NETCONF over TLS - PowerPoint PPT Presentation

1 / 5
About This Presentation
Title:

NETCONF over TLS

Description:

Not many people use certificate-based client authentication ... PKCS#5 with password-based key derivation ... User-based access-control model. RFC 4680 and RFC ... – PowerPoint PPT presentation

Number of Views:33
Avg rating:3.0/5.0
Slides: 6
Provided by: Bad85
Learn more at: https://www.ietf.org
Category:
Tags: netconf | tls | over | use

less

Transcript and Presenter's Notes

Title: NETCONF over TLS


1
NETCONF over TLS
  • Mohamad Badra
  • draft-badra-tls-netconf-04.txt
  • 70th IETF, December 2007, Vancouver

2
Not many people use certificate-based client
authentication
  • TLS SRP (password authentication) is
    informational
  • Some individuals submissions
  • Solutions
  • PKCS5 with password-based key derivation
  • The PSK (RFC 4279) is replaced with the
    derivation result
  • Use the Password directly as PSK
  • Others?

3
Identity management Access Control
  • Certificate case the identity is determined from
    the subject or subjectAltName fields in the
    certificate.
  • PSK or password case the PSK identity.
  • User-based access-control model
  • RFC 4680 and RFC 4681 (TLS User Mapping
    Extension)

4
Ongoing works
  • Updating the document with password based client
    authentication
  • Profiles could be added for NETCONF
  • More reviews.

5
Thank you!
Write a Comment
User Comments (0)
About PowerShow.com