A New Internet-Draft is available from the on-line Internet-Drafts directories. Title : Controlling Actuators with CoAP Authors : John Mattsson John Fornehed Goran Selander Francesca Palombini Filename : draft-mattsson-core-coap-actuators-00.txt Pages : 15 Date : 2015-10-19 Abstract: Being able to trust information from sensors and to securely control actuators is essential in a world of connected and networking things interacting with the physical world. In this memo we show that just using COAP with a security protocol like DTLS or OSCOAP is not enough. We describe several serious attacks any on-path attacker can do, and discuss tougher requirements and mechanisms to mitigate the attacks. While this document is focused on actuators, one of the attacks applies equally well to sensors using DTLS. The IETF datatracker status page for this draft is: https://datatracker.ietf.org/doc/draft-mattsson-core-coap-actuators/ There's also a htmlized version available at: https://tools.ietf.org/html/draft-mattsson-core-coap-actuators-00 Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org. Internet-Drafts are also available by anonymous FTP at: ftp://ftp.ietf.org/internet-drafts/ _______________________________________________ I-D-Announce mailing list I-D-Announce@ietf.org https://www.ietf.org/mailman/listinfo/i-d-announce Internet-Draft directories: http://www.ietf.org/shadow.html or ftp://ftp.ietf.org/ietf/1shadow-sites.txt