Re: [dhcwg] IESG Discusses on draft-ietf-dhc-relay-server-security-04

Eric Rescorla <ekr@rtfm.com> Thu, 20 April 2017 11:25 UTC

Return-Path: <ekr@rtfm.com>
X-Original-To: dhcwg@ietfa.amsl.com
Delivered-To: dhcwg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 985901293F8 for <dhcwg@ietfa.amsl.com>; Thu, 20 Apr 2017 04:25:19 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=rtfm-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id fftzGKAfQiD7 for <dhcwg@ietfa.amsl.com>; Thu, 20 Apr 2017 04:25:18 -0700 (PDT)
Received: from mail-yw0-x22d.google.com (mail-yw0-x22d.google.com [IPv6:2607:f8b0:4002:c05::22d]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 292DD129A9C for <dhcwg@ietf.org>; Thu, 20 Apr 2017 04:25:15 -0700 (PDT)
Received: by mail-yw0-x22d.google.com with SMTP id k13so36727153ywk.1 for <dhcwg@ietf.org>; Thu, 20 Apr 2017 04:25:15 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=rtfm-com.20150623.gappssmtp.com; s=20150623; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=uMtg/BiTSua9g4TnaLtCD7+Mrp2N6cYy2o5vbedZCdI=; b=muyjZRB+d2Cd+4W3LRkDwPyy4x3+ip/rr780fJLZB1mtlmFNFg0qRnpFaGcGfi4IN0 qqSIObzx5hLfQaRRfG1vNn5k58WBqtIs2yLZFfuIRmD6o1K9SsAlohA1dHh9PSc5coib NpaXwDno+o8IvzoYeeZCriDFTnyyHqMSOhgXAETivJyadow6U66+QkKM1n3dtfmekEnn odiynWk/Bgri3bccSQ6aYSCEsn0nL+PEpLuRH0orzMrmAxFOiFKldnUJNOQHo7f7nnPx IcUJvP47bzp83trEBMc5YerHZ8cYpWaoWwUhJjn8dooPh83hVidMWPN9VYCvkTXGJUUs gewQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=uMtg/BiTSua9g4TnaLtCD7+Mrp2N6cYy2o5vbedZCdI=; b=aETmswrmLe4xtDI+5QzIRR097jjKFPSo7fetc3oJbj6FCyL4WsiC/C//nG2lt9KpdA DteaowDaqvSMd2m+jVNBms/Z9tHepCZlNJF+MUax+ijuPzAVCZAsBAXqWJ/BFMunx9b3 D5cOwWV57Q+DtDe83mqz3RzUOygMms0HV0/BzyZD4gvS/ez9Ly7Pw/R/dhjgllFbpZPe NOQEoJMpFQLgpaKE9Zb9qPD1TAmN0Gsj9eOMiWxHWrR6v13kxNOforpJ5sHLXKs/ewhr /6ogsYBTg7VvO/WYbkUOF7C+A2+Abnfl9SU2PLgIoTUeBFin3OOiNDD9m1eyuqjFTcnf r8zQ==
X-Gm-Message-State: AN3rC/77WU8vIG/EHjdmDIVavdk0an5ZawDVWYPURPGSROzlLUt3DpfG 8bqMSEsGpVvZU/qSTYJC4n61f/brKA==
X-Received: by 10.129.125.193 with SMTP id y184mr6000607ywc.120.1492687514493; Thu, 20 Apr 2017 04:25:14 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.129.113.7 with HTTP; Thu, 20 Apr 2017 04:24:34 -0700 (PDT)
In-Reply-To: <36c922c04bee4233b58e5185f0a4f9ad@XCH-ALN-003.cisco.com>
References: <36c922c04bee4233b58e5185f0a4f9ad@XCH-ALN-003.cisco.com>
From: Eric Rescorla <ekr@rtfm.com>
Date: Thu, 20 Apr 2017 07:24:34 -0400
Message-ID: <CABcZeBMZPqvK-z+ef=M=6So9bL7WJfa-rXOdghVaXjYER2kTDA@mail.gmail.com>
To: "Bernie Volz (volz)" <volz@cisco.com>
Cc: The IESG <iesg@ietf.org>, "dhc-chairs@ietf.org" <dhc-chairs@ietf.org>, "draft-ietf-dhc-relay-server-security@ietf.org" <draft-ietf-dhc-relay-server-security@ietf.org>, "dhcwg@ietf.org" <dhcwg@ietf.org>
Content-Type: multipart/alternative; boundary="001a11492bfc0ff9a4054d976540"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dhcwg/Zm79EH2Tftt_aE5Xr0Qk-hoKh0Q>
Subject: Re: [dhcwg] IESG Discusses on draft-ietf-dhc-relay-server-security-04
X-BeenThere: dhcwg@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: <dhcwg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dhcwg/>
List-Post: <mailto:dhcwg@ietf.org>
List-Help: <mailto:dhcwg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 20 Apr 2017 11:25:20 -0000

Hmm... I don't think this really resolves my concern, which is: is anyone
going to actually do this.

I don't think that has to be in the draft, but I'd like understand it.

-Ekr


On Wed, Apr 19, 2017 at 3:00 PM, Bernie Volz (volz) <volz@cisco.com> wrote:

> Hi:
>
> I've posted a -05 which tries to address the Discusses (except perhaps for
> Ben Campbell's about which I sent a separate email on 4/12). Please review
> and let me know if this helps or whether more changes are needed.
>
> A new version of I-D, draft-ietf-dhc-relay-server-security-05.txt
> has been successfully submitted by Bernie Volz and posted to the IETF
> repository.
>
> Name:           draft-ietf-dhc-relay-server-security
> Revision:       05
> Title:          Security of Messages Exchanged Between Servers and Relay
> Agents
> Document date:  2017-04-19
> Group:          dhc
> Pages:          8
> URL:            https://www.ietf.org/internet-drafts/draft-ietf-dhc-relay-
> server-security-05.txt
> Status:         https://datatracker.ietf.org/doc/draft-ietf-dhc-relay-
> server-security/
> Htmlized:       https://tools.ietf.org/html/draft-ietf-dhc-relay-server-
> security-05
> Htmlized:       https://datatracker.ietf.org/
> doc/html/draft-ietf-dhc-relay-server-security-05
> Diff:           https://www.ietf.org/rfcdiff?url2=draft-ietf-dhc-relay-
> server-security-05
>
> - Bernie Volz
>