Re: [nvo3] Secdir last call review of draft-ietf-nvo3-evpn-applicability-04

"Rabadan, Jorge (Nokia - US/Sunnyvale)" <jorge.rabadan@nokia.com> Thu, 01 September 2022 14:11 UTC

Return-Path: <jorge.rabadan@nokia.com>
X-Original-To: nvo3@ietfa.amsl.com
Delivered-To: nvo3@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 25549C1524AE; Thu, 1 Sep 2022 07:11:44 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.479
X-Spam-Level:
X-Spam-Status: No, score=-7.479 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.571, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=nokia.onmicrosoft.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8mJXWKRDQug3; Thu, 1 Sep 2022 07:11:42 -0700 (PDT)
Received: from NAM11-CO1-obe.outbound.protection.outlook.com (mail-co1nam11on2110.outbound.protection.outlook.com [40.107.220.110]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2AB7DC1526E3; Thu, 1 Sep 2022 07:11:10 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=jsPxp0NJsHCCk2Ri/bQgvWb/PB69nIt4LgKkjnZFc4ZoeoSfvJpRTgKwV/d69wNbDJDrsqNCgjrjnnyrVI+NFSTLihJ3GpQeMUwc+4+uwmBQnrU2ZznPlMZnugYFwIFhgGfpqMisOabmEY9njI3+WTA9X2BM7BjQ9YY18m6EGa70Fhn2pBqZoaAI5vYBNzTWj/KUoKvvh7s47NM9ruxQEcccpB4xIqOJxvy9Ks9bbms6e4048fBRCNHxVgo1ZIDWCzVaFgFcl/PF98aJLZQmCU8y+Q+XsuFh6cv0DwuK1wUZyjzQS8xB1ebuo98av3SmBKwNmMDHUO0pkIztO0ZHLQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=BAtvtrLPiynLuo0Bh8rqSoYonKgHw5k31suWEJFiUpg=; b=nbSOB1a2TlkXhtqcRwLszyK4sVwvuapQobGQVAwy2KLJ6MYVTmYyN1wNceRvT4CK2mrwI4d+KfTBS9pM7At7EBOZue3xEvs27U9b0HOGzOubdvXyivjoeeUI+xmYB39uNxyPS+6sI762AXnvaB+NQsUbSO37Qx7S2Dd1/VGJbXWNEwmHVXci8dfYRH2HJZGaMcZiT0iGKZA+yA+EQwRYujxe56Gck48NMNgGPvaSW2jottfHWAWQqDaGEYMBEVO+QTKzdiAKx8EF6vCBZH9tU7Sk/0hdRsM+GbRAKibceiOU2qzifRCgRtLO68sWPlQCkOHHJfAYGIBVbIbhU1Zt5A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=nokia.com; dmarc=pass action=none header.from=nokia.com; dkim=pass header.d=nokia.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nokia.onmicrosoft.com; s=selector1-nokia-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=BAtvtrLPiynLuo0Bh8rqSoYonKgHw5k31suWEJFiUpg=; b=Kd6vkwc9JTPjuPhXWl+1jtUD/knk7qTnSe79LAfwe/KLYQffpDGZx7RbScaecvDF5FUGhc75qdHqPij0JrsX/V6kdWHPL5C5g+8MOcuZeiKZ/pO5aIi+VNRHe1WlYGHefw5gpwzKajcBu+PHVIFkFqC9AkdIyAB7WzZ+OVt9r3w=
Received: from BY3PR08MB7060.namprd08.prod.outlook.com (2603:10b6:a03:36d::19) by MW4PR08MB8346.namprd08.prod.outlook.com (2603:10b6:303:1b5::16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5566.21; Thu, 1 Sep 2022 14:11:03 +0000
Received: from BY3PR08MB7060.namprd08.prod.outlook.com ([fe80::3c57:d4d4:3c2f:354f]) by BY3PR08MB7060.namprd08.prod.outlook.com ([fe80::3c57:d4d4:3c2f:354f%4]) with mapi id 15.20.5588.010; Thu, 1 Sep 2022 14:11:03 +0000
From: "Rabadan, Jorge (Nokia - US/Sunnyvale)" <jorge.rabadan@nokia.com>
To: Kyle Rose <krose@krose.org>, "secdir@ietf.org" <secdir@ietf.org>
CC: "draft-ietf-nvo3-evpn-applicability.all@ietf.org" <draft-ietf-nvo3-evpn-applicability.all@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>, "nvo3@ietf.org" <nvo3@ietf.org>
Thread-Topic: Secdir last call review of draft-ietf-nvo3-evpn-applicability-04
Thread-Index: AQHYlY6ybjbX9EoEUEiYJFyUnvaAwK24kwl8
Date: Thu, 01 Sep 2022 14:11:03 +0000
Message-ID: <BY3PR08MB70602D9071D4FAB44FB5B6A1F76F9@BY3PR08MB7060.namprd08.prod.outlook.com>
References: <165758930601.5155.8066530853145266053@ietfa.amsl.com>
In-Reply-To: <165758930601.5155.8066530853145266053@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=nokia.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: fd004f2c-e5f2-416a-62b6-08da8c23ce36
x-ms-traffictypediagnostic: MW4PR08MB8346:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 5ld0D5JwQBzdxCupsKUDq0MHwmxIB+olaQuJbDKr/YVQM8Z879A7Zm+KeKWiwf7VH2NfVU5+Zkm+Sik6liEigtC8LNjqUb2CRpiMbnOtBV0FGCIaJGz0d8GVbyaT+GBO683bZMSfol+KDOWnnMEn2MgbruzNieg0L6XCkdU5RRIXCKm7tv+Y0XR0D/V7257RFU+r82MwaNfnWiP3XNBeYtYs2iMO2PSb13F/4MkWtFU1lL7F6qBrqUhb0kuLxxbgwO2f5g551Nh3AkyPqF/1+j28SrNViI/zkRJo+0CmFr/yfPxrRCTXRuh/NxFirKYYFuslpG7Ge9QX+4ciwkS0Yb+vwGL4mL5xZ2OvqiA3tsmi8FwKSDGNkupZ467t2h4sCrPCr+/dE6SHMqHjgMjMzftGcPnJpLHsvyOwdXijD4DkN3NzF8gTgch90nehr5hK8Kg7+hqup6f5Tbt/7ip9tehCecviNhA6RzfYvxuuIPOFXRNlaiDatVj1AIskQvGhID1s0+XCT4vl6BBwGJHNZBEtvm59fjZfwuvRmnRcaxo5O84jdUtovnSoN9mroX4+TEPmHNXm/GFSEWhAtfVdjJUVB+CP2+b9klIt9q3+TxasLzc5qejKqlEEmntY2EaQu4qACxWyvQPsxrkQtdnDyvl+icnc67PiGeqdyjHYCkc8UFA4F+YB8mjE1SePZeL1zomOADLybaAsLQK3yTpgwfNg7d8hKWiDHJRJ859PHIuDasPr3VgBchJMiNn3Euhr3PbW8FlvXcp8AzWcFCZNXw==
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BY3PR08MB7060.namprd08.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(396003)(136003)(366004)(346002)(376002)(39860400002)(26005)(7696005)(71200400001)(41300700001)(478600001)(186003)(83380400001)(53546011)(9686003)(6506007)(9326002)(52536014)(8936002)(2906002)(5660300002)(54906003)(110136005)(55016003)(316002)(76116006)(66556008)(66446008)(4326008)(66476007)(66946007)(8676002)(38100700002)(122000001)(38070700005)(91956017)(64756008)(82960400001)(33656002)(86362001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_BY3PR08MB70602D9071D4FAB44FB5B6A1F76F9BY3PR08MB7060namp_"
MIME-Version: 1.0
X-OriginatorOrg: nokia.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BY3PR08MB7060.namprd08.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: fd004f2c-e5f2-416a-62b6-08da8c23ce36
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 Sep 2022 14:11:03.7136 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5d471751-9675-428d-917b-70f44f9630b0
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: B7lIGNFTGmxO2oMCet8PaNB1/ppTZBDK7tGsw4WWVIUpiHBNTkSLKty4SyAnqKonb1+hZ70N3d5B8gJIiY3R3Q==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MW4PR08MB8346
Archived-At: <https://mailarchive.ietf.org/arch/msg/nvo3/-2wp9A1FlH4Dyz2FiAu-8ga4CHw>
Subject: Re: [nvo3] Secdir last call review of draft-ietf-nvo3-evpn-applicability-04
X-BeenThere: nvo3@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Network Virtualization Overlays \(NVO3\) Working Group" <nvo3.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/nvo3>, <mailto:nvo3-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/nvo3/>
List-Post: <mailto:nvo3@ietf.org>
List-Help: <mailto:nvo3-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/nvo3>, <mailto:nvo3-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 01 Sep 2022 14:11:44 -0000

Hi Kyle,

Thanks for reviewing.
We added EVI to the glossary and tried to reduce the number of acronyms in version 05.
Hope it reads better now.

Thank you.
Jorge

From: Kyle Rose via Datatracker <noreply@ietf.org>
Date: Monday, July 11, 2022 at 6:28 PM
To: secdir@ietf.org <secdir@ietf.org>
Cc: draft-ietf-nvo3-evpn-applicability.all@ietf.org <draft-ietf-nvo3-evpn-applicability.all@ietf.org>, last-call@ietf.org <last-call@ietf.org>, nvo3@ietf.org <nvo3@ietf.org>
Subject: Secdir last call review of draft-ietf-nvo3-evpn-applicability-04
Reviewer: Kyle Rose
Review result: Has Nits

I have reviewed this document as part of the security directorate's ongoing
effort to review all IETF documents being processed by the IESG.  These
comments were written primarily for the benefit of the security area directors.
 Document editors and WG chairs should treat these comments just like any other
last call comments.

This document is Ready with Nits.

There are no novel security issues presented by this work. Some may present
themselves in follow-up documents (e.g., in draft-sajassi-bess-secure-evpn),
but this document doesn't itself describe anything new that would require
security considerations beyond those of the underlying protocols and
infrastructure.

Nits:

* Add "EVI" to the glossary. But also...

* I'll amplify Scott Bradner's observation that this document would be a lot
easier to read without every other word being an abbreviation.