributes the information to the neighbors who match the Matching Condition. Matching Objective="Self“: if matched, the node terminates the distribution (not flooding it to any of the neighbor)

Open Issues (1/3) #1 Do we need selective flooding? Pros Cons Avoid some unnecessary message amplification Better security considerations in some scenarios Cons Additional complexity Consideration Selective flooding could be an advanced feature supported by the GRASP-Distribution-Function Basic GRASP module doesn’t need to support it

Open Issues (2/3) #2 Lifetime management For short-term content, maybe it’s good to include Lifetime? For long-lived content, maybe just wait for the upate? #3 Verification of Distributed Information Information integrity verification ACP only provides confidentiality Digital signature of the content by the domain certificate? Source authorization verification Verify whether the source is privileged to distribute the content Out of scope?

Open Issues (3/3) #4 Autonomic domain boundary Michael B.: ACP has the boundary implication Non-ACP mode out of scope #5 Arbitrary Injecting Point Should every node support initial distribution or only part of them? #6 Confliction Handling Handle it at the distribution content management level, out of scope of distribution behavior/protocol? #7 Verification of Distributed Information Information integrity verification Digital signature of the content? Source authorization verification Out of scope?

Comments? Thank you! IETF96, Berlin