05.08.2005IETF63 - enum WG1 ENUM validation architecture & friends Alex Mayrhofer enum.at / 3.4.e164.arpa Bernie Höneisen SWITCH.

Slides:



Advertisements
Similar presentations
Whos who in the IETF Zoo? Geoff Huston Executive Director, Internet Architecture Board.
Advertisements

RPKI Standards Activity Geoff Huston APNIC February 2010.
IETF 71 Philadelphia - ENUM IANA Registration of Enumservices: Guide, Template and IANA Considerations draft-ietf-enum-enumservices-guide-08 B. Hoeneisen.
UDDI v3.0 (Universal Description, Discovery and Integration)
Web Services Nasrullah. Motivation about web service There are number of programms over the internet that need to communicate with other programms over.
Electronic Submission of Medical Documentation (esMD) for Medicare FFS Presentation to HITSC Provenance Workgroup January 16, 2015.
 A public-key infrastructure ( PKI ) is a set of hardware, software, people, policies, and procedures needed to create, manage, distribute, use, store,
TechSec WG: Related activities overview Information and discussion TechSec WG, RIPE-45 May 14, 2003 Yuri Demchenko.
Dorian Grid Identity Management and Federation Dialogue Workshop II Edinburgh, Scotland February 9-10, 2006 Stephen Langella Department.
Identity, Spheres and Privacy Rules Henning Schulzrinne (with Hannes Tschofenig and Richard Barnes) Workshop on Identity, Information and Context October.
Automated Policy Enforcement Adam Vincent, Layer 7 Federal Technical Director
August 13-14, 2002 Washington, DC Gary Richenaker Chair ENUM Forum
Long-term Archive Service Requirements draft-ietf-ltans-reqs-00.txt.
Secure Systems Research Group - FAU Web Services Standards Presented by Keiko Hashizume.
Identity in SIP (and in-band) STIR BoF Berlin, DE 7/30/2013.
Interim Report Review Inter-Registrar Domain Name Transfers ICANN DNSO Names Council Task Force on Transfers Public Discussion on Transfers of gTLD Names.
Overview What are the provisioning methods used in the Australian registry system? How are these provisioning systems secured?
IDN over EPP (IDNPROV) IETF BOF, Washington DC November 2004.
ENUM? “ Telephone Number Mapping (ENUM or Enum, from TElephone NUmber Mapping) is a suite of protocols to unify the telephone numbering system E.164 with.
draft-kwatsen-netconf-zerotouch-01
DICOM Security Lawrence Tarbox, Ph.D. Chair, WG 14 Mallinckrodt Institute of Radiology Washington University in St. Louis School of Medicine.
Status and Development of VoIP based emergency calls Alexander Mayrhofer, nic.at GmbH The 1st European Security and Safety Summit Brussels, June 2007.
Industry Canada 1 Bob Leafloor Colman Ho Peter Chau Industry Canada January 2003 (ENUM) T E lephone NU mber M apping.
Web Services Security Standards Overview for the Non-Specialist Hal Lockhart Office of the CTO BEA Systems.
Secure Credential Manager Claes Nilsson - Sony Ericsson
SPPF Batch DOS Considerations Jeremy Barkan Xconnect 28 March
SWIM-SUIT Information Models & Services
Key Management. Session and Interchange Keys  Key management – distribution of cryptographic keys, mechanisms used to bind an identity to a key, and.
DSKPP And PSKC: IETF Standard Protocol And Payload For Symmetric Key Provisioning Philip Hoyer Senior Architect – CTO Office.
DSKPP And PSKC: IETF Standard Protocol And Payload For Symmetric Key Provisioning Philip Hoyer Senior Architect – CTO Office.
Web Services Based on SOA: Concepts, Technology, Design by Thomas Erl MIS 181.9: Service Oriented Architecture 2 nd Semester,
Web Services Standards. Introduction A web service is a type of component that is available on the web and can be incorporated in applications or used.
1 Julien Laganier MEXT WG, IETF-79, Nov Authorizing MIPv6 Binding Update with Cryptographically Generated Addresses
Connect. Communicate. Collaborate Place organisation and project logos in this area Usage of SAML in eduGAIN Stefan Winter, RESTENA Foundation TERENA Networking.
JESS May 7-8, JESS Action Items Review e-Tag Test Plan Test URLs Test Dates Set Roll-Over Date –June :00 CDT.
Public Key Infrastructure (X509 PKI) Presented by : Ali Fanian
June 6, CRISP Overview and Update Andrew Newton VeriSign Labs
ENUM Validation Architecture & Token Format draft-mayrhofer-enum-validation-00.txt Axel Mayrhofer, Otmar Lendl enum.at GmbH Michael Haberler Internet Foundation.
EGEE-II INFSO-RI Enabling Grids for E-sciencE EGEE and gLite are registered trademarks Security Token Service Valéry Tschopp - SWITCH.
4395bis irireg Tony Hansen, Larry Masinter, Ted Hardie IETF 82, Nov 16, 2011.
© 2004 VeriSign, Inc. Domain Registry Version 2 (DREG2) Andrew Newton 8 November 2005 IETF 64 CRISP Working Group Vancouver, BC, Canada.
Peering: A Minimalist Approach Rohan Mahy IETF 66 — Speermint WG.
Identity Proofing, Signatures, & Encryption in Direct esMD Author of Record Workgroup John Hall Coordinator, Direct Project June 13, 2012.
National Computational Science National Center for Supercomputing Applications National Computational Science GSI Online Credential Retrieval Requirements.
Kemal Baykal Rasim Ismayilov
Page 1 IETF Speermint Working Group Speermint Requirements/Guidelines for SIP session peering draft-ietf-speermint-requirements-02 IETF 69 - Monday July.
#3: Protocol Document (draft-ietf-drinks-spprov) Presenter: Syed Ali (On behalf of the authors: Ken Cartwright, Syed Ali, Alex Mayrhofer and Jean-Francois.
- 1 -P. Kyzivatdraft-sipping-gruu-reg-event-00 Reg Event Package Extensions draft-sipping-gruu-reg-event-00 IETF64 Nov-2005.
Task Force CoRD Meeting / XML Security for Statistical Data Exchange Gregory Farmakis Agilis SA.
PCE 64 th IETF PCE Policy Architecture draft-berger-pce-policy-architecture-00.txt Lou Berger Igor Bryskin Dimitri Papadimitriou.
Design Guidelines Thursday July 26, 2007 Bernard Aboba IETF 69 Chicago, IL.
ENUM WG mini-BOF Setting the Stage Richard Shockey IETF 60 San Diego.
Extensible Provisioning Protocol Scott Hollenbeck.
Enumservice VOID draft-stastny-enum-void-00 Richard Stastny Lawrence Conroy IETF60 San Diego.
Andrew J. Hewatt, Gayatri Swamynathan and Michael T. Wen Department of Computer Science, UC-Santa Barbara A Case Study of the WS-Security Framework.
Integrating the Healthcare Enterprise Improving Clinical Care: Enterprise User Authentication For IT Infrastructure Robert Horn Agfa Healthcare.
DICOM Security Andrei Leontiev, Dynamic Imaging Presentation prepared by: Lawrence Tarbox, Ph.D. Chair, WG 14 Mallinckrodt Institute of Radiology Washington.
SIPPING Drafts Jonathan Rosenberg dynamicsoft. Conferencing Package Issues Only one – scope Depends on broader work in conferencing May include –Participant.
MODERN BoF Managing, Ordering, Distributing, Exposing, and Registering telephone Numbers IETF 92.
Session-Independent Policies draft-ietf-sipping-session-indep-policy-00 Volker Hilt Gonzalo Camarillo
WREC Working Group IETF 49, San Diego Co-Chairs: Mark Nottingham Ian Cooper WREC Working Group.
TNC 2004 – Rhodes (Greece) On a Taxonomy of Authentication and Authorization Solutions (Exploring open problems) José A. Montenegro Javier López Rolf Oppliger.
IETF-64 - ENUM WG1 ENUM validation status update Alex Mayrhofer enum.at / 3.4.e164.arpa Bernie Höneisen SWITCH /
STIR WG / IETF 94 Yokohama, Nov 2015 Jon
TeRI and the MODERN Framework
HMA Identity Management Status
Goals of soBGP Verify the origin of advertisements
RFC PASSporT Construction 6.2 Verifier Behavior
PKI (Public Key Infrastructure)
IETF 105 REGEXT Presenter: Gustavo Lozano
Presentation transcript:

IETF63 - enum WG1 ENUM validation architecture & friends Alex Mayrhofer enum.at / 3.4.e164.arpa Bernie Höneisen SWITCH / 1.4.e164.arpa draft-mayrhofer-enum-validation-arch-00 draft-hoeneisen-enum-validation-epp-01 draft-lendl-enum-validation-token-00

IETF63 - enum WG2 Motivation & Goals Motivation: Solving validation is crucial for ENUM deployment –Major reason why trials precede production –Validation is the major difference between ENUM and "ordinary" domain registration Validation definition and requirements currently vague –Common view considered useful Major Goals: Common understanding –Terminology, Processes, Roles, … Keeping entropy low –Minimize number of solutions addressing same problem –Prevent reinventing the wheel – foster deployment instead

IETF63 - enum WG3 validation draft orientation map Requirements Role modelProcess & trust assumptions validation data transport validation data format draft-mayrhofer-enum-validation-arch draft-hoeneisen- enum- validation-epp draft-hoeneisen- enum- validation-epp EPP SOAP? draft-lendl- enum- validation- token XML IRIS? alternative formats? Other? E.115

IETF63 - enum WG4 Disclaimer It is out of scope of these documents how an actual validation is performed ("validation method") The documents just attempt to provide a generic framework to base validation processes and communication on.

IETF63 - enum WG5 ENUM Provisioning Model & Roles ENUM Registry ENUM Registrar VE Registrant / Assignee NAE trust relation registration number assignment ENUM management validation Legend VE: Validation Entity NAE: Number Assignment Entity draft-mayrhofer-enum-validation-arch-00 E.164 number assignment verification

IETF63 - enum WG6 Validation Requirements 1.The ENUM domain name corresponds to an assigned E.164 number 2.The corresponding E.164 number is within a number area approved to be used with ENUM 3.The registration of the ENUM domain name is authorized by the Assignee of the corresponding E.164 number 4.The Registrant of the ENUM domain name is identical to the Assignee of the corresponding E.164 number draft-mayrhofer-enum-validation-arch-00

IETF63 - enum WG7 Initial vs. recurring validation Initial Validation –Verify requirements before registration of the ENUM Domain takes place Recurring Validation (Re-Validation) –Verify that requirements are still satisfied usually making use of data acquired during initial validation domain is to be removed when corresponding E.164 number is e.g. revoked

IETF63 - enum WG8 Registration process assumption ENUM Registry ENUM Registrar VE Registrant / Assignee NAE trust relation registration number assignment ENUM management validation E.164 number assignment verification Legend VE: Validation Entity NAE: Number Assignment Entity draft-mayrhofer-enum-validation-arch

IETF63 - enum WG9 Transport / data format extension framework EPP domain EPP validation token enum.at example EPP validation framework draft-hoeneisen-enum-validation-epp-01 draft-lendl-enum-validation-token-00 Scott's EPP RFCs some other suitable XML transport mechanism (e.g. SOAP) other variant? common (policy independent) policy dependent existing RFCs Draft-hoeneisen-enum-validation-epp-01 / draft-lendl-enum-validation-token-00

IETF63 - enum WG10 EPP transport Framework for Transport of validation information along with the EPP Domain object Elements for validation information itself are out-of-scope of this document –Example for better readability included ► enables usage of different locally adjusted validation information elements or "tokens" draft-hoeneisen-enum-validation-epp-01

IETF63 - enum WG11 Validation Token Conveys information about a validation –E.164 Number (obviously) –Contact information (in the style of EPP and E.115) –Serial, validation method, validator, expiration … XML schema Optional cryptographic signature –Non-repudiation –Authenticity –Supports trust relation between VE and registry To be embedded in transport protocols –EPP (Bernie's draft, enum.at implementation) –SOAP? ? HTTPS? In productive use for 3.4.e164.arpa. Probably useful for other purposes (number porting?) draft-lendl-enum-validation-token-00

IETF63 - enum WG12 Next steps How to proceed with draft-mayrhofer-enum-validation-arch ? –WG item? Feedback requested on documents – in particular from folks working on ENUM provisioning implementations