Re: [Isms] revised core isms documents posted - please check

"tom.petch" <cfinss@dial.pipex.com> Tue, 05 May 2009 14:05 UTC

Return-Path: <cfinss@dial.pipex.com>
X-Original-To: isms@core3.amsl.com
Delivered-To: isms@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 2EF883A6D11 for <isms@core3.amsl.com>; Tue, 5 May 2009 07:05:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.069
X-Spam-Level:
X-Spam-Status: No, score=-2.069 tagged_above=-999 required=5 tests=[AWL=0.530, BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dxtCh8io97zf for <isms@core3.amsl.com>; Tue, 5 May 2009 07:05:09 -0700 (PDT)
Received: from mk-outboundfilter-2.mail.uk.tiscali.com (mk-outboundfilter-2.mail.uk.tiscali.com [212.74.114.38]) by core3.amsl.com (Postfix) with ESMTP id 823083A6AA8 for <isms@ietf.org>; Tue, 5 May 2009 07:05:09 -0700 (PDT)
X-Trace: 210097071/mk-outboundfilter-2.mail.uk.tiscali.com/PIPEX/$PIPEX-ACCEPTED/pipex-customers/62.188.19.197/None/cfinss@dial.pipex.com
X-SBRS: None
X-RemoteIP: 62.188.19.197
X-IP-MAIL-FROM: cfinss@dial.pipex.com
X-SMTP-AUTH:
X-MUA: Microsoft Outlook Express 6.00.2800.1106Produced By Microsoft MimeOLE V6.00.2800.1106
X-IP-BHB: Once
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AsIEAB/l/0k+vBPF/2dsb2JhbACDKDmKbbIYCY9gAQaCSIEyBQ
X-IronPort-AV: E=Sophos;i="4.40,297,1238972400"; d="scan'208";a="210097071"
X-IP-Direction: IN
Received: from 1cust197.tnt2.lnd3.gbr.da.uu.net (HELO allison) ([62.188.19.197]) by smtp.pipex.tiscali.co.uk with SMTP; 05 May 2009 15:06:33 +0100
Message-ID: <000401c9cd82$41f9c3e0$0601a8c0@allison>
From: "tom.petch" <cfinss@dial.pipex.com>
To: Juergen Schoenwaelder <j.schoenwaelder@jacobs-university.de>, isms@ietf.org
References: <20090427194829.GC10764@elstar.local>
Date: Tue, 05 May 2009 14:38:44 +0200
MIME-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2800.1106
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1106
Cc: Pasi Eronen <pasi.eronen@nokia.com>
Subject: Re: [Isms] revised core isms documents posted - please check
X-BeenThere: isms@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
Reply-To: "tom.petch" <cfinss@dial.pipex.com>
List-Id: Mailing list for the ISMS working group <isms.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/isms>, <mailto:isms-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/isms>
List-Post: <mailto:isms@ietf.org>
List-Help: <mailto:isms-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/isms>, <mailto:isms-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 05 May 2009 14:05:11 -0000

I have read all three apart from the MIB modules and yes, the latest comments
have been addressed.

>From (mostly0) some comments of mine last March:

in tsm-13 s.2.3.1, I see
"Such messages can still be conveyed
   over a secure transport protocol, but the Transport Security Model
   will not be invoked."
as overly optimistic.  sshtm 5.2 2) will discard an outbound message if no cache
exists, so 'can' seems too strong.  I suggest 'may' allowing that a future
secure transport model may allow it even if none do at present.

while the MIB module contains an extra period

"                 or models defined in other document.."

in sshtm

 it might be time to remove the note about [todo] and [discuss] markers.

3.1.2 lacks a period in
 " requirements of securityLevel were met The SSH Transport Model has no"

5.1 2C and 3C
suggest "i.e." rather than "e.g." is more accurate as I do not see an
alternative

5.3 3)
   by an '@' character (ASCII 0x40), that user-name string that
suggest removing second 'that'

Tom Petch

----- Original Message -----
From: "Juergen Schoenwaelder" <j.schoenwaelder@jacobs-university.de>
To: <isms@ietf.org>; "Allison Mankin" <mankin@psg.com>; "Ben Campbell"
<ben@estacado.net>; "Vijay K. Gurbani" <vkg@alcatel-lucent.com>
Cc: "Pasi Eronen" <pasi.eronen@nokia.com>
Sent: Monday, April 27, 2009 9:48 PM
Subject: [Isms] revised core isms documents posted - please check


> Hi,
>
> a new set of the core ISMS documents has been posted:
>
>   http://tools.ietf.org/html/draft-ietf-isms-tmsm-17
>   http://tools.ietf.org/html/draft-ietf-isms-transport-security-model-13
>   http://tools.ietf.org/html/draft-ietf-isms-secshell-16
>
> These documents incorporate comments we received as part of the IETF
> last call process. Please check the changes and let us know as soon as
> possible if you think a comment has not been sufficiently addressed or
> errors have been introduced.
>
> These documents are currently scheduled for the IESG meeting on May 7th.
>
> /js
>
> --
> Juergen Schoenwaelder           Jacobs University Bremen gGmbH
> Phone: +49 421 200 3587         Campus Ring 1, 28759 Bremen, Germany
> Fax:   +49 421 200 3103         <http://www.jacobs-university.de/>
> _______________________________________________
> Isms mailing list
> Isms@ietf.org
> https://www.ietf.org/mailman/listinfo/isms