P1619.3 ARCH Meeting notes 2007-11-29hot!

IEEE P1619.3
Architecture Subcommittee
Conference Call
November 29, 2007
IEEE P1619.3 Architecture Subcommittee
1
Agenda
•
Review Previous Actions
•
Review Key Lifecycle Model
•
Review Latest KM Conceptual Model
•
Review Latest KM Architecture Model
•
Next Steps
IEEE P1619.3 Architecture Subcommittee
2
Previous Action Item Review
•
Bob L./Mike W. to change conceptual model
orientation and simplify architecture model
•
•
Mike: Completed and will review with group today
Map 1619.3 key lifecycle states into ASN X9.24
•
•
Luther Martin: Status?
Call meeting with subcommittee chairs to work out
proposed outline for D2
•
•
Mike: Not done due to holidays
Create new policy model to replace figure 1 in D1
•
•
Ravi, Landon, Mike: Not done due to holidays
Release key lifecycle model
•
Jon, Bob, Larry: Complete, will review today
IEEE P1619.3 Architecture Subcommittee
3
Key Lifecycle Model
(see Jon’s email sent to reflector on 11/20 @1:20PM PST)
IEEE P1619.3 Architecture Subcommittee
4
Proposed KM Conceptual Models
IEEE P1619.3 Architecture Subcommittee
5
Old Conceptual Key Mmgmt Model
Control Plane
Option #1
Data Plane
Encryption User
Control Plane
Option #2
OR
KM Server
KM Server
KM Ops
Cryptographic
Unit
KM Client
Cryptographic
Unit
Encryption Entity
Encryption Entity
Encryption Entity
KM SW Lib
(optional)
KM API
KM Client
Cryptographic
Unit
Storage Medium
IEEE P1619.3 Architecture Subcommittee
6
New Conceptual Key Mgmt Model
KM Server
KM Ops
KM SW Lib
(optional)
KM API
KM Client
Control Plane
Cryptographic
Unit
Data Plane
Encryption
Users
Plaintext
Data
Storage
Media
Encrypted
Data
Encryption Entity
IEEE P1619.3 Architecture Subcommittee
7
Old Architectural Key Mgmt Model
Key
Backup/Archive
KM File
Import/Export
Key
Backup/Archive
File transfer
KM Server
KM Server
KMSS Ops
KMCS Ops
KMCS Ops
KM Client
Encryption Entity
Encryption Entity
KM User
Cryptographic Unit
KM SW Lib (Opt)
KM API
KM Client
Legend
Cryptographic Unit
In Scope
Out of Scope
Storage Medium
Data Transfer
(outside of KMS)
IEEE P1619.3 Architecture Subcommittee
Storage Medium
8
New Architectural Key Mgmt Model
Key
Backup/Archive
KM File
Import/Export
Key
Backup/Archive
File transfer
KM Server
KMSS Ops
KM User
KMCS Ops
Encryption
Entity
KM Server
KMCS Ops
Legend
Encryption
Entity
In Scope
Out of Scope
Storage Medium
Data Transfer
(outside of KMS)
IEEE P1619.3 Architecture Subcommittee
Storage Medium
9
Action Items
•
Publish first draft of model proposal
•
•
•
Mike will combine completed models with initial text
Add reference to ASN X9.24
Call meeting with subcommittee chairs to work out
proposed outline for D2
•
•
Mike, Ravi/Subhash, Bob, Landon (2 weeks)
Create new policy model to replace figure 1 in D1
•
•
Ravi, Landon, Mike
Create initial sequence model
•
•
Mike (2 weeks)
Next call will be Thursday, Dec. 13th
•
@ 10AM PST (1PM EST)
IEEE P1619.3 Architecture Subcommittee
10