Re: [CDNi] Secdir last call review of draft-ietf-cdni-delegation-acme-03

frederic.fieau@orange.com Tue, 07 November 2023 13:58 UTC

Return-Path: <frederic.fieau@orange.com>
X-Original-To: cdni@ietfa.amsl.com
Delivered-To: cdni@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D813AC198493; Tue, 7 Nov 2023 05:58:08 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.105
X-Spam-Level:
X-Spam-Status: No, score=-7.105 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aXHyhbHfJVAs; Tue, 7 Nov 2023 05:58:04 -0800 (PST)
Received: from smtp-out.orange.com (smtp-out.orange.com [80.12.126.239]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EB6C0C1D471B; Tue, 7 Nov 2023 05:57:47 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; i=@orange.com; q=dns/txt; s=orange002; t=1699365469; x=1730901469; h=to:cc:subject:date:message-id:references:in-reply-to: mime-version:content-transfer-encoding:from; bh=4UTu1KX0ROvDHHj3nXwwA2mlXhmnCalbhVjE55pM/Uk=; b=SRnmNp+riH1G9RpOdqOWH+nPZYeIANCuq5LLOjNziMf+vOfwBtDSKzGe vLPSGUG/2iaw5/PQfsjr+3brQcCeQXBwbWkW+LppQP3Mt8bB/yTNT3MXV qulHWCvBNAl9hIthIpnhUiq8Ao0s7LMHEy7ACR69y4mQFQ6NXCmYBxQ79 LOfP+JyCNOU90EbOwx1G7eElG4y7g9Lp4Ek5Tc003VFLSeW2TCErdQVNe CWbeFQ4tiZumpIl2+mRsVuneRPSHaFos3dvZGISLJlAxl7bvpXaNSi5A1 RQXLsJ44J81CBS6DcD2MvlFX8od0/NEohSq58WwVrp6hkydhfa6jz9sVT w==;
Received: from unknown (HELO opfedv3rlp0e.nor.fr.ftgroup) ([x.x.x.x]) by smtp-out.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 07 Nov 2023 14:57:46 +0100
Received: from unknown (HELO opzinddimail4.si.francetelecom.fr) ([x.x.x.x]) by opfedv3rlp0e.nor.fr.ftgroup with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 07 Nov 2023 14:57:46 +0100
Received: from opzinddimail4.si.francetelecom.fr (unknown [127.0.0.1]) by DDEI (Postfix) with ESMTP id 7A5E9BC17587; Tue, 7 Nov 2023 14:57:45 +0100 (CET)
Received: from opzinddimail4.si.francetelecom.fr (unknown [127.0.0.1]) by DDEI (Postfix) with ESMTP id 7028DBC17584; Tue, 7 Nov 2023 14:57:45 +0100 (CET)
Received: from smtp-out365.orange.com (unknown [x.x.x.x]) by opzinddimail4.si.francetelecom.fr (Postfix) with ESMTPS; Tue, 7 Nov 2023 14:57:45 +0100 (CET)
Received: from mail-am0eur02lp2232.outbound.protection.outlook.com (HELO EUR02-AM0-obe.outbound.protection.outlook.com) ([104.47.11.232]) by smtp-out365.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 07 Nov 2023 14:57:32 +0100
Received: from DB4PR02MB9560.eurprd02.prod.outlook.com (2603:10a6:10:3f3::15) by AS8PR02MB9720.eurprd02.prod.outlook.com (2603:10a6:20b:61f::11) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6954.28; Tue, 7 Nov 2023 13:57:31 +0000
Received: from DB4PR02MB9560.eurprd02.prod.outlook.com ([fe80::426f:e2:b489:f843]) by DB4PR02MB9560.eurprd02.prod.outlook.com ([fe80::426f:e2:b489:f843%6]) with mapi id 15.20.6954.028; Tue, 7 Nov 2023 13:57:31 +0000
From: frederic.fieau@orange.com
X-TM-AS-ERS: 10.106.160.159-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== ZnJlZGVyaWMuZmllYXVAb3Jhb mdlLmNvbQ==
X-DDEI-TLS-USAGE: Used
Authentication-Results: smtp-out365.orange.com; dkim=none (message not signed) header.i=none; spf=Fail smtp.mailfrom=frederic.fieau@orange.com; spf=Pass smtp.helo=postmaster@EUR02-AM0-obe.outbound.protection.outlook.com
Received-SPF: Fail (smtp-in365b.orange.com: domain of frederic.fieau@orange.com does not designate 104.47.11.232 as permitted sender) identity=mailfrom; client-ip=104.47.11.232; receiver=smtp-in365b.orange.com; envelope-from="frederic.fieau@orange.com"; x-sender="frederic.fieau@orange.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 include:spfa.orange.com include:spfb.orange.com include:spfc.orange.com include:spfd.orange.com include:spfe.orange.com include:spff.orange.com include:spf6a.orange.com include:spffed-ip.orange.com include:spffed-mm.orange.com -all"
Received-SPF: Pass (smtp-in365b.orange.com: domain of postmaster@EUR02-AM0-obe.outbound.protection.outlook.com designates 104.47.11.232 as permitted sender) identity=helo; client-ip=104.47.11.232; receiver=smtp-in365b.orange.com; envelope-from="frederic.fieau@orange.com"; x-sender="postmaster@EUR02-AM0-obe.outbound.protection.outlook.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/49 ip6:2a01:111:f403:8000::/50 ip6:2a01:111:f403:c000::/51 ip6:2a01:111:f403:f000::/52 -all"
IronPort-Data: A9a23:NMv+g6pbW46ef/tFFr1ezjK05IdeBmLIYhIvgKrLsJaIsI4StFCzt garIBnTbqqMNmT8L412PIy29xsDscSGnYJmG1Ro/C82HyxG95acVYWSI3mrMnLJJKUvbq7GA +byyDXkBJppJpMJjk71atANlVEliefSAOOU5NfsYkhZXRVjRDoqlSVtkus4hp8AqdWiCmthg /uqyyHkEAHjg2Uc3l48sfrZ80o25Kuq4Vv0g3RlDRx1lA6H/5UqJMJHTU2BByOQapVZGOe8W 9HCwNmRlo8O105wYj8Nuu+TnnwiGtY+DyDX4pZlc/HKbix5m8AH+v1T2Mzwy6tgo27hc9hZk L2hvHErIOsjFvWkdO81C3G0H8ziVEFL0OevHJSxjSCc50DWTVux8qk+MGszEawD1+F0X1hFx 8VNfVjhbjjb7w636J+GcLE2w+0GdIzsNo5ZvWx8xzbEC/pgWYrEX6jB+d5f2nE3m9xKGvHdI cEebFKDbjyZO0EJZghRUct4xrzy7pX8W2UwRFa9q7A672XJzQc33rngOcf9fcaDQ8pY2E2fo woq+kygXkFKbIzGkFJp9FqqhM7zxS/+fbtLCZmE7+VVvX2Kx2UqXUh+uVyT+qDi0RbnAbqzM Xc84Scloako3E2mUte7WAe3yFaPshgdc9tdD+N87xuCooLY+Q+XGi0FQyJPLdcqss5zSTEu2 1CAg9LuA3lmu7iYD3uZ8p+VoC+8fy8PIgcqYSYfUU4O6t3niIA+khyJScxseJNZlfXwEDD0h jmP9CUjne1JidZRjf7hu1fanziru57FCBYv4RnaVX6k6QU/Y5O5Y4uv6h7Q6vMowJulokeps Wg6u5WvsLAyJ5ShtTegR+ZTJbqb3qPQWNHDumJHE54k/jWr3nese4FM/T1zTHuF1O5VIVcFh 2eC4WtsCI9v0GiCMPUsPN/gYyg+5fSwRIu4PhzBRoAWCqWdYjNr6wlIQSZ8NUjElVMwnLszM JLznS2EVC5DU8yLIBKQQP0B0fcLwSQ6zGXfLa0XIjyi2LuaIXeQEboYKgPUavhjtvje5gLI7 9xYKs2GjQ1FV/HzaTXW9ohVKk0WKX88Btb9rMk/mg+/zuhOSD1J5xz5mOhJl2lZc0J9yLegE paVBBAw9bYHrSebQThmk1g6AF8VYb5xrGggIQsnNkuy1n4obO6HtflOJsFmIOV8qbw6l5aYq sXpne3RW5yjrRyWolwggWXV9twKmOmD2VLQb3b0OmdXk2BIHVOZpoe+FucQyMX+JnHu7pBm+ ufIOvLzRJsIXQN5C8jKIPu90km81UXxa8ojN3Yk1uJ7IR22mKAzc3KZpqZuf6kkd0+frhPEj Fz+KUlD+oHwT3odq4ShaVas9NvyTIOT3yNyQwHm0FpBHXODpjX5ntccC7bgkPK0fDqcxZhOr N59l5nUWMDrVn4a22agO96HDJ7S5ucDY5d38z48RjDiSgzuDbltZH6bwcNIq6tBgKdDvhe7U V6O/d8cPqiVPMTiExgaIw9NgiGry6QPgjeLhRgqCByS2cO11OLvvYZu092kjzZUKrR4dogix I/NfeYIvhenhENC3smu0khpyohUEkE9bg==
IronPort-HdrOrdr: A9a23:FRZ216498/+hlo/zywPXwUmBI+orL9Y04lQ7vn2ZFiY5TiXIra qTdaogviMc0AxhIE3Jmbi7WJVoMkmsjqKdhrNhdotKPTOW8FdAQ7sSibcKrwePJ8S6zJ8l6U 4CSdk1NDSTNykcsS+S2mDRf7kdKZu8gcaVbIzlvhRQpHRRGsRdBnBCe2Sm+yNNJTVuNN4cLt 6x98BHrz2vdTA8dcKgHEQIWODFupniiI/mSQRuPW9q1CC+yReTrJLqGRmR2RkTFxlVx605zG TDmwvloo2+rvCAzAPG3WO71eUYpDKh8KoMOCW/sLlUFtzesHfqWG2nYczBgNkBmpDv1L/tqq iIn/5vBbU215qbRBDOnfKk4Xic7N9p0Q6u9bbQuwqdnST0KQhKd/ZplMZXdADU5FEnu8w52K VX33iBv54SFh/Ymj/hjuK4IC2Cu3DE1EbKq9Rj+0B3QM8bcvtcvIYf9ERaHNMJGz/78pkuFK 1rANvH7PhbfFuGZzSB11MfieCETzA2BFOLU0ICssua33xfm2141VIRwIgakm0b/JwwRpFY76 DPM7hulrtJUsgKBJgNctspUI+yECjAUBjMOGWdLRDuE7wGIWvEr9rt7LA89IiRCe41JVsJ6e f8uX9jxB4PkhjVeLOzNbVwg2HwfFk=
X-Talos-CUID: 9a23:5c/Om23tFOZCRa/WIQB4xLxfF9AbUiDskCfsCUqUKH1ET77LcFSiwfYx
X-Talos-MUID: 9a23:rPT1eAYh1ROLweBTsT3NuGluMeJRurmKNFkWrqgmosiNDHkl
X-IronPort-AV: E=Sophos;i="6.03,283,1694728800"; d="scan'208";a="14880811"
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=H7tJJRsXUf6zcoE+NdpKbDWNz535uJ72/uPCkLEPbRFWdk/UuPLL+pMr5cyakUuyUtzVmMQltBwA/nB+U0jaUO6CqPmF1y86bFQCJsPzLKmrhtm8daCpD4lvGP3EOdtraxl0lHkNzFsvwHM1VlzQIEtZq969VkmdnHiNNkXIRIE7F4bbEV4VypoTpNpXLMk4064Ysnp78MpV2QZNg31Ol9vDg3/YrKOa9YXMuyYN2688/pi20NAER8OGbG2bvJBThRO1RRuZN8pfZUrwwLhY/rmBYI3JbqDXRnN5xpNUftCYkyRObyGDop3k/F1HF3z1oln5WfSgPcEZMmj92E1GUg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=wSZeXeZNub0320vbN2+3n6WzyFbwmkt6/nYslXge58c=; b=cyq3LZbkE5vwSSZ05TFrwmwkQwUzsqJB6n75BGMlkjA41AeVWSggPK5oTW87DBCCrhnFZMU+QrKfQJtQdtFetdlMsOgCgZ/6Kp/BSOeBZL/4cEmEAfzb3yOOi9PABNufDtqQQCJsbod6jTWNEAuf6w9Fq+FV0vu/KAhVFDIdPBolgzT3ztOj+s4dyb4c0Edh0ER4gV6GMjJzepvbhMeUyDhFA/lUBwfdGIw0mC2wAPJ2Pl6Ootv3CJUQQtPyeOrjmLmHSUu+pALVUgEMbpLz6jAIz0EK3MTNzYVAryZsc2hfnw+emZQFEFxAYh1pHtxGsJp4102RqnVwv/c4Elma6g==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=orange.com; dmarc=pass action=none header.from=orange.com; dkim=pass header.d=orange.com; arc=none
To: "secdir@ietf.org" <secdir@ietf.org>
CC: "cdni@ietf.org" <cdni@ietf.org>, "draft-ietf-cdni-delegation-acme.all@ietf.org" <draft-ietf-cdni-delegation-acme.all@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>
Thread-Topic: Secdir last call review of draft-ietf-cdni-delegation-acme-03
Thread-Index: AQHaAPfJ+k8gczb/Qk60Xi/3JphyGLBvArnA
Date: Tue, 07 Nov 2023 13:57:31 +0000
Message-ID: <DB4PR02MB9560755614F98D576A5D99C6FDA9A@DB4PR02MB9560.eurprd02.prod.outlook.com>
References: <169754671158.21160.1314665109283979400@ietfa.amsl.com>
In-Reply-To: <169754671158.21160.1314665109283979400@ietfa.amsl.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Enabled=true; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_SetDate=2023-11-07T13:57:29Z; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Method=Standard; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Name=Orange_restricted_external.2; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_ActionId=da2993cf-d784-4176-9ce2-9db5b55a6f49; MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_ContentBits=2
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DB4PR02MB9560:EE_|AS8PR02MB9720:EE_
x-ms-office365-filtering-correlation-id: eda8621f-d881-4566-a774-08dbdf997c6a
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB4PR02MB9560.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(346002)(136003)(366004)(396003)(39860400002)(376002)(230922051799003)(1800799009)(64100799003)(451199024)(186009)(122000001)(9686003)(66574015)(26005)(38070700009)(478600001)(52536014)(8936002)(5660300002)(66476007)(450100002)(4326008)(8676002)(66556008)(85182001)(2906002)(41300700001)(86362001)(33656002)(66446008)(66946007)(64756008)(54906003)(6916009)(76116006)(316002)(85202003)(6506007)(71200400001)(7696005)(38100700002)(55016003)(83380400001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: DxMq0tvKzA91dWyxLm6GLfDgmqREUbNNT2n3FUCJM7/cvDjfhyFQ+yr0CWtkHekC9QfxUvnOQSnBwBPZ3oqGXEUFVzwya9nJfQmLfQgxPqI7FbZC3pApq5RMnJ1RqyLm0C32y8YJF0wmeFzkFcuNuXT79ZFjg2tWT8xZY4tTredDy97ilN4I84sBTvU3q7kLG5b1RNS+DHjysiciDTLO+WIGUHhQmKnNy/8APCjAqSd22xNxn9F+mwwBSBTlP8hEuClUGsoP/Hq9nS2O5VWDvj6Avi8AQSD+y89Pc+5QtSgWZKW5C3iOZqA6OsXm2KmKQRNRRBwfHzfQ9XnQUL791PFMJUbbpsb1yBivlBYncQim4cGGPvVI+NoKoKBSOKA/rIwIpBkrWlFwBXuyzbQMSh44q+ujaaGJR7J4V5pQLLHJDujW3l/m3dyx03/FjinJTGbAjp7EK64gL9ZuvAG8MgNJp9ojXxQe1KJHkMa7hRmQ9uGn1XoqmQ5r8t2bP+cAD/wPaGYI5kAydAfdFC+cC4S9yaXEU/keOrr+WnGdeuILJcA1m4DQnAN8jTl6n/t0wJ4h88gkjz5FePXfNvG+v/06UowW/znBkbdxGXInZvmnDFJsNnaiLKboRrxU+odd5vuxK+tTv3YW7LDixu9ZVrqHtfTAZfNkuEEWdMZgzD8TF/efZ8MlthBGlZ8TI6yKZs1l07wr5mLbhcv4TewDZTciErv8+JakNDFy72OIAAFB/Ste7+1fJvuLBaRS/5x03R2IDRMTsjNvAxtXs8lGXjKbqFjCxDCR9odTBUnce4iFAJzQsCyoEFBUPS+dgT5BS/EXOKQclIZ3Aih13E3dUWUdW6HINtwVDiSiHCjt7jQd3hVx+yeOiG5vjboYE2yrlQKQyDYQdQ7CJjBik9Af2q8uW7ZSTPc32aXMCCREpUoCM2EZr+H5T310OyObAFqSR2wCkCgWX2pSlER3KhZg4/KDCx68p+hkoySU9vrPCNUQJtAU9BdK5ovAUK7xOOc6nJgngxSk6ci4AvgKdDo9nwITGESzhOQnywNtRRkRyOOptt8jw89AFTLCdGUsvsPnSv3/b1sweFfZ9kKltwkTkkFsh/4S0EeuOJaP6rC9trOlYVt55sHaEMbVg9GCZfKOFHN2yQ/ClmiJR32+TbJVSSuVNV/WjNRVSMFJ24jbjdp34uVU3JEWYRL42uT+RKXS8RzhJ4/1CepOMMguVS5GD4LYJ1yzJjx5I5lTR+BFqCU01a5Lo/Oye8jV5G1ywuYdtZSMn8lP1IhHm9XaN/S/C3T5v2RGEOUtHBDQ1kcvEF3iGXvF/woc1BmzbuwA4YbWp8zyeRhN3y6nHuCmPVuYQlOiCDB1cEWheNcmkHha7grNi8VDeZNfTEvL1xTbqV37SyhB2NtKbPW1W7Nlidz+JCIVHAtKn5wa1CRTbp7lpVG7YNI36DpS/JWosUF9UP730o7nGEoLZxCJuiK4748ozxyzEoZh8jfUfZmXyYsEUfOahhNWcQqdW54BilmbiOyEgU5pxO86aHHzX6oy2pbOjufJBXfVG89GNlOQXegg7iNKIo3zkK9rXOygKto6v2RQ
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
X-OriginatorOrg: orange.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DB4PR02MB9560.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: eda8621f-d881-4566-a774-08dbdf997c6a
X-MS-Exchange-CrossTenant-originalarrivaltime: 07 Nov 2023 13:57:31.3133 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 90c7a20a-f34b-40bf-bc48-b9253b6f5d20
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: jAdp29T/hUZhzXeid9yAnyOHP2SoUrQr54QVK9PH/TiJxGo8X1eFnYAT7I61qyNmUtume4c2kPZGyukojIvcawqwZf0+To87ZazZsuZvPRQ=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AS8PR02MB9720
X-TM-AS-ERS: 10.106.160.159-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== ZnJlZGVyaWMuZmllYXVAb3Jhb mdlLmNvbQ==
X-TMASE-Version: DDEI-5.1-9.0.1002-27984.000
X-TMASE-Result: 10--21.993800-10.000000
X-TMASE-MatchedRID: LVkZzMT5mErUL3YCMmnG4jjNGpWCIvfTkYC3rjkUXRIwc9ThMH3qVwbo TDS3zulA3L9bAWfzbS+6k04B6phRjtf5qsFWeaS1jtK7dC6UBnmY9QZkl7En9NS+7d6ZUWop2Hu w61jLswC+puCvi0oJC7GWOVyNT4jAxPinAn+mfuj/2ZGj3BST5YLsLasl5ROhO/O8akuCYNcVm+ XpsfgKM+rSTlZpjLcHuM4bJ8t9pyyjTlyMVQ3mhEA0Hz2xXRsnfS0Ip2eEHny8eR0+Gc2mPyE95 pUwcexM4wnhOb+JR+Q9l7H+TFQgdbeQq6mF2S4/3QfwsVk0UbslCGssfkpInQ==
X-TMASE-SNAP-Result: 1.821001.0001-0-1-22:0,33:0,34:0-0
X-TMASE-INERTIA: 0-0;;;;
X-TMASE-XGENCLOUD: a24359c1-b054-411d-a9e2-22328ba76f76-0-0-200-0
Content-Transfer-Encoding: base64
Archived-At: <https://mailarchive.ietf.org/arch/msg/cdni/GxcIvI0CBSh4zOnElXrEmd5QfJg>
Subject: Re: [CDNi] Secdir last call review of draft-ietf-cdni-delegation-acme-03
X-BeenThere: cdni@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This list is to discuss issues associated with the Interconnection of Content Delivery Networks \(CDNs\)" <cdni.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cdni>, <mailto:cdni-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cdni/>
List-Post: <mailto:cdni@ietf.org>
List-Help: <mailto:cdni-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cdni>, <mailto:cdni-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 07 Nov 2023 13:58:08 -0000

Hi,

Thanks for the review. We will take it into account in the next version of the draft.

Regards,
Frédéric


Orange Restricted

-----Message d'origine-----
De : Valery Smyslov via Datatracker <noreply@ietf.org> 
Envoyé : mardi 17 octobre 2023 14:45
À : secdir@ietf.org
Cc : cdni@ietf.org; draft-ietf-cdni-delegation-acme.all@ietf.org; last-call@ietf.org
Objet : Secdir last call review of draft-ietf-cdni-delegation-acme-03

Reviewer: Valery Smyslov
Review result: Ready

I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG.  These comments were written primarily for the benefit of the security area directors.  Document editors and WG chairs should treat these comments just like any other last call comments.

This draft defines a CDNI metadata object to enable delegation of X.509 certificates using ACME protocol. The actual operations for certificates delegation using ACME protocol are defined in RFC9115, which contains a comprehensive list of security considerations. This document just extends the CDNI metadata interface to enable leveraging the schemes from RFC9115.

Nits:

1. "CDN" is used in the Abstract without expanding, but it is later expanded in the Introduction.
   I found this inconsistent: if the abbreviation is well-known, then no
   expanding is needed, otherwise, it should be expanded in the Abstract.

2. "CDNI", "FCI" are used with no expanding before the Terminology section, which specifies where the terms are defined.


____________________________________________________________________________________________________________
Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.