Re: [netconf] I-D Action: draft-ietf-netconf-trust-anchors-08.txt

Kent Watsen <kent+ietf@watsen.net> Thu, 21 November 2019 10:41 UTC

Return-Path: <0100016e8d8d59b8-c6be1b53-65cd-47ce-870e-19a382636547-000000@amazonses.watsen.net>
X-Original-To: netconf@ietfa.amsl.com
Delivered-To: netconf@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C249A120937 for <netconf@ietfa.amsl.com>; Thu, 21 Nov 2019 02:41:24 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.897
X-Spam-Level:
X-Spam-Status: No, score=-1.897 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=amazonses.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aPvXY5-r8UHX for <netconf@ietfa.amsl.com>; Thu, 21 Nov 2019 02:41:23 -0800 (PST)
Received: from a8-31.smtp-out.amazonses.com (a8-31.smtp-out.amazonses.com [54.240.8.31]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DE78712085F for <netconf@ietf.org>; Thu, 21 Nov 2019 02:41:22 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/simple; s=6gbrjpgwjskckoa6a5zn6fwqkn67xbtw; d=amazonses.com; t=1574332881; h=Content-Type:Content-Transfer-Encoding:From:Mime-Version:Subject:Date:Message-Id:References:Cc:In-Reply-To:To:Feedback-ID; bh=tyNyPzsl5DuZ1WiqfzAxsQHADSe1PbXhVNa/N57abFU=; b=mj86R7MZDOBh6hd2fBww/uKZXwAtYxl1sz9vtB0TdZdhI6SgiJrzGZFZuMH1rKZz vs5Kmm0XVRcvRYGWrN41bBFLfcXYju6nD+EvwhS15N8r/j/G97LeR/BykCNMbAJ7gqr AHC6lTCH1fRRpTL1ZIdd/kHgHuY0+ar1oWN7VDhk=
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: Kent Watsen <kent+ietf@watsen.net>
Mime-Version: 1.0 (1.0)
Date: Thu, 21 Nov 2019 10:41:21 +0000
Message-ID: <0100016e8d8d59b8-c6be1b53-65cd-47ce-870e-19a382636547-000000@email.amazonses.com>
References: <AM0PR07MB5187671751F4AAAA8B11C1B1834E0@AM0PR07MB5187.eurprd07.prod.outlook.com>
Cc: "netconf@ietf.org" <netconf@ietf.org>
In-Reply-To: <AM0PR07MB5187671751F4AAAA8B11C1B1834E0@AM0PR07MB5187.eurprd07.prod.outlook.com>
To: Balázs Kovács <balazs.kovacs@ericsson.com>
X-Mailer: iPhone Mail (17A878)
X-SES-Outgoing: 2019.11.21-54.240.8.31
Feedback-ID: 1.us-east-1.DKmIRZFhhsBhtmFMNikgwZUWVrODEw9qVcPhqJEI2DA=:AmazonSES
Archived-At: <https://mailarchive.ietf.org/arch/msg/netconf/BpjkzM8YlSGu2rmWYeiwDX18onw>
Subject: Re: [netconf] I-D Action: draft-ietf-netconf-trust-anchors-08.txt
X-BeenThere: netconf@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: NETCONF WG list <netconf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netconf>, <mailto:netconf-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netconf/>
List-Post: <mailto:netconf@ietf.org>
List-Help: <mailto:netconf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netconf>, <mailto:netconf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 21 Nov 2019 10:41:25 -0000

balazs et al,

please try to provide comments in the form of a diff of some sort.  

thanks,
kent // contributor 

> On Nov 21, 2019, at 5:13 AM, Balázs Kovács <balazs.kovacs@ericsson.com> wrote:
> 
> Hi,
> 
> Thank you for the updates Kent!
> 
> One comment though, the changelog and the text do not seem to reflect the changes we have done in the models about the psk and the raw-public-key topic. For example, the truststore model does not have PSK keys now, but still the introduction mentions them. As opposed to this, the addition of the new local-or-keystore symmetric key grouping to keystore in relation to PSK is not mentioned in keystore.
> 
> Br,
> Balazs
> 
> -----Original Message-----
> From: netconf <netconf-bounces@ietf.org> On Behalf Of internet-drafts@ietf.org
> Sent: Wednesday, November 20, 2019 7:35 PM
> To: i-d-announce@ietf.org
> Cc: netconf@ietf.org
> Subject: [netconf] I-D Action: draft-ietf-netconf-trust-anchors-08.txt
> 
> 
> A New Internet-Draft is available from the on-line Internet-Drafts directories.
> This draft is a work item of the Network Configuration WG of the IETF.
> 
>        Title           : A YANG Data Model for a Truststore
>        Author          : Kent Watsen
>    Filename        : draft-ietf-netconf-trust-anchors-08.txt
>    Pages           : 21
>    Date            : 2019-11-20
> 
> Abstract:
>   This document defines a YANG 1.1 data model for configuring global
>   sets of X.509 certificates, SSH host-keys, raw public keys, and PSKs
>   (pairwise-symmetric or pre-shared keys) that can be referenced by
>   other data models for trust.  While the SSH host-keys are uniquely
>   for the SSH protocol, certificates, raw public keys, and PSKs may
>   have multiple uses, including authenticating protocol peers and
>   verifying signatures.
> 
> 
> The IETF datatracker status page for this draft is:
> https://datatracker.ietf.org/doc/draft-ietf-netconf-trust-anchors/
> 
> There are also htmlized versions available at:
> https://tools.ietf.org/html/draft-ietf-netconf-trust-anchors-08
> https://datatracker.ietf.org/doc/html/draft-ietf-netconf-trust-anchors-08
> 
> A diff from the previous version is available at:
> https://www.ietf.org/rfcdiff?url2=draft-ietf-netconf-trust-anchors-08
> 
> 
> Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org.
> 
> Internet-Drafts are also available by anonymous FTP at:
> ftp://ftp.ietf.org/internet-drafts/
> 
> _______________________________________________
> netconf mailing list
> netconf@ietf.org
> https://www.ietf.org/mailman/listinfo/netconf