[Pana] IESG Review of protocol and framework documents

Mark Townsley <townsley@cisco.com> Fri, 22 June 2007 11:54 UTC

Return-path: <pana-bounces@ietf.org>
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1I1hij-0006ug-2T; Fri, 22 Jun 2007 07:54:33 -0400
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1I1hii-0006rY-48 for pana@ietf.org; Fri, 22 Jun 2007 07:54:32 -0400
Received: from sj-iport-3-in.cisco.com ([171.71.176.72] helo=sj-iport-3.cisco.com) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1I1hig-00057o-Jk for pana@ietf.org; Fri, 22 Jun 2007 07:54:32 -0400
Received: from sj-dkim-4.cisco.com ([171.71.179.196]) by sj-iport-3.cisco.com with ESMTP; 22 Jun 2007 04:54:30 -0700
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: Ao8CAHNVe0arR7PE/2dsb2JhbAA
X-IronPort-AV: i="4.16,451,1175497200"; d="scan'208"; a="496810517:sNHT58206444"
Received: from sj-core-5.cisco.com (sj-core-5.cisco.com [171.71.177.238]) by sj-dkim-4.cisco.com (8.12.11/8.12.11) with ESMTP id l5MBsTLP023067; Fri, 22 Jun 2007 04:54:29 -0700
Received: from iwan-view3.cisco.com (iwan-view3.cisco.com [171.70.65.13]) by sj-core-5.cisco.com (8.12.10/8.12.6) with ESMTP id l5MBsPka006644; Fri, 22 Jun 2007 11:54:29 GMT
Received: from [192.168.0.100] (ams3-vpn-dhcp4564.cisco.com [10.61.81.211]) by iwan-view3.cisco.com (8.11.2/CISCO.WS.1.2) with ESMTP id l5MBsN700911; Fri, 22 Jun 2007 04:54:23 -0700 (PDT)
Message-ID: <467BB868.2050601@cisco.com>
Date: Fri, 22 Jun 2007 13:54:16 +0200
From: Mark Townsley <townsley@cisco.com>
User-Agent: Thunderbird 1.5.0.12 (Macintosh/20070509)
MIME-Version: 1.0
To: pana@ietf.org
Content-Type: text/plain; charset="ISO-8859-1"; format="flowed"
Content-Transfer-Encoding: 7bit
DKIM-Signature: v=0.5; a=rsa-sha256; q=dns/txt; l=2662; t=1182513269; x=1183377269; c=relaxed/simple; s=sjdkim4002; h=Content-Type:From:Subject:Content-Transfer-Encoding:MIME-Version; d=cisco.com; i=townsley@cisco.com; z=From:=20Mark=20Townsley=20<townsley@cisco.com> |Subject:=20IESG=20Review=20of=20protocol=20and=20framework=20documents |Sender:=20; bh=YHYxJ7zQr+AiKlzoKQjLYvLmsMybpkX0YIZF4COs0ew=; b=LNR3PDnaA36RmnuxrkwMQRQcfe/IDYw/1C3NhWYH45r0D4eVrR+A8/rMDgnFXZuTDo4+1oS2 tPoxkZcy3N3DfcW2Qzsf58nwZAgk5hCSUyA5eSDfI7NVuu644itBaFeP;
Authentication-Results: sj-dkim-4; header.From=townsley@cisco.com; dkim=pass ( sig from cisco.com/sjdkim4002 verified; );
X-Spam-Score: 0.0 (/)
X-Scan-Signature: f60d0f7806b0c40781eee6b9cd0b2135
Cc: Jari Arkko <jari.arkko@piuha.net>
Subject: [Pana] IESG Review of protocol and framework documents
X-BeenThere: pana@ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: Protocol for carrying Authentication for Network Access <pana.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/pana>, <mailto:pana-request@ietf.org?subject=unsubscribe>
List-Post: <mailto:pana@ietf.org>
List-Help: <mailto:pana-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/pana>, <mailto:pana-request@ietf.org?subject=subscribe>
Errors-To: pana-bounces@ietf.org

PANA Folks,

Yesterday, the IESG balloted draft-ietf-pana-pana-17.txt (Proposed 
Standard) and draft-ietf-pana-framework-09.txt (Informational RFC). 
While there are a handful of DISCUSS positions that we need to work 
through, all of you who worked hard on this revision should be 
commended. In particular, a rare word of praise from Sam Hartman:

"[2007-06-21] First, I'd like to compliment Mark and the PANA working 
group on the
excellent work they have done over the last year.  I fully expected to
be unable to support publication of PANA when it came to the IESG.
While I do have some blocking comments, I think they are easy to
resolve and expect to be able to remove my discuss when that happens.
What an excellent job making PANA easier to understand and removing
complexity."

I would like to especially thank Yoshi, Alper, Raj and Jari for all of 
their hard work and perseverance, and the WG for their patience during 
this process.

But there is still a final hurdle to leap. The IESG ballot (one ballot 
for both documents) detail is here:

https://datatracker.ietf.org/public/pidtracker.cgi?command=print_ballot&ballot_id=1723&filename=draft-ietf-pana-framework

There are 3 Discuss positions which need to move to Yes or No-Obj for 
the document to pass. If any one moves to Abstain, then the document 
will be in danger of not passing as there are a number of "open 
positions" here (all documents require 1 Yes and 2/3 of IESG members 
voting Yes or No-Obj).

Dan is asking about SNMP. I understand that we have gone in circles with 
respect to whether SNMP is required to be implemented or not, and it 
looks like the result was confusing to Dan. We either need to revive the 
SNMP document, or kill it off completely in the WG and in these specs.

Magnus has concerns about languages. I remember a review we did with the 
ltru chairs which perhaps we never fully closed the loop on, please 
contact Martin Duerst duerst@it.aoyama.ac.jp and Magnus directly to sort 
this out.

Sam seems most concerned about:
- Versioning
- IP address reconfig
- underlying link security
- which messages need an AUTH attribute and which do not, explicitly
- new hash algorithm migration
- discussion in the security considerations, moving some "requirements" 
to "tradeoffs"

I think all of these can be resolved with some discussion and one more 
revision on the text, as such I have moved the documents to Revised ID 
Needed. Once we have a new version which alleviates the concerns listed 
here and the ADs have changed their position to Yes or No-Obj, the 
documents will be approved.

- Mark










_______________________________________________
Pana mailing list
Pana@ietf.org
https://www1.ietf.org/mailman/listinfo/pana