Thread Links Date Links
Thread Prev Thread Next Thread Index Date Prev Date Next Date Index

call 6/30/15 notes



Folks,

Quick notes below.

Start:	6/30/2015 6AM PDT
End:	6/30/2015 ~7AM PDT

Present:
	Jouni Korhonen
	Richard Tse
	Bomin Li
	Sriram Devi
	Raz Gabe
	Steinar Björnstad
	Peter Turnbull
	Peter Ashwood-Smith
	Duncan Cockburn
	Felix Huang
	Gareth Edwards
	Kevin Bross
	Amit Oren

Agenda:
	* Security
	* Error handling

Discussion:
	* We went through the outcome of the error handling discussion on the mailing list.
	* Tentative agreements for the baseline:
	  - No FEC on RoE level (if someone has an urge to have it - make a proposal)
	  - Error handling at Ethernet level follows the current standard. For example we cannot rely on 
	    the behavior of cut-through. No addition of a new sublayer.
	  - Things like CPRI L1 error indications other errors received from PHY etc could potentially be transported
	    over Ethernet OEM or RoE control packets. More studies needed.
	* More data needed for typical error behavior. Marek and Steinar posted links to the email list
	   for existing material. Jouni tries to get a hold of some measurement data as well.
	* We summarized the security discussion that was started on the email list.
	* Tentative agreements for the baseline:
	  - Authentication needed. Should use existing mechanisms such as 802.1X. Details needed on the actual procedures.
	  - No ciphering for the data plane - at least within the RoE specification.
	  - E2E security needed for the RoE control plane. MACsec not desired since it is hop-by-hop and the solution should
	    not be limited to p2p links only. IPsec could be potential solution, however, there is no reason to mandate the
	    use of IP in the RoE control plane.
	* Comment/concern regarding security was that defining one is actually hard and requires proper security expertise.
	   Thus it is better off reusing off the shelf solutions. In that sense MACsec would be nice as it is simple. The 
	   discussion was still more towards application (since control is likely to be terminated at the CPU anyway)
	   layer and e2e solutions.

Action Points:
	1) Kevin Bross to make a writeup of propagating error information/indications detected e.g. on the last CPRI link SFP module.
	2) Jouni K to make a proposal for RoE Control packet e2e security baseline.

	Deadline next telco (7/7/15)

- Jouni


-- 
Jouni Korhonen, CTO Office, Networking, Broadcom Corporation
O: +1-408-922-8135,  M: +1-408-391-7160