Re: [netmod] WG Last Call: draft-ietf-netmod-acl-extensions-03

mohamed.boucadair@orange.com Tue, 19 December 2023 08:14 UTC

Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: netmod@ietfa.amsl.com
Delivered-To: netmod@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A34B8C14F5FF; Tue, 19 Dec 2023 00:14:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.103
X-Spam-Level:
X-Spam-Status: No, score=-0.103 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001, URI_DOTEDU=1, URI_DOTEDU_ENTITY=1] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id rgiwNwVzAxMN; Tue, 19 Dec 2023 00:14:23 -0800 (PST)
Received: from smtp-out.orange.com (smtp-out.orange.com [80.12.126.239]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 46E1AC14F5EB; Tue, 19 Dec 2023 00:14:22 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; i=@orange.com; q=dns/txt; s=orange002; t=1702973662; x=1734509662; h=to:cc:subject:date:message-id:references:in-reply-to: mime-version:from; bh=YQ2KOiREGCNq5u4VhaEACERrYEMuImvsytB2S03NXQs=; b=B3stdRu4656+fW2fJ0CfnsAayobXXGhZxJP17LPVte+Bvg9J30d0ycMJ 3ijOxLHpuXYkIR215ijTLnR0gGN4GGdV2j2cjZ70kRATFy9I93Cb3Hbpy hstAGlab2lWkb3R9yPT+EuR0UxUjvaRC4kAxjeydeT16xSZXnQO9A1hC9 TD6oMwbWugZWT/mJ0UbAT5p0os+RaS3eNxFlPQN0e9KCF0ysxJsLc9FQq ZCN5/mgnQcW8xCguZyuq79OlgJnoW6ONy1fCCSX0jqkTylSoyu8zQXCcQ gX1nv1fhrzB1LupnkkZm9g+jccT+BZA8hLNtXXCooCsrnWW2w7kjs7Jp0 w==;
Received: from unknown (HELO opfedv1rlp0c.nor.fr.ftgroup) ([x.x.x.x]) by smtp-out.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 19 Dec 2023 09:14:19 +0100
Received: from unknown (HELO opzinddimail7.si.fr.intraorange) ([x.x.x.x]) by opfedv1rlp0c.nor.fr.ftgroup with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 19 Dec 2023 09:14:20 +0100
Received: from opzinddimail7.si.fr.intraorange (unknown [127.0.0.1]) by DDEI (Postfix) with SMTP id D7C922229FE; Tue, 19 Dec 2023 09:14:19 +0100 (CET)
Received: from opzinddimail7.si.fr.intraorange (unknown [127.0.0.1]) by DDEI (Postfix) with ESMTP id A906322CC3F; Tue, 19 Dec 2023 09:09:32 +0100 (CET)
Received: from smtp-out365.orange.com (unknown [x.x.x.x]) by opzinddimail7.si.fr.intraorange (Postfix) with ESMTPS; Tue, 19 Dec 2023 09:09:32 +0100 (CET)
Received: from mail-am0eur02lp2232.outbound.protection.outlook.com (HELO EUR02-AM0-obe.outbound.protection.outlook.com) ([104.47.11.232]) by smtp-out365.orange.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 19 Dec 2023 09:09:32 +0100
Received: from DU2PR02MB10160.eurprd02.prod.outlook.com (2603:10a6:10:49b::6) by VI1PR02MB10224.eurprd02.prod.outlook.com (2603:10a6:800:1bd::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7091.38; Tue, 19 Dec 2023 08:09:30 +0000
Received: from DU2PR02MB10160.eurprd02.prod.outlook.com ([fe80::27b4:adc2:3e72:3702]) by DU2PR02MB10160.eurprd02.prod.outlook.com ([fe80::27b4:adc2:3e72:3702%4]) with mapi id 15.20.7091.034; Tue, 19 Dec 2023 08:09:30 +0000
From: mohamed.boucadair@orange.com
X-TM-AS-ERS: 10.106.160.161-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== bW9oYW1lZC5ib3VjYWRhaXJAb 3JhbmdlLmNvbQ==
X-DDEI-TLS-USAGE: Used
Authentication-Results: smtp-out365.orange.com; dkim=none (message not signed) header.i=none; spf=Fail smtp.mailfrom=mohamed.boucadair@orange.com; spf=Pass smtp.helo=postmaster@EUR02-AM0-obe.outbound.protection.outlook.com
Received-SPF: Fail (smtp-in365b.orange.com: domain of mohamed.boucadair@orange.com does not designate 104.47.11.232 as permitted sender) identity=mailfrom; client-ip=104.47.11.232; receiver=smtp-in365b.orange.com; envelope-from="mohamed.boucadair@orange.com"; x-sender="mohamed.boucadair@orange.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 include:spfa.orange.com include:spfb.orange.com include:spfc.orange.com include:spfd.orange.com include:spfe.orange.com include:spff.orange.com include:spf6a.orange.com include:spffed-ip.orange.com include:spffed-mm.orange.com -all"
Received-SPF: Pass (smtp-in365b.orange.com: domain of postmaster@EUR02-AM0-obe.outbound.protection.outlook.com designates 104.47.11.232 as permitted sender) identity=helo; client-ip=104.47.11.232; receiver=smtp-in365b.orange.com; envelope-from="mohamed.boucadair@orange.com"; x-sender="postmaster@EUR02-AM0-obe.outbound.protection.outlook.com"; x-conformance=spf_only; x-record-type="v=spf1"; x-record-text="v=spf1 ip4:40.92.0.0/15 ip4:40.107.0.0/16 ip4:52.100.0.0/14 ip4:104.47.0.0/17 ip6:2a01:111:f400::/48 ip6:2a01:111:f403::/49 ip6:2a01:111:f403:8000::/50 ip6:2a01:111:f403:c000::/51 ip6:2a01:111:f403:f000::/52 -all"
IronPort-Data: A9a23:Deq626MwehNBQoHvrR2okMFynXyQoLVcMsEvi/4bfWQNrUpw3jwDy GYZXGqOaa2JY2ame9t3Oom09EsA75KHnN8ySgZtpSBmQkwRpJueD7x1DKtR0wB+jCHnZBg6h ynLQoCYdKjYdleF+lH3dOGJQUBUjcmgXqD7BPPPJhd/TAplTDZJoR94kobVuKYw6TSCK13L4 Y+aT/H3Ygf/gGcuazNMsspvlTs01BjMkGJB1rABTaAT1LPuvyF9JI4SI6i3M0z5TuF8dgJtb 7+epF0R1jqxEyYFUrtJoJ6iGqE5aue60Ty1t5Zjc/PKbi6uBMAF+v1T2PI0MS+7gtgS9jx74 I0lWZeYEW/FMkBQ8QgQe0EwLs1wAUFJ0OP6OCCituqO9H3hcGnKxuh+El4KbIJNr46bAUkWn RAZAB0wVEjZwsuTmPe8QOQqgdk/Js72Oo9Zomtn0TzSEfchR9bEXrnO4thbmjw3g6iiH96HP 5ZfNWUpNU2GOUYVUrsUIMpWcOOAg37/ejhVpBSforc86mTazRZZ16LkNtXYPNeNQK25m27B9 z2dpz2oWnn2MvS86RiI2XWOr9TNnD7HcbwQCZCE0qZD1Qj7Kms7U0ZMCQTTTeOCoku8Vs5fI kod/CYnq6ka+0miT927VBq9yFaAtBMGVNdKO+kz4gfLzKfIiy6fC3QBSTJpadE6uokxXzNC/ lmEg9buCXlksLSUU2m197qIo3W1Iyd9EIMZTSoNTA9A6ty7rZwp1kjLVow5S/TzicDpEzbtx TzMtDI5m7gYkc8M0eO84EzDhDWv4JPOS2bZ+zk7QEr50xoheYmDereYzlvJy/NdPJiGcgiO6 S1sd9el0MgCCpSElSqoSeoLHa206/vtDNE6qQ82d3XG32X1k0NPbbxtDCdCyFBBFOJsRNMES ErauAcU7ZoLMWawNfVze9jrUJ5syrX8H9P4UPySdsBJfpV6aA6A+mdpeFKU2Gfu1kMrlMnT2 Kt3k+78Uh726ow+l1JaotvxN5d1lkjSIkuNGvjGI+yPi+b2WZJsYe5t3KGyRu449riYhw7e7 sxSMcCHoz0GD7WkM3OIqNRPfQxURZTeOXwQg50OHgJkCls/cFzN99eNne59E2CYt/gLybuTr intMqOm4AGg2SCWeW1mlUyPmJu0Bswj8hrXzAQpPF2y3GMkb5rn56AFb/MKkUoPpYReIQpPZ 6BdIa2oW6wRIhyeomh1Rcen8ORKKk/w7SrQZHXNXdTKV8U8L+A/0oS5JleHGehnJnbfiPbSV JX5iluEGMtTFl88ZCsUAdr2p26MUbEmsLoadyP1zhN7IS0ALKACx+3NYv4LzwUkBCj5nmHf/ iPORBASqK/KvpM/98TPieactYC1HuBiH01cWW7G8bKxMiqc9W2mqWOFePjdZijTDQsY5437D di5DdmkWBHEoLqOm41mGrBkwOQ14N6HS3py0FF/BHuSB7i0Iu8IH0RqBfVyi5A=
IronPort-HdrOrdr: A9a23:pqJv+6mwHY538ZXbAdrXx6ZNozLpDfIH3DAbv31ZSRFFG/Gwvc aogfgdyFv4iCwJXmshhNCHP8C7MBbhHQkc2/hyAV54ZniEhILMFutfBOTZrgEIdxeTygaPvZ 0BT0AIY+eQMbESt6+TizWQKNo4xsKb8KenwcPT0n8Fd3APV0gK1WhE42igfHFLeA==
X-Talos-CUID: 9a23:ZHn+xmGx24M1qMnqqmI7yVdMB8cDb0bt63TCBUqlGXh2dOyaHAo=
X-Talos-MUID: 9a23:ERKtXQoFH8J8h1OAV2EezxJCFspD5IaHM0IMjKkvhcuZGBBUYx7I2Q==
X-IronPort-AV: E=Sophos;i="6.04,287,1695679200"; d="scan'208,217";a="19730190"
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=fPVvnC1TcL9bdx60hsyjyDcgGsUPn+ZyrpGXvbuDL56xcDYWhXXgi2B1Z8Me6tIQNmwYb7tN3M7yjdTuiG770VzEMVsMcf5LFGgQzGw9EllH58c+JLEzywT0YBox3PdfWqym7VAK/KRiTdqRLkzz5PkLWprZ6m8UcK0IjQ6dBKyzcrsz/hnUY6d6nZbGOsmXXs85+g7SSgXGshQ+kadZw+qHJYcHkZ4J0nPTMcycmkzzy2uj2dOuNFQj8+ASuflAa/pZeOpzeTO/lMaquSBDufdLc39HZ0N7gLd4DxlcCK4pM/x2anLuVe4zPeU+rgMWu1gZn695m16AR7bU0ro3qg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=D09tEY2DiwktN/ZRmZNuoLNTT+Gxifu085L61P7nL2o=; b=LTN5MPK71XmH3sB/UxuBe3NymnMYjB/37D8QKMfJhGAAED+IUtX6A24ixKfboVsmuYZ/rUEqc6Z8AHQRGpUksxElO7uCNBvyRsWzJHTxPqBjqS3IKT0QfAOrLwz/ARbrY43BnfOyXiV/pJPMGOnFdy5uBzK+pltpXQEVxyZJQ5Cul/9h+po6pkLIZPnSSbKnOnm+Z/jq1hKjiDhrLMuUoCtpS0vRwh3TFAZMXfp0fDrHy6Ocu/Ya2HgwEbJYBp+EgNiDgLjugDY3Tp+v4Zcu5ik9YhjBPr3QUTABK0BNzg3Dz6R2GvyByGDz4Ad7cRGG5XC48nax2MJev+M6vxhWwQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=orange.com; dmarc=pass action=none header.from=orange.com; dkim=pass header.d=orange.com; arc=none
To: Mahesh Jethanandani <mjethanandani@gmail.com>, Lou Berger <lberger@labn.net>
CC: NETMOD Group <netmod@ietf.org>, NetMod WG Chairs <netmod-chairs@ietf.org>
Thread-Topic: [netmod] WG Last Call: draft-ietf-netmod-acl-extensions-03
Thread-Index: AQHaJ8e5S8bgDaNJfkSRsm+Ok6BHnLCwQjZw
Date: Tue, 19 Dec 2023 08:09:30 +0000
Message-ID: <DU2PR02MB1016066216B97872FB35981C68897A@DU2PR02MB10160.eurprd02.prod.outlook.com>
References: <5b6d8915-6c03-4b29-a150-b7611de75d3c@labn.net> <28F35BAC-6CEB-43FB-AF64-E1007F3FAA9C@gmail.com>
In-Reply-To: <28F35BAC-6CEB-43FB-AF64-E1007F3FAA9C@gmail.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f47c794b-e3ab-43f0-9e0f-29fc3e503192_Enabled=true;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DU2PR02MB10160:EE_|VI1PR02MB10224:EE_
x-ms-office365-filtering-correlation-id: 5220dedc-c50c-4ffd-eec4-08dc0069d3d3
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DU2PR02MB10160.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(396003)(366004)(376002)(136003)(39860400002)(346002)(230922051799003)(186009)(451199024)(1800799012)(64100799003)(66899024)(86362001)(110136005)(4326008)(8936002)(8676002)(316002)(52536014)(66446008)(64756008)(966005)(478600001)(66476007)(54906003)(76116006)(66946007)(66556008)(41300700001)(4001150100001)(2906002)(38070700009)(5660300002)(33656002)(122000001)(38100700002)(166002)(9686003)(26005)(71200400001)(7696005)(53546011)(6506007)(83380400001)(66574015)(55016003); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: hYhN2c1j//GeuhGKVh+Ly/jscfhD0BAOLxAyrvGBsflgEkN+f3burjtYpsRr9z2nnrofpycrbxodUgYApPLXse94LiuVy+Kh60gWOhrx/+T5j0PGnolrUbxy2CZ4bkCcaz1Ym8DEZKYq6V/c4kX7bkrOE1SlMnV374dZWX3Pxms5ReD8HGACE6+RGmUv4A8ZakjXXgxZhhenxtD8SxO0GLeCEzVX1sQjUJy5SO+nkgQdi/Gix8pmAkp34oq6q+aL5mZNI4dC8Dxcu59/4P9OcHGGA3Z+1NAYWo2QCtqOOM+ReVCTiXgSiQ3mpArBHLCQxTVU1LlAqZ1CWrcHseztRDzL9XGHRNsXxDuYlvQ9hddx5SGqu84jFtUa9RIT3Gx+3AzDDGPXPI0TiZNlyksfiBo5oBj4rKyWozZQyY/hhdRJr5iGUsZvWvIrr8wFR8XWlO3G+831JAlR2P3qQpoB9oWYcI0tWU/k+QzLpY55QKZClmGiV1qHGUtK7om34Ahg0JMgAD1jd960yyqv3Ga2HTk2F5fG4GEXA4ztKnXZI1eNy5nuS7eBAJIo1ysGv85iNO7elf81zcPV/7v36qni80NZpcLAqxN2eXxqy9C/jkaIsyV49mHgpr8FbWrGq4PEoc02EJFIiQ5bkTj1tbIPM9XnGqa6UFP9dHvFNCiBALGIe5jDWkGMsXM3yyPBxfW72TTmWeROLflvUrMA/QqQZ3IC0BxmcCNgpuh4w3qiXBpGsnphTdUK0Ow5yJuVxTyigIAhksF+6zNB8kEIcaO3OL1k0UllzgTbJt3x4D/GkoL2mJRWuhCGiDBLT31BatUiI55QPq6GojFt1HSOB1ogvut4l3kJ7yJcFnMn517UNIj55tkpMEc8DRZRWj9uhvm1p9j6zBaYwxvQ1JHKP0bn8ymbr9o/q+HnkEZm2qISiz8vAjGH4PrC9/08TYhjh/NgN2MewtGd/ouHp37hI6QU09zjBN2K6/NrLoDvgQIOj4FOqwRYfX2Ncf2/lUAkHEsxVJJwXcLn1rZMPs4tdJNL9Tni6cc2WSuruD6Vtmt6JHfeB0E/4GQAz0re79kkAP2B7dmpgXo43Zn5mLYk0NrEBCRRF0Q6erhBiybvYBBCesUdEto7JudorhQwmHVOFsnZETyDB0acWTvqeE/KcduVVpDh4/+ES23HKhjNEJHgOGxf0RWg7ufsnZbZuhZHjnn3Kz1+68uOI21xApt7tEuI/qLEnPa5HSuKjRQsY+Xs7L8GiS5UhSTd2DT+p3gF7Yy6MqL9z4BJRRv4tvGGuW5+1GrOT9Cyf0+qiNuKnH/CpJF11wzicnAMNdLaB/8+d57TjsSJsmA8lcZ6bMVuQ45m80r7g0DHgZ2rsmeOtKGysqnlFtrRcZO8v/c1wL77EHF2MnFo0kv9KCkkJzxKIB5bp91ALG/FWXMn5+dNL/szfGeWV93/iMZvKzxekSDuHSE4eXgsyjEwkEURrXbu56Pu7O3+FSTqFReADdthRAGmLz1nwgCw8PPv/Bv4s6u2MJWAn+KaX0dC5zwXc4Y2haSAgMf9kMzNAIb3ue6T8A5O+NLDSR7fYyTtiQh2fcvNR3XUYLvSs2x5DJh9jSdQbjdEWg==
Content-Type: multipart/alternative; boundary="_000_DU2PR02MB1016066216B97872FB35981C68897ADU2PR02MB10160eu_"
MIME-Version: 1.0
X-OriginatorOrg: orange.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DU2PR02MB10160.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 5220dedc-c50c-4ffd-eec4-08dc0069d3d3
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 Dec 2023 08:09:30.4978 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 90c7a20a-f34b-40bf-bc48-b9253b6f5d20
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: zWRWs6eOTHNbPAJmYbu+L+GIRfenCeA3XzpZxXvSAgYNaqgMG8mEN5YPW+gZ5IWQGVGYih+m6uT2gUF9F3BU6UgOTMz/gjsSd9oZncRFw+4=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR02MB10224
X-TM-AS-ERS: 10.106.160.161-127.5.254.253
X-TM-AS-SMTP: 1.0 c210cC1vdXQzNjUub3JhbmdlLmNvbQ== bW9oYW1lZC5ib3VjYWRhaXJAb 3JhbmdlLmNvbQ==
X-TMASE-Version: DDEI-5.1-9.0.1002-28066.006
X-TMASE-Result: 10--26.942900-10.000000
X-TMASE-MatchedRID: vJMTL+QvMTfuYusHgJkgytRncTq+y+h9DSG7dmYh9bq3dgZRwCIsxX2F lZ+s4BWY5N88eFlUbyODa1u61e6EIpOJz/rUIvq2bzIDSKRR4Wh6km1x+yMYzbJsTNtWQTpHXNb 95PcCHgpSs29WaOM5x4d1E9CxClKsCKFDk1kJexIcsx3IH4sq3H7zXMne3nXummP5c2pTo3u1qz GlSaHh7lhIV803h1PmfnzmcpBzOrvwlvzzUUaf2XhfhfS0/ZESuSIn8GC9fqvsQTsZHD9An7enr 9gWkU6q/R0xUUYUUdOzVFZ6osYjDrnHu4BcYSmtyJTy9ZwCrCO8GLW9IO2MLRH6cbAZmiKWbSL9 AN4Ujlul4FU9jS8so/aafD0QKygcCKKJ1/F/gpkxXH/dlhvLv+dvpOi5SyiDbxkibbmxp+1qw3y aehMGfg2sGKCefLZF+V02vElt/bV7TXnCjI8t9pQ7eT0DII9Nmbc4hVJ/g/k1iTpBXgMn3PrTlH hkK+8wlEFre7kn4QwSZ93ggmRwOTXKFtsDtZ7T+2Il3XoIKsktferJ/d7Ab0nm5PJXpywpZlWqG YxUja5GGVzLUTsJxu3NIrNSYNRXjapL/ZPBBRxGW+co5TI7BbTFwdcPTF/w/L4h+S8DcyySgQ9/ 1HCvXHxDtM/H8r99n5Sxp6pgN80rCLswi3NpjVZWFBQa1+NfJyF8BoMrCNDv/72zC4hJFVhUDZO PhwqI54mbosKUuYc5jS4V09dQzvx0ykrbAxjCXef5t6q8Rcz6E5S2DXacNbPvrgT1X+IUXVsEWV qYqahmYaQ4XR/HzG/M6LH3OjWrYrc32n84WHrqtOCMCMzOYZsoi2XrUn/JJ51KgEwAGdm6rRx26 7m9tpWD5DDAqPadHRcIXG0b6Khr34lUqic7t1+j/RoZfoEMwt5o33NI92YD/dHyT/Xh7Q==
X-TMASE-SNAP-Result: 1.821001.0001-0-1-22:0,33:0,34:0-0
X-TMASE-INERTIA: 0-0;;;;
X-TMASE-XGENCLOUD: 2a007cb0-2e9f-45fd-ab7c-cd2fa622c703-0-0-200-0
Archived-At: <https://mailarchive.ietf.org/arch/msg/netmod/FeyjBcfXwXx_6Wk0tpN-ARUbGKg>
Subject: Re: [netmod] WG Last Call: draft-ietf-netmod-acl-extensions-03
X-BeenThere: netmod@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: NETMOD WG list <netmod.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netmod>, <mailto:netmod-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netmod/>
List-Post: <mailto:netmod@ietf.org>
List-Help: <mailto:netmod-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netmod>, <mailto:netmod-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 19 Dec 2023 08:14:27 -0000

Hi Mahesh, all,

Thank you for the review and comments. We just posed draft-ietf-netmod-acl-extensions-04.

Please see more context inline.

Cheers,
Med

De : netmod <netmod-bounces@ietf.org> De la part de Mahesh Jethanandani
Envoyé : mardi 5 décembre 2023 23:09
À : Lou Berger <lberger@labn.net>
Cc : NETMOD Group <netmod@ietf.org>; NetMod WG Chairs <netmod-chairs@ietf.org>
Objet : Re: [netmod] WG Last Call: draft-ietf-netmod-acl-extensions-03

Hi,

I do support this work, as it is much needed, and would like to see it progress. However, I do believe that the document needs to undergo a revision to qualify for LC. Some of the comments are editorial or minor, and can be addressed easily, but others are not. They should all be addressed for the WG to call the document ready.

- The Security Considerations section has both the read/write nodes and the read-only nodes as empty (or marked as TBC, which I imagine stands for To Be Completed). This needs to be filled out, or if no nodes are worth any security considerations, it should be stated so, and why.

[Med] ACK. We don't repeat what is already in 8519 but focus on key additions in the spec: https://github.com/boucadair/enhanced-acl-netmod/pull/65/files

- Isn't the YANG model normative portion of the document? Isn't what this document all about? Why is it then in the Appendix?

[Med] We are using a script to generate the IANA modules + we are actually following this part from the 8407bis:

   It is RECOMMENDED to include the URL from where to retrieve the
   recent version of the module.  When a script is used, the Internet-
   Draft that defines an IANA-maintained module SHOULD include an
   appendix with the initial full version of the module.  Including such
   an appendix in pre-RFC versions is meant to assess the correctness of
   the outcome of the supplied script.  The authors MUST include a note
   to the RFC Editor requesting that the appendix be removed before
   publication as RFC and that RFC IIII is replaced with the RFC number
   that is assigned to the document.  Initial versions of IANA-
   maintained modules that are published in RFCs may be misused despite
   the appropriate language to refer to the IANA registry to retrieve
   the up-to-date module.

- Why is the Section titled "Initial Version of the The ICMPv4 Types IANA-Maintained Module", when the model in question is "iana-icmpv6-types@2020-09-25.yang<mailto:iana-icmpv6-types@2020-09-25.yang>"?
[Med] This was a typo. Fixed.

- 'defined-sets' and 'aliases' have been defined in a the separate model 'ietf-acl-enh'. Are these sets and aliases defined to be used outside of ACL? If that is the case then having them outside the 'ietf-access-control-list' model makes sense. Otherwise, almost everything in the 'ietf-acl-enh' is an augmentation of the model defined in RFC 8519, as stated in the Introduction of the document

[Med] These are defined to be consumed for ACL policies.


"The YANG module in this document is solely based on augmentations to the ACL YANG module defined in [RFC8519]."

[Med] The intent was to highlight that we are not using a bis approach. Tweaked the paragraph that includes that text for better clarity.

If that is the case I see no reason why those containers should not be augmentations into the same model, as in

augment "/acl" {
  container defined-sets {
  ....
  }

  container aliases {
     ...
  }
}


- I just pulled down the latest version (-03) of the draft, and ran into this error.

$ pyang ietf-acl-enh@2022-10-24.yang<mailto:ietf-acl-enh@2022-10-24.yang>
iana-icmpv6-types@2020-09-25.yang<mailto:iana-icmpv6-types@2020-09-25.yang>:1: error: unexpected latest revision "2023-04-28" in iana-icmpv6-types@2020-09-25.yang<mailto:iana-icmpv6-types@2020-09-25.yang>, should be "2020-09-25".

[Med] Fixed. Thanks.

- Section 3.4. TCP Flags Handling. The document states that.

"Clients that support both 'flags-bitmask' and 'flags' matching fields MUST NOT set these fields in the same request.".

Can the model have a must statement to prevent this from being configured inadvertently?

[Med] We don't see how to do that with a must statement, hence the normative language in the narrative text.

Same for Section 3.5 Fragments Handling
[Med] Same answer :-)

- There should be clear direction to the RFC Editor on what should be done with revision dates. The same is true for other placeholder text. For example, what is the RFC Editor to do with text "RFC XXXX"?
[Med] Done: https://github.com/boucadair/enhanced-acl-netmod/pull/59/files

- References in the YANG model should be expanded to include the title of the RFC.

[Med] We are echoing references as listed in an IANA registry, so we do not have control over that reference.

- Examples are always good. Not only can they be used to validate the model, but users get to understand how it can be used. See other models such as BGP, TCP, BFD on how an example can be added.

[Med] We do already have many in the core document. Will consider adding more if needed.

- How is this a reference?

        reference

          "- Bill Simpson <mailto:Bill.Simpson&um.cc.umich.edu<http://um.cc.umich.edu/>>

[Med] We are echoing a reference as cited in an IANA registry, so we do not have control over that reference.

Thanks.
[Med] Thanks for the review. Much appreciated.



On Dec 4, 2023, at 3:00 PM, Lou Berger <lberger@labn.net<mailto:lberger@labn.net>> wrote:

All,

This starts working group last call on
https://datatracker.ietf.org/doc/draft-ietf-netmod-acl-extensions/

The working group last call ends on December 18th (any TZ).
Please send your comments to the working group mailing list.

Positive comments, e.g., "I've reviewed this document
and believe it is ready for publication", are welcome!
This is useful and important, even from authors.

Thank you,
Lou (Co-Chair & doc Shepherd)

_______________________________________________
netmod mailing list
netmod@ietf.org<mailto:netmod@ietf.org>
https://www.ietf.org/mailman/listinfo/netmod


Mahesh Jethanandani
mjethanandani@gmail.com<mailto:mjethanandani@gmail.com>





____________________________________________________________________________________________________________
Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.