60 likes | 66 Vues
Report on major issues in IEEE 802.11i/802.15 liaison, including AES modes, payload levels, key management, and secure handoff challenges for VoIP.
E N D
Project: IEEE P802.15 Working Group for Wireless Personal Area Networks (WPANs) Submission Title: Ft. Lauderdale 802.11i/802.15 Liaison Report. Date Submitted: 17 January, 2003 Source: Daniel V. Bailey Company: NTRU Address: 5 Burlington Woods, Burlington, MA 01803 Voice: 781-418-2522 , FAX: 781-418-2532, E-Mail: dbailey@ntru.com Abstract: Purpose: For information Notice: This document has been prepared to assist the IEEE P802.15. It is offered as a basis for discussion and is not binding on the contributing individual(s) or organization(s). The material in this document is subject to change in form and content after further study. The contributor(s) reserve(s) the right to add, amend or withdraw material contained herein. Release:The contributor acknowledges and accepts that this contribution becomes the property of IEEE and may be made publicly available by P802.15 Daniel V. Bailey, NTRU
Post LB 52 • LB52 concluded before Ft. Lauderdale • Yes: 76.28%, No: 23.72%, Abs: 7.12% • Yes: 209, No: 65, Abs: 21 • Total voting members: 321 • Total returned: 295 • Total returned %: 91.90% • 2,074 comments received • 1,262 technical Daniel V. Bailey, NTRU
Comment Resolution • 11-03-118r1 eliminates a large number of comments by removing CCM spec from TGi draft and referring to the NIST CCM submission. • It’s a publicly-available submission, not a standard. • 15.3 and 15.4 may want to consider this to simplify their specs. • An IETF Internet-Draft is coming soon Daniel V. Bailey, NTRU
Major Issues • OCB removed! CCM the only approved AES mode • MSDU (payload) vs.MPDU (payload+header) level (see 11-03-122r0) • TKIP operates on MSDUs, while CCM operates on MPDUs • Makes it hard to do CCM in host software since fields may not be available • but MSDU-only doesn’t protect MAC headers Daniel V. Bailey, NTRU
Major Issues • Roaming and secure handoff too slow for uninterrupted VoIP (11-03-084r1) • STA moving from AP to AP securely • Key management involves 3 state machines: 802.11 authentication, 802.1x port control, and the EAP (authentication) method • They’re not currently well-synchronized • (11-03-079r0) Daniel V. Bailey, NTRU
Seattle Adhoc • February 17-21, 2003 • For comment resolution Daniel V. Bailey, NTRU