Re: [OPSEC] Adoption Call: draft-gont-opsec-ipv6-addressing
Arnaud Taddei <arnaud.taddei@broadcom.com> Wed, 03 May 2023 07:50 UTC
Return-Path: <arnaud.taddei@broadcom.com>
X-Original-To: opsec@ietfa.amsl.com
Delivered-To: opsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A01D1C1519B4 for <opsec@ietfa.amsl.com>; Wed, 3 May 2023 00:50:16 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.995
X-Spam-Level:
X-Spam-Status: No, score=-1.995 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=broadcom.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id DK0j8dT-GwJ5 for <opsec@ietfa.amsl.com>; Wed, 3 May 2023 00:50:11 -0700 (PDT)
Received: from mail-wr1-x429.google.com (mail-wr1-x429.google.com [IPv6:2a00:1450:4864:20::429]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DD39DC1519B2 for <opsec@ietf.org>; Wed, 3 May 2023 00:50:10 -0700 (PDT)
Received: by mail-wr1-x429.google.com with SMTP id ffacd0b85a97d-2f6401ce8f8so2967205f8f.3 for <opsec@ietf.org>; Wed, 03 May 2023 00:50:10 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=broadcom.com; s=google; t=1683100208; x=1685692208; h=references:to:cc:in-reply-to:date:subject:mime-version:message-id :from:from:to:cc:subject:date:message-id:reply-to; bh=n2spvpRwyu25RUDO+H6vCRlQAbugyONdCPwk88yUGag=; b=KH1I8PbXICUBAGxoz05/LwxfRL9360iXe3tP3FUMZ5aDvyjUpqtwdW6JMGgcrrX/KS cmk+NSV3EMK7u4NO2VDpIBGOiY4mF/c8MiQOpG91OKvxpnOOHH8CrPz6WRtEG3m0RXRd x8GPAI1QIZTh/5MbhL1bU+Qd1+snnV2WSooVs=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1683100208; x=1685692208; h=references:to:cc:in-reply-to:date:subject:mime-version:message-id :from:x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=n2spvpRwyu25RUDO+H6vCRlQAbugyONdCPwk88yUGag=; b=NvdMrAyl3Oe2hK6/RZxd0nihhjQXJ1iEr8ST8nbfl8pA95gwPel4y0Co5c8Jcvnqrh +ZEv91yIQ+NG5k88ScxbdKTIBkZUABCrD4hcSliWgCdyVt/lDBuLUfHmLDCFOgI1fiHs ad7HYlU1dv8vFnTAIS6rPzSlDU4gU2ZLp4Rvus33TdNt+JwONNYi7qN2CkRMFvJmbH4T 0GhFJmarGgX6iAoViuozETurTu7W7KmD/tIbEsmGD1j03O34YzclQanzrxuj4+MzEywx rRJ9XGY5v1NVwLDZa/jjZlKf1WIo4kpa5ZgRNcmMbdcmyBTaInNHe2Hcl93T9m2NyF7e pl/Q==
X-Gm-Message-State: AC+VfDzOaJNq9hfmW1cypZv6FwN77nXq5GuB54uWzwOq8b244ft466ZG HOH0oNgaT3/+MzhboAUZBc80VQoC7hpumYUwn3Tmf9VSiS7HdQup1gCBC9H0arA/6v8T4NKJ
X-Google-Smtp-Source: ACHHUZ7aGxtngniRxkpv1+UxQ9BRPSfvpmNzef3wbDA/VXga6wJrpgV9j48wdEgFcOIZHeaxzz1Slw==
X-Received: by 2002:adf:f00c:0:b0:306:3eca:1f59 with SMTP id j12-20020adff00c000000b003063eca1f59mr1299744wro.36.1683100208508; Wed, 03 May 2023 00:50:08 -0700 (PDT)
Received: from smtpclient.apple ([2a01:e0a:b16:f660:e081:d1f0:40db:3429]) by smtp.gmail.com with ESMTPSA id v22-20020a7bcb56000000b003f1751016desm1038229wmj.28.2023.05.03.00.50.07 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Wed, 03 May 2023 00:50:08 -0700 (PDT)
From: Arnaud Taddei <arnaud.taddei@broadcom.com>
Message-Id: <8988ABFD-EC07-4177-8C48-62D3A78947FA@broadcom.com>
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3731.500.231\))
Date: Wed, 03 May 2023 09:49:56 +0200
In-Reply-To: <CAB75xn6tYPepZxTvunj6p+1RrtKFETXv=R_oCD8xT4K2d6QosA@mail.gmail.com>
Cc: Fernando Gont <fgont@si6networks.com>, opsec WG <opsec@ietf.org>, OpSec Chairs <opsec-chairs@ietf.org>, "draft-gont-opsec-ipv6-addressing@ietf.org" <draft-gont-opsec-ipv6-addressing@ietf.org>
To: Dhruv Dhody <dhruv.ietf@gmail.com>
References: <CAFU7BATDr25meXdUnOGHoWGhDjAU93sGb4FUPtK5PtVi41PZfg@mail.gmail.com> <C0864591-2C3A-4ED3-9ABF-47DF76C5B350@cisco.com> <c102fdba-2c52-6060-718d-a96c7a7086ff@si6networks.com> <49A543FB-7008-4774-8FB4-D4D321E1B69B@cisco.com> <CAB75xn6tYPepZxTvunj6p+1RrtKFETXv=R_oCD8xT4K2d6QosA@mail.gmail.com>
X-Mailer: Apple Mail (2.3731.500.231)
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg="sha-256"; boundary="00000000000013820605fac54edd"
Archived-At: <https://mailarchive.ietf.org/arch/msg/opsec/lvza1GU5tK_Cmdt9mFnU5e5MByM>
Subject: Re: [OPSEC] Adoption Call: draft-gont-opsec-ipv6-addressing
X-BeenThere: opsec@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: opsec wg mailing list <opsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/opsec>, <mailto:opsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/opsec/>
List-Post: <mailto:opsec@ietf.org>
List-Help: <mailto:opsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/opsec>, <mailto:opsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 May 2023 07:50:16 -0000
Not sure where we are on this one, but I will re-iterate my support for the 3rd time (once in the meeting and 2 times on this list). > On 2 May 2023, at 20:56, Dhruv Dhody <dhruv.ietf@gmail.com> wrote: > > Hi, > > I support adoption! > > Some Nits - > - Expand SLAAC > - s/each prefix advertised advertised for address/each prefix advertised for address/ > - add reference for Kubernetes and IPv6-enabled VPNs > - s/since sunch IPv6 prefix/since such IPv6 prefix/ > - suggest using their instead of his/her > > Thanks! > Dhruv > > > > On Mon, Apr 10, 2023 at 5:52 PM Eric Vyncke (evyncke) <evyncke=40cisco.com@dmarc.ietf.org <mailto:40cisco.com@dmarc.ietf.org>> wrote: >> Hello Fernando, >> >> No problem at all of course, we all work to improve the security of the Internet (which is obviously IPv6 ;-) ) >> >> Cheers >> >> -éric >> >> On 10/04/2023, 09:28, "Fernando Gont" <fgont@si6networks.com <mailto:fgont@si6networks.com> <mailto:fgont@si6networks.com <mailto:fgont@si6networks.com>>> wrote: >> >> >> Hello, Eric, >> >> >> On 8/4/23 02:13, Eric Vyncke (evyncke) wrote: >> > May I suggest that this draft, at the bare minimum, has RFC 9099 (an >> > OPSEC document) in its references list? Notably because the draft >> > sections about network correlation is already addressed in RFC 9099 >> > section 2.6 and others. >> >> >> This was my bad '' this )and other references) is in our TO-DO list for >> the next rev. >> >> >> Thanks! >> >> >> Fernando >> >> >> >> >> >> >> >> >> -- >> Fernando Gont >> SI6 Networks >> e-mail: fgont@si6networks.com <mailto:fgont@si6networks.com> <mailto:fgont@si6networks.com <mailto:fgont@si6networks.com>> >> PGP Fingerprint: F242 FF0E A804 AF81 EB10 2F07 7CA1 321D 663B B494 >> >> >> >> _______________________________________________ >> OPSEC mailing list >> OPSEC@ietf.org <mailto:OPSEC@ietf.org> >> https://www.ietf.org/mailman/listinfo/opsec <https://www.google.com/url?q=https://www.ietf.org/mailman/listinfo/opsec&source=gmail-imap&ust=1683658661000000&usg=AOvVaw3uZA_tnNGFjWaR3jQY-UcI> > _______________________________________________ > OPSEC mailing list > OPSEC@ietf.org > https://www.google.com/url?q=https://www.ietf.org/mailman/listinfo/opsec&source=gmail-imap&ust=1683658661000000&usg=AOvVaw3uZA_tnNGFjWaR3jQY-UcI -- This electronic communication and the information and any files transmitted with it, or attached to it, are confidential and are intended solely for the use of the individual or entity to whom it is addressed and may contain information that is confidential, legally privileged, protected by privacy laws, or otherwise restricted from disclosure to anyone else. If you are not the intended recipient or the person responsible for delivering the e-mail to the intended recipient, you are hereby notified that any use, copying, distributing, dissemination, forwarding, printing, or copying of this e-mail is strictly prohibited. If you received this e-mail in error, please return the e-mail to the sender, delete it from your computer, and destroy any printed copy of it.
- [OPSEC] Adoption Call: draft-gont-opsec-ipv6-addr… Jen Linkova
- Re: [OPSEC] Adoption Call: draft-gont-opsec-ipv6-… Eric Vyncke (evyncke)
- Re: [OPSEC] Adoption Call: draft-gont-opsec-ipv6-… Fernando Gont
- Re: [OPSEC] Adoption Call: draft-gont-opsec-ipv6-… Eric Vyncke (evyncke)
- Re: [OPSEC] Adoption Call: draft-gont-opsec-ipv6-… Dhruv Dhody
- Re: [OPSEC] Adoption Call: draft-gont-opsec-ipv6-… Arnaud Taddei