Re: [Dots] TR: New Version Notification for draft-reddy-dots-home-network-02.txt

Dan Wing <danwing@gmail.com> Thu, 22 November 2018 07:20 UTC

Return-Path: <danwing@gmail.com>
X-Original-To: dots@ietfa.amsl.com
Delivered-To: dots@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6DEDE130E09 for <dots@ietfa.amsl.com>; Wed, 21 Nov 2018 23:20:16 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id c2SsyW-hODr4 for <dots@ietfa.amsl.com>; Wed, 21 Nov 2018 23:20:13 -0800 (PST)
Received: from mail-wm1-x32b.google.com (mail-wm1-x32b.google.com [IPv6:2a00:1450:4864:20::32b]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 85256130DD4 for <dots@ietf.org>; Wed, 21 Nov 2018 23:20:13 -0800 (PST)
Received: by mail-wm1-x32b.google.com with SMTP id k198so8036632wmd.3 for <dots@ietf.org>; Wed, 21 Nov 2018 23:20:13 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=2lMld0OiINdiv6wNCb9GPBbXl5bGMKRMnXoEdYTYTB8=; b=dRcfQ2UrTMqKfW2GkxjN2gfhZPqYsXita3JS77xtcPkZbnvBFUHWtQt8ccI8O0EHKK G1yNk6c8vpQkGppv2BXOj6SDSXJ4i1JSKYqZJiH1o9zYRiCJz8FG9CfM3F6+JwfKEn6R 0u8WOVgnQwedq3J2pQViZcwAUzXk4QTn5/G8piKZvQYWbFwE2nMrp3U/L+leqwbeLQHo kJxCc1ybVFxeibatXJhCu5/gDKN0qWBtuwKUPkyNX1WqYGk8z4h8W3sfaLgZUA1GrQmr hwl0qtfTulzctaY47BRf8tHiDJrDYJ2EaHkfPqOnq4w+dV/nC/5SBOnnfo32DwZQAEWs QeuQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=2lMld0OiINdiv6wNCb9GPBbXl5bGMKRMnXoEdYTYTB8=; b=d9B/hvuB8R1p1EA4FEI1s7t1KpaYd2K0Al0SU9yhjz1smI12xgstLOZ4MKJOjq64lK i8/tVYisfOZ1Hy4HLGRooC8oLcRF7Mmg/i2O33kfVpBX/UgvWBu7Yf1y67eOuyp3Ufg3 Nz/OidnO7cKFkr8P/vwyykLNC73TkGOkO3hipHwW0bkeKGO+/e1vzc1PWC45lrboMdIB 2dVk+2drTABIhZkAiozF/ZoZle/Tg1WnAdNp4V1e63Un3pvYSF6NAXQxnaoqR4uN/lEc izLFnqWoHgdq8p/cPn1Q4IktlwhE2M1zx1XCBFxGnvRb6TcIzBmPu+l46qZ0+KuoQ45I iBhg==
X-Gm-Message-State: AGRZ1gJGnG/zpQtpA3S5HdYLFlAudii17v+niQUwUBwKcp9QXRHUJQzX RAlGE1aE811jfYHh3sgBW+qXnEhB
X-Google-Smtp-Source: AJdET5deMTDL/2Bp/GciIXNDLWqwrZvy8S1zQDJvvXkLfNZ0fOdiLVadtf0R2y1TD0mjmaDfUAezmg==
X-Received: by 2002:a1c:4108:: with SMTP id o8mr8078495wma.91.1542871211538; Wed, 21 Nov 2018 23:20:11 -0800 (PST)
Received: from [192.168.0.102] ([105.156.102.75]) by smtp.gmail.com with ESMTPSA id h4sm25840324wrt.66.2018.11.21.23.20.08 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Wed, 21 Nov 2018 23:20:10 -0800 (PST)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (1.0)
From: Dan Wing <danwing@gmail.com>
X-Mailer: iPhone Mail (16B92)
In-Reply-To: <787AE7BB302AE849A7480A190F8B93302E045230@OPEXCLILMA3.corporate.adroot.infra.ftgroup>
Date: Thu, 22 Nov 2018 08:20:04 +0100
Cc: Roman Danyliw <rdd@cert.org>, "Xialiang (Frank, Network Integration Technology Research Dept)" <frank.xialiang@huawei.com>, "Panwei (William) (william.panwei@huawei.com)" <william.panwei@huawei.com>, "dots@ietf.org" <dots@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <9C23835F-E460-43C2-9F6D-9F7ED007DAAB@gmail.com>
References: <154211930418.26992.12586161888366921.idtracker@ietfa.amsl.com> <787AE7BB302AE849A7480A190F8B93302E045230@OPEXCLILMA3.corporate.adroot.infra.ftgroup>
To: mohamed.boucadair@orange.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/dots/WWYTHct5wdFr4QiUygNA5f4xmzI>
Subject: Re: [Dots] TR: New Version Notification for draft-reddy-dots-home-network-02.txt
X-BeenThere: dots@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "List for discussion of DDoS Open Threat Signaling \(DOTS\) technology and directions." <dots.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dots>, <mailto:dots-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dots/>
List-Post: <mailto:dots@ietf.org>
List-Help: <mailto:dots-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dots>, <mailto:dots-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 22 Nov 2018 07:20:16 -0000

Currently I am in Morocco. Still useful to review next week?


-d

> On Nov 13, 2018, at 3:37 PM, <mohamed.boucadair@orange.com> <mohamed.boucadair@orange.com> wrote:
> 
> Hi Roman, Franck, Wei, 
> 
> FYI, we released an updated version of the draft which integrates the comments you raised. The main changes are as follows: 
> 
> * Add a new privacy considerations section as suggested by Roman.
> * Add a discussion on issues/fixes when an address sharing function is present between the DOTS client and server (Wei)
> * Add some text to clarify that the DOTS server on the CPE is simple compared to the one on the provider side. Only a single DOTS session will be maintained (Franck).
> * Further highlight that the solution is suitable for blocking attacks near the sources (I failed to get the name of the gentleman who raised this issue in the meeting).
> * Add some text to clarify that DOTS servers do not blindly accept requests and that the solution does not aim to track or censor users (the comment was made by same gentleman as above).  
> 
> Please let us know if the new text addresses your concern. 
> 
> As usual, comments, suggestions, and questions are more than welcome.
> 
> Cheers,
> Med
> 
>> -----Message d'origine-----
>> De : internet-drafts@ietf.org [mailto:internet-drafts@ietf.org]
>> Envoyé : mardi 13 novembre 2018 15:28
>> À : Tirumaleswar Reddy; Joshi Harsha; Jon Shallow; Reddy K; BOUCADAIR Mohamed
>> TGI/OLN
>> Objet : New Version Notification for draft-reddy-dots-home-network-02.txt
>> 
>> 
>> A new version of I-D, draft-reddy-dots-home-network-02.txt
>> has been successfully submitted by Mohamed Boucadair and posted to the
>> IETF repository.
>> 
>> Name:        draft-reddy-dots-home-network
>> Revision:    02
>> Title:        Denial-of-Service Open Threat Signaling (DOTS) Signal
>> Channel Call Home
>> Document date:    2018-11-12
>> Group:        Individual Submission
>> Pages:        17
>> URL:            https://www.ietf.org/internet-drafts/draft-reddy-dots-home-
>> network-02.txt
>> Status:         https://datatracker.ietf.org/doc/draft-reddy-dots-home-
>> network/
>> Htmlized:       https://tools.ietf.org/html/draft-reddy-dots-home-network-02
>> Htmlized:       https://datatracker.ietf.org/doc/html/draft-reddy-dots-home-
>> network
>> Diff:           https://www.ietf.org/rfcdiff?url2=draft-reddy-dots-home-
>> network-02
>> 
>> Abstract:
>>   This document presents DOTS signal channel Call Home service, which
>>   enables a DOTS server to initiate a secure connection to a DOTS
>>   client, and to receive the attack traffic information from the DOTS
>>   client.  The DOTS server in turn uses the attack traffic information
>>   to identify the compromised devices launching the outgoing DDOS
>>   attack and takes appropriate mitigation action.
>> 
>> 
>> 
>> 
>> Please note that it may take a couple of minutes from the time of submission
>> until the htmlized version and diff are available at tools.ietf.org.
>> 
>> The IETF Secretariat
> 
> _______________________________________________
> Dots mailing list
> Dots@ietf.org
> https://www.ietf.org/mailman/listinfo/dots