Re: [netmod] YANG module security considerations template - TLS reference
"Acee Lindem (acee)" <acee@cisco.com> Mon, 01 October 2018 14:25 UTC
Return-Path: <acee@cisco.com>
X-Original-To: netmod@ietfa.amsl.com
Delivered-To: netmod@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9E24C130E72; Mon, 1 Oct 2018 07:25:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.956
X-Spam-Level:
X-Spam-Status: No, score=-14.956 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.456, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TtrePoXqL2WQ; Mon, 1 Oct 2018 07:25:27 -0700 (PDT)
Received: from alln-iport-2.cisco.com (alln-iport-2.cisco.com [173.37.142.89]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 68DA7130DFA; Mon, 1 Oct 2018 07:25:27 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=1380; q=dns/txt; s=iport; t=1538403927; x=1539613527; h=from:to:subject:date:message-id:references:in-reply-to: content-id:content-transfer-encoding:mime-version; bh=Yj2yxNN2ONQodvkSXHn3UfKQV+14l1lyaOjM4ADD2uI=; b=M61fEQ+8tVnx1hw746s9vhYrjeHabYTs3Ba1Rk7FOrSuVcptyyGdIAxq N7xzVHmclQuV/Ny48/u/3iP818sr9zh7pU+kcXBKeKTzpOKY7oC94bENJ UAkKa+P2Sz+4BQFCkn0LoB16hQck8JT7SCJAWoEIihMr5koVZsfc2PnPn 8=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0A1AAABLbJb/4wNJK1bGgEBAQEBAgEBAQEHAgEBAQGBUYIOZn8oCoNqiBWMGYVKkx2BegsYC4QDRgIXg3khNBgBAwEBAgEBAm0cDIU5AgEDAQEhETobAgEIDgwCJgICAiULFRACBAESgyEBggEPpDWBLooFBYELiXcXggCBEicfgkyDGwEBgWGDATGCJgKdKQkChkOJbxeBR44IgliGIYMTiH4CERSBJR04gVVwFTsqAYJBixaFPm8Mi1uBHwEB
X-IronPort-AV: E=Sophos;i="5.54,327,1534809600"; d="scan'208";a="179292148"
Received: from alln-core-7.cisco.com ([173.36.13.140]) by alln-iport-2.cisco.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 01 Oct 2018 14:25:25 +0000
Received: from XCH-RTP-011.cisco.com (xch-rtp-011.cisco.com [64.101.220.151]) by alln-core-7.cisco.com (8.15.2/8.15.2) with ESMTPS id w91EPPls003933 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Mon, 1 Oct 2018 14:25:26 GMT
Received: from xch-rtp-015.cisco.com (64.101.220.155) by XCH-RTP-011.cisco.com (64.101.220.151) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Mon, 1 Oct 2018 10:25:24 -0400
Received: from xch-rtp-015.cisco.com ([64.101.220.155]) by XCH-RTP-015.cisco.com ([64.101.220.155]) with mapi id 15.00.1395.000; Mon, 1 Oct 2018 10:25:24 -0400
From: "Acee Lindem (acee)" <acee@cisco.com>
To: Martin Bjorklund <mbj@tail-f.com>, "netmod-chairs@ietf.org" <netmod-chairs@ietf.org>, "netmod-ads@ietf.org" <netmod-ads@ietf.org>, "netmod@ietf.org" <netmod@ietf.org>
Thread-Topic: [netmod] YANG module security considerations template - TLS reference
Thread-Index: AQHUWVcibcIX1/iYHk+KxriwIydA+qUKcn+A
Date: Mon, 01 Oct 2018 14:25:24 +0000
Message-ID: <43AB5D62-FCB5-4B84-841E-30F14235A147@cisco.com>
References: <20181001.091910.1896030373672380031.mbj@tail-f.com>
In-Reply-To: <20181001.091910.1896030373672380031.mbj@tail-f.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.24.9.101]
Content-Type: text/plain; charset="utf-8"
Content-ID: <F67F07C07717B547ADF0DD0686F03D46@emea.cisco.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-Outbound-SMTP-Client: 64.101.220.151, xch-rtp-011.cisco.com
X-Outbound-Node: alln-core-7.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/netmod/bS9ZkHVihmfB8PYA3cT61DDCzKM>
Subject: Re: [netmod] YANG module security considerations template - TLS reference
X-BeenThere: netmod@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: NETMOD WG list <netmod.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netmod>, <mailto:netmod-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netmod/>
List-Post: <mailto:netmod@ietf.org>
List-Help: <mailto:netmod-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netmod>, <mailto:netmod-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 01 Oct 2018 14:25:37 -0000
Agreed - although I'm not sure who has control over the template either. For drafts that are in-progress, IDNITs will flag this obsolete reference and, for at least one of the drafts I'm an editor, I've already made the update. Thanks, Acee On 10/1/18, 3:19 AM, "netmod on behalf of Martin Bjorklund" <netmod-bounces@ietf.org on behalf of mbj@tail-f.com> wrote: Hi, In their review of draft-ietf-netconf-nmda-restconf, the IESG suggested we update the reference to TLS from RFC 5246 to RFC 8446 (which obsoletes 5246). This update needs to be done to the template available at https://trac.ietf.org/trac/ops/wiki/yang-security-guidelines (it is not quite clear who is repsonsible for this template; maybe that should be clarified on the page) /martin _______________________________________________ netmod mailing list netmod@ietf.org https://www.ietf.org/mailman/listinfo/netmod
- [netmod] YANG module security considerations temp… Martin Bjorklund
- Re: [netmod] YANG module security considerations … Acee Lindem (acee)
- Re: [netmod] YANG module security considerations … Kent Watsen
- Re: [netmod] YANG module security considerations … Lou Berger
- Re: [netmod] YANG module security considerations … Acee Lindem (acee)