Kris Pister writes: > > Wrong. It leaks the whole content of both packets. > > Tero - it's the L2 MIC that we're talking about. The packets aren't > encrypted at L2.
Yes, they can be. There is security levels 5-7 in 802.15.4 that will encrypt the frames. Is this again one of the unspoken features of 6tisch that L2 encryption cannot be used? > The entire contents of both packets is transmitted in the clear, by design. > End-to-end transport payloads SHOULD be encrypted (in my opinion), > but that's a different topic. Which protocol are you talking about now? I do not think you are talking about 6tisch in general. Yes, in lots of cases there will be end-to-end encryption or protection for the traffic, but I at least have also assumed that there is also possibility for L2 MIC + encryption for the packets in transit in 6tisch. I do not want to rule L2 encryption out in 6tisch. In some cases it is just enough for normal operations, and you do not need upper layer end-to-end encryption as devices are talking to each other directly. Also encrypting the management traffic, routing protocols etc has some uses, just to protect against passive monitoring. -- [email protected] _______________________________________________ 6tisch mailing list [email protected] https://www.ietf.org/mailman/listinfo/6tisch
