Re: [lisp] Deriving Map-Register/Notify authentication key from PSK [Was: Re: Benjamin Kaduk's Discuss on draft-ietf-lisp-rfc6833bis-24: (with DISCUSS and COMMENT)]

2019-03-23 Thread Benjamin Kaduk
On Wed, Mar 20, 2019 at 03:27:26PM -0700, Dino Farinacci wrote: > Ben regarding using PSKs for Map-Registers. How about we do this: > > (1) The ETR and map-server can be provisioned with up to 256 keys. > (2) Each Map-Register uses one of the 256 keys buy doing a random number > modulo 256. >

Re: [lisp] Deriving Map-Register/Notify authentication key from PSK [Was: Re: Benjamin Kaduk's Discuss on draft-ietf-lisp-rfc6833bis-24: (with DISCUSS and COMMENT)]

2019-03-23 Thread Benjamin Kaduk
On Wed, Mar 20, 2019 at 02:10:19PM -0700, Fabio Maino wrote: > On 3/20/19 8:05 AM, Benjamin Kaduk wrote: > > On Mon, Mar 18, 2019 at 03:01:07PM -0700, Fabio Maino wrote: > >> Hi Ben, > >> I'm starting this separated thread to discuss this point. > > Thanks for splitting it off. > > > >> On 2/7/19

Re: [lisp] Deriving Map-Register/Notify authentication key from PSK [Was: Re: Benjamin Kaduk's Discuss on draft-ietf-lisp-rfc6833bis-24: (with DISCUSS and COMMENT)]

2019-03-23 Thread Dino Farinacci
> I'm not sure I understand the need for "use a different key for consecutive > messages", but probably we should just talk about that on Tuesday. Well in your last reply you felt it was okay if we used the nonce in each Map-Register for a new key per message. What this addition brings is use

Re: [lisp] Deriving Map-Register/Notify authentication key from PSK [Was: Re: Benjamin Kaduk's Discuss on draft-ietf-lisp-rfc6833bis-24: (with DISCUSS and COMMENT)]

2019-03-23 Thread Benjamin Kaduk
On Sat, Mar 23, 2019 at 11:06:33AM -0700, Dino Farinacci wrote: > > I'm not sure I understand the need for "use a different key for consecutive > > messages", but probably we should just talk about that on Tuesday. > > Well in your last reply you felt it was okay if we used the nonce in each >

Re: [lisp] Deriving Map-Register/Notify authentication key from PSK [Was: Re: Benjamin Kaduk's Discuss on draft-ietf-lisp-rfc6833bis-24: (with DISCUSS and COMMENT)]

2019-03-23 Thread Benjamin Kaduk
On Sat, Mar 23, 2019 at 05:22:49PM -0500, Benjamin Kaduk wrote: > On Sat, Mar 23, 2019 at 11:06:33AM -0700, Dino Farinacci wrote: > > > I'm not sure I understand the need for "use a different key for > > > consecutive > > > messages", but probably we should just talk about that on Tuesday. > > >