Technical Summary
This document extends an IETF protocol (GDOI, published as RFC 7407), which distributes IPsec security association policy and keying material used to protect IP multicast packets . The IEC 61850 power utility automation family of standards defines it’s own transport security methods for multicast packets, and these standards specify the use of GDOI to provide the necessary policy and keying material. This draft specifies how the IEC 61850 policy and keying material is distributed within the GDOI protocol.
Working Group Summary
The document is an individual submission. The logical working group to have progressed this would have been the Multicast Security (MSEC) WG, which has been closed from some time. The document has been reviewed by several individuals in the IETF Security Area, as well as the IEC 61850 working group. An early SecDir review was published on -02 of this document, and the authors believe that each of the comments were addressed.: <https://www.ietf.org/mail-archive/web/secdir/current/msg04601.html>.
Document Quality
The document, although individual, did get several reviews from knowledgable reviewers.
Personnel
The document shepherd is Joe Salowey.
The responsible Area Director is Kathleen Moriarty.
IANA Note
A new registry is added defining Auth Alg values.
A new registry is added defining Enc Alg values.
For the two new registries, the terms Reserved, Expert
Review and Private Use are to be applied as defined
in [RFC5226].
A new registry for SA TEK attributes is defined.
The terms Expert Review and Expert Review are to
be applied as defined in [RFC5226].
A new registry for ID Types is defined for the
Identification Payload when the DOI is GDOI.
The terms Expert Review and Private Use are to
be applied as defined in [RFC5226].
An addition is also made to the GDOI payloads registry [GDOI-REG].