Skip to main content

Bootstrapping Key Infrastructures
draft-pritikin-anima-bootstrapping-keyinfra-02

Document Type Replaced Internet-Draft (individual)
Expired & archived
Authors Max Pritikin , Michael Richardson , Michael H. Behringer , Steinthor Bjarnason
Last updated 2015-07-06
Replaces draft-pritikin-bootstrapping-keyinfrastructures
Replaced by RFC 8995
RFC stream (None)
Intended RFC status (None)
Formats
Stream Stream state (No stream defined)
Consensus boilerplate Unknown
RFC Editor Note (None)
IESG IESG state Replaced by draft-ietf-anima-bootstrapping-keyinfra
Telechat date (None)
Responsible AD (None)
Send notices to (None)

This Internet-Draft is no longer active. A copy of the expired Internet-Draft is available in these formats:

Abstract

This document specifies automated bootstrapping of an key infrastructure using vendor installed IEEE 802.1AR manufacturing installed certificates, in combination with a vendor based service on the Internet. Before being authenticated, a new device has only link-local connectivity, and does not require a routable address. When a vendor provides an Internet based service, devices can be forced to join only specific domains but for constrained environments we describe a variety of options that allow bootstrapping to proceed.

Authors

Max Pritikin
Michael Richardson
Michael H. Behringer
Steinthor Bjarnason

(Note: The e-mail addresses provided for the authors of this Internet-Draft may no longer be valid.)