Re: [OPSAWG] OPSAWG Digest, Vol 130, Issue 14

"Douglas Gash (dcmgash)" <dcmgash@cisco.com> Wed, 04 April 2018 11:40 UTC

Return-Path: <dcmgash@cisco.com>
X-Original-To: opsawg@ietfa.amsl.com
Delivered-To: opsawg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 14C0E127241 for <opsawg@ietfa.amsl.com>; Wed, 4 Apr 2018 04:40:58 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.511
X-Spam-Level:
X-Spam-Status: No, score=-14.511 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id lhm_cFBOaF9d for <opsawg@ietfa.amsl.com>; Wed, 4 Apr 2018 04:40:39 -0700 (PDT)
Received: from alln-iport-3.cisco.com (alln-iport-3.cisco.com [173.37.142.90]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EC394127286 for <opsawg@ietf.org>; Wed, 4 Apr 2018 04:40:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=3896; q=dns/txt; s=iport; t=1522842037; x=1524051637; h=from:to:subject:date:message-id:references:in-reply-to: content-id:content-transfer-encoding:mime-version; bh=fwee03h/3cyhscbqbRgMjGPyYZQTrDPd2ngKFsJV/SU=; b=YF7V84Gnrq5zzN7CfyVNsBvm3noTOf5q/av6M5wroa8iokpRl+hxPSFT Qm+rBKP0NWlEeFB25h+73+m+Dkw7SK6LkuKfos78H+VGDeaUeihCTyMWW B9ycVTciS+2ylYGQxKcZrbeFagAOExg/aDx/RgthSZyZG0Ets6gAzNHCp Y=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0DdAACDuMRa/40NJK1cGQEBAQEBAQEBAQEBAQcBAQEBAYNCYW8oCoNViACNCIFTIYEPklWBegsYC4QVSwIahDEhNBgBAgEBAQEBAQJrHAELhSIBAQEBAwEBIRE6GwIBCBEDAQIDAiYCAgIlCxUICAIEE4UND6tvghyEV4NsgiWBCYZZghOBLgyCVoMRAQECAQEWgUIXgmkwgiQChyKJI4Z2CAKFUYhegTA6gx+HMIkVhkECERMBgSQBHDiBUnAVGSEqAYIYCQqKfYU+bwEBjE+BFwEB
X-IronPort-AV: E=Sophos;i="5.48,405,1517875200"; d="scan'208";a="94314731"
Received: from alln-core-8.cisco.com ([173.36.13.141]) by alln-iport-3.cisco.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 04 Apr 2018 11:40:36 +0000
Received: from xch-rcd-011.cisco.com (xch-rcd-011.cisco.com [173.37.102.21]) by alln-core-8.cisco.com (8.14.5/8.14.5) with ESMTP id w34BeajM023140 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL) for <opsawg@ietf.org>; Wed, 4 Apr 2018 11:40:36 GMT
Received: from xch-aln-014.cisco.com (173.36.7.24) by XCH-RCD-011.cisco.com (173.37.102.21) with Microsoft SMTP Server (TLS) id 15.0.1320.4; Wed, 4 Apr 2018 06:40:35 -0500
Received: from xch-aln-014.cisco.com ([173.36.7.24]) by XCH-ALN-014.cisco.com ([173.36.7.24]) with mapi id 15.00.1320.000; Wed, 4 Apr 2018 06:40:35 -0500
From: "Douglas Gash (dcmgash)" <dcmgash@cisco.com>
To: "opsawg@ietf.org" <opsawg@ietf.org>
Thread-Topic: OPSAWG Digest, Vol 130, Issue 14
Thread-Index: AQHTwUbsfmnFbOeimE+yTJJHyvvu26Pw5MAA
Date: Wed, 04 Apr 2018 11:40:35 +0000
Message-ID: <7BD5E35C-9191-445F-85BE-40B8DAC79134@cisco.com>
References: <mailman.75.1521658810.20153.opsawg@ietf.org>
In-Reply-To: <mailman.75.1521658810.20153.opsawg@ietf.org>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/f.26.0.170902
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.229.136.18]
Content-Type: text/plain; charset="utf-8"
Content-ID: <B24D518F0AD7094A86C56F01E6AA7FA4@emea.cisco.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/opsawg/3_WXHHmo_xD-QvfVXTjimPivSag>
Subject: Re: [OPSAWG] OPSAWG Digest, Vol 130, Issue 14
X-BeenThere: opsawg@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: OPSA Working Group Mail List <opsawg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsawg>, <mailto:opsawg-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/opsawg/>
List-Post: <mailto:opsawg@ietf.org>
List-Help: <mailto:opsawg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsawg>, <mailto:opsawg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 04 Apr 2018 11:40:58 -0000

Hello OPSAWG,

Regarding the T+ document: Version 9 (below) had a small number of mainly typographic corrections.

We believe that the main area of deficiency in the document is section 9 (Security).

Our plan is to post this specific section to the list for review next week (after some initial cleaning), and hence to respond more interactively than we have previously. 

Hopefully this will result in a security section that is in more reasonable shape for the next upload of the document.

Many thanks.

    Message: 2
    Date: Wed, 21 Mar 2018 10:54:01 -0700
    From: internet-drafts@ietf.org
    To: <i-d-announce@ietf.org>
    Cc: opsawg@ietf.org
    Subject: [OPSAWG] I-D Action: draft-ietf-opsawg-tacacs-09.txt
    Message-ID: <152165484168.7396.6302839100635898192@ietfa.amsl.com>
    Content-Type: text/plain; charset="utf-8"
    
    
    A New Internet-Draft is available from the on-line Internet-Drafts directories.
    This draft is a work item of the Operations and Management Area Working Group WG of the IETF.
    
            Title           : The TACACS+ Protocol
            Authors         : Thorsten Dahm
                              Andrej Ota
                              Douglas C. Medway Gash
                              David Carrel
                              Lol Grant
    	Filename        : draft-ietf-opsawg-tacacs-09.txt
    	Pages           : 43
    	Date            : 2018-03-21
    
    Abstract:
       TACACS+ provides Device Administration for routers, network access
       servers and other networked computing devices via one or more
       centralized servers.  This document describes the protocol that is
       used by TACACS+.
    
    
    The IETF datatracker status page for this draft is:
    https://datatracker.ietf.org/doc/draft-ietf-opsawg-tacacs/
    
    There are also htmlized versions available at:
    https://tools.ietf.org/html/draft-ietf-opsawg-tacacs-09
    https://datatracker.ietf.org/doc/html/draft-ietf-opsawg-tacacs-09
    
    A diff from the previous version is available at:
    https://www.ietf.org/rfcdiff?url2=draft-ietf-opsawg-tacacs-09
    
    
    Please note that it may take a couple of minutes from the time of submission
    until the htmlized version and diff are available at tools.ietf.org.
    
    Internet-Drafts are also available by anonymous FTP at:
    ftp://ftp.ietf.org/internet-drafts/
    
    
    
    ------------------------------
    
    Subject: Digest Footer
    
    _______________________________________________
    OPSAWG mailing list
    OPSAWG@ietf.org
    https://www.ietf.org/mailman/listinfo/opsawg
    
    
    ------------------------------
    
    End of OPSAWG Digest, Vol 130, Issue 14
    ***************************************