call 6/30/15 notes
Folks,
Quick notes below.
Start: 6/30/2015 6AM PDT
End: 6/30/2015 ~7AM PDT
Present:
Jouni Korhonen
Richard Tse
Bomin Li
Sriram Devi
Raz Gabe
Steinar Björnstad
Peter Turnbull
Peter Ashwood-Smith
Duncan Cockburn
Felix Huang
Gareth Edwards
Kevin Bross
Amit Oren
Agenda:
* Security
* Error handling
Discussion:
* We went through the outcome of the error handling discussion on the mailing list.
* Tentative agreements for the baseline:
- No FEC on RoE level (if someone has an urge to have it - make a proposal)
- Error handling at Ethernet level follows the current standard. For example we cannot rely on
the behavior of cut-through. No addition of a new sublayer.
- Things like CPRI L1 error indications other errors received from PHY etc could potentially be transported
over Ethernet OEM or RoE control packets. More studies needed.
* More data needed for typical error behavior. Marek and Steinar posted links to the email list
for existing material. Jouni tries to get a hold of some measurement data as well.
* We summarized the security discussion that was started on the email list.
* Tentative agreements for the baseline:
- Authentication needed. Should use existing mechanisms such as 802.1X. Details needed on the actual procedures.
- No ciphering for the data plane - at least within the RoE specification.
- E2E security needed for the RoE control plane. MACsec not desired since it is hop-by-hop and the solution should
not be limited to p2p links only. IPsec could be potential solution, however, there is no reason to mandate the
use of IP in the RoE control plane.
* Comment/concern regarding security was that defining one is actually hard and requires proper security expertise.
Thus it is better off reusing off the shelf solutions. In that sense MACsec would be nice as it is simple. The
discussion was still more towards application (since control is likely to be terminated at the CPU anyway)
layer and e2e solutions.
Action Points:
1) Kevin Bross to make a writeup of propagating error information/indications detected e.g. on the last CPRI link SFP module.
2) Jouni K to make a proposal for RoE Control packet e2e security baseline.
Deadline next telco (7/7/15)
- Jouni
--
Jouni Korhonen, CTO Office, Networking, Broadcom Corporation
O: +1-408-922-8135, M: +1-408-391-7160