[Gen-art] Gen-ART review for draft-turner-md2-to-historic-05

<kathleen.moriarty@emc.com> Tue, 09 November 2010 15:42 UTC

Return-Path: <kathleen.moriarty@emc.com>
X-Original-To: gen-art@core3.amsl.com
Delivered-To: gen-art@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 17C453A68C1 for <gen-art@core3.amsl.com>; Tue, 9 Nov 2010 07:42:50 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level:
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pSwFcfr8R8Iv for <gen-art@core3.amsl.com>; Tue, 9 Nov 2010 07:42:49 -0800 (PST)
Received: from mexforward.lss.emc.com (mexforward.lss.emc.com [128.222.32.20]) by core3.amsl.com (Postfix) with ESMTP id 247A13A6928 for <gen-art@ietf.org>; Tue, 9 Nov 2010 07:42:48 -0800 (PST)
Received: from hop04-l1d11-si01.isus.emc.com (HOP04-L1D11-SI01.isus.emc.com [10.254.111.54]) by mexforward.lss.emc.com (Switch-3.4.3/Switch-3.4.3) with ESMTP id oA9Fh6KY032716 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Tue, 9 Nov 2010 10:43:08 -0500
Received: from mailhub.lss.emc.com (mailhub.lss.emc.com [10.254.221.251]) by hop04-l1d11-si01.isus.emc.com (RSA Interceptor); Tue, 9 Nov 2010 10:42:57 -0500
Received: from corpussmtp5.corp.emc.com (corpussmtp5.corp.emc.com [128.221.166.229]) by mailhub.lss.emc.com (Switch-3.4.3/Switch-3.4.3) with ESMTP id oA9FgQFn004761; Tue, 9 Nov 2010 10:42:28 -0500
Received: from mxhub08.corp.emc.com ([128.221.46.116]) by corpussmtp5.corp.emc.com with Microsoft SMTPSVC(6.0.3790.4675); Tue, 9 Nov 2010 10:42:26 -0500
Received: from mx06a.corp.emc.com ([169.254.1.184]) by mxhub08.corp.emc.com ([128.221.46.116]) with mapi; Tue, 9 Nov 2010 10:42:26 -0500
From: kathleen.moriarty@emc.com
To: gen-art@ietf.org, turners@ieca.com, lily.chen@nist.gov
Date: Tue, 09 Nov 2010 10:42:18 -0500
Thread-Topic: Gen-ART review for draft-turner-md2-to-historic-05
Thread-Index: AcuAJLD1SlEEa0q8Rmy19a53deK/ow==
Message-ID: <AE31510960917D478171C79369B660FA0DABCFBB76@MX06A.corp.emc.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginalArrivalTime: 09 Nov 2010 15:42:26.0442 (UTC) FILETIME=[B59E4EA0:01CB8024]
X-EMM-MHVC: 1
X-EMM-MFVC: 1
Subject: [Gen-art] Gen-ART review for draft-turner-md2-to-historic-05
X-BeenThere: gen-art@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: "GEN-ART: General Area Review Team" <gen-art.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/gen-art>, <mailto:gen-art-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/gen-art>
List-Post: <mailto:gen-art@ietf.org>
List-Help: <mailto:gen-art-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/gen-art>, <mailto:gen-art-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 09 Nov 2010 15:42:50 -0000

I am the assigned Gen-ART reviewer for this draft. For background on
Gen-ART, please see the FAQ at
<http://wiki.tools.ietf.org/area/gen/trac/wiki/GenArtfaq>.

Please resolve these comments along with any other Last Call comments
you may receive.

Document: draft-turner-md2-to-historic
Reviewer: Kathleen Moriarty
Review Date: November 9, 2010
IETF LC End Date: November 9, 2010
IESG Telechat date: (if known)

Summary:  This draft is basically ready for publication, but has nits that should be fixed before publication.
The intent of this draft is to retire the MD2 message digest algorithm and providing the justification.  This draft also requests that RFC 1319 be moved to historic.

Major issues:

Minor issues:

Nits/editorial comments:
Section 4: Impact of Moving MD2 to Historic
The first bullet in the subsection "Regarding PS RFCs:" starts with Further, however it is the first bullet so I recommend changing it to read:
"MD2 support in TLS was dropped in TLS 1.1"

Section 7: Recommendation
I recommend breaking the first paragraph into two sentences as follows:

Despite MD2 seeing some deployment on the Internet, this
   specification recommends obsoleting MD2.  MD2 is not a
   reasonable candidate for further standardization and should be
   deprecated in favor of one or more existing hash algorithms (e.g.,
   SHA-256 [SHS]).


I apologize for the slow turn around on this review.  Work has been hectic!

Thank you,
Kathleen