Re: Kathleen Moriarty's No Objection on draft-ietf-bmwg-issu-meth-01: (with COMMENT)

Kathleen Moriarty <[email protected]>
Newsgroups gmane.ietf.bmwg
Message-ID <CAHbuEH4LO0TSL+gH4kbtLxBqA7kvbntJVvPrEJ2X0hxKDvXdyw@mail.gmail.com>
Hi Benoit,

On Wed, Aug 5, 2015 at 3:37 PM, Benoit Claise <[email protected]> wrote:

> Hi Kathleen,
>
> Kathleen Moriarty has entered the following ballot position for
> draft-ietf-bmwg-issu-meth-01: No Objection
>
> When responding, please keep the subject line intact and reply to all
> email addresses included in the To and CC lines. (Feel free to cut this
> introductory paragraph, however.)
>
>
> Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
> for more information about IESG DISCUSS and COMMENT positions.
>
>
> The document, along with other ballot positions, can be found here:https://datatracker.ietf.org/doc/draft-ietf-bmwg-issu-meth/
>
>
>
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
>
> In section 3, when "other checks" are described, I'd like to see an
> explicit mention of a check to ensure the device is authorized to install
> the software/firmware.  There have been numerous attacks against just
> about every vendor where counterfeit hardware is deployed and runs the
> firmware, OS, etc. issued.  Fraud can be a big issue and it isn't always
> talked about, but this should definitely be a security consideration.  I
> do think it fits in the subsections of section 3.  The statement added
> can be as simple as, "check performed to ensure the device is authorized
> to install the firmware".
>
> I wonder if this check makes sense for the BMWG documents, which specify
> procedures to benchmark operations in a test environment.
> As mentioned in the document:
>
>    As stated by [RFC 6815 <https://tools.ietf.org/html/rfc6815>], the Test Topology Setup must be part
>    of an ITE (Isolated Test Environment)
>
>
I did think about about that and listed this just as a comment as a
result.  My thinking is that it would be good to catch such problems and
for us to bake this into automated updates where they happen.  As with the
other checks, no methods are provided or required with the simple text
addition.

These problems cause big issues, so if counterfeit hardware can be weeded
out, we reduce the threat space.  Unfortunately, most companies learn of
this issue when it hits them directly and costs them big.  It could have an
impact on customers too if monitoring is included with the counterfeit
hardware.

Take it or leave it, but I do think it's an important issue.

Thanks,
Kathleen

> Regards, Benoit
>
> .
>
>
>
>


-- 

Best regards,
Kathleen

_______________________________________________
bmwg mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/bmwg
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.