Kris Pister writes:
>  > Wrong. It leaks the whole content of both packets.
> 
> Tero - it's the L2 MIC that we're talking about.  The packets aren't 
> encrypted at L2.

Yes, they can be. There is security levels 5-7 in 802.15.4 that will
encrypt the frames.

Is this again one of the unspoken features of 6tisch that L2
encryption cannot be used? 

> The entire contents of both packets is transmitted in the clear, by design.
> End-to-end transport payloads SHOULD be encrypted (in my opinion),
> but that's a different topic.

Which protocol are you talking about now? I do not think you are
talking about 6tisch in general.

Yes, in lots of cases there will be end-to-end encryption or
protection for the traffic, but I at least have also assumed that
there is also possibility for L2 MIC + encryption for the packets in
transit in 6tisch.

I do not want to rule L2 encryption out in 6tisch. In some cases it is
just enough for normal operations, and you do not need upper layer
end-to-end encryption as devices are talking to each other directly.
Also encrypting the management traffic, routing protocols etc has some
uses, just to protect against passive monitoring.
-- 
[email protected]

_______________________________________________
6tisch mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/6tisch

Reply via email to