Re: [netconf] Question to draft-ietf-netconf-sztp-csr-13

"Fries, Steffen" <steffen.fries@siemens.com> Tue, 22 February 2022 16:51 UTC

Return-Path: <steffen.fries@siemens.com>
X-Original-To: netconf@ietfa.amsl.com
Delivered-To: netconf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B225C3A0BDD; Tue, 22 Feb 2022 08:51:58 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=siemens.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kWu9mhsOmuh8; Tue, 22 Feb 2022 08:51:54 -0800 (PST)
Received: from EUR03-DB5-obe.outbound.protection.outlook.com (mail-db5eur03on0612.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe0a::612]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9BFEC3A0D75; Tue, 22 Feb 2022 08:51:53 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=kFWw0uRNoZxlouQIaOY4Br5+NbcwoFOV0CfbSsbXNL7Cuor8TGrqGCcdjw990rbK6SyMQcDmh4qW4ouoBErOE9gINsAA111/Z/9umV6ZKN0yEY93QoHYDfskN+7+4U5jcs7XJmIE7JW9//nf/FX7PvGbviO+dp71MyoPMs9UU5UJm75E79/5rQC71VmbvGxxKYX+WujHDl8d4B+CVhkmBxALxpzSDbcOwEPpqKmrsgITxUAHSVAUzEu5El3k20uS4O3wzpkIaAzwfICikGwIK74dXe/MzgtibsoXWEWyrK51tCXuO2TXcqTwq1OS48vY9TfrwcE0k3ISmeJs/xxaYg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=1V4NigflpdkBXyos/vHP8Z4pTZRvr2hYMfxLr5FYY3I=; b=haBKt9mzPcryYaHEBJ5v5pZJSRLy3RvYRdN2unboNKa11GFfKk7Enfty+BKCJFYgsXADiC+JXaw+NG7rA9z/NDGGEAUB9YbZYixCO7mx4CkoKMeEIN1Ktr/EES9AXM1eHW571W1NCTFVpoP+F/rS/tsC6QbvbZrh4liAfqqUG3cjMndq8O2kioVdvUol1RsKCJEYlDS+DdI+iAA6LazjrmONK1zL5PNRZwjCLWlZ1M2g0UEAQAqGkEFmJCA8G8eXLJMqs2Z76B8Ao6sneeEnBjy5eyn1earSso02VBAnTIqHTKyFlXSiQC+zFOMkvq1W7+PmZfqT1zNOV3T7qIWg6Q==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=siemens.com; dmarc=pass action=none header.from=siemens.com; dkim=pass header.d=siemens.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=siemens.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=1V4NigflpdkBXyos/vHP8Z4pTZRvr2hYMfxLr5FYY3I=; b=B7KVQhjdVv6SG929XUYPm0g7wo7QWNEObuEGuuSyTyXglnUjGh2zyY9xYYqDw6QKq59RZsPOeulV9nmesZzS8bkFPCmhG/5bsILzxyqqmfLwPxIokQX08tvGWgoxifwQNKPI0W8u9BSbq1CHxg4BBcfCuglQH1N5hkvuf4mA6Zhhe/5lSP8ESyfH548zpm4Vh6yhE/MefC32sbC2p4AoAKJuQ+eOSu0IXJ4SD5RrnOKJGGWCxVr5gBrz54LexjhEAQsU5XMv6SdOZSxLB/Nfcf/HuD1YL0ZbqI6QWNk/8WQgRs3qgl5jDnlb7Y4g4qehwKNqY1CRN68t1xmTAuK3lA==
Received: from DU0PR10MB5196.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:10:348::20) by DB7PR10MB2297.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:10:49::32) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4995.16; Tue, 22 Feb 2022 16:51:49 +0000
Received: from DU0PR10MB5196.EURPRD10.PROD.OUTLOOK.COM ([fe80::3933:5b58:89e0:fe58]) by DU0PR10MB5196.EURPRD10.PROD.OUTLOOK.COM ([fe80::3933:5b58:89e0:fe58%5]) with mapi id 15.20.4995.027; Tue, 22 Feb 2022 16:51:49 +0000
From: "Fries, Steffen" <steffen.fries@siemens.com>
To: Kent Watsen <kent+ietf@watsen.net>
CC: "draft-ietf-netconf-sztp-csr@ietf.org" <draft-ietf-netconf-sztp-csr@ietf.org>, "netconf@ietf.org" <netconf@ietf.org>
Thread-Topic: Question to draft-ietf-netconf-sztp-csr-13
Thread-Index: Adgim5hAuhUnTB2rQxqcftqkq5pS2wFZfD+AAAKCOmA=
Date: Tue, 22 Feb 2022 16:51:49 +0000
Message-ID: <DU0PR10MB5196D760CD7247B21B255664F33B9@DU0PR10MB5196.EURPRD10.PROD.OUTLOOK.COM>
References: <DU0PR10MB5196969030E39300696054D0F3349@DU0PR10MB5196.EURPRD10.PROD.OUTLOOK.COM> <0100017f2210e849-73639b73-109c-46bb-be2f-5f52f96449e6-000000@email.amazonses.com>
In-Reply-To: <0100017f2210e849-73639b73-109c-46bb-be2f-5f52f96449e6-000000@email.amazonses.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_Enabled=true; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_SetDate=2022-02-22T16:51:47Z; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_Method=Standard; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_Name=restricted-default; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_SiteId=38ae3bcd-9579-4fd4-adda-b42e1495d55a; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_ActionId=5e9885ee-9e8c-4fba-b922-a2db1d91a174; MSIP_Label_a59b6cd5-d141-4a33-8bf1-0ca04484304f_ContentBits=0
document_confidentiality: Restricted
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=siemens.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 1a5a73ad-c56f-4112-06e0-08d9f6239e5d
x-ms-traffictypediagnostic: DB7PR10MB2297:EE_
x-microsoft-antispam-prvs: <DB7PR10MB22978A3B93815C0AE22E59FEF33B9@DB7PR10MB2297.EURPRD10.PROD.OUTLOOK.COM>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: EZ5UHglEpzrSbWPFc2V1KdS/NgM5Q6NT0a8vQfzVCYbyrOZI89ATzwPb8vrcV6cuuMwHZ216qWiZXPlD97mXcu4QYAlGnb1VYpKmFpTZ+40K8y4hJD/y8ufNXyuB4m74uoiVloaU77JD260dWlupWvF/UQ6BvuYMOdqyVhCB8ck9A3ZhKgGU7MdNw0hz+AcQO1uEpNsj5gn7H5ilQaaHpSJpai/k43nZdB8yta0ZFP5oN1l/kC/8jIaJH8arOEjXhmqlkwwwSxmrp8mwjs5QbXkQl6idCNnMOx9JHS5kTKqHQEPhB1+xEscdiBvYSndU0ibo6ThCzhaeh/WD6ft5J/SZ1jt0Y9+2s31rUNS7Pr5mZVv7JtLYRRcqiCykhxvVI7SkpZOnd6YOFoVWw1Ddf+F9L6n3OG3JdMJErdBLO3DcFo32qwZAzxDFu9ECWvY4qlKuGQlnJGc1/llOf9WnvKMq3ftS6Zmb9dfsa6UoUyRxe0XWeenmeiNglBnJdCnVB/0YD4PMQQmEt0LK/+pTfwMnFRiNTCm14ADT3zHI/hperV6QtcM68LxTjRVtNQQpUDq0rgjcZdKtsi00xzFsAQnVS+nO1gj09X0bNb7adgwuAGNGaj8tCdLc7WVtN/gUKLNNI36c9FxdErkuKOHQKIqc1m487cxeD3k8ifj2wAXe0auh5dkX+HB57elH6GtErh8Fen2UAFiZO7aDTCnzQg==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DU0PR10MB5196.EURPRD10.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230001)(4636009)(366004)(38070700005)(82960400001)(186003)(9326002)(52536014)(5660300002)(26005)(122000001)(9686003)(38100700002)(8936002)(86362001)(2906002)(316002)(66946007)(55016003)(71200400001)(83380400001)(66476007)(66446008)(76116006)(64756008)(54906003)(55236004)(53546011)(7696005)(6506007)(33656002)(8676002)(508600001)(4326008)(66556008); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_DU0PR10MB5196D760CD7247B21B255664F33B9DU0PR10MB5196EURP_"
MIME-Version: 1.0
X-OriginatorOrg: siemens.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DU0PR10MB5196.EURPRD10.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 1a5a73ad-c56f-4112-06e0-08d9f6239e5d
X-MS-Exchange-CrossTenant-originalarrivaltime: 22 Feb 2022 16:51:49.0352 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 38ae3bcd-9579-4fd4-adda-b42e1495d55a
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: spUyJq+9L5nHely4wuMy/xZGMC0Y50EXBuX9CNVaJxbFT8PBsREsAOMtOFaDW1QXEJN0klcfafy3CcAThKn+vSfgkFzz5mAVTxrtwSbVRlA=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB7PR10MB2297
Archived-At: <https://mailarchive.ietf.org/arch/msg/netconf/2B15gApJbDMkEZgVGhPKGuxeyHs>
Subject: Re: [netconf] Question to draft-ietf-netconf-sztp-csr-13
X-BeenThere: netconf@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: NETCONF WG list <netconf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netconf>, <mailto:netconf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netconf/>
List-Post: <mailto:netconf@ietf.org>
List-Help: <mailto:netconf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netconf>, <mailto:netconf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 22 Feb 2022 16:51:59 -0000

Hi Kent,

Thank you for your answer.
I agree, it is very late in the process for such a comment. I should have realized it earlier. Nevertheless, I wanted to raise that point as it would allow for more functionality. If there is no DISCUSS, the proposal with an additional definition is probably the easiest way forward.

Best regards
Steffen

From: Kent Watsen <kent+ietf@watsen.net>
Sent: Dienstag, 22. Februar 2022 16:33
To: Fries, Steffen (T CST) <steffen.fries@siemens.com>
Cc: draft-ietf-netconf-sztp-csr@ietf.org; netconf@ietf.org
Subject: Re: Question to draft-ietf-netconf-sztp-csr-13


Hi Steffen,

Yes, the CMP-CSR is bound to P10.


This draft is currently in the final stage of IESG Last Call review.  Comments such as these should have been received during WG Last Call.  Unless an IESG member throws a DISCUSS, the draft will proceed as is.  In such case, a future work may define something like a "cmp-csr-2” leaf to contain an expanded definition.


Kent // contributor




On Feb 15, 2022, at 1:46 PM, Fries, Steffen <steffen.fries@siemens.com<mailto:steffen.fries@siemens.com>> wrote:

Hello Kent,

I’ve got a short clarification question regarding the latest draft. I realized in the description of the YANG modules that there is a difference in section 3.2 between CMC and CMP in the description what can be contained in the respective CSR. Based on the description of the YANG module, CMC seems to be open for different types of certification requests, while CMP is bound to a wrapped P10 not leaving any further choice (like ir, cr, kur). Did I got this right or did I misinterpret the description for the cmc-csr? Sorry for realizing this so late.

Best regards
Steffen