Provisioning of Symmetric Keys (keyprov)
----------------------------------------

Charter
Last Modified: 2008-12-16

Current Status: Active Working Group

Chair(s):
    Phillip Hallam-Baker  <[email protected]>
    Hannes Tschofenig  <[email protected]>

Security Area Director(s):
    Tim Polk  <[email protected]>
    Pasi Eronen  <[email protected]>

Security Area Advisor:
    Pasi Eronen  <[email protected]>

Mailing Lists:
    General Discussion:[email protected]
    To Subscribe:      https://www.ietf.org/mailman/listinfo/keyprov
    Archive:           http://www.ietf.org/mail-archive/web/keyprov

Description of Working Group:

Current developments in deployment of Shared Symmetric Key (SSK)
tokens have highlighted the need for a standard protocol for
provisioning symmetric keys.

The need for provisioning protocols in PKI architectures has been
recognized for some time. Although the existence and architecture of
these protocols provides a feasibility proof for the KEYPROV work
assumptions built into these protocols mean that it is not possible
to apply them to symmetric key architectures without substantial
modification.

In particular the ability to provision symmetric keys and associated
attributes dynamically to already issued devices such as cell phones
and USB drives is highly desirable. The working group will develop
the necessary protocols and data formats required to support
provisioning and management of symmetric key authentication tokens,
both proprietary and standards based.

Input Documents
---------------

The following Internet drafts have been proposed by their authors as
input documents:

* Dynamic Symmetric Key Provisioning Protocol (M. Pei, S. Machani)
* Portable Symmetric Key Container (A. Vassilev, J. Martinsson, M.
Pei, P. Hoyer, S. Machani)
* Extensions to CT-KIP to support one- and two-pass key
initialization (M. Nystroem, S. Machani)

Scope and Deliverables
----------------------

The scope of the working group shall be to define protocols and data
formats necessary for provisioning of symmetric cryptographic keys
and associated attributes.

The group shall consider use cases related to use of Shared Symmetric
Key Tokens. Other use cases may be considered for the purpose of
avoiding unnecessary restrictions in the design and ensure the
potential for future extensibility.

The working group will produce the following deliverables:

* Portable Symmetric Key Container
* Dynamic Symmetric Key Provisioning Protocol

Goals and Milestones:

  Jun 2007       WG Last Call Portable Symmetric Key Container

  Jun 2007       WG Last Call Dynamic Symmetric Key Provisioning Protocol

  Aug 2007       IETF Last Call Portable Symmetric Key Container

  Aug 2007       IETF Last Call Dynamic Symmetric Key Provisioning Protocol

  Jan 2008       Complete implementation and interoperability tests

  Jan 2008       WG documents to DRAFT Standard Status


Internet-Drafts:

Posted Revised         I-D Title   <Filename>
------ ------- --------------------------------------------
Aug 2007 Nov 2009   <draft-ietf-keyprov-dskpp-09.txt>
               Dynamic Symmetric Key Provisioning Protocol (DSKPP)

Sep 2007 Oct 2009   <draft-ietf-keyprov-symmetrickeyformat-06.txt>
               Symmetric Key Package Content Type

Jan 2009 Jan 2010   <draft-ietf-keyprov-pskc-05.txt>
               Portable Symmetric Key Container (PSKC)

Request For Comments:

 None to date.