Re: [OPSAWG] [Editorial Errata Reported] RFC9291 (7162)

mohamed.boucadair@orange.com Thu, 13 October 2022 11:29 UTC

Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: opsawg@ietfa.amsl.com
Delivered-To: opsawg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B444EC14CE40 for <opsawg@ietfa.amsl.com>; Thu, 13 Oct 2022 04:29:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.807
X-Spam-Level:
X-Spam-Status: No, score=-2.807 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H2=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4CVmOMnR8LZl for <opsawg@ietfa.amsl.com>; Thu, 13 Oct 2022 04:29:21 -0700 (PDT)
Received: from relais-inet.orange.com (relais-inet.orange.com [80.12.66.41]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6A6C1C1522A6 for <opsawg@ietf.org>; Thu, 13 Oct 2022 04:29:21 -0700 (PDT)
Received: from opfedar00.francetelecom.fr (unknown [xx.xx.xx.11]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by opfedar20.francetelecom.fr (ESMTP service) with ESMTPS id 4Mp6jq3QRSz8tQL; Thu, 13 Oct 2022 13:29:19 +0200 (CEST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; s=ORANGE001; t=1665660559; bh=Z3nRsQM3HE1cKANWIgjZQbH6yYGjZWb9skpGDOkOoyI=; h=From:To:Subject:Date:Message-ID:Content-Type: Content-Transfer-Encoding:MIME-Version; b=ACi+jQ9j/2b/+H3j1UsZMyAfO2UTcYFmpqG7MMaSdP3v5Tg5Uid4r59Ft34rEjPov +93tG/cgYDP7+1HUwA8QYd624kInyVSWJY9kMCGFE9KxPhLPxsfaeUA5HP/5CfODqz kBSMk6GuQaes+mwlO4rSuVpOdhaJVYI+s6Ld1MTXE11icR9f087NM3pSROCIhM3G9W k7pdtPneFJ0NpVdLi9svpEBB24itzWcCKZRGeeVPdq2/D9i2OXXCqhCkY/yuYa+Jy3 anE8P4FpUfPfFdpI5KbDLUdmfKgYtBSuto/W87y/oC2yUFmAeXSeIxD/5ix8sOkKnW LbdmKzAA5UvwQ==
From: mohamed.boucadair@orange.com
To: RFC Errata System <rfc-editor@rfc-editor.org>, "nmalykh@ieee.org" <nmalykh@ieee.org>
CC: "oscar.gonzalezdedios@telefonica.com" <oscar.gonzalezdedios@telefonica.com>, "samier.barguilgiraldo.ext@telefonica.com" <samier.barguilgiraldo.ext@telefonica.com>, "luis-angel.munoz@vodafone.com" <luis-angel.munoz@vodafone.com>, "opsawg@ietf.org" <opsawg@ietf.org>
Thread-Topic: [Editorial Errata Reported] RFC9291 (7162)
Thread-Index: AQHY3vYpw1fLHQlbcUCDAP7aFsmRe64ML6xQ
Content-Class:
Date: Thu, 13 Oct 2022 11:29:18 +0000
Message-ID: <18560_1665660559_6347F68F_18560_348_7_1386d1891eef4123bf73faef27c70a93@orange.com>
References: <20221013112302.4125B13376E@rfcpa.amsl.com>
In-Reply-To: <20221013112302.4125B13376E@rfcpa.amsl.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2022-10-13T11:27:48Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=36704f23-01f7-4148-a6d4-a59f33470034; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
x-originating-ip: [10.115.26.52]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/opsawg/JIuhvdVnmdESxpEax00KNktgXCA>
Subject: Re: [OPSAWG] [Editorial Errata Reported] RFC9291 (7162)
X-BeenThere: opsawg@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: OPSA Working Group Mail List <opsawg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsawg>, <mailto:opsawg-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/opsawg/>
List-Post: <mailto:opsawg@ietf.org>
List-Help: <mailto:opsawg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsawg>, <mailto:opsawg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 13 Oct 2022 11:29:25 -0000

Hi Nikolai, all, 

Thank you for reporting this. 

This editorial erratum should be accepted. Thanks.

Cheers,
Med

> -----Message d'origine-----
> De : RFC Errata System <rfc-editor@rfc-editor.org>
> Envoyé : jeudi 13 octobre 2022 13:23
> À : rfc-editor@rfc-editor.org
> Cc : nmalykh@ieee.org; BOUCADAIR Mohamed INNOV/NET
> <mohamed.boucadair@orange.com>;
> oscar.gonzalezdedios@telefonica.com;
> samier.barguilgiraldo.ext@telefonica.com; luis-
> angel.munoz@vodafone.com; opsawg@ietf.org
> Objet : [Editorial Errata Reported] RFC9291 (7162)
> 
> The following errata report has been submitted for RFC9291, "A
> YANG Network Data Model for Layer 2 VPNs".
> 
> --------------------------------------
> You may review the report below and at:
> https://www.rfc-editor.org/errata/eid7162
> 
> --------------------------------------
> Type: Editorial
> Reported by: Nikolai Malykh <nmalykh@ieee.org>
> 
> Section: 9
> 
> Original Text
> -------------
>    'ethernet-segments' and 'vpn-services':  An attacker who is
> able to
>       access network nodes can undertake various attacks, such as
>       deleting a running L2VPN service, interrupting all the
> traffic of
>       a client.  In addition, an attacker may modify the
> attributes of a
>       running service (e.g., QoS, bandwidth) or an ES, leading to
>       malfunctioning of the service and therefore to SLA
> violations.  In
>       addition, an attacker could attempt to create an L2VPN
> service,
>       add a new network access, or intercept/redirect the traffic
> to a
>       non-authorized node.  In addition to using NACM to prevent
>       authorized access, such activity can be detected by
> adequately
>       monitoring and tracking network configuration changes.
> 
> 
> Corrected Text
> --------------
>    'ethernet-segments' and 'vpn-services':  An attacker who is
> able to
>       access network nodes can undertake various attacks, such as
>       deleting a running L2VPN service, interrupting all the
> traffic of
>       a client.  In addition, an attacker may modify the
> attributes of a
>       running service (e.g., QoS, bandwidth) or an ES, leading to
>       malfunctioning of the service and therefore to SLA
> violations.  In
>       addition, an attacker could attempt to create an L2VPN
> service,
>       add a new network access, or intercept/redirect the traffic
> to a
>       non-authorized node.  In addition to using NACM to prevent
>       unauthorized access, such activity can be detected by
> adequately
>       monitoring and tracking network configuration changes.
> 
> 
> Notes
> -----
> Typo in last sentence, should be "unauthorized".
> 
> Instructions:
> -------------
> This erratum is currently posted as "Reported". If necessary,
> please use "Reply All" to discuss whether it should be verified or
> rejected. When a decision is reached, the verifying party can log
> in to change the status and edit the report, if necessary.
> 
> --------------------------------------
> RFC9291 (draft-ietf-opsawg-l2nm-19)
> --------------------------------------
> Title               : A YANG Network Data Model for Layer 2 VPNs
> Publication Date    : September 2022
> Author(s)           : M. Boucadair, Ed., O. Gonzalez de Dios, Ed.,
> S. Barguil, L. Munoz
> Category            : PROPOSED STANDARD
> Source              : Operations and Management Area Working Group
> Area                : Operations and Management
> Stream              : IETF
> Verifying Party     : IESG

_________________________________________________________________________________________________________________________

Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler
a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,
Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.

This message and its attachments may contain confidential or privileged information that may be protected by law;
they should not be distributed, used or copied without authorisation.
If you have received this email in error, please notify the sender and delete this message and its attachments.
As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.
Thank you.