Re: [art] Artart last call review of draft-ietf-quic-manageability-14

Francesca Palombini <francesca.palombini@ericsson.com> Thu, 21 April 2022 13:45 UTC

Return-Path: <francesca.palombini@ericsson.com>
X-Original-To: art@ietfa.amsl.com
Delivered-To: art@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0BD573A1722; Thu, 21 Apr 2022 06:45:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.11
X-Spam-Level:
X-Spam-Status: No, score=-2.11 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id WbvML0OlBELm; Thu, 21 Apr 2022 06:45:52 -0700 (PDT)
Received: from EUR04-VI1-obe.outbound.protection.outlook.com (mail-vi1eur04on060a.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe0e::60a]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3C8373A1369; Thu, 21 Apr 2022 06:45:50 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=T1RsWVE+XXhj32LQ0VDL/q0ZQYQrUTvmTYSUpIeoQDbn7eCmReP9MkD453JBw2GS1ywqxCPD2WyLDLUIWkjiNP1xFPTZUWGdGCL9UHf6zOkJSzPCUB4H47NVDSfmxxvUsPS7D+GYJo5INzQgDYQHa13mefv2ILuA6D7TKaxLKGiSwh5DYiIK44JgP79ncKFpHlZNvvTarcNoEGZlXFzyMOKNB8Ns+hFw1dNMaouLgvIskUBTVBOOOmQcqAP802QKwlu03IFadKDX/habAD2IFOsPYIM0ZA8K6MRZ24wzz9D9p2K1iJS7Thia1AKg60B4/yVUt9Wq47YxB2fk4tiWNg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=h1ZgrehaYSskxTKJFtNvfypWg6t+t81wHBuFhFsz2m0=; b=jBSXLxPawXMOCbG60TlkFylnSu6j6HYjKOUPd/olOFHHBz2tyg0JfDE8EdwAAx7QNZivddxs2xolfvOtcZgWXsK3xNzNtpmKtKsbcdK2p3UDtH4NPHe8V08NLzi7a6hynPtIGWBg6+NE9TxCqccwkgkHzZx0WkIE6e0nJT0n3CZRQ39TbnSpxRpiuePg40QF/Mz9Z1EOD28xWVmIFXJEf38nTiic5O4wE5D4a3lMgzd36GqXZJ3CLTVWQW+v+Qyqomjxk/lo2K2JB+U/Vg24UfwDiF75Iz4M9nY6kGVfqASiOU53PRUeja5s+AexXlKBvS94w7khVYSjCCFl4BJp0A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=h1ZgrehaYSskxTKJFtNvfypWg6t+t81wHBuFhFsz2m0=; b=ADlo44X3ZaCRGGl63sWHRNKrdj37V8UccAnnduppXhZdZu3Vl2rE/F3+HGPVqxfrsdY+GRrm+Xf7fjszjjnlLJOrO6OQAkBJC+9yseJsEAZaN3S4tebiGg8Qc6HnGWQNw19hlSz5M78x3czBex/QDVbwPrRCHt8L6EBDAPXGj9w=
Received: from DU0PR07MB8620.eurprd07.prod.outlook.com (2603:10a6:10:311::18) by VI1PR07MB3966.eurprd07.prod.outlook.com (2603:10a6:803:37::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5186.14; Thu, 21 Apr 2022 13:45:47 +0000
Received: from DU0PR07MB8620.eurprd07.prod.outlook.com ([fe80::b987:b3ac:3391:c0e3]) by DU0PR07MB8620.eurprd07.prod.outlook.com ([fe80::b987:b3ac:3391:c0e3%6]) with mapi id 15.20.5186.014; Thu, 21 Apr 2022 13:45:47 +0000
From: Francesca Palombini <francesca.palombini@ericsson.com>
To: "Brian Trammell (IETF)" <ietf@trammell.ch>, Peter Saint-Andre <stpeter@stpeter.im>
CC: "art@ietf.org" <art@ietf.org>, "draft-ietf-quic-manageability.all@ietf.org" <draft-ietf-quic-manageability.all@ietf.org>, "quic@ietf.org" <quic@ietf.org>
Thread-Topic: [art] Artart last call review of draft-ietf-quic-manageability-14
Thread-Index: AQHYPfXbEgLBjCJnO0eJa22AP5TO8az6j+LQ
Date: Thu, 21 Apr 2022 13:45:47 +0000
Message-ID: <DU0PR07MB862049213AF0D1A698CC0D3998F49@DU0PR07MB8620.eurprd07.prod.outlook.com>
References: <164488145697.21415.9878592590704979104@ietfa.amsl.com> <A6C534CC-1582-4C80-8145-9066C0E5F424@trammell.ch> <c62b7dce-eb13-4ecc-f5d7-f292a440a2dc@stpeter.im> <73A08634-A936-4654-AAE8-406ADA2A7FBF@trammell.ch>
In-Reply-To: <73A08634-A936-4654-AAE8-406ADA2A7FBF@trammell.ch>
Accept-Language: en-GB, en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ericsson.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: f4dbb2d9-1b9a-46f3-b086-08da239d3d4e
x-ms-traffictypediagnostic: VI1PR07MB3966:EE_
x-microsoft-antispam-prvs: <VI1PR07MB3966BE018380D3F8655E4D7A98F49@VI1PR07MB3966.eurprd07.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: bX7oDHnHcRGXag/1kOr/KzZ0ahygARWxBNP6O+NX5RayW3p/0N5dqN5D0eiGADWlzAyQLTrTJDTW9IJVooCdjFOMuIKK+gnD2vGgaI6Rdm+RPBh+0aK5YevppE66NDhsU4o20F0zZO0W1ASXzWfy0zsrX5cPEqs6RPwROfx40DrIeswmUfd3P3EvHa3SvPCWVQ9oPap82mfNW1jgHPrZo/YRs238lVk54VOe1wsh3y7AphnL4jFseoyXWpXmvKx8DekKXfE6uEoEX579yI9omVEedqGbjdficHKP+TCm8tSHTKLkEMewBj1RjmFCwLOIDYZspVk2B/V+Yvd5Ti8GAiQAuTlG3VsNA7SdzbDv7oA0hHjYXdgNQ6vds50UUi0AxgQQ1A4cdWBXHYS3Y4n31mdiKGgvPW1o2frNHQwtEHpU0GBSP76hAqDaZKUe1EUjBbRM6qdi3wlStJ2NLDqduNgie7N99yZ6Xhfxs3i6NSss5yhC2c/wyLM55mQyhh8z7c05594KG5Pw6dBbGdSzxBHczYTxPaxfvFZC29uJswpyEw+V9wn7wivUWzxn1s4xYuOgz8Vgw+Pb0TNjleWRl3uMNYFeOXbBNh5Ch6eZ2W06S2DOh0mXauzUSaME2wBaTK/Q8Dzxlg1atOTZD4geeH9/lAcEMUX1/s2z59lzY0VM/gr4kHtWmPA8MKts1Y4+suFPM8Xiyo4qc2f7/APnTe0lFGrV8GsdblD/bwzEbHFEs7hfDdNsk9o0NH0M6gf3BdhNuZhWDatw/M8pbioFXfBFemy9uG3F76G8ocgLNphdtfFwQVj62Zjo0AXG+KcSP0XjnsGOrTAgxC0t9qdfw4hEK9qo8I+7tx+iqA7wGPNAGfjusLlpNutmEBPBmXTX
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DU0PR07MB8620.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230001)(4636009)(366004)(508600001)(52536014)(5660300002)(76116006)(38100700002)(8936002)(38070700005)(966005)(66946007)(9686003)(91956017)(82960400001)(86362001)(66556008)(6506007)(53546011)(66446008)(4326008)(110136005)(54906003)(316002)(66476007)(64756008)(7696005)(166002)(71200400001)(44832011)(8676002)(55016003)(186003)(83380400001)(33656002)(122000001)(2906002); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 2
x-ms-exchange-antispam-messagedata-0: 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
x-ms-exchange-antispam-messagedata-1: cTnUlfI4azwvO8W1pXrxrnb5Tf+LZPVYSDM7cwVq3rSgH5FF2RYff0VEb7fJ4MCMu4zAnp67INwaFQ==
Content-Type: multipart/alternative; boundary="_000_DU0PR07MB862049213AF0D1A698CC0D3998F49DU0PR07MB8620eurp_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DU0PR07MB8620.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: f4dbb2d9-1b9a-46f3-b086-08da239d3d4e
X-MS-Exchange-CrossTenant-originalarrivaltime: 21 Apr 2022 13:45:47.1126 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: HS5mD35WvV4rx1te2guBgZ81fRxsN6/QL1iPpTrAGZ43etNvGKBlSQmlMjADNDBFDNQm5dRrbJdSMfAV+Q8ylDw8DradRnIDbOt8+05gwVPlVy1AA3cjMfoV8KGhDAxT
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR07MB3966
Archived-At: <https://mailarchive.ietf.org/arch/msg/art/VbHICO9CN9uNiBFUakkXsJEioB8>
Subject: Re: [art] Artart last call review of draft-ietf-quic-manageability-14
X-BeenThere: art@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Applications and Real-Time Area Discussion <art.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/art>, <mailto:art-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/art/>
List-Post: <mailto:art@ietf.org>
List-Help: <mailto:art-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/art>, <mailto:art-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 21 Apr 2022 13:45:57 -0000

Peter: thank you very much for this review. Brian: thanks for answering Peter’s comments.

I agree with your assessment, and balloted No objection on this document.

Francesca

From: art <art-bounces@ietf.org> on behalf of Brian Trammell (IETF) <ietf@trammell.ch>
Date: Tuesday, 22 March 2022 at 15:05
To: Peter Saint-Andre <stpeter@stpeter.im>
Cc: art@ietf.org <art@ietf.org>, draft-ietf-quic-manageability.all@ietf.org <draft-ietf-quic-manageability.all@ietf.org>, quic@ietf.org <quic@ietf.org>, last-call@ietf.org <last-call@ietf.org>
Subject: Re: [art] Artart last call review of draft-ietf-quic-manageability-14


> On 22 Mar 2022, at 14:58, Peter Saint-Andre <stpeter@stpeter.im> wrote:
>
> On 3/22/22 6:29 AM, Brian Trammell (IETF) wrote:
>> Hi Peter,
>> Many thanks for the review! Apologies for the delay in getting back to you on this, as this fell through the cracks a bit. The comments here not addressed in other changes suggested by other reviews are currently in https://protect2.fireeye.com/v1/url?k=31323334-501d5122-313273af-454445555731-414d42de6e6154f5&q=1&e=6de631a6-fd3a-4c68-ab65-bd365267b9a5&u=https%3A%2F%2Fgithub.com%2Fquicwg%2Fops-drafts%2Fpull%2F462 <https://protect2.fireeye.com/v1/url?k=31323334-501d5122-313273af-454445555731-414d42de6e6154f5&q=1&e=6de631a6-fd3a-4c68-ab65-bd365267b9a5&u=https%3A%2F%2Fgithub.com%2Fquicwg%2Fops-drafts%2Fpull%2F462>, and will make it into a published copy of the draft soon.
>> A couple of points, inline...
>>> On 15 Feb 2022, at 00:30, Peter Saint-Andre via Datatracker <noreply@ietf.org <mailto:noreply@ietf.org>> wrote:
>>>
>>> Reviewer: Peter Saint-Andre
>>> Review result: Ready with Nits
>>>
>>> ARTART review for draft-ietf-quic-manageability
>>> Author: Peter Saint-Andre
>>> Date: 2022-02-14
>>>
>>> Overall this document is in good shape (in particular, I welcome its neutral,
>>> explanatory tone). I have only small comments.
>>>
>>> In Section 2, the phrase "this document describes version 1 of the QUIC
>>> protocol" could be slightly misleading, because presumably the protocol itself
>>> is described in the QUIC specifications. I suggest changing "describes" to
>>> "addresses".
>>>
>>> It might be helpful to mention that QUIC-specific terminology (e.g., "spin
>>> bit") is defined in the QUIC specifications.
>>>
>>> Is there a difference between "long packet headers" and "long header packets"?
>>> Both phrases are used.
>> There’s a tiny difference — a long packet header is the header itself, and a long header packet is a packet containing a long header. I’ve reviewed the uses in the document and I think, stylistically, we’re using each appropriately everywhere.
>
> Would it make sense to describe this in the text or, perhaps, to hyphenate "long-header packet"? (I think the latter is good.)

I like the hyphenation fix; I’ll make that change.

>>> The phrase "cryptographically obfuscated" (used in Section 2.1 and elsewhere)
>>> is strange. Typically, to obfuscate something means to make it obscure,
>>> unclear, or unintelligible; this verges on "security by obscurity". It would be
>>> more accurate to say that constructs like the packet number and key phase are
>>> cryptographically protected or, even better, that the QUIC protocol ensures
>>> data confidentiality (e.g., as that term is defined in RFC 4949).
>
> I think you missed some instances in your edits:
>
>   Retry (Section 17.2.5 of [QUIC-TRANSPORT]) and Version Negotiation
>   (Section 17.2.1 of [QUIC-TRANSPORT]) packets are not encrypted or
>   obfuscated in any way.  For other kinds of packets, version 1 of QUIC
>   cryptographically obfuscates other information in the packet headers:
>
> and
>
>   The payload of the Initial packet
>   is obfuscated using the Initial secret.
>
> and
>
>   The Server Initial datagram also exposes version number, source and
>   destination connection IDs in the clear; the payload of the Initial
>   packet(s) is obfuscated using the Initial secret.
>
> and
>
>   The packet number length
>   is defined by the seventh and eight bits of the header as described
>   in Section 17.2 of [QUIC-TRANSPORT], but is obfuscated as described
>   in Section 5.4 of [QUIC-TLS].

Ah.. I was trying to fix the clearly-odd construct “cryptographically obfuscated”, although in the first instance I did miss one.

The use of “obfuscated” elsewhere is meant to make it clear that, while there are cyptographic operations in use, the secrets are known, so this is really “obfuscated”… However, that detail might not be as relevant here, so “protected” is probably better in all these case. I'lll make that change as well.

Thanks, cheers,

Brian

>
>>> Can we provide a citation for the term 5-tuple?
>> I couldn’t find a reasonable one here that didn’t come with other baggage, so I defined it on the first use instead.
>
> Yes, I ran into the same baggage problem when I started to look around; defining it on first use is good.
>
> Thanks!
>
> Peter

_______________________________________________
art mailing list
art@ietf.org
https://www.ietf.org/mailman/listinfo/art