Re: [dmm] #25: Security clarifications

Jouni Korhonen <[email protected]>
Newsgroups gmane.ietf.nemo
Message-ID <BFA10C13-6286-4AE2-89FC-0AEEE30778E7__19549.4894673631$1370350249$gmane$org@gmail.com>
Any comment on this? I did not see anything about on-link/first-hop security
mentioned/addressed in -04.

- Jouni


On Apr 15, 2013, at 11:41 PM, dmm issue tracker <[email protected]> wrote:

> #25: Security clarifications
> 
> 23) Section 5
> 
>   It is necessary to provide sufficient defense against possible
>   security attacks, or to adopt existing security mechanisms and
>   protocols to provide sufficient security protections.  For instance,
>   EAP-based authentication can be used for access network security,
>   while IPsec can be used for end-to-end security.
> 
> o EAP-based security does not necessarily address on-link / first
>  hop threats. You gain access, and then can fool around.. does not
>  sound too promising, unless the security considerations can scope
>  the used link type better i.e. in p2p links this might be sufficient
>  but not in all.
> 
> -- 
> ------------------------------------+------------------------------------
> Reporter:  [email protected]  |      Owner:  [email protected]
>     Type:  defect                  |     Status:  new
> Priority:  minor                   |  Milestone:
> Component:  requirements            |    Version:
> Severity:  In WG Last Call         |   Keywords:
> ------------------------------------+------------------------------------
> 
> Ticket URL: <http://wiki.tools.ietf.org/wg/dmm/trac/ticket/25>
> dmm <http://tools.ietf.org/dmm/>
>
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.