Re: [Dots] Secdir early review of draft-ietf-dots-multihoming-09

mohamed.boucadair@orange.com Fri, 03 December 2021 06:20 UTC

Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: dots@ietfa.amsl.com
Delivered-To: dots@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0EFBB3A13A6; Thu, 2 Dec 2021 22:20:19 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id O7WDrUm8A-s9; Thu, 2 Dec 2021 22:20:14 -0800 (PST)
Received: from relais-inet.orange.com (relais-inet.orange.com [80.12.70.34]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D28513A13A3; Thu, 2 Dec 2021 22:20:10 -0800 (PST)
Received: from opfednr03.francetelecom.fr (unknown [xx.xx.xx.67]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by opfednr20.francetelecom.fr (ESMTP service) with ESMTPS id 4J52k02BGHz1yJr; Fri, 3 Dec 2021 07:20:08 +0100 (CET)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; s=ORANGE001; t=1638512408; bh=SxfYzbaCQLozBbR0RKGA2IQ4Dc0DqvBIv6Wi8AxKukA=; h=From:To:Subject:Date:Message-ID:Content-Type: Content-Transfer-Encoding:MIME-Version; b=UoxNIIePHDdLKog4MZOKrFFEtdGGMdyTsIY4L3wUdDXWrQgZGZs0Yn0fOF2b/VAmY uUwnEmC70YqqfX7SqJl7LZBlG25Om3dmAHdhlwsPTx9YU0mxuDbXUNMKzRwk8by96x mtxvgG0tOwNNV1LHPt7LCLDEuvzzW/Zy1xIBozTnPNqTveJjkgvPZt+UUZGaNvP8Pp GA57RtPwMYcpFcdgZ3WWC8voLpQ9opK/5HH4NLxEuQFePi3mzdRwzmduU24GSLjQH4 DtqEQZg8DUXxXgNmggFym20TwzC++sTGd2vz2F1t4WELZAEILoLS9lD7f8Cmp1PVJj exN2ou+l1x5iA==
Received: from Exchangemail-eme6.itn.ftgroup (unknown [xx.xx.13.32]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by opfednr03.francetelecom.fr (ESMTP service) with ESMTPS id 4J52k01DqfzDq7Y; Fri, 3 Dec 2021 07:20:08 +0100 (CET)
From: mohamed.boucadair@orange.com
To: Kathleen Moriarty <Kathleen.Moriarty.ietf@gmail.com>, "secdir@ietf.org" <secdir@ietf.org>
CC: "dots@ietf.org" <dots@ietf.org>, "draft-ietf-dots-multihoming.all@ietf.org" <draft-ietf-dots-multihoming.all@ietf.org>
Thread-Topic: Secdir early review of draft-ietf-dots-multihoming-09
Thread-Index: AQHX574IqzKFO5oGXEG/woFwIvUYRawgS9kw
Content-Class:
Date: Fri, 03 Dec 2021 06:20:07 +0000
Message-ID: <24290_1638512408_61A9B718_24290_87_8_787AE7BB302AE849A7480A190F8B93303545E630@OPEXCAUBMA2.corporate.adroot.infra.ftgroup>
References: <163847813726.21175.10573418854191010989@ietfa.amsl.com>
In-Reply-To: <163847813726.21175.10573418854191010989@ietfa.amsl.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2021-12-03T06:19:46Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=b3bdd607-1e65-4740-be75-1bb6e95615d3; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
x-originating-ip: [10.114.13.247]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/dots/9KUJMTgcWxiI6k7xYghE3BWAXfg>
Subject: Re: [Dots] Secdir early review of draft-ietf-dots-multihoming-09
X-BeenThere: dots@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "List for discussion of DDoS Open Threat Signaling \(DOTS\) technology and directions." <dots.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dots>, <mailto:dots-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dots/>
List-Post: <mailto:dots@ietf.org>
List-Help: <mailto:dots-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dots>, <mailto:dots-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 03 Dec 2021 06:20:19 -0000

Hi Kathleen, 

Many thanks for the review. Much appreciated. 

Will ack your review in the next iteration of the draft. 

Cheers,
Med

> -----Message d'origine-----
> De : Kathleen Moriarty via Datatracker <noreply@ietf.org>
> Envoyé : jeudi 2 décembre 2021 21:49
> À : secdir@ietf.org
> Cc : dots@ietf.org; draft-ietf-dots-multihoming.all@ietf.org
> Objet : Secdir early review of draft-ietf-dots-multihoming-09
> 
> Reviewer: Kathleen Moriarty
> Review result: Ready
> 
> This draft does not add any significant security considerations from the
> base publications for the protocol. Key security considerations are
> addressed in supporting document including mutual authentication and key
> (asymmetric and
> symmetric) provisioning as well as policy requirements. The security
> considerations add awareness to mitigate from the possibilities of data
> leaks.
> 
> Congratulations to all those who have worked on this series of documents!
> 
> Best regards,
> Kathleen
> 


_________________________________________________________________________________________________________________________

Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.