[Dots] Protocol Action: 'Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel Call Home' to Proposed Standard (draft-ietf-dots-signal-call-home-14.txt)
The IESG <iesg-secretary@ietf.org> Mon, 16 August 2021 15:19 UTC
Return-Path: <iesg-secretary@ietf.org>
X-Original-To: dots@ietf.org
Delivered-To: dots@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id E52603A0969; Mon, 16 Aug 2021 08:19:20 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: The IESG <iesg-secretary@ietf.org>
To: IETF-Announce <ietf-announce@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 7.36.0
Auto-Submitted: auto-generated
Precedence: bulk
Cc: The IESG <iesg@ietf.org>, Valery Smyslov <valery@smyslov.net>, dots-chairs@ietf.org, dots@ietf.org, draft-ietf-dots-signal-call-home@ietf.org, kaduk@mit.edu, rfc-editor@rfc-editor.org, valery@smyslov.net
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
Message-ID: <162912716092.6590.438482858128548898@ietfa.amsl.com>
Date: Mon, 16 Aug 2021 08:19:20 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/dots/lnlTSp-v6ZyZE4FQgOHE2v_DYQY>
Subject: [Dots] Protocol Action: 'Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel Call Home' to Proposed Standard (draft-ietf-dots-signal-call-home-14.txt)
X-BeenThere: dots@ietf.org
X-Mailman-Version: 2.1.29
List-Id: "List for discussion of DDoS Open Threat Signaling \(DOTS\) technology and directions." <dots.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dots>, <mailto:dots-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dots/>
List-Post: <mailto:dots@ietf.org>
List-Help: <mailto:dots-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dots>, <mailto:dots-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 16 Aug 2021 15:19:30 -0000
The IESG has approved the following document: - 'Distributed Denial-of-Service Open Threat Signaling (DOTS) Signal Channel Call Home' (draft-ietf-dots-signal-call-home-14.txt) as Proposed Standard This document is the product of the DDoS Open Threat Signaling Working Group. The IESG contact persons are Benjamin Kaduk and Roman Danyliw. A URL of this Internet Draft is: https://datatracker.ietf.org/doc/draft-ietf-dots-signal-call-home/ Technical Summary This document specifies the DOTS signal channel Call Home, which enables a DOTS server to initiate a secure connection to a DOTS client, and to receive the attack traffic information from the DOTS client. The DOTS server in turn uses the attack traffic information to identify the compromised devices launching the outgoing DDoS attack and takes appropriate mitigation action(s). The DOTS signal channel Call Home is not specific to the home networks; the solution targets any deployment which requires to block DDoS attack traffic closer to the source(s) of a DDoS attack. Working Group Summary WG support for the adoption was strong. The draft was well discussed and has been reviewed by many WG members. Document Quality The document authors are also co-authors of core DOTS documents (signal channel, data channel etc.) They have good understanding of DOTS architecture so this document should fit well into that architecture. There are at least two implementations of the draft. The IANA ports expert did not see sufficient reason to allocate another port for this usage, but the WG has found flaws in all alternate proposals raised to date. It is also noted that NETCONF and RESTCONF call home have their own dedicated port numbers, and the situation here is somewhat analogous. Personnel Valery Smyslov (shepherd) Benjamin Kaduk (AD)