Technical Summary
Group communication for the Constrained Application Protocol (CoAP)
can be secured using Group Object Security for Constrained RESTful
Environments (Group OSCORE). A Group Manager is responsible for
handling the joining of new group members, as well as for managing
and distributing the group keying material. This document defines a
RESTful admin interface at the Group Manager that allows an
Administrator entity to create and delete OSCORE groups, as well as
to retrieve and update their configuration. The ACE framework for
Authentication and Authorization is used to enforce authentication
and authorization of the Administrator at the Group Manager.
Protocol-specific transport profiles of ACE are used to achieve
communication security, proof of possession, and server
authentication.
Working Group Summary
There was broad agreement and good feedback of the Directorate reviews.
Document Quality
I am not aware of implementations yet, but it seems likely the usual suspects
will implement.
A media type is already assigned:
https://www.iana.org/assignments/media-types/application/ace-groupcomm+cbor
Personnel
The Document Shepherd for this document is Tim Hollebeek. The
Responsible Area Director is Paul Wouters.