
From nobody Tue Jun  3 02:57:38 2014
Return-Path: <bclaise@cisco.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3E9B41A00D7; Tue,  3 Jun 2014 02:57:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.363
X-Spam-Level: 
X-Spam-Status: No, score=-7.363 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, CN_BODY_35=0.339, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, MIME_CHARSET_FARAWAY=2.45, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ErBaK7-iO0I6; Tue,  3 Jun 2014 02:57:35 -0700 (PDT)
Received: from aer-iport-4.cisco.com (aer-iport-4.cisco.com [173.38.203.54]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C3C091A00C0; Tue,  3 Jun 2014 02:57:34 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=3938; q=dns/txt; s=iport; t=1401789449; x=1402999049; h=message-id:date:from:mime-version:to:cc:subject: references:in-reply-to:content-transfer-encoding; bh=81DHEIPP3/o6Fd2zUAn1D5xckOWoAtueGbjc283e8xE=; b=hFOTs9gtjPo9TB2Fd2b2JCp2m0cyM6jI5VkzwMs/vTV79qMjJB7RGdGS xIR8bctH1Y0LF6lab0LfmOteKBfeFQScqev/H7oUZjYtt7321E6cR+MIY k3PAbaXGrxY3A2QCN6AXJNnYXxJMgR/KfsvVGnHbkn1RXaE0t4B6K20o5 w=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AqUEAAqbjVOtJssW/2dsb2JhbABZg1mDRLg4hzkBgSJ0giUBAQEEAQEBLwE7CgEQCQIYBAUWCAUCCQMCAQIBFR8RBgEMAQUCAQEXiCcNkHKcGgikPxeBJoxKCgcBAk4HgnGBTwEDiXKQEYE+hS+MRIM6O4EwCRc
X-IronPort-AV: E=Sophos;i="4.98,964,1392163200"; d="scan'208";a="68225005"
Received: from aer-iport-nat.cisco.com (HELO aer-core-3.cisco.com) ([173.38.203.22]) by aer-iport-4.cisco.com with ESMTP; 03 Jun 2014 09:57:27 +0000
Received: from [10.60.67.91] (ams-bclaise-89110.cisco.com [10.60.67.91]) by aer-core-3.cisco.com (8.14.5/8.14.5) with ESMTP id s539vRGV026340; Tue, 3 Jun 2014 09:57:27 GMT
Message-ID: <538D9C07.8060808@cisco.com>
Date: Tue, 03 Jun 2014 11:57:27 +0200
From: Benoit Claise <bclaise@cisco.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.5.0
MIME-Version: 1.0
To: Likepeng <likepeng@huawei.com>, The IESG <iesg@ietf.org>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com>
In-Reply-To: <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com>
Content-Type: text/plain; charset=GB2312
Content-Transfer-Encoding: 8bit
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/cTFmU6G6Z8VLbkht2ctiWvC_kv4
Cc: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, "ace@ietf.org" <ace@ietf.org>
Subject: Re: [AAA-DOCTORS] [Ace] Benoit Claise's Block on charter-ietf-ace-00-01: (with BLOCK)
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Jun 2014 09:57:37 -0000

On 15/05/2014 23:13, Likepeng wrote:
>> What are "resources?  It seems they are applications, but the charter doesn't make that clear.
> I think I have explained in another thread. Resources are not applications, and the resource concept is taken from HTTP protocol.
>
> About the "resource", we can take the definition from RFC2616:
>
>    resource
>       A network data object or service that can be identified by a URI,
>       as defined in section 3.2. Resources may be available in multiple
>       representations (e.g. multiple languages, data formats, size, and
>       resolutions) or vary in other ways.
>
> For example, resources can be temperature sensors on a data collection node, or a list of alarms on a home security controller. [RFC6690]
>
> Maybe we can add two explanations: one is that resources can be identified by a URI, two is that resources are hosted on the resource server.
>
> "Access to a resource" means Get, Put, Post and Delete to a resource.
>
>> ...
>> This working group therefore aims to produce a standardized solution for authentication and authorization to enable authorized access to resources in constrained environments.
>> ...
> This sentence has been revised to:
>
> NEW
> This working group therefore aims to produce a standardized solution for authentication and authorization to enable authorized access (Get, Put, Post, Delete) to resources identified by a URI and hosted on a resource server in constrained environments.
> END
That solves the first part of my DISCUSS.

Thanks, Benoit
>
> Hope it clarifies.
>
> Thanks,
> Kind Regards
> Kepeng
>
> -----Óʼþԭ¼þ-----
> ·¢¼þÈË: Ace [mailto:ace-bounces@ietf.org] ´ú±í Benoit Claise
> ·¢ËÍʱ¼ä: 2014Äê5ÔÂ15ÈÕ 6:12
> ÊռþÈË: The IESG
> ³­ËÍ: aaa-doctors@ietf.org; ace@ietf.org
> Ö÷Ìâ: [Ace] Benoit Claise's Block on charter-ietf-ace-00-01: (with BLOCK)
>
> Benoit Claise has entered the following ballot position for
> charter-ietf-ace-00-01: Block
>
> When responding, please keep the subject line intact and reply to all email addresses included in the To and CC lines. (Feel free to cut this introductory paragraph, however.)
>
>
>
> The document, along with other ballot positions, can be found here:
> http://datatracker.ietf.org/doc/charter-ietf-ace/
>
>
>
> ----------------------------------------------------------------------
> BLOCK:
> ----------------------------------------------------------------------
>
> Reaction from the AAA-doctors.
>
> 1.
>  I haven't been following it in detail, but it does seem rather vague.
>
> ...
> This working group therefore aims to produce a standardized solution for authentication and authorization to enable authorized access to resources in constrained environments.
> ...
>
>   What are "resources?  It seems they are applications, but the charter doesn't make that clear.  Also, if the "constrained environments" are using DTLS, they don't seem that constrained to me.
>
>   It looks to be a slight variation on existing technologies.  e.g. we want X, Y and Z, but in situation B instead of A.  So... we're going to design something completely new.
>
>   On the other hand, I'm happy to see people paying attention to authentication and authorization.  Too many protocols are designed to solve a problem first, and second to add security.
>
> 2. 
> The Charter makes a number of assertions that are provably false, such as that AAA protocols are inappropriate for constrained environments. AAA protocols were deployed in the 1990s to support extremely limited NAS devices and Internet hosts with tiny fractions of the power of today's systems.  Any device that can run IP can authenticate against a AAA server.
>
> Let me include the AAA-doctors in the discussion
>
>
>
>
> _______________________________________________
> Ace mailing list
> Ace@ietf.org
> https://www.ietf.org/mailman/listinfo/ace


From nobody Tue Jun  3 03:15:54 2014
Return-Path: <bclaise@cisco.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7AF3B1A0190; Tue,  3 Jun 2014 03:15:52 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.151
X-Spam-Level: 
X-Spam-Status: No, score=-10.151 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id B_cjF9zwhcPt; Tue,  3 Jun 2014 03:15:49 -0700 (PDT)
Received: from aer-iport-2.cisco.com (aer-iport-2.cisco.com [173.38.203.52]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E41B51A018A; Tue,  3 Jun 2014 03:15:47 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=22757; q=dns/txt; s=iport; t=1401790543; x=1403000143; h=message-id:date:from:mime-version:to:cc:subject: references:in-reply-to; bh=EvoJGFAQI4cwAJbsdekSCjx2AqbC0UzYXj8juk/WoIo=; b=Nwzfx0ASDQqkQN9DggVCp4STrgCLMfLwueMnPMw+DZs3nqbyYcY55KVZ lQojR/Djjb45/BE5j2PkgWj9Yrd6SHoZ/EtnNrdwpwAUGsspc1ZI9J3/x zE9HOEbC2cmwwM6Qf9ueSDocksyijRn9BELAMUhRkh8+1MKmum6V8h9iS U=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AtQEAHafjVOtJssW/2dsb2JhbABPCoJCgReDRL9xAYEjdIIlAQEBAwEjRA0EAQULCxIPDAoLAgIJAwIBAgE3DgYBDAEHAQEXiB8IrSGkQReNcAYEBwECTgcKgmuBSwEDmgOGbYxEgzo7gTAJFwIC
X-IronPort-AV: E=Sophos; i="4.98,964,1392163200"; d="scan'208,217"; a="72347055"
Received: from aer-iport-nat.cisco.com (HELO aer-core-2.cisco.com) ([173.38.203.22]) by aer-iport-2.cisco.com with ESMTP; 03 Jun 2014 10:15:39 +0000
Received: from [10.60.67.91] (ams-bclaise-89110.cisco.com [10.60.67.91]) by aer-core-2.cisco.com (8.14.5/8.14.5) with ESMTP id s53AFd7p013940; Tue, 3 Jun 2014 10:15:39 GMT
Message-ID: <538DA047.7080902@cisco.com>
Date: Tue, 03 Jun 2014 12:15:35 +0200
From: Benoit Claise <bclaise@cisco.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.5.0
MIME-Version: 1.0
To: Likepeng <likepeng@huawei.com>, Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>, "adrian@olddog.co.uk" <adrian@olddog.co.uk>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com> <CAHbuEH6U7811XFdipULNwF3_2iocq9dpKje+G4kkU_bpnXHFKw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B38978@SZXEMA501-MBS.china.huawei.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com>
In-Reply-To: <34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com>
Content-Type: multipart/alternative; boundary="------------050604020100090501070105"
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/LhneHwS0hILrQjY9U1o_J9s1JP4
Cc: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, The IESG <iesg@ietf.org>, "ace@ietf.org" <ace@ietf.org>
Subject: Re: [AAA-DOCTORS] Revised charter proposal: charter-ietf-ace-00-02
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Jun 2014 10:15:52 -0000

This is a multi-part message in MIME format.
--------------050604020100090501070105
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 8bit

Hi,

> Hello all,
>
> Based on recent discussions, I made a revised charter proposal, as included in this email, not on the webpage yet.
>
> Please take a look and let us know if you have any further comments.
>
> @Adrian and @Benoit, please check if the proposed texts can resolve your comments.
>
> Thanks,
> Kind Regards
> Kepeng
>
> -------------------------------------------------------------------------------------------------------------------------------------------------------------
> Compared with charter-ietf-ace-00-01 on the webpage, the changes are:
>
> (1)	Add one clarification sentence about REST architecture:
> OLD
> The IETF has recently developed protocols for use in constrained
> environments, where network nodes are limited in CPU, memory and power.
> REST architecture is widely used for such constrained environments.
>
> NEW
> The IETF has recently developed protocols for use in constrained
> environments, where network nodes are limited in CPU, memory and power.
> REST architecture is widely used for such constrained environments.
> END
Considering that OLD is

    OLD

    The IETF has recently developed protocols for use in constrained

    environments, where network nodes are limited in CPU, memory and power.

... fine with me
>
> (2)	Remove “AAA protocol” from the charter:
> OLD
> The IETF has a long history in developing three-party authentication and
> authorization protocols for distributed environments. Examples include
> Kerberos, the Public Key Infrastructure (PKI), the Authentication,
> Authorization and Accounting (AAA) infrastructure, and the Web
> Authorization Protocol (OAuth).
>
> NEW
> The IETF has a long history in developing three-party authentication and
> authorization protocols for distributed environments. Examples include
> Kerberos, the Public Key Infrastructure (PKI), and the Web Authorization Protocol (OAuth).
> END
We have AAA-doctors telling: maybe RADIUS is applicable?
Personally, I don't know and it doesn't matter at this point.
We received feedback such as:

    Let's be clear here: It was never said (in the charter or anywhere
    else in the group to my knowledge) that RADIUS (or indeed any other
    AAA protocol) would not run on constrained devices (RFC 7228). The
    charter simply said the protocols were not optimised for constrained
    devices. That does not preclude considering any protocol for
    suitability for constrained devices either a) as is, b) in a
    restricted way or c) in an adapted way.

    So, at this stage, I don't think any protocols should be excluded
    from consideration and should certainly not be eliminated on a hunch
    that they might be "too big". Let's do the assessment properly at
    the appropriate time. As a reminder - the focus now is to complete
    the charter.

Or

    >>The Charter makes a number of assertions that are provably false, such as that AAA protocols are inappropriate for constrained environments.

    In fact, the charter does not say that. But to avoid confusion, let's remove AAA protocol from the charter.

    In the charter, we mentioned that we want to reuse existing authentication and authorization protocols where applicable to build the constrained-environment solution.

... which I read as: let's consider the AAA protocols, and evaluate if 
they would work in constrained devices.
I don't understand the logic: why do you want to remove AAA from the 
charter?
Not only would I keep "AAA", but I would propose

OLD:
Existing authentication and authorization protocols will be used where
applicable to build the constrained-environment solution

NEW:
Existing authentication and authorization protocols will be evaluated 
and re-used where
applicable to build the constrained-environment solution

Regards, Benoit
>
> (3) Clarify the scope:
> OLD:
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
> Other security protocols may be considered as long as the primary focus is maintained.
> Other application protocols and protocols at other layers in the stack are out of scope.
>
> NEW
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
> Other security protocols may be considered as long as the primary focus is maintained.
> The group is scoped to work only on the web protocols and data carried within them.
> END
>
> (4)	Update milestones for the use case & requirements document:
> OLD:
> Jul 2015 Submit “Use cases and Requirements” document to IESG for publication as informational RFC.
>
> NEW
> Dec 2014 Optionally, submit "Use cases and Requirements" document to the IESG for publication as an Informational RFC.
> END
>
> ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------
> Charter charter-ietf-ace-00-02
> Authentication and Authorization for Constrained
> Environment (ACE)
>
> The IETF has recently developed protocols for use in constrained
> environments, where network nodes are limited in CPU, memory and power.
> REST architecture is widely used for such constrained environments.
> It has been observed that Internet protocols can be applied to these
> constrained environments, often only requiring minor tweaking and
> profiling. In other cases, new protocols have been defined to address
> the specific requirements of constrained environments. An example of
> such a protocol is the Constrained Application Protocol (CoAP).
>
> As in other environments, authentication and authorization questions
> also arise in constrained environments. For example, a door lock has to
> authorize the person seeking access using a "digital key". Where is the
> authorization policy stored? How does the digital key communicate with
> the lock? Does the lock interact with an authorization server to obtain
> authorization information? How can access be temporarily granted to
> other persons? How can access be revoked? These types of questions have
> been answered by existing protocols for use cases outside constrained
> environments, however in constrained environments, additional and
> different requirements pose challenges for the use of various security
> protocols. In particular, the need arises for a dynamic and fine grained
> access control mechanism, where clients and/or resource servers are
> constrained.
>
> The IETF has a long history in developing three-party authentication and
> authorization protocols for distributed environments. Examples include
> Kerberos, the Public Key Infrastructure (PKI), and the Web
> Authorization Protocol (OAuth). All these protocols enjoy widespread
> deployment on the Internet. Although they all aim to solve a similar
> goal, at an abstract level, they offer quite different functions and
> utilize different message exchanges. These differences result from the
> main deployment use cases they were designed for respectively.
>
> Requirements derived from use cases indicate the suitability of existing
> work as a solution for constrained environments. These protocols,
> however, were not optimized for constrained environments. Additional
> requirements that need to be taken into account are the lack of a
> suitable user-interface and the inability of embedded devices to contact
> an authorization server in real-time with every resource access request
> due to intermittent connectivity, etc.
>
> This working group therefore aims to produce a standardized solution for
> authentication and authorization to enable authorized access (GET, PUT, POST,
> DELETE) to resources identified by a URI and hosted on a resource
> server in constrained environments. As a starting point, the working
> group will assume that access to resources at a resource server by a
> client device takes place using CoAP and is protected by DTLS. Both
> resource server and client may be constrained. This access will be
> mediated by an authorization server, which is not considered to be
> constrained.
>
> Existing authentication and authorization protocols will be used where
> applicable to build the constrained-environment solution. This requires
> relevant specifications to be reviewed for suitability, selecting a
> subset of them and restricting the options within each of the
> specifications. Some functionality, however, may not be available in
> existing protocols, in which case the solution may also involve new
> protocol work. Leveraging existing work means the working group benefits
> from available security analysis, implementation, and deployment
> experience. Moreover, a standardized solution for federated
> authentication and authorization will help to stimulate the deployment
> of constrained devices that provide increased security.
>
> Once progress in identifying suitable candidate solutions has been made,
> the working group will verify whether the same mechanisms are also
> applicable beyond the use of CoAP and DTLS, which are the two main
> protocols the group will focus on for access to resources. In
> particular, the ability to use the developed solution over HTTP and TLS
> will be investigated. Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
> Other security protocols may be considered as long as the primary focus is maintained.
> The group is scoped to work only on the web protocols and data carried within them.
> Furthermore, to guarantee smooth transition, the
> integration with existing deployments will be studied, particularly
> concerning the use of protocol translation proxies.
>
> This work does not make the assumption that the party offering
> application layer services is always the same party offering network
> access services.
>
> The working group has the following tasks:
>
> 1) Produce use cases and requirements
>
> 2) Identify authentication and authorization mechanisms suitable for
> resource access in constrained environments.
>
> Milestones:
>
> Jul 2014 Submit "Use cases and Requirements" as a WG item.
> Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.
> Dec 2014 Optionally, submit "Use cases and Requirements" document
> to the IESG for publication as an Informational RFC.
> Jul 2016 Submit "Authentication and Authorization Solution"
> specification to the IESG for publication as a Proposed Standard.
>
> Proposed Milestones
> No milestones for charter found.


--------------050604020100090501070105
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 8bit

<html>
  <head>
    <meta content="text/html; charset=UTF-8" http-equiv="Content-Type">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <div class="moz-cite-prefix">Hi, <br>
      <br>
    </div>
    <blockquote
cite="mid:34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com"
      type="cite">
      <pre wrap="">Hello all,

Based on recent discussions, I made a revised charter proposal, as included in this email, not on the webpage yet. 

Please take a look and let us know if you have any further comments.

@Adrian and @Benoit, please check if the proposed texts can resolve your comments.

Thanks,
Kind Regards
Kepeng

-------------------------------------------------------------------------------------------------------------------------------------------------------------
Compared with charter-ietf-ace-00-01 on the webpage, the changes are:

(1)	Add one clarification sentence about REST architecture:
OLD
The IETF has recently developed protocols for use in constrained
environments, where network nodes are limited in CPU, memory and power. 
REST architecture is widely used for such constrained environments.

NEW
The IETF has recently developed protocols for use in constrained
environments, where network nodes are limited in CPU, memory and power.
REST architecture is widely used for such constrained environments.
END</pre>
    </blockquote>
    Considering that OLD is<br>
    <blockquote>
      <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">OLD<o:p></o:p></span></pre>
      <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">The IETF has recently developed protocols for use in constrained<o:p></o:p></span></pre>
      <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">environments, where network nodes are limited in CPU, memory and power. </span></pre>
    </blockquote>
    ... fine with me<br>
    <blockquote
cite="mid:34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com"
      type="cite">
      <pre wrap="">

(2)	Remove “AAA protocol” from the charter:
OLD
The IETF has a long history in developing three-party authentication and
authorization protocols for distributed environments. Examples include
Kerberos, the Public Key Infrastructure (PKI), the Authentication,
Authorization and Accounting (AAA) infrastructure, and the Web
Authorization Protocol (OAuth).

NEW
The IETF has a long history in developing three-party authentication and
authorization protocols for distributed environments. Examples include
Kerberos, the Public Key Infrastructure (PKI), and the Web Authorization Protocol (OAuth).
END</pre>
    </blockquote>
    We have AAA-doctors telling: maybe RADIUS is applicable?<br>
    Personally, I don't know and it doesn't matter at this point.<br>
    We received feedback such as:<br>
    <blockquote>Let's be clear here: It was never said (in the charter
      or anywhere else in the group to my knowledge) that RADIUS (or
      indeed any other AAA protocol) would not run on constrained
      devices (RFC 7228). The charter simply said the protocols were not
      optimised for constrained devices. That does not preclude
      considering any protocol for suitability for constrained devices
      either a) as is, b) in a restricted way or c) in an adapted way.<br>
      <br>
      So, at this stage, I don't think any protocols should be excluded
      from consideration and should certainly not be eliminated on a
      hunch that they might be "too big". Let's do the assessment
      properly at the appropriate time. As a reminder - the focus now is
      to complete the charter.</blockquote>
    Or<br>
    <blockquote>
      <pre wrap="">&gt;&gt;The Charter makes a number of assertions that are provably false, such as that AAA protocols are inappropriate for constrained environments.
</pre>
      <pre wrap="">In fact, the charter does not say that. But to avoid confusion, let's remove AAA protocol from the charter.

In the charter, we mentioned that we want to reuse existing authentication and authorization protocols where applicable to build the constrained-environment solution.</pre>
    </blockquote>
    ... which I read as: let's consider the AAA protocols, and evaluate
    if they would work in constrained devices.<br>
    I don't understand the logic: why do you want to remove AAA from the
    charter?<br>
    Not only would I keep "AAA", but I would propose<br>
    <br>
    OLD:<br>
    Existing authentication and authorization protocols will be used
    where<br>
    applicable to build the constrained-environment solution<br>
    <br>
    NEW:<br>
    Existing authentication and authorization protocols will be
    evaluated and re-used where<br>
    applicable to build the constrained-environment solution<br>
    <br>
    Regards, Benoit<br>
    <blockquote
cite="mid:34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com"
      type="cite">
      <pre wrap="">

(3) Clarify the scope:
OLD:
Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
Other security protocols may be considered as long as the primary focus is maintained.  
Other application protocols and protocols at other layers in the stack are out of scope.

NEW
Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
Other security protocols may be considered as long as the primary focus is maintained.  
The group is scoped to work only on the web protocols and data carried within them.
END

(4)	Update milestones for the use case &amp; requirements document:
OLD:
Jul 2015 Submit “Use cases and Requirements” document to IESG for publication as informational RFC.

NEW
Dec 2014 Optionally, submit "Use cases and Requirements" document to the IESG for publication as an Informational RFC.
END

----------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Charter charter-ietf-ace-00-02
Authentication and Authorization for Constrained
Environment (ACE)

The IETF has recently developed protocols for use in constrained
environments, where network nodes are limited in CPU, memory and power. 
REST architecture is widely used for such constrained environments.
It has been observed that Internet protocols can be applied to these
constrained environments, often only requiring minor tweaking and
profiling. In other cases, new protocols have been defined to address
the specific requirements of constrained environments. An example of
such a protocol is the Constrained Application Protocol (CoAP).

As in other environments, authentication and authorization questions
also arise in constrained environments. For example, a door lock has to
authorize the person seeking access using a "digital key". Where is the
authorization policy stored? How does the digital key communicate with
the lock? Does the lock interact with an authorization server to obtain
authorization information? How can access be temporarily granted to
other persons? How can access be revoked? These types of questions have
been answered by existing protocols for use cases outside constrained
environments, however in constrained environments, additional and
different requirements pose challenges for the use of various security
protocols. In particular, the need arises for a dynamic and fine grained
access control mechanism, where clients and/or resource servers are
constrained.

The IETF has a long history in developing three-party authentication and
authorization protocols for distributed environments. Examples include
Kerberos, the Public Key Infrastructure (PKI), and the Web
Authorization Protocol (OAuth). All these protocols enjoy widespread
deployment on the Internet. Although they all aim to solve a similar
goal, at an abstract level, they offer quite different functions and
utilize different message exchanges. These differences result from the
main deployment use cases they were designed for respectively.

Requirements derived from use cases indicate the suitability of existing
work as a solution for constrained environments. These protocols,
however, were not optimized for constrained environments. Additional
requirements that need to be taken into account are the lack of a
suitable user-interface and the inability of embedded devices to contact
an authorization server in real-time with every resource access request
due to intermittent connectivity, etc.

This working group therefore aims to produce a standardized solution for
authentication and authorization to enable authorized access (GET, PUT, POST, 
DELETE) to resources identified by a URI and hosted on a resource
server in constrained environments. As a starting point, the working
group will assume that access to resources at a resource server by a
client device takes place using CoAP and is protected by DTLS. Both
resource server and client may be constrained. This access will be
mediated by an authorization server, which is not considered to be
constrained.

Existing authentication and authorization protocols will be used where
applicable to build the constrained-environment solution. This requires
relevant specifications to be reviewed for suitability, selecting a
subset of them and restricting the options within each of the
specifications. Some functionality, however, may not be available in
existing protocols, in which case the solution may also involve new
protocol work. Leveraging existing work means the working group benefits
from available security analysis, implementation, and deployment
experience. Moreover, a standardized solution for federated
authentication and authorization will help to stimulate the deployment
of constrained devices that provide increased security.

Once progress in identifying suitable candidate solutions has been made,
the working group will verify whether the same mechanisms are also
applicable beyond the use of CoAP and DTLS, which are the two main
protocols the group will focus on for access to resources. In
particular, the ability to use the developed solution over HTTP and TLS
will be investigated. Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
Other security protocols may be considered as long as the primary focus is maintained.  
The group is scoped to work only on the web protocols and data carried within them.
Furthermore, to guarantee smooth transition, the
integration with existing deployments will be studied, particularly
concerning the use of protocol translation proxies.

This work does not make the assumption that the party offering
application layer services is always the same party offering network
access services.

The working group has the following tasks:

1) Produce use cases and requirements

2) Identify authentication and authorization mechanisms suitable for
resource access in constrained environments.

Milestones:

Jul 2014 Submit "Use cases and Requirements" as a WG item.
Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.
Dec 2014 Optionally, submit "Use cases and Requirements" document 
to the IESG for publication as an Informational RFC.
Jul 2016 Submit "Authentication and Authorization Solution"
specification to the IESG for publication as a Proposed Standard.

Proposed Milestones 
No milestones for charter found.
</pre>
    </blockquote>
    <br>
  </body>
</html>

--------------050604020100090501070105--


From nobody Tue Jun  3 03:32:33 2014
Return-Path: <likepeng@huawei.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 94DB11A01A7; Tue,  3 Jun 2014 03:32:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.851
X-Spam-Level: 
X-Spam-Status: No, score=-4.851 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6-aYR8CPQWYk; Tue,  3 Jun 2014 03:32:14 -0700 (PDT)
Received: from lhrrgout.huawei.com (lhrrgout.huawei.com [194.213.3.17]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 183141A01B1; Tue,  3 Jun 2014 03:32:12 -0700 (PDT)
Received: from 172.18.7.190 (EHLO lhreml203-edg.china.huawei.com) ([172.18.7.190]) by lhrrg01-dlp.huawei.com (MOS 4.3.7-GA FastPath queued) with ESMTP id BHU15873; Tue, 03 Jun 2014 10:32:06 +0000 (GMT)
Received: from LHREML401-HUB.china.huawei.com (10.201.5.240) by lhreml203-edg.huawei.com (172.18.7.221) with Microsoft SMTP Server (TLS) id 14.3.158.1; Tue, 3 Jun 2014 11:31:16 +0100
Received: from SZXEMA405-HUB.china.huawei.com (10.82.72.37) by lhreml401-hub.china.huawei.com (10.201.5.240) with Microsoft SMTP Server (TLS) id 14.3.158.1; Tue, 3 Jun 2014 11:32:04 +0100
Received: from SZXEMA501-MBS.china.huawei.com ([169.254.2.214]) by SZXEMA405-HUB.china.huawei.com ([10.82.72.37]) with mapi id 14.03.0158.001; Tue, 3 Jun 2014 18:31:57 +0800
From: Likepeng <likepeng@huawei.com>
To: Benoit Claise <bclaise@cisco.com>, Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>, "adrian@olddog.co.uk" <adrian@olddog.co.uk>
Thread-Topic: Revised charter proposal: charter-ietf-ace-00-02
Thread-Index: AQHPeLrW9teE9ryEO0GmvALEdUzf8JtesfKAgACKjwA=
Date: Tue, 3 Jun 2014 10:31:56 +0000
Message-ID: <34966E97BE8AD64EAE9D3D6E4DEE36F258153F43@SZXEMA501-MBS.china.huawei.com>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com> <CAHbuEH6U7811XFdipULNwF3_2iocq9dpKje+G4kkU_bpnXHFKw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B38978@SZXEMA501-MBS.china.huawei.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com> <538DA047.7080902@cisco.com>
In-Reply-To: <538DA047.7080902@cisco.com>
Accept-Language: zh-CN, en-US
Content-Language: zh-CN
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
x-originating-ip: [10.47.89.186]
Content-Type: multipart/alternative; boundary="_000_34966E97BE8AD64EAE9D3D6E4DEE36F258153F43SZXEMA501MBSchi_"
MIME-Version: 1.0
X-CFilter-Loop: Reflected
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/sEbDzJY2-RLALdlfi_VHeL8SADk
Cc: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, The IESG <iesg@ietf.org>, "ace@ietf.org" <ace@ietf.org>
Subject: Re: [AAA-DOCTORS] Revised charter proposal: charter-ietf-ace-00-02
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Jun 2014 10:32:22 -0000

--_000_34966E97BE8AD64EAE9D3D6E4DEE36F258153F43SZXEMA501MBSchi_
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
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==

--_000_34966E97BE8AD64EAE9D3D6E4DEE36F258153F43SZXEMA501MBSchi_
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: base64
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--_000_34966E97BE8AD64EAE9D3D6E4DEE36F258153F43SZXEMA501MBSchi_--


From nobody Tue Jun  3 06:20:52 2014
Return-Path: <bclaise@cisco.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 06EF01A0263 for <aaa-doctors@ietfa.amsl.com>; Tue,  3 Jun 2014 06:20:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.151
X-Spam-Level: 
X-Spam-Status: No, score=-10.151 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id O_KNJ6ablxXc for <aaa-doctors@ietfa.amsl.com>; Tue,  3 Jun 2014 06:20:44 -0700 (PDT)
Received: from bgl-iport-3.cisco.com (bgl-iport-3.cisco.com [72.163.197.27]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 552821A022D for <aaa-doctors@ietf.org>; Tue,  3 Jun 2014 06:20:42 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=46867; q=dns/txt; s=iport; t=1401801637; x=1403011237; h=message-id:date:from:mime-version:to:subject:references: in-reply-to; bh=aafUguvXPthJu2YtNKHJ2cgkH5u9yL6TAfHDRz4/tpU=; b=N4NjfLadJzh09ZdLYW0g54rvk7Va0+Kz4SyoSOjeBSRVFTQTuJj5xjJ1 1/rVa88s7SGebhlAMuD41UqpYUiCeoT9uzFmfMhtckDQQlIriChayB2+O EynsgOUi5Iw1T3N5XDQkd9nZ/bh7sKsIkuoSjhdGtHZv4dgr6phtRQa/7 8=;
X-Files: : None
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AsQTAFrKjVNIo8UY/2dsb2JhbAAWOQqCQoEXg0S/cgGBI3SCJQEBAQMBGglEDQMBBgcECQIRAQIBAgoMCgEBBgMCAgkDAgECATQDBggGDQYCAQEXiB8IjGeDAZwgpEUXjXAGBAcBAjYHDAsBBgSCa4FLAQOFVIwBgTqGdIZtjESBeIFCO4EwCRcCAg
X-IronPort-AV: E=Sophos;i="4.98,965,1392163200";  d="eml'208?scan'208,208,217";a="6870334"
Received: from vla196-nat.cisco.com (HELO bgl-core-1.cisco.com) ([72.163.197.24]) by bgl-iport-3.cisco.com with ESMTP; 03 Jun 2014 13:20:33 +0000
Received: from [10.60.67.91] (ams-bclaise-89110.cisco.com [10.60.67.91]) by bgl-core-1.cisco.com (8.14.5/8.14.5) with ESMTP id s53DKU1F010180 for <aaa-doctors@ietf.org>; Tue, 3 Jun 2014 13:20:31 GMT
Message-ID: <538DCB9E.3040900@cisco.com>
Date: Tue, 03 Jun 2014 15:20:30 +0200
From: Benoit Claise <bclaise@cisco.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.5.0
MIME-Version: 1.0
To: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>
References: <mailman.3179.1401798590.2738.aaa-doctors@ietf.org>
In-Reply-To: <mailman.3179.1401798590.2738.aaa-doctors@ietf.org>
X-Forwarded-Message-Id: <mailman.3179.1401798590.2738.aaa-doctors@ietf.org>
Content-Type: multipart/mixed; boundary="------------060701020405000306030004"
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/guxSgV7oEKwUflpkHGtnPI9S0O8
Subject: Re: [AAA-DOCTORS] Revised charter proposal: charter-ietf-ace-00-02 was (Fwd: Auto-discard notification)
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Jun 2014 13:20:49 -0000

This is a multi-part message in MIME format.
--------------060701020405000306030004
Content-Type: multipart/alternative;
 boundary="------------060402050208040705030109"


--------------060402050208040705030109
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 7bit

Not sure why it was discarded...


-------- Original Message --------
Subject: 	Auto-discard notification
Date: 	Tue, 3 Jun 2014 05:29:50 -0700
From: 	<aaa-doctors-bounces@ietf.org>
To: 	<aaa-doctors-owner@ietf.org>



The attached message has been automatically discarded.




--------------060402050208040705030109
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 7bit

<html>
  <head>

    <meta http-equiv="content-type" content="text/html; charset=UTF-8">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    Not sure why it was discarded...<br>
    <div class="moz-forward-container"><br>
      <br>
      -------- Original Message --------
      <table class="moz-email-headers-table" cellpadding="0"
        cellspacing="0" border="0">
        <tbody>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">Subject:
            </th>
            <td>Auto-discard notification</td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">Date: </th>
            <td>Tue, 3 Jun 2014 05:29:50 -0700</td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">From: </th>
            <td><a class="moz-txt-link-rfc2396E" href="mailto:aaa-doctors-bounces@ietf.org">&lt;aaa-doctors-bounces@ietf.org&gt;</a></td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">To: </th>
            <td><a class="moz-txt-link-rfc2396E" href="mailto:aaa-doctors-owner@ietf.org">&lt;aaa-doctors-owner@ietf.org&gt;</a></td>
          </tr>
        </tbody>
      </table>
      <br>
      <br>
      <pre>The attached message has been automatically discarded.
</pre>
      <br>
    </div>
    <br>
  </body>
</html>

--------------060402050208040705030109--

--------------060701020405000306030004
Content-Type: message/rfc822;
 name="ForwardedMessage.eml"
Content-Transfer-Encoding: 7bit
Content-Disposition: attachment;
 filename="ForwardedMessage.eml"

Return-Path: <kathleen.moriarty.ietf@gmail.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com
 (Postfix) with ESMTP id 4B5AF1A0240; Tue,  3 Jun 2014 05:29:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level: 
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5
 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1,
 DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001,
 SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com
 [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8POsC-DfkXUu; Tue,  3
 Jun 2014 05:29:44 -0700 (PDT)
Received: from mail-la0-x236.google.com (mail-la0-x236.google.com
 [IPv6:2a00:1450:4010:c03::236]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA
 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix)
 with ESMTPS id 810E51A0261; Tue,  3 Jun 2014 05:29:43 -0700 (PDT)
Received: by mail-la0-f54.google.com with SMTP id pv20so3367986lab.41 for
 <multiple recipients>; Tue, 03 Jun 2014 05:29:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113;
 h=mime-version:in-reply-to:references:date:message-id:subject:from:to
 :cc:content-type;
 bh=hSis/5GFmBLfyq5yrpyzCuqruxIGvsH3ioJjzkD/Qyo=;
 b=WZoCTgjalekerhgNJSpF7KxD/Ip3755mJy/oP1njnFPw7MdP1pKfSr8SY2zRUhIQg4
 e0e4h7Q5tdscK5EQrCdzXATkDUnBKOl/2o6jeQmtF9N82M75OSQDwUKn+yLaVaa7/Pct
 RETvfHHPQJmmfsqK0ULn8mdBw6LQoao9Ng/HUVfZssN0tV2GksDTcAxYpi2wMInKiWmh
 UrFNewSYd3Iv2zet28kP3U24dPzvGxtuUNMfXnVlDD9HS07Wk/iNsIu+6gdARNd6pD23
 mJcRpHDZrFtpYeFBzRLPt7w14RnqS7F+arSWHBIO6C8wmeeekHtRJalOzXElSZ7Dvoos
 8inQ==
X-Received: by 10.112.149.71 with SMTP id ty7mr33119626lbb.34.1401798576196;
 Tue, 03 Jun 2014 05:29:36 -0700 (PDT)
Received: by 10.112.33.36 with HTTP; Tue, 3 Jun 2014 05:29:36 -0700 (PDT)
In-Reply-To: <34966E97BE8AD64EAE9D3D6E4DEE36F258153F43@SZXEMA501-MBS.china.huawei.com>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com>
 <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com>
 <CAHbuEH6U7811XFdipULNwF3_2iocq9dpKje+G4kkU_bpnXHFKw@mail.gmail.com>
 <34966E97BE8AD64EAE9D3D6E4DEE36F252B38978@SZXEMA501-MBS.china.huawei.com>
 <34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com>
 <538DA047.7080902@cisco.com>
 <34966E97BE8AD64EAE9D3D6E4DEE36F258153F43@SZXEMA501-MBS.china.huawei.com>
Date: Tue, 3 Jun 2014 08:29:36 -0400
Message-ID: <CAHbuEH50vOKf=nHad+9y57qiqdzu=7k3WO1Y8fuuo16crCx5pw@mail.gmail.com>
Subject: Re: Revised charter proposal: charter-ietf-ace-00-02
From: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
To: Likepeng <likepeng@huawei.com>
CC: Benoit Claise <bclaise@cisco.com>, "adrian@olddog.co.uk"
	<adrian@olddog.co.uk>, "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, "The
 IESG" <iesg@ietf.org>, "ace@ietf.org" <ace@ietf.org>
Content-Type: multipart/alternative; boundary="047d7b3a8ada2e514104faedaa7f"
List-ID: <aaa-doctors.ietf.org>
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/8CO6aXSLQuMO6teBbWwi3MFAoHY
MIME-Version: 1.0

--047d7b3a8ada2e514104faedaa7f
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

Hi Kepeng,

If we are at a point where I can update the charter, seems that way, please
send the latest version that has been agreed upon and I'll take care of the
update.

Thanks.


On Tue, Jun 3, 2014 at 6:31 AM, Likepeng <likepeng@huawei.com> wrote:

>  Hi Benoit,
>
>
>
> >Not only would I keep "AAA",
>
>
>
> OK.
>
>
>
> >but I would propose
>
>
>
> >OLD:
>
> >Existing authentication and authorization protocols will be used where
>
> applicable to build the constrained-environment solution.
>
>
>
> >NEW:
>
> Existing authentication and authorization protocols will be evaluated and
> re-used where
>
> applicable to build the constrained-environment solution.
>
>
>
> OK, fine with me.
>
>
>
> Thanks for the feedback.
>
>
>
> Kind Regards
>
> Kepeng
>
>
>
> *=E5=8F=91=E4=BB=B6=E4=BA=BA:* Benoit Claise [mailto:bclaise@cisco.com]
> *=E5=8F=91=E9=80=81=E6=97=B6=E9=97=B4:* 2014=E5=B9=B46=E6=9C=883=E6=97=A5=
 12:16
> *=E6=94=B6=E4=BB=B6=E4=BA=BA:* Likepeng; Kathleen Moriarty; adrian@olddog=
.co.uk
> *=E6=8A=84=E9=80=81:* aaa-doctors@ietf.org; The IESG; ace@ietf.org
> *=E4=B8=BB=E9=A2=98:* Re: Revised charter proposal: charter-ietf-ace-00-0=
2
>
>
>
> Hi,
>
> Hello all,
>
>
>
> Based on recent discussions, I made a revised charter proposal, as includ=
ed in this email, not on the webpage yet.
>
>
>
> Please take a look and let us know if you have any further comments.
>
>
>
> @Adrian and @Benoit, please check if the proposed texts can resolve your =
comments.
>
>
>
> Thanks,
>
> Kind Regards
>
> Kepeng
>
>
>
> -------------------------------------------------------------------------=
---------------------------------------------------------------------------=
---------
>
> Compared with charter-ietf-ace-00-01 on the webpage, the changes are:
>
>
>
> (1)      Add one clarification sentence about REST architecture:
>
> OLD
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> REST architecture is widely used for such constrained environments.
>
>
>
> NEW
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> REST architecture is widely used for such constrained environments.
>
> END
>
>  Considering that OLD is
>
> OLD
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> ... fine with me
>
>
>
>
>
> (2)     Remove =E2=80=9CAAA protocol=E2=80=9D from the charter:
>
> OLD
>
> The IETF has a long history in developing three-party authentication and
>
> authorization protocols for distributed environments. Examples include
>
> Kerberos, the Public Key Infrastructure (PKI), the Authentication,
>
> Authorization and Accounting (AAA) infrastructure, and the Web
>
> Authorization Protocol (OAuth).
>
>
>
> NEW
>
> The IETF has a long history in developing three-party authentication and
>
> authorization protocols for distributed environments. Examples include
>
> Kerberos, the Public Key Infrastructure (PKI), and the Web Authorization =
Protocol (OAuth).
>
> END
>
> We have AAA-doctors telling: maybe RADIUS is applicable?
> Personally, I don't know and it doesn't matter at this point.
> We received feedback such as:
>
> Let's be clear here: It was never said (in the charter or anywhere else i=
n
> the group to my knowledge) that RADIUS (or indeed any other AAA protocol)
> would not run on constrained devices (RFC 7228). The charter simply said
> the protocols were not optimised for constrained devices. That does not
> preclude considering any protocol for suitability for constrained devices
> either a) as is, b) in a restricted way or c) in an adapted way.
>
> So, at this stage, I don't think any protocols should be excluded from
> consideration and should certainly not be eliminated on a hunch that they
> might be "too big". Let's do the assessment properly at the appropriate
> time. As a reminder - the focus now is to complete the charter.
>
> Or
>
> >>The Charter makes a number of assertions that are provably false, such =
as that AAA protocols are inappropriate for constrained environments.
>
> In fact, the charter does not say that. But to avoid confusion, let's rem=
ove AAA protocol from the charter.
>
>
>
> In the charter, we mentioned that we want to reuse existing authenticatio=
n and authorization protocols where applicable to build the constrained-env=
ironment solution.
>
> ... which I read as: let's consider the AAA protocols, and evaluate if
> they would work in constrained devices.
> I don't understand the logic: why do you want to remove AAA from the
> charter?
> Not only would I keep "AAA", but I would propose
>
> OLD:
> Existing authentication and authorization protocols will be used where
> applicable to build the constrained-environment solution
>
> NEW:
> Existing authentication and authorization protocols will be evaluated and
> re-used where
> applicable to build the constrained-environment solution
>
> Regards, Benoit
>
>
>
>
>
> (3) Clarify the scope:
>
> OLD:
>
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
> Other security protocols may be considered as long as the primary focus i=
s maintained.
>
> Other application protocols and protocols at other layers in the stack ar=
e out of scope.
>
>
>
> NEW
>
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
> Other security protocols may be considered as long as the primary focus i=
s maintained.
>
> The group is scoped to work only on the web protocols and data carried wi=
thin them.
>
> END
>
>
>
> (4)     Update milestones for the use case & requirements document:
>
> OLD:
>
> Jul 2015 Submit =E2=80=9CUse cases and Requirements=E2=80=9D document to =
IESG for publication as informational RFC.
>
>
>
> NEW
>
> Dec 2014 Optionally, submit "Use cases and Requirements" document to the =
IESG for publication as an Informational RFC.
>
> END
>
>
>
> -------------------------------------------------------------------------=
---------------------------------------------------------------------------=
------------------------
>
> Charter charter-ietf-ace-00-02
>
> Authentication and Authorization for Constrained
>
> Environment (ACE)
>
>
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> REST architecture is widely used for such constrained environments.
>
> It has been observed that Internet protocols can be applied to these
>
> constrained environments, often only requiring minor tweaking and
>
> profiling. In other cases, new protocols have been defined to address
>
> the specific requirements of constrained environments. An example of
>
> such a protocol is the Constrained Application Protocol (CoAP).
>
>
>
> As in other environments, authentication and authorization questions
>
> also arise in constrained environments. For example, a door lock has to
>
> authorize the person seeking access using a "digital key". Where is the
>
> authorization policy stored? How does the digital key communicate with
>
> the lock? Does the lock interact with an authorization server to obtain
>
> authorization information? How can access be temporarily granted to
>
> other persons? How can access be revoked? These types of questions have
>
> been answered by existing protocols for use cases outside constrained
>
> environments, however in constrained environments, additional and
>
> different requirements pose challenges for the use of various security
>
> protocols. In particular, the need arises for a dynamic and fine grained
>
> access control mechanism, where clients and/or resource servers are
>
> constrained.
>
>
>
> The IETF has a long history in developing three-party authentication and
>
> authorization protocols for distributed environments. Examples include
>
> Kerberos, the Public Key Infrastructure (PKI), and the Web
>
> Authorization Protocol (OAuth). All these protocols enjoy widespread
>
> deployment on the Internet. Although they all aim to solve a similar
>
> goal, at an abstract level, they offer quite different functions and
>
> utilize different message exchanges. These differences result from the
>
> main deployment use cases they were designed for respectively.
>
>
>
> Requirements derived from use cases indicate the suitability of existing
>
> work as a solution for constrained environments. These protocols,
>
> however, were not optimized for constrained environments. Additional
>
> requirements that need to be taken into account are the lack of a
>
> suitable user-interface and the inability of embedded devices to contact
>
> an authorization server in real-time with every resource access request
>
> due to intermittent connectivity, etc.
>
>
>
> This working group therefore aims to produce a standardized solution for
>
> authentication and authorization to enable authorized access (GET, PUT, P=
OST,
>
> DELETE) to resources identified by a URI and hosted on a resource
>
> server in constrained environments. As a starting point, the working
>
> group will assume that access to resources at a resource server by a
>
> client device takes place using CoAP and is protected by DTLS. Both
>
> resource server and client may be constrained. This access will be
>
> mediated by an authorization server, which is not considered to be
>
> constrained.
>
>
>
> Existing authentication and authorization protocols will be used where
>
> applicable to build the constrained-environment solution. This requires
>
> relevant specifications to be reviewed for suitability, selecting a
>
> subset of them and restricting the options within each of the
>
> specifications. Some functionality, however, may not be available in
>
> existing protocols, in which case the solution may also involve new
>
> protocol work. Leveraging existing work means the working group benefits
>
> from available security analysis, implementation, and deployment
>
> experience. Moreover, a standardized solution for federated
>
> authentication and authorization will help to stimulate the deployment
>
> of constrained devices that provide increased security.
>
>
>
> Once progress in identifying suitable candidate solutions has been made,
>
> the working group will verify whether the same mechanisms are also
>
> applicable beyond the use of CoAP and DTLS, which are the two main
>
> protocols the group will focus on for access to resources. In
>
> particular, the ability to use the developed solution over HTTP and TLS
>
> will be investigated. Note that the initial focus is on CoAP and HTTP wit=
h DTLS and TLS.
>
> Other security protocols may be considered as long as the primary focus i=
s maintained.
>
> The group is scoped to work only on the web protocols and data carried wi=
thin them.
>
> Furthermore, to guarantee smooth transition, the
>
> integration with existing deployments will be studied, particularly
>
> concerning the use of protocol translation proxies.
>
>
>
> This work does not make the assumption that the party offering
>
> application layer services is always the same party offering network
>
> access services.
>
>
>
> The working group has the following tasks:
>
>
>
> 1) Produce use cases and requirements
>
>
>
> 2) Identify authentication and authorization mechanisms suitable for
>
> resource access in constrained environments.
>
>
>
> Milestones:
>
>
>
> Jul 2014 Submit "Use cases and Requirements" as a WG item.
>
> Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.
>
> Dec 2014 Optionally, submit "Use cases and Requirements" document
>
> to the IESG for publication as an Informational RFC.
>
> Jul 2016 Submit "Authentication and Authorization Solution"
>
> specification to the IESG for publication as a Proposed Standard.
>
>
>
> Proposed Milestones
>
> No milestones for charter found.
>
>
>



--=20

Best regards,
Kathleen

--047d7b3a8ada2e514104faedaa7f
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3Dutf-8"><d=
iv dir=3D"ltr">Hi Kepeng,<div><br></div><div>If we are at a point where I c=
an update the charter, seems that way, please send the latest version that =
has been agreed upon and I'll take care of the update.</div><div><br>
</div><div>Thanks.</div></div><div class=3D"gmail_extra"><br><br><div class=
=3D"gmail_quote">On Tue, Jun 3, 2014 at 6:31 AM, Likepeng <span dir=3D"ltr"=
>&lt;<a href=3D"mailto:likepeng@huawei.com" target=3D"_blank">likepeng@huaw=
ei.com</a>&gt;</span> wrote:<br>
<blockquote class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1p=
x #ccc solid;padding-left:1ex">





<div bgcolor=3D"white" lang=3D"ZH-CN" link=3D"blue" vlink=3D"purple">
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Hi Benoit,=
<u></u><u></u></span></p><div class=3D"">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;Not on=
ly would I keep &quot;AAA&quot;,
<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
</div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt=
;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">OK.<=
u></u><u></u></span></p><div class=3D"">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;but I =
would propose<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;OLD:<u=
></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;Existi=
ng authentication and authorization protocols will be used where<u></u><u><=
/u></span></p>

</div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt=
;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">appl=
icable to build the constrained-environment solution.<u></u><u></u></span><=
/p>
<div class=3D"">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;NEW:<u=
></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Existing a=
uthentication and authorization protocols will be evaluated and re-used whe=
re<u></u><u></u></span></p>

</div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt=
;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">appl=
icable to build the constrained-environment solution.<u></u><u></u></span><=
/p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">OK, fine w=
ith me.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Thanks for=
 the feedback.
<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Kind Regar=
ds<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Kepeng<u><=
/u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<div>
<div style=3D"border:none;border-top:solid #b5c4df 1.0pt;padding:3.0pt 0cm =
0cm 0cm">
<p class=3D"MsoNormal"><b><span style=3D"font-size:10.0pt;color:windowtext"=
>=E5=8F=91=E4=BB=B6=E4=BA=BA<span lang=3D"EN-US">:</span></span></b><span l=
ang=3D"EN-US" style=3D"font-size:10.0pt;color:windowtext"> Benoit Claise [m=
ailto:<a href=3D"mailto:bclaise@cisco.com" target=3D"_blank">bclaise@cisco.=
com</a>]
<br>
</span><b><span style=3D"font-size:10.0pt;color:windowtext">=E5=8F=91=E9=80=
=81=E6=97=B6=E9=97=B4<span lang=3D"EN-US">:</span></span></b><span lang=3D"=
EN-US" style=3D"font-size:10.0pt;color:windowtext"> 2014</span><span style=
=3D"font-size:10.0pt;color:windowtext">=E5=B9=B4<span lang=3D"EN-US">6</spa=
n>=E6=9C=88<span lang=3D"EN-US">3</span>=E6=97=A5<span lang=3D"EN-US">
 12:16<br>
</span></span></p><div class=3D""><b>=E6=94=B6=E4=BB=B6=E4=BA=BA<span lang=
=3D"EN-US">:</span></b><span lang=3D"EN-US"> Likepeng; Kathleen Moriarty; <=
a href=3D"mailto:adrian@olddog.co.uk" target=3D"_blank">adrian@olddog.co.uk=
</a><br>
</span></div><b>=E6=8A=84=E9=80=81<span lang=3D"EN-US">:</span></b><span la=
ng=3D"EN-US"> <a href=3D"mailto:aaa-doctors@ietf.org" target=3D"_blank">aaa=
-doctors@ietf.org</a>; The IESG; <a href=3D"mailto:ace@ietf.org" target=3D"=
_blank">ace@ietf.org</a><br>

</span><div class=3D""><b>=E4=B8=BB=E9=A2=98<span lang=3D"EN-US">:</span></=
b><span lang=3D"EN-US"> Re: Revised charter proposal: charter-ietf-ace-00-0=
2<u></u><u></u></span></div><p></p>
</div>
</div>
<p class=3D"MsoNormal"><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></p>
<div>
<p class=3D"MsoNormal" style=3D"margin-bottom:12.0pt"><span lang=3D"EN-US">=
Hi, <u></u><u></u></span></p>
</div><div><div class=3D"h5">
<blockquote style=3D"margin-top:5.0pt;margin-bottom:5.0pt">
<pre><span lang=3D"EN-US">Hello all,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">Based on recent discussions, I made a revised cha=
rter proposal, as included in this email, not on the webpage yet. <u></u><u=
></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">Please take a look and let us know if you have an=
y further comments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">@Adrian and @Benoit, please check if the proposed=
 texts can resolve your comments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">Thanks,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kind Regards<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kepeng<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">-------------------------------------------------=
---------------------------------------------------------------------------=
---------------------------------<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Compared with charter-ietf-ace-00-01 on the webpa=
ge, the changes are:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">(1)&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Add one clarifi=
cation sentence about REST architecture:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">OLD<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has recently developed protocols for use=
 in constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">environments, where network nodes are limited in =
CPU, memory and power. <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">REST architecture is widely used for such constra=
ined environments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">NEW<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has recently developed protocols for use=
 in constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">environments, where network nodes are limited in =
CPU, memory and power.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">REST architecture is widely used for such constra=
ined environments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">END<u></u><u></u></span></pre>
</blockquote>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Considering that OLD is<u></u><=
u></u></span></p>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">OLD</span><span lang=3D"EN-U=
S"><u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">The IETF has recently develo=
ped protocols for use in constrained</span><span lang=3D"EN-US"><u></u><u><=
/u></span></pre>

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">environments, where network =
nodes are limited in CPU, memory and power. </span><span lang=3D"EN-US"><u>=
</u><u></u></span></pre>

<p class=3D"MsoNormal"><span lang=3D"EN-US">... fine with me<br>
<br>
<u></u><u></u></span></p>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">(2)&nbsp;&nbsp;&nbsp;&nbsp; Remove =E2=80=9CAAA p=
rotocol=E2=80=9D from the charter:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">OLD<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has a long history in developing three-p=
arty authentication and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization protocols for distributed environme=
nts. Examples include<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kerberos, the Public Key Infrastructure (PKI), th=
e Authentication,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Authorization and Accounting (AAA) infrastructure=
, and the Web<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Authorization Protocol (OAuth).<u></u><u></u></sp=
an></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">NEW<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has a long history in developing three-p=
arty authentication and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization protocols for distributed environme=
nts. Examples include<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kerberos, the Public Key Infrastructure (PKI), an=
d the Web Authorization Protocol (OAuth).<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">END<u></u><u></u></span></pre>
<p class=3D"MsoNormal"><span lang=3D"EN-US">We have AAA-doctors telling: ma=
ybe RADIUS is applicable?<br>
Personally, I don't know and it doesn't matter at this point.<br>
We received feedback such as:<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Let's be clear here: It was nev=
er said (in the charter or anywhere else in the group to my knowledge) that=
 RADIUS (or indeed any other AAA protocol) would not run on constrained dev=
ices (RFC 7228). The charter simply
 said the protocols were not optimised for constrained devices. That does n=
ot preclude considering any protocol for suitability for constrained device=
s either a) as is, b) in a restricted way or c) in an adapted way.<br>

<br>
So, at this stage, I don't think any protocols should be excluded from cons=
ideration and should certainly not be eliminated on a hunch that they might=
 be &quot;too big&quot;. Let's do the assessment properly at the appropriat=
e time. As a reminder - the focus now is to
 complete the charter.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Or<u></u><u></u></span></p>
<pre><span lang=3D"EN-US">&gt;&gt;The Charter makes a number of assertions =
that are provably false, such as that AAA protocols are inappropriate for c=
onstrained environments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">In fact, the charter does not say that. But to av=
oid confusion, let's remove AAA protocol from the charter.<u></u><u></u></s=
pan></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">In the charter, we mentioned that we want to reus=
e existing authentication and authorization protocols where applicable to b=
uild the constrained-environment solution.<u></u><u></u></span></pre>
<p class=3D"MsoNormal"><span lang=3D"EN-US">... which I read as: let's cons=
ider the AAA protocols, and evaluate if they would work in constrained devi=
ces.<br>
I don't understand the logic: why do you want to remove AAA from the charte=
r?<br>
Not only would I keep &quot;AAA&quot;, but I would propose<br>
<br>
OLD:<br>
Existing authentication and authorization protocols will be used where<br>
applicable to build the constrained-environment solution<br>
<br>
NEW:<br>
Existing authentication and authorization protocols will be evaluated and r=
e-used where<br>
applicable to build the constrained-environment solution<br>
<br>
Regards, Benoit<br>
<br>
<u></u><u></u></span></p>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">(3) Clarify the scope:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">OLD:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Note that the initial focus is on CoAP and HTTP w=
ith DTLS and TLS.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Other security protocols may be considered as lon=
g as the primary focus is maintained.&nbsp; <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Other application protocols and protocols at othe=
r layers in the stack are out of scope.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">NEW<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Note that the initial focus is on CoAP and HTTP w=
ith DTLS and TLS.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Other security protocols may be considered as lon=
g as the primary focus is maintained.&nbsp; <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The group is scoped to work only on the web proto=
cols and data carried within them.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">END<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">(4)&nbsp;&nbsp;&nbsp;&nbsp; Update milestones for=
 the use case &amp; requirements document:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">OLD:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Jul 2015 Submit =E2=80=9CUse cases and Requiremen=
ts=E2=80=9D document to IESG for publication as informational RFC.<u></u><u=
></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">NEW<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Dec 2014 Optionally, submit &quot;Use cases and R=
equirements&quot; document to the IESG for publication as an Informational =
RFC.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">END<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">-------------------------------------------------=
---------------------------------------------------------------------------=
------------------------------------------------<u></u><u></u></span></pre>

<pre><span lang=3D"EN-US">Charter charter-ietf-ace-00-02<u></u><u></u></spa=
n></pre>
<pre><span lang=3D"EN-US">Authentication and Authorization for Constrained<=
u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Environment (ACE)<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has recently developed protocols for use=
 in constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">environments, where network nodes are limited in =
CPU, memory and power. <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">REST architecture is widely used for such constra=
ined environments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">It has been observed that Internet protocols can =
be applied to these<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">constrained environments, often only requiring mi=
nor tweaking and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">profiling. In other cases, new protocols have bee=
n defined to address<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">the specific requirements of constrained environm=
ents. An example of<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">such a protocol is the Constrained Application Pr=
otocol (CoAP).<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">As in other environments, authentication and auth=
orization questions<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">also arise in constrained environments. For examp=
le, a door lock has to<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorize the person seeking access using a &quot=
;digital key&quot;. Where is the<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization policy stored? How does the digital=
 key communicate with<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">the lock? Does the lock interact with an authoriz=
ation server to obtain<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization information? How can access be temp=
orarily granted to<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">other persons? How can access be revoked? These t=
ypes of questions have<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">been answered by existing protocols for use cases=
 outside constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">environments, however in constrained environments=
, additional and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">different requirements pose challenges for the us=
e of various security<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">protocols. In particular, the need arises for a d=
ynamic and fine grained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">access control mechanism, where clients and/or re=
source servers are<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">constrained.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has a long history in developing three-p=
arty authentication and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization protocols for distributed environme=
nts. Examples include<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kerberos, the Public Key Infrastructure (PKI), an=
d the Web<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Authorization Protocol (OAuth). All these protoco=
ls enjoy widespread<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">deployment on the Internet. Although they all aim=
 to solve a similar<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">goal, at an abstract level, they offer quite diff=
erent functions and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">utilize different message exchanges. These differ=
ences result from the<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">main deployment use cases they were designed for =
respectively.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">Requirements derived from use cases indicate the =
suitability of existing<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">work as a solution for constrained environments. =
These protocols,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">however, were not optimized for constrained envir=
onments. Additional<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">requirements that need to be taken into account a=
re the lack of a<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">suitable user-interface and the inability of embe=
dded devices to contact<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">an authorization server in real-time with every r=
esource access request<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">due to intermittent connectivity, etc.<u></u><u><=
/u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">This working group therefore aims to produce a st=
andardized solution for<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authentication and authorization to enable author=
ized access (GET, PUT, POST, <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">DELETE) to resources identified by a URI and host=
ed on a resource<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">server in constrained environments. As a starting=
 point, the working<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">group will assume that access to resources at a r=
esource server by a<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">client device takes place using CoAP and is prote=
cted by DTLS. Both<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">resource server and client may be constrained. Th=
is access will be<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">mediated by an authorization server, which is not=
 considered to be<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">constrained.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">Existing authentication and authorization protoco=
ls will be used where<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">applicable to build the constrained-environment s=
olution. This requires<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">relevant specifications to be reviewed for suitab=
ility, selecting a<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">subset of them and restricting the options within=
 each of the<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">specifications. Some functionality, however, may =
not be available in<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">existing protocols, in which case the solution ma=
y also involve new<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">protocol work. Leveraging existing work means the=
 working group benefits<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">from available security analysis, implementation,=
 and deployment<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">experience. Moreover, a standardized solution for=
 federated<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authentication and authorization will help to sti=
mulate the deployment<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">of constrained devices that provide increased sec=
urity.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">Once progress in identifying suitable candidate s=
olutions has been made,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">the working group will verify whether the same me=
chanisms are also<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">applicable beyond the use of CoAP and DTLS, which=
 are the two main<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">protocols the group will focus on for access to r=
esources. In<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">particular, the ability to use the developed solu=
tion over HTTP and TLS<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">will be investigated. Note that the initial focus=
 is on CoAP and HTTP with DTLS and TLS.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Other security protocols may be considered as lon=
g as the primary focus is maintained.&nbsp; <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The group is scoped to work only on the web proto=
cols and data carried within them.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Furthermore, to guarantee smooth transition, the<=
u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">integration with existing deployments will be stu=
died, particularly<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">concerning the use of protocol translation proxie=
s.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">This work does not make the assumption that the p=
arty offering<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">application layer services is always the same par=
ty offering network<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">access services.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">The working group has the following tasks:<u></u>=
<u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">1) Produce use cases and requirements<u></u><u></=
u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">2) Identify authentication and authorization mech=
anisms suitable for<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">resource access in constrained environments.<u></=
u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">Milestones:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">Jul 2014 Submit &quot;Use cases and Requirements&=
quot; as a WG item.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Dec 2014 Submit &quot;Authentication and Authoriz=
ation Solution&quot; as a WG item.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Dec 2014 Optionally, submit &quot;Use cases and R=
equirements&quot; document <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">to the IESG for publication as an Informational R=
FC.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Jul 2016 Submit &quot;Authentication and Authoriz=
ation Solution&quot;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">specification to the IESG for publication as a Pr=
oposed Standard.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></pre>
<pre><span lang=3D"EN-US">Proposed Milestones <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">No milestones for charter found.<u></u><u></u></s=
pan></pre>
<p class=3D"MsoNormal"><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></p>
</div></div></div>
</div>

</blockquote></div><br><br clear=3D"all"><div><br></div>-- <br><div dir=3D"=
ltr"><br><div>Best regards,</div><div>Kathleen</div></div>
</div>

--047d7b3a8ada2e514104faedaa7f--


--------------060701020405000306030004--


From nobody Tue Jun  3 07:27:03 2014
Return-Path: <likepeng@huawei.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AC04F1A021E; Tue,  3 Jun 2014 07:26:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.851
X-Spam-Level: 
X-Spam-Status: No, score=-4.851 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id IxAOmAA4wIVf; Tue,  3 Jun 2014 07:26:52 -0700 (PDT)
Received: from lhrrgout.huawei.com (lhrrgout.huawei.com [194.213.3.17]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 399651A0170; Tue,  3 Jun 2014 07:26:51 -0700 (PDT)
Received: from 172.18.7.190 (EHLO lhreml204-edg.china.huawei.com) ([172.18.7.190]) by lhrrg01-dlp.huawei.com (MOS 4.3.7-GA FastPath queued) with ESMTP id BHU38680; Tue, 03 Jun 2014 14:26:43 +0000 (GMT)
Received: from LHREML404-HUB.china.huawei.com (10.201.5.218) by lhreml204-edg.china.huawei.com (172.18.7.223) with Microsoft SMTP Server (TLS) id 14.3.158.1; Tue, 3 Jun 2014 15:25:44 +0100
Received: from SZXEMA402-HUB.china.huawei.com (10.82.72.34) by lhreml404-hub.china.huawei.com (10.201.5.218) with Microsoft SMTP Server (TLS) id 14.3.158.1; Tue, 3 Jun 2014 15:26:28 +0100
Received: from SZXEMA501-MBS.china.huawei.com ([169.254.2.214]) by SZXEMA402-HUB.china.huawei.com ([10.82.72.34]) with mapi id 14.03.0158.001; Tue, 3 Jun 2014 22:26:24 +0800
From: Likepeng <likepeng@huawei.com>
To: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
Thread-Topic: Revised charter proposal: charter-ietf-ace-00-02
Thread-Index: AQHPeLrW9teE9ryEO0GmvALEdUzf8JtesfKAgACKjwD//5riAIAAjBcw
Date: Tue, 3 Jun 2014 14:26:23 +0000
Message-ID: <34966E97BE8AD64EAE9D3D6E4DEE36F25815405D@SZXEMA501-MBS.china.huawei.com>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com> <CAHbuEH6U7811XFdipULNwF3_2iocq9dpKje+G4kkU_bpnXHFKw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B38978@SZXEMA501-MBS.china.huawei.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com> <538DA047.7080902@cisco.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258153F43@SZXEMA501-MBS.china.huawei.com> <CAHbuEH50vOKf=nHad+9y57qiqdzu=7k3WO1Y8fuuo16crCx5pw@mail.gmail.com>
In-Reply-To: <CAHbuEH50vOKf=nHad+9y57qiqdzu=7k3WO1Y8fuuo16crCx5pw@mail.gmail.com>
Accept-Language: zh-CN, en-US
Content-Language: zh-CN
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
x-originating-ip: [10.200.66.129]
Content-Type: multipart/alternative; boundary="_000_34966E97BE8AD64EAE9D3D6E4DEE36F25815405DSZXEMA501MBSchi_"
MIME-Version: 1.0
X-CFilter-Loop: Reflected
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/9aeQxDEZP9nxm-pgsmB3vb3nmv0
Cc: "adrian@olddog.co.uk" <adrian@olddog.co.uk>, "ace@ietf.org" <ace@ietf.org>, The IESG <iesg@ietf.org>, "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>
Subject: Re: [AAA-DOCTORS] Revised charter proposal: charter-ietf-ace-00-02
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Jun 2014 14:26:57 -0000

--_000_34966E97BE8AD64EAE9D3D6E4DEE36F25815405DSZXEMA501MBSchi_
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
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--_000_34966E97BE8AD64EAE9D3D6E4DEE36F25815405DSZXEMA501MBSchi_
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: base64
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--_000_34966E97BE8AD64EAE9D3D6E4DEE36F25815405DSZXEMA501MBSchi_--


From nobody Tue Jun  3 07:47:42 2014
Return-Path: <bclaise@cisco.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7D3751A02B4 for <aaa-doctors@ietfa.amsl.com>; Tue,  3 Jun 2014 07:47:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.151
X-Spam-Level: 
X-Spam-Status: No, score=-10.151 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id a3VQ0h_itFoB for <aaa-doctors@ietfa.amsl.com>; Tue,  3 Jun 2014 07:47:32 -0700 (PDT)
Received: from bgl-iport-3.cisco.com (bgl-iport-3.cisco.com [72.163.197.27]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2E6811A02CF for <aaa-doctors@ietf.org>; Tue,  3 Jun 2014 07:47:28 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=96320; q=dns/txt; s=iport; t=1401806844; x=1403016444; h=message-id:date:from:mime-version:to:subject:references: in-reply-to; bh=JFaRrCglY1NPRvScqV5xRNisIZrGolglK4lQIKZ9Gsk=; b=MlVFW/uMtPU1aXTHuq9R0EUFF5QeEOB9sTCF29FbFeB/8/9SnPPtQPUN yU2X7HDSf0GsySg5/iiGpYIeD+FJTj0i/OlX9UhuTwTaRDfBRzdx0M1M9 ulxmFIM9d9BbchsEmbd61eRtHZJCsJLqlo8mAauQiHv+nvHf7hpZ8TD3n s=;
X-Files: : None
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AscEAHffjVNIo8UY/2dsb2JhbABPCoJCgRdVgm+FW7oXAYEidIIlAQEBAwEaAQhEDQMBBgcECRMBAgECAQkMCgEBBgMCAgkDAgECAQ8lAwQCCAYNBgIBAReIEwMJCJBTnCCfPQ2FQheMPIE0BgQHAQI2BwwLAQYEgmuBSwEDhVWMA4E6hH+BeYZthlGFdYM6Oy+BAQkXAgI
X-IronPort-AV: E=Sophos;i="4.98,965,1392163200";  d="eml'208?scan'208,208,217";a="6872690"
Received: from vla196-nat.cisco.com (HELO bgl-core-2.cisco.com) ([72.163.197.24]) by bgl-iport-3.cisco.com with ESMTP; 03 Jun 2014 14:47:17 +0000
Received: from [10.60.67.91] (ams-bclaise-89110.cisco.com [10.60.67.91]) by bgl-core-2.cisco.com (8.14.5/8.14.5) with ESMTP id s53ElEK2007004 for <aaa-doctors@ietf.org>; Tue, 3 Jun 2014 14:47:15 GMT
Message-ID: <538DDFF3.1070304@cisco.com>
Date: Tue, 03 Jun 2014 16:47:15 +0200
From: Benoit Claise <bclaise@cisco.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.5.0
MIME-Version: 1.0
To: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>
References: <mailman.3215.1401806394.2738.aaa-doctors@ietf.org>
In-Reply-To: <mailman.3215.1401806394.2738.aaa-doctors@ietf.org>
X-Forwarded-Message-Id: <mailman.3215.1401806394.2738.aaa-doctors@ietf.org>
Content-Type: multipart/mixed; boundary="------------090501060503040907090203"
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/fhH0VF8rWH5kZjCyqORMgqEexuA
Subject: [AAA-DOCTORS] Fwd: Auto-discard notification
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Jun 2014 14:47:37 -0000

This is a multi-part message in MIME format.
--------------090501060503040907090203
Content-Type: multipart/alternative;
 boundary="------------040706060207000109020303"


--------------040706060207000109020303
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 7bit




-------- Original Message --------
Subject: 	Auto-discard notification
Date: 	Tue, 3 Jun 2014 07:39:54 -0700
From: 	<aaa-doctors-bounces@ietf.org>
To: 	<aaa-doctors-owner@ietf.org>



The attached message has been automatically discarded.




--------------040706060207000109020303
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 7bit

<html>
  <head>

    <meta http-equiv="content-type" content="text/html; charset=UTF-8">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <br>
    <div class="moz-forward-container"><br>
      <br>
      -------- Original Message --------
      <table class="moz-email-headers-table" cellpadding="0"
        cellspacing="0" border="0">
        <tbody>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">Subject:
            </th>
            <td>Auto-discard notification</td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">Date: </th>
            <td>Tue, 3 Jun 2014 07:39:54 -0700</td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">From: </th>
            <td><a class="moz-txt-link-rfc2396E" href="mailto:aaa-doctors-bounces@ietf.org">&lt;aaa-doctors-bounces@ietf.org&gt;</a></td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">To: </th>
            <td><a class="moz-txt-link-rfc2396E" href="mailto:aaa-doctors-owner@ietf.org">&lt;aaa-doctors-owner@ietf.org&gt;</a></td>
          </tr>
        </tbody>
      </table>
      <br>
      <br>
      <pre>The attached message has been automatically discarded.
</pre>
      <br>
    </div>
    <br>
  </body>
</html>

--------------040706060207000109020303--

--------------090501060503040907090203
Content-Type: message/rfc822;
 name="ForwardedMessage.eml"
Content-Transfer-Encoding: 7bit
Content-Disposition: attachment;
 filename="ForwardedMessage.eml"

Return-Path: <kathleen.moriarty.ietf@gmail.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com
 (Postfix) with ESMTP id 0B2A81A02E5; Tue,  3 Jun 2014 07:39:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level: 
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5
 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1,
 DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001,
 SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com
 [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aBd_7Uzf5IiZ; Tue,  3
 Jun 2014 07:39:48 -0700 (PDT)
Received: from mail-lb0-x22c.google.com (mail-lb0-x22c.google.com
 [IPv6:2a00:1450:4010:c04::22c]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA
 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix)
 with ESMTPS id D3B371A02D5; Tue,  3 Jun 2014 07:39:46 -0700 (PDT)
Received: by mail-lb0-f172.google.com with SMTP id l4so3562414lbv.31 for
 <multiple recipients>; Tue, 03 Jun 2014 07:39:39 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113;
 h=mime-version:in-reply-to:references:date:message-id:subject:from:to
 :cc:content-type;
 bh=n78nD9w1+zihB0EBsrWm7ED3zvokkzWE2MYmtuphvig=;
 b=gsR32TegcOk2OBl7tuAyMapp2yJrpl8hV65TMtCxnVYF0BeNLYg7F62YZgPB4rdMMU
 j+8tkh9AY9jleP5BRR8ptC8KiIHjWMtOnXPaLqoOOlBQuNNBHESU/Xw7GERvN4nF8qub
 m0TPyUB8TMAwTOPyFbWJzJ77gIRrpMYK98I6nWqKl5bR8qKbXYXEjMHXXJ+VDN6xRden
 BTKQ8WCfcLHB4BbxAMC5gR/W8ksKrDDZjZ1kMUa7ChuNq4UgIXJ/Jr4upvvPmL5gAKbA
 dkuSsMPYhI9MqpDvqXr+C5+IBS2nveKd5W8NrWZEJYcsYjNm27jh6pIAmpUVcUGXBkY8
 vX2Q==
X-Received: by 10.152.21.169 with SMTP id w9mr214178lae.90.1401806379619; Tue,
 03 Jun 2014 07:39:39 -0700 (PDT)
Received: by 10.112.33.36 with HTTP; Tue, 3 Jun 2014 07:39:39 -0700 (PDT)
In-Reply-To: <34966E97BE8AD64EAE9D3D6E4DEE36F25815405D@SZXEMA501-MBS.china.huawei.com>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com>
 <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com>
 <CAHbuEH6U7811XFdipULNwF3_2iocq9dpKje+G4kkU_bpnXHFKw@mail.gmail.com>
 <34966E97BE8AD64EAE9D3D6E4DEE36F252B38978@SZXEMA501-MBS.china.huawei.com>
 <34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com>
 <538DA047.7080902@cisco.com>
 <34966E97BE8AD64EAE9D3D6E4DEE36F258153F43@SZXEMA501-MBS.china.huawei.com>
 <CAHbuEH50vOKf=nHad+9y57qiqdzu=7k3WO1Y8fuuo16crCx5pw@mail.gmail.com>
 <34966E97BE8AD64EAE9D3D6E4DEE36F25815405D@SZXEMA501-MBS.china.huawei.com>
Date: Tue, 3 Jun 2014 10:39:39 -0400
Message-ID: <CAHbuEH6tQtg-=RGMZ-t0qb1Ye8eaDSHn+Lb+2j_S61euZdqVpw@mail.gmail.com>
Subject: Re: Revised charter proposal: charter-ietf-ace-00-02
From: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
To: Likepeng <likepeng@huawei.com>
CC: Benoit Claise <bclaise@cisco.com>, "adrian@olddog.co.uk"
	<adrian@olddog.co.uk>, "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, "The
 IESG" <iesg@ietf.org>, "ace@ietf.org" <ace@ietf.org>
Content-Type: multipart/alternative; boundary="089e0158b6d24d195504faef7b7c"
List-ID: <aaa-doctors.ietf.org>
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/LLfI3IJfYvfo0eNRlyYNBmhiatY
MIME-Version: 1.0

--089e0158b6d24d195504faef7b7c
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

I believe there is agreement on the proposed changes.  I'll make the
updates later in the day (it's about 11:30 my time, maybe at 4) in case
anyone wants to chime in.  If we are all in agreement, I'll have it sent
for IETF review at that point.

Thank you!


On Tue, Jun 3, 2014 at 10:26 AM, Likepeng <likepeng@huawei.com> wrote:

>  Hi Kathleen and all,
>
>
>
> This is what I have now:
>
>
>
> Change #1: (Proposed by Kepeng, confirmed by Benoit)
>
> OLD
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
>
>
> NEW
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> REST architecture is widely used for such constrained environments.
>
> END
>
>
>
> Change #2: (Proposal from Rene, supported by Stefanie)
>
> OLD:
>
> Requirements derived from use cases indicate the suitability of existing
>
> work as a solution for constrained environments
>
>
>
> NEW:
>
> Requirements derived from use cases may indicate that existing work is
>
>  useful as basis for as a solution for constrained environments
>
>
>
> Change #3: (Proposal from Jari, supported by Barry, Robert and Behcet)
>
> OLD:
>
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
> Other security protocols may be considered as long as the primary focus i=
s maintained.
>
> Other application protocols and protocols at other layers in the stack ar=
e out of scope.
>
>
>
> NEW
>
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
> Other security protocols may be considered as long as the primary focus i=
s maintained.
>
> The group is scoped to work only on the web protocols and data carried wi=
thin them.
>
> END
>
>
>
> Change 4: (Proposal from Jari, revised by Rene, supported by Stefanie)
>
> OLD:
>
> Jul 2014 Submit "Use cases and Requirements"=C2=9D as a WG item.
>
> Jul 2015 Submit =E2=80=9CUse cases and Requirements=E2=80=9D document to =
IESG for publication as informational RFC.
>
>
>
> NEW
>
> Dec 2014 Submit "Use cases and Requirements"=C2=9D as a WG item.
>
> Apr 2015 Optionally, submit "Use cases and Requirements" document to the =
IESG for
>
> publication as an Informational RFC.
>
> END
>
>
>
> I think we covered all of the IESG review comments.
>
>
>
> If there is any open issue, please let us know.
>
>
>
> Thanks,
>
>
>
> Kind Regards
>
> Kepeng
>
>
> -------------------------------------------------------------------------=
---------------------------------------------------------------------------=
----
>
>
>
> Charter charter-ietf-ace-00-02
>
> Authentication and Authorization for Constrained
>
> Environment (ACE)
>
>
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> REST architecture is widely used for such constrained environments.
>
> It has been observed that Internet protocols can be applied to these
>
> constrained environments, often only requiring minor tweaking and
>
> profiling. In other cases, new protocols have been defined to address
>
> the specific requirements of constrained environments. An example of
>
> such a protocol is the Constrained Application Protocol (CoAP).
>
>
>
> As in other environments, authentication and authorization questions
>
> also arise in constrained environments. For example, a door lock has to
>
> authorize the person seeking access using a "digital key". Where is the
>
> authorization policy stored? How does the digital key communicate with
>
> the lock? Does the lock interact with an authorization server to obtain
>
> authorization information? How can access be temporarily granted to
>
> other persons? How can access be revoked? These types of questions have
>
> been answered by existing protocols for use cases outside constrained
>
> environments, however in constrained environments, additional and
>
> different requirements pose challenges for the use of various security
>
> protocols. In particular, the need arises for a dynamic and fine grained
>
> access control mechanism, where clients and/or resource servers are
>
> constrained.
>
>
>
> The IETF has a long history in developing three-party authentication and
>
> authorization protocols for distributed environments. Examples include
>
> Kerberos, the Public Key Infrastructure (PKI), the Authentication,
>
> Authorization and Accounting (AAA) infrastructure,and the Web
>
> Authorization Protocol (OAuth). All these protocols enjoy widespread
>
> deployment on the Internet. Although they all aim to solve a similar
>
> goal, at an abstract level, they offer quite different functions and
>
> utilize different message exchanges. These differences result from the
>
> main deployment use cases they were designed for respectively.
>
>
>
> Requirements derived from use cases may indicate that existing work is
>
> useful as basis for as a solution for constrained environments.
>
> These protocols,
>
> however, were not optimized for constrained environments. Additional
>
> requirements that need to be taken into account are the lack of a
>
> suitable user-interface and the inability of embedded devices to contact
>
> an authorization server in real-time with every resource access request
>
> due to intermittent connectivity, etc.
>
>
>
> This working group therefore aims to produce a standardized solution for
>
> authentication and authorization to enable authorized access (GET, PUT,
> POST,
>
> DELETE) to resources identified by a URI and hosted on a resource
>
> server in constrained environments. As a starting point, the working
>
> group will assume that access to resources at a resource server by a
>
> client device takes place using CoAP and is protected by DTLS. Both
>
> resource server and client may be constrained. This access will be
>
> mediated by an authorization server, which is not considered to be
>
> constrained.
>
>
>
> Existing authentication and authorization protocols will be evaluated
>
> and re-used where applicable to build the constrained-environment solutio=
n.
>
> This requires
>
> relevant specifications to be reviewed for suitability, selecting a
>
> subset of them and restricting the options within each of the
>
> specifications. Some functionality, however, may not be available in
>
> existing protocols, in which case the solution may also involve new
>
> protocol work. Leveraging existing work means the working group benefits
>
> from available security analysis, implementation, and deployment
>
> experience. Moreover, a standardized solution for federated
>
> authentication and authorization will help to stimulate the deployment
>
> of constrained devices that provide increased security.
>
>
>
> Once progress in identifying suitable candidate solutions has been made,
>
> the working group will verify whether the same mechanisms are also
>
> applicable beyond the use of CoAP and DTLS, which are the two main
>
> protocols the group will focus on for access to resources. In
>
> particular, the ability to use the developed solution over HTTP and TLS
>
> will be investigated. Note that the initial focus is on CoAP and HTTP wit=
h
> DTLS and TLS.
>
> Other security protocols may be considered as long as the primary focus i=
s
> maintained.
>
> The group is scoped to work only on the web protocols and data carried
> within them.
>
> Furthermore, to guarantee smooth transition, the
>
> integration with existing deployments will be studied, particularly
>
> concerning the use of protocol translation proxies.
>
>
>
> This work does not make the assumption that the party offering
>
> application layer services is always the same party offering network
>
> access services.
>
>
>
> The working group has the following tasks:
>
>
>
> 1) Produce use cases and requirements
>
>
>
> 2) Identify authentication and authorization mechanisms suitable for
>
> resource access in constrained environments.
>
>
>
> Milestones:
>
>
>
> Dec 2014 Submit "Use cases and Requirements" as a WG item.
>
> Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.
>
> Apr 2015 Optionally, submit "Use cases and Requirements" document
>
> to the IESG for publication as an Informational RFC.
>
> Jul 2016 Submit "Authentication and Authorization Solution"
>
> specification to the IESG for publication as a Proposed Standard.
>
>
>
> Proposed Milestones
>
> No milestones for charter found.
>
>
>
>
>
>
>
> *=E5=8F=91=E4=BB=B6=E4=BA=BA:* Kathleen Moriarty [mailto:kathleen.moriart=
y.ietf@gmail.com]
> *=E5=8F=91=E9=80=81=E6=97=B6=E9=97=B4:* 2014=E5=B9=B46=E6=9C=883=E6=97=A5=
 14:30
> *=E6=94=B6=E4=BB=B6=E4=BA=BA:* Likepeng
> *=E6=8A=84=E9=80=81:* Benoit Claise; adrian@olddog.co.uk; aaa-doctors@iet=
f.org; The IESG;
> ace@ietf.org
> *=E4=B8=BB=E9=A2=98:* Re: Revised charter proposal: charter-ietf-ace-00-0=
2
>
>
>
> Hi Kepeng,
>
>
>
> If we are at a point where I can update the charter, seems that way,
> please send the latest version that has been agreed upon and I'll take ca=
re
> of the update.
>
>
>
> Thanks.
>
>
>
> On Tue, Jun 3, 2014 at 6:31 AM, Likepeng <likepeng@huawei.com> wrote:
>
> Hi Benoit,
>
>
>
> >Not only would I keep "AAA",
>
>
>
> OK.
>
>
>
> >but I would propose
>
>
>
> >OLD:
>
> >Existing authentication and authorization protocols will be used where
>
> applicable to build the constrained-environment solution.
>
>
>
> >NEW:
>
> Existing authentication and authorization protocols will be evaluated and
> re-used where
>
> applicable to build the constrained-environment solution.
>
>
>
> OK, fine with me.
>
>
>
> Thanks for the feedback.
>
>
>
> Kind Regards
>
> Kepeng
>
>
>
> *=E5=8F=91=E4=BB=B6=E4=BA=BA:* Benoit Claise [mailto:bclaise@cisco.com]
> *=E5=8F=91=E9=80=81=E6=97=B6=E9=97=B4:* 2014=E5=B9=B46=E6=9C=883=E6=97=A5=
 12:16
>
> *=E6=94=B6=E4=BB=B6=E4=BA=BA:* Likepeng; Kathleen Moriarty; adrian@olddog=
.co.uk
>
> *=E6=8A=84=E9=80=81:* aaa-doctors@ietf.org; The IESG; ace@ietf.org
>
> *=E4=B8=BB=E9=A2=98:* Re: Revised charter proposal: charter-ietf-ace-00-0=
2
>
>
>
> Hi,
>
> Hello all,
>
>
>
> Based on recent discussions, I made a revised charter proposal, as includ=
ed in this email, not on the webpage yet.
>
>
>
> Please take a look and let us know if you have any further comments.
>
>
>
> @Adrian and @Benoit, please check if the proposed texts can resolve your =
comments.
>
>
>
> Thanks,
>
> Kind Regards
>
> Kepeng
>
>
>
> -------------------------------------------------------------------------=
---------------------------------------------------------------------------=
---------
>
> Compared with charter-ietf-ace-00-01 on the webpage, the changes are:
>
>
>
> (1)      Add one clarification sentence about REST architecture:
>
> OLD
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> REST architecture is widely used for such constrained environments.
>
>
>
> NEW
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> REST architecture is widely used for such constrained environments.
>
> END
>
>  Considering that OLD is
>
> OLD
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> ... fine with me
>
>
>
>
>
> (2)     Remove =E2=80=9CAAA protocol=E2=80=9D from the charter:
>
> OLD
>
> The IETF has a long history in developing three-party authentication and
>
> authorization protocols for distributed environments. Examples include
>
> Kerberos, the Public Key Infrastructure (PKI), the Authentication,
>
> Authorization and Accounting (AAA) infrastructure, and the Web
>
> Authorization Protocol (OAuth).
>
>
>
> NEW
>
> The IETF has a long history in developing three-party authentication and
>
> authorization protocols for distributed environments. Examples include
>
> Kerberos, the Public Key Infrastructure (PKI), and the Web Authorization =
Protocol (OAuth).
>
> END
>
> We have AAA-doctors telling: maybe RADIUS is applicable?
> Personally, I don't know and it doesn't matter at this point.
> We received feedback such as:
>
> Let's be clear here: It was never said (in the charter or anywhere else i=
n
> the group to my knowledge) that RADIUS (or indeed any other AAA protocol)
> would not run on constrained devices (RFC 7228). The charter simply said
> the protocols were not optimised for constrained devices. That does not
> preclude considering any protocol for suitability for constrained devices
> either a) as is, b) in a restricted way or c) in an adapted way.
>
> So, at this stage, I don't think any protocols should be excluded from
> consideration and should certainly not be eliminated on a hunch that they
> might be "too big". Let's do the assessment properly at the appropriate
> time. As a reminder - the focus now is to complete the charter.
>
> Or
>
> >>The Charter makes a number of assertions that are provably false, such =
as that AAA protocols are inappropriate for constrained environments.
>
> In fact, the charter does not say that. But to avoid confusion, let's rem=
ove AAA protocol from the charter.
>
>
>
> In the charter, we mentioned that we want to reuse existing authenticatio=
n and authorization protocols where applicable to build the constrained-env=
ironment solution.
>
> ... which I read as: let's consider the AAA protocols, and evaluate if
> they would work in constrained devices.
> I don't understand the logic: why do you want to remove AAA from the
> charter?
> Not only would I keep "AAA", but I would propose
>
> OLD:
> Existing authentication and authorization protocols will be used where
> applicable to build the constrained-environment solution
>
> NEW:
> Existing authentication and authorization protocols will be evaluated and
> re-used where
> applicable to build the constrained-environment solution
>
> Regards, Benoit
>
>
>
>
>
> (3) Clarify the scope:
>
> OLD:
>
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
> Other security protocols may be considered as long as the primary focus i=
s maintained.
>
> Other application protocols and protocols at other layers in the stack ar=
e out of scope.
>
>
>
> NEW
>
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
> Other security protocols may be considered as long as the primary focus i=
s maintained.
>
> The group is scoped to work only on the web protocols and data carried wi=
thin them.
>
> END
>
>
>
> (4)     Update milestones for the use case & requirements document:
>
> OLD:
>
> Jul 2015 Submit =E2=80=9CUse cases and Requirements=E2=80=9D document to =
IESG for publication as informational RFC.
>
>
>
> NEW
>
> Dec 2014 Optionally, submit "Use cases and Requirements" document to the =
IESG for publication as an Informational RFC.
>
> END
>
>
>
> -------------------------------------------------------------------------=
---------------------------------------------------------------------------=
------------------------
>
> Charter charter-ietf-ace-00-02
>
> Authentication and Authorization for Constrained
>
> Environment (ACE)
>
>
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> REST architecture is widely used for such constrained environments.
>
> It has been observed that Internet protocols can be applied to these
>
> constrained environments, often only requiring minor tweaking and
>
> profiling. In other cases, new protocols have been defined to address
>
> the specific requirements of constrained environments. An example of
>
> such a protocol is the Constrained Application Protocol (CoAP).
>
>
>
> As in other environments, authentication and authorization questions
>
> also arise in constrained environments. For example, a door lock has to
>
> authorize the person seeking access using a "digital key". Where is the
>
> authorization policy stored? How does the digital key communicate with
>
> the lock? Does the lock interact with an authorization server to obtain
>
> authorization information? How can access be temporarily granted to
>
> other persons? How can access be revoked? These types of questions have
>
> been answered by existing protocols for use cases outside constrained
>
> environments, however in constrained environments, additional and
>
> different requirements pose challenges for the use of various security
>
> protocols. In particular, the need arises for a dynamic and fine grained
>
> access control mechanism, where clients and/or resource servers are
>
> constrained.
>
>
>
> The IETF has a long history in developing three-party authentication and
>
> authorization protocols for distributed environments. Examples include
>
> Kerberos, the Public Key Infrastructure (PKI), and the Web
>
> Authorization Protocol (OAuth). All these protocols enjoy widespread
>
> deployment on the Internet. Although they all aim to solve a similar
>
> goal, at an abstract level, they offer quite different functions and
>
> utilize different message exchanges. These differences result from the
>
> main deployment use cases they were designed for respectively.
>
>
>
> Requirements derived from use cases indicate the suitability of existing
>
> work as a solution for constrained environments. These protocols,
>
> however, were not optimized for constrained environments. Additional
>
> requirements that need to be taken into account are the lack of a
>
> suitable user-interface and the inability of embedded devices to contact
>
> an authorization server in real-time with every resource access request
>
> due to intermittent connectivity, etc.
>
>
>
> This working group therefore aims to produce a standardized solution for
>
> authentication and authorization to enable authorized access (GET, PUT, P=
OST,
>
> DELETE) to resources identified by a URI and hosted on a resource
>
> server in constrained environments. As a starting point, the working
>
> group will assume that access to resources at a resource server by a
>
> client device takes place using CoAP and is protected by DTLS. Both
>
> resource server and client may be constrained. This access will be
>
> mediated by an authorization server, which is not considered to be
>
> constrained.
>
>
>
> Existing authentication and authorization protocols will be used where
>
> applicable to build the constrained-environment solution. This requires
>
> relevant specifications to be reviewed for suitability, selecting a
>
> subset of them and restricting the options within each of the
>
> specifications. Some functionality, however, may not be available in
>
> existing protocols, in which case the solution may also involve new
>
> protocol work. Leveraging existing work means the working group benefits
>
> from available security analysis, implementation, and deployment
>
> experience. Moreover, a standardized solution for federated
>
> authentication and authorization will help to stimulate the deployment
>
> of constrained devices that provide increased security.
>
>
>
> Once progress in identifying suitable candidate solutions has been made,
>
> the working group will verify whether the same mechanisms are also
>
> applicable beyond the use of CoAP and DTLS, which are the two main
>
> protocols the group will focus on for access to resources. In
>
> particular, the ability to use the developed solution over HTTP and TLS
>
> will be investigated. Note that the initial focus is on CoAP and HTTP wit=
h DTLS and TLS.
>
> Other security protocols may be considered as long as the primary focus i=
s maintained.
>
> The group is scoped to work only on the web protocols and data carried wi=
thin them.
>
> Furthermore, to guarantee smooth transition, the
>
> integration with existing deployments will be studied, particularly
>
> concerning the use of protocol translation proxies.
>
>
>
> This work does not make the assumption that the party offering
>
> application layer services is always the same party offering network
>
> access services.
>
>
>
> The working group has the following tasks:
>
>
>
> 1) Produce use cases and requirements
>
>
>
> 2) Identify authentication and authorization mechanisms suitable for
>
> resource access in constrained environments.
>
>
>
> Milestones:
>
>
>
> Jul 2014 Submit "Use cases and Requirements" as a WG item.
>
> Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.
>
> Dec 2014 Optionally, submit "Use cases and Requirements" document
>
> to the IESG for publication as an Informational RFC.
>
> Jul 2016 Submit "Authentication and Authorization Solution"
>
> specification to the IESG for publication as a Proposed Standard.
>
>
>
> Proposed Milestones
>
> No milestones for charter found.
>
>
>
>
>
>
>
> --
>
>
>
> Best regards,
>
> Kathleen
>



--=20

Best regards,
Kathleen

--089e0158b6d24d195504faef7b7c
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3Dutf-8"><d=
iv dir=3D"ltr">I believe there is agreement on the proposed changes. &nbsp;=
I'll make the updates later in the day (it's about 11:30 my time, maybe at =
4) in case anyone wants to chime in. &nbsp;If we are all in agreement, I'll=
 have it sent for IETF review at that point.<div>
<br></div><div>Thank you!</div></div><div class=3D"gmail_extra"><br><br><di=
v class=3D"gmail_quote">On Tue, Jun 3, 2014 at 10:26 AM, Likepeng <span dir=
=3D"ltr">&lt;<a href=3D"mailto:likepeng@huawei.com" target=3D"_blank">likep=
eng@huawei.com</a>&gt;</span> wrote:<br>
<blockquote class=3D"gmail_quote" style=3D"margin:0 0 0 .8ex;border-left:1p=
x #ccc solid;padding-left:1ex">





<div lang=3D"ZH-CN" link=3D"blue" vlink=3D"purple">
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Hi Kathlee=
n and all,<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">This is wh=
at I have now:<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Change #1:=
 (Proposed by Kepeng, confirmed by Benoit)<u></u><u></u></span></p><div cla=
ss=3D"">

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">OLD<u></u><u></u></span></pr=
e>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">The IETF has recently develo=
ped protocols for use in constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">environments, where network =
nodes are limited in CPU, memory and power. <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nbsp;<u></u></span><=
/pre>
</div><pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot=
;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">NEW<u></u><u></u></spa=
n></pre><div class=3D"">
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">The IETF has recently develo=
ped protocols for use in constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">environments, where network =
nodes are limited in CPU, memory and power.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">REST architecture is widely =
used for such constrained environments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">END<u></u><u></u></span></pr=
e>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nbsp;<u></u></span><=
/pre>
</div><pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot=
;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Change #2: (Proposal f=
rom Rene, supported by Stefanie)<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">OLD:<u></u><u></u></span></p=
re><div class=3D"">
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Requirements derived from us=
e cases indicate the suitability of existing<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">work as a solution for const=
rained environments <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nbsp;<u></u></span><=
/pre>
</div><pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot=
;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">NEW:<u></u><u></u></sp=
an></pre><div class=3D"">
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Requirements derived from us=
e cases may indicate that existing work is<u></u><u></u></span></pre>
</div><pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot=
;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"> useful as basis for a=
s a solution for constrained environments<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nbsp;<u></u></span><=
/pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Change #3: (Proposal from Ja=
ri, supported by Barry, Robert and Behcet)<u></u><u></u></span></pre><div c=
lass=3D"">

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">OLD:<u></u><u></u></span></p=
re>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Note that the initial focus =
is on CoAP and HTTP with DTLS and TLS.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Other security protocols may=
 be considered as long as the primary focus is maintained.&nbsp; <u></u><u>=
</u></span></pre>

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Other application protocols =
and protocols at other layers in the stack are out of scope.<u></u><u></u><=
/span></pre>

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nbsp;<u></u></span><=
/pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">NEW<u></u><u></u></span></pr=
e>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Note that the initial focus =
is on CoAP and HTTP with DTLS and TLS.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Other security protocols may=
 be considered as long as the primary focus is maintained.&nbsp; <u></u><u>=
</u></span></pre>

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">The group is scoped to work =
only on the web protocols and data carried within them.<u></u><u></u></span=
></pre>

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">END<u></u><u></u></span></pr=
e>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nbsp;<u></u></span><=
/pre>
</div><pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot=
;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Change 4: (Proposal fr=
om Jari, revised by Rene, supported by Stefanie)<u></u><u></u></span></pre>

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">OLD:<u></u><u></u></span></p=
re><div class=3D"">
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Jul 2014 Submit &quot;Use ca=
ses and Requirements&quot;&#157; as a WG item.<u></u><u></u></span></pre>
</div><pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot=
;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Jul 2015 Submit =E2=80=
=9CUse cases and Requirements=E2=80=9D document to IESG for publication as =
informational RFC.<u></u><u></u></span></pre>

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nbsp;<u></u></span><=
/pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">NEW<u></u><u></u></span></pr=
e>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Dec 2014 Submit &quot;Use ca=
ses and Requirements&quot;&#157; as a WG item.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">Apr 2015 Optionally, submit =
&quot;Use cases and Requirements&quot; document to the IESG for<u></u><u></=
u></span></pre>
<div class=3D"">
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">publication as an Informatio=
nal RFC.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">END<u></u><u></u></span></pr=
e>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
</div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt=
;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">I th=
ink we covered all of the IESG review comments.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">If there i=
s any open issue, please let us know.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Thanks,<u>=
</u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Kind Regar=
ds<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Kepeng<u><=
/u><u></u></span></p><div><div class=3D"h5">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">----------=
---------------------------------------------------------------------------=
-------------------------------------------------------------------<u></u><=
u></u></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Charter ch=
arter-ietf-ace-00-02<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Authentica=
tion and Authorization for Constrained<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Environmen=
t (ACE)<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">The IETF h=
as recently developed protocols for use in constrained<u></u><u></u></span>=
</p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">environmen=
ts, where network nodes are limited in CPU, memory and power.
<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">REST archi=
tecture is widely used for such constrained environments.<u></u><u></u></sp=
an></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">It has bee=
n observed that Internet protocols can be applied to these<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">constraine=
d environments, often only requiring minor tweaking and<u></u><u></u></span=
></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">profiling.=
 In other cases, new protocols have been defined to address<u></u><u></u></=
span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">the specif=
ic requirements of constrained environments. An example of<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">such a pro=
tocol is the Constrained Application Protocol (CoAP).<u></u><u></u></span><=
/p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">As in othe=
r environments, authentication and authorization questions<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">also arise=
 in constrained environments. For example, a door lock has to<u></u><u></u>=
</span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">authorize =
the person seeking access using a &quot;digital key&quot;. Where is the<u><=
/u><u></u></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">authorizat=
ion policy stored? How does the digital key communicate with<u></u><u></u><=
/span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">the lock? =
Does the lock interact with an authorization server to obtain<u></u><u></u>=
</span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">authorizat=
ion information? How can access be temporarily granted to<u></u><u></u></sp=
an></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">other pers=
ons? How can access be revoked? These types of questions have<u></u><u></u>=
</span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">been answe=
red by existing protocols for use cases outside constrained<u></u><u></u></=
span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">environmen=
ts, however in constrained environments, additional and<u></u><u></u></span=
></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">different =
requirements pose challenges for the use of various security<u></u><u></u><=
/span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">protocols.=
 In particular, the need arises for a dynamic and fine grained<u></u><u></u=
></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">access con=
trol mechanism, where clients and/or resource servers are<u></u><u></u></sp=
an></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">constraine=
d.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">The IETF h=
as a long history in developing three-party authentication and<u></u><u></u=
></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">authorizat=
ion protocols for distributed environments. Examples include<u></u><u></u><=
/span></p>

</div></div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:=
10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d=
">Kerberos, the Public Key Infrastructure (PKI), the Authentication,<u></u>=
<u></u></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Authorizat=
ion and Accounting (AAA) infrastructure,and the Web<u></u><u></u></span></p=
>
<div class=3D"">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Authorizat=
ion Protocol (OAuth). All these protocols enjoy widespread<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">deployment=
 on the Internet. Although they all aim to solve a similar<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">goal, at a=
n abstract level, they offer quite different functions and<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">utilize di=
fferent message exchanges. These differences result from the<u></u><u></u><=
/span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">main deplo=
yment use cases they were designed for respectively.<u></u><u></u></span></=
p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
</div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt=
;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Requ=
irements derived from use cases may indicate that existing work is
<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">useful as =
basis for as a solution for constrained environments.<u></u><u></u></span><=
/p>
<div class=3D"">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">These prot=
ocols,<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">however, w=
ere not optimized for constrained environments. Additional<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">requiremen=
ts that need to be taken into account are the lack of a<u></u><u></u></span=
></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">suitable u=
ser-interface and the inability of embedded devices to contact<u></u><u></u=
></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">an authori=
zation server in real-time with every resource access request<u></u><u></u>=
</span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">due to int=
ermittent connectivity, etc.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">This worki=
ng group therefore aims to produce a standardized solution for<u></u><u></u=
></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">authentica=
tion and authorization to enable authorized access (GET, PUT, POST,
<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">DELETE) to=
 resources identified by a URI and hosted on a resource<u></u><u></u></span=
></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">server in =
constrained environments. As a starting point, the working<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">group will=
 assume that access to resources at a resource server by a<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">client dev=
ice takes place using CoAP and is protected by DTLS. Both<u></u><u></u></sp=
an></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">resource s=
erver and client may be constrained. This access will be<u></u><u></u></spa=
n></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">mediated b=
y an authorization server, which is not considered to be<u></u><u></u></spa=
n></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">constraine=
d.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
</div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt=
;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Exis=
ting authentication and authorization protocols will be evaluated
<u></u><u></u></span></p><div class=3D"">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">and re-use=
d where applicable to build the constrained-environment solution.<u></u><u>=
</u></span></p>

</div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt=
;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">This=
 requires<u></u><u></u></span></p><div><div class=3D"h5">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">relevant s=
pecifications to be reviewed for suitability, selecting a<u></u><u></u></sp=
an></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">subset of =
them and restricting the options within each of the<u></u><u></u></span></p=
>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">specificat=
ions. Some functionality, however, may not be available in<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">existing p=
rotocols, in which case the solution may also involve new<u></u><u></u></sp=
an></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">protocol w=
ork. Leveraging existing work means the working group benefits<u></u><u></u=
></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">from avail=
able security analysis, implementation, and deployment<u></u><u></u></span>=
</p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">experience=
. Moreover, a standardized solution for federated<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">authentica=
tion and authorization will help to stimulate the deployment<u></u><u></u><=
/span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">of constra=
ined devices that provide increased security.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Once progr=
ess in identifying suitable candidate solutions has been made,<u></u><u></u=
></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">the workin=
g group will verify whether the same mechanisms are also<u></u><u></u></spa=
n></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">applicable=
 beyond the use of CoAP and DTLS, which are the two main<u></u><u></u></spa=
n></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">protocols =
the group will focus on for access to resources. In<u></u><u></u></span></p=
>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">particular=
, the ability to use the developed solution over HTTP and TLS<u></u><u></u>=
</span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">will be in=
vestigated. Note that the initial focus is on CoAP and HTTP with DTLS and T=
LS.<u></u><u></u></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Other secu=
rity protocols may be considered as long as the primary focus is maintained=
.&nbsp;
<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">The group =
is scoped to work only on the web protocols and data carried within them.<u=
></u><u></u></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Furthermor=
e, to guarantee smooth transition, the<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">integratio=
n with existing deployments will be studied, particularly<u></u><u></u></sp=
an></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">concerning=
 the use of protocol translation proxies.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">This work =
does not make the assumption that the party offering<u></u><u></u></span></=
p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">applicatio=
n layer services is always the same party offering network<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">access ser=
vices.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">The workin=
g group has the following tasks:<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">1) Produce=
 use cases and requirements<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">2) Identif=
y authentication and authorization mechanisms suitable for<u></u><u></u></s=
pan></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">resource a=
ccess in constrained environments.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Milestones=
:<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
</div></div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:=
10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d=
">Dec 2014 Submit &quot;Use cases and Requirements&quot; as a WG item.<u></=
u><u></u></span></p>
<div class=3D"">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Dec 2014 S=
ubmit &quot;Authentication and Authorization Solution&quot; as a WG item.<u=
></u><u></u></span></p>

</div><p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt=
;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Apr =
2015 Optionally, submit &quot;Use cases and Requirements&quot; document
<u></u><u></u></span></p><div class=3D"">
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">to the IES=
G for publication as an Informational RFC.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Jul 2016 S=
ubmit &quot;Authentication and Authorization Solution&quot;<u></u><u></u></=
span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">specificat=
ion to the IESG for publication as a Proposed Standard.<u></u><u></u></span=
></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Proposed M=
ilestones
<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">No milesto=
nes for charter found.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d"><u></u>&nb=
sp;<u></u></span></p>
</div><div style=3D"border:none;border-top:solid #b5c4df 1.0pt;padding:3.0p=
t 0cm 0cm 0cm">
<p class=3D"MsoNormal"><b><span style=3D"font-size:10.0pt">=E5=8F=91=E4=BB=
=B6=E4=BA=BA<span lang=3D"EN-US">:</span></span></b><span lang=3D"EN-US" st=
yle=3D"font-size:10.0pt"> Kathleen Moriarty [mailto:<a href=3D"mailto:kathl=
een.moriarty.ietf@gmail.com" target=3D"_blank">kathleen.moriarty.ietf@gmail=
.com</a>]
<br>
</span><b><span style=3D"font-size:10.0pt">=E5=8F=91=E9=80=81=E6=97=B6=E9=
=97=B4<span lang=3D"EN-US">:</span></span></b><span lang=3D"EN-US" style=3D=
"font-size:10.0pt"> 2014</span><span style=3D"font-size:10.0pt">=E5=B9=B4<s=
pan lang=3D"EN-US">6</span>=E6=9C=88<span lang=3D"EN-US">3</span>=E6=97=A5<=
span lang=3D"EN-US"> 14:30<br>

</span><b>=E6=94=B6=E4=BB=B6=E4=BA=BA<span lang=3D"EN-US">:</span></b><span=
 lang=3D"EN-US"> Likepeng<br>
</span><b>=E6=8A=84=E9=80=81<span lang=3D"EN-US">:</span></b><span lang=3D"=
EN-US"> Benoit Claise; <a href=3D"mailto:adrian@olddog.co.uk" target=3D"_bl=
ank">adrian@olddog.co.uk</a>; <a href=3D"mailto:aaa-doctors@ietf.org" targe=
t=3D"_blank">aaa-doctors@ietf.org</a>; The IESG; <a href=3D"mailto:ace@ietf=
.org" target=3D"_blank">ace@ietf.org</a><br>

</span></span></p><div><div class=3D"h5"><b>=E4=B8=BB=E9=A2=98<span lang=3D=
"EN-US">:</span></b><span lang=3D"EN-US"> Re: Revised charter proposal: cha=
rter-ietf-ace-00-02<u></u><u></u></span></div></div><p></p>
</div><div><div class=3D"h5">
<p class=3D"MsoNormal"><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></p>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Hi Kepeng,<u></u><u></u></span>=
</p>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></p>
</div>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US">If we are at a point where I ca=
n update the charter, seems that way, please send the latest version that h=
as been agreed upon and I'll take care of the update.<u></u><u></u></span><=
/p>

</div>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></p>
</div>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Thanks.<u></u><u></u></span></p=
>
</div>
</div>
<div>
<p class=3D"MsoNormal" style=3D"margin-bottom:12.0pt"><span lang=3D"EN-US">=
<u></u>&nbsp;<u></u></span></p>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US">On Tue, Jun 3, 2014 at 6:31 AM,=
 Likepeng &lt;<a href=3D"mailto:likepeng@huawei.com" target=3D"_blank">like=
peng@huawei.com</a>&gt; wrote:<u></u><u></u></span></p>
<div>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Hi Benoit,=
</span><span lang=3D"EN-US"><u></u><u></u></span></p>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&nbsp;</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;Not on=
ly would I keep &quot;AAA&quot;,
</span><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&nbsp;</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
</div>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">OK.</span>=
<span lang=3D"EN-US"><u></u><u></u></span></p>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&nbsp;</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;but I =
would propose</span><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&nbsp;</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;OLD:</=
span><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;Existi=
ng authentication and authorization protocols will be used where</span><spa=
n lang=3D"EN-US"><u></u><u></u></span></p>

</div>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">applicable=
 to build the constrained-environment solution.</span><span lang=3D"EN-US">=
<u></u><u></u></span></p>

<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&nbsp;</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&gt;NEW:</=
span><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Existing a=
uthentication and authorization protocols will be evaluated and re-used whe=
re</span><span lang=3D"EN-US"><u></u><u></u></span></p>

</div>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">applicable=
 to build the constrained-environment solution.</span><span lang=3D"EN-US">=
<u></u><u></u></span></p>

<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&nbsp;</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">OK, fine w=
ith me.</span><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&nbsp;</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Thanks for=
 the feedback.
</span><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&nbsp;</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Kind Regar=
ds</span><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">Kepeng</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-=
family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1f497d">&nbsp;</sp=
an><span lang=3D"EN-US"><u></u><u></u></span></p>
<div>
<div style=3D"border:none;border-top:solid #b5c4df 1.0pt;padding:3.0pt 0cm =
0cm 0cm">
<p class=3D"MsoNormal"><b><span style=3D"font-size:10.0pt">=E5=8F=91=E4=BB=
=B6=E4=BA=BA<span lang=3D"EN-US">:</span></span></b><span lang=3D"EN-US" st=
yle=3D"font-size:10.0pt"> Benoit Claise [mailto:<a href=3D"mailto:bclaise@c=
isco.com" target=3D"_blank">bclaise@cisco.com</a>]
<br>
</span><b><span style=3D"font-size:10.0pt">=E5=8F=91=E9=80=81=E6=97=B6=E9=
=97=B4<span lang=3D"EN-US">:</span></span></b><span lang=3D"EN-US" style=3D=
"font-size:10.0pt"> 2014</span><span style=3D"font-size:10.0pt">=E5=B9=B4<s=
pan lang=3D"EN-US">6</span>=E6=9C=88<span lang=3D"EN-US">3</span>=E6=97=A5<=
span lang=3D"EN-US"> 12:16</span></span><span lang=3D"EN-US"><u></u><u></u>=
</span></p>

<div>
<p class=3D"MsoNormal"><b>=E6=94=B6=E4=BB=B6=E4=BA=BA<span lang=3D"EN-US">:=
</span></b><span lang=3D"EN-US"> Likepeng; Kathleen Moriarty;
<a href=3D"mailto:adrian@olddog.co.uk" target=3D"_blank">adrian@olddog.co.u=
k</a><u></u><u></u></span></p>
</div>
<p class=3D"MsoNormal"><b>=E6=8A=84=E9=80=81<span lang=3D"EN-US">:</span></=
b><span lang=3D"EN-US"> <a href=3D"mailto:aaa-doctors@ietf.org" target=3D"_=
blank">
aaa-doctors@ietf.org</a>; The IESG; <a href=3D"mailto:ace@ietf.org" target=
=3D"_blank">
ace@ietf.org</a><u></u><u></u></span></p>
<div>
<p class=3D"MsoNormal"><b>=E4=B8=BB=E9=A2=98<span lang=3D"EN-US">:</span></=
b><span lang=3D"EN-US"> Re: Revised charter proposal: charter-ietf-ace-00-0=
2<u></u><u></u></span></p>
</div>
</div>
</div>
<p class=3D"MsoNormal"><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></p>
<div>
<p class=3D"MsoNormal" style=3D"margin-bottom:12.0pt"><span lang=3D"EN-US">=
Hi,
<u></u><u></u></span></p>
</div>
<div>
<div>
<blockquote style=3D"margin-top:5.0pt;margin-bottom:5.0pt">
<pre><span lang=3D"EN-US">Hello all,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Based on recent discussions, I made a revised cha=
rter proposal, as included in this email, not on the webpage yet. <u></u><u=
></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Please take a look and let us know if you have an=
y further comments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">@Adrian and @Benoit, please check if the proposed=
 texts can resolve your comments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Thanks,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kind Regards<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kepeng<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">-------------------------------------------------=
---------------------------------------------------------------------------=
---------------------------------<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Compared with charter-ietf-ace-00-01 on the webpa=
ge, the changes are:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">(1)&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Add one clarifi=
cation sentence about REST architecture:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">OLD<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has recently developed protocols for use=
 in constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">environments, where network nodes are limited in =
CPU, memory and power. <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">REST architecture is widely used for such constra=
ined environments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">NEW<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has recently developed protocols for use=
 in constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">environments, where network nodes are limited in =
CPU, memory and power.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">REST architecture is widely used for such constra=
ined environments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">END<u></u><u></u></span></pre>
</blockquote>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Considering that OLD is<u></u><=
u></u></span></p>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">OLD</span><span lang=3D"EN-U=
S"><u></u><u></u></span></pre>
<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">The IETF has recently develo=
ped protocols for use in constrained</span><span lang=3D"EN-US"><u></u><u><=
/u></span></pre>

<pre><span lang=3D"EN-US" style=3D"font-size:10.5pt;font-family:&quot;Calib=
ri&quot;,&quot;sans-serif&quot;;color:#1f497d">environments, where network =
nodes are limited in CPU, memory and power. </span><span lang=3D"EN-US"><u>=
</u><u></u></span></pre>

<p class=3D"MsoNormal" style=3D"margin-bottom:12.0pt"><span lang=3D"EN-US">=
... fine with me<u></u><u></u></span></p>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">(2)&nbsp;&nbsp;&nbsp;&nbsp; Remove </span>=E2=80=
=9C<span lang=3D"EN-US">AAA protocol</span>=E2=80=9D<span lang=3D"EN-US"> f=
rom the charter:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">OLD<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has a long history in developing three-p=
arty authentication and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization protocols for distributed environme=
nts. Examples include<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kerberos, the Public Key Infrastructure (PKI), th=
e Authentication,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Authorization and Accounting (AAA) infrastructure=
, and the Web<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Authorization Protocol (OAuth).<u></u><u></u></sp=
an></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">NEW<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has a long history in developing three-p=
arty authentication and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization protocols for distributed environme=
nts. Examples include<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kerberos, the Public Key Infrastructure (PKI), an=
d the Web Authorization Protocol (OAuth).<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">END<u></u><u></u></span></pre>
<p class=3D"MsoNormal"><span lang=3D"EN-US">We have AAA-doctors telling: ma=
ybe RADIUS is applicable?<br>
Personally, I don't know and it doesn't matter at this point.<br>
We received feedback such as:<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Let's be clear here: It was nev=
er said (in the charter or anywhere else in the group to my knowledge) that=
 RADIUS (or indeed any other AAA protocol) would not
 run on constrained devices (RFC 7228). The charter simply said the protoco=
ls were not optimised for constrained devices. That does not preclude consi=
dering any protocol for suitability for constrained devices either a) as is=
, b) in a restricted way or c) in
 an adapted way.<br>
<br>
So, at this stage, I don't think any protocols should be excluded from cons=
ideration and should certainly not be eliminated on a hunch that they might=
 be &quot;too big&quot;. Let's do the assessment properly at the appropriat=
e time. As a reminder - the focus now is to
 complete the charter.<u></u><u></u></span></p>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Or<u></u><u></u></span></p>
<pre><span lang=3D"EN-US">&gt;&gt;The Charter makes a number of assertions =
that are provably false, such as that AAA protocols are inappropriate for c=
onstrained environments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">In fact, the charter does not say that. But to av=
oid confusion, let's remove AAA protocol from the charter.<u></u><u></u></s=
pan></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">In the charter, we mentioned that we want to reus=
e existing authentication and authorization protocols where applicable to b=
uild the constrained-environment solution.<u></u><u></u></span></pre>
<p class=3D"MsoNormal" style=3D"margin-bottom:12.0pt"><span lang=3D"EN-US">=
... which I read as: let's consider the AAA protocols, and evaluate if they=
 would work in constrained devices.<br>
I don't understand the logic: why do you want to remove AAA from the charte=
r?<br>
Not only would I keep &quot;AAA&quot;, but I would propose<br>
<br>
OLD:<br>
Existing authentication and authorization protocols will be used where<br>
applicable to build the constrained-environment solution<br>
<br>
NEW:<br>
Existing authentication and authorization protocols will be evaluated and r=
e-used where<br>
applicable to build the constrained-environment solution<br>
<br>
Regards, Benoit<u></u><u></u></span></p>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">(3) Clarify the scope:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">OLD:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Note that the initial focus is on CoAP and HTTP w=
ith DTLS and TLS.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Other security protocols may be considered as lon=
g as the primary focus is maintained.&nbsp; <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Other application protocols and protocols at othe=
r layers in the stack are out of scope.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">NEW<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Note that the initial focus is on CoAP and HTTP w=
ith DTLS and TLS.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Other security protocols may be considered as lon=
g as the primary focus is maintained.&nbsp; <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The group is scoped to work only on the web proto=
cols and data carried within them.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">END<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">(4)&nbsp;&nbsp;&nbsp;&nbsp; Update milestones for=
 the use case &amp; requirements document:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">OLD:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Jul 2015 Submit </span>=E2=80=9C<span lang=3D"EN-=
US">Use cases and Requirements</span>=E2=80=9D<span lang=3D"EN-US"> documen=
t to IESG for publication as informational RFC.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">NEW<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Dec 2014 Optionally, submit &quot;Use cases and R=
equirements&quot; document to the IESG for publication as an Informational =
RFC.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">END<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">-------------------------------------------------=
---------------------------------------------------------------------------=
------------------------------------------------<u></u><u></u></span></pre>

<pre><span lang=3D"EN-US">Charter charter-ietf-ace-00-02<u></u><u></u></spa=
n></pre>
<pre><span lang=3D"EN-US">Authentication and Authorization for Constrained<=
u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Environment (ACE)<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has recently developed protocols for use=
 in constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">environments, where network nodes are limited in =
CPU, memory and power. <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">REST architecture is widely used for such constra=
ined environments.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">It has been observed that Internet protocols can =
be applied to these<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">constrained environments, often only requiring mi=
nor tweaking and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">profiling. In other cases, new protocols have bee=
n defined to address<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">the specific requirements of constrained environm=
ents. An example of<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">such a protocol is the Constrained Application Pr=
otocol (CoAP).<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">As in other environments, authentication and auth=
orization questions<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">also arise in constrained environments. For examp=
le, a door lock has to<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorize the person seeking access using a &quot=
;digital key&quot;. Where is the<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization policy stored? How does the digital=
 key communicate with<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">the lock? Does the lock interact with an authoriz=
ation server to obtain<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization information? How can access be temp=
orarily granted to<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">other persons? How can access be revoked? These t=
ypes of questions have<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">been answered by existing protocols for use cases=
 outside constrained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">environments, however in constrained environments=
, additional and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">different requirements pose challenges for the us=
e of various security<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">protocols. In particular, the need arises for a d=
ynamic and fine grained<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">access control mechanism, where clients and/or re=
source servers are<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">constrained.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The IETF has a long history in developing three-p=
arty authentication and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authorization protocols for distributed environme=
nts. Examples include<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Kerberos, the Public Key Infrastructure (PKI), an=
d the Web<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Authorization Protocol (OAuth). All these protoco=
ls enjoy widespread<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">deployment on the Internet. Although they all aim=
 to solve a similar<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">goal, at an abstract level, they offer quite diff=
erent functions and<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">utilize different message exchanges. These differ=
ences result from the<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">main deployment use cases they were designed for =
respectively.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Requirements derived from use cases indicate the =
suitability of existing<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">work as a solution for constrained environments. =
These protocols,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">however, were not optimized for constrained envir=
onments. Additional<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">requirements that need to be taken into account a=
re the lack of a<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">suitable user-interface and the inability of embe=
dded devices to contact<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">an authorization server in real-time with every r=
esource access request<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">due to intermittent connectivity, etc.<u></u><u><=
/u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">This working group therefore aims to produce a st=
andardized solution for<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authentication and authorization to enable author=
ized access (GET, PUT, POST, <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">DELETE) to resources identified by a URI and host=
ed on a resource<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">server in constrained environments. As a starting=
 point, the working<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">group will assume that access to resources at a r=
esource server by a<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">client device takes place using CoAP and is prote=
cted by DTLS. Both<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">resource server and client may be constrained. Th=
is access will be<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">mediated by an authorization server, which is not=
 considered to be<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">constrained.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Existing authentication and authorization protoco=
ls will be used where<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">applicable to build the constrained-environment s=
olution. This requires<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">relevant specifications to be reviewed for suitab=
ility, selecting a<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">subset of them and restricting the options within=
 each of the<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">specifications. Some functionality, however, may =
not be available in<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">existing protocols, in which case the solution ma=
y also involve new<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">protocol work. Leveraging existing work means the=
 working group benefits<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">from available security analysis, implementation,=
 and deployment<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">experience. Moreover, a standardized solution for=
 federated<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">authentication and authorization will help to sti=
mulate the deployment<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">of constrained devices that provide increased sec=
urity.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Once progress in identifying suitable candidate s=
olutions has been made,<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">the working group will verify whether the same me=
chanisms are also<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">applicable beyond the use of CoAP and DTLS, which=
 are the two main<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">protocols the group will focus on for access to r=
esources. In<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">particular, the ability to use the developed solu=
tion over HTTP and TLS<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">will be investigated. Note that the initial focus=
 is on CoAP and HTTP with DTLS and TLS.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Other security protocols may be considered as lon=
g as the primary focus is maintained.&nbsp; <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The group is scoped to work only on the web proto=
cols and data carried within them.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Furthermore, to guarantee smooth transition, the<=
u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">integration with existing deployments will be stu=
died, particularly<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">concerning the use of protocol translation proxie=
s.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">This work does not make the assumption that the p=
arty offering<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">application layer services is always the same par=
ty offering network<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">access services.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">The working group has the following tasks:<u></u>=
<u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">1) Produce use cases and requirements<u></u><u></=
u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">2) Identify authentication and authorization mech=
anisms suitable for<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">resource access in constrained environments.<u></=
u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Milestones:<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Jul 2014 Submit &quot;Use cases and Requirements&=
quot; as a WG item.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Dec 2014 Submit &quot;Authentication and Authoriz=
ation Solution&quot; as a WG item.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Dec 2014 Optionally, submit &quot;Use cases and R=
equirements&quot; document <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">to the IESG for publication as an Informational R=
FC.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Jul 2016 Submit &quot;Authentication and Authoriz=
ation Solution&quot;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">specification to the IESG for publication as a Pr=
oposed Standard.<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">Proposed Milestones <u></u><u></u></span></pre>
<pre><span lang=3D"EN-US">No milestones for charter found.<u></u><u></u></s=
pan></pre>
<p class=3D"MsoNormal"><span lang=3D"EN-US">&nbsp;<u></u><u></u></span></p>
</div>
</div>
</div>
</div>
</div>
<p class=3D"MsoNormal"><span lang=3D"EN-US"><br>
<br clear=3D"all">
<u></u><u></u></span></p>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></p>
</div>
<p class=3D"MsoNormal"><span lang=3D"EN-US">-- <u></u><u></u></span></p>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US"><u></u>&nbsp;<u></u></span></p>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Best regards,<u></u><u></u></sp=
an></p>
</div>
<div>
<p class=3D"MsoNormal"><span lang=3D"EN-US">Kathleen<u></u><u></u></span></=
p>
</div>
</div>
</div>
</div></div></div>
</div>

</blockquote></div><br><br clear=3D"all"><div><br></div>-- <br><div dir=3D"=
ltr"><br><div>Best regards,</div><div>Kathleen</div></div>
</div>

--089e0158b6d24d195504faef7b7c--


--------------090501060503040907090203--


From nobody Tue Jun  3 23:50:14 2014
Return-Path: <bclaise@cisco.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B33921A00AA; Tue,  3 Jun 2014 23:50:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.151
X-Spam-Level: 
X-Spam-Status: No, score=-10.151 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hp_qMpcu7ysL; Tue,  3 Jun 2014 23:49:57 -0700 (PDT)
Received: from bgl-iport-4.cisco.com (bgl-iport-4.cisco.com [72.163.197.28]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4AE041A009C; Tue,  3 Jun 2014 23:49:53 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=100606; q=dns/txt; s=iport; t=1401864588; x=1403074188; h=message-id:date:from:mime-version:to:cc:subject: references:in-reply-to; bh=wEYp+sxY5wmc4VL6HO175xp/65ZymIsg5TzD9z/mAbU=; b=Fl2RH/vNYWiJOkP1AlF8/6GtXHkYzDp+/sYVPMyF2PH7G137BKTHq+P0 +y3Lw5ukGHqTvddDEaXGg/E6+RginG8NF3xlaILg5v/tGCwIfcgssmF1j 6MEV94IEM3ifMv5mVqx7L+kBOQ96VLjp0ht5iUzYvaWdM0aw855u11vmo E=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: ArEEALfAjlNIo8UY/2dsb2JhbABPCoJCgReDRIVbui8BgSN0giUBAQEEGgEICjoNBAEQCQISBgkMCgEBBgMCAgkDAgECAQ8lAw4GAQwBBQIBAReIEwMRkEycIJ9gDYYIF4w8gTQGBAcBAjYYBgEKgmuBSwEDhVWSQIF6hm+GUYV2gzo7L4EBCRcCAg
X-IronPort-AV: E=Sophos; i="4.98,971,1392163200"; d="scan'208,217"; a="10999470"
Received: from vla196-nat.cisco.com (HELO bgl-core-4.cisco.com) ([72.163.197.24]) by bgl-iport-4.cisco.com with ESMTP; 04 Jun 2014 06:49:43 +0000
Received: from [10.60.67.91] (ams-bclaise-89110.cisco.com [10.60.67.91]) by bgl-core-4.cisco.com (8.14.5/8.14.5) with ESMTP id s546nb5G016221; Wed, 4 Jun 2014 06:49:38 GMT
Message-ID: <538EC180.6000005@cisco.com>
Date: Wed, 04 Jun 2014 08:49:36 +0200
From: Benoit Claise <bclaise@cisco.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.5.0
MIME-Version: 1.0
To: Likepeng <likepeng@huawei.com>, Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com>	<34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com>	<CAHbuEH6U7811XFdipULNwF3_2iocq9dpKje+G4kkU_bpnXHFKw@mail.gmail.com>	<34966E97BE8AD64EAE9D3D6E4DEE36F252B38978@SZXEMA501-MBS.china.huawei.com>	<34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com>	<538DA047.7080902@cisco.com>	<34966E97BE8AD64EAE9D3D6E4DEE36F258153F43@SZXEMA501-MBS.china.huawei.com> <CAHbuEH50vOKf=nHad+9y57qiqdzu=7k3WO1Y8fuuo16crCx5pw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F25815405D@SZXEMA501-MBS.china.huawei.com>
In-Reply-To: <34966E97BE8AD64EAE9D3D6E4DEE36F25815405D@SZXEMA501-MBS.china.huawei.com>
Content-Type: multipart/alternative; boundary="------------090306030109020904050003"
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/8nwoXgiYkaOcSswOXZEzi10P0mM
Cc: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, "adrian@olddog.co.uk" <adrian@olddog.co.uk>, The IESG <iesg@ietf.org>, "ace@ietf.org" <ace@ietf.org>
Subject: Re: [AAA-DOCTORS] Revised charter proposal: charter-ietf-ace-00-02
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Jun 2014 06:50:04 -0000

This is a multi-part message in MIME format.
--------------090306030109020904050003
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 8bit

Hi Likepeng,

You forgot
OLD:
Existing authentication and authorization protocols will be used where
applicable to build the constrained-environment solution

NEW:
Existing authentication and authorization protocols will be evaluated 
and re-used where
applicable to build the constrained-environment solution

Regards, Benoit
>
> Hi Kathleen and all,
>
> This is what I have now:
>
> Change #1: (Proposed by Kepeng, confirmed by Benoit)
>
> OLD
> The IETF has recently developed protocols for use in constrained
> environments, where network nodes are limited in CPU, memory and power.
>   
> NEW
> The IETF has recently developed protocols for use in constrained
> environments, where network nodes are limited in CPU, memory and power.
> REST architecture is widely used for such constrained environments.
> END
>   
> Change #2: (Proposal from Rene, supported by Stefanie)
> OLD:
> Requirements derived from use cases indicate the suitability of existing
> work as a solution for constrained environments
>   
> NEW:
> Requirements derived from use cases may indicate that existing work is
>   useful as basis for as a solution for constrained environments
>   
> Change #3: (Proposal from Jari, supported by Barry, Robert and Behcet)
> OLD:
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
> Other security protocols may be considered as long as the primary focus is maintained.
> Other application protocols and protocols at other layers in the stack are out of scope.
>   
> NEW
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
> Other security protocols may be considered as long as the primary focus is maintained.
> The group is scoped to work only on the web protocols and data carried within them.
> END
>   
> Change 4: (Proposal from Jari, revised by Rene, supported by Stefanie)
> OLD:
> Jul 2014 Submit "Use cases and Requirements" as a WG item.
> Jul 2015 Submit “Use cases and Requirements” document to IESG for publication as informational RFC.
>   
> NEW
> Dec 2014 Submit "Use cases and Requirements" as a WG item.
> Apr 2015 Optionally, submit "Use cases and Requirements" document to the IESG for
> publication as an Informational RFC.
> END
>
> I think we covered all of the IESG review comments.
>
> If there is any open issue, please let us know.
>
> Thanks,
>
> Kind Regards
>
> Kepeng
>
> --------------------------------------------------------------------------------------------------------------------------------------------------------
>
> Charter charter-ietf-ace-00-02
>
> Authentication and Authorization for Constrained
>
> Environment (ACE)
>
> The IETF has recently developed protocols for use in constrained
>
> environments, where network nodes are limited in CPU, memory and power.
>
> REST architecture is widely used for such constrained environments.
>
> It has been observed that Internet protocols can be applied to these
>
> constrained environments, often only requiring minor tweaking and
>
> profiling. In other cases, new protocols have been defined to address
>
> the specific requirements of constrained environments. An example of
>
> such a protocol is the Constrained Application Protocol (CoAP).
>
> As in other environments, authentication and authorization questions
>
> also arise in constrained environments. For example, a door lock has to
>
> authorize the person seeking access using a "digital key". Where is the
>
> authorization policy stored? How does the digital key communicate with
>
> the lock? Does the lock interact with an authorization server to obtain
>
> authorization information? How can access be temporarily granted to
>
> other persons? How can access be revoked? These types of questions have
>
> been answered by existing protocols for use cases outside constrained
>
> environments, however in constrained environments, additional and
>
> different requirements pose challenges for the use of various security
>
> protocols. In particular, the need arises for a dynamic and fine grained
>
> access control mechanism, where clients and/or resource servers are
>
> constrained.
>
> The IETF has a long history in developing three-party authentication and
>
> authorization protocols for distributed environments. Examples include
>
> Kerberos, the Public Key Infrastructure (PKI), the Authentication,
>
> Authorization and Accounting (AAA) infrastructure,and the Web
>
> Authorization Protocol (OAuth). All these protocols enjoy widespread
>
> deployment on the Internet. Although they all aim to solve a similar
>
> goal, at an abstract level, they offer quite different functions and
>
> utilize different message exchanges. These differences result from the
>
> main deployment use cases they were designed for respectively.
>
> Requirements derived from use cases may indicate that existing work is
>
> useful as basis for as a solution for constrained environments.
>
> These protocols,
>
> however, were not optimized for constrained environments. Additional
>
> requirements that need to be taken into account are the lack of a
>
> suitable user-interface and the inability of embedded devices to contact
>
> an authorization server in real-time with every resource access request
>
> due to intermittent connectivity, etc.
>
> This working group therefore aims to produce a standardized solution for
>
> authentication and authorization to enable authorized access (GET, 
> PUT, POST,
>
> DELETE) to resources identified by a URI and hosted on a resource
>
> server in constrained environments. As a starting point, the working
>
> group will assume that access to resources at a resource server by a
>
> client device takes place using CoAP and is protected by DTLS. Both
>
> resource server and client may be constrained. This access will be
>
> mediated by an authorization server, which is not considered to be
>
> constrained.
>
> Existing authentication and authorization protocols will be evaluated
>
> and re-used where applicable to build the constrained-environment 
> solution.
>
> This requires
>
> relevant specifications to be reviewed for suitability, selecting a
>
> subset of them and restricting the options within each of the
>
> specifications. Some functionality, however, may not be available in
>
> existing protocols, in which case the solution may also involve new
>
> protocol work. Leveraging existing work means the working group benefits
>
> from available security analysis, implementation, and deployment
>
> experience. Moreover, a standardized solution for federated
>
> authentication and authorization will help to stimulate the deployment
>
> of constrained devices that provide increased security.
>
> Once progress in identifying suitable candidate solutions has been made,
>
> the working group will verify whether the same mechanisms are also
>
> applicable beyond the use of CoAP and DTLS, which are the two main
>
> protocols the group will focus on for access to resources. In
>
> particular, the ability to use the developed solution over HTTP and TLS
>
> will be investigated. Note that the initial focus is on CoAP and HTTP 
> with DTLS and TLS.
>
> Other security protocols may be considered as long as the primary 
> focus is maintained.
>
> The group is scoped to work only on the web protocols and data carried 
> within them.
>
> Furthermore, to guarantee smooth transition, the
>
> integration with existing deployments will be studied, particularly
>
> concerning the use of protocol translation proxies.
>
> This work does not make the assumption that the party offering
>
> application layer services is always the same party offering network
>
> access services.
>
> The working group has the following tasks:
>
> 1) Produce use cases and requirements
>
> 2) Identify authentication and authorization mechanisms suitable for
>
> resource access in constrained environments.
>
> Milestones:
>
> Dec 2014 Submit "Use cases and Requirements" as a WG item.
>
> Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.
>
> Apr 2015 Optionally, submit "Use cases and Requirements" document
>
> to the IESG for publication as an Informational RFC.
>
> Jul 2016 Submit "Authentication and Authorization Solution"
>
> specification to the IESG for publication as a Proposed Standard.
>
> Proposed Milestones
>
> No milestones for charter found.
>
> *发件人:*Kathleen Moriarty [mailto:kathleen.moriarty.ietf@gmail.com]
> *发送时间:*2014年6月3日14:30
> *收件人:*Likepeng
> *抄送:*Benoit Claise; adrian@olddog.co.uk; aaa-doctors@ietf.org; The 
> IESG; ace@ietf.org
> *主题:*Re: Revised charter proposal: charter-ietf-ace-00-02
>
> Hi Kepeng,
>
> If we are at a point where I can update the charter, seems that way, 
> please send the latest version that has been agreed upon and I'll take 
> care of the update.
>
> Thanks.
>
> On Tue, Jun 3, 2014 at 6:31 AM, Likepeng <likepeng@huawei.com 
> <mailto:likepeng@huawei.com>> wrote:
>
> Hi Benoit,
>
> >Not only would I keep "AAA",
>
> OK.
>
> >but I would propose
>
> >OLD:
>
> >Existing authentication and authorization protocols will be used where
>
> applicable to build the constrained-environment solution.
>
> >NEW:
>
> Existing authentication and authorization protocols will be evaluated 
> and re-used where
>
> applicable to build the constrained-environment solution.
>
> OK, fine with me.
>
> Thanks for the feedback.
>
> Kind Regards
>
> Kepeng
>
> *发件人:*Benoit Claise [mailto:bclaise@cisco.com 
> <mailto:bclaise@cisco.com>]
> *发送时间:*2014年6月3日12:16
>
> *收件人:*Likepeng; Kathleen Moriarty; adrian@olddog.co.uk 
> <mailto:adrian@olddog.co.uk>
>
> *抄送:*aaa-doctors@ietf.org <mailto:aaa-doctors@ietf.org>; The IESG; 
> ace@ietf.org <mailto:ace@ietf.org>
>
> *主题:*Re: Revised charter proposal: charter-ietf-ace-00-02
>
> Hi,
>
>     Hello all,
>
>       
>
>     Based on recent discussions, I made a revised charter proposal, as included in this email, not on the webpage yet.
>
>       
>
>     Please take a look and let us know if you have any further comments.
>
>       
>
>     @Adrian and @Benoit, please check if the proposed texts can resolve your comments.
>
>       
>
>     Thanks,
>
>     Kind Regards
>
>     Kepeng
>
>       
>
>     -------------------------------------------------------------------------------------------------------------------------------------------------------------
>
>     Compared with charter-ietf-ace-00-01 on the webpage, the changes are:
>
>       
>
>     (1)      Add one clarification sentence about REST architecture:
>
>     OLD
>
>     The IETF has recently developed protocols for use in constrained
>
>     environments, where network nodes are limited in CPU, memory and power.
>
>     REST architecture is widely used for such constrained environments.
>
>       
>
>     NEW
>
>     The IETF has recently developed protocols for use in constrained
>
>     environments, where network nodes are limited in CPU, memory and power.
>
>     REST architecture is widely used for such constrained environments.
>
>     END
>
> Considering that OLD is
>
> OLD
> The IETF has recently developed protocols for use in constrained
> environments, where network nodes are limited in CPU, memory and power.
>
> ... fine with me
>
>   
>   
> (2)     Remove“AAA protocol”  from the charter:
> OLD
> The IETF has a long history in developing three-party authentication and
> authorization protocols for distributed environments. Examples include
> Kerberos, the Public Key Infrastructure (PKI), the Authentication,
> Authorization and Accounting (AAA) infrastructure, and the Web
> Authorization Protocol (OAuth).
>   
> NEW
> The IETF has a long history in developing three-party authentication and
> authorization protocols for distributed environments. Examples include
> Kerberos, the Public Key Infrastructure (PKI), and the Web Authorization Protocol (OAuth).
> END
>
> We have AAA-doctors telling: maybe RADIUS is applicable?
> Personally, I don't know and it doesn't matter at this point.
> We received feedback such as:
>
> Let's be clear here: It was never said (in the charter or anywhere 
> else in the group to my knowledge) that RADIUS (or indeed any other 
> AAA protocol) would not run on constrained devices (RFC 7228). The 
> charter simply said the protocols were not optimised for constrained 
> devices. That does not preclude considering any protocol for 
> suitability for constrained devices either a) as is, b) in a 
> restricted way or c) in an adapted way.
>
> So, at this stage, I don't think any protocols should be excluded from 
> consideration and should certainly not be eliminated on a hunch that 
> they might be "too big". Let's do the assessment properly at the 
> appropriate time. As a reminder - the focus now is to complete the 
> charter.
>
> Or
>
> >>The Charter makes a number of assertions that are provably false, such as that AAA protocols are inappropriate for constrained environments.
> In fact, the charter does not say that. But to avoid confusion, let's remove AAA protocol from the charter.
>   
> In the charter, we mentioned that we want to reuse existing authentication and authorization protocols where applicable to build the constrained-environment solution.
>
> ... which I read as: let's consider the AAA protocols, and evaluate if 
> they would work in constrained devices.
> I don't understand the logic: why do you want to remove AAA from the 
> charter?
> Not only would I keep "AAA", but I would propose
>
> OLD:
> Existing authentication and authorization protocols will be used where
> applicable to build the constrained-environment solution
>
> NEW:
> Existing authentication and authorization protocols will be evaluated 
> and re-used where
> applicable to build the constrained-environment solution
>
> Regards, Benoit
>
>   
>   
> (3) Clarify the scope:
> OLD:
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
> Other security protocols may be considered as long as the primary focus is maintained.
> Other application protocols and protocols at other layers in the stack are out of scope.
>   
> NEW
> Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
> Other security protocols may be considered as long as the primary focus is maintained.
> The group is scoped to work only on the web protocols and data carried within them.
> END
>   
> (4)     Update milestones for the use case & requirements document:
> OLD:
> Jul 2015 Submit“Use cases and Requirements”  document to IESG for publication as informational RFC.
>   
> NEW
> Dec 2014 Optionally, submit "Use cases and Requirements" document to the IESG for publication as an Informational RFC.
> END
>   
> ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------
> Charter charter-ietf-ace-00-02
> Authentication and Authorization for Constrained
> Environment (ACE)
>   
> The IETF has recently developed protocols for use in constrained
> environments, where network nodes are limited in CPU, memory and power.
> REST architecture is widely used for such constrained environments.
> It has been observed that Internet protocols can be applied to these
> constrained environments, often only requiring minor tweaking and
> profiling. In other cases, new protocols have been defined to address
> the specific requirements of constrained environments. An example of
> such a protocol is the Constrained Application Protocol (CoAP).
>   
> As in other environments, authentication and authorization questions
> also arise in constrained environments. For example, a door lock has to
> authorize the person seeking access using a "digital key". Where is the
> authorization policy stored? How does the digital key communicate with
> the lock? Does the lock interact with an authorization server to obtain
> authorization information? How can access be temporarily granted to
> other persons? How can access be revoked? These types of questions have
> been answered by existing protocols for use cases outside constrained
> environments, however in constrained environments, additional and
> different requirements pose challenges for the use of various security
> protocols. In particular, the need arises for a dynamic and fine grained
> access control mechanism, where clients and/or resource servers are
> constrained.
>   
> The IETF has a long history in developing three-party authentication and
> authorization protocols for distributed environments. Examples include
> Kerberos, the Public Key Infrastructure (PKI), and the Web
> Authorization Protocol (OAuth). All these protocols enjoy widespread
> deployment on the Internet. Although they all aim to solve a similar
> goal, at an abstract level, they offer quite different functions and
> utilize different message exchanges. These differences result from the
> main deployment use cases they were designed for respectively.
>   
> Requirements derived from use cases indicate the suitability of existing
> work as a solution for constrained environments. These protocols,
> however, were not optimized for constrained environments. Additional
> requirements that need to be taken into account are the lack of a
> suitable user-interface and the inability of embedded devices to contact
> an authorization server in real-time with every resource access request
> due to intermittent connectivity, etc.
>   
> This working group therefore aims to produce a standardized solution for
> authentication and authorization to enable authorized access (GET, PUT, POST,
> DELETE) to resources identified by a URI and hosted on a resource
> server in constrained environments. As a starting point, the working
> group will assume that access to resources at a resource server by a
> client device takes place using CoAP and is protected by DTLS. Both
> resource server and client may be constrained. This access will be
> mediated by an authorization server, which is not considered to be
> constrained.
>   
> Existing authentication and authorization protocols will be used where
> applicable to build the constrained-environment solution. This requires
> relevant specifications to be reviewed for suitability, selecting a
> subset of them and restricting the options within each of the
> specifications. Some functionality, however, may not be available in
> existing protocols, in which case the solution may also involve new
> protocol work. Leveraging existing work means the working group benefits
> from available security analysis, implementation, and deployment
> experience. Moreover, a standardized solution for federated
> authentication and authorization will help to stimulate the deployment
> of constrained devices that provide increased security.
>   
> Once progress in identifying suitable candidate solutions has been made,
> the working group will verify whether the same mechanisms are also
> applicable beyond the use of CoAP and DTLS, which are the two main
> protocols the group will focus on for access to resources. In
> particular, the ability to use the developed solution over HTTP and TLS
> will be investigated. Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
> Other security protocols may be considered as long as the primary focus is maintained.
> The group is scoped to work only on the web protocols and data carried within them.
> Furthermore, to guarantee smooth transition, the
> integration with existing deployments will be studied, particularly
> concerning the use of protocol translation proxies.
>   
> This work does not make the assumption that the party offering
> application layer services is always the same party offering network
> access services.
>   
> The working group has the following tasks:
>   
> 1) Produce use cases and requirements
>   
> 2) Identify authentication and authorization mechanisms suitable for
> resource access in constrained environments.
>   
> Milestones:
>   
> Jul 2014 Submit "Use cases and Requirements" as a WG item.
> Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.
> Dec 2014 Optionally, submit "Use cases and Requirements" document
> to the IESG for publication as an Informational RFC.
> Jul 2016 Submit "Authentication and Authorization Solution"
> specification to the IESG for publication as a Proposed Standard.
>   
> Proposed Milestones
> No milestones for charter found.
>
>
>
> -- 
>
> Best regards,
>
> Kathleen
>


--------------090306030109020904050003
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 8bit

<html>
  <head>
    <meta content="text/html; charset=UTF-8" http-equiv="Content-Type">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <div class="moz-cite-prefix">Hi Likepeng,<br>
      <br>
      You forgot<br>
      OLD:<br>
      Existing authentication and authorization protocols will be used
      where<br>
      applicable to build the constrained-environment solution<br>
      <br>
      NEW:<br>
      Existing authentication and authorization protocols will be
      evaluated and re-used where<br>
      applicable to build the constrained-environment solution<br>
      <br>
      Regards, Benoit<br>
    </div>
    <blockquote
cite="mid:34966E97BE8AD64EAE9D3D6E4DEE36F25815405D@SZXEMA501-MBS.china.huawei.com"
      type="cite">
      <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
      <meta name="Generator" content="Microsoft Word 12 (filtered
        medium)">
      <style><!--
/* Font Definitions */
@font-face
	{font-family:宋体;
	panose-1:2 1 6 0 3 1 1 1 1 1;}
@font-face
	{font-family:"Cambria Math";
	panose-1:2 4 5 3 5 4 6 3 2 4;}
@font-face
	{font-family:Calibri;
	panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
	{font-family:"\@宋体";
	panose-1:2 1 6 0 3 1 1 1 1 1;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
	{margin:0cm;
	margin-bottom:.0001pt;
	font-size:12.0pt;
	font-family:宋体;}
a:link, span.MsoHyperlink
	{mso-style-priority:99;
	color:blue;
	text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
	{mso-style-priority:99;
	color:purple;
	text-decoration:underline;}
p
	{mso-style-priority:99;
	mso-margin-top-alt:auto;
	margin-right:0cm;
	mso-margin-bottom-alt:auto;
	margin-left:0cm;
	font-size:12.0pt;
	font-family:宋体;}
pre
	{mso-style-priority:99;
	mso-style-link:"HTML 预设格式 Char";
	margin:0cm;
	margin-bottom:.0001pt;
	font-size:12.0pt;
	font-family:宋体;}
p.MsoAcetate, li.MsoAcetate, div.MsoAcetate
	{mso-style-priority:99;
	mso-style-link:"批注框文本 Char";
	margin:0cm;
	margin-bottom:.0001pt;
	font-size:9.0pt;
	font-family:宋体;}
span.HTMLChar
	{mso-style-name:"HTML 预设格式 Char";
	mso-style-priority:99;
	mso-style-link:"HTML 预设格式";
	font-family:"Courier New";}
span.EmailStyle20
	{mso-style-type:personal-reply;
	font-family:"Calibri","sans-serif";
	color:#1F497D;}
span.Char
	{mso-style-name:"批注框文本 Char";
	mso-style-priority:99;
	mso-style-link:批注框文本;
	font-family:宋体;}
.MsoChpDefault
	{mso-style-type:export-only;}
@page WordSection1
	{size:612.0pt 792.0pt;
	margin:72.0pt 90.0pt 72.0pt 90.0pt;}
div.WordSection1
	{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext="edit" spidmax="1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext="edit">
<o:idmap v:ext="edit" data="1" />
</o:shapelayout></xml><![endif]-->
      <div class="WordSection1">
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Hi Kathleen and all,<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">This is what I have now:<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Change #1: (Proposed by Kepeng, confirmed by
            Benoit)<o:p></o:p></span></p>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">OLD<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">The IETF has recently developed protocols for use in constrained<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">environments, where network nodes are limited in CPU, memory and power. <o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US"><o:p> </o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">NEW<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">The IETF has recently developed protocols for use in constrained<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">environments, where network nodes are limited in CPU, memory and power.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">REST architecture is widely used for such constrained environments.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">END<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US"><o:p> </o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Change #2: (Proposal from Rene, supported by Stefanie)<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">OLD:<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Requirements derived from use cases indicate the suitability of existing<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">work as a solution for constrained environments <o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US"><o:p> </o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">NEW:<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Requirements derived from use cases may indicate that existing work is<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US"> useful as basis for as a solution for constrained environments<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US"><o:p> </o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Change #3: (Proposal from Jari, supported by Barry, Robert and Behcet)<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">OLD:<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Note that the initial focus is on CoAP and HTTP with DTLS and TLS.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  <o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Other application protocols and protocols at other layers in the stack are out of scope.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US"><o:p> </o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">NEW<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Note that the initial focus is on CoAP and HTTP with DTLS and TLS.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  <o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">The group is scoped to work only on the web protocols and data carried within them.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">END<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US"><o:p> </o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Change 4: (Proposal from Jari, revised by Rene, supported by Stefanie)<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">OLD:<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Jul 2014 Submit "Use cases and Requirements" as a WG item.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Jul 2015 Submit “Use cases and Requirements” document to IESG for publication as informational RFC.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US"><o:p> </o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">NEW<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Dec 2014 Submit "Use cases and Requirements" as a WG item.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">Apr 2015 Optionally, submit "Use cases and Requirements" document to the IESG for<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">publication as an Informational RFC.<o:p></o:p></span></pre>
        <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">END<o:p></o:p></span></pre>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">I think we covered all of the IESG review
            comments.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">If there is any open issue, please let us know.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Thanks,<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Kind Regards<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Kepeng<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">--------------------------------------------------------------------------------------------------------------------------------------------------------<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Charter charter-ietf-ace-00-02<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Authentication and Authorization for
            Constrained<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Environment (ACE)<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">The IETF has recently developed protocols for
            use in constrained<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">environments, where network nodes are limited
            in CPU, memory and power.
            <o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">REST architecture is widely used for such
            constrained environments.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">It has been observed that Internet protocols
            can be applied to these<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">constrained environments, often only requiring
            minor tweaking and<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">profiling. In other cases, new protocols have
            been defined to address<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">the specific requirements of constrained
            environments. An example of<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">such a protocol is the Constrained Application
            Protocol (CoAP).<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">As in other environments, authentication and
            authorization questions<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">also arise in constrained environments. For
            example, a door lock has to<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">authorize the person seeking access using a
            "digital key". Where is the<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">authorization policy stored? How does the
            digital key communicate with<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">the lock? Does the lock interact with an
            authorization server to obtain<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">authorization information? How can access be
            temporarily granted to<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">other persons? How can access be revoked? These
            types of questions have<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">been answered by existing protocols for use
            cases outside constrained<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">environments, however in constrained
            environments, additional and<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">different requirements pose challenges for the
            use of various security<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">protocols. In particular, the need arises for a
            dynamic and fine grained<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">access control mechanism, where clients and/or
            resource servers are<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">constrained.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">The IETF has a long history in developing
            three-party authentication and<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">authorization protocols for distributed
            environments. Examples include<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Kerberos, the Public Key Infrastructure (PKI),
            the Authentication,<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Authorization and Accounting (AAA)
            infrastructure,and the Web<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Authorization Protocol (OAuth). All these
            protocols enjoy widespread<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">deployment on the Internet. Although they all
            aim to solve a similar<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">goal, at an abstract level, they offer quite
            different functions and<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">utilize different message exchanges. These
            differences result from the<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">main deployment use cases they were designed
            for respectively.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Requirements derived from use cases may
            indicate that existing work is
            <o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">useful as basis for as a solution for
            constrained environments.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">These protocols,<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">however, were not optimized for constrained
            environments. Additional<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">requirements that need to be taken into account
            are the lack of a<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">suitable user-interface and the inability of
            embedded devices to contact<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">an authorization server in real-time with every
            resource access request<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">due to intermittent connectivity, etc.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">This working group therefore aims to produce a
            standardized solution for<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">authentication and authorization to enable
            authorized access (GET, PUT, POST,
            <o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">DELETE) to resources identified by a URI and
            hosted on a resource<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">server in constrained environments. As a
            starting point, the working<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">group will assume that access to resources at a
            resource server by a<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">client device takes place using CoAP and is
            protected by DTLS. Both<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">resource server and client may be constrained.
            This access will be<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">mediated by an authorization server, which is
            not considered to be<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">constrained.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Existing authentication and authorization
            protocols will be evaluated
            <o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">and re-used where applicable to build the
            constrained-environment solution.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">This requires<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">relevant specifications to be reviewed for
            suitability, selecting a<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">subset of them and restricting the options
            within each of the<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">specifications. Some functionality, however,
            may not be available in<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">existing protocols, in which case the solution
            may also involve new<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">protocol work. Leveraging existing work means
            the working group benefits<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">from available security analysis,
            implementation, and deployment<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">experience. Moreover, a standardized solution
            for federated<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">authentication and authorization will help to
            stimulate the deployment<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">of constrained devices that provide increased
            security.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Once progress in identifying suitable candidate
            solutions has been made,<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">the working group will verify whether the same
            mechanisms are also<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">applicable beyond the use of CoAP and DTLS,
            which are the two main<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">protocols the group will focus on for access to
            resources. In<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">particular, the ability to use the developed
            solution over HTTP and TLS<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">will be investigated. Note that the initial
            focus is on CoAP and HTTP with DTLS and TLS.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Other security protocols may be considered as
            long as the primary focus is maintained. 
            <o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">The group is scoped to work only on the web
            protocols and data carried within them.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Furthermore, to guarantee smooth transition,
            the<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">integration with existing deployments will be
            studied, particularly<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">concerning the use of protocol translation
            proxies.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">This work does not make the assumption that the
            party offering<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">application layer services is always the same
            party offering network<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">access services.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">The working group has the following tasks:<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">1) Produce use cases and requirements<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">2) Identify authentication and authorization
            mechanisms suitable for<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">resource access in constrained environments.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Milestones:<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Dec 2014 Submit "Use cases and Requirements" as
            a WG item.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Dec 2014 Submit "Authentication and
            Authorization Solution" as a WG item.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Apr 2015 Optionally, submit "Use cases and
            Requirements" document
            <o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">to the IESG for publication as an Informational
            RFC.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Jul 2016 Submit "Authentication and
            Authorization Solution"<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">specification to the IESG for publication as a
            Proposed Standard.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">Proposed Milestones
            <o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US">No milestones for charter found.<o:p></o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <p class="MsoNormal"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
            lang="EN-US"><o:p> </o:p></span></p>
        <div style="border:none;border-top:solid #B5C4DF
          1.0pt;padding:3.0pt 0cm 0cm 0cm">
          <p class="MsoNormal"><b><span style="font-size:10.0pt">发件人<span
                  lang="EN-US">:</span></span></b><span
              style="font-size:10.0pt" lang="EN-US"> Kathleen Moriarty
              [<a class="moz-txt-link-freetext" href="mailto:kathleen.moriarty.ietf@gmail.com">mailto:kathleen.moriarty.ietf@gmail.com</a>]
              <br>
            </span><b><span style="font-size:10.0pt">发送时间<span
                  lang="EN-US">:</span></span></b><span
              style="font-size:10.0pt" lang="EN-US"> 2014</span><span
              style="font-size:10.0pt">年<span lang="EN-US">6</span>月<span
                lang="EN-US">3</span>日<span lang="EN-US"> 14:30<br>
              </span><b>收件人<span lang="EN-US">:</span></b><span
                lang="EN-US"> Likepeng<br>
              </span><b>抄送<span lang="EN-US">:</span></b><span
                lang="EN-US"> Benoit Claise; <a class="moz-txt-link-abbreviated" href="mailto:adrian@olddog.co.uk">adrian@olddog.co.uk</a>;
                <a class="moz-txt-link-abbreviated" href="mailto:aaa-doctors@ietf.org">aaa-doctors@ietf.org</a>; The IESG; <a class="moz-txt-link-abbreviated" href="mailto:ace@ietf.org">ace@ietf.org</a><br>
              </span><b>主题<span lang="EN-US">:</span></b><span
                lang="EN-US"> Re: Revised charter proposal:
                charter-ietf-ace-00-02<o:p></o:p></span></span></p>
        </div>
        <p class="MsoNormal"><span lang="EN-US"><o:p> </o:p></span></p>
        <div>
          <p class="MsoNormal"><span lang="EN-US">Hi Kepeng,<o:p></o:p></span></p>
          <div>
            <p class="MsoNormal"><span lang="EN-US"><o:p> </o:p></span></p>
          </div>
          <div>
            <p class="MsoNormal"><span lang="EN-US">If we are at a point
                where I can update the charter, seems that way, please
                send the latest version that has been agreed upon and
                I'll take care of the update.<o:p></o:p></span></p>
          </div>
          <div>
            <p class="MsoNormal"><span lang="EN-US"><o:p> </o:p></span></p>
          </div>
          <div>
            <p class="MsoNormal"><span lang="EN-US">Thanks.<o:p></o:p></span></p>
          </div>
        </div>
        <div>
          <p class="MsoNormal" style="margin-bottom:12.0pt"><span
              lang="EN-US"><o:p> </o:p></span></p>
          <div>
            <p class="MsoNormal"><span lang="EN-US">On Tue, Jun 3, 2014
                at 6:31 AM, Likepeng &lt;<a moz-do-not-send="true"
                  href="mailto:likepeng@huawei.com" target="_blank">likepeng@huawei.com</a>&gt;
                wrote:<o:p></o:p></span></p>
            <div>
              <div>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US">Hi Benoit,</span><span lang="EN-US"><o:p></o:p></span></p>
                <div>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US"> </span><span lang="EN-US"><o:p></o:p></span></p>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US">&gt;Not only would I keep "AAA",
                    </span><span lang="EN-US"><o:p></o:p></span></p>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US"> </span><span lang="EN-US"><o:p></o:p></span></p>
                </div>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US">OK.</span><span lang="EN-US"><o:p></o:p></span></p>
                <div>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US"> </span><span lang="EN-US"><o:p></o:p></span></p>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US">&gt;but I would propose</span><span
                      lang="EN-US"><o:p></o:p></span></p>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US"> </span><span lang="EN-US"><o:p></o:p></span></p>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US">&gt;OLD:</span><span lang="EN-US"><o:p></o:p></span></p>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US">&gt;Existing authentication and
                      authorization protocols will be used where</span><span
                      lang="EN-US"><o:p></o:p></span></p>
                </div>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US">applicable to build the
                    constrained-environment solution.</span><span
                    lang="EN-US"><o:p></o:p></span></p>
                <div>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US"> </span><span lang="EN-US"><o:p></o:p></span></p>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US">&gt;NEW:</span><span lang="EN-US"><o:p></o:p></span></p>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                      lang="EN-US">Existing authentication and
                      authorization protocols will be evaluated and
                      re-used where</span><span lang="EN-US"><o:p></o:p></span></p>
                </div>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US">applicable to build the
                    constrained-environment solution.</span><span
                    lang="EN-US"><o:p></o:p></span></p>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US"> </span><span lang="EN-US"><o:p></o:p></span></p>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US">OK, fine with me.</span><span
                    lang="EN-US"><o:p></o:p></span></p>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US"> </span><span lang="EN-US"><o:p></o:p></span></p>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US">Thanks for the feedback.
                  </span><span lang="EN-US"><o:p></o:p></span></p>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US"> </span><span lang="EN-US"><o:p></o:p></span></p>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US">Kind Regards</span><span lang="EN-US"><o:p></o:p></span></p>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US">Kepeng</span><span lang="EN-US"><o:p></o:p></span></p>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D"
                    lang="EN-US"> </span><span lang="EN-US"><o:p></o:p></span></p>
                <div>
                  <div style="border:none;border-top:solid #B5C4DF
                    1.0pt;padding:3.0pt 0cm 0cm 0cm">
                    <p class="MsoNormal"
                      style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><b><span
                          style="font-size:10.0pt">发件人<span lang="EN-US">:</span></span></b><span
                        style="font-size:10.0pt" lang="EN-US"> Benoit
                        Claise [mailto:<a moz-do-not-send="true"
                          href="mailto:bclaise@cisco.com"
                          target="_blank">bclaise@cisco.com</a>]
                        <br>
                      </span><b><span style="font-size:10.0pt">发送时间<span
                            lang="EN-US">:</span></span></b><span
                        style="font-size:10.0pt" lang="EN-US"> 2014</span><span
                        style="font-size:10.0pt">年<span lang="EN-US">6</span>月<span
                          lang="EN-US">3</span>日<span lang="EN-US">
                          12:16</span></span><span lang="EN-US"><o:p></o:p></span></p>
                    <div>
                      <p class="MsoNormal"><b>收件人<span lang="EN-US">:</span></b><span
                          lang="EN-US"> Likepeng; Kathleen Moriarty;
                          <a moz-do-not-send="true"
                            href="mailto:adrian@olddog.co.uk"
                            target="_blank">adrian@olddog.co.uk</a><o:p></o:p></span></p>
                    </div>
                    <p class="MsoNormal"><b>抄送<span lang="EN-US">:</span></b><span
                        lang="EN-US"> <a moz-do-not-send="true"
                          href="mailto:aaa-doctors@ietf.org"
                          target="_blank">
                          aaa-doctors@ietf.org</a>; The IESG; <a
                          moz-do-not-send="true"
                          href="mailto:ace@ietf.org" target="_blank">
                          ace@ietf.org</a><o:p></o:p></span></p>
                    <div>
                      <p class="MsoNormal"><b>主题<span lang="EN-US">:</span></b><span
                          lang="EN-US"> Re: Revised charter proposal:
                          charter-ietf-ace-00-02<o:p></o:p></span></p>
                    </div>
                  </div>
                </div>
                <p class="MsoNormal"
                  style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
                    lang="EN-US"> <o:p></o:p></span></p>
                <div>
                  <p class="MsoNormal"
                    style="mso-margin-top-alt:auto;margin-bottom:12.0pt"><span
                      lang="EN-US">Hi,
                      <o:p></o:p></span></p>
                </div>
                <div>
                  <div>
                    <blockquote
                      style="margin-top:5.0pt;margin-bottom:5.0pt">
                      <pre><span lang="EN-US">Hello all,<o:p></o:p></span></pre>
                      <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                      <pre><span lang="EN-US">Based on recent discussions, I made a revised charter proposal, as included in this email, not on the webpage yet. <o:p></o:p></span></pre>
                      <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                      <pre><span lang="EN-US">Please take a look and let us know if you have any further comments.<o:p></o:p></span></pre>
                      <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                      <pre><span lang="EN-US">@Adrian and @Benoit, please check if the proposed texts can resolve your comments.<o:p></o:p></span></pre>
                      <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                      <pre><span lang="EN-US">Thanks,<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">Kind Regards<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">Kepeng<o:p></o:p></span></pre>
                      <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                      <pre><span lang="EN-US">-------------------------------------------------------------------------------------------------------------------------------------------------------------<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">Compared with charter-ietf-ace-00-01 on the webpage, the changes are:<o:p></o:p></span></pre>
                      <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                      <pre><span lang="EN-US">(1)      Add one clarification sentence about REST architecture:<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">OLD<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">The IETF has recently developed protocols for use in constrained<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">environments, where network nodes are limited in CPU, memory and power. <o:p></o:p></span></pre>
                      <pre><span lang="EN-US">REST architecture is widely used for such constrained environments.<o:p></o:p></span></pre>
                      <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                      <pre><span lang="EN-US">NEW<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">The IETF has recently developed protocols for use in constrained<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">environments, where network nodes are limited in CPU, memory and power.<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">REST architecture is widely used for such constrained environments.<o:p></o:p></span></pre>
                      <pre><span lang="EN-US">END<o:p></o:p></span></pre>
                    </blockquote>
                    <p class="MsoNormal"
                      style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
                        lang="EN-US">Considering that OLD is<o:p></o:p></span></p>
                    <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">OLD</span><span lang="EN-US"><o:p></o:p></span></pre>
                    <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">The IETF has recently developed protocols for use in constrained</span><span lang="EN-US"><o:p></o:p></span></pre>
                    <pre><span style="font-size:10.5pt;font-family:&quot;Calibri&quot;,&quot;sans-serif&quot;;color:#1F497D" lang="EN-US">environments, where network nodes are limited in CPU, memory and power. </span><span lang="EN-US"><o:p></o:p></span></pre>
                    <p class="MsoNormal"
                      style="mso-margin-top-alt:auto;margin-bottom:12.0pt"><span
                        lang="EN-US">... fine with me<o:p></o:p></span></p>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">(2)     Remove </span>“<span lang="EN-US">AAA protocol</span>”<span lang="EN-US"> from the charter:<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">OLD<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">The IETF has a long history in developing three-party authentication and<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">authorization protocols for distributed environments. Examples include<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Kerberos, the Public Key Infrastructure (PKI), the Authentication,<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Authorization and Accounting (AAA) infrastructure, and the Web<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Authorization Protocol (OAuth).<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">NEW<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">The IETF has a long history in developing three-party authentication and<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">authorization protocols for distributed environments. Examples include<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Kerberos, the Public Key Infrastructure (PKI), and the Web Authorization Protocol (OAuth).<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">END<o:p></o:p></span></pre>
                    <p class="MsoNormal"
                      style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
                        lang="EN-US">We have AAA-doctors telling: maybe
                        RADIUS is applicable?<br>
                        Personally, I don't know and it doesn't matter
                        at this point.<br>
                        We received feedback such as:<o:p></o:p></span></p>
                    <p class="MsoNormal"
                      style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
                        lang="EN-US">Let's be clear here: It was never
                        said (in the charter or anywhere else in the
                        group to my knowledge) that RADIUS (or indeed
                        any other AAA protocol) would not run on
                        constrained devices (RFC 7228). The charter
                        simply said the protocols were not optimised for
                        constrained devices. That does not preclude
                        considering any protocol for suitability for
                        constrained devices either a) as is, b) in a
                        restricted way or c) in an adapted way.<br>
                        <br>
                        So, at this stage, I don't think any protocols
                        should be excluded from consideration and should
                        certainly not be eliminated on a hunch that they
                        might be "too big". Let's do the assessment
                        properly at the appropriate time. As a reminder
                        - the focus now is to complete the charter.<o:p></o:p></span></p>
                    <p class="MsoNormal"
                      style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
                        lang="EN-US">Or<o:p></o:p></span></p>
                    <pre><span lang="EN-US">&gt;&gt;The Charter makes a number of assertions that are provably false, such as that AAA protocols are inappropriate for constrained environments.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">In fact, the charter does not say that. But to avoid confusion, let's remove AAA protocol from the charter.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">In the charter, we mentioned that we want to reuse existing authentication and authorization protocols where applicable to build the constrained-environment solution.<o:p></o:p></span></pre>
                    <p class="MsoNormal"
                      style="mso-margin-top-alt:auto;margin-bottom:12.0pt"><span
                        lang="EN-US">... which I read as: let's consider
                        the AAA protocols, and evaluate if they would
                        work in constrained devices.<br>
                        I don't understand the logic: why do you want to
                        remove AAA from the charter?<br>
                        Not only would I keep "AAA", but I would propose<br>
                        <br>
                        OLD:<br>
                        Existing authentication and authorization
                        protocols will be used where<br>
                        applicable to build the constrained-environment
                        solution<br>
                        <br>
                        NEW:<br>
                        Existing authentication and authorization
                        protocols will be evaluated and re-used where<br>
                        applicable to build the constrained-environment
                        solution<br>
                        <br>
                        Regards, Benoit<o:p></o:p></span></p>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">(3) Clarify the scope:<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">OLD:<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Note that the initial focus is on CoAP and HTTP with DTLS and TLS.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Other application protocols and protocols at other layers in the stack are out of scope.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">NEW<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Note that the initial focus is on CoAP and HTTP with DTLS and TLS.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">The group is scoped to work only on the web protocols and data carried within them.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">END<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">(4)     Update milestones for the use case &amp; requirements document:<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">OLD:<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Jul 2015 Submit </span>“<span lang="EN-US">Use cases and Requirements</span>”<span lang="EN-US"> document to IESG for publication as informational RFC.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">NEW<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Dec 2014 Optionally, submit "Use cases and Requirements" document to the IESG for publication as an Informational RFC.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">END<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">----------------------------------------------------------------------------------------------------------------------------------------------------------------------------<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Charter charter-ietf-ace-00-02<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Authentication and Authorization for Constrained<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Environment (ACE)<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">The IETF has recently developed protocols for use in constrained<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">environments, where network nodes are limited in CPU, memory and power. <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">REST architecture is widely used for such constrained environments.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">It has been observed that Internet protocols can be applied to these<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">constrained environments, often only requiring minor tweaking and<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">profiling. In other cases, new protocols have been defined to address<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">the specific requirements of constrained environments. An example of<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">such a protocol is the Constrained Application Protocol (CoAP).<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">As in other environments, authentication and authorization questions<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">also arise in constrained environments. For example, a door lock has to<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">authorize the person seeking access using a "digital key". Where is the<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">authorization policy stored? How does the digital key communicate with<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">the lock? Does the lock interact with an authorization server to obtain<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">authorization information? How can access be temporarily granted to<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">other persons? How can access be revoked? These types of questions have<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">been answered by existing protocols for use cases outside constrained<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">environments, however in constrained environments, additional and<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">different requirements pose challenges for the use of various security<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">protocols. In particular, the need arises for a dynamic and fine grained<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">access control mechanism, where clients and/or resource servers are<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">constrained.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">The IETF has a long history in developing three-party authentication and<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">authorization protocols for distributed environments. Examples include<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Kerberos, the Public Key Infrastructure (PKI), and the Web<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Authorization Protocol (OAuth). All these protocols enjoy widespread<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">deployment on the Internet. Although they all aim to solve a similar<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">goal, at an abstract level, they offer quite different functions and<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">utilize different message exchanges. These differences result from the<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">main deployment use cases they were designed for respectively.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Requirements derived from use cases indicate the suitability of existing<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">work as a solution for constrained environments. These protocols,<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">however, were not optimized for constrained environments. Additional<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">requirements that need to be taken into account are the lack of a<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">suitable user-interface and the inability of embedded devices to contact<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">an authorization server in real-time with every resource access request<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">due to intermittent connectivity, etc.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">This working group therefore aims to produce a standardized solution for<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">authentication and authorization to enable authorized access (GET, PUT, POST, <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">DELETE) to resources identified by a URI and hosted on a resource<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">server in constrained environments. As a starting point, the working<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">group will assume that access to resources at a resource server by a<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">client device takes place using CoAP and is protected by DTLS. Both<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">resource server and client may be constrained. This access will be<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">mediated by an authorization server, which is not considered to be<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">constrained.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Existing authentication and authorization protocols will be used where<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">applicable to build the constrained-environment solution. This requires<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">relevant specifications to be reviewed for suitability, selecting a<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">subset of them and restricting the options within each of the<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">specifications. Some functionality, however, may not be available in<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">existing protocols, in which case the solution may also involve new<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">protocol work. Leveraging existing work means the working group benefits<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">from available security analysis, implementation, and deployment<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">experience. Moreover, a standardized solution for federated<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">authentication and authorization will help to stimulate the deployment<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">of constrained devices that provide increased security.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Once progress in identifying suitable candidate solutions has been made,<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">the working group will verify whether the same mechanisms are also<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">applicable beyond the use of CoAP and DTLS, which are the two main<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">protocols the group will focus on for access to resources. In<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">particular, the ability to use the developed solution over HTTP and TLS<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">will be investigated. Note that the initial focus is on CoAP and HTTP with DTLS and TLS.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">The group is scoped to work only on the web protocols and data carried within them.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Furthermore, to guarantee smooth transition, the<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">integration with existing deployments will be studied, particularly<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">concerning the use of protocol translation proxies.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">This work does not make the assumption that the party offering<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">application layer services is always the same party offering network<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">access services.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">The working group has the following tasks:<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">1) Produce use cases and requirements<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">2) Identify authentication and authorization mechanisms suitable for<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">resource access in constrained environments.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Milestones:<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Jul 2014 Submit "Use cases and Requirements" as a WG item.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Dec 2014 Optionally, submit "Use cases and Requirements" document <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">to the IESG for publication as an Informational RFC.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Jul 2016 Submit "Authentication and Authorization Solution"<o:p></o:p></span></pre>
                    <pre><span lang="EN-US">specification to the IESG for publication as a Proposed Standard.<o:p></o:p></span></pre>
                    <pre><span lang="EN-US"> <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">Proposed Milestones <o:p></o:p></span></pre>
                    <pre><span lang="EN-US">No milestones for charter found.<o:p></o:p></span></pre>
                    <p class="MsoNormal"
                      style="mso-margin-top-alt:auto;mso-margin-bottom-alt:auto"><span
                        lang="EN-US"> <o:p></o:p></span></p>
                  </div>
                </div>
              </div>
            </div>
          </div>
          <p class="MsoNormal"><span lang="EN-US"><br>
              <br clear="all">
              <o:p></o:p></span></p>
          <div>
            <p class="MsoNormal"><span lang="EN-US"><o:p> </o:p></span></p>
          </div>
          <p class="MsoNormal"><span lang="EN-US">-- <o:p></o:p></span></p>
          <div>
            <p class="MsoNormal"><span lang="EN-US"><o:p> </o:p></span></p>
            <div>
              <p class="MsoNormal"><span lang="EN-US">Best regards,<o:p></o:p></span></p>
            </div>
            <div>
              <p class="MsoNormal"><span lang="EN-US">Kathleen<o:p></o:p></span></p>
            </div>
          </div>
        </div>
      </div>
    </blockquote>
    <br>
  </body>
</html>

--------------090306030109020904050003--


From nobody Wed Jun  4 00:07:01 2014
Return-Path: <goran.selander@ericsson.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 238E41A009E; Wed,  4 Jun 2014 00:06:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.9
X-Spam-Level: 
X-Spam-Status: No, score=-3.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, MIME_8BIT_HEADER=0.3, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wvHQMmNNW5MG; Wed,  4 Jun 2014 00:06:41 -0700 (PDT)
Received: from sesbmg22.ericsson.net (sesbmg22.ericsson.net [193.180.251.48]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C1B6A1A00AD; Wed,  4 Jun 2014 00:06:39 -0700 (PDT)
X-AuditID: c1b4fb30-f79a56d000006536-c6-538ec5787e9f
Received: from ESESSHC019.ericsson.se (Unknown_Domain [153.88.253.124]) by sesbmg22.ericsson.net (Symantec Mail Security) with SMTP id 06.8B.25910.875CE835; Wed,  4 Jun 2014 09:06:32 +0200 (CEST)
Received: from ESESSMB303.ericsson.se ([169.254.3.215]) by ESESSHC019.ericsson.se ([153.88.183.75]) with mapi id 14.03.0174.001; Wed, 4 Jun 2014 09:06:31 +0200
From: =?utf-8?B?R8O2cmFuIFNlbGFuZGVy?= <goran.selander@ericsson.com>
To: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>, Likepeng <likepeng@huawei.com>
Thread-Topic: [Ace] Revised charter proposal: charter-ietf-ace-00-02
Thread-Index: AQHPfzfhgp+NyfDDS0ih1oH/hpFnbptfU1SAgABhLYCAANQOgA==
Date: Wed, 4 Jun 2014 07:06:31 +0000
Message-ID: <CFB43838.132A5%goran.selander@ericsson.com>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com> <CAHbuEH6U7811XFdipULNwF3_2iocq9dpKje+G4kkU_bpnXHFKw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B38978@SZXEMA501-MBS.china.huawei.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com> <538DA047.7080902@cisco.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258153F43@SZXEMA501-MBS.china.huawei.com> <CAHbuEH50vOKf=nHad+9y57qiqdzu=7k3WO1Y8fuuo16crCx5pw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F25815405D@SZXEMA501-MBS.china.huawei.com> <CAHbuEH6tQtg-=RGMZ-t0qb1Ye8eaDSHn+Lb+2j_S61euZdqVpw@mail.gmail.com> <CAHbuEH7OZ6oEY6gE2S1sFtnR9=vc4UyBWJ+dQYm2FH0EMBkZaA@mail.gmail.com>
In-Reply-To: <CAHbuEH7OZ6oEY6gE2S1sFtnR9=vc4UyBWJ+dQYm2FH0EMBkZaA@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
user-agent: Microsoft-MacOutlook/14.4.1.140326
x-originating-ip: [153.88.183.154]
Content-Type: multipart/alternative; boundary="_000_CFB43838132A5goranselanderericssoncom_"
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFjrKIsWRmVeSWpSXmKPExsUyM+JvjW7F0b5gg+UPZS1WHPrCZvH9Ww+z xY+eG8wWRx9LWMz4M5HZomFnvsWew03MDuweU35vZPXYOesuu0fLkbesHkuW/GTyWLF5JWMA axSXTUpqTmZZapG+XQJXRs/uC2wFi7ewV9xtc25gfDKbvYuRk0NCwETi6sQ5ULaYxIV769m6 GLk4hASOMkpMmzwbylnMKLF272xWkCo2AReJBw2PmEBsEYEoiY4Hm1lBipgF9jFKbF0zHSwh LOAsceTDInaIIheJPzt2QzU4Saz6P4ERxGYRUJGYs+YmM4jNK2AhsWnhEhaIbd9ZJVbumAs0 lYODUyBQ4uIfZ5AaRqDzvp9aAzaHWUBc4taT+UwQZwtILNlznhnCFpV4+fgf2KGiAnoS747D 1ChJLLr9Gao3VuJi+3MWiL2CEidnPmGZwCg2C8nYWUjKZiEpmwV0EbOApsT6XfoQJYoSU7of skPYGhKtc+ZC2dYSDfuOsiGrWcDIsYpRtDi1OCk33chIL7UoM7m4OD9PLy+1ZBMjMN4Pbvlt sIPx5XPHQ4wCHIxKPLwKvH3BQqyJZcWVuYcYpTlYlMR5L2pUBwsJpCeWpGanphakFsUXleak Fh9iZOLglGpg5Nwp9+my5MaXKzNTyxWsE7+eiD3ytiVWOsYiZsOmO+FRP81OlTrXf7/40VWF 4Uz+Ek+B/4EPua3YgiKXt5S8SHy3+tuygPRrXeyfDtlf+lXdfKvWMWvH8UzOkknCu+el6y6o W/33rF0379fCQ4pTrvk0XdYxaBD5s8Py3PnZkxYUXhY4VHD4gRJLcUaioRZzUXEiAPA9zWzY AgAA
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/8s8MILyskoHPxoViseGmM1LPSB8
Cc: "adrian@olddog.co.uk" <adrian@olddog.co.uk>, "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, The IESG <iesg@ietf.org>, "ace@ietf.org" <ace@ietf.org>
Subject: Re: [AAA-DOCTORS] [Ace] Revised charter proposal: charter-ietf-ace-00-02
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Jun 2014 07:06:56 -0000

--_000_CFB43838132A5goranselanderericssoncom_
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
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--_000_CFB43838132A5goranselanderericssoncom_
Content-Type: text/html; charset="utf-8"
Content-ID: <96707C59C3B25541B15DCCD962072D6D@ericsson.com>
Content-Transfer-Encoding: base64
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--_000_CFB43838132A5goranselanderericssoncom_--


From nobody Wed Jun  4 07:55:13 2014
Return-Path: <likepeng@huawei.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 695FF1A036D; Wed,  4 Jun 2014 07:55:08 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.851
X-Spam-Level: 
X-Spam-Status: No, score=-4.851 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JYe-NY-fr3gc; Wed,  4 Jun 2014 07:55:04 -0700 (PDT)
Received: from lhrrgout.huawei.com (lhrrgout.huawei.com [194.213.3.17]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C12D61A0367; Wed,  4 Jun 2014 07:55:03 -0700 (PDT)
Received: from 172.18.7.190 (EHLO lhreml204-edg.china.huawei.com) ([172.18.7.190]) by lhrrg02-dlp.huawei.com (MOS 4.3.7-GA FastPath queued) with ESMTP id BEW27597; Wed, 04 Jun 2014 14:54:56 +0000 (GMT)
Received: from LHREML402-HUB.china.huawei.com (10.201.5.241) by lhreml204-edg.china.huawei.com (172.18.7.223) with Microsoft SMTP Server (TLS) id 14.3.158.1; Wed, 4 Jun 2014 15:54:02 +0100
Received: from SZXEMA410-HUB.china.huawei.com (10.82.72.42) by lhreml402-hub.china.huawei.com (10.201.5.241) with Microsoft SMTP Server (TLS) id 14.3.158.1; Wed, 4 Jun 2014 15:54:49 +0100
Received: from SZXEMA501-MBS.china.huawei.com ([169.254.2.214]) by SZXEMA410-HUB.china.huawei.com ([10.82.72.42]) with mapi id 14.03.0158.001; Wed, 4 Jun 2014 22:54:43 +0800
From: Likepeng <likepeng@huawei.com>
To: Benoit Claise <bclaise@cisco.com>, Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
Thread-Topic: [Ace] Revised charter proposal: charter-ietf-ace-00-02
Thread-Index: AQHPeLrW9teE9ryEO0GmvALEdUzf8JtesfKAgACKjwD//5riAIAAjBcwgACnQACAAQ2jIA==
Date: Wed, 4 Jun 2014 14:54:42 +0000
Message-ID: <34966E97BE8AD64EAE9D3D6E4DEE36F258154550@SZXEMA501-MBS.china.huawei.com>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com> <CAHbuEH6U7811XFdipULNwF3_2iocq9dpKje+G4kkU_bpnXHFKw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B38978@SZXEMA501-MBS.china.huawei.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com> <538DA047.7080902@cisco.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258153F43@SZXEMA501-MBS.china.huawei.com> <CAHbuEH50vOKf=nHad+9y57qiqdzu=7k3WO1Y8fuuo16crCx5pw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F25815405D@SZXEMA501-MBS.china.huawei.com> <538EC180.6000005@cisco.com>
In-Reply-To: <538EC180.6000005@cisco.com>
Accept-Language: zh-CN, en-US
Content-Language: zh-CN
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
x-originating-ip: [10.200.65.116]
Content-Type: multipart/alternative; boundary="_000_34966E97BE8AD64EAE9D3D6E4DEE36F258154550SZXEMA501MBSchi_"
MIME-Version: 1.0
X-CFilter-Loop: Reflected
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/0n_9f_yZN2_N-k8Hr1FNCNy1nhw
Cc: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, "adrian@olddog.co.uk" <adrian@olddog.co.uk>, The IESG <iesg@ietf.org>, "ace@ietf.org" <ace@ietf.org>
Subject: Re: [AAA-DOCTORS] [Ace] Revised charter proposal: charter-ietf-ace-00-02
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Jun 2014 14:55:08 -0000

--_000_34966E97BE8AD64EAE9D3D6E4DEE36F258154550SZXEMA501MBSchi_
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
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=

--_000_34966E97BE8AD64EAE9D3D6E4DEE36F258154550SZXEMA501MBSchi_
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: base64
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--_000_34966E97BE8AD64EAE9D3D6E4DEE36F258154550SZXEMA501MBSchi_--


From nobody Wed Jun  4 09:38:59 2014
Return-Path: <bclaise@cisco.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1E89A1A02F3; Wed,  4 Jun 2014 09:38:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.851
X-Spam-Level: 
X-Spam-Status: No, score=-9.851 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, MIME_8BIT_HEADER=0.3, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id n-1l8IAK6ynH; Wed,  4 Jun 2014 09:38:48 -0700 (PDT)
Received: from bgl-iport-4.cisco.com (bgl-iport-4.cisco.com [72.163.197.28]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6DDEE1A0311; Wed,  4 Jun 2014 09:38:42 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=195208; q=dns/txt; s=iport; t=1401899917; x=1403109517; h=message-id:date:from:mime-version:to:cc:subject: references:in-reply-to; bh=ccICiiYMLZtYgJrtHir5yYuIwj6UA+BPNuRvaUprPQQ=; b=ePum645mAmp4SZrqfNqG1/nJTvsJZ2V2dYRB1WXI1j8FNmkzjvDoMVvY qF4WNdHgBzwZ745eLPW335IZCRgLaQFaEn+qEpR0SsEx1+Dkwm6o2MJ9y vJZ3RXQRyV8vWGIFYNhA5eEoT2ETnDeVfGW7LaiXOYvuflLzvbFQg1N5Z U=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: Aq0EAM5Kj1NIo8UY/2dsb2JhbABPCoJCgReDRIVbui0BgSJ0giUBAQEEGgEIRA0EARAJAhEBAgECAQkMCgEBBgMCAgkDAgECAQ8lAwYIBgEMAQUCAQEXiBMDEQ2PbJwgn1wNhggTBIkzgwmBNAYEBwECNgcRBgEGBIJrgUsBA4VWkkOBeoZwhlKFd4M6Oy+BAQkXAgI
X-IronPort-AV: E=Sophos; i="4.98,974,1392163200"; d="scan'208,217"; a="11013958"
Received: from vla196-nat.cisco.com (HELO bgl-core-4.cisco.com) ([72.163.197.24]) by bgl-iport-4.cisco.com with ESMTP; 04 Jun 2014 16:38:32 +0000
Received: from [10.60.67.91] (ams-bclaise-89110.cisco.com [10.60.67.91]) by bgl-core-4.cisco.com (8.14.5/8.14.5) with ESMTP id s54GcRmr003717; Wed, 4 Jun 2014 16:38:28 GMT
Message-ID: <538F4B83.1090404@cisco.com>
Date: Wed, 04 Jun 2014 18:38:27 +0200
From: Benoit Claise <bclaise@cisco.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.5.0
MIME-Version: 1.0
To: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>, =?UTF-8?B?R8O2cg==?= =?UTF-8?B?YW4gU2VsYW5kZXI=?= <goran.selander@ericsson.com>
References: <20140514221215.8150.56543.idtracker@ietfa.amsl.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B2A345@SZXEMA501-MBS.china.huawei.com> <CAHbuEH6U7811XFdipULNwF3_2iocq9dpKje+G4kkU_bpnXHFKw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F252B38978@SZXEMA501-MBS.china.huawei.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258140E59@SZXEMA501-MBX.china.huawei.com> <538DA047.7080902@cisco.com> <34966E97BE8AD64EAE9D3D6E4DEE36F258153F43@SZXEMA501-MBS.china.huawei.com> <CAHbuEH50vOKf=nHad+9y57qiqdzu=7k3WO1Y8fuuo16crCx5pw@mail.gmail.com> <34966E97BE8AD64EAE9D3D6E4DEE36F25815405D@SZXEMA501-MBS.china.huawei.com> <CAHbuEH6tQtg-=RGMZ-t0qb1Ye8eaDSHn+Lb+2j_S61euZdqVpw@mail.gmail.com> <CAHbuEH7OZ6oEY6gE2S1sFtnR9=vc4UyBWJ+dQYm2FH0EMBkZaA@mail.gmail.com> <CFB43838.132A5%goran.selander@ericsson.com> <CAHbuEH7KuvwchiX4V7XWA7RSet=_qp9krVP0gEmjHVdjsZPgoQ@mail.gmail.com> <CAHbuEH6HFV85wQMH5yUUxeK-Fdhc1L+CgVx2iXJ79J_i8dw-1A@mail.gmail.com>
In-Reply-To: <CAHbuEH6HFV85wQMH5yUUxeK-Fdhc1L+CgVx2iXJ79J_i8dw-1A@mail.gmail.com>
Content-Type: multipart/alternative; boundary="------------070402070706030303040206"
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/0EmLWnHw1tZpC_x8Gg08xUpM-_Y
Cc: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, "adrian@olddog.co.uk" <adrian@olddog.co.uk>, The IESG <iesg@ietf.org>, Likepeng <likepeng@huawei.com>, "ace@ietf.org" <ace@ietf.org>
Subject: Re: [AAA-DOCTORS] [Ace] Revised charter proposal: charter-ietf-ace-00-02
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Jun 2014 16:38:55 -0000

This is a multi-part message in MIME format.
--------------070402070706030303040206
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 8bit

Hi Kathleen,

Fine with me

Regards, B.
> Benoit had one other change mentioned in a previous email that was 
> left out. He agrees that it is editorial.  I'm fine with adding it if 
> that is okay, but would prefer to leave "used" in instead of "re-used" 
> as it isn't needed (IMO).
>
> Is the last option agreeable and would it clear your concerns, Benoit?
>
>     OLD:
>     Existing authentication and authorization protocols will be used where
>     applicable to build the constrained-environment solution
>
>     NEW:
>     Existing authentication and authorization protocols will be
>     evaluated and re-used where
>     applicable to build the constrained-environment solution
>
>     NEWER:
>     Existing authentication and authorization protocols will be
>     evaluated and used where
>     applicable to build the constrained-environment solution
>
>
>
> On Wed, Jun 4, 2014 at 10:05 AM, Kathleen Moriarty 
> <kathleen.moriarty.ietf@gmail.com 
> <mailto:kathleen.moriarty.ietf@gmail.com>> wrote:
>
>     Thank you, Göran.
>
>     It must have been a cut-n-paste error.  The first sentence for the
>     'replace' did not match the original or the new either.  If the
>     next version isn't quite right, pasting in a new full version may
>     be better.  I'll look back through Benoit's comment now as well.
>
>
>     On Wed, Jun 4, 2014 at 3:06 AM, Göran Selander
>     <goran.selander@ericsson.com <mailto:goran.selander@ericsson.com>>
>     wrote:
>
>         Hi Kathleen,
>
>         In change #3 of the summary Kepeng made below I find the
>         sentence: >>Other security protocols may be considered as long
>         as the primary focus is maintained. >> This sentence seems to
>         be missing from charter-ietf-ace-00-04.
>
>         Regards,
>         Göran
>
>
>         From: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com
>         <mailto:kathleen.moriarty.ietf@gmail.com>>
>         Date: Tuesday 3 June 2014 22:27
>         To: Likepeng <likepeng@huawei.com <mailto:likepeng@huawei.com>>
>         Cc: Benoit Claise <bclaise@cisco.com
>         <mailto:bclaise@cisco.com>>, "adrian@olddog.co.uk
>         <mailto:adrian@olddog.co.uk>" <adrian@olddog.co.uk
>         <mailto:adrian@olddog.co.uk>>, "ace@ietf.org
>         <mailto:ace@ietf.org>" <ace@ietf.org <mailto:ace@ietf.org>>,
>         The IESG <iesg@ietf.org <mailto:iesg@ietf.org>>,
>         "aaa-doctors@ietf.org <mailto:aaa-doctors@ietf.org>"
>         <aaa-doctors@ietf.org <mailto:aaa-doctors@ietf.org>>
>         Subject: Re: [Ace] Revised charter proposal:
>         charter-ietf-ace-00-02
>
>             The charter text has been updated,
>             https://datatracker.ietf.org/doc/charter-ietf-ace/
>
>             Thank you all for your input and assistance.  If this is
>             good, we'll move it forward for IETF review.
>
>
>
>             On Tue, Jun 3, 2014 at 10:39 AM, Kathleen Moriarty
>             <kathleen.moriarty.ietf@gmail.com
>             <mailto:kathleen.moriarty.ietf@gmail.com>> wrote:
>
>                 I believe there is agreement on the proposed changes.
>                  I'll make the updates later in the day (it's about
>                 11:30 my time, maybe at 4) in case anyone wants to
>                 chime in.  If we are all in agreement, I'll have it
>                 sent for IETF review at that point.
>
>                 Thank you!
>
>
>                 On Tue, Jun 3, 2014 at 10:26 AM, Likepeng
>                 <likepeng@huawei.com <mailto:likepeng@huawei.com>> wrote:
>
>                     Hi Kathleen and all,
>
>                     This is what I have now:
>
>                     Change #1: (Proposed by Kepeng, confirmed by Benoit)
>
>                     OLD
>
>                     The IETF has recently developed protocols for use in constrained
>
>                     environments, where network nodes are limited in CPU, memory and power.
>
>                       
>
>                     NEW
>
>                     The IETF has recently developed protocols for use in constrained
>
>                     environments, where network nodes are limited in CPU, memory and power.
>
>                     REST architecture is widely used for such constrained environments.
>
>                     END
>
>                       
>
>                     Change #2: (Proposal from Rene, supported by Stefanie)
>
>                     OLD:
>
>                     Requirements derived from use cases indicate the suitability of existing
>
>                     work as a solution for constrained environments
>
>                       
>
>                     NEW:
>
>                     Requirements derived from use cases may indicate that existing work is
>
>                       useful as basis for as a solution for constrained environments
>
>                       
>
>                     Change #3: (Proposal from Jari, supported by Barry, Robert and Behcet)
>
>                     OLD:
>
>                     Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
>                     Other security protocols may be considered as long as the primary focus is maintained.
>
>                     Other application protocols and protocols at other layers in the stack are out of scope.
>
>                       
>
>                     NEW
>
>                     Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
>                     Other security protocols may be considered as long as the primary focus is maintained.
>
>                     The group is scoped to work only on the web protocols and data carried within them.
>
>                     END
>
>                       
>
>                     Change 4: (Proposal from Jari, revised by Rene, supported by Stefanie)
>
>                     OLD:
>
>                     Jul 2014 Submit "Use cases and Requirements"  as a WG item.
>
>                     Jul 2015 Submit “Use cases and Requirements” document to IESG for publication as informational RFC.
>
>                       
>
>                     NEW
>
>                     Dec 2014 Submit "Use cases and Requirements"  as a WG item.
>
>                     Apr 2015 Optionally, submit "Use cases and Requirements" document to the IESG for
>
>                     publication as an Informational RFC.
>
>                     END
>
>                     I think we covered all of the IESG review comments.
>
>                     If there is any open issue, please let us know.
>
>                     Thanks,
>
>                     Kind Regards
>
>                     Kepeng
>
>                     --------------------------------------------------------------------------------------------------------------------------------------------------------
>
>                     Charter charter-ietf-ace-00-02
>
>                     Authentication and Authorization for Constrained
>
>                     Environment (ACE)
>
>                     The IETF has recently developed protocols for use
>                     in constrained
>
>                     environments, where network nodes are limited in
>                     CPU, memory and power.
>
>                     REST architecture is widely used for such
>                     constrained environments.
>
>                     It has been observed that Internet protocols can
>                     be applied to these
>
>                     constrained environments, often only requiring
>                     minor tweaking and
>
>                     profiling. In other cases, new protocols have been
>                     defined to address
>
>                     the specific requirements of constrained
>                     environments. An example of
>
>                     such a protocol is the Constrained Application
>                     Protocol (CoAP).
>
>                     As in other environments, authentication and
>                     authorization questions
>
>                     also arise in constrained environments. For
>                     example, a door lock has to
>
>                     authorize the person seeking access using a
>                     "digital key". Where is the
>
>                     authorization policy stored? How does the digital
>                     key communicate with
>
>                     the lock? Does the lock interact with an
>                     authorization server to obtain
>
>                     authorization information? How can access be
>                     temporarily granted to
>
>                     other persons? How can access be revoked? These
>                     types of questions have
>
>                     been answered by existing protocols for use cases
>                     outside constrained
>
>                     environments, however in constrained environments,
>                     additional and
>
>                     different requirements pose challenges for the use
>                     of various security
>
>                     protocols. In particular, the need arises for a
>                     dynamic and fine grained
>
>                     access control mechanism, where clients and/or
>                     resource servers are
>
>                     constrained.
>
>                     The IETF has a long history in developing
>                     three-party authentication and
>
>                     authorization protocols for distributed
>                     environments. Examples include
>
>                     Kerberos, the Public Key Infrastructure (PKI), the
>                     Authentication,
>
>                     Authorization and Accounting (AAA)
>                     infrastructure,and the Web
>
>                     Authorization Protocol (OAuth). All these
>                     protocols enjoy widespread
>
>                     deployment on the Internet. Although they all aim
>                     to solve a similar
>
>                     goal, at an abstract level, they offer quite
>                     different functions and
>
>                     utilize different message exchanges. These
>                     differences result from the
>
>                     main deployment use cases they were designed for
>                     respectively.
>
>                     Requirements derived from use cases may indicate
>                     that existing work is
>
>                     useful as basis for as a solution for constrained
>                     environments.
>
>                     These protocols,
>
>                     however, were not optimized for constrained
>                     environments. Additional
>
>                     requirements that need to be taken into account
>                     are the lack of a
>
>                     suitable user-interface and the inability of
>                     embedded devices to contact
>
>                     an authorization server in real-time with every
>                     resource access request
>
>                     due to intermittent connectivity, etc.
>
>                     This working group therefore aims to produce a
>                     standardized solution for
>
>                     authentication and authorization to enable
>                     authorized access (GET, PUT, POST,
>
>                     DELETE) to resources identified by a URI and
>                     hosted on a resource
>
>                     server in constrained environments. As a starting
>                     point, the working
>
>                     group will assume that access to resources at a
>                     resource server by a
>
>                     client device takes place using CoAP and is
>                     protected by DTLS. Both
>
>                     resource server and client may be constrained.
>                     This access will be
>
>                     mediated by an authorization server, which is not
>                     considered to be
>
>                     constrained.
>
>                     Existing authentication and authorization
>                     protocols will be evaluated
>
>                     and re-used where applicable to build the
>                     constrained-environment solution.
>
>                     This requires
>
>                     relevant specifications to be reviewed for
>                     suitability, selecting a
>
>                     subset of them and restricting the options within
>                     each of the
>
>                     specifications. Some functionality, however, may
>                     not be available in
>
>                     existing protocols, in which case the solution may
>                     also involve new
>
>                     protocol work. Leveraging existing work means the
>                     working group benefits
>
>                     from available security analysis, implementation,
>                     and deployment
>
>                     experience. Moreover, a standardized solution for
>                     federated
>
>                     authentication and authorization will help to
>                     stimulate the deployment
>
>                     of constrained devices that provide increased
>                     security.
>
>                     Once progress in identifying suitable candidate
>                     solutions has been made,
>
>                     the working group will verify whether the same
>                     mechanisms are also
>
>                     applicable beyond the use of CoAP and DTLS, which
>                     are the two main
>
>                     protocols the group will focus on for access to
>                     resources. In
>
>                     particular, the ability to use the developed
>                     solution over HTTP and TLS
>
>                     will be investigated. Note that the initial focus
>                     is on CoAP and HTTP with DTLS and TLS.
>
>                     Other security protocols may be considered as long
>                     as the primary focus is maintained.
>
>                     The group is scoped to work only on the web
>                     protocols and data carried within them.
>
>                     Furthermore, to guarantee smooth transition, the
>
>                     integration with existing deployments will be
>                     studied, particularly
>
>                     concerning the use of protocol translation proxies.
>
>                     This work does not make the assumption that the
>                     party offering
>
>                     application layer services is always the same
>                     party offering network
>
>                     access services.
>
>                     The working group has the following tasks:
>
>                     1) Produce use cases and requirements
>
>                     2) Identify authentication and authorization
>                     mechanisms suitable for
>
>                     resource access in constrained environments.
>
>                     Milestones:
>
>                     Dec 2014 Submit "Use cases and Requirements" as a
>                     WG item.
>
>                     Dec 2014 Submit "Authentication and Authorization
>                     Solution" as a WG item.
>
>                     Apr 2015 Optionally, submit "Use cases and
>                     Requirements" document
>
>                     to the IESG for publication as an Informational RFC.
>
>                     Jul 2016 Submit "Authentication and Authorization
>                     Solution"
>
>                     specification to the IESG for publication as a
>                     Proposed Standard.
>
>                     Proposed Milestones
>
>                     No milestones for charter found.
>
>                     *发件人:*Kathleen Moriarty
>                     [mailto:kathleen.moriarty.ietf@gmail.com
>                     <mailto:kathleen.moriarty.ietf@gmail.com>]
>                     *发送时间:*2014年6月3日14:30
>                     *收件人:*Likepeng
>                     *抄送:*Benoit Claise; adrian@olddog.co.uk
>                     <mailto:adrian@olddog.co.uk>; aaa-doctors@ietf.org
>                     <mailto:aaa-doctors@ietf.org>; The IESG;
>                     ace@ietf.org <mailto:ace@ietf.org>
>
>                     *主题:*Re: Revised charter proposal:
>                     charter-ietf-ace-00-02
>
>                     Hi Kepeng,
>
>                     If we are at a point where I can update the
>                     charter, seems that way, please send the latest
>                     version that has been agreed upon and I'll take
>                     care of the update.
>
>                     Thanks.
>
>                     On Tue, Jun 3, 2014 at 6:31 AM, Likepeng
>                     <likepeng@huawei.com <mailto:likepeng@huawei.com>>
>                     wrote:
>
>                     Hi Benoit,
>
>                     >Not only would I keep "AAA",
>
>                     OK.
>
>                     >but I would propose
>
>                     >OLD:
>
>                     >Existing authentication and authorization protocols will
>                     be used where
>
>                     applicable to build the constrained-environment
>                     solution.
>
>                     >NEW:
>
>                     Existing authentication and authorization
>                     protocols will be evaluated and re-used where
>
>                     applicable to build the constrained-environment
>                     solution.
>
>                     OK, fine with me.
>
>                     Thanks for the feedback.
>
>                     Kind Regards
>
>                     Kepeng
>
>                     *发件人:*Benoit Claise [mailto:bclaise@cisco.com
>                     <mailto:bclaise@cisco.com>]
>                     *发送时间:*2014年6月3日12:16
>
>                     *收 件人:*Likepeng; Kathleen Moriarty;
>                     adrian@olddog.co.uk <mailto:adrian@olddog.co.uk>
>
>                     *抄 送:*aaa-doctors@ietf.org
>                     <mailto:aaa-doctors@ietf.org>; The IESG;
>                     ace@ietf.org <mailto:ace@ietf.org>
>
>                     *主 题:*Re: Revised charter proposal:
>                     charter-ietf-ace-00-02
>
>                     Hi,
>
>                         Hello all,
>
>                           
>
>                         Based on recent discussions, I made a revised charter proposal, as included in this email, not on the webpage yet.
>
>                           
>
>                         Please take a look and let us know if you have any further comments.
>
>                           
>
>                         @Adrian and @Benoit, please check if the proposed texts can resolve your comments.
>
>                           
>
>                         Thanks,
>
>                         Kind Regards
>
>                         Kepeng
>
>                           
>
>                         -------------------------------------------------------------------------------------------------------------------------------------------------------------
>
>                         Compared with charter-ietf-ace-00-01 on the webpage, the changes are:
>
>                           
>
>                         (1)      Add one clarification sentence about REST architecture:
>
>                         OLD
>
>                         The IETF has recently developed protocols for use in constrained
>
>                         environments, where network nodes are limited in CPU, memory and power.
>
>                         REST architecture is widely used for such constrained environments.
>
>                           
>
>                         NEW
>
>                         The IETF has recently developed protocols for use in constrained
>
>                         environments, where network nodes are limited in CPU, memory and power.
>
>                         REST architecture is widely used for such constrained environments.
>
>                         END
>
>                     Considering that OLD is
>
>                     OLD
>
>                     The IETF has recently developed protocols for use in constrained
>
>                     environments, where network nodes are limited in CPU, memory and power.
>
>                     ... fine with me
>
>                       
>
>                       
>
>                     (2)     Remove“AAA protocol”  from the charter:
>
>                     OLD
>
>                     The IETF has a long history in developing three-party authentication and
>
>                     authorization protocols for distributed environments. Examples include
>
>                     Kerberos, the Public Key Infrastructure (PKI), the Authentication,
>
>                     Authorization and Accounting (AAA) infrastructure, and the Web
>
>                     Authorization Protocol (OAuth).
>
>                       
>
>                     NEW
>
>                     The IETF has a long history in developing three-party authentication and
>
>                     authorization protocols for distributed environments. Examples include
>
>                     Kerberos, the Public Key Infrastructure (PKI), and the Web Authorization Protocol (OAuth).
>
>                     END
>
>                     We have AAA-doctors telling: maybe RADIUS is
>                     applicable?
>                     Personally, I don't know and it doesn't matter at
>                     this point.
>                     We received feedback such as:
>
>                     Let's be clear here: It was never said (in the
>                     charter or anywhere else in the group to my
>                     knowledge) that RADIUS (or indeed any other AAA
>                     protocol) would not run on constrained devices
>                     (RFC 7228). The charter simply said the protocols
>                     were not optimised for constrained devices. That
>                     does not preclude considering any protocol for
>                     suitability for constrained devices either a) as
>                     is, b) in a restricted way or c) in an adapted way.
>
>                     So, at this stage, I don't think any protocols
>                     should be excluded from consideration and should
>                     certainly not be eliminated on a hunch that they
>                     might be "too big". Let's do the assessment
>                     properly at the appropriate time. As a reminder -
>                     the focus now is to complete the charter.
>
>                     Or
>
>                     >>The Charter makes a number of assertions that are provably false, such as that AAA protocols are inappropriate for constrained environments.
>
>                     In fact, the charter does not say that. But to avoid confusion, let's remove AAA protocol from the charter.
>
>                       
>
>                     In the charter, we mentioned that we want to reuse existing authentication and authorization protocols where applicable to build the constrained-environment solution.
>
>                     ... which I read as: let's consider the AAA
>                     protocols, and evaluate if they would work in
>                     constrained devices.
>                     I don't understand the logic: why do you want to
>                     remove AAA from the charter?
>                     Not only would I keep "AAA", but I would propose
>
>                     OLD:
>                     Existing authentication and authorization
>                     protocols will be used where
>                     applicable to build the constrained-environment
>                     solution
>
>                     NEW:
>                     Existing authentication and authorization
>                     protocols will be evaluated and re-used where
>                     applicable to build the constrained-environment
>                     solution
>
>                     Regards, Benoit
>
>                       
>
>                       
>
>                     (3) Clarify the scope:
>
>                     OLD:
>
>                     Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
>                     Other security protocols may be considered as long as the primary focus is maintained.
>
>                     Other application protocols and protocols at other layers in the stack are out of scope.
>
>                       
>
>                     NEW
>
>                     Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
>                     Other security protocols may be considered as long as the primary focus is maintained.
>
>                     The group is scoped to work only on the web protocols and data carried within them.
>
>                     END
>
>                       
>
>                     (4)     Update milestones for the use case & requirements document:
>
>                     OLD:
>
>                     Jul 2015 Submit“Use cases and Requirements”  document to IESG for publication as informational RFC.
>
>                       
>
>                     NEW
>
>                     Dec 2014 Optionally, submit "Use cases and Requirements" document to the IESG for publication as an Informational RFC.
>
>                     END
>
>                       
>
>                     ----------------------------------------------------------------------------------------------------------------------------------------------------------------------------
>
>                     Charter charter-ietf-ace-00-02
>
>                     Authentication and Authorization for Constrained
>
>                     Environment (ACE)
>
>                       
>
>                     The IETF has recently developed protocols for use in constrained
>
>                     environments, where network nodes are limited in CPU, memory and power.
>
>                     REST architecture is widely used for such constrained environments.
>
>                     It has been observed that Internet protocols can be applied to these
>
>                     constrained environments, often only requiring minor tweaking and
>
>                     profiling. In other cases, new protocols have been defined to address
>
>                     the specific requirements of constrained environments. An example of
>
>                     such a protocol is the Constrained Application Protocol (CoAP).
>
>                       
>
>                     As in other environments, authentication and authorization questions
>
>                     also arise in constrained environments. For example, a door lock has to
>
>                     authorize the person seeking access using a "digital key". Where is the
>
>                     authorization policy stored? How does the digital key communicate with
>
>                     the lock? Does the lock interact with an authorization server to obtain
>
>                     authorization information? How can access be temporarily granted to
>
>                     other persons? How can access be revoked? These types of questions have
>
>                     been answered by existing protocols for use cases outside constrained
>
>                     environments, however in constrained environments, additional and
>
>                     different requirements pose challenges for the use of various security
>
>                     protocols. In particular, the need arises for a dynamic and fine grained
>
>                     access control mechanism, where clients and/or resource servers are
>
>                     constrained.
>
>                       
>
>                     The IETF has a long history in developing three-party authentication and
>
>                     authorization protocols for distributed environments. Examples include
>
>                     Kerberos, the Public Key Infrastructure (PKI), and the Web
>
>                     Authorization Protocol (OAuth). All these protocols enjoy widespread
>
>                     deployment on the Internet. Although they all aim to solve a similar
>
>                     goal, at an abstract level, they offer quite different functions and
>
>                     utilize different message exchanges. These differences result from the
>
>                     main deployment use cases they were designed for respectively.
>
>                       
>
>                     Requirements derived from use cases indicate the suitability of existing
>
>                     work as a solution for constrained environments. These protocols,
>
>                     however, were not optimized for constrained environments. Additional
>
>                     requirements that need to be taken into account are the lack of a
>
>                     suitable user-interface and the inability of embedded devices to contact
>
>                     an authorization server in real-time with every resource access request
>
>                     due to intermittent connectivity, etc.
>
>                       
>
>                     This working group therefore aims to produce a standardized solution for
>
>                     authentication and authorization to enable authorized access (GET, PUT, POST,
>
>                     DELETE) to resources identified by a URI and hosted on a resource
>
>                     server in constrained environments. As a starting point, the working
>
>                     group will assume that access to resources at a resource server by a
>
>                     client device takes place using CoAP and is protected by DTLS. Both
>
>                     resource server and client may be constrained. This access will be
>
>                     mediated by an authorization server, which is not considered to be
>
>                     constrained.
>
>                       
>
>                     Existing authentication and authorization protocols will be used where
>
>                     applicable to build the constrained-environment solution. This requires
>
>                     relevant specifications to be reviewed for suitability, selecting a
>
>                     subset of them and restricting the options within each of the
>
>                     specifications. Some functionality, however, may not be available in
>
>                     existing protocols, in which case the solution may also involve new
>
>                     protocol work. Leveraging existing work means the working group benefits
>
>                     from available security analysis, implementation, and deployment
>
>                     experience. Moreover, a standardized solution for federated
>
>                     authentication and authorization will help to stimulate the deployment
>
>                     of constrained devices that provide increased security.
>
>                       
>
>                     Once progress in identifying suitable candidate solutions has been made,
>
>                     the working group will verify whether the same mechanisms are also
>
>                     applicable beyond the use of CoAP and DTLS, which are the two main
>
>                     protocols the group will focus on for access to resources. In
>
>                     particular, the ability to use the developed solution over HTTP and TLS
>
>                     will be investigated. Note that the initial focus is on CoAP and HTTP with DTLS and TLS.
>
>                     Other security protocols may be considered as long as the primary focus is maintained.
>
>                     The group is scoped to work only on the web protocols and data carried within them.
>
>                     Furthermore, to guarantee smooth transition, the
>
>                     integration with existing deployments will be studied, particularly
>
>                     concerning the use of protocol translation proxies.
>
>                       
>
>                     This work does not make the assumption that the party offering
>
>                     application layer services is always the same party offering network
>
>                     access services.
>
>                       
>
>                     The working group has the following tasks:
>
>                       
>
>                     1) Produce use cases and requirements
>
>                       
>
>                     2) Identify authentication and authorization mechanisms suitable for
>
>                     resource access in constrained environments.
>
>                       
>
>                     Milestones:
>
>                       
>
>                     Jul 2014 Submit "Use cases and Requirements" as a WG item.
>
>                     Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.
>
>                     Dec 2014 Optionally, submit "Use cases and Requirements" document
>
>                     to the IESG for publication as an Informational RFC.
>
>                     Jul 2016 Submit "Authentication and Authorization Solution"
>
>                     specification to the IESG for publication as a Proposed Standard.
>
>                       
>
>                     Proposed Milestones
>
>                     No milestones for charter found.
>
>
>
>                     -- 
>
>                     Best regards,
>
>                     Kathleen
>
>
>
>
>                 -- 
>
>                 Best regards,
>                 Kathleen
>
>
>
>
>             -- 
>
>             Best regards,
>             Kathleen
>
>
>
>
>     -- 
>
>     Best regards,
>     Kathleen
>
>
>
>
> -- 
>
> Best regards,
> Kathleen


--------------070402070706030303040206
Content-Type: text/html; charset=UTF-8
Content-Transfer-Encoding: 8bit

<html>
  <head>
    <meta content="text/html; charset=UTF-8" http-equiv="Content-Type">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    <div class="moz-cite-prefix">Hi Kathleen,<br>
      <br>
      Fine with me<br>
      <br>
      Regards, B.<br>
    </div>
    <blockquote
cite="mid:CAHbuEH6HFV85wQMH5yUUxeK-Fdhc1L+CgVx2iXJ79J_i8dw-1A@mail.gmail.com"
      type="cite">
      <meta http-equiv="Content-Type" content="text/html; charset=UTF-8">
      <div dir="ltr">Benoit <span
          style="font-family:arial,sans-serif;font-size:13px">had one
          other change mentioned in a previous email that was left out.
          He agrees that it is editorial.  I'm fine with adding it if
          that is okay, but would prefer to leave "used" in instead of
          "re-used" as it isn't needed (IMO).</span>
        <div>
          <br>
        </div>
        <div>Is the last option agreeable and would it clear your
          concerns, Benoit?<br
            style="font-family:arial,sans-serif;font-size:13px">
          <blockquote
            style="font-family:arial,sans-serif;font-size:13px">OLD:<br>
            Existing authentication and authorization protocols will be
            used where<br>
            applicable to build the constrained-environment solution<br>
            <br>
            NEW:<br>
            Existing authentication and authorization protocols will be
            evaluated and re-used where<br>
            applicable to build the constrained-environment solution<br>
            <br>
            NEWER:<br>
            Existing authentication and authorization protocols will be
            evaluated and used where<br>
            applicable to build the constrained-environment solution<br>
          </blockquote>
        </div>
      </div>
      <div class="gmail_extra"><br>
        <br>
        <div class="gmail_quote">
          On Wed, Jun 4, 2014 at 10:05 AM, Kathleen Moriarty <span
            dir="ltr">&lt;<a moz-do-not-send="true"
              href="mailto:kathleen.moriarty.ietf@gmail.com"
              target="_blank">kathleen.moriarty.ietf@gmail.com</a>&gt;</span>
          wrote:<br>
          <blockquote class="gmail_quote" style="margin:0 0 0
            .8ex;border-left:1px #ccc solid;padding-left:1ex">
            <div dir="ltr">Thank you, Göran.<br>
              <br>
              It must have been a cut-n-paste error.  The first sentence
              for the 'replace' did not match the original or the new
              either.  If the next version isn't quite right, pasting in
              a new full version may be better.  I'll look back through
              Benoit's comment now as well.<br>
            </div>
            <div class="gmail_extra">
              <div>
                <div class="h5"><br>
                  <br>
                  <div class="gmail_quote">On Wed, Jun 4, 2014 at 3:06
                    AM, Göran Selander <span dir="ltr">&lt;<a
                        moz-do-not-send="true"
                        href="mailto:goran.selander@ericsson.com"
                        target="_blank">goran.selander@ericsson.com</a>&gt;</span>
                    wrote:<br>
                    <blockquote class="gmail_quote" style="margin:0 0 0
                      .8ex;border-left:1px #ccc solid;padding-left:1ex">
                      <div
style="word-wrap:break-word;color:rgb(0,0,0);font-size:14px;font-family:Calibri,sans-serif">
                        <div
                          style="color:rgb(0,0,0);font-family:Calibri,sans-serif;font-size:14px">
                          Hi Kathleen,</div>
                        <div
                          style="color:rgb(0,0,0);font-family:Calibri,sans-serif;font-size:14px">
                          <br>
                        </div>
                        <div
                          style="color:rgb(0,0,0);font-family:Calibri,sans-serif;font-size:14px">
                          <div>
                            <div>In change #3 of the summary Kepeng made
                              below <font face="Calibri,sans-serif">I
                                find the sentence: &gt;&gt;</font><font
                                color="#1f497d"
                                face="Calibri,sans-serif" size="3">Other
                                security protocols may be considered as
                                long as the primary focus is maintained.
                                &gt;&gt; </font><span
                                style="color:rgb(31,73,125);font-size:medium">This sentence
                                seems to be missing from
                                charter-ietf-ace-00-04.</span></div>
                            <div><br>
                            </div>
                            <div>Regards,</div>
                            <div><span style="color:rgb(31,73,125)">Göran</span></div>
                          </div>
                          <div><font color="#1f497d"
                              face="Calibri,sans-serif" size="3"><br>
                            </font></div>
                        </div>
                        <div
                          style="color:rgb(0,0,0);font-family:Calibri,sans-serif;font-size:14px">
                          <br>
                        </div>
                        <span
                          style="color:rgb(0,0,0);font-family:Calibri,sans-serif;font-size:14px">
                          <div
                            style="font-family:Calibri;font-size:11pt;text-align:left;color:black;BORDER-BOTTOM:medium
                            none;BORDER-LEFT:medium
                            none;PADDING-BOTTOM:0in;PADDING-LEFT:0in;PADDING-RIGHT:0in;BORDER-TOP:#b5c4df
                            1pt solid;BORDER-RIGHT:medium
                            none;PADDING-TOP:3pt">
                            <span style="font-weight:bold">From: </span>Kathleen
                            Moriarty &lt;<a moz-do-not-send="true"
                              href="mailto:kathleen.moriarty.ietf@gmail.com"
                              target="_blank">kathleen.moriarty.ietf@gmail.com</a>&gt;<br>
                            <span style="font-weight:bold">Date: </span>Tuesday
                            3 June 2014 22:27<br>
                            <span style="font-weight:bold">To: </span>Likepeng
                            &lt;<a moz-do-not-send="true"
                              href="mailto:likepeng@huawei.com"
                              target="_blank">likepeng@huawei.com</a>&gt;<br>
                            <span style="font-weight:bold">Cc: </span>Benoit
                            Claise &lt;<a moz-do-not-send="true"
                              href="mailto:bclaise@cisco.com"
                              target="_blank">bclaise@cisco.com</a>&gt;,
                            "<a moz-do-not-send="true"
                              href="mailto:adrian@olddog.co.uk"
                              target="_blank">adrian@olddog.co.uk</a>"
                            &lt;<a moz-do-not-send="true"
                              href="mailto:adrian@olddog.co.uk"
                              target="_blank">adrian@olddog.co.uk</a>&gt;,
                            "<a moz-do-not-send="true"
                              href="mailto:ace@ietf.org" target="_blank">ace@ietf.org</a>"
                            &lt;<a moz-do-not-send="true"
                              href="mailto:ace@ietf.org" target="_blank">ace@ietf.org</a>&gt;,
                            The IESG &lt;<a moz-do-not-send="true"
                              href="mailto:iesg@ietf.org"
                              target="_blank">iesg@ietf.org</a>&gt;, "<a
                              moz-do-not-send="true"
                              href="mailto:aaa-doctors@ietf.org"
                              target="_blank">aaa-doctors@ietf.org</a>"
                            &lt;<a moz-do-not-send="true"
                              href="mailto:aaa-doctors@ietf.org"
                              target="_blank">aaa-doctors@ietf.org</a>&gt;<br>
                            <span style="font-weight:bold">Subject: </span>Re:
                            [Ace] Revised charter proposal:
                            charter-ietf-ace-00-02<br>
                          </div>
                          <div>
                            <div>
                              <div><br>
                              </div>
                              <blockquote style="BORDER-LEFT:#b5c4df 5
                                solid;PADDING:0 0 0 5;MARGIN:0 0 0 5">
                                <div>
                                  <div>
                                    <div dir="ltr">The charter text has
                                      been updated, <a
                                        moz-do-not-send="true"
                                        href="https://datatracker.ietf.org/doc/charter-ietf-ace/"
                                        target="_blank">https://datatracker.ietf.org/doc/charter-ietf-ace/</a>
                                      <div><br>
                                      </div>
                                      <div>Thank you all for your input
                                        and assistance.  If this is
                                        good, we'll move it forward for
                                        IETF review.</div>
                                    </div>
                                  </div>
                                </div>
                              </blockquote>
                            </div>
                          </div>
                        </span>
                        <div>
                          <div><span
                              style="color:rgb(0,0,0);font-family:Calibri,sans-serif;font-size:14px">
                              <blockquote style="BORDER-LEFT:#b5c4df 5
                                solid;PADDING:0 0 0 5;MARGIN:0 0 0 5">
                                <div>
                                  <div>
                                    <div class="gmail_extra"><br>
                                      <br>
                                      <div class="gmail_quote">On Tue,
                                        Jun 3, 2014 at 10:39 AM,
                                        Kathleen Moriarty <span
                                          dir="ltr">
                                          &lt;<a moz-do-not-send="true"
href="mailto:kathleen.moriarty.ietf@gmail.com" target="_blank">kathleen.moriarty.ietf@gmail.com</a>&gt;</span>
                                        wrote:<br>
                                        <blockquote class="gmail_quote"
                                          style="margin:0 0 0
                                          .8ex;border-left:1px #ccc
                                          solid;padding-left:1ex">
                                          <div dir="ltr">I believe there
                                            is agreement on the proposed
                                            changes.  I'll make the
                                            updates later in the day
                                            (it's about 11:30 my time,
                                            maybe at 4) in case anyone
                                            wants to chime in.  If we
                                            are all in agreement, I'll
                                            have it sent for IETF review
                                            at that point.
                                            <div><br>
                                            </div>
                                            <div>Thank you!</div>
                                          </div>
                                          <div class="gmail_extra">
                                            <div>
                                              <div><br>
                                                <br>
                                                <div class="gmail_quote">On
                                                  Tue, Jun 3, 2014 at
                                                  10:26 AM, Likepeng <span
                                                    dir="ltr">
                                                    &lt;<a
                                                      moz-do-not-send="true"
href="mailto:likepeng@huawei.com" target="_blank">likepeng@huawei.com</a>&gt;</span>
                                                  wrote:<br>
                                                  <blockquote
                                                    class="gmail_quote"
                                                    style="margin:0 0 0
                                                    .8ex;border-left:1px
                                                    #ccc
                                                    solid;padding-left:1ex">
                                                    <div link="blue"
                                                      vlink="purple"
                                                      lang="ZH-CN">
                                                      <div>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Hi
                                                          Kathleen and
                                                          all,</span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">This
                                                          is what I have
                                                          now:</span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Change
                                                          #1: (Proposed
                                                          by Kepeng,
                                                          confirmed by
                                                          Benoit)</span></p>
                                                        <div>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">OLD</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">The IETF has recently developed protocols for use in constrained</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">environments, where network nodes are limited in CPU, memory and power. </span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US"> </span></pre>
                                                        </div>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">NEW</span></pre>
                                                        <div>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">The IETF has recently developed protocols for use in constrained</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">environments, where network nodes are limited in CPU, memory and power.</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">REST architecture is widely used for such constrained environments.</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">END</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US"> </span></pre>
                                                        </div>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Change #2: (Proposal from Rene, supported by Stefanie)</span></pre>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">OLD:</span></pre>
                                                        <div>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Requirements derived from use cases indicate the suitability of existing</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">work as a solution for constrained environments </span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US"> </span></pre>
                                                        </div>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">NEW:</span></pre>
                                                        <div>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Requirements derived from use cases may indicate that existing work is</span></pre>
                                                        </div>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US"> useful as basis for as a solution for constrained environments</span></pre>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US"> </span></pre>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Change #3: (Proposal from Jari, supported by Barry, Robert and Behcet)</span></pre>
                                                        <div>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">OLD:</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Note that the initial focus is on CoAP and HTTP with DTLS and TLS.</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  </span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Other application protocols and protocols at other layers in the stack are out of scope.</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US"> </span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">NEW</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Note that the initial focus is on CoAP and HTTP with DTLS and TLS.</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  </span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">The group is scoped to work only on the web protocols and data carried within them.</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">END</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US"> </span></pre>
                                                        </div>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Change 4: (Proposal from Jari, revised by Rene, supported by Stefanie)</span></pre>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">OLD:</span></pre>
                                                        <div>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Jul 2014 Submit "Use cases and Requirements"  as a WG item.</span></pre>
                                                        </div>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Jul 2015 Submit “Use cases and Requirements” document to IESG for publication as informational RFC.</span></pre>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US"> </span></pre>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">NEW</span></pre>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Dec 2014 Submit "Use cases and Requirements"  as a WG item.</span></pre>
                                                        <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">Apr 2015 Optionally, submit "Use cases and Requirements" document to the IESG for</span></pre>
                                                        <div>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">publication as an Informational RFC.</span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">END</span></pre>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                        </div>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">I
                                                          think we
                                                          covered all of
                                                          the IESG
                                                          review
                                                          comments.</span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">If
                                                          there is any
                                                          open issue,
                                                          please let us
                                                          know.</span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Thanks,</span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Kind
                                                          Regards</span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Kepeng</span></p>
                                                        <div>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">--------------------------------------------------------------------------------------------------------------------------------------------------------</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Charter
charter-ietf-ace-00-02</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Authentication
                                                          and
                                                          Authorization
                                                          for
                                                          Constrained</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Environment
                                                          (ACE)</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">The
                                                          IETF has
                                                          recently
                                                          developed
                                                          protocols for
                                                          use in
                                                          constrained</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">environments,
                                                          where network
                                                          nodes are
                                                          limited in
                                                          CPU, memory
                                                          and power.
                                                          </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">REST
                                                          architecture
                                                          is widely used
                                                          for such
                                                          constrained
                                                          environments.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">It
                                                          has been
                                                          observed that
                                                          Internet
                                                          protocols can
                                                          be applied to
                                                          these</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">constrained
                                                          environments,
                                                          often only
                                                          requiring
                                                          minor tweaking
                                                          and</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">profiling.
                                                          In other
                                                          cases, new
                                                          protocols have
                                                          been defined
                                                          to address</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">the
                                                          specific
                                                          requirements
                                                          of constrained
                                                          environments.
                                                          An example of</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">such
                                                          a protocol is
                                                          the
                                                          Constrained
                                                          Application
                                                          Protocol
                                                          (CoAP).</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">As
                                                          in other
                                                          environments,
                                                          authentication
                                                          and
                                                          authorization
                                                          questions</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">also
                                                          arise in
                                                          constrained
                                                          environments.
                                                          For example, a
                                                          door lock has
                                                          to</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">authorize
                                                          the person
                                                          seeking access
                                                          using a
                                                          "digital key".
                                                          Where is the</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">authorization
                                                          policy stored?
                                                          How does the
                                                          digital key
                                                          communicate
                                                          with</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">the
                                                          lock? Does the
                                                          lock interact
                                                          with an
                                                          authorization
                                                          server to
                                                          obtain</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">authorization
                                                          information?
                                                          How can access
                                                          be temporarily
                                                          granted to</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">other
                                                          persons? How
                                                          can access be
                                                          revoked? These
                                                          types of
                                                          questions have</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">been
                                                          answered by
                                                          existing
                                                          protocols for
                                                          use cases
                                                          outside
                                                          constrained</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">environments,
                                                          however in
                                                          constrained
                                                          environments,
                                                          additional and</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">different
                                                          requirements
                                                          pose
                                                          challenges for
                                                          the use of
                                                          various
                                                          security</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">protocols.
                                                          In particular,
                                                          the need
                                                          arises for a
                                                          dynamic and
                                                          fine grained</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">access
                                                          control
                                                          mechanism,
                                                          where clients
                                                          and/or
                                                          resource
                                                          servers are</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">constrained.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">The
                                                          IETF has a
                                                          long history
                                                          in developing
                                                          three-party
                                                          authentication
                                                          and</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">authorization
                                                          protocols for
                                                          distributed
                                                          environments.
                                                          Examples
                                                          include</span></p>
                                                          </div>
                                                        </div>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Kerberos,
                                                          the Public Key
                                                          Infrastructure
                                                          (PKI), the
                                                          Authentication,</span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Authorization
                                                          and Accounting
                                                          (AAA)
                                                          infrastructure,and
                                                          the Web</span></p>
                                                        <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Authorization
                                                          Protocol
                                                          (OAuth). All
                                                          these
                                                          protocols
                                                          enjoy
                                                          widespread</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">deployment
                                                          on the
                                                          Internet.
                                                          Although they
                                                          all aim to
                                                          solve a
                                                          similar</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">goal,
                                                          at an abstract
                                                          level, they
                                                          offer quite
                                                          different
                                                          functions and</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">utilize
                                                          different
                                                          message
                                                          exchanges.
                                                          These
                                                          differences
                                                          result from
                                                          the</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">main
                                                          deployment use
                                                          cases they
                                                          were designed
                                                          for
                                                          respectively.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                        </div>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Requirements
                                                          derived from
                                                          use cases may
                                                          indicate that
                                                          existing work
                                                          is
                                                          </span></p>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">useful
                                                          as basis for
                                                          as a solution
                                                          for
                                                          constrained
                                                          environments.</span></p>
                                                        <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">These
                                                          protocols,</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">however,
                                                          were not
                                                          optimized for
                                                          constrained
                                                          environments.
                                                          Additional</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">requirements
                                                          that need to
                                                          be taken into
                                                          account are
                                                          the lack of a</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">suitable
                                                          user-interface
                                                          and the
                                                          inability of
                                                          embedded
                                                          devices to
                                                          contact</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">an
                                                          authorization
                                                          server in
                                                          real-time with
                                                          every resource
                                                          access request</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">due
                                                          to
                                                          intermittent
                                                          connectivity,
                                                          etc.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">This
                                                          working group
                                                          therefore aims
                                                          to produce a
                                                          standardized
                                                          solution for</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">authentication
                                                          and
                                                          authorization
                                                          to enable
                                                          authorized
                                                          access (GET,
                                                          PUT, POST,
                                                          </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">DELETE)
                                                          to resources
                                                          identified by
                                                          a URI and
                                                          hosted on a
                                                          resource</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">server
                                                          in constrained
                                                          environments.
                                                          As a starting
                                                          point, the
                                                          working</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">group
                                                          will assume
                                                          that access to
                                                          resources at a
                                                          resource
                                                          server by a</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">client
                                                          device takes
                                                          place using
                                                          CoAP and is
                                                          protected by
                                                          DTLS. Both</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">resource
                                                          server and
                                                          client may be
                                                          constrained.
                                                          This access
                                                          will be</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">mediated
                                                          by an
                                                          authorization
                                                          server, which
                                                          is not
                                                          considered to
                                                          be</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">constrained.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                        </div>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Existing
                                                          authentication
                                                          and
                                                          authorization
                                                          protocols will
                                                          be evaluated
                                                          </span></p>
                                                        <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">and
                                                          re-used where
                                                          applicable to
                                                          build the
                                                          constrained-environment
                                                          solution.</span></p>
                                                        </div>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">This
                                                          requires</span></p>
                                                        <div>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">relevant
                                                          specifications
                                                          to be reviewed
                                                          for
                                                          suitability,
                                                          selecting a</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">subset
                                                          of them and
                                                          restricting
                                                          the options
                                                          within each of
                                                          the</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">specifications.
                                                          Some
                                                          functionality,
                                                          however, may
                                                          not be
                                                          available in</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">existing
                                                          protocols, in
                                                          which case the
                                                          solution may
                                                          also involve
                                                          new</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">protocol
                                                          work.
                                                          Leveraging
                                                          existing work
                                                          means the
                                                          working group
                                                          benefits</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">from
                                                          available
                                                          security
                                                          analysis,
                                                          implementation,
                                                          and deployment</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">experience.
                                                          Moreover, a
                                                          standardized
                                                          solution for
                                                          federated</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">authentication
                                                          and
                                                          authorization
                                                          will help to
                                                          stimulate the
                                                          deployment</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">of
                                                          constrained
                                                          devices that
                                                          provide
                                                          increased
                                                          security.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Once
                                                          progress in
                                                          identifying
                                                          suitable
                                                          candidate
                                                          solutions has
                                                          been made,</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">the
                                                          working group
                                                          will verify
                                                          whether the
                                                          same
                                                          mechanisms are
                                                          also</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">applicable
                                                          beyond the use
                                                          of CoAP and
                                                          DTLS, which
                                                          are the two
                                                          main</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">protocols
                                                          the group will
                                                          focus on for
                                                          access to
                                                          resources. In</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">particular,
                                                          the ability to
                                                          use the
                                                          developed
                                                          solution over
                                                          HTTP and TLS</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">will
                                                          be
                                                          investigated.
                                                          Note that the
                                                          initial focus
                                                          is on CoAP and
                                                          HTTP with DTLS
                                                          and TLS.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Other
                                                          security
                                                          protocols may
                                                          be considered
                                                          as long as the
                                                          primary focus
                                                          is
                                                          maintained. 
                                                          </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">The
                                                          group is
                                                          scoped to work
                                                          only on the
                                                          web protocols
                                                          and data
                                                          carried within
                                                          them.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Furthermore,
                                                          to guarantee
                                                          smooth
                                                          transition,
                                                          the</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">integration
                                                          with existing
                                                          deployments
                                                          will be
                                                          studied,
                                                          particularly</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">concerning
                                                          the use of
                                                          protocol
                                                          translation
                                                          proxies.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">This
                                                          work does not
                                                          make the
                                                          assumption
                                                          that the party
                                                          offering</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">application
                                                          layer services
                                                          is always the
                                                          same party
                                                          offering
                                                          network</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">access
                                                          services.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">The
                                                          working group
                                                          has the
                                                          following
                                                          tasks:</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">1)
                                                          Produce use
                                                          cases and
                                                          requirements</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">2)
                                                          Identify
                                                          authentication
                                                          and
                                                          authorization
                                                          mechanisms
                                                          suitable for</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">resource
                                                          access in
                                                          constrained
                                                          environments.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Milestones:</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          </div>
                                                        </div>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Dec
                                                          2014 Submit
                                                          "Use cases and
                                                          Requirements"
                                                          as a WG item.</span></p>
                                                        <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Dec
                                                          2014 Submit
                                                          "Authentication
                                                          and
                                                          Authorization
                                                          Solution" as a
                                                          WG item.</span></p>
                                                        </div>
                                                        <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Apr
                                                          2015
                                                          Optionally,
                                                          submit "Use
                                                          cases and
                                                          Requirements"
                                                          document
                                                          </span></p>
                                                        <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">to
                                                          the IESG for
                                                          publication as
                                                          an
                                                          Informational
                                                          RFC.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Jul
                                                          2016 Submit
                                                          "Authentication
                                                          and
                                                          Authorization
                                                          Solution"</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">specification
                                                          to the IESG
                                                          for
                                                          publication as
                                                          a Proposed
                                                          Standard.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Proposed
                                                          Milestones
                                                          </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">No
                                                          milestones for
                                                          charter found.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span></p>
                                                        </div>
                                                        <div
                                                          style="border:none;border-top:solid
                                                          #b5c4df
                                                          1.0pt;padding:3.0pt
                                                          0cm 0cm 0cm">
                                                          <p
                                                          class="MsoNormal"><b><span
style="font-size:10.0pt">发件人<span lang="EN-US">:</span></span></b><span
style="font-size:10.0pt" lang="EN-US"> Kathleen Moriarty [mailto:<a
                                                          moz-do-not-send="true"
href="mailto:kathleen.moriarty.ietf@gmail.com" target="_blank">kathleen.moriarty.ietf@gmail.com</a>]
                                                          <br>
                                                          </span><b><span
style="font-size:10.0pt">发送时间<span lang="EN-US">:</span></span></b><span
style="font-size:10.0pt" lang="EN-US"> 2014</span><span
                                                          style="font-size:10.0pt">年<span
                                                          lang="EN-US">6</span>月<span
                                                          lang="EN-US">3</span>日<span
                                                          lang="EN-US">
                                                          14:30<br>
                                                          </span><b>收件人<span
                                                          lang="EN-US">:</span></b><span
                                                          lang="EN-US">
                                                          Likepeng<br>
                                                          </span><b>抄送<span
                                                          lang="EN-US">:</span></b><span
                                                          lang="EN-US">
                                                          Benoit Claise;
                                                          <a
                                                          moz-do-not-send="true"
href="mailto:adrian@olddog.co.uk" target="_blank">
adrian@olddog.co.uk</a>; <a moz-do-not-send="true"
                                                          href="mailto:aaa-doctors@ietf.org"
target="_blank">aaa-doctors@ietf.org</a>; The IESG;
                                                          <a
                                                          moz-do-not-send="true"
href="mailto:ace@ietf.org" target="_blank">ace@ietf.org</a><br>
                                                          </span></span></p>
                                                          <div>
                                                          <div><b>主题<span
                                                          lang="EN-US">:</span></b><span
                                                          lang="EN-US">
                                                          Re: Revised
                                                          charter
                                                          proposal:
                                                          charter-ietf-ace-00-02</span></div>
                                                          </div>
                                                        </div>
                                                        <div>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US"> </span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">Hi
                                                          Kepeng,</span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US"> </span></p>
                                                          </div>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">If
                                                          we are at a
                                                          point where I
                                                          can update the
                                                          charter, seems
                                                          that way,
                                                          please send
                                                          the latest
                                                          version that
                                                          has been
                                                          agreed upon
                                                          and I'll take
                                                          care of the
                                                          update.</span></p>
                                                          </div>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US"> </span></p>
                                                          </div>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">Thanks.</span></p>
                                                          </div>
                                                          </div>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"
style="margin-bottom:12.0pt"><span lang="EN-US"> </span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">On
                                                          Tue, Jun 3,
                                                          2014 at 6:31
                                                          AM, Likepeng
                                                          &lt;<a
                                                          moz-do-not-send="true"
href="mailto:likepeng@huawei.com" target="_blank">likepeng@huawei.com</a>&gt;
                                                          wrote:</span></p>
                                                          <div>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Hi
                                                          Benoit,</span><span
                                                          lang="EN-US"></span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">&gt;Not
                                                          only would I
                                                          keep "AAA",
                                                          </span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span><span
                                                          lang="EN-US"></span></p>
                                                          </div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">OK.</span><span
                                                          lang="EN-US"></span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">&gt;but
                                                          I would
                                                          propose</span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">&gt;OLD:</span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">&gt;Existing
                                                          authentication
                                                          and
                                                          authorization
                                                          protocols will
                                                          be used where</span><span
                                                          lang="EN-US"></span></p>
                                                          </div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">applicable
                                                          to build the
                                                          constrained-environment
                                                          solution.</span><span
                                                          lang="EN-US"></span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">&gt;NEW:</span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Existing
                                                          authentication
                                                          and
                                                          authorization
                                                          protocols will
                                                          be evaluated
                                                          and re-used
                                                          where</span><span
                                                          lang="EN-US"></span></p>
                                                          </div>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">applicable
                                                          to build the
                                                          constrained-environment
                                                          solution.</span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">OK,
                                                          fine with me.</span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Thanks
                                                          for the
                                                          feedback.
                                                          </span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Kind
                                                          Regards</span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US">Kepeng</span><span
                                                          lang="EN-US"></span></p>
                                                          <p
                                                          class="MsoNormal"><span
style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)"
                                                          lang="EN-US"> </span><span
                                                          lang="EN-US"></span></p>
                                                          <div>
                                                          <div
                                                          style="border:none;border-top:solid
                                                          #b5c4df
                                                          1.0pt;padding:3.0pt
                                                          0cm 0cm 0cm">
                                                          <p
                                                          class="MsoNormal"><b><span
style="font-size:10.0pt">发件人<span lang="EN-US">:</span></span></b><span
style="font-size:10.0pt" lang="EN-US"> Benoit Claise [mailto:<a
                                                          moz-do-not-send="true"
href="mailto:bclaise@cisco.com" target="_blank">bclaise@cisco.com</a>]
                                                          <br>
                                                          </span><b><span
style="font-size:10.0pt">发送时间<span lang="EN-US">:</span></span></b><span
style="font-size:10.0pt" lang="EN-US"> 2014</span><span
                                                          style="font-size:10.0pt">年<span
                                                          lang="EN-US">6</span>月<span
                                                          lang="EN-US">3</span>日<span
                                                          lang="EN-US">
                                                          12:16</span></span><span
                                                          lang="EN-US"></span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><b>收
                                                          件人<span
                                                          lang="EN-US">:</span></b><span
                                                          lang="EN-US">
                                                          Likepeng;
                                                          Kathleen
                                                          Moriarty;
                                                          <a
                                                          moz-do-not-send="true"
href="mailto:adrian@olddog.co.uk" target="_blank">adrian@olddog.co.uk</a></span></p>
                                                          </div>
                                                          <p
                                                          class="MsoNormal"><b>抄
                                                          送<span
                                                          lang="EN-US">:</span></b><span
                                                          lang="EN-US">
                                                          <a
                                                          moz-do-not-send="true"
href="mailto:aaa-doctors@ietf.org" target="_blank">
aaa-doctors@ietf.org</a>; The IESG; <a moz-do-not-send="true"
                                                          href="mailto:ace@ietf.org"
target="_blank">
                                                          ace@ietf.org</a></span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><b>主
                                                          题<span
                                                          lang="EN-US">:</span></b><span
                                                          lang="EN-US">
                                                          Re: Revised
                                                          charter
                                                          proposal:
                                                          charter-ietf-ace-00-02</span></p>
                                                          </div>
                                                          </div>
                                                          </div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US"> </span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"
style="margin-bottom:12.0pt"><span lang="EN-US">Hi, </span></p>
                                                          </div>
                                                          <div>
                                                          <div>
                                                          <blockquote
                                                          style="margin-top:5.0pt;margin-bottom:5.0pt">
                                                          <pre><span lang="EN-US">Hello all,</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">Based on recent discussions, I made a revised charter proposal, as included in this email, not on the webpage yet. </span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">Please take a look and let us know if you have any further comments.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">@Adrian and @Benoit, please check if the proposed texts can resolve your comments.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">Thanks,</span></pre>
                                                          <pre><span lang="EN-US">Kind Regards</span></pre>
                                                          <pre><span lang="EN-US">Kepeng</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">-------------------------------------------------------------------------------------------------------------------------------------------------------------</span></pre>
                                                          <pre><span lang="EN-US">Compared with charter-ietf-ace-00-01 on the webpage, the changes are:</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">(1)      Add one clarification sentence about REST architecture:</span></pre>
                                                          <pre><span lang="EN-US">OLD</span></pre>
                                                          <pre><span lang="EN-US">The IETF has recently developed protocols for use in constrained</span></pre>
                                                          <pre><span lang="EN-US">environments, where network nodes are limited in CPU, memory and power. </span></pre>
                                                          <pre><span lang="EN-US">REST architecture is widely used for such constrained environments.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">NEW</span></pre>
                                                          <pre><span lang="EN-US">The IETF has recently developed protocols for use in constrained</span></pre>
                                                          <pre><span lang="EN-US">environments, where network nodes are limited in CPU, memory and power.</span></pre>
                                                          <pre><span lang="EN-US">REST architecture is widely used for such constrained environments.</span></pre>
                                                          <pre><span lang="EN-US">END</span></pre>
                                                          </blockquote>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">Considering
                                                          that OLD is</span></p>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">OLD</span><span lang="EN-US"></span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">The IETF has recently developed protocols for use in constrained</span><span lang="EN-US"></span></pre>
                                                          <pre><span style="font-size:10.5pt;font-family:Calibri,sans-serif;color:rgb(31,73,125)" lang="EN-US">environments, where network nodes are limited in CPU, memory and power. </span><span lang="EN-US"></span></pre>
                                                          <p
                                                          class="MsoNormal"
style="margin-bottom:12.0pt"><span lang="EN-US">... fine with me</span></p>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">(2)     Remove </span>“<span lang="EN-US">AAA protocol</span>”<span lang="EN-US"> from the charter:</span></pre>
                                                          <pre><span lang="EN-US">OLD</span></pre>
                                                          <pre><span lang="EN-US">The IETF has a long history in developing three-party authentication and</span></pre>
                                                          <pre><span lang="EN-US">authorization protocols for distributed environments. Examples include</span></pre>
                                                          <pre><span lang="EN-US">Kerberos, the Public Key Infrastructure (PKI), the Authentication,</span></pre>
                                                          <pre><span lang="EN-US">Authorization and Accounting (AAA) infrastructure, and the Web</span></pre>
                                                          <pre><span lang="EN-US">Authorization Protocol (OAuth).</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">NEW</span></pre>
                                                          <pre><span lang="EN-US">The IETF has a long history in developing three-party authentication and</span></pre>
                                                          <pre><span lang="EN-US">authorization protocols for distributed environments. Examples include</span></pre>
                                                          <pre><span lang="EN-US">Kerberos, the Public Key Infrastructure (PKI), and the Web Authorization Protocol (OAuth).</span></pre>
                                                          <pre><span lang="EN-US">END</span></pre>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">We
                                                          have
                                                          AAA-doctors
                                                          telling: maybe
                                                          RADIUS is
                                                          applicable?<br>
                                                          Personally, I
                                                          don't know and
                                                          it doesn't
                                                          matter at this
                                                          point.<br>
                                                          We received
                                                          feedback such
                                                          as:</span></p>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">Let's
                                                          be clear here:
                                                          It was never
                                                          said (in the
                                                          charter or
                                                          anywhere else
                                                          in the group
                                                          to my
                                                          knowledge)
                                                          that RADIUS
                                                          (or indeed any
                                                          other AAA
                                                          protocol)
                                                          would not run
                                                          on constrained
                                                          devices (RFC
                                                          7228). The
                                                          charter simply
                                                          said the
                                                          protocols were
                                                          not optimised
                                                          for
                                                          constrained
                                                          devices. That
                                                          does not
                                                          preclude
                                                          considering
                                                          any protocol
                                                          for
                                                          suitability
                                                          for
                                                          constrained
                                                          devices either
                                                          a) as is, b)
                                                          in a
                                                          restricted way
                                                          or c) in an
                                                          adapted way.<br>
                                                          <br>
                                                          So, at this
                                                          stage, I don't
                                                          think any
                                                          protocols
                                                          should be
                                                          excluded from
                                                          consideration
                                                          and should
                                                          certainly not
                                                          be eliminated
                                                          on a hunch
                                                          that they
                                                          might be "too
                                                          big". Let's do
                                                          the assessment
                                                          properly at
                                                          the
                                                          appropriate
                                                          time. As a
                                                          reminder - the
                                                          focus now is
                                                          to complete
                                                          the charter.</span></p>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">Or</span></p>
                                                          <pre><span lang="EN-US">&gt;&gt;The Charter makes a number of assertions that are provably false, such as that AAA protocols are inappropriate for constrained environments.</span></pre>
                                                          <pre><span lang="EN-US">In fact, the charter does not say that. But to avoid confusion, let's remove AAA protocol from the charter.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">In the charter, we mentioned that we want to reuse existing authentication and authorization protocols where applicable to build the constrained-environment solution.</span></pre>
                                                          <p
                                                          class="MsoNormal"
style="margin-bottom:12.0pt"><span lang="EN-US">... which I read as:
                                                          let's consider
                                                          the AAA
                                                          protocols, and
                                                          evaluate if
                                                          they would
                                                          work in
                                                          constrained
                                                          devices.<br>
                                                          I don't
                                                          understand the
                                                          logic: why do
                                                          you want to
                                                          remove AAA
                                                          from the
                                                          charter?<br>
                                                          Not only would
                                                          I keep "AAA",
                                                          but I would
                                                          propose<br>
                                                          <br>
                                                          OLD:<br>
                                                          Existing
                                                          authentication
                                                          and
                                                          authorization
                                                          protocols will
                                                          be used where<br>
                                                          applicable to
                                                          build the
                                                          constrained-environment
                                                          solution<br>
                                                          <br>
                                                          NEW:<br>
                                                          Existing
                                                          authentication
                                                          and
                                                          authorization
                                                          protocols will
                                                          be evaluated
                                                          and re-used
                                                          where<br>
                                                          applicable to
                                                          build the
                                                          constrained-environment
                                                          solution<br>
                                                          <br>
                                                          Regards,
                                                          Benoit</span></p>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">(3) Clarify the scope:</span></pre>
                                                          <pre><span lang="EN-US">OLD:</span></pre>
                                                          <pre><span lang="EN-US">Note that the initial focus is on CoAP and HTTP with DTLS and TLS.</span></pre>
                                                          <pre><span lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  </span></pre>
                                                          <pre><span lang="EN-US">Other application protocols and protocols at other layers in the stack are out of scope.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">NEW</span></pre>
                                                          <pre><span lang="EN-US">Note that the initial focus is on CoAP and HTTP with DTLS and TLS.</span></pre>
                                                          <pre><span lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  </span></pre>
                                                          <pre><span lang="EN-US">The group is scoped to work only on the web protocols and data carried within them.</span></pre>
                                                          <pre><span lang="EN-US">END</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">(4)     Update milestones for the use case &amp; requirements document:</span></pre>
                                                          <pre><span lang="EN-US">OLD:</span></pre>
                                                          <pre><span lang="EN-US">Jul 2015 Submit </span>“<span lang="EN-US">Use cases and Requirements</span>”<span lang="EN-US"> document to IESG for publication as informational RFC.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">NEW</span></pre>
                                                          <pre><span lang="EN-US">Dec 2014 Optionally, submit "Use cases and Requirements" document to the IESG for publication as an Informational RFC.</span></pre>
                                                          <pre><span lang="EN-US">END</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">----------------------------------------------------------------------------------------------------------------------------------------------------------------------------</span></pre>
                                                          <pre><span lang="EN-US">Charter charter-ietf-ace-00-02</span></pre>
                                                          <pre><span lang="EN-US">Authentication and Authorization for Constrained</span></pre>
                                                          <pre><span lang="EN-US">Environment (ACE)</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">The IETF has recently developed protocols for use in constrained</span></pre>
                                                          <pre><span lang="EN-US">environments, where network nodes are limited in CPU, memory and power. </span></pre>
                                                          <pre><span lang="EN-US">REST architecture is widely used for such constrained environments.</span></pre>
                                                          <pre><span lang="EN-US">It has been observed that Internet protocols can be applied to these</span></pre>
                                                          <pre><span lang="EN-US">constrained environments, often only requiring minor tweaking and</span></pre>
                                                          <pre><span lang="EN-US">profiling. In other cases, new protocols have been defined to address</span></pre>
                                                          <pre><span lang="EN-US">the specific requirements of constrained environments. An example of</span></pre>
                                                          <pre><span lang="EN-US">such a protocol is the Constrained Application Protocol (CoAP).</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">As in other environments, authentication and authorization questions</span></pre>
                                                          <pre><span lang="EN-US">also arise in constrained environments. For example, a door lock has to</span></pre>
                                                          <pre><span lang="EN-US">authorize the person seeking access using a "digital key". Where is the</span></pre>
                                                          <pre><span lang="EN-US">authorization policy stored? How does the digital key communicate with</span></pre>
                                                          <pre><span lang="EN-US">the lock? Does the lock interact with an authorization server to obtain</span></pre>
                                                          <pre><span lang="EN-US">authorization information? How can access be temporarily granted to</span></pre>
                                                          <pre><span lang="EN-US">other persons? How can access be revoked? These types of questions have</span></pre>
                                                          <pre><span lang="EN-US">been answered by existing protocols for use cases outside constrained</span></pre>
                                                          <pre><span lang="EN-US">environments, however in constrained environments, additional and</span></pre>
                                                          <pre><span lang="EN-US">different requirements pose challenges for the use of various security</span></pre>
                                                          <pre><span lang="EN-US">protocols. In particular, the need arises for a dynamic and fine grained</span></pre>
                                                          <pre><span lang="EN-US">access control mechanism, where clients and/or resource servers are</span></pre>
                                                          <pre><span lang="EN-US">constrained.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">The IETF has a long history in developing three-party authentication and</span></pre>
                                                          <pre><span lang="EN-US">authorization protocols for distributed environments. Examples include</span></pre>
                                                          <pre><span lang="EN-US">Kerberos, the Public Key Infrastructure (PKI), and the Web</span></pre>
                                                          <pre><span lang="EN-US">Authorization Protocol (OAuth). All these protocols enjoy widespread</span></pre>
                                                          <pre><span lang="EN-US">deployment on the Internet. Although they all aim to solve a similar</span></pre>
                                                          <pre><span lang="EN-US">goal, at an abstract level, they offer quite different functions and</span></pre>
                                                          <pre><span lang="EN-US">utilize different message exchanges. These differences result from the</span></pre>
                                                          <pre><span lang="EN-US">main deployment use cases they were designed for respectively.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">Requirements derived from use cases indicate the suitability of existing</span></pre>
                                                          <pre><span lang="EN-US">work as a solution for constrained environments. These protocols,</span></pre>
                                                          <pre><span lang="EN-US">however, were not optimized for constrained environments. Additional</span></pre>
                                                          <pre><span lang="EN-US">requirements that need to be taken into account are the lack of a</span></pre>
                                                          <pre><span lang="EN-US">suitable user-interface and the inability of embedded devices to contact</span></pre>
                                                          <pre><span lang="EN-US">an authorization server in real-time with every resource access request</span></pre>
                                                          <pre><span lang="EN-US">due to intermittent connectivity, etc.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">This working group therefore aims to produce a standardized solution for</span></pre>
                                                          <pre><span lang="EN-US">authentication and authorization to enable authorized access (GET, PUT, POST, </span></pre>
                                                          <pre><span lang="EN-US">DELETE) to resources identified by a URI and hosted on a resource</span></pre>
                                                          <pre><span lang="EN-US">server in constrained environments. As a starting point, the working</span></pre>
                                                          <pre><span lang="EN-US">group will assume that access to resources at a resource server by a</span></pre>
                                                          <pre><span lang="EN-US">client device takes place using CoAP and is protected by DTLS. Both</span></pre>
                                                          <pre><span lang="EN-US">resource server and client may be constrained. This access will be</span></pre>
                                                          <pre><span lang="EN-US">mediated by an authorization server, which is not considered to be</span></pre>
                                                          <pre><span lang="EN-US">constrained.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">Existing authentication and authorization protocols will be used where</span></pre>
                                                          <pre><span lang="EN-US">applicable to build the constrained-environment solution. This requires</span></pre>
                                                          <pre><span lang="EN-US">relevant specifications to be reviewed for suitability, selecting a</span></pre>
                                                          <pre><span lang="EN-US">subset of them and restricting the options within each of the</span></pre>
                                                          <pre><span lang="EN-US">specifications. Some functionality, however, may not be available in</span></pre>
                                                          <pre><span lang="EN-US">existing protocols, in which case the solution may also involve new</span></pre>
                                                          <pre><span lang="EN-US">protocol work. Leveraging existing work means the working group benefits</span></pre>
                                                          <pre><span lang="EN-US">from available security analysis, implementation, and deployment</span></pre>
                                                          <pre><span lang="EN-US">experience. Moreover, a standardized solution for federated</span></pre>
                                                          <pre><span lang="EN-US">authentication and authorization will help to stimulate the deployment</span></pre>
                                                          <pre><span lang="EN-US">of constrained devices that provide increased security.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">Once progress in identifying suitable candidate solutions has been made,</span></pre>
                                                          <pre><span lang="EN-US">the working group will verify whether the same mechanisms are also</span></pre>
                                                          <pre><span lang="EN-US">applicable beyond the use of CoAP and DTLS, which are the two main</span></pre>
                                                          <pre><span lang="EN-US">protocols the group will focus on for access to resources. In</span></pre>
                                                          <pre><span lang="EN-US">particular, the ability to use the developed solution over HTTP and TLS</span></pre>
                                                          <pre><span lang="EN-US">will be investigated. Note that the initial focus is on CoAP and HTTP with DTLS and TLS.</span></pre>
                                                          <pre><span lang="EN-US">Other security protocols may be considered as long as the primary focus is maintained.  </span></pre>
                                                          <pre><span lang="EN-US">The group is scoped to work only on the web protocols and data carried within them.</span></pre>
                                                          <pre><span lang="EN-US">Furthermore, to guarantee smooth transition, the</span></pre>
                                                          <pre><span lang="EN-US">integration with existing deployments will be studied, particularly</span></pre>
                                                          <pre><span lang="EN-US">concerning the use of protocol translation proxies.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">This work does not make the assumption that the party offering</span></pre>
                                                          <pre><span lang="EN-US">application layer services is always the same party offering network</span></pre>
                                                          <pre><span lang="EN-US">access services.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">The working group has the following tasks:</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">1) Produce use cases and requirements</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">2) Identify authentication and authorization mechanisms suitable for</span></pre>
                                                          <pre><span lang="EN-US">resource access in constrained environments.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">Milestones:</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">Jul 2014 Submit "Use cases and Requirements" as a WG item.</span></pre>
                                                          <pre><span lang="EN-US">Dec 2014 Submit "Authentication and Authorization Solution" as a WG item.</span></pre>
                                                          <pre><span lang="EN-US">Dec 2014 Optionally, submit "Use cases and Requirements" document </span></pre>
                                                          <pre><span lang="EN-US">to the IESG for publication as an Informational RFC.</span></pre>
                                                          <pre><span lang="EN-US">Jul 2016 Submit "Authentication and Authorization Solution"</span></pre>
                                                          <pre><span lang="EN-US">specification to the IESG for publication as a Proposed Standard.</span></pre>
                                                          <pre><span lang="EN-US"> </span></pre>
                                                          <pre><span lang="EN-US">Proposed Milestones </span></pre>
                                                          <pre><span lang="EN-US">No milestones for charter found.</span></pre>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US"> </span></p>
                                                          </div>
                                                          </div>
                                                          </div>
                                                          </div>
                                                          </div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US"><br>
                                                          <br
                                                          clear="all">
                                                          </span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US"> </span></p>
                                                          </div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">--
                                                          </span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US"> </span></p>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">Best
                                                          regards,</span></p>
                                                          </div>
                                                          <div>
                                                          <p
                                                          class="MsoNormal"><span
                                                          lang="EN-US">Kathleen</span></p>
                                                          </div>
                                                          </div>
                                                          </div>
                                                          </div>
                                                        </div>
                                                      </div>
                                                    </div>
                                                  </blockquote>
                                                </div>
                                                <br>
                                                <br clear="all">
                                                <div><br>
                                                </div>
                                              </div>
                                            </div>
                                            <span><font color="#888888">--
                                                <br>
                                                <div dir="ltr"><br>
                                                  <div>Best regards,</div>
                                                  <div>Kathleen</div>
                                                </div>
                                              </font></span></div>
                                        </blockquote>
                                      </div>
                                      <br>
                                      <br clear="all">
                                      <div><br>
                                      </div>
                                      -- <br>
                                      <div dir="ltr"><br>
                                        <div>Best regards,</div>
                                        <div>Kathleen</div>
                                      </div>
                                    </div>
                                  </div>
                                </div>
                              </blockquote>
                            </span>
                          </div>
                        </div>
                      </div>
                    </blockquote>
                  </div>
                  <br>
                  <br clear="all">
                  <div><br>
                  </div>
                </div>
              </div>
              <span class="HOEnZb"><font color="#888888">-- <br>
                  <div dir="ltr"><br>
                    <div>Best regards,</div>
                    <div>Kathleen</div>
                  </div>
                </font></span></div>
          </blockquote>
        </div>
        <br>
        <br clear="all">
        <div><br>
        </div>
        -- <br>
        <div dir="ltr"><br>
          <div>Best regards,</div>
          <div>Kathleen</div>
        </div>
      </div>
    </blockquote>
    <br>
  </body>
</html>

--------------070402070706030303040206--


From nobody Wed Jun  4 12:41:57 2014
Return-Path: <bclaise@cisco.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DB4611A02B0 for <aaa-doctors@ietfa.amsl.com>; Wed,  4 Jun 2014 12:41:54 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.151
X-Spam-Level: 
X-Spam-Status: No, score=-10.151 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id n-aFNI7QKtTI for <aaa-doctors@ietfa.amsl.com>; Wed,  4 Jun 2014 12:41:50 -0700 (PDT)
Received: from aer-iport-3.cisco.com (aer-iport-3.cisco.com [173.38.203.53]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 76CE71A0262 for <aaa-doctors@ietf.org>; Wed,  4 Jun 2014 12:41:49 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=16441; q=dns/txt; s=iport; t=1401910905; x=1403120505; h=message-id:date:from:mime-version:to:subject:references: in-reply-to; bh=yr5Lkievv8fuBiGmMcXSbedWEmx9LdXPrdmRMIEjQ9A=; b=UhgX9QHyftI8IHJ64/lXA6qeLzBi2sOGg91n2nV2Msau9fQdon0W6Ham LZLE/E/ZnqWa0QX24e+lcItAoJtbZGr543348BUUs7nVb4XghBkLvTqva CfY4O5r/ThVJ7oVPU0nSrBaTbLMJIVnniLhM9H9/1TKvin9egC15QGmW4 k=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: Al4QANt1j1OtJssW/2dsb2JhbAAWOQqDWYkfsnQBhzgBgSZ0giUBAQEEAQEBZAcKDQQcAQIBAgoDCQoPCQMCAQIBDwYfAwQCCAYNBgIBAQUSiBMDEQ2KFcFUDYYNF4w8gToEBwEBAT0YBgSENgSYGYF6hnCGUoV3gXiBQjsvgQEJFwIC
X-IronPort-AV: E=Sophos; i="4.98,974,1392163200"; d="scan'208,217"; a="69896543"
Received: from aer-iport-nat.cisco.com (HELO aer-core-2.cisco.com) ([173.38.203.22]) by aer-iport-3.cisco.com with ESMTP; 04 Jun 2014 19:41:43 +0000
Received: from [10.61.216.56] ([10.61.216.56]) by aer-core-2.cisco.com (8.14.5/8.14.5) with ESMTP id s54JfeOv018008 for <aaa-doctors@ietf.org>; Wed, 4 Jun 2014 19:41:40 GMT
Message-ID: <538F7673.1040008@cisco.com>
Date: Wed, 04 Jun 2014 21:41:39 +0200
From: Benoit Claise <bclaise@cisco.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.5.0
MIME-Version: 1.0
To: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>
References: <20140604191407.685.47510.idtracker@ietfa.amsl.com>
In-Reply-To: <20140604191407.685.47510.idtracker@ietfa.amsl.com>
X-Forwarded-Message-Id: <20140604191407.685.47510.idtracker@ietfa.amsl.com>
Content-Type: multipart/alternative; boundary="------------080303040908070509010805"
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/E4SlZU2oK7BqeroDRzAuJt39-wc
Subject: [AAA-DOCTORS] Fwd: WG Review: Authentication and Authorization for Constrained Environments (ace)
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Jun 2014 19:41:55 -0000

This is a multi-part message in MIME format.
--------------080303040908070509010805
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit

Thanks for your feedback, based on which I pushed a few changes in the 
charter.
For example:

Existing authentication and authorization protocols will be_evaluated_
and used where applicable

If you have more feedback, feel free to participate to the IETF mailer 
discussion, and cc me.

Regards, Benoit

-------- Original Message --------
Subject: 	WG Review: Authentication and Authorization for Constrained 
Environments (ace)
Date: 	Wed, 4 Jun 2014 12:14:07 -0700
From: 	The IESG <iesg-secretary@ietf.org>
Reply-To: 	<ietf@ietf.org>
To: 	IETF-Announce <ietf-announce@ietf.org>
CC: 	ace WG <ace@ietf.org>



A new IETF working group has been proposed in the Security Area. The IESG
has not made any determination yet. The following draft charter was
submitted, and is provided for informational purposes only. Please send
your comments to the IESG mailing list (iesg at ietf.org) by 2014-06-14.

Authentication and Authorization for Constrained Environments (ace)
------------------------------------------------
Current Status: Proposed WG

Chairs:
   Hannes Tschofenig <Hannes.Tschofenig@gmx.net>
   Kepeng Li <likepeng@huawei.com>

Assigned Area Director:
   Kathleen Moriarty <Kathleen.Moriarty.ietf@gmail.com>

Mailing list
   Address: ace@ietf.org
   To Subscribe: https://www.ietf.org/mailman/listinfo/ace
   Archive: http://www.ietf.org/mail-archive/web/ace/current/maillist.html

Charter:

Authentication and Authorization for Constrained
Environment (ACE)

The IETF has recently developed protocols for use in constrained
environments, where network nodes are limited in CPU, memory and power.
REST architecture is widely used for such constrained environments.
It has been observed that Internet protocols can be applied to these
constrained environments, often only requiring minor tweaking and
profiling. In other cases, new protocols have been defined to address
the specific requirements of constrained environments. An example of
such a protocol is the Constrained Application Protocol (CoAP).

As in other environments, authentication and authorization questions
also arise in constrained environments. For example, a door lock has to
authorize the person seeking access using a "digital key". Where is the
authorization policy stored? How does the digital key communicate with
the lock? Does the lock interact with an authorization server to obtain
authorization information? How can access be temporarily granted to
other persons? How can access be revoked? These types of questions have
been answered by existing protocols for use cases outside constrained
environments, however in constrained environments, additional and
different requirements pose challenges for the use of various security
protocols. In particular, the need arises for a dynamic and fine grained
access control mechanism, where clients and/or resource servers are
constrained.

The IETF has a long history in developing three-party authentication and
authorization protocols for distributed environments. Examples include
Kerberos, the Public Key Infrastructure (PKI), the Authentication,
Authorization and Accounting (AAA) infrastructure, and the Web
Authorization Protocol (OAuth). All these protocols enjoy widespread
deployment on the Internet. Although they all aim to solve a similar
goal, at an abstract level, they offer quite different functions and
utilize different message exchanges. These differences result from the
main deployment use cases they were designed for respectively.

Requirements derived from use cases may indicate that existing work is
useful as basis for a solution for constrained environments. These
protocols, however, were not optimized for constrained environments.
Additional requirements that need to be taken into account are the lack
of a suitable user-interface and the inability of embedded devices to
contact an authorization server in real-time with every resource access
request due to intermittent connectivity, etc.

This working group therefore aims to produce a standardized solution for
authentication and authorization to enable authorized access (Get, Put,
Post, Delete) to resources identified by a URI and hosted on a resource
server in constrained environments. As a starting point, the working
group will assume that access to resources at a resource server by a
client device takes place using CoAP and is protected by DTLS. Both
resource server and client may be constrained. This access will be
mediated by an authorization server, which is not considered to be
constrained.

Existing authentication and authorization protocols will be evaluated
and used where applicable to build the constrained-environment solution.
This requires relevant specifications to be reviewed for suitability,
selecting a subset of them and restricting the options within each of
the specifications. Some functionality, however, may not be available in
existing protocols, in which case the solution may also involve new
protocol work. Leveraging existing work means the working group benefits
from available security analysis, implementation, and deployment
experience. Moreover, a standardized solution for federated
authentication and authorization will help to stimulate the deployment
of constrained devices that provide increased security.

Once progress in identifying suitable candidate solutions has been made,
the working group will verify whether the same mechanisms are also
applicable beyond the use of CoAP and DTLS, which are the two main
protocols the group will focus on for access to resources. In
particular, the ability to use the developed solution over HTTP and TLS
will be investigated. Note that the initial focus is on CoAP and HTTP
with DTLS and TLS. Other security protocols may be considered as long as
the primary focus is maintained. The group is scoped to work only on the
web protocols and data carried within them. Furthermore, to guarantee
smooth transition, the integration with existing deployments will be
studied, particularly concerning the use of protocol translation
proxies.

This work does not make the assumption that the party offering
application layer services is always the same party offering network
access services.

The working group has the following tasks:

1) Produce use cases and requirements

2) Identify authentication and authorization mechanisms suitable for
resource access in constrained environments.

Milestones:

Jul 2014 Submit "Use cases and Requirements" as a WG item.
Dec 2014 Submit "Authentication and Authorization Solution" as a WG
          item.
Apr 2015 Optionally, submit "Use cases and Requirements" document to the
          IESG for publication as an Informational RFC.
Jul 2016 Submit "Authentication and Authorization Solution"
          specification to the IESG for publication as a Proposed
          Standard.

.




--------------080303040908070509010805
Content-Type: text/html; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit

<html>
  <head>

    <meta http-equiv="content-type" content="text/html; charset=ISO-8859-1">
  </head>
  <body bgcolor="#FFFFFF" text="#000000">
    Thanks for your feedback, based on which I pushed a few changes in
    the charter.<br>
    For example: <br>
    <pre wrap="">Existing authentication and authorization protocols will be <u>evaluated </u>
and used where applicable </pre>
    <div class="moz-forward-container">If you have more feedback, feel
      free to participate to the IETF mailer discussion, and cc me.<br>
      <br>
      Regards, Benoit<br>
      <br>
      -------- Original Message --------
      <table class="moz-email-headers-table" cellpadding="0"
        cellspacing="0" border="0">
        <tbody>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">Subject:
            </th>
            <td>WG Review: Authentication and Authorization for
              Constrained Environments (ace)</td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">Date: </th>
            <td>Wed, 4 Jun 2014 12:14:07 -0700</td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">From: </th>
            <td>The IESG <a class="moz-txt-link-rfc2396E" href="mailto:iesg-secretary@ietf.org">&lt;iesg-secretary@ietf.org&gt;</a></td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">Reply-To:
            </th>
            <td><a class="moz-txt-link-rfc2396E" href="mailto:ietf@ietf.org">&lt;ietf@ietf.org&gt;</a></td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">To: </th>
            <td>IETF-Announce <a class="moz-txt-link-rfc2396E" href="mailto:ietf-announce@ietf.org">&lt;ietf-announce@ietf.org&gt;</a></td>
          </tr>
          <tr>
            <th align="RIGHT" nowrap="nowrap" valign="BASELINE">CC: </th>
            <td>ace WG <a class="moz-txt-link-rfc2396E" href="mailto:ace@ietf.org">&lt;ace@ietf.org&gt;</a></td>
          </tr>
        </tbody>
      </table>
      <br>
      <br>
      <pre>A new IETF working group has been proposed in the Security Area. The IESG
has not made any determination yet. The following draft charter was
submitted, and is provided for informational purposes only. Please send
your comments to the IESG mailing list (iesg at ietf.org) by 2014-06-14.

Authentication and Authorization for Constrained Environments (ace)
------------------------------------------------
Current Status: Proposed WG

Chairs:
  Hannes Tschofenig <a class="moz-txt-link-rfc2396E" href="mailto:Hannes.Tschofenig@gmx.net">&lt;Hannes.Tschofenig@gmx.net&gt;</a>
  Kepeng Li <a class="moz-txt-link-rfc2396E" href="mailto:likepeng@huawei.com">&lt;likepeng@huawei.com&gt;</a>

Assigned Area Director:
  Kathleen Moriarty <a class="moz-txt-link-rfc2396E" href="mailto:Kathleen.Moriarty.ietf@gmail.com">&lt;Kathleen.Moriarty.ietf@gmail.com&gt;</a>

Mailing list
  Address: <a class="moz-txt-link-abbreviated" href="mailto:ace@ietf.org">ace@ietf.org</a>
  To Subscribe: <a class="moz-txt-link-freetext" href="https://www.ietf.org/mailman/listinfo/ace">https://www.ietf.org/mailman/listinfo/ace</a>
  Archive: <a class="moz-txt-link-freetext" href="http://www.ietf.org/mail-archive/web/ace/current/maillist.html">http://www.ietf.org/mail-archive/web/ace/current/maillist.html</a>

Charter:

Authentication and Authorization for Constrained
Environment (ACE)

The IETF has recently developed protocols for use in constrained
environments, where network nodes are limited in CPU, memory and power.  
REST architecture is widely used for such constrained environments.
It has been observed that Internet protocols can be applied to these
constrained environments, often only requiring minor tweaking and
profiling. In other cases, new protocols have been defined to address
the specific requirements of constrained environments. An example of
such a protocol is the Constrained Application Protocol (CoAP).

As in other environments, authentication and authorization questions
also arise in constrained environments. For example, a door lock has to
authorize the person seeking access using a "digital key". Where is the
authorization policy stored? How does the digital key communicate with
the lock? Does the lock interact with an authorization server to obtain
authorization information? How can access be temporarily granted to
other persons? How can access be revoked? These types of questions have
been answered by existing protocols for use cases outside constrained
environments, however in constrained environments, additional and
different requirements pose challenges for the use of various security
protocols. In particular, the need arises for a dynamic and fine grained
access control mechanism, where clients and/or resource servers are
constrained.

The IETF has a long history in developing three-party authentication and
authorization protocols for distributed environments. Examples include
Kerberos, the Public Key Infrastructure (PKI), the Authentication,
Authorization and Accounting (AAA) infrastructure, and the Web
Authorization Protocol (OAuth). All these protocols enjoy widespread
deployment on the Internet. Although they all aim to solve a similar
goal, at an abstract level, they offer quite different functions and
utilize different message exchanges. These differences result from the
main deployment use cases they were designed for respectively.

Requirements derived from use cases may indicate that existing work is
useful as basis for a solution for constrained environments. These
protocols, however, were not optimized for constrained environments. 
Additional requirements that need to be taken into account are the lack 
of a suitable user-interface and the inability of embedded devices to 
contact an authorization server in real-time with every resource access 
request due to intermittent connectivity, etc.

This working group therefore aims to produce a standardized solution for
authentication and authorization to enable authorized access (Get, Put,
Post, Delete) to resources identified by a URI and hosted on a resource
server in constrained environments. As a starting point, the working
group will assume that access to resources at a resource server by a
client device takes place using CoAP and is protected by DTLS. Both
resource server and client may be constrained. This access will be
mediated by an authorization server, which is not considered to be
constrained.

Existing authentication and authorization protocols will be evaluated 
and used where applicable to build the constrained-environment solution. 
This requires relevant specifications to be reviewed for suitability,
selecting a subset of them and restricting the options within each of 
the specifications. Some functionality, however, may not be available in
existing protocols, in which case the solution may also involve new
protocol work. Leveraging existing work means the working group benefits
from available security analysis, implementation, and deployment
experience. Moreover, a standardized solution for federated
authentication and authorization will help to stimulate the deployment
of constrained devices that provide increased security.

Once progress in identifying suitable candidate solutions has been made,
the working group will verify whether the same mechanisms are also
applicable beyond the use of CoAP and DTLS, which are the two main
protocols the group will focus on for access to resources. In
particular, the ability to use the developed solution over HTTP and TLS
will be investigated. Note that the initial focus is on CoAP and HTTP
with DTLS and TLS. Other security protocols may be considered as long as 
the primary focus is maintained. The group is scoped to work only on the 
web protocols and data carried within them. Furthermore, to guarantee 
smooth transition, the integration with existing deployments will be 
studied, particularly concerning the use of protocol translation 
proxies.

This work does not make the assumption that the party offering
application layer services is always the same party offering network
access services.

The working group has the following tasks:

1) Produce use cases and requirements

2) Identify authentication and authorization mechanisms suitable for
resource access in constrained environments.

Milestones:

Jul 2014 Submit "Use cases and Requirements" as a WG item.
Dec 2014 Submit "Authentication and Authorization Solution" as a WG 
         item.
Apr 2015 Optionally, submit "Use cases and Requirements" document to the
         IESG for publication as an Informational RFC.
Jul 2016 Submit "Authentication and Authorization Solution"
         specification to the IESG for publication as a Proposed 
         Standard.

.

</pre>
      <br>
    </div>
    <br>
  </body>
</html>

--------------080303040908070509010805--


From nobody Sat Jun  7 16:32:22 2014
Return-Path: <aland@freeradius.org>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0CF921A025D for <aaa-doctors@ietfa.amsl.com>; Sat,  7 Jun 2014 16:32:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.149
X-Spam-Level: 
X-Spam-Status: No, score=0.149 tagged_above=-999 required=5 tests=[BAYES_50=0.8, RP_MATCHES_RCVD=-0.651] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id y_agGWL9smyg for <aaa-doctors@ietfa.amsl.com>; Sat,  7 Jun 2014 16:32:16 -0700 (PDT)
Received: from power.freeradius.org (power.freeradius.org [88.190.25.44]) by ietfa.amsl.com (Postfix) with ESMTP id 068C11A0259 for <aaa-doctors@ietf.org>; Sat,  7 Jun 2014 16:32:15 -0700 (PDT)
Received: by power.freeradius.org (Postfix, from userid 1000) id EDA9222402AF; Sun,  8 Jun 2014 01:32:06 +0200 (CEST)
From: aland@freeradius.org
To: <aaa-doctors@ietf.org>
X-Mailer: mail (GNU Mailutils 2.99.98)
Message-Id: <20140607233206.EDA9222402AF@power.freeradius.org>
Date: Sun,  8 Jun 2014 01:32:06 +0200 (CEST)
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/mPXvOhjxNgUBIZ2dSv7vCZcFO2U
Subject: [AAA-DOCTORS] Automatic tech report for Sun Jun 8 01:32:06 CEST 2014
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 07 Jun 2014 23:32:18 -0000

  This is an automatically generated email.  It lists the IETF internet-drafts
which are WG items and which reference RADIUS.  Drafts
from the RADEXT and DIME working groups are not included.

--
draft-ietf-abfab-aaa-saml-09                      Active	
draft-ietf-abfab-arch-12                          In IESG processing - ID Tracker state <Approved-announcement to be sent::Point Raised - writeup needed>	
draft-ietf-netmod-system-mgmt-16                  In IESG processing - ID Tracker state <RFC Ed Queue>	
draft-ietf-softwire-map-radius-01                 Active	


From nobody Sat Jun 14 16:32:12 2014
Return-Path: <aland@freeradius.org>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DF0A11B2A32 for <aaa-doctors@ietfa.amsl.com>; Sat, 14 Jun 2014 16:32:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.151
X-Spam-Level: 
X-Spam-Status: No, score=-1.151 tagged_above=-999 required=5 tests=[BAYES_05=-0.5, RP_MATCHES_RCVD=-0.651] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5vUwUSqEDbFt for <aaa-doctors@ietfa.amsl.com>; Sat, 14 Jun 2014 16:32:09 -0700 (PDT)
Received: from power.freeradius.org (power.freeradius.org [88.190.25.44]) by ietfa.amsl.com (Postfix) with ESMTP id 554ED1B2A3D for <aaa-doctors@ietf.org>; Sat, 14 Jun 2014 16:32:08 -0700 (PDT)
Received: by power.freeradius.org (Postfix, from userid 1000) id F24F0224020D; Sun, 15 Jun 2014 01:32:06 +0200 (CEST)
From: aland@freeradius.org
To: <aaa-doctors@ietf.org>
X-Mailer: mail (GNU Mailutils 2.99.98)
Message-Id: <20140614233206.F24F0224020D@power.freeradius.org>
Date: Sun, 15 Jun 2014 01:32:06 +0200 (CEST)
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/TbLoTCjGJNuwMSpUhoqK7pvZAZo
Subject: [AAA-DOCTORS] Automatic tech report for Sun Jun 15 01:32:06 CEST 2014
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 14 Jun 2014 23:32:11 -0000

  This is an automatically generated email.  It lists the IETF internet-drafts
which are WG items and which reference RADIUS.  Drafts
from the RADEXT and DIME working groups are not included.

--
draft-ietf-abfab-aaa-saml-09                      Active	
draft-ietf-abfab-arch-12                          In IESG processing - ID Tracker state <Approved-announcement to be sent::Point Raised - writeup needed>	
draft-ietf-netmod-system-mgmt-16                  In IESG processing - ID Tracker state <RFC Ed Queue>	
draft-ietf-softwire-map-radius-01                 Active	


From nobody Sat Jun 21 16:32:42 2014
Return-Path: <aland@freeradius.org>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2441B1A0283 for <aaa-doctors@ietfa.amsl.com>; Sat, 21 Jun 2014 16:32:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.551
X-Spam-Level: 
X-Spam-Status: No, score=-2.551 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RP_MATCHES_RCVD=-0.651] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id QSwxZN_Dst5R for <aaa-doctors@ietfa.amsl.com>; Sat, 21 Jun 2014 16:32:39 -0700 (PDT)
Received: from power.freeradius.org (power.freeradius.org [88.190.25.44]) by ietfa.amsl.com (Postfix) with ESMTP id 47E461A040C for <aaa-doctors@ietf.org>; Sat, 21 Jun 2014 16:32:38 -0700 (PDT)
Received: by power.freeradius.org (Postfix, from userid 1000) id 62DD122403D4; Sun, 22 Jun 2014 01:32:07 +0200 (CEST)
From: aland@freeradius.org
To: <aaa-doctors@ietf.org>
X-Mailer: mail (GNU Mailutils 2.99.98)
Message-Id: <20140621233207.62DD122403D4@power.freeradius.org>
Date: Sun, 22 Jun 2014 01:32:07 +0200 (CEST)
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/1liU5NitFbRbqheU_7Y7VI23sic
Subject: [AAA-DOCTORS] Automatic tech report for Sun Jun 22 01:32:07 CEST 2014
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 21 Jun 2014 23:32:41 -0000

  This is an automatically generated email.  It lists the IETF internet-drafts
which are WG items and which reference RADIUS.  Drafts
from the RADEXT and DIME working groups are not included.

--
draft-ietf-abfab-aaa-saml-09                      Active	
draft-ietf-abfab-arch-12                          In IESG processing - ID Tracker state <Approved-announcement to be sent::Point Raised - writeup needed>	
draft-ietf-netmod-system-mgmt-16                  In IESG processing - ID Tracker state <RFC Ed Queue>	
draft-ietf-softwire-map-radius-02                 Active	


From nobody Mon Jun 23 14:12:27 2014
Return-Path: <bclaise@cisco.com>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7346D1B2BFA; Mon, 23 Jun 2014 14:12:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.452
X-Spam-Level: 
X-Spam-Status: No, score=-7.452 tagged_above=-999 required=5 tests=[BAYES_50=0.8, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id udtvrcVQB3Kp; Mon, 23 Jun 2014 14:12:14 -0700 (PDT)
Received: from aer-iport-4.cisco.com (aer-iport-4.cisco.com [173.38.203.54]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5B0361B2C3E; Mon, 23 Jun 2014 14:12:13 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=4834; q=dns/txt; s=iport; t=1403557934; x=1404767534; h=message-id:date:from:mime-version:to:subject:references: in-reply-to:content-transfer-encoding; bh=I0WqsR1AJrX71LeyFMdjfHvR7oBQgkERkvs6A7ClH44=; b=P+FsuK+0pAyJjpZMFlEn9CmD4oLak/+G49byilFLmZiwanYUiK6mKmnf u3qD8wPWE15S081J0vVOUpEWWnWHq+aLJWNhpj+0z/NEDa89OGwB2qUJM m8F3Zqefz1Khv1jLFfr4atSJwKV/jeEEv1zi81SCtauw5HH54gNnyCPtf E=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AtIEAHOXqFOtJssW/2dsb2JhbABQCYNfqx0BAQEBAQeZNQGBJnWEAwEBAQQ4QA0ELBYPCQMCAQIBOwoGAQwGAgEBiD4Nw1MTBIVjhXeCQAcKAVeEQwEDmkyGfYxmggCBRDuBOg
X-IronPort-AV: E=Sophos;i="5.01,532,1400025600"; d="scan'208";a="92044573"
Received: from aer-iport-nat.cisco.com (HELO aer-core-4.cisco.com) ([173.38.203.22]) by aer-iport-4.cisco.com with ESMTP; 23 Jun 2014 21:12:10 +0000
Received: from [10.60.67.84] (ams-bclaise-8913.cisco.com [10.60.67.84]) by aer-core-4.cisco.com (8.14.5/8.14.5) with ESMTP id s5NLC9Hd013200; Mon, 23 Jun 2014 21:12:09 GMT
Message-ID: <53A89829.1010407@cisco.com>
Date: Mon, 23 Jun 2014 23:12:09 +0200
From: Benoit Claise <bclaise@cisco.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.6.0
MIME-Version: 1.0
To: "aaa-doctors@ietf.org" <aaa-doctors@ietf.org>, "MIB Doctors (E-mail)" <mib-doctors@ietf.org>, YANG Doctors <yang-doctors@ietf.org>, "ops-dir@ietf.org" <ops-dir@ietf.org>, "pm-dir@ietf.org" <pm-dir@ietf.org>, IETF DNS Directorate <dns-dir@ietf.org>
References: <20140619223558.21435.31164.idtracker@ietfa.amsl.com>
In-Reply-To: <20140619223558.21435.31164.idtracker@ietfa.amsl.com>
X-Forwarded-Message-Id: <20140619223558.21435.31164.idtracker@ietfa.amsl.com>
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/W8rKm9FXF0BhoMn4B7Wjvi-q-8g
Subject: [AAA-DOCTORS] Fwd: [IESG-AGENDA-DIST] Summarized Agenda for the 2014-06-26 IESG Teleconference
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 23 Jun 2014 21:12:18 -0000

Dear all,

Please find below the agenda of the June 26th IESG telechat.
Please send your questions, comments and concerns before June 25th COB.

Thanks and Regards, Benoit.

-------- Original Message --------

INTERNET ENGINEERING STEERING GROUP (IESG)
Summarized Agenda for the 2014-06-26 IESG Teleconference

This agenda was generated at 2014-06-19 15:34:10 PDT
Up-to-date web version of this agenda can be found at:
https://datatracker.ietf.org/iesg/agenda/



2. Protocol Actions
2.1 WG Submissions
2.1.1 New Items
     
   o draft-ietf-hip-rfc4843-bis-05  - IETF stream
     An IPv6 Prefix for Overlay Routable Cryptographic Hash Identifiers
     Version 2 (ORCHIDv2) (Proposed Standard)
     Token: Ted Lemon
     IANA Review: IANA - Not OK
     Consensus: Yes

   o draft-ietf-hip-rfc5201-bis-14  - IETF stream
     Host Identity Protocol Version 2 (HIPv2) (Proposed Standard)
     Token: Ted Lemon
     IANA Review: IANA - Not OK
     Consensus: Yes

   o draft-ietf-hip-rfc5202-bis-05  - IETF stream
     Using the Encapsulating Security Payload (ESP) Transport Format with
     the Host Identity Protocol (HIP) (Proposed Standard)
     Token: Ted Lemon
     IANA Review: IANA OK - Actions Needed
     Consensus: Yes

   o draft-ietf-p2psip-self-tuning-14  - IETF stream
     Self-tuning Distributed Hash Table (DHT) for REsource LOcation And
     Discovery (RELOAD) (Proposed Standard)
     Token: Alissa Cooper
     IANA Review: Version Changed - Review Needed
     Consensus: Yes

   o draft-ietf-v6ops-clatip-03  - IETF stream
     IPv4 Service Continuity Prefix (Proposed Standard)
     Token: Joel Jaeggli
     IANA Review: IANA - Not OK
     Consensus: Yes

   o draft-ietf-appsawg-sieve-duplicate-07  - IETF stream
     Sieve Email Filtering: Detecting Duplicate Deliveries (Proposed
     Standard)
     Token: Barry Leiba
     IANA Review: Version Changed - Review Needed
     Consensus: Yes

   o draft-ietf-tram-stun-dtls-03  - IETF stream
     Datagram Transport Layer Security (DTLS) as Transport for Session
     Traversal Utilities for NAT (STUN) (Proposed Standard)
     Token: Spencer Dawkins
     IANA Review: IANA - Review Needed
     Consensus: Unknown
     Last call expires: 2014-06-25

2.1.2 Returning Items
     
   o draft-ietf-mboned-auto-multicast-17  - IETF stream
     Automatic Multicast Tunneling (Proposed Standard)
     Note: Lenny Giuliano (lenny@juniper.net) is the Document Shepherd.
     Token: Joel Jaeggli
     IANA Review: IANA OK - Actions Needed
     Consensus: Yes

2.2 Individual Submissions
2.2.1 New Items
     
   o draft-salgueiro-dispatch-websocket-sipclf-01  - IETF stream
     Indicating WebSocket Protocol as a Transport in the Session
     Initiation Protocol (SIP) Common Log Format (CLF) (Proposed
     Standard)
     Token: Richard Barnes
     IANA Review: IANA OK - Actions Needed
     Consensus: Unknown

2.2.2 Returning Items
     
   o draft-kelsey-intarea-mesh-link-establishment-06  - IETF stream
     Mesh Link Establishment (Proposed Standard)
     Note: Robert Cragie (robert.cragie@gridmerge.com) is the document
     shepherd.
     Token: Ted Lemon
     IANA Review: IANA - Not OK
     Consensus: Yes

2.3 Status Changes
2.3.1 New Items

   NONE

2.3.2 Returning Items

   NONE

3. Document Actions
3.1 WG Submissions
3.1.1 New Items
     
   o draft-ietf-v6ops-enterprise-incremental-ipv6-05  - IETF stream
     Enterprise IPv6 Deployment Guidelines (Informational)
     Token: Joel Jaeggli
     IANA Review: IANA OK - No Actions Needed
     Consensus: Yes

3.1.2 Returning Items

   NONE

3.2 Individual Submissions Via AD
3.2.1 New Items
     
   o draft-adolf-dvb-urn-upd-00  - IETF stream
     Update to the Registrant Information for the Digital Video
     Broadcasting Project (DVB) Uniform Resource Name (URN) Namespace
     (Informational)
     Token: Barry Leiba
     IANA Review: IANA OK - Actions Needed
     Consensus: Unknown

3.2.2 Returning Items

   NONE

3.3 Status Changes
3.3.1 New Items

   NONE

3.3.2 Returning Items

   NONE

3.4 IRTF and Independent Submission Stream Documents
3.4.1 New Items

   o conflict-review-wilde-xml-patch-00
     IETF conflict review for draft-wilde-xml-patch
       draft-wilde-xml-patch-10
       A Media Type for XML Patch Operations (ISE: Informational)
     Token: Barry Leiba

3.4.2 Returning Items

   NONE

4. Working Group Actions
4.1 WG Creation
4.1.1 Proposed for IETF Review

   o Transport Services (taps)

4.1.2 Proposed for Approval

   o TCP Increased Security (tcpinc)

4.2 WG Rechartering
4.2.1 Under Evaluation for IETF Review

   NONE

4.2.2 Proposed for Approval

   o Domain Name System Operations (dnsop)





From nobody Sat Jun 28 16:32:12 2014
Return-Path: <aland@freeradius.org>
X-Original-To: aaa-doctors@ietfa.amsl.com
Delivered-To: aaa-doctors@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1EC191A01E2 for <aaa-doctors@ietfa.amsl.com>; Sat, 28 Jun 2014 16:32:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.149
X-Spam-Level: 
X-Spam-Status: No, score=0.149 tagged_above=-999 required=5 tests=[BAYES_50=0.8, RP_MATCHES_RCVD=-0.651] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id lGr9TE9MI9Cn for <aaa-doctors@ietfa.amsl.com>; Sat, 28 Jun 2014 16:32:09 -0700 (PDT)
Received: from power.freeradius.org (power.freeradius.org [88.190.25.44]) by ietfa.amsl.com (Postfix) with ESMTP id 5D8641A01E1 for <aaa-doctors@ietf.org>; Sat, 28 Jun 2014 16:32:09 -0700 (PDT)
Received: by power.freeradius.org (Postfix, from userid 1000) id 1096722403F7; Sun, 29 Jun 2014 01:32:08 +0200 (CEST)
From: aland@freeradius.org
To: <aaa-doctors@ietf.org>
X-Mailer: mail (GNU Mailutils 2.99.98)
Message-Id: <20140628233208.1096722403F7@power.freeradius.org>
Date: Sun, 29 Jun 2014 01:32:08 +0200 (CEST)
Archived-At: http://mailarchive.ietf.org/arch/msg/aaa-doctors/ScdObr_k37Xc4Zn7ILtNkJMu64A
Subject: [AAA-DOCTORS] Automatic tech report for Sun Jun 29 01:32:07 CEST 2014
X-BeenThere: aaa-doctors@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: AAA Doctors E-mail List <aaa-doctors.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/aaa-doctors/>
List-Post: <mailto:aaa-doctors@ietf.org>
List-Help: <mailto:aaa-doctors-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/aaa-doctors>, <mailto:aaa-doctors-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 28 Jun 2014 23:32:11 -0000

  This is an automatically generated email.  It lists the IETF internet-drafts
which are WG items and which reference RADIUS.  Drafts
from the RADEXT and DIME working groups are not included.

--
draft-ietf-abfab-aaa-saml-09                      Active	
draft-ietf-abfab-arch-12                          In IESG processing - ID Tracker state <Approved-announcement to be sent::Point Raised - writeup needed>	
draft-ietf-netmod-system-mgmt-16                  In IESG processing - ID Tracker state <RFC Ed Queue>	
draft-ietf-softwire-map-radius-02                 Active	

