[Gen-art] Gen-ART Telechat review of draft-ietf-ipsecme-ad-vpn-problem-07.txt

Suresh Krishnan <suresh.krishnan@ericsson.com> Mon, 24 June 2013 19:15 UTC

Return-Path: <suresh.krishnan@ericsson.com>
X-Original-To: gen-art@ietfa.amsl.com
Delivered-To: gen-art@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 74F8921E8170 for <gen-art@ietfa.amsl.com>; Mon, 24 Jun 2013 12:15:32 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.299
X-Spam-Level:
X-Spam-Status: No, score=-102.299 tagged_above=-999 required=5 tests=[AWL=-0.300, BAYES_00=-2.599, J_CHICKENPOX_13=0.6, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HjxSej9nijFm for <gen-art@ietfa.amsl.com>; Mon, 24 Jun 2013 12:15:20 -0700 (PDT)
Received: from usevmg20.ericsson.net (usevmg20.ericsson.net [198.24.6.45]) by ietfa.amsl.com (Postfix) with ESMTP id 2164021E8159 for <gen-art@ietf.org>; Mon, 24 Jun 2013 12:15:19 -0700 (PDT)
X-AuditID: c618062d-b7f936d000004481-54-51c89ac6f06d
Received: from EUSAAHC005.ericsson.se (Unknown_Domain [147.117.188.87]) by usevmg20.ericsson.net (Symantec Mail Security) with SMTP id 94.07.17537.7CA98C15; Mon, 24 Jun 2013 21:15:19 +0200 (CEST)
Received: from eusaamw0712.eamcs.ericsson.se (147.117.20.181) by EUSAAHC005.ericsson.se (147.117.188.87) with Microsoft SMTP Server (TLS) id 14.2.328.9; Mon, 24 Jun 2013 15:15:18 -0400
Received: from [164.48.125.47] (147.117.20.214) by smtps-am.internal.ericsson.com (147.117.20.181) with Microsoft SMTP Server (TLS) id 8.3.279.1; Mon, 24 Jun 2013 15:15:17 -0400
Message-ID: <51C89A1D.10404@ericsson.com>
Date: Mon, 24 Jun 2013 15:12:29 -0400
From: Suresh Krishnan <suresh.krishnan@ericsson.com>
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:17.0) Gecko/20130404 Thunderbird/17.0.5
MIME-Version: 1.0
To: draft-ietf-ipsecme-ad-vpn-problem.all@tools.ietf.org, General Area Review Team <gen-art@ietf.org>
X-Enigmail-Version: 1.5.1
Content-Type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: 7bit
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFvrFJMWRmVeSWpSXmKPExsUyuXRPuO7xWScCDb7+FLXo+HCdzeLqq88s DkweS5b8ZPL4cvkzWwBTFJdNSmpOZllqkb5dAlfGoc/b2QsO81RsP3ScpYFxElcXIyeHhICJ xKore5ghbDGJC/fWs3UxcnEICRxllDh5v5kRwtnDKHH28CJ2CGcro8T6HfdYQVp4BTQlDq3f wgJiswioShy8vAbMZgMau2HnZyYQW1QgTOLDsiVMEPWCEidnPgGrERHIljj3fQHQHA4OYQEf iW3nAiGukJTY8qKdHcRmFtCTmHK1hRHClpfY/nYO2KVCQGu3rvnOOoFRYBaSqbOQtMxC0rKA kXkVI0dpcWpZbrqRwSZGYPgdk2DT3cG456XlIUZpDhYlcd6Xp3YFCgmkJ5akZqemFqQWxReV 5qQWH2Jk4uCUamBk+5Dxs31H2d0dG3znK9V3tL510Pm32aSI3fDCyZ3LHK5lGy/yX9wlqWTU bxxv9Ox77JvDKbOP/fncx3lygcDzXqnzC3OULYsmld3o27u0pPyJ+4q9DKoL/2n85NIRmsz/ tfq0u9XuQq/vOcfSH3BstZoRs9ng+kWHpo7/XBsCvXqLuhVY3+kpsRRnJBpqMRcVJwIAi8ew 6Q0CAAA=
Subject: [Gen-art] Gen-ART Telechat review of draft-ietf-ipsecme-ad-vpn-problem-07.txt
X-BeenThere: gen-art@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "GEN-ART: General Area Review Team" <gen-art.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/gen-art>, <mailto:gen-art-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/gen-art>
List-Post: <mailto:gen-art@ietf.org>
List-Help: <mailto:gen-art-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/gen-art>, <mailto:gen-art-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 24 Jun 2013 19:15:32 -0000

I have been selected as the General Area Review Team (Gen-ART)
reviewer for this draft (for background on Gen-ART, please see
http://www.alvestrand.no/ietf/gen/art/gen-art-FAQ.html).

Please wait for direction from your document shepherd
or AD before posting a new version of the draft.

Document: draft-ietf-ipsecme-ad-vpn-problem-07.txt
Reviewer: Suresh Krishnan
Review Date: 2013/06/24
IESG Telechat date: 2013/06/27

Summary: This draft is almost ready for publication as an Informational
RFC but I do have a few comments that the authors may want to consider.

Minor
=====

* Section 2.3

The following sentence is a bit confusing. How does a mobile user
connect to a new gateway without reinitiating a connection? Can you
please clarify or reword.

"The mobile user ought to be able to discover and then connect to the
current most efficient gateway without having to reinitiate the connection."

* Section 4.1. Requirement 5

Shouldn't there be a requirement here that states what kind of damage is
allowed and prohibited in case a hub node is compromised?

* Section 4.1. Requirement 12

It is unclear what this requirement means. Is the requirement for the
solution to integrate with multicast routing protocols to come up with a
different (and optimized) multicast ADVPN topology or to simply allow
the advpn to carry (flattened out) multicast traffic?

* Section 4.1. Requirement 14

Are there any special requirements that L3VPN poses on top of what is
required for carrying generic IP traffic? If so, can you elaborate here.

Thanks
Suresh