Hi, I'll read your I-D, but:

Srihari Raghavan \(srihari\) <[email protected]> wrote:
    > 2. This allows the owner to change and
    > customize the security posture of the device dynamically and securely
    > and under scale.  3. This lets the owner to selectively enable or
    > disable each of the underlying security parameters that make up the
    > security posture of the device.

Hi, RFC8366 Vouchers are signed by the MASA, not the owner, so this doesn't
follow.

We do desperately need a configuration backup/restore mechanism that can be
audited and trusted, and this does need to be wrapped up into onboarding, but
I don't think it can be done WITHIN the voucher, which is what I'm guessing
you have done.

--
]               Never tell me the odds!                 | ipv6 mesh networks [
]   Michael Richardson, Sandelman Software Works        | network architect  [
]     [email protected]  http://www.sandelman.ca/        |   ruby on rails    [

Attachment: signature.asc
Description: PGP signature

_______________________________________________
Anima mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/anima

Reply via email to