Hi, I'm curious as to the relationship between this TLS WG draft and the DICE profile for IoT (currently in Auth48):https://tools.ietf.org/html/draft-ietf-dice-profile
The dice profile uses two TLS ciphershuites TLS_PSK_WITH_AES_128_CCM_8 (defined in https://tools.ietf.org/html/rfc6655) TLS_ECDHE_ECDSA_WITH_AES_128_CCM_8 (defined in https://tools.ietf.org/html/rfc7251) Notice that the DICE profile defines nothing (it has no IANA considerations). Instead, it reuses definitions established previously per the references above. This draft-ietf-tls-ecdhe-psk-aeak claims to also define IoT-friendly ciphersuites, for example, TLS_ECDHE_PSK_WITH_AES_128_CCM_8_SHA256 However, it does not reference the DICE profile draft. What is the difference between these? thanks, Gabriel On Friday, May 27, 2016 10:19 AM, "internet-dra...@ietf.org" <internet-dra...@ietf.org> wrote: A New Internet-Draft is available from the on-line Internet-Drafts directories. This draft is a work item of the Transport Layer Security of the IETF. Title : ECDHE_PSK with AES-GCM and AES-CCM Cipher Suites for Transport Layer Security (TLS) Authors : John Mattsson Daniel Migault Filename : draft-ietf-tls-ecdhe-psk-aead-00.txt Pages : 7 Date : 2016-05-27 Abstract: This document defines several new cipher suites for the Transport Layer Security (TLS) protocol. The cipher suites are all based on the Ephemeral Elliptic Curve Diffie-Hellman with Pre-Shared Key (ECDHE_PSK) key exchange together with the Authenticated Encryption with Associated Data (AEAD) algorithms AES-GCM and AES-CCM. PSK provides light and efficient authentication, ECDHE provides perfect forward secrecy, and AES-GCM and AES-CCM provides encryption and integrity protection. The IETF datatracker status page for this draft is: https://datatracker.ietf.org/doc/draft-ietf-tls-ecdhe-psk-aead/ There's also a htmlized version available at: https://tools.ietf.org/html/draft-ietf-tls-ecdhe-psk-aead-00 Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org. Internet-Drafts are also available by anonymous FTP at: ftp://ftp.ietf.org/internet-drafts/ _______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls
_______________________________________________ TLS mailing list TLS@ietf.org https://www.ietf.org/mailman/listinfo/tls