[OPSEC] Opsdir last call review of draft-ietf-opsec-probe-attribution-05

Linda Dunbar via Datatracker <noreply@ietf.org> Thu, 08 June 2023 16:06 UTC

Return-Path: <noreply@ietf.org>
X-Original-To: opsec@ietf.org
Delivered-To: opsec@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 93DFFC151522; Thu, 8 Jun 2023 09:06:45 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Linda Dunbar via Datatracker <noreply@ietf.org>
To: ops-dir@ietf.org
Cc: draft-ietf-opsec-probe-attribution.all@ietf.org, last-call@ietf.org, opsec@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 10.5.1
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <168624040559.34152.16732715656841514502@ietfa.amsl.com>
Reply-To: Linda Dunbar <linda.dunbar@futurewei.com>
Date: Thu, 08 Jun 2023 09:06:45 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/opsec/MH40tHo9oBDrb0G4fzrl4hhsY-M>
Subject: [OPSEC] Opsdir last call review of draft-ietf-opsec-probe-attribution-05
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.39
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/opsec/>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 08 Jun 2023 16:06:45 -0000

Reviewer: Linda Dunbar
Review result: Not Ready

I have reviewed this document as part of the Ops area directorate's ongoing
effort to review all IETF documents being processed by the IESG.  These
comments were written primarily for the benefit of the Ops area directors.
Document editors and WG chairs should treat these comments just like any other
last-call comments.

Summary:
This document describes the method for any organizations to send queries to
understand the received unsolicited probing packets.

Issues:
- Are those queries generated automatically?
- If the queries are generated automatically, does it require routers upgrade
to support the auto-generating of those queries? - If the queries are generated
manually, the draft should give some detailed examples since those queries will
be generated by people not coming to IETF. - Today, most routers ignore the
Internet probes they don't support. What are the problems of ignoring them?

Best Regards,
Linda Dunbar