Summary of Updates to Abbreviated Handshake

Slides:



Advertisements
Similar presentations
Doc.: IEEE /0114r1 Submission January 2009 Tony Braskich, MotorolaSlide 1 A vendor specific plan for centralized security Date: Authors:
Advertisements

Doc.: IEEE /1263r0 Submission November 2008 Dan Harkins, Aruba NetworksSlide 1 A Modest Proposal…. Date: Authors:
Doc.: IEEE /1012r0 Submission September 2009 Dan Harkins, Aruba NetworksSlide 1 Suite-B Compliance for a Mesh Network Date: Authors:
Doc.: IEEE r6 Submission July 2008 Charles Fan,Amy Zhang, HuaweiSlide 1 Authentication and Key Management of MP with multiple radios Date:
Doc.: IEEE /0283r0 Submission March 2009 Dan Harkins, Aruba NetworksSlide 1 Suggested Changes to the Abbreviated Handshake Date: Authors:
Doc.: IEEE /0560r0 Submission May 2010 Ashish Shukla, MarvellSlide 1 TDLS TPK Handshake Date: Authors:
Doc.: IEEE /0509r3 Submission Proposed Resolution to CID 72, 119 and 128 Qian ChenSlide 1 May 2014 Date:
Session Peering Protocol over SOAP I-D ( draft-ietf-drinks-spp-over-soap-01) draft-ietf-drinks-spp-over-soap-01 0 Presenter: Vikas Bhatia (On behalf of.
Doc.: IEEE /0358r0 Submission March 2007 Zhao and Walker, Intel CorpSlide 1 Thoughts on Peer Capacity Date: Authors: Notice: This document.
Doc.: IEEE /0617r0 Submission May 2008 Tony Braskich, MotorolaSlide 1 Refining the Security Architecture Date: Authors:
Doc.: IEEE kmp Submission September 2011 Robert Moskowitz, Verizon Slide 1 Project: IEEE P Working Group for Wireless Personal.
Doc.: IEEE /0100r2 Submission January 2010 Kazuyuki Sakoda, Sony CorporationSlide 1 MAC beaconing sync comment resolution Date: Authors:
Doc.: IEEE /0232r0 Submission February 2009 Meiyuan Zhao, IntelSlide 1 Suggestions to Clean Up Peering Management Frames Date:
Doc.: IEEE /0862r0 Submission July 2009 Michael Bahr, Siemens AGSlide 1 Proxy Update Element Revision Date: Authors:
Doc.: IEEE /0590r0 Submission May 2010 Kazuyuki Sakoda, Sony CorporationSlide 1 MAC beaconing sync comment resolution overview Date:
Protocol Coexistence Issue in MSA Subsequent Authentication
Doc.: IEEE /2176r0 Submission July 2007 Meiyuan Zhao, Intel Corp.Slide 1 Protocol Analysis of Abbreviated Handshake Date: Authors:
Doc.: IEEE /2539r0 Submission September 2007 Tony Braskich, MotorolaSlide 1 Overview of an abbreviated handshake with sequential and simultaneous.
Doc.: IEEE /2179r0 Submission July 2007 Steve Emeott, MotorolaSlide 1 Summary of Updates to MSA Overview and MKD Functionality Text Date:
Relationship between peer link and physical link
ANQP-SD Response When Service Mismatches
Updates on Abbreviated Handshake
Comment Resolution Plan
Overview of Key Holder Security Association Teardown Mechanism
Authentication and Key Management of MP with multiple radios
TDLS TPK Handshake Date: Authors: May 2010 May 2010
Improvements to Power Management
Improvements to Power Management and Future Work
Fix inconsistency in PLM specification
Summary of Unresolved General Comments for 2/14 TGs Telecon
Traffic Class Control in MBSS
Submission Title: [Comment Resolutions for #345, #347, #348, and #349]
Key Distribution for Mesh Link Security
Traffic Class Control in MBSS
Submission Title: [ TGs liaison report]
Comment Resolution Plan
Providing Faster GAS Response
CID#102 - Channel Allocation
Comment Resolution Plan
Overview of Changes to Key Holder Frame Formats
March 2007 doc.: IEEE /0389r0 March 2007
May 2007 MSA Comment Resolution Overview
Changes to SAE State Machine
Authentication and Key Management of MP with multiple radios
802.1X in s Discussion Date: Authors: March 2011
MCCA Comments Resolution 159 ppt
Simulation Evaluation of Peer Link Management Protocol
Updates on Abbreviated Handshake
Draft D4.01 status report Date: Authors: February 2010
Channel Allocation March 2008 Authors: Date: Month Year
Different MKD domain MPs communication method
Terminology changes in a nutshell …
TGaj Editor Report for CC22
Overview of Abbreviated Handshake Protocol
Traffic Class Control in MBSS
Submission Title: [Comment Resolutions for #345, #347, #348, and #349]
MAC beaconing sync comment resolution overview
Relationship between peer link and physical link
PLE Comment Resolution
Overview of Improvements to Key Holder Protocols
MAC beaconing sync comment resolution
PLE Comment Resolution Update
TGaj Editor Report for LB220
doc.: IEEE <doc#>
Overview of Improvements to Key Holder Protocols
Resolutions of the Remaining Power Management Comments
802.11s motion Date: Authors: November 2007 Month Year
Proposed Change to Intra-Mesh Congestion Notification Frame
Congestion Control Comments Resolution
General discovery comment resolution overview
Presentation transcript:

Summary of Updates to Abbreviated Handshake March 2009 Summary of Updates to Abbreviated Handshake Date: 2009-03-06 Meiyuan Zhao, Intel

March 2009 Abstract This document summarizes the several changes to the Abbreviated Handshake specification Normative text in doc.:11-09/0266r0 and corresponding comment spreadsheet in doc.:11-09/0267r0 Note: adoption of 11-09/0266r0 depends on the adoption of Mesh Peering Instance Controller (11-09/0287r0) Meiyuan Zhao, Intel

Major Changes Moved AbbrHS FSM to SME (CIDs 190, 212) March 2009 Major Changes Moved AbbrHS FSM to SME (CIDs 190, 212) Update PMK selection procedure (CIDs 204, 226, 1254) Remove AKM suite selection and KDF selection (CIDs 193, 205) Resolve AbbrHS and PLM interaction (CIDs 187, 209) Meiyuan Zhao, Intel

Move AbbrHS to SME AbbrHS is for peering management and key management March 2009 Move AbbrHS to SME AbbrHS is for peering management and key management Peering Management Protocol now in SME Security associations are managed in SME Updates Remove unnecessary MLME primitives Update FSM specification accordingly CIDs: 190, 212 Meiyuan Zhao, Intel

Update PMK Selection Reasons Update CIDs March 2009 Update PMK Selection Reasons MKD domains removed with MSA protocols Each pair of mesh STAs should share at most one valid PMK Text to be added to specify protocol interactions (SAE and AbbrHS) and PMKSA requirements PMK selection using two lists is no longer a valid case Update Single value confirmation using Peering Open and Peering Confirm Update FSM specification accordingly (remove MESH_ALT_KEY status code) CIDs 204, 226, 1254 Meiyuan Zhao, Intel

Update AKM and KDF Selection March 2009 Update AKM and KDF Selection Issues AKM should include KDF AKMP in fact is part of PMKSA SAE should be updated to specify how to reach agreement on AKMP Protocol interaction between SAE and AbbrHS should be updated accordingly Update Remove AKM selection and KDF selection Remove NOAKM_RJCT and NOKDF_RJCT events from FSM CIDs 193, 205 Meiyuan Zhao, Intel

Update AbbrHS and PLM Interaction March 2009 Update AbbrHS and PLM Interaction Issue: Both protocols use Peering Management frames that cause ambiguity in protocol initiation Update Add a new “Mesh Peering Protocol Version” information element in all Peering Management frames Define two values: “Peering Management Protocol” and “Abbreviated Handshake Protocol” CIDs 187, 209 Meiyuan Zhao, Intel

Update FSM Specification March 2009 Update FSM Specification Update Remove CNF_ACPT event from CNF_RCVD state Add OPN_ACPT event in OPN_RCVD state PLM should be updated too Remove NOAKM_RJCT and NOKDF_RJCT events Update FSM to work with Mesh Peering Instance Controller Remove LISTEN state Remove NOKEY_RJCT event CIDs 165, 171, 210 Meiyuan Zhao, Intel

Other Changes Update GTK wrapping (CIDs 200, 202) March 2009 Other Changes Update GTK wrapping (CIDs 200, 202) Add lifetime in wrapped GTK key material Add specification on update GTK upon expiry Remove “echo” of received GTK in Peering Confirm frame Clean up frame processing (CIDs 189, 207) Misc frame formating update Remove V.5 (CIDs 217, 218, 220) Require substantial update to reflect normative text Served purpose of educating readers Meiyuan Zhao, Intel