Re: [IPsec] Open IKEv2 errata

Yaron Sheffer <yaronf.ietf@gmail.com> Tue, 18 May 2010 10:24 UTC

Return-Path: <yaronf.ietf@gmail.com>
X-Original-To: ipsec@core3.amsl.com
Delivered-To: ipsec@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 1359228C164 for <ipsec@core3.amsl.com>; Tue, 18 May 2010 03:24:52 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.399
X-Spam-Level:
X-Spam-Status: No, score=-2.399 tagged_above=-999 required=5 tests=[AWL=0.200, BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FJNwTH+uRINj for <ipsec@core3.amsl.com>; Tue, 18 May 2010 03:24:51 -0700 (PDT)
Received: from mail-wy0-f172.google.com (mail-wy0-f172.google.com [74.125.82.172]) by core3.amsl.com (Postfix) with ESMTP id 9FD243A6C4D for <ipsec@ietf.org>; Tue, 18 May 2010 03:22:34 -0700 (PDT)
Received: by wyi11 with SMTP id 11so11397wyi.31 for <ipsec@ietf.org>; Tue, 18 May 2010 03:22:23 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:received:received:message-id:date:from :user-agent:mime-version:to:cc:subject:references:in-reply-to :content-type:content-transfer-encoding; bh=/J7AIfEZjlADcU0+Bcl+0Fkki41hHbmA7XcmumL4rvM=; b=GypbwLU9GauP6slYSu2b4Lm7ggsmASTuMMvytVZAHL17YepqGy2kRgukh2GJFDmEfQ YEfmXJ0/4jLAZ/8R1WbyXqALol90SQLK65eZSXZE+XwTjLu1cWGGbwULJcEE/hyFUCXG 2LQAI8oMf9UkH+qTFtv2B11rCOA6V9gJ3PaKc=
DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=message-id:date:from:user-agent:mime-version:to:cc:subject :references:in-reply-to:content-type:content-transfer-encoding; b=kukWke8q8FfPla6LwyznavGj3a3KZ4Jo1dP3cl9O686ju7C+KB8Vwt6TYqlbqX/LGf s3zHvhRGhk1JxXOxrWPm5ZqFyt/U4+8ywsGV9zZbcHK6MwcE3gevTCQneWGbBo64NDwp pqRJU4aNs/puTUYsWwge0qtzX7h/prAv9xtU8=
Received: by 10.227.155.71 with SMTP id r7mr6121830wbw.102.1274178143255; Tue, 18 May 2010 03:22:23 -0700 (PDT)
Received: from [10.0.0.2] ([109.64.46.151]) by mx.google.com with ESMTPS id u36sm47593484wbv.6.2010.05.18.03.22.20 (version=SSLv3 cipher=RC4-MD5); Tue, 18 May 2010 03:22:22 -0700 (PDT)
Message-ID: <4BF26A59.1000405@gmail.com>
Date: Tue, 18 May 2010 13:22:17 +0300
From: Yaron Sheffer <yaronf.ietf@gmail.com>
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.1.9) Gecko/20100423 Lightning/1.0b1 Thunderbird/3.0.4
MIME-Version: 1.0
To: Paul Hoffman <paul.hoffman@vpnc.org>
References: <20100517204502.4A74B3A6A0A@core3.amsl.com> <4BF1AFF5.9080301@ieca.com> <p06240835c81767b737a8@[10.20.30.158]>
In-Reply-To: <p06240835c81767b737a8@[10.20.30.158]>
Content-Type: text/plain; charset="us-ascii"; format="flowed"
Content-Transfer-Encoding: 7bit
Cc: ipsec@ietf.org, Sean Turner <turners@ieca.com>
Subject: Re: [IPsec] Open IKEv2 errata
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipsec>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 18 May 2010 10:24:52 -0000

2195 looks like a clarification to me. And not an essential one either, 
because the attribute structure further down the section make it very 
clear that there's one type per attribute.

Thanks,
	Yaron

On 05/18/2010 12:39 AM, Paul Hoffman wrote:
> At 5:07 PM -0400 5/17/10, Sean Turner wrote:
>> Internet-Drafts@ietf.org wrote:
>>> A New Internet-Draft is available from the on-line Internet-Drafts directories.
>>> This draft is a work item of the IP Security Maintenance and Extensions Working Group of the IETF.
>>>
>>> 	Title		: Internet Key Exchange Protocol: IKEv2
>>> 	Author(s)	: C. Kaufman, P. Hoffman, Y. Nir, P. Eronen
>>> 	Filename	: draft-ietf-ipsecme-ikev2bis-11.txt
>>> 	Pages		: 130
>>> 	Date		: 2010-5-17
>>> 	
>>> This document describes version 2 of the Internet Key Exchange (IKE)
>>>    protocol.  IKE is a component of IPsec used for performing mutual
>>>    authentication and establishing and maintaining security associations
>>>    (SAs).  This document replaces and updates RFC 4306, and includes all
>>>    of the clarifications from RFC 4718.
>>>
>>> A URL for this Internet-Draft is:
>>> http://www.ietf.org/internet-drafts/draft-ietf-ipsecme-ikev2bis-11.txt
>>
>> Note that during this update we considered the following errata:
>> http://www.rfc-editor.org/errata_search.php?eid=1671
>> http://www.rfc-editor.org/errata_search.php?eid=1672
>> http://www.rfc-editor.org/errata_search.php?eid=2190
>> http://www.rfc-editor.org/errata_search.php?eid=2191
>> http://www.rfc-editor.org/errata_search.php?eid=2192
>> http://www.rfc-editor.org/errata_search.php?eid=2193
>> http://www.rfc-editor.org/errata_search.php?eid=2194
>> http://www.rfc-editor.org/errata_search.php?eid=2195
>> http://www.rfc-editor.org/errata_search.php?eid=2196
>>
>> 1671, 1672, and 2196 were already reworded in ikev2bis.
>>
>> 2190 is not needed as it's covered in the next paragraph.
>>
>> No one has reported problems with 2191, 2192, 2193, or 2194.
>>
>> 2195 seems reasonable, but there's been no discussion.
>>
>> At this point, we believe there's no action required on these.  Please let me know very soon whether you see a problem with this course of action.
>
> In specific, it would be good if the pickier folks on this list to look at 2195 and see if this is really just a clarification or is a change that limits something we don't want to limit. Comments on any of the others is welcome too.
>
> --Paul Hoffman, Director
> --VPN Consortium
> _______________________________________________
> IPsec mailing list
> IPsec@ietf.org
> https://www.ietf.org/mailman/listinfo/ipsec