Re: [netconf] draft-ietf-netconf-udp-notif: YANG model question

"Hartley, Jeff" <Jeff.Hartley@commscope.com> Fri, 29 July 2022 14:04 UTC

Return-Path: <prvs=2020a87b2=Jeff.Hartley@commscope.com>
X-Original-To: netconf@ietfa.amsl.com
Delivered-To: netconf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 97D1FC1594A8 for <netconf@ietfa.amsl.com>; Fri, 29 Jul 2022 07:04:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.105
X-Spam-Level:
X-Spam-Status: No, score=-7.105 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=commscope.com header.b=062/HKmL; dkim=pass (1024-bit key) header.d=commscope.onmicrosoft.com header.b=rMdntNY+
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id bVqnoQnS-QQy for <netconf@ietfa.amsl.com>; Fri, 29 Jul 2022 07:04:20 -0700 (PDT)
Received: from esa.commscope.iphmx.com (esa.commscope.iphmx.com [68.232.142.175]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 02711C157B45 for <netconf@ietf.org>; Fri, 29 Jul 2022 07:03:31 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=commscope.com; i=@commscope.com; q=dns/txt; s=cs1; t=1659103412; x=1690639412; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=6hmpJjRhn7dYcWOrmcrXabd9FaLhO1l++fgfzL1d0/4=; b=062/HKmLNeYevZVNLAlTzXLFheIW5zNbci2I9P7e5HZg3yps9l/H437G wEMS5qL9hjXTuciWQBXQjGkyvmdpM/nPNBANiM9SgYca3POWF9peTdpE9 r9SG/nc+Q8J7aKhm1eJCoOJ6KpyltxVAVZQltq77PdFuZN8TC/vj9eFBO RY5FNBN9HkUrQOnIlnfiivTvjD7KtW4jXqn+4JCTBq09Pq3pDpy7Udkig THc2ATe5X6lMQ1PWjLV0+RmJQ84i7GNAOcdUMGSFzJuN+k0RJtq2zciZu pjH/YDuOy+kPxIWriVnafAiSe+kl+++fqW/H/kuc4SCQk6do1L42jsmb/ A==;
X-IronPort-AV: E=Sophos;i="5.93,201,1654574400"; d="scan'208,217";a="205529554"
Received: from mail-dm6nam10lp2106.outbound.protection.outlook.com (HELO NAM10-DM6-obe.outbound.protection.outlook.com) ([104.47.58.106]) by ob1.commscope.iphmx.com with ESMTP/TLS/ECDHE-RSA-AES128-GCM-SHA256; 29 Jul 2022 10:03:30 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Ck7VIdON+WfXLHFa5w3PNnQy5Ks5boMOEz9SXuFhOwEiKE9WiYk52KTIBUQYhpf8dvQ/1/UW0igO6HHBU1ReswcSTMeBBdsCJh/zr6EapxO5FoC8KH5IlKMBM4lqtbno6pUz53zx/+QuOrI0NQo+6JptSP17thECtEocGzC1w5G5ao301HgA0LQM0DkhlE4/OGtZXSliJBq7xiYX4XZa40e2wD8+xsQ9VPYBZWlkWcsXWvBhqD9G8RubiocB6UyyiCD6oQ6kz/yFWUZWvP9//m3Y685vHDZNUV2WkJRqa0RzryeRnyyFL7nLZY5JFZ91RMZ8Kdgdxk95r92drT7z+A==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=6hmpJjRhn7dYcWOrmcrXabd9FaLhO1l++fgfzL1d0/4=; b=b5ZVrc2Lxbv3+zDnFjLDYOtJ4eEhQ67j05RFbeesczdkYk7iE2xU05PSKgILfG7RkpWrmoh4X7WOXHG4XPuZV6GRxd2NHPPuTlpOOwAfPWepei2WjVpPjiqMyTnRxLeGgLuhBD5GXvbbpx4bFYBKIGIA4eUQ/iPuVL0kR60wknKEYT8kw9Zwas1d621dZBCa48yd+yyPPLqZMtl2eY8ylJ46QBxHdVRBuu6JKmVGE/SUVR4ER3O0vyedxGNT+9xZ9loy9Fg17ooV1UMrBq13n5ood6OMc0ydGM2or+u0QUziZHom/66q2vaH1tsLOzSoAoTpwHe77EDl99fTjgH0pA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=temperror (sender ip is 13.59.96.180) smtp.rcpttodomain=gmail.com smtp.mailfrom=commscope.com; dmarc=temperror action=none header.from=commscope.com; dkim=none (message not signed); arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=commscope.onmicrosoft.com; s=selector2-commscope-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=6hmpJjRhn7dYcWOrmcrXabd9FaLhO1l++fgfzL1d0/4=; b=rMdntNY+duiWdbdIw+wxwai7k1XSUOWYLjVwt2jkXOziJWewF+oy+L8ktlkjWhA8Kxoeh/8GWHF6F0tnFXHeo/l6z3iPUxWt+0d19FvLZ9f88mxR9sps9cLJ+9Zaq72ncx8Dmdtga6hra1XEsLOHIvnm2AugZYiN6Hu0jCrgVxo=
Received: from MW2PR16CA0004.namprd16.prod.outlook.com (2603:10b6:907::17) by DM6PR14MB3948.namprd14.prod.outlook.com (2603:10b6:5:214::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5482.6; Fri, 29 Jul 2022 14:03:28 +0000
Received: from MW2NAM10FT008.eop-nam10.prod.protection.outlook.com (2603:10b6:907:0:cafe::29) by MW2PR16CA0004.outlook.office365.com (2603:10b6:907::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5482.12 via Frontend Transport; Fri, 29 Jul 2022 14:03:28 +0000
X-MS-Exchange-Authentication-Results: spf=temperror (sender IP is 13.59.96.180) smtp.mailfrom=commscope.com; dkim=none (message not signed) header.d=none;dmarc=temperror action=none header.from=commscope.com;
Received: from obx-outbound.inkyphishfence.com (13.59.96.180) by MW2NAM10FT008.mail.protection.outlook.com (10.13.154.158) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5482.10 via Frontend Transport; Fri, 29 Jul 2022 14:03:26 +0000
Received: from NAM12-MW2-obe.outbound.protection.outlook.com (mail-mw2nam12lp2049.outbound.protection.outlook.com [104.47.66.49]) by obx-inbound.inkyphishfence.com (Postfix) with ESMTPS id EA49417D4A4; Fri, 29 Jul 2022 14:03:24 +0000 (UTC)
Received: from BN8PR14MB3459.namprd14.prod.outlook.com (2603:10b6:408:d7::18) by DM6PR14MB3613.namprd14.prod.outlook.com (2603:10b6:5:20d::24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5482.6; Fri, 29 Jul 2022 14:03:21 +0000
Received: from BN8PR14MB3459.namprd14.prod.outlook.com ([fe80::c95:a3b6:110d:8143]) by BN8PR14MB3459.namprd14.prod.outlook.com ([fe80::c95:a3b6:110d:8143%9]) with mapi id 15.20.5482.012; Fri, 29 Jul 2022 14:03:21 +0000
From: "Hartley, Jeff" <Jeff.Hartley@commscope.com>
To: Mahesh Jethanandani <mjethanandani@gmail.com>, Sean Turner <sean@sn3rd.com>
CC: Netconf <netconf@ietf.org>
Thread-Topic: [netconf] draft-ietf-netconf-udp-notif: YANG model question
Thread-Index: AQHYoqkhXRFdAaAzGE2dtArTK1LjhK2VWIIAgAAI3nA=
Date: Fri, 29 Jul 2022 14:03:21 +0000
Message-ID: <BN8PR14MB34592DE984D7C35CA8905AAD8D999@BN8PR14MB3459.namprd14.prod.outlook.com>
References: <7F3B272B-40D0-45E2-9084-49DE83805014@sn3rd.com> <532822B9-AE28-443E-9A2D-AADF8007A0D4@gmail.com>
In-Reply-To: <532822B9-AE28-443E-9A2D-AADF8007A0D4@gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
X-MS-Office365-Filtering-Correlation-Id: d55a6efa-7c58-4bbc-e92c-08da716b1bab
x-ms-traffictypediagnostic: DM6PR14MB3613:EE_|MW2NAM10FT008:EE_|DM6PR14MB3948:EE_
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam-Untrusted: BCL:0;
X-Microsoft-Antispam-Message-Info-Original: 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
X-Forefront-Antispam-Report-Untrusted: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BN8PR14MB3459.namprd14.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(366004)(136003)(376002)(396003)(346002)(39860400002)(8936002)(52536014)(5660300002)(71200400001)(966005)(478600001)(33656002)(86362001)(2906002)(9686003)(26005)(6506007)(7696005)(53546011)(41300700001)(55016003)(166002)(122000001)(38100700002)(83380400001)(186003)(38070700005)(66946007)(66446008)(66556008)(76116006)(316002)(64756008)(66476007)(110136005)(4326008)(8676002); DIR:OUT; SFP:1101;
Content-Type: multipart/alternative; boundary="_000_BN8PR14MB34592DE984D7C35CA8905AAD8D999BN8PR14MB3459namp_"
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR14MB3613
X-Inky-Outbound-Processed: True
X-EOPAttributedMessage: 0
X-MS-Exchange-Transport-CrossTenantHeadersStripped: MW2NAM10FT008.eop-nam10.prod.protection.outlook.com
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id-Prvs: 77c5f5d1-eee7-4eb3-fe14-08da716b18a5
X-IPW-GroupMember: False
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:13.59.96.180; CTRY:US; LANG:en; SCL:1; SRV:; IPV:CAL; SFV:NSPM; H:obx-outbound.inkyphishfence.com; PTR:obx-outbound.inkyphishfence.com; CAT:NONE; SFS:(13230016)(4636009)(346002)(376002)(136003)(396003)(39860400002)(36840700001)(40470700004)(46966006)(2906002)(5660300002)(82310400005)(53546011)(36860700001)(86362001)(40460700003)(316002)(110136005)(52536014)(8936002)(33656002)(40480700001)(55016003)(70206006)(4326008)(8676002)(82740400003)(356005)(478600001)(966005)(166002)(7596003)(7636003)(33964004)(41300700001)(6506007)(7696005)(9686003)(26005)(186003)(63350400001)(47076005)(336012)(83380400001)(63370400001); DIR:OUT; SFP:1101;
X-OriginatorOrg: commscope.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 29 Jul 2022 14:03:26.4318 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: d55a6efa-7c58-4bbc-e92c-08da716b1bab
X-MS-Exchange-CrossTenant-Id: 31472f81-8fe4-49ec-8bc3-fa1c295640d7
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=31472f81-8fe4-49ec-8bc3-fa1c295640d7; Ip=[13.59.96.180]; Helo=[obx-outbound.inkyphishfence.com]
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: TreatMessagesAsInternal-MW2NAM10FT008.eop-nam10.prod.protection.outlook.com
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR14MB3948
Archived-At: <https://mailarchive.ietf.org/arch/msg/netconf/zHO4Xyne6W3MvYacro9f5Ingo30>
Subject: Re: [netconf] draft-ietf-netconf-udp-notif: YANG model question
X-BeenThere: netconf@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: NETCONF WG list <netconf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netconf>, <mailto:netconf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netconf/>
List-Post: <mailto:netconf@ietf.org>
List-Help: <mailto:netconf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netconf>, <mailto:netconf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 29 Jul 2022 14:04:26 -0000

[As the contrib who edited the source PSK structures]

Agreed w/these same notions.  The PSKs are fundamentally different, thus if you are not intending backward-support (since backward compatibility isn't exactly relevant), then I'd recommend removing the TLS 1.2 bits prior to publication.  It's usually easier to augment something in later, than to have to constantly deviate it out once published.

My $0.02;
-Jeff


From: netconf <netconf-bounces@ietf.org> On Behalf Of Mahesh Jethanandani
Sent: Friday, July 29, 2022 9:27 AM
To: Sean Turner <sean@sn3rd.com>
Cc: Netconf <netconf@ietf.org>
Subject: Re: [netconf] draft-ietf-netconf-udp-notif: YANG model question

[As a contributor] Hi Sean, Good catch! If there are existing deployments of TLS 1.2, I wonder if there is a reason why the draft would target TLS 1.3 only. But I would imagine that if TLS 1.2 is out
External (mjethanandani@gmail.com<mailto:mjethanandani@gmail.com>)
  Report This Email<https://protection.inkyphishfence.com/report?id=Y29tbXNjb3BlL2plZmYuaGFydGxleUBjb21tc2NvcGUuY29tLzlhMmQzNTkxYWNhNzJhYTU5NmE2MmUwMmRiZjgxNDE3LzE2NTkxMDIzMTYuNA==#key=caa7f121d0281b09e57ddcbfe344f9b0>  FAQ<https://www.inky.com/banner-faq>  Protection by INKY<https://www.inky.com/protection-by-inky>


[As a contributor]



Hi Sean,



Good catch!



If there are existing deployments of TLS 1.2, I wonder if there is a reason why the draft would target TLS 1.3 only. But I would imagine that if TLS 1.2 is out of scope for any reason, then then the model should remove the 1.2 entries from the model.



Thanks



>

> On Jul 28, 2022, at 1:36 PM, Sean Turner <sean@sn3rd.com> wrote:

>

> Hi! draft-ietf-netconf-udp-notif specifically targets DTLS 1.3. The YANG model is basically lifted from draft-ietf-netconf-tls-client-server and that model has fields for both TLS 1.2 and 1.3. Should the 1.2 entries be deleted from the draft-ietf-netconf-udp-notif model or is it safe to leave them since they are optional and won’t be used?

>

> Seee:

>

> +--rw client-identity!

> |  +--rw (auth-type)

> |     +--:(certificate) {client-ident-x509-cert}?

> |     |     ...

> |     +--:(raw-public-key) {client-ident-raw-public-key}?

> |     |     ...

> |     +--:(tls12-psk) {client-ident-tls12-psk}?

> |     |     ...

> |     +--:(tls13-epsk) {client-ident-tls13-epsk}?

>

> …

>

> Cheers,

> spt

> _______________________________________________

> netconf mailing list

> netconf@ietf.org

> https://secure-web.cisco.com/1rU4AvFjGk9EyHEcAgw7xelVG2zfR19b-57w246Zsx0RdXeDDjmAM9-gWClQ9LTHInr24y8MYzIt-hiG_SxDs3ze6VyCF8lSKRioZlZzrH5ekiNNzNXHZPw3K9W02eSZv1I7gcXVXXFS-_UGQWl3YxF-a1yWK1a1VMNfkfgv41x-yOp96tV3beemAdLH-ahQwGsHPusPml3SvdL1OgzAgHWahwaLOpt4GAtXORgtVdsOAHHx-Gskb5-Lm0WGrH3GZOW3NYv11_ZIVVe_AjGMX2F-2ZoUIzA8Xu-EbGKyKdV2qOJ397S5wjsVDzo1DV-D7/https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Fnetconf



_______________________________________________

netconf mailing list

netconf@ietf.org

https://secure-web.cisco.com/1rU4AvFjGk9EyHEcAgw7xelVG2zfR19b-57w246Zsx0RdXeDDjmAM9-gWClQ9LTHInr24y8MYzIt-hiG_SxDs3ze6VyCF8lSKRioZlZzrH5ekiNNzNXHZPw3K9W02eSZv1I7gcXVXXFS-_UGQWl3YxF-a1yWK1a1VMNfkfgv41x-yOp96tV3beemAdLH-ahQwGsHPusPml3SvdL1OgzAgHWahwaLOpt4GAtXORgtVdsOAHHx-Gskb5-Lm0WGrH3GZOW3NYv11_ZIVVe_AjGMX2F-2ZoUIzA8Xu-EbGKyKdV2qOJ397S5wjsVDzo1DV-D7/https%3A%2F%2Fwww.ietf.org%2Fmailman%2Flistinfo%2Fnetconf