Interoperabilty Cipher Suites

Slides:



Advertisements
Similar presentations
© 2006 NEC Corporation - Confidential age 1 November SPEERMINT Security Threats and Suggested Countermeasures draft-ietf-speermint-voipthreats-01.
Advertisements

Note Well Any submission to the IETF intended by the Contributor for publication as all or part of an IETF Internet-Draft or RFC and any statement made.
MIF API draft-ietf-mif-api-extension-05 Dapeng Liu.
Copyright © 2004 Juniper Networks, Inc. Proprietary and Confidentialwww.juniper.net 1 ANCP protocol draft updates draft-ietf-ancp-protocol-00.txt ANCP.
1 SIPREC Recording Metadata format (draft-ram-siprec-metadata-format- 01) IETF-80 SIPREC MEETING R Parthasarathi On behalf of the team Team: Paul Kyzivat,
Request History – Solution Mary Barnes SIP WG Meeting IETF-57 draft-ietf-sip-history-info-00.txt.
1 Notification Rate Control draft-ietf-sipcore-event-rate-control th IETF,
Yang Shi, Chris Elliott, Yong Zhang IETF 73 rd 18 Nov 2008, Minneapolis CAPWAP WG MIB Drafts Report.
WG Document Status 88th IETF CCAMP Working Group.
Incident Object Description and Exchange Format
Session Peering Protocol over SOAP I-D ( draft-ietf-drinks-spp-over-soap-01) draft-ietf-drinks-spp-over-soap-01 0 Presenter: Vikas Bhatia (On behalf of.
1 Virtual Router Redundancy Protocol (VRRP) San Francisco IETF VRRP Working Group March 2003 San Francisco IETF Mukesh Gupta / Nokia Chair.
Multiple Interfaces (MIF) WG IETF 79, Beijing, China Margaret Wasserman Hui Deng
March 2006 CAPWAP Protocol Specification Update March 2006
WebDAV Collections December 10, 1998 Judy Slein
Abierman-netconf-mar07 1 NETCONF WG 68 th IETF Prague, CZ March 19, 2007.
May 9th 2011 IETF SIPREC INTERIM - draft-ietf-siprec-architecture 1 An Architecture for Media Recording using the Session Initiation Protocol draft-ietf-siprec-architecture.
March 2005 Dorothy Stanley (Agere Systems) IEEE IETF Liaison Report March 2005 Dorothy Stanley – Agere Systems IEEE Liaison – IETF
E2EKey Resource Group Name: SEC WG Source: Qualcomm Inc., Wolfgang Granzow & Phil Hawkes Meeting Date: SEC#20.3, Agenda Item: End-to-End Security.
Session Traversal Utilities for NAT (STUN) IETF-92 Dallas, March 26, 2015 draft-ietf-tram-stunbis Marc Petit-Huguenin, Gonzalo Salgueiro.
DTN Security Update Stephen Farrell, Trinity College Dublin Susan Symmington, The MITRE Corp. Howard Weiss, Sparta Inc. IETF-65 Dallas March 2006.
Draft-melia-mipshop-mobility-services-ps-01.txt. From IETF #66 Discuss MIH PS (as expressed by the WG chair) Need a single PS at WG level (several drafts.
1 IEEE MEDIA INDEPENDENT HANDOVER DCN: Title: IEs related Issues Date Submitted: March 2007 Presented at IEEE session.
July 2007 CAPWAP Protocol Specification Editors' Report July 2007
Diameter SIP Application
Requirements for PCE Discovery draft-ietf-pce-discovery-reqs-01.txt Jean-Louis Le Roux (France Telecom) Paul Mabey (Qwest) Eiji Oki (NTT) Richard Rabbat.
PMIPv6 multicast handover optimization by the Subscription Information Acquisition through the LMA (SIAL) Luis M. Contreras Telefónica I+D Carlos J. Bernardos.
Draft-ietf-netconf-server-model-04 NETCONF Server Configuration Model
Proposed solutions to comments on section 7
Transmission of IP Packets over IEEE 802
NACK-Oriented Reliable Multicast (NORM) Update
Managed Objects for Packet Sampling
Updated SBSP draft-birrane-dtn-sbsp-01.txt Edward Birrane
Kumiko Ono End-to-middle Security in SIP draft-ietf-sipping-e2m-sec-reqs-04 draft-ono-sipping-end2middle-security-03 Kumiko Ono.
Request History Capability – Requirements & Solution
Note Well Any submission to the IETF intended by the Contributor for publication as all or part of an IETF Internet-Draft or RFC and any statement made.
Carlos Pignataro Bruno Stevant Jean-Francois Tremblay Bill Storer
Alan Clark Claire Bi Qin Wu Glen Zorn
Proposed solutions to comments on section 7
Nancy Cam-Winget June 2015 SACM Requirements Nancy Cam-Winget June 2015.
Sanjay Wadhwa Juniper Networks
LTANS WG: ERS Status July 10, 2006 Tobias Gondrom.
Configuration Framework draft-ietf-sipping-config-framework-06
DTN Bundle Protocol on the IETF Standards Track
TGi Motions for Comment Resolution
BPSEC Updates Edward Birrane
AMA Data Model Edward Birrane
Draft-ietf-supa-generic-policy-data-model-02
Dynamics GP Purchasing Suite Modules
Comments for Nov 2010 EC PAR proposals.
Updates to Draft Specification for DTN TCPCLv4
STIR WG IETF-100 PASSPorT Extension for Resource-Priority Authorization (draft-ietf-stir-rph-01) November, 2017 Ray P. Singh, Martin Dolly, Subir Das,
Submission Title: [SGLECIM PAR & 5C comment resolution November 2010]
STIR WG IETF-99 PASSPorT Extension for Resource-Priority Authorization (draft-ietf-stir-rph-00) July, 2017 Ray P. Singh, Martin Dolly, Subir Das, and An.
BPSEC Updates Edward Birrane
Submission Title: [SGLECIM PAR & 5C comment resolution November 2010]
IEEE MEDIA INDEPENDENT HANDOVER DCN: sec
IEEE MEDIA INDEPENDENT HANDOVER DCN:
MIB TruthValue Usage Patterns Presentation
IEEE MEDIA INDEPENDENT HANDOVER DCN: sec
Comments for Nov 2010 EC PAR proposals.
IEEE MEDIA INDEPENDENT HANDOVER DCN: sec
IEEE MEDIA INDEPENDENT HANDOVER
IEEE MEDIA INDEPENDENT HANDOVER DCN: xx-00-sec
draft-ietf-dtn-bpsec-06
IETF DTN Working Group July 17th, 2017 Chairs:
MIB TruthValue Usage Patterns Presentation
BPSec: AD Review Comments and Responses
Authentication and Authorization for Constrained Environments (ACE)
MIB TruthValue Usage Patterns Presentation
Presentation transcript:

Interoperabilty Cipher Suites BPSec, Interoperabilty Cipher Suites IETF-104 Edward Birrane Edward.Birrane@jhuapl.edu 443-778-7423

Overview BPSec Interoperability Cipher Suites Open questions Updates from Last DTNWG. Updates from CCSDS review. Discussion points Interoperability Cipher Suites Updates Open questions

BpSec Updated from IETF 103 (1/2) Should we add a “Security Associations Block” As requested by CCSDS No. Abstract Cipher Suite verbiage instead. No other real changes.

BpSec Updated from IETF 103 (2/2) Added definition of Cipher Suite Added definition of Security Context Changed instances of cipher suite (id, parms, results) to security context (id, parms, results) Removed all references and description of the proposed “security associations” block. Added some additional examples for a security context Removed redundant text associated with BCBs whose cipher text is not the same size as the plain text.

CCSDS SEA-SEC Review Comments BPSec-09 judged as “very good Comments: Concur: Section 1.1 – you say that integrity services “ensure” that target data within in a bundle are not changed… Not really true.  Integrity ensures that if there are any changes, they are discovered. Concur: Section 1.4 – add CBOR to the terminology list Concur. Section 3.2 – why not just say that no nesting is allowed?   No Change. Section 3.6 – why are the security source and context parameters optional?  Is the Security Results field meant to be meta-data to indicate the services applied? Not every context is parameterized. No Change. Section 3.9 – here’s where you say that authenticated encryption is used in BCB.  I’d suggest that this be made clear someplace in the introductory material up front. This should also be a SHALL statement and not just a NOTE. The MUST statement does exist in section 3.8.

Interoperability Cipher Suites Changes terminology from “cipher suite” to security context Updated references Submitted as WG document (not personal draft)