Re: [OSPF] [Technical Errata Reported] RFC4552 (2599)

"Bhatia, Manav (Manav)" <manav.bhatia@alcatel-lucent.com> Wed, 03 November 2010 16:04 UTC

Return-Path: <manav.bhatia@alcatel-lucent.com>
X-Original-To: ospf@core3.amsl.com
Delivered-To: ospf@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id D84A928C111 for <ospf@core3.amsl.com>; Wed, 3 Nov 2010 09:04:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id yPBawj0-wDTj for <ospf@core3.amsl.com>; Wed, 3 Nov 2010 09:04:39 -0700 (PDT)
Received: from ihemail4.lucent.com (ihemail4.lucent.com [135.245.0.39]) by core3.amsl.com (Postfix) with ESMTP id DD65628C10A for <ospf@ietf.org>; Wed, 3 Nov 2010 09:04:38 -0700 (PDT)
Received: from inbansmailrelay1.in.alcatel-lucent.com (h135-250-11-31.lucent.com [135.250.11.31]) by ihemail4.lucent.com (8.13.8/IER-o) with ESMTP id oA3G4VIX006357 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=FAIL); Wed, 3 Nov 2010 11:04:34 -0500 (CDT)
Received: from INBANSXCHHUB03.in.alcatel-lucent.com (inbansxchhub03.in.alcatel-lucent.com [135.250.12.80]) by inbansmailrelay1.in.alcatel-lucent.com (8.14.3/8.14.3/GMO) with ESMTP id oA3G4TGw029107 (version=TLSv1/SSLv3 cipher=RC4-MD5 bits=128 verify=NOT); Wed, 3 Nov 2010 21:34:29 +0530
Received: from INBANSXCHMBSA1.in.alcatel-lucent.com ([135.250.12.53]) by INBANSXCHHUB03.in.alcatel-lucent.com ([135.250.12.80]) with mapi; Wed, 3 Nov 2010 21:34:29 +0530
From: "Bhatia, Manav (Manav)" <manav.bhatia@alcatel-lucent.com>
To: Acee Lindem <acee.lindem@ericsson.com>, Vishwas Manral <vishwas.ietf@gmail.com>
Date: Wed, 03 Nov 2010 21:34:31 +0530
Thread-Topic: [OSPF] [Technical Errata Reported] RFC4552 (2599)
Thread-Index: Act7bsi7LAUlUR+CQ1mzBmwaSZH9WgAAd2sw
Message-ID: <7C362EEF9C7896468B36C9B79200D8350CF4B13B1E@INBANSXCHMBSA1.in.alcatel-lucent.com>
References: <20101102155316.C350CE06B7@rfc-editor.org> <AANLkTi=2S_sngGZK3sQzdhCD9hOPnD5xkd989QkaAP6w@mail.gmail.com> <66BC910D-6839-4C94-967C-B614864ECAB6@ericsson.com>
In-Reply-To: <66BC910D-6839-4C94-967C-B614864ECAB6@ericsson.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-Scanned-By: MIMEDefang 2.57 on 135.245.2.39
X-Scanned-By: MIMEDefang 2.64 on 135.250.11.31
Cc: "acee@redback.com" <acee@redback.com>, "ospf@ietf.org" <ospf@ietf.org>, "adrian.farrel@huawei.com" <adrian.farrel@huawei.com>, "mukesh.gupta@tropos.com" <mukesh.gupta@tropos.com>, "nmelam@juniper.net" <nmelam@juniper.net>, RFC Errata System <rfc-editor@rfc-editor.org>
Subject: Re: [OSPF] [Technical Errata Reported] RFC4552 (2599)
X-BeenThere: ospf@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: The Official IETF OSPG WG Mailing List <ospf.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ospf>, <mailto:ospf-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ospf>
List-Post: <mailto:ospf@ietf.org>
List-Help: <mailto:ospf-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ospf>, <mailto:ospf-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Nov 2010 16:04:39 -0000

Hi Acee,

That's because 4301 requires all Ipsec implementations to MUST support ESP and MAY support AH. 

Cheers, Manav

> -----Original Message-----
> From: ospf-bounces@ietf.org [mailto:ospf-bounces@ietf.org] On 
> Behalf Of Acee Lindem
> Sent: Wednesday, November 03, 2010 9.20 PM
> To: Vishwas Manral
> Cc: acee@redback.com; ospf@ietf.org; 
> adrian.farrel@huawei.com; mukesh.gupta@tropos.com; 
> nmelam@juniper.net; RFC Errata System
> Subject: Re: [OSPF] [Technical Errata Reported] RFC4552 (2599)
> 
> Hi Vishwas,
> Do you recall the reason for making ESP mandatory and AH 
> optional for OSPFv3 IPsec? 
> Thanks,
> Acee
> On Nov 2, 2010, at 8:05 PM, Vishwas Manral wrote:
> 
> > Hi,
> > 
> > This errata is wrong. ESP provides authentication as well as
> > confidentiality, have a look at RFC 4301.
> > 
> > Thanks,
> > Vishwas
> > 
> > On Tue, Nov 2, 2010 at 8:53 AM, RFC Errata System
> > <rfc-editor@rfc-editor.org> wrote:
> >> 
> >> The following errata report has been submitted for RFC4552,
> >> "Authentication/Confidentiality for OSPFv3".
> >> 
> >> --------------------------------------
> >> You may review the report below and at:
> >> http://www.rfc-editor.org/errata_search.php?rfc=4552&eid=2599
> >> 
> >> --------------------------------------
> >> Type: Technical
> >> Reported by: John W. O'Brien <john.w.obrien@lmco.com>
> >> 
> >> Section: 3
> >> 
> >> Original Text
> >> -------------
> >> In order to provide authentication to OSPFv3, 
> implementations MUST support ESP and MAY support AH.
> >> 
> >> 
> >> Corrected Text
> >> --------------
> >> In order to provide authentication to OSPFv3, 
> implementations MUST support AH and MAY support ESP.
> >> 
> >> Notes
> >> -----
> >> Authentication can be provided by an implementation that 
> supports AH only.
> >> 
> >> Instructions:
> >> -------------
> >> This errata is currently posted as "Reported". If necessary, please
> >> use "Reply All" to discuss whether it should be verified or
> >> rejected. When a decision is reached, the verifying party (IESG)
> >> can log in to change the status and edit the report, if necessary.
> >> 
> >> --------------------------------------
> >> RFC4552 (draft-ietf-ospf-ospfv3-auth-08)
> >> --------------------------------------
> >> Title               : Authentication/Confidentiality for OSPFv3
> >> Publication Date    : June 2006
> >> Author(s)           : M. Gupta, N. Melam
> >> Category            : PROPOSED STANDARD
> >> Source              : Open Shortest Path First IGP
> >> Area                : Routing
> >> Stream              : IETF
> >> Verifying Party     : IESG
> >> _______________________________________________
> >> OSPF mailing list
> >> OSPF@ietf.org
> >> https://www.ietf.org/mailman/listinfo/ospf
> >> 
> > _______________________________________________
> > OSPF mailing list
> > OSPF@ietf.org
> > https://www.ietf.org/mailman/listinfo/ospf
> 
> _______________________________________________
> OSPF mailing list
> OSPF@ietf.org
> https://www.ietf.org/mailman/listinfo/ospf
>