19 Mar 2006 15:16
NEA heads-up
Pekka Savola <pekkas <at> netcore.fi>
2006-03-19 14:16:29 GMT
2006-03-19 14:16:29 GMT
FYI, Some of you probably already know that there'll be an Internet area BoF on Network Endpoint Attachment (NEA). It seems to address an important subset of the distsec problem space. I'd recommend folks join the mailing list and go to BoF to see how it fits in our model (or our model in theirs). Below is my short commentary on it. ---------- Forwarded message ---------- Date: Sun, 19 Mar 2006 16:13:55 +0200 (EET) From: Pekka Savola <pekkas <at> netcore.fi> To: nea <at> ietf.org Subject: heads-up on distsec Hi, I just read the NEA problem statement and it looked rather sensible. What you didn't explain very extensively is your threat model. You can be sure this will come up in the BoF from someone.. You already raise NEA Client self-integrity as an issue in Section 9.3. But is NEA approach good enough here because the first thing a next-generation worm/virus/malware will do is trick the NEA client using one of various techniques, therefore making the real posture undetectable? You may not be aware of the "distsec" effort (the lastest draft rewrite is draft-kaeo-distsec-framework-00.txt), which describes a superset problem. I'd recommend taking a look for ideas how to refine the problem statement, threat(Continue reading)
RSS Feed