Hi,

On 12/5/2019 5:17 PM, Tengfei Chang wrote:
Does anyone know other way to make the SF not adapt to unsecured traffic without knowing upper layer field?

I have no idea...

Why can't the "join rate" avoid such undesired cell allocations? If the join rate is properly configured, incoming join requests don't cause such allocations, do they?


https://tools.ietf.org/html/draft-ietf-6tisch-minimal-security-14#section-8.4
   o  join rate: Average data rate (in units of bytes/second) of join
      traffic forwarded into the network that should not be exceeded
      when a joined node operates as a JP, encoded as an unsigned
      integer.


https://tools.ietf.org/html/draft-ietf-6tisch-minimal-security-14#section-7.2
   The PROBING_RATE value at the JP is controlled by the join rate
   parameter, see Section 8.4.2.  Following [RFC7252], the average data
   rate in sending to the JRC must not exceed PROBING_RATE.  For
   security reasons, the average data rate SHOULD be measured over a
   rather short window, e.g.  ACK_TIMEOUT, see Section 9.

The recommended PROBING_RATE is 1 byte/second. I'm not sure how to interpret this value, though.... The time window to calculate the "rate" should be small enough, I believe.

Best,
Yatch

_______________________________________________
6tisch mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/6tisch

Reply via email to