[Idr] Re: Security Considerations for rfc4360bis (was Re: Re: I-D Action: draft-ietf-idr-rfc4360-bis-00.txt)

Ketan Talaulikar <ketant.ietf@gmail.com> Tue, 02 December 2025 10:51 UTC

Return-Path: <ketant.ietf@gmail.com>
X-Original-To: idr@mail2.ietf.org
Delivered-To: idr@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 8579793D0E86 for <idr@mail2.ietf.org>; Tue, 2 Dec 2025 02:51:20 -0800 (PST)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id yBED0Q8Yd-I9 for <idr@mail2.ietf.org>; Tue, 2 Dec 2025 02:51:20 -0800 (PST)
Received: from mail-pg1-x536.google.com (mail-pg1-x536.google.com [IPv6:2607:f8b0:4864:20::536]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 0E98793D0E7C for <idr@ietf.org>; Tue, 2 Dec 2025 02:51:20 -0800 (PST)
Received: by mail-pg1-x536.google.com with SMTP id 41be03b00d2f7-bbf2c3eccc9so2485911a12.0 for <idr@ietf.org>; Tue, 02 Dec 2025 02:51:20 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1764672679; x=1765277479; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=UUAETOATuxjcDRT3rQ+dLHGrMIzNKe6hirml3F34d1k=; b=PTdS6tV7FglY5Rk/YqaoDdnI44c/mXDqd6KH4tLc7CxHdEPwW+JBfWndcNy3Zryvz8 S3wiVAVwRG/+t4vDePXVCE0l2WpXL9AOIxhWj0tws3rLoga58V/AsH2vTXjT2x7mvJh0 3hwra1pxcws5gUC67h888CCp2GpWmzTLrlIsk0J7li26tjdiJppfJLTaBd1W3lF9dfCP 0KRgkhk8HYx3p5p1dLoR4b/RrJDSDHKhYXBXcfdhvEVIfcQufNYy92g4tV3LoxqsMw1w CyyWpT4mIQbrTcBtfenNgeM8VSKSK5Qv93zKNiiUvDWJd38/rePgshqoKdnLTz2xizpY x+og==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1764672679; x=1765277479; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-gg:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=UUAETOATuxjcDRT3rQ+dLHGrMIzNKe6hirml3F34d1k=; b=quxsFbsBeAYR8aQGGwz48YAiIRCO3U+0O+ftZPwfPtiWW51HcyTyR11DF+8qvbsbB1 CWVCYmGAcLcoI5JxDqCZKwy7Dngtjsx4Zr3kQMvC8GUCY6qiVeJe2ncSgBXp96bZ9qjK pNVnv9+JRSxugFoqgEtRRdToNfTf54NRAyt4Y7rByqgH5kffYiUKaDDlLt0TUYw+pzam +mGDWW6xjRqjSuMQhKUIJGODXsHcYT4XN/Wyfa3rr5l/ZiNXNCDpFJpzxZnWZ4Y32Ap3 xW/Gpz9d8AsfVx4ja6uzHBOJupJkzq6q2eiEIwss5z9MaV+MciQ0h/3GQTx6tcR1LKkH 3MAw==
X-Forwarded-Encrypted: i=1; AJvYcCUzdbMqOcy7dWh4Ec5Qco0qvmdzolqjtJES3QGUdvFgVsyZUHaKuEKS9sVtAGI0/4mlaYk=@ietf.org
X-Gm-Message-State: AOJu0YwcOhl9ylmLV98r2ZSe1Af2ZzSr06yZ4YHkHGd9K4t45g0r/o9J PIz2JzVuSby309/xfdNmvV8Vx/2Fx8LBkfWgDPx89i0O3GCqWPlXLEE7lTa0RA7VvNl0Zd5TST6 wJPA5lM5kRlucJ+QXTUnEke0tKHbIgpU=
X-Gm-Gg: ASbGncuryOxCwDXz+P9W6AN8cwWGpxbyy49Fp3llnfdn8c78Kxe/DoPH/UD+5N9guMT fI84R1WyQTdhsIgplECq22TMeMSauKCu5sjNRClz4P7YeiJc2HAvjBJG5YKnjOsek02u55dsTC0 BxF3478rl+AwdimWezH8kUr8Mi21HGPJw5NuogpPNbnCUT3QNQ2IXNAzFx7J0bylflvdGoSqmmF RtE8IrbBeube9zVXBhg04Zu+X3jgaFrQR7TS+zDzCrvOqFDBmPO/fGRp459bjm/x3H3
X-Google-Smtp-Source: AGHT+IHRvUUyUhUJAWDEJEMBocqnr2Hz+arQSmmoJhjDY7HMlwL978f8exK4zd/yZWowqFQnTXWXBZ3DcR0+PbaHon0=
X-Received: by 2002:a17:902:f60f:b0:297:dd99:ff13 with SMTP id d9443c01a7336-29d5a5a2a79mr30430345ad.17.1764672678829; Tue, 02 Dec 2025 02:51:18 -0800 (PST)
MIME-Version: 1.0
References: <175716842438.2015869.7460050885014908474@dt-datatracker-f7c8fdcb7-pjx77> <CAKEJeo6BJ69hNusDnuz47Y5DGT3EbkaiH=WqQz_LNHx4AHJB=w@mail.gmail.com> <1049FB53-F2F0-4AF3-BF35-99C9C33B3D61@pfrc.org> <CAH6gdPyLGuck81AmRRp2baH82_rC=QGjOovrq9LD4GpBeVdE9Q@mail.gmail.com> <3CC35BF7-E183-46F0-9D9B-B7541CC141C3@pfrc.org>
In-Reply-To: <3CC35BF7-E183-46F0-9D9B-B7541CC141C3@pfrc.org>
From: Ketan Talaulikar <ketant.ietf@gmail.com>
Date: Tue, 02 Dec 2025 16:21:06 +0530
X-Gm-Features: AWmQ_bnRU2py6jOQdFcuuUlm6bGIIJAapcvhCQ6MvukJgoEZS76CUSRHe5WyqLY
Message-ID: <CAH6gdPyY4iwaKBpa2c08euvpJP8gHm=_=O2QVoVXaauQNK5WCg@mail.gmail.com>
To: Jeffrey Haas <jhaas@pfrc.org>
Content-Type: multipart/alternative; boundary="0000000000002aa3fb0644f5e020"
Message-ID-Hash: QN3PASHQPEVVJRDCW56QVCBO2D4REROD
X-Message-ID-Hash: QN3PASHQPEVVJRDCW56QVCBO2D4REROD
X-MailFrom: ketant.ietf@gmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-idr.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: "idr@ietf. org" <idr@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Idr] Re: Security Considerations for rfc4360bis (was Re: Re: I-D Action: draft-ietf-idr-rfc4360-bis-00.txt)
List-Id: Inter-Domain Routing <idr.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/mbjvpXgVpLigIFBhv8XTU9ZnxAU>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Owner: <mailto:idr-owner@ietf.org>
List-Post: <mailto:idr@ietf.org>
List-Subscribe: <mailto:idr-join@ietf.org>
List-Unsubscribe: <mailto:idr-leave@ietf.org>

Hi Nat and Jeff,

Thank you for this update; the Security Considerations section is much
improved from the previous version.

If desired, further feedback could be solicited via an early SECDIR review
before the IESG evaluation.

Thanks,
Ketan

On Tue, Dec 2, 2025 at 3:14 AM Jeffrey Haas <jhaas@pfrc.org> wrote:

> Ketan/WG,
>
> On Nov 19, 2025, at 12:15 PM, Ketan Talaulikar <ketant.ietf@gmail.com>
> wrote:
>
> Hello Nat/Srihari,
>
> You might have seen this thread on the LBW draft:  list:
> https://mailarchive.ietf.org/arch/msg/idr/IaGwPsH7gLTJoeRrbI1ney1RgD0/
>
> Wanted to bring to your attention that the Security Considerations in the
> rfc4360bis needs some work.
>
>
> Nat has proposed the following:
>
> https://github.com/ietf-wg-idr/draft-ietf-idr-rfc4360-bis/pull/26
>
> The text is modest and refers to the BGP operational considerations as
> well. Please consider reviewing the PR and proposing some text there.
>
> -- Jeff
>
>