Re: [core] New Version Notification for draft-amsuess-core-pd-body-error-position-00.txt

Michael Richardson <mcr+ietf@sandelman.ca> Sun, 05 February 2023 20:47 UTC

Return-Path: <mcr+ietf@sandelman.ca>
X-Original-To: core@ietfa.amsl.com
Delivered-To: core@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AF4EDC14F737 for <core@ietfa.amsl.com>; Sun, 5 Feb 2023 12:47:11 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8p4JvN7uBeQy for <core@ietfa.amsl.com>; Sun, 5 Feb 2023 12:47:09 -0800 (PST)
Received: from relay.sandelman.ca (relay.cooperix.net [IPv6:2a01:7e00:e000:2bb::1]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CD71FC14E515 for <core@ietf.org>; Sun, 5 Feb 2023 12:47:09 -0800 (PST)
Received: from dyas.sandelman.ca (94-168-11-122.static.v4.ziggozakelijk.nl [94.168.11.122]) by relay.sandelman.ca (Postfix) with ESMTPS id F1B031F4B0; Sun, 5 Feb 2023 20:47:06 +0000 (UTC)
Received: by dyas.sandelman.ca (Postfix, from userid 1000) id E0816A1E6E; Sun, 5 Feb 2023 08:35:05 -0500 (EST)
Received: from dyas (localhost [127.0.0.1]) by dyas.sandelman.ca (Postfix) with ESMTP id DDD49A1DF3; Sun, 5 Feb 2023 14:35:05 +0100 (CET)
From: Michael Richardson <mcr+ietf@sandelman.ca>
To: Carsten Bormann <cabo@tzi.org>, Thomas Fossati <thomas.fossati@arm.com>, =?utf-8?Q?Christian_Ams=C3=BCss?= <christian@amsuess.com>, "core@ietf.org" <core@ietf.org>
In-reply-to: <9374D4B8-6A82-4280-8329-69BB7C0899E3@tzi.org>
References: <Y97e6dWnME7brk7r@hephaistos.amsuess.com> <DB9PR08MB65244577297F4C3CC1673E469CD59@DB9PR08MB6524.eurprd08.prod.outlook.com> <9374D4B8-6A82-4280-8329-69BB7C0899E3@tzi.org>
Comments: In-reply-to Carsten Bormann <cabo@tzi.org> message dated "Sun, 05 Feb 2023 11:52:16 +0100."
X-Mailer: MH-E 8.6+git; nmh 1.7+dev; GNU Emacs 26.3
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=-=-="; micalg="pgp-sha512"; protocol="application/pgp-signature"
Date: Sun, 05 Feb 2023 14:35:05 +0100
Message-ID: <2226531.1675604105@dyas>
Archived-At: <https://mailarchive.ietf.org/arch/msg/core/apfWcBKccffYMEqwKjz6XSOo7GE>
Subject: Re: [core] New Version Notification for draft-amsuess-core-pd-body-error-position-00.txt
X-BeenThere: core@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Constrained RESTful Environments \(CoRE\) Working Group list" <core.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/core>, <mailto:core-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/core/>
List-Post: <mailto:core@ietf.org>
List-Help: <mailto:core-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/core>, <mailto:core-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 05 Feb 2023 20:47:11 -0000

Carsten Bormann <cabo@tzi.org> wrote:
    >> My only doubt is why not requesting -9 (one byte) rather than -25 (two bytes)?

    > I agree with Christian that we don’t need to optimize this error case.

Do you think that we will turn this off in production?
Do we need to consider an attacker that if basically doing online fuzzing
against a live target?

--
Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works
 -= IPv6 IoT consulting =-