Re: [Dime] Kathleen Moriarty's No Objection on draft-ietf-dime-load-08: (with COMMENT)

Steve Donovan <srdonovan@usdonovans.com> Wed, 22 March 2017 20:57 UTC

Return-Path: <srdonovan@usdonovans.com>
X-Original-To: dime@ietfa.amsl.com
Delivered-To: dime@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 03634128BBB for <dime@ietfa.amsl.com>; Wed, 22 Mar 2017 13:57:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.12
X-Spam-Level:
X-Spam-Status: No, score=-1.12 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, SPF_NEUTRAL=0.779] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vieb0Igqpq-Y for <dime@ietfa.amsl.com>; Wed, 22 Mar 2017 13:57:28 -0700 (PDT)
Received: from biz131.inmotionhosting.com (biz131.inmotionhosting.com [173.247.247.114]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CE88312778D for <dime@ietf.org>; Wed, 22 Mar 2017 13:57:28 -0700 (PDT)
Received: from cpe-97-99-50-102.tx.res.rr.com ([97.99.50.102]:63016 helo=Steves-MacBook-Air.local) by biz131.inmotionhosting.com with esmtpsa (TLSv1.2:ECDHE-RSA-AES128-GCM-SHA256:128) (Exim 4.87) (envelope-from <srdonovan@usdonovans.com>) id 1cqnJk-000Rvt-W7 for dime@ietf.org; Wed, 22 Mar 2017 13:57:28 -0700
To: dime@ietf.org
References: <148961010415.14173.6368458424881153781.idtracker@ietfa.amsl.com>
From: Steve Donovan <srdonovan@usdonovans.com>
Message-ID: <1c20090a-a7a3-e19f-9e77-bb1b3e31c9b3@usdonovans.com>
Date: Wed, 22 Mar 2017 15:57:16 -0500
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.12; rv:45.0) Gecko/20100101 Thunderbird/45.8.0
MIME-Version: 1.0
In-Reply-To: <148961010415.14173.6368458424881153781.idtracker@ietfa.amsl.com>
Content-Type: multipart/alternative; boundary="------------F4BD02D947CD1092535F1E6F"
X-OutGoing-Spam-Status: No, score=-1.0
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - biz131.inmotionhosting.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - usdonovans.com
X-Get-Message-Sender-Via: biz131.inmotionhosting.com: authenticated_id: srdonovan@usdonovans.com
X-Authenticated-Sender: biz131.inmotionhosting.com: srdonovan@usdonovans.com
X-Source:
X-Source-Args:
X-Source-Dir:
Archived-At: <https://mailarchive.ietf.org/arch/msg/dime/x_wWt9xv-umLIcHtbYLlE2hIb8k>
Subject: Re: [Dime] Kathleen Moriarty's No Objection on draft-ietf-dime-load-08: (with COMMENT)
X-BeenThere: dime@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Diameter Maintanence and Extentions Working Group <dime.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dime>, <mailto:dime-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dime/>
List-Post: <mailto:dime@ietf.org>
List-Help: <mailto:dime-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dime>, <mailto:dime-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 22 Mar 2017 20:57:30 -0000

Kathleen,

Thanks for your review of the draft.  Please see my comments below.

Regards,

Steve

On 3/15/17 3:35 PM, Kathleen Moriarty wrote:
> Kathleen Moriarty has entered the following ballot position for
> draft-ietf-dime-load-08: No Objection
>
> When responding, please keep the subject line intact and reply to all
> email addresses included in the To and CC lines. (Feel free to cut this
> introductory paragraph, however.)
>
>
> Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
> for more information about IESG DISCUSS and COMMENT positions.
>
>
> The document, along with other ballot positions, can be found here:
> https://datatracker.ietf.org/doc/draft-ietf-dime-load/
>
>
>
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
>
> Since DIME doesn't have end-to-end security, shouldn't the security
> considerations section mention that as well?  It seems to fit the
> security considerations and would serve as a reminder of this problem.
This was, maybe insufficiently addressed with the last sentence in the 
section:

Since Diameter currently only offers
    authentication of nodes at the transport level, any solution that
    sends load information to non-peer nodes requires a transitive-trust
    model.

I've modified it as follows:

Since Diameter currently only offers
    authentication of nodes at the transport level and does not support end-to-end
    security mechanisms, any solution that
    sends load information to non-peer nodes requires a transitive-trust
    model.


>
>
> _______________________________________________
> DiME mailing list
> DiME@ietf.org
> https://www.ietf.org/mailman/listinfo/dime