[GROW] Brian Haberman's No Objection on draft-ietf-grow-filtering-threats-07: (with COMMENT)

"Brian Haberman" <brian@innovationslab.net> Tue, 18 August 2015 18:18 UTC

Return-Path: <brian@innovationslab.net>
X-Original-To: grow@ietfa.amsl.com
Delivered-To: grow@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 63E221A9068; Tue, 18 Aug 2015 11:18:54 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tvVxqCX0Rs26; Tue, 18 Aug 2015 11:18:53 -0700 (PDT)
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 0430F1A88E1; Tue, 18 Aug 2015 11:18:53 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Brian Haberman <brian@innovationslab.net>
To: The IESG <iesg@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 6.4.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <20150818181853.7042.39770.idtracker@ietfa.amsl.com>
Date: Tue, 18 Aug 2015 11:18:53 -0700
Archived-At: <http://mailarchive.ietf.org/arch/msg/grow/Ht4AvIRDJduwMa6hea4gqX9X790>
Cc: grow-chairs@ietf.org, grow@ietf.org, draft-ietf-grow-filtering-threats.ad@ietf.org, draft-ietf-grow-filtering-threats@ietf.org, draft-ietf-grow-filtering-threats.shepherd@ietf.org
Subject: [GROW] Brian Haberman's No Objection on draft-ietf-grow-filtering-threats-07: (with COMMENT)
X-BeenThere: grow@ietf.org
X-Mailman-Version: 2.1.15
List-Id: Grow Working Group Mailing List <grow.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/grow>, <mailto:grow-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/grow/>
List-Post: <mailto:grow@ietf.org>
List-Help: <mailto:grow-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/grow>, <mailto:grow-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 18 Aug 2015 18:18:54 -0000

Brian Haberman has entered the following ballot position for
draft-ietf-grow-filtering-threats-07: No Objection

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
for more information about IESG DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-grow-filtering-threats/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

I have no issues with the publication of this document.  The following
are simply voiced for your consideration...

1. I think the comment in 3.2 about how difficult it is to get routing
policies from external entities is undersold.  Most organizations won't
share that information since it might reveal business arrangements they
consider proprietary.  I would suggest being explicit in the cause for
the difficulty in obtaining such information.

2. Section 4.2.1 seems to be hinting at a UI deficiency in routing
platforms in that a route filter installed in the control plane should
automatically result in an ACL installed in the forwarding plane.  That
sounds like an intriguing capability.

3. All of the approaches described in section 4 seem littered with
caveats on their effectiveness. Is there any definitive data on the
effectiveness of these techniques?