Re: [Last-Call] Last Call: <draft-gont-numeric-ids-sec-considerations-06.txt> (Security Considerations for Transient Numeric Identifiers Employed in Network Protocols) to Best Current Practice

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 





On Dec 17, 2020, at 3:39 PM, Ted Lemon <mellon@xxxxxxxxx> wrote:

On Dec 17, 2020, at 6:35 PM, Joseph Touch <touch@xxxxxxxxxxxxxx> wrote:
What I want to avoid is breaking the potential for IoT devices to use these protocols simply because they can’t implement the approaches described here.

Hardware RNGs are pretty common in embedded devices nowadays.

In Raspberry Pi, yes. PICs and Arduinos, no. Other IoTs, YMMV.

I don’t think this is actually a practical problem, although I am curious to know if you know of new hardware for which it would be a problem. I will admit that ancient hardware might have trouble, but it probably won’t be updated, given the state of the art at present, so I don’t think such a device poses a serious problem.

What you add as a requirement ends up excluding as a platform. That’s the antithesis of Internet design.

The point is that these are tradeoffs of *implementation*, and should not be described as protocol deficiencies.

Joe
-- 
last-call mailing list
last-call@xxxxxxxx
https://www.ietf.org/mailman/listinfo/last-call

[Index of Archives]     [IETF Annoucements]     [IETF]     [IP Storage]     [Yosemite News]     [Linux SCTP]     [Linux Newbies]     [Mhonarc]     [Fedora Users]

  Powered by Linux