[Last-Call] Secdir last call review of draft-ietf-dots-telemetry-use-cases-12

Phillip Hallam-Baker via Datatracker <noreply@ietf.org> Tue, 04 October 2022 23:56 UTC

Return-Path: <noreply@ietf.org>
X-Original-To: last-call@ietf.org
Delivered-To: last-call@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 65890C1524AF; Tue, 4 Oct 2022 16:56:03 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Phillip Hallam-Baker via Datatracker <noreply@ietf.org>
To: secdir@ietf.org
Cc: dots@ietf.org, draft-ietf-dots-telemetry-use-cases.all@ietf.org, last-call@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 8.17.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <166492776340.60835.10697691104403592039@ietfa.amsl.com>
Reply-To: Phillip Hallam-Baker <hallam@gmail.com>
Date: Tue, 04 Oct 2022 16:56:03 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/last-call/-zGfsmT0MwITKhyZWAmMw3Dm_LE>
Subject: [Last-Call] Secdir last call review of draft-ietf-dots-telemetry-use-cases-12
X-BeenThere: last-call@ietf.org
X-Mailman-Version: 2.1.39
List-Id: IETF Last Calls <last-call.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/last-call>, <mailto:last-call-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/last-call/>
List-Post: <mailto:last-call@ietf.org>
List-Help: <mailto:last-call-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/last-call>, <mailto:last-call-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 04 Oct 2022 23:56:03 -0000

Reviewer: Phillip Hallam-Baker
Review result: Ready

The document describes additional telemetry data types for DDoS signaling. As
such, the document appropriately references the security considerations in the
base specification, RFC9244.

Given the subject domain is adversarial, constant development of new attack
presentations is to be expected and thus the need for constant extension of the
telemetry description.

Where machine-learning techniques are used, it may be useful to provide a label
to distinguish the techniques in use so that other elements in the system can
react appropriately when the technique or parameters are changed.