Presentation is loading. Please wait.

Presentation is loading. Please wait.

SNMP for the PAA-EP protocol PANA wg - IETF 61 Washington DC Yacine El Mghazli (Alcatel) Yoshihiro Ohba (Toshiba) Julien Bournelle (GET/INT) draft-ietf-pana-snmp-02.txt.

Similar presentations


Presentation on theme: "SNMP for the PAA-EP protocol PANA wg - IETF 61 Washington DC Yacine El Mghazli (Alcatel) Yoshihiro Ohba (Toshiba) Julien Bournelle (GET/INT) draft-ietf-pana-snmp-02.txt."— Presentation transcript:

1 SNMP for the PAA-EP protocol PANA wg - IETF 61 Washington DC Yacine El Mghazli (Alcatel) Yoshihiro Ohba (Toshiba) Julien Bournelle (GET/INT) draft-ietf-pana-snmp-02.txt

2 Yacine El Mghazli — 2 All rights reserved © 2004, Alcatel SNMP on the PAA-EP interface History > PANA charter: The PANA working group mandates SNMP for PAA-EP > Chronology: IETF55: PAA-EP interface requirements IETF56/57/58: PAA-EP protocol evaluation IETF59: SNMP draft accepted as a PANA work item IETF60/61: SNMP draft updated – Currently draft-ietf-pana-snmp-02.txt

3 Yacine El Mghazli — 3 All rights reserved © 2004, Alcatel Additional PANA MIB objects for L2 access control & Specific Notifs > PANA-specific objects extends the IPSP SPD-MIB with: Generic L2 Filters – In the –02 version New PaC presence Notification – In the –02 version L2 protection (keying material) – TBD

4 Yacine El Mghazli — 4 All rights reserved © 2004, Alcatel Major changes since -01 > MIB design MIB module re-designed to support generic Link-layer filtering – panaL2FilterTable PaC presence Notification re-designed – panaNewPacIpNotification – panaNewPacL2Notification Conformance section done > Security section -> done > Edits -> mostly a careful use of SNMPv3 terminology > Mailing list feedback/comments on -01 -> fixed

5 Yacine El Mghazli — 5 All rights reserved © 2004, Alcatel Next steps and open issues for -03 > Link-layer protection Some additonal objects design might be needed Might re-use existing – 802.11i – what else ? > Section on MIB usage examples in the PANA context Needs a review by IPSP wg > MIB doctor to act as a technical advisor for the PANA WG > One more iteration before WGLC

6 Yacine El Mghazli — 6 All rights reserved © 2004, Alcatel THANKS

7 Yacine El Mghazli — 7 All rights reserved © 2004, Alcatel Functional basic principle PAA AAA backend EP PaCAR PANA auth AAA auth SNMP Install filter # PaC traffic One single IP subnet

8 Yacine El Mghazli — 8 All rights reserved © 2004, Alcatel Re-use of existing IPSec configuration MIBs for IP level access control > IPSec configuration MIB splitted into 3 separate modules > IPSec SPD configuration MIB module (IPSP wg) Rule/Filter/Action Policy structure Various IP filters, including IP header filter Notification Variables re-usable for the PaC presence notif > IPSec IKE configuration MIB module (IPSP wg) For IP-based access control (draft-ietf-pana-ipsec) Pre-shared key configuration (PSK) – Derived at the PAA level ID_KEY_ID configuration (aggressive mode) – PANA_Session_id|PANA_Key_Id


Download ppt "SNMP for the PAA-EP protocol PANA wg - IETF 61 Washington DC Yacine El Mghazli (Alcatel) Yoshihiro Ohba (Toshiba) Julien Bournelle (GET/INT) draft-ietf-pana-snmp-02.txt."

Similar presentations


Ads by Google