Re: [I2nsf] need more review and support to close the WGLC for draft-ietf-i2nsf-consumer-facing-interface-dm

t petch <ietfa@btconnect.com> Wed, 03 August 2022 16:40 UTC

Return-Path: <ietfa@btconnect.com>
X-Original-To: i2nsf@ietfa.amsl.com
Delivered-To: i2nsf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F30BEC14F748 for <i2nsf@ietfa.amsl.com>; Wed, 3 Aug 2022 09:40:44 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.909
X-Spam-Level:
X-Spam-Status: No, score=-1.909 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, NICE_REPLY_A=-0.001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=btconnect.onmicrosoft.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Lms0eRztkD6m for <i2nsf@ietfa.amsl.com>; Wed, 3 Aug 2022 09:40:43 -0700 (PDT)
Received: from EUR03-AM5-obe.outbound.protection.outlook.com (mail-eopbgr30127.outbound.protection.outlook.com [40.107.3.127]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 63C18C14F743 for <i2nsf@ietf.org>; Wed, 3 Aug 2022 09:40:43 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=mNmi2mqLoXLgI2e1mCmWT+38NxN4FjL0RSeBfivc9zAn6DE3sksDmOYC3LKFbMzK52LVsyd/PQy4F6pEMkZwISmeysVGBrXfvBZH61MrNuB6+fovoTQ/VG2KyfiCBMCNArJ6lHb5mHdm+KMXqPHTugI6FVIOMjSzksWyHDtJXdoNJ+h8Sj8B8goE2bcAf0gNVRJpcDP2oUHfLz4jM5cgM9MtDcx1+GAXG9oNsUBGi3X+k8R3e6bQeOPI+W1yueJl6KeejjI3y4dh4TpeFuLjavr5LgkDUWzaAFWZb53NzAQJSvVA/mbUVS/0qKPP1zGrEYLfvHp7m5b+BDnm+epoRQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=dVZAm6voYFeeiVoEhoxq5ndORD5vD9/l7i92VGJRYMw=; b=h1dnDaLLYZziAXCVvLBD+s+KEPFQ+0sTzyrIY5kwfsE89rqXx5Zq+GudUIW0GTEWhvGC9B3FMn6QtTZUPIrc785TeDEs8XaZjDP07zwu3LDJMwabC0cAslZj0o3XxZRSNmaMh8972iFytUJuDwCLd/HfXEn7fTqMHGm6RBCJYdkIksPcQKVrLUi+GVn7DzneXW0jp55vh/UkonvpAwCVQWLRyWX+B+b2v9kkshWDTz6BHM6txM4D3zSMeMeqR30cZHMu8TOSdKb7osgZFk7yrSvhZBW8RwCIJ+dtAYkrR/lr0rb1QPBsyQQrtKCzuz148yFX/ullwDUmby7QbDOAag==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=btconnect.com; dmarc=pass action=none header.from=btconnect.com; dkim=pass header.d=btconnect.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=btconnect.onmicrosoft.com; s=selector2-btconnect-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=dVZAm6voYFeeiVoEhoxq5ndORD5vD9/l7i92VGJRYMw=; b=irzvSXfFTDUsK/yW/YJdBKdpPgTTQlr9TuTHDcW/7StMPmGZQt1O5GHBYHVUWKljilDY39W6ooY0ah3lNNSod/ulqilYJPiIInfMXFDPuOPjRv1JaL+JoNvwh9iR9/BGNlm3DCOljSLvHYUUBFQVkBQtukrBevBQImW60NoiE0g=
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=btconnect.com;
Received: from DB7PR07MB5546.eurprd07.prod.outlook.com (2603:10a6:10:73::23) by PAXPR07MB7823.eurprd07.prod.outlook.com (2603:10a6:102:15c::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5504.12; Wed, 3 Aug 2022 16:40:39 +0000
Received: from DB7PR07MB5546.eurprd07.prod.outlook.com ([fe80::b9dd:151b:ec6c:bc24]) by DB7PR07MB5546.eurprd07.prod.outlook.com ([fe80::b9dd:151b:ec6c:bc24%3]) with mapi id 15.20.5504.014; Wed, 3 Aug 2022 16:40:39 +0000
To: Linda Dunbar <linda.dunbar@futurewei.com>, Susan Hares <shares@ndzh.com>, "i2nsf@ietf.org" <i2nsf@ietf.org>
References: <CO1PR13MB49200B723C19BDC266EA98EC85869@CO1PR13MB4920.namprd13.prod.outlook.com> <BYAPR08MB487221C91BF204B34F337304B3869@BYAPR08MB4872.namprd08.prod.outlook.com> <CO1PR13MB4920C96E21FDD1536B27A0A685869@CO1PR13MB4920.namprd13.prod.outlook.com>
Cc: tom petch <daedulus@btconnect.com>
From: t petch <ietfa@btconnect.com>
Message-ID: <62EAA528.1070405@btconnect.com>
Date: Wed, 03 Aug 2022 17:41:12 +0100
User-Agent: Mozilla/5.0 (Windows NT 5.1; rv:38.0) Gecko/20100101 Thunderbird/38.5.0
In-Reply-To: <CO1PR13MB4920C96E21FDD1536B27A0A685869@CO1PR13MB4920.namprd13.prod.outlook.com>
Content-Type: text/plain; charset="windows-1252"; format="flowed"
Content-Transfer-Encoding: 7bit
X-ClientProxiedBy: LO4P123CA0664.GBRP123.PROD.OUTLOOK.COM (2603:10a6:600:316::8) To DB7PR07MB5546.eurprd07.prod.outlook.com (2603:10a6:10:73::23)
MIME-Version: 1.0
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: abfe1388-c55e-4b89-1856-08da756ee604
X-MS-TrafficTypeDiagnostic: PAXPR07MB7823:EE_
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB7PR07MB5546.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(376002)(396003)(366004)(136003)(39860400002)(346002)(87266011)(110136005)(26005)(6506007)(41300700001)(6666004)(53546011)(6512007)(52116002)(478600001)(45080400002)(316002)(296002)(966005)(6486002)(86362001)(38100700002)(38350700002)(82960400001)(186003)(8676002)(66946007)(4326008)(66476007)(66556008)(83380400001)(33656002)(5660300002)(2906002)(8936002)(36756003)(2616005); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: 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
X-OriginatorOrg: btconnect.com
X-MS-Exchange-CrossTenant-Network-Message-Id: abfe1388-c55e-4b89-1856-08da756ee604
X-MS-Exchange-CrossTenant-AuthSource: DB7PR07MB5546.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 03 Aug 2022 16:40:39.6132 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: cf8853ed-96e5-465b-9185-806bfe185e30
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: 9V6teku14oDuFHyNvy1FBgrZxBA9X5Rjfi144tQxfdyUMh3oMAMOOqY6ZNJK2FzfRJsJ9myx8I3inbywCXGz7w==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PAXPR07MB7823
Archived-At: <https://mailarchive.ietf.org/arch/msg/i2nsf/0TLewYbKlzCjJzJwNEpWGgZCSbI>
Subject: Re: [I2nsf] need more review and support to close the WGLC for draft-ietf-i2nsf-consumer-facing-interface-dm
X-BeenThere: i2nsf@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "*I2NSF: Interface to Network Security Functions mailing list*" <i2nsf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/i2nsf>, <mailto:i2nsf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/i2nsf/>
List-Post: <mailto:i2nsf@ietf.org>
List-Help: <mailto:i2nsf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/i2nsf>, <mailto:i2nsf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Aug 2022 16:40:45 -0000

On 12/07/2022 18:44, Linda Dunbar wrote:
> Sue,
>
> Thank you very much for the offer.
>
> The unsolved comments are from Tom Petch: Re: [I2nsf] WGLC for draft-ietf-i2nsf-consumer-facing-interface-dm-16<https://mailarchive.ietf.org/arch/msg/i2nsf/d_Wk5fH35Jo_cdz4D0QZN5VNhFA/>
> There are several responses to address Tom Petch's comments. Just Tom hasn't sent feedback if he is satisfied with the response.

Weelll, probably as satisfied as I am going to get.

I have reviewed cfi (customer facing interface-dm)-22 and compared some 
of it with capability-32.  I have not - but hope to - compare against 
nsf-facing; nor have I re-read all the posts to the list but will.

I do think that cfi is now in much better shape.  I do see capability as 
the key, the base, set of definitions against which the others should be 
judged.  capability says whether or not the box can do it, the others 
tell you how to do it.

With that in mind, I am unconvinced about the response to my comments 
about icmp.  The treatment is different.  capability deals in 
icmpv4/icmpv6, type/code; cfi deals in echo/echo-reply which is the sort 
of user interface I am used to and would expect a security practitioner 
to be familiar with so some words about the mapping, referring to the 
IANA website for all the detail, could help users.  I would put that in 
the body of the text not the YANG module

Likewise, cfi has primary and secondary action which makes a lot of 
sense but what is the capability that makes that possible? capability 
has ingress-action, egress-action, default-action which seems a 
different axis to me.  Again, some words about how the two relate could 
help, in the body of the document.

Again continent is present in cfi but not in capability.  Can a user 
tell if the capability is present?  I expect not; as ever, worth a note.

signature-set and signature-type sound the same but seem different. 
This is an aspect of security that I am not familiar with, at least not 
in those terms.

Finally, there are some minor editorial glitches.

RFC8075 I see in the YANG module; it needs adding to the I-D References.

page 17 text version last sentence I cannot parse; perhaps a missing 
preposition

the two rate-limit objects could do with units - I note that they are 
present in the examples

page 55 text version [STIX] looks like an XML anchor but YANG modules 
must be plain text.

Tom Petch

>
> Linda
>
> From: Susan Hares <shares@ndzh.com>
> Sent: Tuesday, July 12, 2022 12:21 PM
> To: Linda Dunbar <linda.dunbar@futurewei.com>; i2nsf@ietf.org
> Subject: RE: [I2nsf] need more review and support to close the WGLC for draft-ietf-i2nsf-consumer-facing-interface-dm
>
> Linda:
>
> I will review the document by  Thursday (7/14) and send in a review of the document.   Would you let me know what WG LC comments were not addressed?
>
> Cheers, Sue
>
> From: I2nsf <i2nsf-bounces@ietf.org<mailto:i2nsf-bounces@ietf.org>> On Behalf Of Linda Dunbar
> Sent: Tuesday, July 12, 2022 1:17 PM
> To: i2nsf@ietf.org<mailto:i2nsf@ietf.org>
> Subject: [I2nsf] need more review and support to close the WGLC for draft-ietf-i2nsf-consumer-facing-interface-dm
>
>
> I2NF WG,
>
> draft-ietf-i2nsf-consumer-facing-interface-dm WGLC was inconclusive due to lack of support and some LC comments not properly addressed. There appeared to be limited reviews of the document during the WGLC
> See the discussion history: [I2nsf] WGLC for draft-ietf-i2nsf-consumer-facing-interface-dm-16<https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Fmailarchive.ietf.org%2Farch%2Fmsg%2Fi2nsf%2FMFOohjnJ9fbylLB9eyccMRhrp04%2F&data=05%7C01%7Clinda.dunbar%40futurewei.com%7Cc95feb0ac382419474b808da642adfd0%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C1%7C637932432560667469%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000%7C%7C%7C&sdata=f9Jlz0HgQw7NO%2BKer356WyaN9toprO8WCPEUBGhkAXI%3D&reserved=0>
>
> To proceed to publication more reviews and support from the WG for publication is needed.
> We really appreciate more people reviewing the document, especially the people who are not the authors.
>
> Thank you
> Linda Dunbar
>
>
>
> _______________________________________________
> I2nsf mailing list
> I2nsf@ietf.org
> https://www.ietf.org/mailman/listinfo/i2nsf
>