--- 1/draft-ietf-dtn-bpsec-14.txt 2020-01-16 16:13:55.167725952 -0800 +++ 2/draft-ietf-dtn-bpsec-15.txt 2020-01-16 16:13:55.271728613 -0800 @@ -1,29 +1,31 @@ Delay-Tolerant Networking E. Birrane Internet-Draft K. McKeever Obsoletes: 6257 (if approved) JHU/APL Intended status: Standards Track January 16, 2020 Expires: July 19, 2020 Bundle Protocol Security Specification - draft-ietf-dtn-bpsec-14 + draft-ietf-dtn-bpsec-15 Abstract This document defines a security protocol providing end to end data integrity and confidentiality services for the Bundle Protocol. - The Internet Research Task Force is advised that this document is an - update of the protocol described in [RFC6257], reflecting lessons - learned. The Internet Research Task Force is requested to mark - [RFC6257] as obsolete. + This document is an update of the protocol described in RFC 6257, + reflecting lessons learned. For this reason it obsoletes RFC 6257, + an IRTF-stream document. + + Note to the RFC editor: The Internet Research Task Force is requested + to mark RFC6257 as obsolete. Status of This Memo This Internet-Draft is submitted in full conformance with the provisions of BCP 78 and BCP 79. Internet-Drafts are working documents of the Internet Engineering Task Force (IETF). Note that other groups may also distribute working documents as Internet-Drafts. The list of current Internet- Drafts is at https://datatracker.ietf.org/drafts/current/. @@ -127,24 +130,26 @@ transport security mechanisms may not be sufficient. For example, the store-carry-forward nature of the network may require protecting data at rest, preventing unauthorized consumption of critical resources such as storage space, and operating without regular contact with a centralized security oracle (such as a certificate authority). An end-to-end security service is needed that operates in all of the environments where the BP operates. - The Internet Research Task Force is advised that this document is an - update of the protocol described in [RFC6257], reflecting lessons - learned. The Internet Research Task Force is requested to mark - [RFC6257] as obsolete. + This document is an update of the protocol described in RFC 6257, + reflecting lessons learned. For this reason it obsoletes RFC 6257, + an IRTF-stream document. + + Note to the RFC editor: The Internet Research Task Force is requested + to mark RFC6257 as obsolete. 1.1. Supported Security Services BPSec provides end-to-end integrity and confidentiality services for BP bundles, as defined in this section. Integrity services ensure that changes to target data within a bundle can be discovered. Data changes may be caused by processing errors, environmental conditions, or intentional manipulation. In the context of BPSec, integrity services apply to plain-text in the