Re: [i2rs] [Last-Call] Secdir last call review of draft-ietf-i2rs-yang-l2-network-topology-13

Susan Hares <shares@ndzh.com> Fri, 26 June 2020 14:03 UTC

Return-Path: <shares@ndzh.com>
X-Original-To: i2rs@ietfa.amsl.com
Delivered-To: i2rs@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 738373A00AE; Fri, 26 Jun 2020 07:03:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.948
X-Spam-Level:
X-Spam-Status: No, score=0.948 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DOS_OUTLOOK_TO_MX=2.845, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id isTKB1JcY2Ee; Fri, 26 Jun 2020 07:03:23 -0700 (PDT)
Received: from hickoryhill-consulting.com (50-245-122-100-static.hfc.comcastbusiness.net [50.245.122.100]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BA0F63A005F; Fri, 26 Jun 2020 07:03:22 -0700 (PDT)
X-Default-Received-SPF: pass (skip=loggedin (res=PASS)) x-ip-name=166.170.22.63;
From: Susan Hares <shares@ndzh.com>
To: 'Juergen Schoenwaelder' <j.schoenwaelder@jacobs-university.de>
Cc: 'Christian Huitema' <huitema@huitema.net>, 'Qin Wu' <bill.wu@huawei.com>, secdir@ietf.org, i2rs@ietf.org, draft-ietf-i2rs-yang-l2-network-topology.all@ietf.org, last-call@ietf.org
References: <B8F9A780D330094D99AF023C5877DABAAD7BAFD7@dggeml531-mbs.china.huawei.com> <002a01d64af8$f07320b0$d1596210$@ndzh.com> <15aa8236-ce09-d0b4-5f12-31f10b32387c@huitema.net> <006001d64bb6$68303850$3890a8f0$@ndzh.com> <20200626131145.habw34iy5orl4d3m@anna.jacobs.jacobs-university.de>
In-Reply-To: <20200626131145.habw34iy5orl4d3m@anna.jacobs.jacobs-university.de>
Date: Fri, 26 Jun 2020 10:03:17 -0400
Message-ID: <009001d64bc2$8b8cfde0$a2a6f9a0$@ndzh.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
X-Mailer: Microsoft Outlook 14.0
Thread-Index: AQLWmtRw7iPyu8IsKX2i31zM5z+c8gIWWk1AALLQ99AC9T3OswJJw38FpqoN9RA=
Content-Language: en-us
X-Antivirus: AVG (VPS 200626-0, 06/26/2020), Outbound message
X-Antivirus-Status: Not-Tested
X-Authenticated-User: skh@ndzh.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/i2rs/3UfP0CENeOqQXlyNS96OvS8Ni9c>
Subject: Re: [i2rs] [Last-Call] Secdir last call review of draft-ietf-i2rs-yang-l2-network-topology-13
X-BeenThere: i2rs@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Interface to The Internet Routing System \(IRS\)" <i2rs.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/i2rs>, <mailto:i2rs-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/i2rs/>
List-Post: <mailto:i2rs@ietf.org>
List-Help: <mailto:i2rs-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/i2rs>, <mailto:i2rs-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 26 Jun 2020 14:03:25 -0000

Juergen: 

Good catch.   Thanks. 

sue

-----Original Message-----
From: Juergen Schoenwaelder [mailto:j.schoenwaelder@jacobs-university.de] 
Sent: Friday, June 26, 2020 9:12 AM
To: Susan Hares
Cc: 'Christian Huitema'; 'Qin Wu'; secdir@ietf.org; i2rs@ietf.org; draft-ietf-i2rs-yang-l2-network-topology.all@ietf.org; last-call@ietf.org
Subject: Re: [i2rs] [Last-Call] Secdir last call review of draft-ietf-i2rs-yang-l2-network-topology-13

But please s/agents/clients/ .

/js

On Fri, Jun 26, 2020 at 08:36:23AM -0400, Susan Hares wrote:
> Qin and Christian: 
> 
> This addition words for me. 
> 
> Sue
> 
> -----Original Message-----
> From: Christian Huitema [mailto:huitema@huitema.net]
> Sent: Friday, June 26, 2020 12:05 AM
> To: Susan Hares; 'Qin Wu'; secdir@ietf.org
> Cc: i2rs@ietf.org; 
> draft-ietf-i2rs-yang-l2-network-topology.all@ietf.org; 
> last-call@ietf.org
> Subject: Re: [Last-Call] [i2rs] Secdir last call review of 
> draft-ietf-i2rs-yang-l2-network-topology-13
> 
> How about adding something like this:
> 
> Privacy Considerations
> 
> The Yang model for layer 2 topology exposes privacy sensitive information, for example the MAC addresses of devices. Unrestricted use of such information can lead to privacy violations. For example, listing MAC addresses in a network allows monitoring of devices and their movements. Location information can be derived from MAC addresses of network devices, bypassing protection of location information by the Operating System.
> 
> Deployments should mitigate this privacy concerns by limiting access to the layer 2 topology information. Access to the information should be restricted to a minimal list of authorized agents, and should require proper authentication of these agents.
> 
> -- Christian Huitema
> 
> On 6/25/2020 7:00 AM, Susan Hares wrote:
> > Qin and Christian: 
> >
> > Thank you for your prompt attention to the privacy issue.  
> > I'm sure Christian will respond in a bit - since he might be in PDT time-zone. 
> >
> > Once you have a solution you both like, we should validate the 
> > privacy changes to the security considerations section with the 
> > Yang-doctors, OPS-ADs, and Security-ADs.
> >
> > Martin's watching this thread so I'm sure he'll help us out as well. 
> >
> > Sue
> >
> > -----Original Message-----
> > From: i2rs [mailto:i2rs-bounces@ietf.org] On Behalf Of Qin Wu
> > Sent: Thursday, June 25, 2020 9:25 AM
> > To: Susan Hares; 'Christian Huitema'; secdir@ietf.org
> > Cc: i2rs@ietf.org;
> > draft-ietf-i2rs-yang-l2-network-topology.all@ietf.org;
> > last-call@ietf.org
> > Subject: Re: [i2rs] Secdir last call review of
> > draft-ietf-i2rs-yang-l2-network-topology-13
> >
> > Sue and Christian:
> > I have responded to Christian on privacy issue, my proposal is to add MAC address as another data node vulnerability example in our original security consideration section.
> > But If Christian or security directorate has recommending text, we authors are happy to accept it.
> >
> > -Qin
> > -----邮件原件-----
> > 发件人: Susan Hares [mailto:shares@ndzh.com]
> > 发送时间: 2020年6月25日 21:04
> > 收件人: 'Christian Huitema' <huitema@huitema.net>; secdir@ietf.org
> > 抄送: draft-ietf-i2rs-yang-l2-network-topology.all@ietf.org;
> > i2rs@ietf.org; last-call@ietf.org
> > 主题: RE: Secdir last call review of
> > draft-ietf-i2rs-yang-l2-network-topology-13
> >
> > Christian:
> >
> > Thank you for catching the privacy issues.      
> >
> > I've got a few questions to help the authors scope this change: 
> >
> > 1) Since this is common to all L2 Topologies, can you or the security directorate recommend some text that might be appropriate? 
> >    If you have recommended text, has this text been reviewed by OPS-DIR and Yang doctors? 
> >
> > 2) Will it be a problem If we write privacy considerations on IEEE specifications? 
> > 3) Do we need to consider the range of deployments of L2 (home, 
> > enterprise,  public PBB service, national PBB service, Data centers)
> >
> >
> > Thank you,  Sue
> >
> >
> > -----Original Message-----
> > From: Christian Huitema via Datatracker [mailto:noreply@ietf.org]
> > Sent: Thursday, June 25, 2020 1:01 AM
> > To: secdir@ietf.org
> > Cc: draft-ietf-i2rs-yang-l2-network-topology.all@ietf.org;
> > i2rs@ietf.org; last-call@ietf.org
> > Subject: Secdir last call review of
> > draft-ietf-i2rs-yang-l2-network-topology-13
> >
> > Reviewer: Christian Huitema
> > Review result: Has Issues
> >
> > I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG.  These comments were written with the intent of improving security requirements and considerations in IETF drafts.  Comments not addressed in last call may be included in AD reviews during the IESG review.  Document editors and WG chairs should treat these comments just like any other last call comments.
> >
> > This document describes a Yang model for representing Link Layer topologies.
> > Representing such topologies is obviously useful for managing network