Re: [Ace] John Scudder's No Objection on draft-ietf-ace-cmpv2-coap-transport-09: (with COMMENT)

Mohit Sahni <msahni@paloaltonetworks.com> Mon, 08 May 2023 18:46 UTC

Return-Path: <prvs=149202be89=msahni@paloaltonetworks.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2CEE2C169509 for <ace@ietfa.amsl.com>; Mon, 8 May 2023 11:46:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.094
X-Spam-Level:
X-Spam-Status: No, score=-2.094 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=paloaltonetworks.com header.b="IWCkbrc6"; dkim=pass (2048-bit key) header.d=paloaltonetworks.com header.b="QZaY+CIN"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cHEAhrmGhwSK for <ace@ietfa.amsl.com>; Mon, 8 May 2023 11:46:38 -0700 (PDT)
Received: from mx0b-00169c01.pphosted.com (mx0a-00169c01.pphosted.com [67.231.148.124]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 046CCC169522 for <ace@ietf.org>; Mon, 8 May 2023 11:46:37 -0700 (PDT)
Received: from pps.filterd (m0045114.ppops.net [127.0.0.1]) by mx0a-00169c01.pphosted.com (8.17.1.19/8.17.1.19) with ESMTP id 348GFf3h021349 for <ace@ietf.org>; Mon, 8 May 2023 11:46:37 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=paloaltonetworks.com; h=mime-version : references : in-reply-to : from : date : message-id : subject : to : cc : content-type; s=PPS12012017; bh=LTAhWeFhGRq1itLKfxzFyx37HqeDMmuEjKA1K8t/2Uk=; b=IWCkbrc6E8S1BZy9eDd1trX/x2Q+bbJfVE+HlwmrPCJzv2FoMVB8ZODjFOqtfyVnUaLx B7ym+6CkS/QtuKaujMUNGSp0kvzwjvcecyaTBsZesC8OcSq9EtmeDMpJch6Ehv/stWTW x/9hZkOqRUYyp6jphTlKgYuuyQ2Kao8WFYP3GxnNvqSXvRXNTwd3GQJCfg7rLaZwY6e0 wnkLPQfgCAh2oac3x9mYdvG3CeJiDH/bP5IrdvSgM2E9bfaYwlzs9ilaoGOhYW54EcXP aKc10wvaBfo5y4qW/FI4yU3lyJOpEwcNi5dJqUYfkni8W4yy7VL6otZgB+HR+O2iNat5 7g==
Received: from mail-yw1-f197.google.com (mail-yw1-f197.google.com [209.85.128.197]) by mx0a-00169c01.pphosted.com (PPS) with ESMTPS id 3qdjwph9sn-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NOT) for <ace@ietf.org>; Mon, 08 May 2023 11:46:37 -0700
Received: by mail-yw1-f197.google.com with SMTP id 00721157ae682-55a7d1f6914so93336487b3.1 for <ace@ietf.org>; Mon, 08 May 2023 11:46:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=paloaltonetworks.com; s=google.paloaltonetworks.com; t=1683571596; x=1686163596; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=LTAhWeFhGRq1itLKfxzFyx37HqeDMmuEjKA1K8t/2Uk=; b=QZaY+CINL2ebx5JmRKDNPG1KGfJ+owLCgnjkbf4iVqq+mEUO5GmUdKY6IPpQ9GBSRT d8h/5m0MLZxfSSnFvWIed2m4F7l8bpglwjFSmrZl6mY5Ypqknk3BTBJ84rGj2NUKWV35 akWulde8W3j2Q0riCyQu66FZ72VpD0L5acLb9ZhRcMyfZmXVQcFrolzoSDkPZXRaF1CC WhhkhideEwsvzpOJ1wzMRQ+nkyXlWCfExQHDggAkAbySA5Cc/WEQlXJjaddnf5k1Bkeq 9kZRG4cmBD9QY8nPVo4gRmKhPw+OxTyrF4SKSyEsD/NhQyR5ucsAGE4z1lxwTXszrTLF PWzw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1683571596; x=1686163596; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=LTAhWeFhGRq1itLKfxzFyx37HqeDMmuEjKA1K8t/2Uk=; b=MZdimcGrllw8x/85Ex1iNzoI1wuCQcUgfLyI5VbtiGqxKAXIBXpF4/OQeUA6QYOg8Q fbyPwutUm7uGsG0XBhhoOpdo36d1TrAbh/p1MKd+pbYpOEaorNNyR5+4iMbQod1yQIC/ 5rJP5XL4WOmpj8QvH+KCd6KGsct8ikC02sKPWonIhkjZNiV1dK9f+wpC9VfO44MgFW3E LFOL7WtlGcY2CC8iHY6MZhu3pWlEabwuAjCdW8UR9MKdyxDHO3s7DWyxGSDMTs9UE81O E/23H1edSpJp3QL/BpSlhvX/5+A/exXi+pio8CXN/E4SeN566OdZ2wqEyj/ocHRojPIZ ycJw==
X-Gm-Message-State: AC+VfDzuBcRo6ev6zfgyrjExXCoaipFlCATFF0TuUwgfYZliie+/XQn5 SAwJH7wPpIGdGLWm/8en/JbwETAv1hSWw168WQeVr46WyWL2AuzDWB27Eb/ZY5pQy6rmG0HxZhZ /nV7Z8QX80eqnGgX6hzw=
X-Received: by 2002:a81:4802:0:b0:55a:7c7:6ff7 with SMTP id v2-20020a814802000000b0055a07c76ff7mr13635351ywa.11.1683571595765; Mon, 08 May 2023 11:46:35 -0700 (PDT)
X-Google-Smtp-Source: ACHHUZ7qMgJm/0XBRucwfCJy3zwGhm4JKnoE6bD108q4KRdgZQHNiTzD/z8HuN9V27X2eLJ9nHNkeBCj3ZyCpzdvFIs=
X-Received: by 2002:a81:4802:0:b0:55a:7c7:6ff7 with SMTP id v2-20020a814802000000b0055a07c76ff7mr13635333ywa.11.1683571595508; Mon, 08 May 2023 11:46:35 -0700 (PDT)
MIME-Version: 1.0
References: <168253486021.28895.2589846636828245361@ietfa.amsl.com>
In-Reply-To: <168253486021.28895.2589846636828245361@ietfa.amsl.com>
From: Mohit Sahni <msahni@paloaltonetworks.com>
Date: Mon, 08 May 2023 11:46:24 -0700
Message-ID: <CAMRcsGSzg1hDLKQknLV-Javh7QFMQYWUHRO8+B_fC9fJLA-A1g@mail.gmail.com>
To: John Scudder <jgs@juniper.net>
Cc: The IESG <iesg@ietf.org>, draft-ietf-ace-cmpv2-coap-transport@ietf.org, ace-chairs@ietf.org, ace@ietf.org, mglt.ietf@gmail.com
Content-Type: multipart/alternative; boundary="000000000000e7d9af05fb330e6f"
X-Proofpoint-GUID: 3LrOKkwZNplnsf226d_gXO8nvvUZg2wt
X-Proofpoint-ORIG-GUID: 3LrOKkwZNplnsf226d_gXO8nvvUZg2wt
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.254,Aquarius:18.0.942,Hydra:6.0.573,FMLib:17.11.170.22 definitions=2023-05-08_13,2023-05-05_01,2023-02-09_01
X-Proofpoint-Spam-Details: rule=outbound_notspam policy=outbound score=0 bulkscore=0 phishscore=0 spamscore=0 suspectscore=0 adultscore=0 malwarescore=0 impostorscore=0 mlxscore=0 lowpriorityscore=0 clxscore=1011 priorityscore=1501 mlxlogscore=999 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2303200000 definitions=main-2305080123
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/rv8huVx3Oq2olMIkY4_TsdfSK4o>
Subject: Re: [Ace] John Scudder's No Objection on draft-ietf-ace-cmpv2-coap-transport-09: (with COMMENT)
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 08 May 2023 18:46:42 -0000

Hi John,
Many thanks for your review and comments. Please see my response for your
comments:

>Or at a minimum, just eliminate the paragraph break between the two
paragraphs (i.e., merge them into one, even if no other rewrite).
>
>I also wonder why the first alternative is given as a MAY but the second,
as a "may".

I will remove the line break and change the second "may" to "MAY".

Thanks
Mohit

On Wed, Apr 26, 2023 at 11:47 AM John Scudder via Datatracker <
noreply@ietf.org> wrote:

> John Scudder has entered the following ballot position for
> draft-ietf-ace-cmpv2-coap-transport-09: No Objection
>
> When responding, please keep the subject line intact and reply to all
> email addresses included in the To and CC lines. (Feel free to cut this
> introductory paragraph, however.)
>
>
> Please refer to
> https://urldefense.proofpoint.com/v2/url?u=https-3A__www.ietf.org_about_groups_iesg_statements_handling-2Dballot-2Dpositions_&d=DwICaQ&c=V9IgWpI5PvzTw83UyHGVSoW3Uc1MFWe5J8PTfkrzVSo&r=J7DgfMyeL26OZuy8d3qTy_h24Ff1NatxSKMgDUj2Kxg&m=YhakhC62g-Wk6qWM3yS9CNP4Xoqkw-hbW_QxdabMJQXU4uBLvCzqQH4RXaqG-dMM&s=UUnDIHYDmQdXxkQMRwkmrPdzblpjqTlhn9T5UWEa8JI&e=
>
> for more information about how to handle DISCUSS and COMMENT positions.
>
>
> The document, along with other ballot positions, can be found here:
>
> https://urldefense.proofpoint.com/v2/url?u=https-3A__datatracker.ietf.org_doc_draft-2Dietf-2Dace-2Dcmpv2-2Dcoap-2Dtransport_&d=DwICaQ&c=V9IgWpI5PvzTw83UyHGVSoW3Uc1MFWe5J8PTfkrzVSo&r=J7DgfMyeL26OZuy8d3qTy_h24Ff1NatxSKMgDUj2Kxg&m=YhakhC62g-Wk6qWM3yS9CNP4Xoqkw-hbW_QxdabMJQXU4uBLvCzqQH4RXaqG-dMM&s=_FEaREWNE06tnQQDvPRXzP8iwgcrOOdVbWngq1suXLU&e=
>
>
>
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
>
> # John Scudder, RTG AD, comments for draft-ietf-ace-cmpv2-coap-transport-09
> CC @jgscudder
>
> Thanks for this document. I have one minor comment below, which I hope may
> be
> helpful.
>
> ## COMMENTS
>
> ### Section 2.6
>
> In the second paragraph below,
>
>    Alternatively, an EE MAY periodically poll for the current status of
>    the CA via the "PKI Information Request" message, see section 6.5 of
>    [RFC4210].  If supported, EEs may also use "Support Messages" defined
>    in section 4.3 of Lightweight CMP Profile
>    [I-D.ietf-lamps-lightweight-cmp-profile] to get information about the
>    CA status.
>
>    These mechanisms will help constrained devices, that are acting as
>    EEs, to conserve resources by eliminating the need to create an
>    endpoint for receiving notifications from RA or CA.  It will also
>    simplify the implementation of a CoAP-to-HTTP proxy.
>
> is it right that "these mechanisms" refers to the two mechanisms in the
> immediately-preceding paragraph? If so, this isn't clear from how you've
> structured the text. One possible rewrite is,
>
>    Two alternatives are first, an EE MAY periodically poll for the
>    current status of the CA via the "PKI Information Request" message,
>    see section 6.5 of [RFC4210], or second, if supported, EEs may also
>    use "Support Messages" defined in section 4.3 of Lightweight CMP
>    Profile [I-D.ietf-lamps-lightweight-cmp-profile] to get information
>    about the CA status. These mechanisms will help constrained devices,
>    that are acting as EEs, to conserve resources by eliminating the need
>    to create an endpoint for receiving notifications from RA or CA.  It
>    will also simplify the implementation of a CoAP-to-HTTP proxy.
>
> Or at a minimum, just eliminate the paragraph break between the two
> paragraphs
> (i.e., merge them into one, even if no other rewrite).
>
> I also wonder why the first alternative is given as a MAY but the second,
> as a
> "may".
>
> ## Notes
>
> This review is in the ["IETF Comments" Markdown format][ICMF], You can use
> the
> [`ietf-comments` tool][ICT] to automatically convert this review into
> individual GitHub issues.
>
> [ICMF]:
> https://urldefense.proofpoint.com/v2/url?u=https-3A__github.com_mnot_ietf-2Dcomments_blob_main_format.md&d=DwICaQ&c=V9IgWpI5PvzTw83UyHGVSoW3Uc1MFWe5J8PTfkrzVSo&r=J7DgfMyeL26OZuy8d3qTy_h24Ff1NatxSKMgDUj2Kxg&m=YhakhC62g-Wk6qWM3yS9CNP4Xoqkw-hbW_QxdabMJQXU4uBLvCzqQH4RXaqG-dMM&s=YQ2TBQJF5PQrDcxke_4DqQg2FU2-EDTcCNnUd5ii0f4&e=
> [ICT]:
> https://urldefense.proofpoint.com/v2/url?u=https-3A__github.com_mnot_ietf-2Dcomments&d=DwICaQ&c=V9IgWpI5PvzTw83UyHGVSoW3Uc1MFWe5J8PTfkrzVSo&r=J7DgfMyeL26OZuy8d3qTy_h24Ff1NatxSKMgDUj2Kxg&m=YhakhC62g-Wk6qWM3yS9CNP4Xoqkw-hbW_QxdabMJQXU4uBLvCzqQH4RXaqG-dMM&s=sG2RDmSacE2kpqRrtRjOeLwr0iYhClFHKhEg9Wzxfxk&e=
>
>
>
>