Re: [Asdf] Security considerations -- Re: I-D Action: draft-ietf-asdf-sdf-17.txt

Carsten Bormann <cabo@tzi.org> Tue, 07 November 2023 08:58 UTC

Return-Path: <cabo@tzi.org>
X-Original-To: asdf@ietfa.amsl.com
Delivered-To: asdf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 398D7C17DBEB for <asdf@ietfa.amsl.com>; Tue, 7 Nov 2023 00:58:28 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.906
X-Spam-Level:
X-Spam-Status: No, score=-1.906 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9O6zJwm5ey1c for <asdf@ietfa.amsl.com>; Tue, 7 Nov 2023 00:58:24 -0800 (PST)
Received: from smtp.zfn.uni-bremen.de (smtp.zfn.uni-bremen.de [134.102.50.21]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E3958C1C5F4F for <asdf@ietf.org>; Tue, 7 Nov 2023 00:58:05 -0800 (PST)
Received: from [IPv6:2001:638:708:1a::27c] (unknown [IPv6:2001:638:708:1a::27c]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by smtp.zfn.uni-bremen.de (Postfix) with ESMTPSA id 4SPhvG46g8zDCbx; Tue, 7 Nov 2023 09:58:02 +0100 (CET)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 13.4 \(3608.120.23.2.7\))
From: Carsten Bormann <cabo@tzi.org>
In-Reply-To: <3568878.1699347224@dyas>
Date: Tue, 07 Nov 2023 09:58:01 +0100
Cc: asdf@ietf.org
X-Mao-Original-Outgoing-Id: 721040281.255221-4eccab0ad125b0b5b20a7fd6729bbff6
Content-Transfer-Encoding: quoted-printable
Message-Id: <9F2EE5FE-A413-4661-A0EB-573C726F1AA9@tzi.org>
References: <169921738997.33324.7025809789493354028@ietfa.amsl.com> <3568878.1699347224@dyas>
To: Michael Richardson <mcr+ietf@sandelman.ca>
X-Mailer: Apple Mail (2.3608.120.23.2.7)
Archived-At: <https://mailarchive.ietf.org/arch/msg/asdf/jLTLmjfG2kL3P9SmfBHUKKIW0D0>
Subject: Re: [Asdf] Security considerations -- Re: I-D Action: draft-ietf-asdf-sdf-17.txt
X-BeenThere: asdf@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "A Semantic Description Format \(SDF\) for Things and their Interactions and Data" <asdf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/asdf>, <mailto:asdf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/asdf/>
List-Post: <mailto:asdf@ietf.org>
List-Help: <mailto:asdf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/asdf>, <mailto:asdf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 07 Nov 2023 08:58:28 -0000

Now
https://github.com/ietf-wg-asdf/SDF/issues/149

Grüße, Carsten


> On 2023-11-07, at 09:53, Michael Richardson <mcr+ietf@sandelman.ca> wrote:
> 
> Signed PGP part
> 
> Security Considerations
>  Some wider issues are discussed in [RFC8576].
>  (Specifics: TBD.)
> 
> Perhaps RFC8576 has some relevant things, and maybe the wider issues
> are enough, but in that case, we need to remove the TBD.
> 
> Probably we need at least a statement that this describes meta-data not real
> protocols, and each actual protocol will have specific protocol related
> security, but that this document probably introduces no new security issues.
> 
> 
> internet-drafts@ietf.org wrote:
>> A diff from the previous version is available at:
>> https://author-tools.ietf.org/iddiff?url2=draft-ietf-asdf-sdf-17
> 
> 
> --
> Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works
> -= IPv6 IoT consulting =-                      *I*LIKE*TRAINS*
> 
> 
> 
> 
>