[Fiware-security] TR: Review of Architecture and Open Specifications of Security Chapter

Alexandre Boeglin alexandre.boeglin at inria.fr
Fri Sep 7 12:13:22 CEST 2012


Hello Kreshnik,

Here is our answer to the two comments made by Pierangelo Garino on the
IoT Fuzzer:

> Is this fuzzer tool integrated with IoT developments, i.e. can it be
> used in conjunction with the IoT GEs? It doesn't look like 6LowPAN is
> one of the radio technologies adopted by IoT gateway.

> Same comment about Fuzzer as above. It really seems there is no
> correlation with the IoT chapter activity on the Gateway. The
> interaction with the IoT device should be through that GE.

Actually, the Protocol Adapter GE from the IoT chapter is supposed to
offer an adaptation layer between the Gateway and any IoT device, as
long as the device includes an IP stack and suppoorts the CoAP protocol
(from the IETF "CoRE" group).
https://forge.fi-ware.eu/plugins/mediawiki/wiki/fiware/index.php/FIWARE.ArchitectureDescription.IoT.Gateway.ProtocolAdapter

So, The IoT chapter mostly concentrates on the application layer, and
relies on existing standards for the lower network layers.

And 6LoWPAN & RPL are simply one of these standards, that allow to
communicate with IoT devices using IPv6, and they are also being defined
by the IETF (by the "6lowpan" and "roll" groups).

So, basically, there is no conflict here, as the Fuzzer and the IoT WP
don't target the same layers.

The Fuzzer can be used as-is by Use Cases that decide to deploy devices
that use the 6LoWPAN stack, and it can support any protocol for which a
scapy module exists.

And in the event Use Cases decide to adopt other standards, and have an
interest in the Fuzzer, we can also discuss the possibility for us to
implement the necessary modules.


Best regards,
Alexandre


Le mercredi 05 septembre 2012 à 14:16, MUSARAJ Kreshnik a écrit:
> Dear all,
> 
> We are only two days away from the deadline that we had fixed regarding the improvements following the peer-review of WP8.
> 
> Until now, only ATOS and DT have reacted and notified progress on the matter. If I have omitted any partner, please signal it to me.
> 
> You are strongly urged to take into account the review in your respective targets, detailed in my preceding mail below. Also, please notify Pascal, Daniel or myself, as soon as this is done.
> 
> Thanks to all for the effort.
> 
> Best regards,
> Kreshnik
> 
> ---THALES GROUP RESTRICTED---
> 
> De : MUSARAJ Kreshnik
> Envoyé : jeudi 30 août 2012 18:10
> À : fiware-security at lists.fi-ware.eu
> Cc : 'xavier.aghina at orange.com'; 'PascalBisson'; 'Antonio Garcia Vazquez'; 'TRABELSI, Slim'; 'Alexandre Boeglin'; EGAN Richard; 'Wolfgang.Steigerwald at telekom.de'; 'Michael Osborne'; 'ext Anja Lehmann'; 'Rodrigo Diaz Rodriguez'; WALLER Adrian; 'DI CERBO, Francesco'; GIDOIN Daniel; 'Seidl, Robert (NSN - DE/Munich)'; BISSON Pascal; LELEU Philippe; GASPARD Lucie
> Objet : RE: [Fiware-security] TR: Review of Architecture and Open Specifications of Security Chapter
> 
> Dear all,
> 
> This is a kind reminder, following the request from Daniel, regarding the review on the Security GE that we all need to address.
> 
> Most importantly, please provide the necessary answers/comments/modifications of your corresponding sections for Friday next week, September 7.
> 
> More specifically, below are the targets and the corresponding partners that need to address the given target review:
> 
> Architecture:
> Fuzzer --> INRIA
> Countermeasures --> TCS
> Visualization --> TRT-UK
> Context-based security & compliance --> ATOS
> USDL-SEC --> SAP
> Identity Management --> NSN + DT
> Privacy --> IBM + SAP
> Data handling --> SAP
> Optional security enablers (altogether) --> TCS+INRIA+SAP+ORANGE
> 
> Open Specifications:
> OSSIM-SIEM --> ATOS
> SSS --> TCS
> Identity Management --> MSN + DT
> DB Anonymizer --> SAP
> Data handling --> SAP
> 
> Moreover, Daniel just gave to all of us the permission to modify and update the pages as administrators, so everyone of you can personally make the necessary changes while accounting for the reviews.
> 
> We will confirm and discuss about this during tomorrow's callconf.
> 
> Best regards,
> Kreshnik
> 
> 
> 
> Von: fiware-security-bounces at lists.fi-ware.eu<mailto:fiware-security-bounces at lists.fi-ware.eu> [mailto:fiware-security-bounces at lists.fi-ware.eu] Im Auftrag von GIDOIN Daniel
> Gesendet: Dienstag, 28. August 2012 17:59
> An: fiware-security at lists.fi-ware.eu<mailto:fiware-security at lists.fi-ware.eu>
> Betreff: [Fiware-security] TR: Review of Architecture and Open Specifications of Security Chapter
> 
> Dear all,
> 
> Thank a lot to take into account the attached review on the  Secutity GE which concerns you, and to keep me informed.
> 
> Best regards
> 
> Daniel
> 
> De : Garino Pierangelo [mailto:pierangelo.garino at telecomitalia.it]
> Envoyé : mardi 28 août 2012 16:06
> À : BISSON Pascal; GIDOIN Daniel; fiware-wpl at lists.fi-ware.eu<mailto:fiware-wpl at lists.fi-ware.eu>; fiware-wpa at lists.fi-ware.eu<mailto:fiware-wpa at lists.fi-ware.eu>
> Objet : Review of Architecture and Open Specifications of Security Chapter
> 
> Dear All,
> 
> Please find attached the document containing the comments for the Security chapter. The document contains two tables concerning Architecture description and Open Specs review respectively.
> 
> BR
> Pier
> 
> 
> ------------------------------------------------------------------
> Telecom Italia
> Pierangelo Garino
> Innovation & Industry Relations - Research & Prototyping
> Via G. Reiss Romoli 274, I-10148 TORINO
> Tel: +39 011 228 7142
> 
> Questo messaggio e i suoi allegati sono indirizzati esclusivamente alle persone indicate. La diffusione, copia o qualsiasi altra azione derivante dalla conoscenza di queste informazioni sono rigorosamente vietate. Qualora abbiate ricevuto questo documento per errore siete cortesemente pregati di darne immediata comunicazione al mittente e di provvedere alla sua distruzione, Grazie.
> 
> This e-mail and any attachments is confidential and may contain privileged information intended for the addressee(s) only. Dissemination, copying, printing or use by anybody else is unauthorised. If you are not the intended recipient, please delete this message and any attachments and advise the sender by return e-mail, Thanks.
> [cid:image001.gif at 01CD8B70.45F19270]Rispetta l'ambiente. Non stampare questa mail se non è necessario.
> 
> 



-- 
Alexandre Boeglin
Équipe-Projet Madynes
Inria
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 3058 bytes
Desc: not available
URL: <https://lists.fiware.org/private/old-fiware-security/attachments/20120907/8abb15e1/attachment.bin>


More information about the Old-Fiware-security mailing list

You can get more information about our cookies and privacy policies clicking on the following links: Privacy policy   Cookies policy