Re: [dhcwg] Secure DHCPv6 Deployment Consideration - proposed text

神明達哉 <jinmei@wide.ad.jp> Tue, 06 October 2015 17:56 UTC

Return-Path: <jinmei.tatuya@gmail.com>
X-Original-To: dhcwg@ietfa.amsl.com
Delivered-To: dhcwg@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 43E8F1A7012 for <dhcwg@ietfa.amsl.com>; Tue, 6 Oct 2015 10:56:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.978
X-Spam-Level:
X-Spam-Status: No, score=-0.978 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FM_FORGED_GMAIL=0.622, FREEMAIL_FROM=0.001, MIME_8BIT_HEADER=0.3, SPF_PASS=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5SxYPZ-vfd79 for <dhcwg@ietfa.amsl.com>; Tue, 6 Oct 2015 10:56:36 -0700 (PDT)
Received: from mail-ig0-x233.google.com (mail-ig0-x233.google.com [IPv6:2607:f8b0:4001:c05::233]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D21731AD0B8 for <dhcwg@ietf.org>; Tue, 6 Oct 2015 10:52:19 -0700 (PDT)
Received: by igcpe7 with SMTP id pe7so30112152igc.0 for <dhcwg@ietf.org>; Tue, 06 Oct 2015 10:52:19 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:sender:in-reply-to:references:date:message-id:subject :from:to:cc:content-type; bh=62Ho9isfl60/Sf82DKmWAU2kvVG4PQF91OWEqXdyjEU=; b=nuPgNSiTkWpU5xULsqQxaY8AMtiOTd/KO9XrbIi4ekv9ALvcZjKCoB1rMPztrGSAMx NqMWCqD12+UV6Cs+oaXYxDNJu4NYmvlBDrxsUxpHcy7n+gddvI1U84kM0SBjtZ9o45AW WthKJuPeIUEbhX7qTQu61xmNvECJmfGQ6OujbWl9bppLm1gQWTQf7yJoaiNFYViCxttC nIEr1N4EWX1JNpg3P8r6su2CI5uySt/UQwEq7uFsyJpBKYpRvBB3AH3eaiEpmDty0QtR /g2qgd+FH3slXQvVypt5q9Wqmqn4QO5evoaulXaa8nDX6ZO/eeesDVC4H2jp813Lve0N WJRg==
MIME-Version: 1.0
X-Received: by 10.50.70.1 with SMTP id i1mr3758459igu.78.1444153939263; Tue, 06 Oct 2015 10:52:19 -0700 (PDT)
Sender: jinmei.tatuya@gmail.com
Received: by 10.107.140.12 with HTTP; Tue, 6 Oct 2015 10:52:18 -0700 (PDT)
In-Reply-To: <5D36713D8A4E7348A7E10DF7437A4B927BB250CE@nkgeml512-mbx.china.huawei.com>
References: <5D36713D8A4E7348A7E10DF7437A4B927BB250CE@nkgeml512-mbx.china.huawei.com>
Date: Tue, 06 Oct 2015 10:52:18 -0700
X-Google-Sender-Auth: R_ew1sSkHHMwP9Jtp62Q4Amcfi0
Message-ID: <CAJE_bqeva4f=BKt4LZdgf6Rput38jfc3szzhHuzEEn5yERTvMA@mail.gmail.com>
From: 神明達哉 <jinmei@wide.ad.jp>
To: Sheng Jiang <jiangsheng@huawei.com>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <http://mailarchive.ietf.org/arch/msg/dhcwg/kF9bzprdWSLjkIQhbiTugyd8Ahw>
Cc: "dhcwg@ietf.org" <dhcwg@ietf.org>, "dhc-chairs@tools.ietf.org" <dhc-chairs@tools.ietf.org>, "draft-ietf-dhc-sedhcpv6@tools.ietf.org" <draft-ietf-dhc-sedhcpv6@tools.ietf.org>, Ted Lemon <Ted.Lemon@nominum.com>
Subject: Re: [dhcwg] Secure DHCPv6 Deployment Consideration - proposed text
X-BeenThere: dhcwg@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: <dhcwg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dhcwg/>
List-Post: <mailto:dhcwg@ietf.org>
List-Help: <mailto:dhcwg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Oct 2015 17:56:37 -0000

On Mon, Aug 24, 2015 at 7:56 PM, Sheng Jiang <jiangsheng@huawei.com> wrote:

> During the latest AD review and security review, we have received
> many constructive comments. Although some general security issues
> are out of scope, we have integrated most of comments. One of the
> major concern is regarding to the deployment/applicability,
> particularly the PKI availability. Therefore, we have proposed the
> below text for a new section, deployment consideration. Your review
> and comments are appreciated.

Out of curiosity, what's the current status of this discussion?  I've
provided my own comments (followed by some small discussions), but
I've not seen any specific actions like a new version of the draft.

--
JINMEI, Tatuya