[AVTCORE] Roman Danyliw's No Objection on draft-ietf-avtcore-multi-party-rtt-mix-18: (with COMMENT)

Roman Danyliw via Datatracker <noreply@ietf.org> Wed, 19 May 2021 02:27 UTC

Return-Path: <noreply@ietf.org>
X-Original-To: avt@ietf.org
Delivered-To: avt@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 6E3493A19AC; Tue, 18 May 2021 19:27:29 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: Roman Danyliw via Datatracker <noreply@ietf.org>
To: "The IESG" <iesg@ietf.org>
Cc: draft-ietf-avtcore-multi-party-rtt-mix@ietf.org, avtcore-chairs@ietf.org, avt@ietf.org, bernard.aboba@gmail.com, bernard.aboba@gmail.com
X-Test-IDTracker: no
X-IETF-IDTracker: 7.29.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: Roman Danyliw <rdd@cert.org>
Message-ID: <162139124891.22846.16818872777832269848@ietfa.amsl.com>
Date: Tue, 18 May 2021 19:27:29 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/avt/Iiapr3wXxs5Jv5B8vk_ImVHI9Uw>
Subject: [AVTCORE] Roman Danyliw's No Objection on draft-ietf-avtcore-multi-party-rtt-mix-18: (with COMMENT)
X-BeenThere: avt@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Audio/Video Transport Core Maintenance <avt.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/avt>, <mailto:avt-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/avt/>
List-Post: <mailto:avt@ietf.org>
List-Help: <mailto:avt-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/avt>, <mailto:avt-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 19 May 2021 02:27:30 -0000

Roman Danyliw has entered the following ballot position for
draft-ietf-avtcore-multi-party-rtt-mix-18: No Objection

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
for more information about DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-avtcore-multi-party-rtt-mix/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

Thank you to Rich Salz for the SECDIR review.

** Section 11.  Per “Participants with malicious intentions may appear ...”,
this text seems to be describing an attacker that is party to the call.  If the
mitigations suggested in the next sentence (i.e., secure signaling ... and
authentication) aren’t present, this style of attack may also be possible by an
on-path attacker as might be simple eavesdropping or injection of arbitrary
content.

** Section 11. Would the caution of the mixer not revealing that a user is
hearing or speech impaired noted in Section 8 of RFC5194 apply here too?