Re: [Pce] AD review of draft-ietf-pce-pceps-tls13-02

John Scudder <jgs@juniper.net> Wed, 20 December 2023 01:46 UTC

Return-Path: <jgs@juniper.net>
X-Original-To: pce@ietfa.amsl.com
Delivered-To: pce@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D837BC257EEA; Tue, 19 Dec 2023 17:46:36 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.105
X-Spam-Level:
X-Spam-Status: No, score=-2.105 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b="jwXqGaB/"; dkim=pass (1024-bit key) header.d=juniper.net header.b="YPfJUns0"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YFApg0alWIJL; Tue, 19 Dec 2023 17:46:31 -0800 (PST)
Received: from mx0a-00273201.pphosted.com (mx0a-00273201.pphosted.com [208.84.65.16]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EB5EEC151065; Tue, 19 Dec 2023 17:46:31 -0800 (PST)
Received: from pps.filterd (m0108158.ppops.net [127.0.0.1]) by mx0a-00273201.pphosted.com (8.17.1.24/8.17.1.24) with ESMTP id 3BJIUF5k003465; Tue, 19 Dec 2023 17:46:31 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h= from:to:cc:subject:date:message-id:references:in-reply-to :content-type:content-transfer-encoding:mime-version; s=PPS1017; bh=FlVXmo7CGFvYsKHoPT2hJ8XOHU6+p1TQKwsIHl6gxgE=; b=jwXqGaB/LTij TYAb/1+ONYX46DhoXiopsJqnpxnjXygGBOCscQFy4GVwjoTdLJXSkCoiRRRE5V1o oMnqm2JjzxDIRhMfVA02BgDBriZi6D8E8/xyomFYbNCpm47hr4UUkKOTX7Qeyawu ycLN6QnO3CXG0VLq4rRkfC3Qyu4IX+vIAmV+CTM2jIZ4M/UPUfDwvg00CozDjzfN BWLbcvNeaWcCRHnNLkzMfDsfcCKcMaZ+JtVSF15gu2mHM2MaA04z8OM9GUAuN4dW RwvwFF9tENnAVCOwJPk7NZ2g65Z5tLmHlDMGBlijbHVoCkQCR4hL0KIpLKIauXZa hpWwghbnIg==
Received: from dm4pr02cu001.outbound.protection.outlook.com (mail-centralusazlp17014025.outbound.protection.outlook.com [40.93.13.25]) by mx0a-00273201.pphosted.com (PPS) with ESMTPS id 3v2vkm2y6s-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Tue, 19 Dec 2023 17:46:30 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=kyknWPdbc9H8zOBF+/5yyOs8hzmbLGCWHnIUc95bU9kKH8YczGOs6lwSzXsOJYGEWYNbTf3Z52bcOwAvv7EQE035gTpzWaOm/kMFj7PD23Z3COtFqF5FdXXgp6LCfASUggEtC11iSKiTpItpPjlpAvBSs24VFX80M+/JrNEON1kP4Ev6UuvZpuxygqmy9a3E4pwMSixq4mOJQLscn4VoLDLTpotzYV5ss7BdP8pIsMC6Je6UckyQHghtJVFl7vUUSdbwcsIEB2safbomrycuMfGhjY2R6zoyzMIr+JppZuZBgSJ0gNUzxy8aQe+xUKE02WusUdNuxQrUG7h5dipmRw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=FlVXmo7CGFvYsKHoPT2hJ8XOHU6+p1TQKwsIHl6gxgE=; b=WfD/nDezc219p4rmPSmPiYKtTg9hwbqBc+5DcY0ev7khXlyiJeH3zjysjIYpIiDzUoJLKOcYDPdh4aPnlaE0VIe05gqufxPjtT5WkIlVZOO5fvHPe3tJJ/P+/zIRzWeyE74CrOEKzWnun5AV1tRoKcN2+0gWNUZFC5IstXn58eWyfn2Bdru62rkPW6WavadLsz1R5AjZzhcEEgpUUf1wIAYfwvAoDOayu02ofVbpkG63AIjXuXhPXAH7cLB45IJBHrTtlOaD80XrJryMEBkB4Rwb6Aj6pupbfatEApan93rESjjGyg4FiMotBwZTER/LPk4kOrbZVUAG7BCFAMAIoA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=FlVXmo7CGFvYsKHoPT2hJ8XOHU6+p1TQKwsIHl6gxgE=; b=YPfJUns0fFVbTdSwtnPjRimuX7BzF1dXpQXDdZp6++tRAn9jLZsqbRFoJG3HjgqUm6bvvp+xFz46dl6M3Kjx5CRGO6r5VX4H0i4sj1BqUHJxzrREvu0DbXce38kDhY8/S81umJvDxOkjRHyzcpy1LB6lu2PSDbz5EJwGOuOjGHA=
Received: from MN2PR05MB6109.namprd05.prod.outlook.com (2603:10b6:208:c4::20) by PH0PR05MB7914.namprd05.prod.outlook.com (2603:10b6:510:93::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7113.18; Wed, 20 Dec 2023 01:46:26 +0000
Received: from MN2PR05MB6109.namprd05.prod.outlook.com ([fe80::2d2c:74ba:ab44:1338]) by MN2PR05MB6109.namprd05.prod.outlook.com ([fe80::2d2c:74ba:ab44:1338%4]) with mapi id 15.20.7091.034; Wed, 20 Dec 2023 01:46:26 +0000
From: John Scudder <jgs@juniper.net>
To: Sean Turner <sean@sn3rd.com>
CC: "pce@ietf.org" <pce@ietf.org>, "draft-ietf-pce-pceps-tls13@ietf.org" <draft-ietf-pce-pceps-tls13@ietf.org>
Thread-Topic: AD review of draft-ietf-pce-pceps-tls13-02
Thread-Index: AQHaJ50CCCFL6Vln1kWSxq2piXb3LbCxfCAAgAABVok=
Date: Wed, 20 Dec 2023 01:46:26 +0000
Message-ID: <F4D030D3-5C2C-45D8-B7F8-4FC05EE9A852@juniper.net>
References: <5FBB4B66-BFE8-4708-A180-7E674D709B36@juniper.net> <B3FD7A9A-BAE0-4F9D-B25D-8C39CB4A30E5@sn3rd.com>
In-Reply-To: <B3FD7A9A-BAE0-4F9D-B25D-8C39CB4A30E5@sn3rd.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: MN2PR05MB6109:EE_|PH0PR05MB7914:EE_
x-ms-office365-filtering-correlation-id: c4bb669e-2688-4c20-c890-08dc00fd7aa1
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MN2PR05MB6109.namprd05.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(346002)(136003)(396003)(366004)(39860400002)(376002)(230922051799003)(230173577357003)(230273577357003)(186009)(64100799003)(451199024)(1800799012)(41300700001)(2906002)(5660300002)(8936002)(8676002)(4326008)(76116006)(6916009)(316002)(66476007)(38070700009)(66556008)(64756008)(66446008)(66946007)(54906003)(86362001)(2616005)(33656002)(122000001)(966005)(6486002)(36756003)(38100700002)(83380400001)(478600001)(26005)(53546011)(6506007)(6512007)(71200400001)(45980500001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MN2PR05MB6109.namprd05.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: c4bb669e-2688-4c20-c890-08dc00fd7aa1
X-MS-Exchange-CrossTenant-originalarrivaltime: 20 Dec 2023 01:46:26.3445 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: W4fuqyazp7zfMbqHwQIk0Uhgp/T7MyvkHG+11d9XBxAQhQLEBCth8x4C52Gb+IbR
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PH0PR05MB7914
X-Proofpoint-ORIG-GUID: bFqTZxAP-oWCt2ceSGz7-Sa5dlrYec_A
X-Proofpoint-GUID: bFqTZxAP-oWCt2ceSGz7-Sa5dlrYec_A
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.272,Aquarius:18.0.997,Hydra:6.0.619,FMLib:17.11.176.26 definitions=2023-12-09_01,2023-12-07_01,2023-05-22_02
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 priorityscore=1501 suspectscore=0 lowpriorityscore=0 phishscore=0 mlxscore=0 mlxlogscore=999 spamscore=0 adultscore=0 impostorscore=0 bulkscore=0 clxscore=1011 malwarescore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.19.0-2311290000 definitions=main-2312200010
Archived-At: <https://mailarchive.ietf.org/arch/msg/pce/TG9ikjILXQSnjcFKOl9H5ltMoUM>
Subject: Re: [Pce] AD review of draft-ietf-pce-pceps-tls13-02
X-BeenThere: pce@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Path Computation Element <pce.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/pce>, <mailto:pce-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pce/>
List-Post: <mailto:pce@ietf.org>
List-Help: <mailto:pce-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pce>, <mailto:pce-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 20 Dec 2023 01:46:36 -0000

Please and thank you. 

—John

> On Dec 19, 2023, at 8:41 PM, Sean Turner <sean@sn3rd.com> wrote:
> 
> [External Email. Be cautious of content]
> 
> 
> John,
> 
> Now that the I-D has been placed on the 1/4 telechat should I spin a new version that incorporates the  outstanding PRs:
> https://urldefense.com/v3/__https://github.com/ietf-wg-pce/draft-ietf-pce-pceps-tls13/pulls__;!!NEt6yMaO-gk!C1CkLmJEflB_yG5NzS23pvZunYM61_KOufCqnD3aLWVaJZDL5UwvsYUQm373Q10IaWGT6mz5MA$
> 
> spt
> 
>> On Dec 5, 2023, at 12:03, John Scudder <jgs@juniper.net> wrote:
>> 
>> Hi Authors,
>> 
>> Thanks for this document. Looks good, I've requested IETF last call.
>> 
>> A couple of notes below, they didn't seem worth holding up the last call for, but please consider them for your next revision.
>> 
>> - "what PCEPS implementations do if a PCEPS supports more than one version". I don't think PCEPS (second occurrence) takes an article (i.e. referring to "a PCEPS" is weird). Some rewrite seems called for, perhaps s/a PCEPS/one/.
>> 
>> - "neither the PCC nor the PCE should establish a PCEPS with
>>  TLS connection with an unknown, unexpected, or incorrectly identified
>>  peer;"
>> 
>> Isn't "PCEPS with TLS" redundant, doesn't the ess in PCEPS imply TLS? In which case, just drop "with TLS". (See also, "ATM machine" :-)
>> 
>> Thanks,
>> 
>> —John
>