[IPsec] Re: draft-ietf-ipsecme-ikev2-downgrade-prevention-05 ietf last call Genart review
Valery Smyslov <svan@elvis.ru> Mon, 15 June 2026 10:52 UTC
Return-Path: <svan@elvis.ru>
X-Original-To: ipsec@mail2.ietf.org
Delivered-To: ipsec@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 4F42F10176032; Mon, 15 Jun 2026 03:52:15 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1781520735; bh=113YYxNyZZFyaDZXJ388wGCFCuGYTEO+7MenEnGF+rE=; h=From:To:CC:References:In-Reply-To:Subject:Date; b=fSiPJSPW4sqNTBNRX0i/fV+GzbltoUwwqC62qrcH8TbRMYs0d2C/IcgVN9/cqIlEs rciqaT44g/iP1ZY9kYi7mA/khkpqqPp7O08PxxYRp93VBkQpsKZiKFLYIz7cMsiGbe N0rBal0ZDzUS/xSRqUu5llGYkbjPp2rNjrlfBPDk=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (1024-bit key) header.d=elvis.ru
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MmS4MToYS91T; Mon, 15 Jun 2026 03:52:14 -0700 (PDT)
Received: from akmail.elvis.ru (akmail.elvis.ru [82.138.51.97]) by mail2.ietf.org (Postfix) with ESMTP id 6BF571017602C; Mon, 15 Jun 2026 03:52:12 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=elvis.ru; s=mail; h=Content-Transfer-Encoding:Content-Type:MIME-Version:Message-ID: Date:Subject:In-Reply-To:References:CC:To:From:Sender:Reply-To:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=5tsgueynxpiLXiq8HvyCx9+Mya2vMbVE0vZbBchBEzA=; b=Tiv/uWCmWNQ1Jy3j2zH9M+QRDP HNdFcwYL5GBqzWGPUiP7RmaBDDu0LyAZl7fSb4kJgk+M9zNmGz4/n5cI2aHqH+YGrBVHBUjnhLkkY xULtq/bG6DptDvJlUCcj902oI+5YpTqIG0XE+J1CXh9Xu1H5+y7S7ef8tpJFSd1NYcdg=;
Received: from kmail2.elvis.ru ([93.188.44.210]) by akmail.elvis.ru with esmtp (Exim 4.92) (envelope-from <svan@elvis.ru>) id 1wZ4vK-0001uz-DA; Mon, 15 Jun 2026 13:52:10 +0300
Received: from mail.office.elvis.ru ([10.111.1.29]) by kmail2.elvis.ru with esmtp (Exim 4.94.2) (envelope-from <svan@elvis.ru>) id 1wZ4vK-000LPA-5Z; Mon, 15 Jun 2026 13:52:10 +0300
Received: from MAIL16.office.elvis.ru (10.111.1.29) by MAIL16.office.elvis.ru (10.111.1.29) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.1779.2; Mon, 15 Jun 2026 13:52:03 +0300
Received: from BuildPC (10.111.10.33) by MAIL16.office.elvis.ru (10.111.1.29) with Microsoft SMTP Server id 15.1.1779.2 via Frontend Transport; Mon, 15 Jun 2026 13:52:03 +0300
From: Valery Smyslov <svan@elvis.ru>
To: 'Linda Dunbar' <linda.dunbar@futurewei.com>, gen-art@ietf.org
References: <178128734571.127199.9160952300421006287@dt-datatracker-f9b87776f-8pmmg>
In-Reply-To: <178128734571.127199.9160952300421006287@dt-datatracker-f9b87776f-8pmmg>
Date: Mon, 15 Jun 2026 13:52:03 +0300
Message-ID: <02b001dcfcb5$003a4090$00aec1b0$@elvis.ru>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AQFD47sPCuvSM+OVZBsGpGggQWFztLdxoOhQ
Content-Language: ru
X-CrossPremisesHeadersFilteredBySendConnector: MAIL16.office.elvis.ru
X-OrganizationHeadersPreserved: MAIL16.office.elvis.ru
X-Spam-Scanner: Rspamd work in kmail2.elvis.ru, WHITELIST
X-KLMS-Rule-ID: 1
X-KLMS-Message-Action: clean
X-KLMS-AntiSpam-Status: not scanned, disabled by settings
X-KLMS-AntiPhishing: Clean, bases: 2023/02/21 22:47:00
X-KLMS-AntiVirus: Kaspersky Security for Linux Mail Server, version 8.0.3.30, bases: 2023/02/21 21:02:00 #20887462
X-KLMS-AntiVirus-Status: Clean, skipped
X-Spam-Scanner: Rspamd work in akmail.elvis.ru, WHITELIST
Message-ID-Hash: JM3Z54L2JOZFJRTRZVS5ANEZ3BNSFHAK
X-Message-ID-Hash: JM3Z54L2JOZFJRTRZVS5ANEZ3BNSFHAK
X-MailFrom: svan@elvis.ru
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-ipsec.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: draft-ietf-ipsecme-ikev2-downgrade-prevention.all@ietf.org, ipsec@ietf.org, last-call@ietf.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [IPsec] Re: draft-ietf-ipsecme-ikev2-downgrade-prevention-05 ietf last call Genart review
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/Ka5Xdjk5BISk57WR9qDqpbHG57E>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Owner: <mailto:ipsec-owner@ietf.org>
List-Post: <mailto:ipsec@ietf.org>
List-Subscribe: <mailto:ipsec-join@ietf.org>
List-Unsubscribe: <mailto:ipsec-leave@ietf.org>
Hi Linda, thank you for your review. Please, see inline. > Document: draft-ietf-ipsecme-ikev2-downgrade-prevention > Title: Downgrade Prevention for the Internet Key Exchange Protocol Version 2 > (IKEv2) Reviewer: Linda Dunbar Review result: Ready with Nits > > I am the assigned Gen-ART reviewer for this draft. The General Area > Review Team (Gen-ART) reviews all IETF documents being processed > by the IESG for the IETF Chair. Please treat these comments just > like any other last call comments. > > For more information, please see the FAQ at > > <https://wiki.ietf.org/en/group/gen/GenArtFAQ>. > > Document: draft-ietf-ipsecme-ikev2-downgrade-prevention-?? > Reviewer: Linda Dunbar > Review Date: 2026-06-12 > IETF LC End Date: 2026-06-12 > IESG Telechat date: Not scheduled for a telechat > > Summary: This draft updates IKEv2 by adding a negotiation signal and modified > AUTH transcript so both peers authenticate the same full IKE_SA_INIT > conversation, preventing attackers from silently downgrading the connection to > weaker key exchange methods or stripped extensions > > Major issues: None > > Minor issues: None > > Nits/editorial comments: > > - Section 6 says the responder includes the notification “regardless of whether > it was received in the request or not,” and later says the modified > authentication calculation is used only if a peer both sent and received the > notification. Just wondering what to do when only one direction contains the > notification. Then the old logic (defined in Section 2.15 of RFC 7296) is used. > - Section 4: s/Having these preconditions the goal of the attacker is to > eavesdrop/Given these preconditions, the goal of the attacker is to eavesdrop/ > > - should expand PQ/T on the first use. Thanks, a PR is created: https://github.com/smyslov/ikev2-downgrade-prevention/pull/46 Regards, Valery. > > Best regards, > Linda Dunbar
- [IPsec] draft-ietf-ipsecme-ikev2-downgrade-preven… Linda Dunbar via Datatracker
- [IPsec] Re: draft-ietf-ipsecme-ikev2-downgrade-pr… Valery Smyslov
- [IPsec] Re: draft-ietf-ipsecme-ikev2-downgrade-pr… Linda Dunbar