[OPS-DIR]Re: draft-ietf-cdni-edge-control-metadata-11 ietf last call Opsdir review

ALFONSO DE SILONIZ SANDINO <alfonsosiloniz@gmail.com> Mon, 27 April 2026 07:26 UTC

Return-Path: <alfonsosiloniz@gmail.com>
X-Original-To: ops-dir@mail2.ietf.org
Delivered-To: ops-dir@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 1E7FBE3BF964 for <ops-dir@mail2.ietf.org>; Mon, 27 Apr 2026 00:26:38 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1777274798; bh=fe4bOLuUIK0OZH+1n1J2FyiDRTmWEDENmEmnr3tgpY4=; h=References:In-Reply-To:From:Date:Subject:To:Cc; b=JYgzTuWxcwpf+POKgM3g6yVVMx9TAf5O2WSTdgV60wK103R2k3APacXKUJmmAZjsd 3Gp7J/HUGaE4dzK+Ri9S9h91JpNvn6NkprySTSo+Q6muqhuysztLlP1MbkGHGs70/z reClovuuzu7r/24YBj/fBfXuvaJB6fl4gUNbBLlE=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id jAwFYJZyw6Bo for <ops-dir@mail2.ietf.org>; Mon, 27 Apr 2026 00:26:37 -0700 (PDT)
Received: from mail-ed1-x536.google.com (mail-ed1-x536.google.com [IPv6:2a00:1450:4864:20::536]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 1F191E3BF952 for <ops-dir@ietf.org>; Mon, 27 Apr 2026 00:26:37 -0700 (PDT)
Received: by mail-ed1-x536.google.com with SMTP id 4fb4d7f45d1cf-6634bb959a2so13269144a12.1 for <ops-dir@ietf.org>; Mon, 27 Apr 2026 00:26:37 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1777274790; cv=none; d=google.com; s=arc-20240605; b=bBpFeGOmhQNamfJtt/F1GJ36ezVW7q5ulKB/mnIgjy7korOdsXxH2QIaKqPnQEBwob PMdLZAneBC562vo9vo/eD30Zrl6T5LDQrZRkcdS1L5+7yfEGPLcEmQvjJSH2GYZKBwHO 8qqmKKZYE5zsJ06BVPRrjkVAbBksIbC5ATZBHl+HrElUdwBaBGcwTv/ploVAjWK6CSbj tJN5JWRcUqnMW9eEIUZwesCMbnEeVtBWFlvIvr0v0fOgtCzYLDqgUK7WobWwPyR2olgy Yuj6MJcXzsLjnML/mdza1xUIYR+cDU8TU/DbpEqsYFoyxvs6A5yH6Ku0z8vTh4zku2kR Uktw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:dkim-signature; bh=d9Y095yLoKl2mCa36zWZCKtiZmhfErDkT6DmAd2AVqc=; fh=iKE8sIKNZeLed81EQtId+xFpkWVXe1rR03zAX9O6sQ4=; b=BYF7Jx0FfjN5Xr5/9mYGxF+Z/b4hB6GrYJvww/t0lHUld/3rgG+kNkdUWQ8gmGXSjw GTiO4f0vvzJdtCAHbvPfan4UgEgZEMVeRBbcSV3YGRaFfbmlIe0CQa4zDzDz0XcNQnzQ o1RWsCyfh+yqXi/TYoDiELwrtJV9T7eMAvOMis+zKZ0FkMOwttQufFSIGDZAdhKaO60R wJxCIwueRYTQwInkVXb/lT6GtG2BKkzTc7GFDTNb8nhKVkrrSBgoalSySppfEN6s37kW ArIAhm+CC2or5qnItrcU2wpbqC11VGBSnU4rAq5VkRGlSzRcraHR6bUuy4h4U0AeuiGS vezg==; darn=ietf.org
ARC-Authentication-Results: i=1; mx.google.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20251104; t=1777274790; x=1777879590; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=d9Y095yLoKl2mCa36zWZCKtiZmhfErDkT6DmAd2AVqc=; b=P8goKB+xY3bR+ARTllFLF5P8H7di9vS2OwaohfbKVLpBqQkH1nC88z4PH3lHZNegkS Q4Yr8/nXz3lanFQsYeaLhgBNGbZ1aFCEX1gwryt7W6uHj6SnfG/mwrSRae8I9bFbEf5Z uzMHPBZ3ZRWvagkPajGqPPXBuEx+YMRqLJ4TsoUhgCTkWVppW637tRbGwWt6IseqRcQ/ +/VMXVBPkbpVGGxZ7513dscWqZZAtEhaY9uHwY/RwLZfZZtN4m+sih0dPxZd/kuJOaDo vThuS1V0LxcVaVj+AH13FRX7O/iAO24USqE64049MAD98Rh03qdbzewXIM0lg8UG+6LP X+tQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1777274790; x=1777879590; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-gg:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=d9Y095yLoKl2mCa36zWZCKtiZmhfErDkT6DmAd2AVqc=; b=FLUxSeeXj+ijkSGGFonw0ybRsjuWs5ARhvnlgOm80h7LF/VtiVy0XQVqjcEBKWsj5m MJ+Q0EyeCMw8ePd1luLgV7RUZvVFcce0KCN3vEzbW6EhbzEdO783u+njC8sex5f7AnWz rdn43ta7L6zZIf/7hEfXRYtjT+EyPOfj97a+aDRp3TP9yAdZbWzrCQw5gRzSPnur/9oA 3tzHTt4r44WoOuUWg6svbXJjpID/DRrhzc4PvqrTemAxl/dXJ6xFBn86SBLdlttS+rZD x8eOK7o8D31q8Jk5YcrSaP9a1++EjLL2Ey2LVf+MLjmXgcEWdTRf4b0m7BV7xGNP4T6k upxQ==
X-Forwarded-Encrypted: i=1; AFNElJ/hrIh2SVELTy0Uz1rYBVwTlATFNjYtRzw65XBhUKR6nxnN/sGvaC7DahoB6sU98QtFfTsxfZQD@ietf.org
X-Gm-Message-State: AOJu0YykKX7ZsHRcF6QszAYCQZ2TyK0OhIVqKVTMT/5QAkbIeBbYAAuR F0lzAFngAmi7HS1+1PUd7MCznsMphQEPFo1M8/rLW5GpGKwznQ4SMkakDTGyMUMgI1xAxt+N3Qo fFWbyBoUgce8sjB0V2x1u6QgEMnyfZJy/KUYF
X-Gm-Gg: AeBDietjX4jX/9PSHDc2NTQxDEpupKkGSmeKTC3hTVc3+IcbtZ0akSY3DtgXPiTQuic 2H/g7fDWhKwHvWuTqkG4xY5pjUniZCRlqsJ8wQJBRW9rlEkworHKM8FJSywXPWcHgoBoarhFNst 0Jr3o0dCyvSdmeO/oCKDlwuQq5yBWvaCaNqbmr1NTqUFJNK3AtYtaACMqS8fARF9XyStEik2/tb /a3iTShM2UHFQK8qt+Ke/c4vVpWuw5rXpJyyUB/+ntgk35iji4SEyQzHvd4zH3pEDPN+45IdtmE 4AsylHXQ6zEmtHpOp7DrNHnPl8syr3L2kg==
X-Received: by 2002:a05:6402:28c4:b0:670:8b30:a897 with SMTP id 4fb4d7f45d1cf-672bfd82110mr17207151a12.1.1777274789562; Mon, 27 Apr 2026 00:26:29 -0700 (PDT)
MIME-Version: 1.0
References: <177565294119.1261234.6193520329790611169@dt-datatracker-9dc8fdd9f-qcdj9> <PATP264MB67653F7429F1738758D73B0E88282@PATP264MB6765.FRAP264.PROD.OUTLOOK.COM>
In-Reply-To: <PATP264MB67653F7429F1738758D73B0E88282@PATP264MB6765.FRAP264.PROD.OUTLOOK.COM>
From: ALFONSO DE SILONIZ SANDINO <alfonsosiloniz@gmail.com>
Date: Mon, 27 Apr 2026 09:26:18 +0200
X-Gm-Features: AVHnY4IcfaSL8LdTCWRPc-PVkG49OHTKTCXPyEXiQoVJHQzFF9jJ2MLrN0GGdsk
Message-ID: <CANZwF30NrGXOj0myAr4nK9qGANggaTo3SyDGXxu5qqQNR1LWbw@mail.gmail.com>
To: mohamed.boucadair@orange.com
Content-Type: multipart/alternative; boundary="000000000000800c3b06506c08a0"
Message-ID-Hash: APOCBJ7TQKOKQ2FCL3WFZD5OQJSMPFB4
X-Message-ID-Hash: APOCBJ7TQKOKQ2FCL3WFZD5OQJSMPFB4
X-MailFrom: alfonsosiloniz@gmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-ops-dir.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: "ops-dir@ietf.org" <ops-dir@ietf.org>, "draft-ietf-cdni-edge-control-metadata.all@ietf.org" <draft-ietf-cdni-edge-control-metadata.all@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [OPS-DIR]Re: draft-ietf-cdni-edge-control-metadata-11 ietf last call Opsdir review
List-Id: Ops Directorate <ops-dir.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ops-dir/oKvfnrMJAU6Bn49ufTLmPa7Yj6g>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ops-dir>
List-Help: <mailto:ops-dir-request@ietf.org?subject=help>
List-Owner: <mailto:ops-dir-owner@ietf.org>
List-Post: <mailto:ops-dir@ietf.org>
List-Subscribe: <mailto:ops-dir-join@ietf.org>
List-Unsubscribe: <mailto:ops-dir-leave@ietf.org>

Good morning,

As coauthor of the draft. We are gathering different reviews to prepare a
new version addressing the different issues raised. I think a new version
could be upload in a couple of days.

Thank your for the patience.

Regards,

Alfonso Silóniz


El sáb, 25 abr 2026 a las 11:24, <mohamed.boucadair@orange.com> escribió:

> Hi all,
>
> Thank you Sue for the review.
>
> I failed to find a follow up to this review or a signal that a new
> revision in under preparation.
>
> @authors, do you a plan to address these comments or that you will be
> releasing a new version before next week telechat? This would help me plan
> my own balloting.
>
> Thank you.
>
> Cheers,
> Med
>
> > -----Message d'origine-----
> > De : Sue Hares via Datatracker <noreply@ietf.org>
> > Envoyé : mercredi 8 avril 2026 14:56
> > À : ops-dir@ietf.org
> > Cc : cdni@ietf.org; draft-ietf-cdni-edge-control-
> > metadata.all@ietf.org; last-call@ietf.org
> > Objet : [OPS-DIR]draft-ietf-cdni-edge-control-metadata-11 ietf
> > last call Opsdir review
> >
> >
> > Document: draft-ietf-cdni-edge-control-metadata
> > Title: CDNI Edge Control Metadata
> > Reviewer: Sue Hares
> > Review result: Has Nits
> >
> > Hi,
> >
> > I have been selected as the Operational Directorate (opsdir)
> > reviewer for this Internet-Draft.
> >
> > The Operational Directorate reviews all operational and
> > management-related Internet-Drafts to ensure alignment with
> > operational best practices and that adequate operational
> > considerations are covered.
> >
> > A complete set of _"Guidelines for Considering Operations and
> > Management in IETF Specifications"_ can be found at
> > https://fra01.safelinks.protection.outlook.com/?url=https%3A%2F%2F
> > datatracker.ietf.org%2Fdoc%2Fdraft-ietf-opsawg-
> > rfc5706bis%2F&data=05%7C02%7Cmohamed.boucadair%40orange.com%7Cc0b8
> > 72fd8276428e42a108de956e4e25%7C90c7a20af34b40bfbc48b9253b6f5d20%7C
> > 0%7C0%7C639112498189035658%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGk
> > iOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUI
> > joyfQ%3D%3D%7C0%7C%7C%7C&sdata=O%2BYGtOCT6e9YpWi8GmnASzwquiMa7so46
> > E3qKtDAMpU%3D&reserved=0.
> >
> > While these comments are primarily for the Operations and
> > Management Area Directors (Ops ADs), the authors should consider
> > them alongside other feedback received.
> >
> > - Document: draft-ietf-cdni-edge-control-metadat-11
> > - Reviewer: Susan Hares
> > - Review Date: 4/8/2026
> > - Intended Status: Proposed Standard
> > ## Summary
> > Choose one: Has 3 Issues, No Major issues (AFIK)
> > a) No real operations considerations in content
> > b) The document deals with critical information for CND, but does
> > not identify the critical information. c) Incorrect IANA format.
> > There are also NITS denoted as Editorial issues.
> >
> > Caveat for Review: Not an HTTP or CDNI expert.
> >
> > ## General Operational Comments Alignment with RFC 5706bis
> > 1) This document lacks an indication on deployment path.  This may
> > be in [WHATWG-FETCH] document, but it is not mentioned. 2) This
> > document defines a mechanism for dCDN and uCDN but lacks
> > operational discussion on how to track when the dCDN configuration
> > for MT changes.CrossoriginPolicy is broken. An Operational
> > Considerations section (Section X) should be expanded to address
> > what happens if this breaks. The operational considerations may
> > simply state - it is the responsibility of the dCDN to correctly
> > configure the state. Is there something that tracks errors?
> >
> > ## Security section
> > The information passed in the MT.CrossoriginPolicy is critical
> > information. How is the operator protecting these values?
> >
> > ## IANA section - now requires both registry and group.  Please
> > change section
> > 7.1 to indicate both registry and gorup.
> >
> > Optional Editorial considerations:
> > E-issiue-1) dCDN and uCDN should be expanded before the first use.
> > E-issue 2)  section 3.2
> > old text:/
> >
> >    *  Validation of the Origin request header - If
> > MI.CrossoriginPolicy
> >       (Section 3.3) defines a list of domains to validate, if the
> > Origin
> >       request header does not match, the CORS response headers
> > MUST NOT
> >       be included in the dCDN response.  UA compliance with
> > Section 3.3
> >       of [WHATWG-FETCH] with "same-origin" restrictions will
> > prevent
> >       access to the resource./
> > issue: it seems that "to validate and if the Origin" is the right
> > meaning.  Is it?
> >
> > old text:/
> >    *  Wildcard usage - If the Origin request header is valid,
> > depending
> >       on the configuration, the value of the CORS response header
> > to
> >       include in the response will be the same as the Origin
> > request
> >       header, or a wildcard./
> > issue: It would seems that "the configuration the value" is the
> > correct grammar.
> >
> > old text:/
> >    *  uCDN is able to configure a list of default values for CORS
> >       response headers in MI.CrossoriginPolicy (Section 3.3)
> > Generic
> >       Metadata object that dCDN MUST add if present independent of
> > the
> >       value of the Origin request header./
> >
> > issues: It would seem that "that dCDN MUST" should be "That the
> > dCDN MUST".
> >
> > old text:/
> >    When an uCDN configures one or more of the expose-headers,
> > allow-
> >    methods, allow-headers, allow-credentials and max-age
> > properties the
> >    dCDN MUST generate synthetic responses to any CORS preflight
> > request
> >    without contacting the uCDN servers.  In this case the dCDN
> > will add
> >    the corresponding CORS response headers to every non-empty
> > parameter./ New text (suggested:/
> >    When an uCDN configures one or more of the following: expose-
> > headers, allow-
> >    methods, allow-headers, allow-credentials and max-age
> > properties the
> >    dCDN MUST generate synthetic responses to any CORS preflight
> > request
> >    without contacting the uCDN servers.  In this case the dCDN
> > will add
> >    the corresponding CORS response headers to every non-empty
> > parameter./
> >
> > E-issue-3:  section 3.3 - grammar.
> >
> > replace /section 5.1 [RFC9011]/
> > with /section 5.1 of [RFC9011]
> >
> > Summary of issues based on: OPS-DIR references
> >
> > Explicitly evaluate compliance with operational guidelines
> > (optional but
> > recommended):
> >
> > For example the check list:
> >
> > - Fault Management: Are failure detection/recovery mechanisms
> > specified? No
> > - Configuration Management: Are configuration changes to
> > enable/disable the feature clearly defined? somewhat (section 3.1-
> > 3.3) - Performance Monitoring:
> > Are metrics (e.g., latency, resource usage) clearly identified? -
> > This specification is trying to reduce latency, but the specific
> > latency issues in the processing is not specified (AFIK).
> >
> > | Review Item                    | RFC 5706 Considerations
> > |-------------------------------
> > |-----------------------------------------------------------------
> > --------------------------------------
> > | Deployment                     | Does the document include a
> > description of
> > how this protocol or technology is going to be deployed and
> > managed?  No | Installation and Initial Setup | Are configuration
> > parameters clearly identified and do they have reasonable default
> > values?  Yes, section 3.1-3.3 |
> > Migration Path                 | Is a path to migrate existing
> > configuration
> > clearly articualted? Are there any backward compatibility issues?
> > | Requirements on Other Protocols| What other protocol operations
> > are expected to
> > be performed relative to the new protocol or technology?   The
> > informational
> > specification [WHATWG-FETCH] may have details on other
> > requirements. This documents seems to the naiive to have the
> > necessary information. | Impact on
> > Network Operation    | Will the new protocol significantly
> > increase traffic
> > load on existing networks or affect the control plane?  No |
> > Verifying Correct
> > Operation    | For example, how can one test end-to-end
> > connectivity and
> > throughput?  Not clear.
> >
> > ## Major Issues - none found.
> > ## Minor Issues - I think my issues are non-block, but need to be
> > adjust to have correct specification. ## Nits - see editorial NITS
> > above
> >
> >
> >
> > _______________________________________________
> > OPS-DIR mailing list -- ops-dir@ietf.org To unsubscribe send an
> > email to ops-dir-leave@ietf.org
>
> ____________________________________________________________________________________________________________
> Ce message et ses pieces jointes peuvent contenir des informations
> confidentielles ou privilegiees et ne doivent donc
> pas etre diffuses, exploites ou copies sans autorisation. Si vous avez
> recu ce message par erreur, veuillez le signaler
> a l'expediteur et le detruire ainsi que les pieces jointes. Les messages
> electroniques etant susceptibles d'alteration,
> Orange decline toute responsabilite si ce message a ete altere, deforme ou
> falsifie. Merci.
>
> This message and its attachments may contain confidential or privileged
> information that may be protected by law;
> they should not be distributed, used or copied without authorisation.
> If you have received this email in error, please notify the sender and
> delete this message and its attachments.
> As emails may be altered, Orange is not liable for messages that have been
> modified, changed or falsified.
> Thank you.
>
>