Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-wireless-com-01
"Dearlove, Christopher (UK)" <chris.dearlove@baesystems.com> Wed, 20 July 2016 11:28 UTC
Return-Path: <chris.dearlove@baesystems.com>
X-Original-To: int-area@ietfa.amsl.com
Delivered-To: int-area@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 007D412B05F for <int-area@ietfa.amsl.com>; Wed, 20 Jul 2016 04:28:52 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.116
X-Spam-Level:
X-Spam-Status: No, score=-6.116 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, RDNS_NONE=0.793, T_KAM_HTML_FONT_INVALID=0.01] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 86mZPqjGNIOk for <int-area@ietfa.amsl.com>; Wed, 20 Jul 2016 04:28:49 -0700 (PDT)
Received: from ukmta2.baesystems.com (unknown [20.133.0.56]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9A0E712DBB9 for <int-area@ietf.org>; Wed, 20 Jul 2016 04:28:47 -0700 (PDT)
X-IronPort-AV: E=Sophos; i="5.28,393,1464649200"; d="scan'208,217"; a="38957954"
Received: from unknown (HELO baemasmds016.greenlnk.net) ([10.15.207.101]) by ukmta2.baesystems.com with ESMTP; 20 Jul 2016 12:28:46 +0100
X-IronPort-AV: E=Sophos;i="5.28,393,1464649200"; d="scan'208,217";a="126861939"
Received: from glkxh0004v.greenlnk.net ([10.109.2.35]) by baemasmds016.greenlnk.net with ESMTP; 20 Jul 2016 12:28:46 +0100
Received: from GLKXM0002V.GREENLNK.net ([169.254.5.169]) by GLKXH0004V.GREENLNK.net ([10.109.2.35]) with mapi id 14.03.0248.002; Wed, 20 Jul 2016 12:28:45 +0100
From: "Dearlove, Christopher (UK)" <chris.dearlove@baesystems.com>
To: Charlie Perkins <charles.perkins@earthlink.net>, "int-area@ietf.org" <int-area@ietf.org>
Thread-Topic: [Int-area] WGLC for draft-ietf-intarea-adhoc-wireless-com-01
Thread-Index: AQHRr5DNPjpgty5MckKJ7Ez7iYTpzp/LcO9AgFYNSgCAABR2QA==
Date: Wed, 20 Jul 2016 11:28:45 +0000
Message-ID: <B31EEDDDB8ED7E4A93FDF12A4EECD30D923EEB8F@GLKXM0002V.GREENLNK.net>
References: <8709E79D-8EAB-420A-9E2B-AC7097C3F8F7@ieee.org> <B31EEDDDB8ED7E4A93FDF12A4EECD30D923B7E2F@GLKXM0002V.GREENLNK.net> <6a4b14a7-049b-b3c9-ab81-604f39a5672a@earthlink.net>
In-Reply-To: <6a4b14a7-049b-b3c9-ab81-604f39a5672a@earthlink.net>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.109.62.6]
Content-Type: multipart/alternative; boundary="_000_B31EEDDDB8ED7E4A93FDF12A4EECD30D923EEB8FGLKXM0002VGREEN_"
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/int-area/H9PdkhCue3beW05BiqIbbcY2jSQ>
Subject: Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-wireless-com-01
X-BeenThere: int-area@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: IETF Internet Area Mailing List <int-area.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/int-area>, <mailto:int-area-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/int-area/>
List-Post: <mailto:int-area@ietf.org>
List-Help: <mailto:int-area-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 20 Jul 2016 11:28:52 -0000
Security considerations generally fall in two parts (a) that which is essential to the matter in hand, and (b) that which is needed to show people - especially SEC ADs - that you've really thought about the problem. I'd agree that 7182 does not fall under (a). Whether it falls under (b) as a "will mention as part of a rounded picture" is a borderline case. As for OSPF, my recollection was three and you've found three. I'd guess that's right then. That was one of my only two "definitely should do" issues, the other being to include 7181. I haven't yet seen what revisions you've made, but it's PS, I think everything else is EXP, so that should be clear. (All three are experimental, it would actually be interesting to know which have gone anywhere. But that's a RTG question, not an INT question.) -- Christopher Dearlove Senior Principal Engineer BAE Systems Applied Intelligence Laboratories __________________________________________________________________________ T: +44 (0)1245 242194 | E: chris.dearlove@baesystems.com<mailto:chris.dearlove@baesystems.com> BAE Systems Applied Intelligence, Chelmsford Technology Park, Great Baddow, Chelmsford, Essex CM2 8HN. www.baesystems.com/ai<http://www.baesystems.com/ai> BAE Systems Applied Intelligence Limited Registered in England & Wales No: 01337451 Registered Office: Surrey Research Park, Guildford, Surrey, GU2 7YP From: Charlie Perkins [mailto:charles.perkins@earthlink.net] Sent: 20 July 2016 12:09 To: Dearlove, Christopher (UK); int-area@ietf.org Subject: Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-wireless-com-01 *** WARNING *** This message originates from outside our organisation, either from an external partner or the internet. Consider carefully whether you should click on any links, open any attachments or reply. For information regarding Red Flags that you can look out for in emails you receive, click here<http://intranet.ent.baesystems.com/howwework/security/spotlights/Documents/Red%20Flags.pdf>. If you feel the email is suspicious, please follow this process<http://intranet.ent.baesystems.com/howwework/security/spotlights/Documents/Dealing%20With%20Suspicious%20Emails.pdf>. Hello Chris, Thanks for your review of this document. Your email somehow eluded my attention until today, please excuse the delay. Follow-up below... On 5/26/2016 9:27 AM, Dearlove, Christopher (UK) wrote: I haven't yet found time to read this (I'm still hoping to before indicated date). But one thing immediately jumps out. The document references the four Experimental protocols produced by the MANET WG. It references a draft produced for OSPF. From recollection, there were three separate drafts produced for OSPF, all of which became Experimental RFCs. But two are not referred to. I found the following: OSPF (<xref target="RFC5449"/>, <xref target="RFC5820"/> and <xref target="RFC7137"/>) If there are others please let me know. But there is also a Proposed Standard MANET routing protocol, OLSRv2, RFC 7181. Fixed. There are of course many other protocols; the only other one that I'm aware of and might need mentioning (here I need to read the draft) is NHDP (RFC 6130). This can be viewed as the neighbourhood discovery part of OLSRv2, but is specified as a separate protocol. Some of this paper is about neighbours, and possibly it may be appropriate to reference RFC 6130, but also possibly it might not. (I'm an author of that RFC too.) While posting, but nits, two other things jumped out at me. One is the white space on page 6. Fixed! The other (since I was looking at references) is the rather odd reference DoD01 with two authors, then a title, then an editor. Of course the RFC Editor would in due course change this to whatever is approved style, but might as well get it closer. And now, looking at my records, I see I have already made (and since forgotten) my main comment (though I didn't then discuss the OSPF situation) in January, and nothing was done, though there was an indication it should be then. I don't think this should have proceeded to WGLC with that unaddressed. I'll try to go find that comment, but in case I don't find it please note that we have made a good bit more discussion about security in Section 5. That trip into records indicated there was a comment then (not from me) about the security considerations section. It's worth noting that there's a security framework for OLSRv2, and other protocols to use the manet part/protocol (as specified in RFC 5498) in RFC 7182. This document isn't really about securing multi-hop communications routing protocols, but instead it is about certain characteristics of the underlying medium over which such protocols run. Do you think there is something particular about the security considerations in RFC 7182 that has to do with asymmetry, non-transitivity, or time variance? If so I would be happy to indicate that in the document and cite the relevant material. Or, if there is a relevant discussion about MitM attacks, that could merit a specific citation. Regards, Charlie P. ******************************************************************** This email and any attachments are confidential to the intended recipient and may also be privileged. If you are not the intended recipient please delete it from your system and notify the sender. You should not copy it or use it for any purpose nor disclose or distribute its contents to any other person. ********************************************************************
- Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-… Charlie Perkins
- [Int-area] WGLC for draft-ietf-intarea-adhoc-wire… Juan Carlos Zuniga
- Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-… Alexandre Petrescu
- Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-… Dearlove, Christopher (UK)
- Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-… Charlie Perkins
- Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-… Dearlove, Christopher (UK)
- Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-… Charlie Perkins
- Re: [Int-area] WGLC for draft-ietf-intarea-adhoc-… Dearlove, Christopher (UK)