Re: [Last-Call] Secdir last call review of draft-ietf-lsr-rfc8920bis-03

"Les Ginsberg (ginsberg)" <ginsberg@cisco.com> Tue, 23 May 2023 20:25 UTC

Return-Path: <ginsberg@cisco.com>
X-Original-To: last-call@ietfa.amsl.com
Delivered-To: last-call@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3C0F7C14CE25; Tue, 23 May 2023 13:25:08 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -11.899
X-Spam-Level:
X-Spam-Status: No, score=-11.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b="bOrkY3jf"; dkim=pass (1024-bit key) header.d=cisco.com header.b="WsOclzNe"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ymkMfIGTti1M; Tue, 23 May 2023 13:25:03 -0700 (PDT)
Received: from alln-iport-8.cisco.com (alln-iport-8.cisco.com [173.37.142.95]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C6B53C151099; Tue, 23 May 2023 13:23:41 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=3052; q=dns/txt; s=iport; t=1684873421; x=1686083021; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-transfer-encoding:mime-version; bh=WafoYmgvAUcCpMQqPgRR8YlS+DoO2xBsK9fJPHPdj0I=; b=bOrkY3jffhxGHFDTF0MXZtR+aSp6gySlbAz80KMUlizQV+4eymmXtk1E J61tU1hd4bJUsIQTUORYKFr9fntjtoMAZihHc6CPQSWbi+jNHZHihXGlY kgLSINxoAm5BizGdSCMAlUYZp4criWeRmNzNNsBkLjcc4g37I7U34ZS4m g=;
X-IPAS-Result: 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
IronPort-PHdr: A9a23:sFyv4BbU2toXNIykkUXHjvX/LTDhhN3EVzX9orIuj7ZIN6O78IunZ grU5O5mixnCWoCIo/5Hiu+Dq6n7QiRA+peOtnkebYZBHwEIk8QYngEsQYaFBET3IeSsbnkSF 8VZX1gj9Ha+YgBOAMirX1TJuTWp6CIKXBD2NA57POPwT4HTid+92vq905bSeA5PwjG6ZOA6I BC/tw6ErsANmsMiMvMo1xLTq31UeuJbjW9pPgeVmBDxp4+8qZVi6C9X/fkm8qZ9
IronPort-Data: A9a23:TYKGuqktXH2CNnMcU7busPTo5gxIJkRdPkR7XQ2eYbSJt1+Wr1Gzt xIbDTiHbKyDNDejc40kPIy/o0IHvZ6GnIBjTQFsqCBhFFtH+JHPbTi7wugcHM8zwunrFh8PA xA2M4GYRCwMZiaA4E/raNANlFEkvU2ybuKU5NXsZGYpHWeIdA970Ug4w7Nj2dYz6TSEK1rlV e3a8pW31GCNg1aYAkpMg05UgEoy1BhakGpwUm0WPZinjneH/5UmJM53yZWKEpfNatI88thW6 Ar05OrREmvxp3/BAz4++1rxWhVirrX6ZWBihpfKMkSvqkAqm8A87ko0HNQEUEZPkwXZo4t81 uccrKaxTDcnbrKZzYzxUzEAe81/FaRC/LmCKn+lvInKlwvNcmDnxLNlC0Re0Y8wo7ksRzoQs 6VDbmlWNHhvhMruqF6/YuZtgN8pIdPkFIgeoXpnizreCJ7KRLiaG/SXuoUIjGhYasZmPvrUT fZDWyBWNU6aSh8SO0gpDbMjtbL97pX4W2QI9A3KzUYt2EDX1xZZ0bXxPpzSYNPibcFchVrdr WvC+0z4Dw0UctuFxlKt/miliPOKnC7nVscWD6f97PBh0AzJnmYSE1sfUV+ToPSlhAi5Qd03A 1cZ8SYvt4Az+VClCN7nUHWFTGWstxoYXZ9bFPc3rVjVjKHV+A2eQGMDS1atdeDKqucYXQUrz ke5z++yCCJd4aSvSHet+OeL+Gba1TcuEUcOYioNTA0g6tbloZ0ugh+ncjqFOPPs5jESMWyoq w1mvBTSlJ1I155Wi/nTEUTvxmPy+8mYFmbZ8y2NBgqYAhVFiJlJjmBCwXfS9/JJKorxorKp4 yVcx5P2AAzj8fiweMGlSeEJGvSi4OyIdWSEx1VuBJImsT+q/hZPnLy8Ahkjei+F0e5dJlcFh XM/XysKuve/21PxMcdKj3qZUZhC8EQZPY2NugroRtRPeINtUwSM4TtjY0Wdt0i0zhhwwf9hZ 8vCKJ79ZZr/NUiB5GfpLwv6+eJ1rh3SOUuILXwG5039iOHHNCL9pUktYQDeBgzG0E90iFyFr 4kAXyd74x5eS+b5KjLG6pIeKEtiEJTILc6eliCjTcbaelAOMDh4U5f5mOpxE6Q7xP49vrmTo RmAtrpwlQCXaYvvc1vaMxiOqdrHAP5CkJ7MFXZxbA30giF+Pd7HAWV2X8JfQITLPddLlJZcZ /IEYM6HRP9IT1z6F/41NPERcKQKmMyXuD+z
IronPort-HdrOrdr: A9a23:XXOFZKEex4deTavdpLqFXpHXdLJyesId70hD6qkvc3Jom52j+P xGws526fatskdsZJhBo7q90KnpewK5yXcH2/hvAV7EZniqhILIFvAp0WKG+Vzd8kLFh5ZgPM tbAspD4ZjLfCVHZKXBkUWF+rQbsaK6GcmT7I+0rwYPcegpUdAb0+4TMHf9LqQCfng+OXNPLu v72iMonUvERZ0QVKmGL0hAe9KGi8zAlZrgbxJDLQUg8hOygTSh76O/OwSE3z8FOgk/j4sKwC zgqUjU96+ju/a0xlv3zGnI9albn9Pn159qGNGMsM4IMT/h4zzYJbiJGofy/AzdktvfqmrCo+ O85ivI+P4Dr085S1vF4icFHTOQlwrGpUWSj2NwykGT3/ARDAhKevapw7gpPScwLyEbzYlBOG Uh5RPBi7NHSRzHhyjz/N7OSlVjkVe1u2MrlaoJg2VYSpZ2Us4ZkWUzxjIjLH47JlON1Kk3VO 11SM3M7vdfdl2XK3jfo2l02dSpGnA+BA2PTEQOstGcl2E+pgEz82IIgMgE2nsQ/pM0TJdJo+ zCL6RzjblLCssbd7h0CusNSda+TmbNXRXPOmSPJkmPLtBOB1vd75rspLkl7uCjf5IFiJM0hZ TaSVtd8XU/fkr/YPf+qKGjMiq9NVlVcQ6duP22vaIJyoEUbICbQhG+dA==
X-Talos-CUID: 9a23:EeOcKGpHp/GTMZSiYGTfVmDmUe49S3zF1EeAHxS1F1Q4UYeUTG+eqLwxxg==
X-Talos-MUID: 9a23:jYnpwg4OO9LhJ8//95XgLWgdxoxL766ENBo/i6xf4ZOtN3FxJAmYrSmeF9o=
X-IronPort-Anti-Spam-Filtered: true
Received: from alln-core-10.cisco.com ([173.36.13.132]) by alln-iport-8.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 23 May 2023 20:23:40 +0000
Received: from alln-opgw-2.cisco.com (alln-opgw-2.cisco.com [173.37.147.250]) by alln-core-10.cisco.com (8.15.2/8.15.2) with ESMTPS id 34NKNe7n009557 (version=TLSv1.2 cipher=DHE-RSA-AES256-GCM-SHA384 bits=256 verify=OK); Tue, 23 May 2023 20:23:40 GMT
Authentication-Results: alln-opgw-2.cisco.com; dkim=pass (signature verified) header.i=@cisco.com; spf=Pass smtp.mailfrom=ginsberg@cisco.com; dmarc=pass (p=quarantine dis=none) d=cisco.com
X-IronPort-AV: E=Sophos;i="6.00,187,1681171200"; d="scan'";a="1855683"
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=P5Ks8seMtgDJTlLEMP7sT40JYbJVzdg7KTH6ypwtQGs+J00OBT3VeKIDCxTnbgNxaSwchCj6N5POqzJo7IJtBLzhU6fLtWxRD4sihmzVxrpy/SxDvqHc0p4C3C7xT9fodvGSEEj/Oj/W++IedBZh2bB/8KcLWV0x7NtGMFJndQMtB6u4r6zIufJJ4E2qa7HhSG6UvHuo0uTuN5ZuOLzhWs4dbjq8aSaggoniR1uGmqjfYQ5E6drdWQPua1vb1JbC1Ytomzb3tCUCpuoe9f1/Qyx7VIhGoBopvXhQvKhs+khkVcvwU7DDsQuSUJ5YMfiLbRoLHbN6MNS8m3ImsrzTTw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=WafoYmgvAUcCpMQqPgRR8YlS+DoO2xBsK9fJPHPdj0I=; b=iwITDNOLgXumgpf21Ymb16vzJrBHR0BjFEo+BaUrmkdSW+8yf24oSNdoipnPVyR+PNvX+JKIQZwkyTVUxUzTMtf0WdEc2z1ofjTFyxUbKKCj4QT613u6tdvMA81RRsabOc6fIBhYgrLHyscLEjgukuGdrUaQidpnQnWGwlnwsTZnvz72LughdkM2AbRaTN/MVu+UdN0XPLEGntCqZn3f53OEFtVqsO86Sq/uPNB7YBn2V1lKIE4MWwWHky3UUSm/JG0tSKYgyYEekPrCNtHl/OhJ1+tDcpiqMahLvuudu6SDPjt6DcgApAWMVVqaPSpoPJ6gTqh/nlZc6BiQmbcQfg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=WafoYmgvAUcCpMQqPgRR8YlS+DoO2xBsK9fJPHPdj0I=; b=WsOclzNetVy1wqKBl0cWh5Nbz1syxGz1/brfbbRPWAkRWGptCnLsqh67wAt0qr3DVDgsO2by0L5Cy2SI0dSPJqD3+WOK76z9Hv6jLlf93c2zj3HqRHpFtWDGUxWU8CwHi2lvuvHx0zP0d49tu7enDY5wctG38tOMQCXrBrBX+ps=
Received: from BY5PR11MB4337.namprd11.prod.outlook.com (2603:10b6:a03:1c1::14) by SJ1PR11MB6083.namprd11.prod.outlook.com (2603:10b6:a03:48a::9) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6387.29; Tue, 23 May 2023 20:23:38 +0000
Received: from BY5PR11MB4337.namprd11.prod.outlook.com ([fe80::d5a2:87f0:e0c6:6c66]) by BY5PR11MB4337.namprd11.prod.outlook.com ([fe80::d5a2:87f0:e0c6:6c66%5]) with mapi id 15.20.6411.028; Tue, 23 May 2023 20:23:37 +0000
From: "Les Ginsberg (ginsberg)" <ginsberg@cisco.com>
To: Scott Kelly <scott@hyperthought.com>, "secdir@ietf.org" <secdir@ietf.org>
CC: "draft-ietf-lsr-rfc8920bis.all@ietf.org" <draft-ietf-lsr-rfc8920bis.all@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>, "lsr@ietf.org" <lsr@ietf.org>
Thread-Topic: Secdir last call review of draft-ietf-lsr-rfc8920bis-03
Thread-Index: AQHZjMglvlgbbZsvU0GdXy9VL0EEjK9oTw6A
Date: Tue, 23 May 2023 20:23:37 +0000
Message-ID: <BY5PR11MB4337D8C1E8FD93673302C8F4C1409@BY5PR11MB4337.namprd11.prod.outlook.com>
References: <168477191231.37220.13924089362384644202@ietfa.amsl.com>
In-Reply-To: <168477191231.37220.13924089362384644202@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: BY5PR11MB4337:EE_|SJ1PR11MB6083:EE_
x-ms-office365-filtering-correlation-id: 16c4fb2a-7e91-4bf7-417e-08db5bcb973b
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BY5PR11MB4337.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230028)(346002)(136003)(376002)(366004)(39860400002)(396003)(451199021)(7696005)(110136005)(66946007)(66446008)(316002)(64756008)(66476007)(478600001)(66556008)(86362001)(76116006)(54906003)(8676002)(33656002)(66574015)(6506007)(186003)(53546011)(71200400001)(9686003)(4326008)(83380400001)(55016003)(8936002)(52536014)(122000001)(2906002)(38100700002)(41300700001)(38070700005)(5660300002); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: cisco.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BY5PR11MB4337.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 16c4fb2a-7e91-4bf7-417e-08db5bcb973b
X-MS-Exchange-CrossTenant-originalarrivaltime: 23 May 2023 20:23:37.6343 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 8W+Gfs2v/JY6lGuuijM/umqoyO7mAGPqZNZXtIu6LgnIOSEOk0u5HYZtU4Nbi6yHxFDyTl3o0HqBQpWdzP/yhA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SJ1PR11MB6083
X-Outbound-SMTP-Client: 173.37.147.250, alln-opgw-2.cisco.com
X-Outbound-Node: alln-core-10.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/last-call/_EXWClmJrhgNkgJ8U_dxI6F6wQg>
Subject: Re: [Last-Call] Secdir last call review of draft-ietf-lsr-rfc8920bis-03
X-BeenThere: last-call@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF Last Calls <last-call.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/last-call>, <mailto:last-call-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/last-call/>
List-Post: <mailto:last-call@ietf.org>
List-Help: <mailto:last-call-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/last-call>, <mailto:last-call-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 23 May 2023 20:25:08 -0000

Scott -

Thanx for your review.

I have uploaded V4 of the draft with the change you suggested.

   Les


> -----Original Message-----
> From: Scott Kelly via Datatracker <noreply@ietf.org>
> Sent: Monday, May 22, 2023 9:12 AM
> To: secdir@ietf.org
> Cc: draft-ietf-lsr-rfc8920bis.all@ietf.org; last-call@ietf.org; lsr@ietf.org
> Subject: Secdir last call review of draft-ietf-lsr-rfc8920bis-03
> 
> Reviewer: Scott Kelly
> Review result: Has Nits
> 
> I have reviewed this document as part of the security directorate's
> ongoing effort to review all IETF documents being processed by the
> IESG. These comments were written primarily for the benefit of the
> security area directors. Document editors and WG chairs should treat
> these comments just like any other last call comments.
> 
> The summary of the review is "almost ready"
> 
> Quoting the abstract,
>    Existing traffic-engineering-related link attribute advertisements
>    have been defined and are used in RSVP-TE deployments.  Since the
>    original RSVP-TE use case was defined, additional applications (e.g.,
>    Segment Routing Policy and Loop-Free Alternates) that also make use
>    of the link attribute advertisements have been defined.  In cases
>    where multiple applications wish to make use of these link
>    attributes, the current advertisements do not support application-
>    specific values for a given attribute, nor do they support indication
>    of which applications are using the advertised value for a given
>    link.  This document introduces new link attribute advertisements in
>    OSPFv2 and OSPFv3 that address both of these shortcomings.
> 
> The security considerations seem complete, but I had one minor concern with
> this sentence:
> 
>    Implementations must ensure that if any of the TLVs and sub-TLVs
>    defined in this document are malformed, they are detected and do not
>    facilitate a vulnerability for attackers to crash the OSPF router or
>    routing process.
> 
> This is correct, but we are not just concerned with crashing. It might be
> better to say something like "...to crash or otherwise compromise the OSPF
> router or routing process."
>