Hi,

Sending again to wider ANIMA audience - as I received no response.

Thanks,
Tsippy




From: Mendelson, Tsippy
Sent: Sunday, June 30, 2019 11:18
To: [email protected]
Cc: Ruan, Xiaoyu <[email protected]>; Jayanna, Prabhu 
<[email protected]>; Mendelson, Tsippy <[email protected]>
Subject: Clarification reg old reference in the BRSKI draft to IEEE 802_1AR-2009

Hello,

We have identified a reference to an old spec in BRSKI draft 
draft-ietf-anima-bootstrapping-keyinfra-22.

The draft refers to:

[IDevID]   "IEEE 802.1AR Secure Device Identifier", December 2009,
              <http://standards.ieee.org/findstds/
              standard/802.1AR-2009.html>.
However there is a later spec: 
https://standards.ieee.org/standard/802_1AR-2018.html

The specific quote from 802.1AR-2009 that we would like to ask about is in 
section 2.3.1 "Identification of the Pledge":


The following fields are defined in [IDevID] and [RFC5280]:



   o  The subject field's DN encoding MUST include the "serialNumber"

      attribute with the device's unique serial number.  (from [IDevID]

      section 7.2.8, and [RFC5280] section 4.1.2.4's list of standard

      attributes)

In 802_1AR-2018 we could not find that the "serialNumber" attribute MUST be 
included rather we found SHOULD:
[cid:[email protected]]
Here it says: An IDevID certificate subject field shall be non-null and should 
include a unique device serial number.

We would be happy for a clarification.

Thanks,
Tsippy






Tsippy Mendelson,
Manageability Chief Architect,
IP Technologies Group, SecIP - CSE FW Architect
Intel Israel Design Center
Phone: +972-2-589-2468
Cellular: +972-54-7885061




---------------------------------------------------------------------
Intel Israel (74) Limited

This e-mail and any attachments may contain confidential material for
the sole use of the intended recipient(s). Any review or distribution
by others is strictly prohibited. If you are not the intended
recipient, please contact the sender and delete all copies.
_______________________________________________
Anima mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/anima

Reply via email to