Re: [imapext] Kathleen Moriarty's No Objection on draft-ietf-imapapnd-appendlimit-extension-08: (with COMMENT)

Barry Leiba <barryleiba@computer.org> Fri, 08 January 2016 00:30 UTC

Return-Path: <barryleiba@gmail.com>
X-Original-To: imapext@ietfa.amsl.com
Delivered-To: imapext@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 545C01A8A98; Thu, 7 Jan 2016 16:30:46 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.278
X-Spam-Level:
X-Spam-Status: No, score=-1.278 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FM_FORGED_GMAIL=0.622, FREEMAIL_FROM=0.001, SPF_PASS=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id gLBKbZcRBgAz; Thu, 7 Jan 2016 16:30:45 -0800 (PST)
Received: from mail-ig0-x230.google.com (mail-ig0-x230.google.com [IPv6:2607:f8b0:4001:c05::230]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4693C1A8A71; Thu, 7 Jan 2016 16:30:45 -0800 (PST)
Received: by mail-ig0-x230.google.com with SMTP id z14so64758142igp.0; Thu, 07 Jan 2016 16:30:45 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:sender:in-reply-to:references:date:message-id:subject :from:to:cc:content-type; bh=gmP/x2XZggz2vEpiIXRWZqRHRtdWmepC9WxhOHMXcBE=; b=T6hc67h371yC+b7F+mhW823/iIKQ1f4Iml0/55WAdUoSJIh6DU6vcFAUzov3jRv1UL jVbXR13+OTMbtFuX5b9K9ITtjW8pRhq6ze8C2zG7Uuf30DRM1NKd1iJ8RZd0Jvdd8Djm usmay0CmnbJXpyeMkioZbTdbNxpX447r9zKVisRf6BVW+4ypUdScK0E0FjTdEgEyH4jc ab8JYquR41XeCs/JUDE2RRchipVjBvHZsYwtZnApi4Eq8ddiKvxDM0RYkf+QLOZV02aN q5Xfr3fsrQ4XPLsDXFzTS6h5jk8PZuC28ovSL/oEO80VkQTE/t7f1ORtDOUcrjTJUULo 1xiw==
MIME-Version: 1.0
X-Received: by 10.50.143.10 with SMTP id sa10mr5668399igb.54.1452213044668; Thu, 07 Jan 2016 16:30:44 -0800 (PST)
Sender: barryleiba@gmail.com
Received: by 10.36.117.83 with HTTP; Thu, 7 Jan 2016 16:30:44 -0800 (PST)
In-Reply-To: <CAHbuEH5Oc3YX_i9XpedEwf6Ft2-qJw+RY4SMUPovavxgPBZ7qg@mail.gmail.com>
References: <20160106012803.29192.54119.idtracker@ietfa.amsl.com> <CALaySJLo3o7j2qJNxrLaGKntHhURme=tTy5vCPM9sDR7NU4hVg@mail.gmail.com> <CAHbuEH6kMq2bQkCvWuY3pd8-81xt3VGfN4YoPV7cVhf1VehzoA@mail.gmail.com> <CALaySJJeNHOLM2q9tixVBGzgmVcbwbugJ73-vZ-QyNyUCXzNmw@mail.gmail.com> <F8822335-25E8-4A5A-A13C-05E9F16068B3@gmail.com> <CALaySJ+cH_v0fdO9dFwxgNZt71AcoBdQssJhb0NbOZvWB4EVJA@mail.gmail.com> <CAHbuEH450_sXw47Ee-fxvVxypCT-5xy6=CNVYwK5kz4eOnYceg@mail.gmail.com> <CALaySJ+mcZznHFQPGCAFj_ykEgx6WaVGA4UhFH1Z_oPQ6U6SGw@mail.gmail.com> <CAHbuEH5Oc3YX_i9XpedEwf6Ft2-qJw+RY4SMUPovavxgPBZ7qg@mail.gmail.com>
Date: Fri, 08 Jan 2016 08:30:44 +0800
X-Google-Sender-Auth: 0q6FbLEawHO4OCEirrGJs16PhL8
Message-ID: <CALaySJ+VOfy5mOYKXBUfHJrMkddMBJ3+dhJZkp9U01JmbeTacw@mail.gmail.com>
From: Barry Leiba <barryleiba@computer.org>
To: "draft-ietf-imapapnd-appendlimit-extension@ietf.org" <draft-ietf-imapapnd-appendlimit-extension@ietf.org>, "imapext@ietf.org" <imapext@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <http://mailarchive.ietf.org/arch/msg/imapext/9zaVK4aTtQBfdHpnDyAmKyyNUqM>
Cc: "imapapnd-chairs@ietf.org" <imapapnd-chairs@ietf.org>, The IESG <iesg@ietf.org>, SM <sm+ietf@elandsys.com>
Subject: Re: [imapext] Kathleen Moriarty's No Objection on draft-ietf-imapapnd-appendlimit-extension-08: (with COMMENT)
X-BeenThere: imapext@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Discussion of IMAP extensions <imapext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/imapext>, <mailto:imapext-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/imapext/>
List-Post: <mailto:imapext@ietf.org>
List-Help: <mailto:imapext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/imapext>, <mailto:imapext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Jan 2016 00:30:46 -0000

Authors and working group:
In light of this discussion, I suggest that we replace the content of
the Security Considerations section with this:

NEW
   This extension provides additional information that cooperative
   clients can use as an optimization, and does not introduce new
   security concerns.  This extension does not address abusive clients
   that intend to consume server resources, and servers will still have
   to take action to disconnect and/or restrict access to clients that
   exhibit abusive behavior.
END

Please comment, and if there are no objections, please make the change
in another revision.  Thanks.

Barry

On Thu, Jan 7, 2016 at 9:32 AM, Kathleen Moriarty
<kathleen.moriarty.ietf@gmail.com> wrote:
> I was just suggesting that you could cut out the scenario, leave the
> last sentence and say it's because of a possible attack on resources,
> 'resources' being a short way of describing the scenario laid out.  If
> some other attack comes out that is mitigated in a similar way that
> uses 'resources' in another way, you are covered.  It also gets rid of
> the extra text that I don't see as necessary.  But leave it if you
> think it's fine.