RE: Gen-ART LC review of draft-harkins-ipsecme-spsk-auth-03

"Roni Even" <ron.even.tlv@gmail.com> Fri, 22 April 2011 19:26 UTC

Return-Path: <ron.even.tlv@gmail.com>
X-Original-To: ietf@ietfc.amsl.com
Delivered-To: ietf@ietfc.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfc.amsl.com (Postfix) with ESMTP id 3F261E0852; Fri, 22 Apr 2011 12:26:12 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level:
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([208.66.40.236]) by localhost (ietfc.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tuPa96dXr1NG; Fri, 22 Apr 2011 12:26:11 -0700 (PDT)
Received: from mail-ww0-f44.google.com (mail-ww0-f44.google.com [74.125.82.44]) by ietfc.amsl.com (Postfix) with ESMTP id 3C0C9E0848; Fri, 22 Apr 2011 12:26:11 -0700 (PDT)
Received: by wwa36 with SMTP id 36so593129wwa.13 for <multiple recipients>; Fri, 22 Apr 2011 12:26:10 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:from:to:cc:references:in-reply-to:subject:date :message-id:mime-version:content-type:content-transfer-encoding :x-mailer:thread-index:content-language; bh=2pwT8OjK33EcV3I9k+zrp8AMSuCY6DLayLfix/bd2Pw=; b=meRfUYEoKGgPZTd+67XrK++U6UoBHfIYNTfFtHq/d88gHe0W/bVvJI4UA0g5mrFwpX t/XE6RFseGbPLQHHo93KVPfWa2Sam0wGdIU63/UWyL3yjc8izsXjbbQ1GscD6Eh9qtBR UoSmoChJGVfHupYSscTrtuZoAMZ5PCTMtmZcI=
DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=from:to:cc:references:in-reply-to:subject:date:message-id :mime-version:content-type:content-transfer-encoding:x-mailer :thread-index:content-language; b=kmGEVVlLLgevbg5C0agQcH/PzE3dVZgFjYAVkUKJ5mh4kxXqpTszOp4+ynGAs6udLX 5q+Gstgai09VEpw+cgFUyLJBkIhkLJ3j5lKUEvEq04M54hpfFZDP+t3VGXL5MHC+408J RarxmZlFyP3WUMwNXO4IfJWFIYmv77+qFfL9I=
Received: by 10.216.69.203 with SMTP id n53mr970129wed.88.1303500370589; Fri, 22 Apr 2011 12:26:10 -0700 (PDT)
Received: from windows8d787f9 (bzq-79-181-29-160.red.bezeqint.net [79.181.29.160]) by mx.google.com with ESMTPS id bs4sm1901075wbb.35.2011.04.22.12.26.05 (version=TLSv1/SSLv3 cipher=OTHER); Fri, 22 Apr 2011 12:26:08 -0700 (PDT)
From: Roni Even <ron.even.tlv@gmail.com>
To: 'Dan Harkins' <dharkins@lounge.org>
References: <4da2f037.cf03d90a.5d44.fffff941@mx.google.com> <9a944e460983182912fe0d2e85ef32f9.squirrel@www.trepanning.net>
In-Reply-To: <9a944e460983182912fe0d2e85ef32f9.squirrel@www.trepanning.net>
Subject: RE: Gen-ART LC review of draft-harkins-ipsecme-spsk-auth-03
Date: Fri, 22 Apr 2011 22:25:00 +0300
Message-ID: <4db1d650.04b4e30a.337e.ffffa569@mx.google.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Office Outlook 12.0
Thread-Index: AcwAhbL1u1YBRenYQua/hFaSx2z3KwAnCDZg
Content-Language: en-us
Cc: gen-art@ietf.org, 'IETF-Discussion list' <ietf@ietf.org>, draft-harkins-ipsecme-spsk-auth.all@tools.ietf.org
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ietf>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 22 Apr 2011 19:26:12 -0000

Hi Dan,
About my first  comment what I meant that section 6 say "   For the purposes
of interoperability, a password pre-processing technique of "None" MUST be
supported.". I now understand that in section 8.5 and 8.6 you say that the
initiator may decide not to use the "none" technique and therefore may not
find an interoperable mode. 
If the initiator will use "none" technique than you will have
interoperability. 
Roni

> -----Original Message-----
> From: Dan Harkins [mailto:dharkins@lounge.org]
> Sent: Friday, April 22, 2011 3:39 AM
> To: Roni Even
> Cc: draft-harkins-ipsecme-spsk-auth.all@tools.ietf.org; gen-
> art@ietf.org; 'IETF-Discussion list'
> Subject: Re: Gen-ART LC review of draft-harkins-ipsecme-spsk-auth-03
> 
> 
>   Hi Roni,
> 
>   Thank you for reviewing my draft. Comments inline....
> 
> On Mon, April 11, 2011 5:11 am, Roni Even wrote:
> > I am the assigned Gen-ART reviewer for this draft. For background on
> > Gen-ART, please see the FAQ at
> > <http://wiki.tools.ietf.org/area/gen/trac/wiki/GenArtfaq>.
> >
> > Please resolve these comments along with any other Last Call comments
> you
> > may receive.
> >
> > Minor issues:
> >
> > 1.	In section 8.5 and 8.6 the draft says that "If no more password
> > pre-processing techniques are supported the exchange MUST be
> > terminated."
> > Reading section 6, I thought that NONE MUST be supported for
> > interoperability purpose.
> 
>   One of the valid techniques for password pre-processing is "none".
> That doesn't mean that there isn't a technique, it means the technique
> is to perform no pre-processing on the password (treat it as a raw
> blob of bits).
> 
> > 2.	In section 8.1 and in figure 1 and figure 2 is there a maximum
> value
> > for "counter"?
> 
>   No there isn't, but it is doubtful the number will get very large.
> The probability that more than n iterations is necessary will be
> roughly (1-(r/2p))^n, where r is the order and p is the prime, and
> that number rapidly approaches zero as n increases.
> 
> > Nits/editorial comments:
> >
> > 1.       In section 1 just before 1.1 you have "suceed" instead of
> > "succeed"
> >
> > 2.       In section 4 third bullet "an" instead of "and"
> >
> > 3.       In section 4.2 "Two elementx" instead of "Two elements"
> >
> > 4.       In section 5 second row "authenticaiton" should be
> > "authentication"
> >
> > 5.       In section 6 fourth row "identitcal" instead of "identical"
> 
>   Thank you for catching all of these.
> 
>   regards,
> 
>   Dan.