Dear all, We just posted an update of BRSKI-PRM with changes based on - resolved editorial issues discovered after WGLC (note that issues #79 - #84) have been created on the ANIMA github (https://github.com/anima-wg/anima-brski-prm/issues) and are currently worked on - resolved first comments from the Shepherd review as discussed in PR #85 on the ANIMA github (https://github.com/anima-wg/anima-brski-prm/pull/85)
We will provide an update on the draft during IETF 116 Best regards Steffen -----Original Message----- From: internet-dra...@ietf.org <internet-dra...@ietf.org> Sent: Freitag, 10. März 2023 18:24 To: Michael C. Richardson <mcr+i...@sandelman.ca>; Eliot Lear <l...@cisco.com>; Michael Richardson <mcr+i...@sandelman.ca>; Fries, Steffen (T CST) <steffen.fr...@siemens.com>; Werner, Thomas (T CST SEA-DE) <thomas-wer...@siemens.com> Subject: New Version Notification for draft-ietf-anima-brski-prm-08.txt A new version of I-D, draft-ietf-anima-brski-prm-08.txt has been successfully submitted by Steffen Fries and posted to the IETF repository. Name: draft-ietf-anima-brski-prm Revision: 08 Title: BRSKI with Pledge in Responder Mode (BRSKI-PRM) Document date: 2023-03-10 Group: anima Pages: 83 URL: https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.ietf.org%2Farchive%2Fid%2Fdraft-ietf-anima-brski-prm-08.txt&data=05%7C01%7Csteffen.fries%40siemens.com%7Cb5f112a0fe09430847c508db218c2df9%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C638140658171777734%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=9BNudVJnmRxdVSDMnUlA1n21TvHDfmfYnpujwFoG4WQ%3D&reserved=0 Status: https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-ietf-anima-brski-prm%2F&data=05%7C01%7Csteffen.fries%40siemens.com%7Cb5f112a0fe09430847c508db218c2df9%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C638140658171777734%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=M4b8LQ2FJxeTA2BucVgTAbkOyg8c9dcJ8mOQ3DhCIoI%3D&reserved=0 Htmlized: https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fhtml%2Fdraft-ietf-anima-brski-prm&data=05%7C01%7Csteffen.fries%40siemens.com%7Cb5f112a0fe09430847c508db218c2df9%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C638140658171777734%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=H5ETTK1GJdGZuB243h9UWtULdXVfbJqcth6AJbc6BiI%3D&reserved=0 Diff: https://eur01.safelinks.protection.outlook.com/?url=https%3A%2F%2Fauthor-tools.ietf.org%2Fiddiff%3Furl2%3Ddraft-ietf-anima-brski-prm-08&data=05%7C01%7Csteffen.fries%40siemens.com%7Cb5f112a0fe09430847c508db218c2df9%7C38ae3bcd95794fd4addab42e1495d55a%7C1%7C0%7C638140658171933974%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&sdata=7hdKBO9AzP0FalT7tUjYo0F%2BsshuhKY0SiBciTgLqSE%3D&reserved=0 Abstract: This document defines enhancements to Bootstrapping a Remote Secure Key Infrastructure (BRSKI) [RFC8995] to enable bootstrapping in domains featuring no or only limited connectivity between a pledge and the domain registrar. It specifically changes the interaction model from a pledge-initiated mode, as used in BRSKI, to a pledge- responding mode, where the pledge is in server role. For this, BRSKI with Pledge in Responder Mode (BRSKI-PRM) introduces a new component, the registrar-agent, which facilitates the communication between pledge and registrar during the bootstrapping phase. To establish the trust relation between pledge and registrar, BRSKI-PRM relies on object security rather than transport security. The approach defined here is agnostic to the enrollment protocol that connects the domain registrar to the domain CA. The IETF Secretariat _______________________________________________ Anima mailing list Anima@ietf.org https://www.ietf.org/mailman/listinfo/anima