Re: [Pce] draft-ietf-pce-pceps-09 available

t.petch <ietfc@btconnect.com> Thu, 10 March 2016 11:03 UTC

Return-Path: <ietfc@btconnect.com>
X-Original-To: pce@ietfa.amsl.com
Delivered-To: pce@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D7B7B12D699 for <pce@ietfa.amsl.com>; Thu, 10 Mar 2016 03:03:17 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.348
X-Spam-Level:
X-Spam-Status: No, score=-1.348 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, URG_BIZ=0.573] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=btconnect.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qHH_GlaDI53l for <pce@ietfa.amsl.com>; Thu, 10 Mar 2016 03:03:14 -0800 (PST)
Received: from EUR01-DB5-obe.outbound.protection.outlook.com (mail-db5eur01on0092.outbound.protection.outlook.com [104.47.2.92]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 62E7912D691 for <pce@ietf.org>; Thu, 10 Mar 2016 03:03:14 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=btconnect.onmicrosoft.com; s=selector1-btconnect-com; h=From:To:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=5D55UgRZjPCm07HoApSsZm2sbSPjcxVl1/GrjfYQE+g=; b=IXaMhPoSlKjc5Gvk3hG9leH3smCgzfxe4wZaZjVGdtaNoM9dLJykv7Bau8aBvAD1LwmfvllqaE8kKtfLpsY9DLQ0jZDyeiazv+2ElUII6bJ0dV3HNHxGTwYOful9Lf+ePeiUYDJZfoRRpKHCxt0Gx+Cc7TbQeSo1MFB28Jt4uK4=
Authentication-Results: telefonica.com; dkim=none (message not signed) header.d=none;telefonica.com; dmarc=none action=none header.from=btconnect.com;
Received: from pc6 (86.167.153.133) by VI1PR07MB1632.eurprd07.prod.outlook.com (10.166.142.150) with Microsoft SMTP Server (TLS) id 15.1.443.7; Thu, 10 Mar 2016 11:03:11 +0000
Message-ID: <002c01d17abb$e2468340$4001a8c0@gateway.2wire.net>
From: "t.petch" <ietfc@btconnect.com>
To: DIEGO LOPEZ GARCIA <diego.r.lopez@telefonica.com>
References: <06EC97F2-E307-4AB9-AF08-ABFAAAE20B42@telefonica.com> <011901d15ea5$73702840$4001a8c0@gateway.2wire.net> <55E4A7A6-4BEB-402E-B7FA-F99B6818B82A@telefonica.com> <30887501-8EDE-41A1-9589-6DCD43F9E4B6@telefonica.com> <021a01d17925$ad52f160$4001a8c0@gateway.2wire.net> <408A224E-788A-41FB-9DDF-645154088A40@telefonica.com>
Date: Thu, 10 Mar 2016 10:57:38 +0000
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2800.1106
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1106
X-Originating-IP: [86.167.153.133]
X-ClientProxiedBy: AM3PR02CA0076.eurprd02.prod.outlook.com (25.163.180.44) To VI1PR07MB1632.eurprd07.prod.outlook.com (25.166.142.150)
X-MS-Office365-Filtering-Correlation-Id: a7f96bfa-7d60-4ac5-33e4-08d348d39221
X-Microsoft-Exchange-Diagnostics: 1; VI1PR07MB1632; 2:VixEzMTZPy8FKuz44FlLm1L0dV5Hkk6ya4Yw/G9UmVCx7zAWyif9rMoo3BbRgDaI7yInQTwHffCEXpHsntmrHFKxDAQUQ7wAwqrwRgyrKd91JT90lRBQBeolnOhVgaHMtog4PchpJEZlTqOAsL5dHxCTQEo+P91Bo19AmJEmllUlF9A7MS7qzPNb9Dnalazc; 3:SdTAU3yryn9aw+nubDMqJVOF4a3lFacSnFaNx4OnIPaM0zsWCq7K86YDOMAjTWylq45mhUDLpqrCY09VKoANdHYI+dfPj/qc+qcbzqSvxtoI6QLhjMPkimiHhwnkVlkr; 25:HYRYW2/RYGzCUXJbH8ppv+XFduzPXt0TWvru/7NRWx6ukagOKc9UbEeJeY+Avww2cUuhKd7Qh2Xcan7cudfHB/eRzXZXCJvUq4QvRQFU0SVjCFL45Mdc+c9iEfpsdJ57p8Ot8D1vvqFQXlAw9ysT/g7CIRhXM8j/0sXinAoeV2AFKLU8gqBl/BMfPc9Xb+K6/bWuYqU52kDhVJYZ2AR5egFs+/Y5ZgluxX7fr7bEiG9Usik6SXIFFA7sUOmNRmdVNVIJ17bAQZbcVfCb6siE3FSv4mYzOQ6yUzFZw1E/LElDgPBTpiThnT2jBxq/dDP23bYjAA3M4xRBkSKhUkdJbP49t0aPn1gCqTGK0E9tRn0=
X-Microsoft-Antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:VI1PR07MB1632;
X-Microsoft-Antispam-PRVS: <VI1PR07MB16327E9306CEADE6121FE8E8A0B40@VI1PR07MB1632.eurprd07.prod.outlook.com>
X-Exchange-Antispam-Report-Test: UriScan:(178726229863574);
X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(601004)(2401047)(5005006)(8121501046)(3002001)(10201501046); SRVR:VI1PR07MB1632; BCL:0; PCL:0; RULEID:; SRVR:VI1PR07MB1632;
X-Microsoft-Exchange-Diagnostics: 1; VI1PR07MB1632; 4:F2LV6Z+1JSn38Hki31outhabDjxy72Guj24fJBg1x45uVqNV58l2qlNeiclaWt9V02lwA8fj8gYD22ZpTLPwAEGXWQUpYGS/uBubuKiSnKrdgcZbVq847rH4Cf+eyIyP9Xkq0gEGtXtsM+j+5TLTpRQuN+IvyYDKZHxWcJWJGgCLMRJnAzsJqaHT3RVBTB9ALHwT1B4LtjHQTi0RyboqpedhRgbV+D36i5d+FFS8+111k7x7fxQoEi+NHB245NBAj9O83DzEZt687Vgix6wqvby44R6giNNBr72IYJCmKC0QRlp1FCUaauP7lVhHthSO6/bLNox9S/qNOU98QnFJZw9xKP23Eo7w5nJJqWjwWKNkcs77v3L6fgCx9/S9Z0qhLbsalBsNqezg2ygk/3fynVVq70SWY7qaUCQnS9PVi4w=
X-Forefront-PRVS: 08770259B4
X-Forefront-Antispam-Report: SFV:NSPM; SFS:(10019020)(4630300001)(6009001)(377454003)(252514010)(24454002)(13464003)(40134004)(110136002)(81816999)(81686999)(76176999)(189998001)(50986999)(230783001)(4326007)(50226001)(77096005)(1556002)(92566002)(19580405001)(33646002)(86362001)(15975445007)(2906002)(19580395003)(5008740100001)(6116002)(116806002)(23676002)(81166005)(66066001)(50466002)(47776003)(62236002)(44716002)(3846002)(586003)(93886004)(61296003)(42186005)(2870700001)(1096002)(5004730100002)(4720700001); DIR:OUT; SFP:1102; SCL:1; SRVR:VI1PR07MB1632; H:pc6; FPR:; SPF:None; MLV:sfv; LANG:en;
X-Microsoft-Exchange-Diagnostics: 1;VI1PR07MB1632;23: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
X-Microsoft-Exchange-Diagnostics: 1; VI1PR07MB1632; 5:0wSMK7+HZD2hAhWMSqJtIBhX4fa1wWm8Hg167tTnaA9mgQ+BsrbrwuqRMzwlVIyHuwgfI+Dc2ukB8YoXSZneTrchSU7xQFDYZ2r5Rej20quggC0zCdz2a/yvjMepF6hrl0ENy+waSPQrV0eyUdHeag==; 24:dijyqS0iod/Zsz8v5BIFzOqbI8tJCeXlUTTgLNSK5VaVBeAC7KVvvivoIbaWjsf0eZMlmz3yyKeVAx47BK9fvWZUUZJB3otYZJrnceDQYTc=
SpamDiagnosticOutput: 1:23
SpamDiagnosticMetadata: NSPM
X-OriginatorOrg: btconnect.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 10 Mar 2016 11:03:11.3508 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR07MB1632
Archived-At: <http://mailarchive.ietf.org/arch/msg/pce/vZRt2E501OsjI8Bb0zALHjprBPM>
Cc: pce@ietf.org
Subject: Re: [Pce] draft-ietf-pce-pceps-09 available
X-BeenThere: pce@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Path Computation Element <pce.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/pce>, <mailto:pce-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pce/>
List-Post: <mailto:pce@ietf.org>
List-Help: <mailto:pce-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pce>, <mailto:pce-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 10 Mar 2016 11:03:18 -0000

----- Original Message -----
From: "DIEGO LOPEZ GARCIA" <diego.r.lopez@telefonica.com>
To: "t.petch" <ietfc@btconnect.com>
Cc: <pce@ietf.org>
Sent: Tuesday, March 08, 2016 11:22 PM

> Hi Tom,
>
> (what are you going to leave for the shepherd and the RFC editors?
:-))

Don't worry - I have left some quirks of grammar for them to find and I
am sure that someone will query the lack of 'Updates RFC5440' (I do not
think that this I-D does) or the references not being in numerical
order, while I expect some will see an incompatability between sections
1 and 3.2 regarding the TLS roles when PCE communicates with PCE
(answer - go read RFC5440!), while the Security ADs/Directorate always
find something to discuss that I would never notice.

So I would send this on its way as is - having one or two minor
editorial quirks in an I-D provides a good metric of the subsequent
reviews:-)

Tom Petch

> The PCC/PCV mistake was caused by my fiddling with line breaks to make
a more readable XML source when updating to -08. Good catch!
>
> And you are right that RFC5288 should be mentioned in section 3.4, and
among the normative references.
>
> -09 on its way. I hope this will be the one able to progress…
>
> Be goode,
>
> On 8 Mar 2016, at 11:29 , t.petch
<ietfc@btconnect.com<mailto:ietfc@btconnect.com>> wrote:
>
> Diego,
>
> Yes, understand the logic but (ducking) it was
> "  In addition, a PCC MAY apply the procedures described in [RFC6698]"
> and is now
> "  In addition, a PCV MAY apply the procedures described in [RFC6698]"
>
> Separately (why can't I get it right first time?), your MTI
ciphersuites
> are defined in RFC5288 which I think should be a Normative Reference
> from s.3.4
>
> Tom Petch
>
> ----- Original Message -----
> From: "DIEGO LOPEZ GARCIA"
<diego.r.lopez@telefonica.com<mailto:diego.r.lopez@telefonica.com>>
> To: "t.petch" <ietfc@btconnect.com<mailto:ietfc@btconnect.com>>
> Cc: <pce@ietf.org<mailto:pce@ietf.org>>
> Sent: Sunday, March 06, 2016 8:18 PM
>
>
> Hi again,
>
> I forgot to mention that we’ll change the mention to “client” and
> “client certificate” in the third paragraph of 3.5. But the mention to
> PCC in the discussion of the use of DANE has to remain, as DANE is
> mentioned in the context of DNS discovery, that is only applicable by
a
> PCC.
>
> Be goode,
>
> On 6 Mar 2016, at 21:08 , DIEGO LOPEZ GARCIA
>
<diego.r.lopez@telefonica.com<mailto:diego.r.lopez@telefonica.com><mailt
o:diego.r.lopez@telefonica.com>>
> wrote:
>
> Hi Tom,
>
> Apologies for the delay (other urgent requests piling up…) Dhruv has
> just reminded me of this comment of yours. I think you are right: It
is
> much better to maintain symmetry in the TLS verification and use a
> general term that includes both peers. I’ll upload an updated version
> right now.
>
> Be goode,
>
> On 3 Feb 2016, at 18:06 , t.petch
>
<ietfc@btconnect.com<mailto:ietfc@btconnect.com><mailto:ietfc@btconnect.
com>> wrote:
>
> Diego
>
> Looks good with one slight query.  I commented before on the use of
> 'client' in s.3.5 which suggested an asymmetric protocol, where the
> PCE
> checks on the PCC needed to be more stringent that those of the PCC on
> the PCE.  I notice that one of the 'client' has gone but one has not
> and
> there is still a 'PCC' in there so it still to me carries the flavour
> that PCE checking of the PCC is more important than the other way
> round.
> I do not know if this is ok or not, how it lines up with the threat
> model.
>
> Tom Petch
>
>
> ----- Original Message -----
> From: "DIEGO LOPEZ GARCIA"
>
<diego.r.lopez@telefonica.com<mailto:diego.r.lopez@telefonica.com><mailt
o:diego.r.lopez@telefonica.com>>
> To: <pce@ietf.org<mailto:pce@ietf.org><mailto:pce@ietf.org>>
> Sent: Thursday, January 21, 2016 2:07 PM
>
> Hi,
>
> We have just uploaded a new version of draft-ietf-pce-pceps
> (https://datatracker.ietf.org/doc/draft-ietf-pce-pceps/)
>
> We believe this new version addresses all the comments received from
> the
> SECDIR review after the last call period, and other pending ones
> provided by Tom while that SECDIR review was taking place. As far as
> the
> authors can say, the document is ready to progress.
>
> Be goode,
>
> --
> "Esta vez no fallaremos, Doctor Infierno"
>
> Dr Diego R. Lopez
> Telefonica I+D
> http://people.tid.es/diego.lopez/
>
> e-mail:
>
diego.r.lopez@telefonica.com<mailto:diego.r.lopez@telefonica.com><mailto
:diego.r.lopez@telefonica.com>
> Tel:    +34 913 129 041
> Mobile: +34 682 051 091
> ----------------------------------
>
>
>
> --
> "Esta vez no fallaremos, Doctor Infierno"
>
> Dr Diego R. Lopez
> Telefonica I+D
> http://people.tid.es/diego.lopez/
>
> e-mail:
>
diego.r.lopez@telefonica.com<mailto:diego.r.lopez@telefonica.com><mailto
:diego.r.lopez@telefonica.com>
> Tel:    +34 913 129 041
> Mobile: +34 682 051 091
> ----------------------------------
>
>
> ________________________________
>
> Este mensaje y sus adjuntos se dirigen exclusivamente a su
> destinatario, puede contener información privilegiada o confidencial y
> es para uso exclusivo de la persona o entidad de destino. Si no es
> usted. el destinatario indicado, queda notificado de que la lectura,
> utilización, divulgación y/o copia sin autorización puede estar
> prohibida en virtud de la legislación vigente. Si ha recibido este
> mensaje por error, le rogamos que nos lo comunique inmediatamente por
> esta misma vía y proceda a su destrucción.
>
> The information contained in this transmission is privileged and
> confidential information intended only for the use of the individual
or
> entity named above. If the reader of this message is not the intended
> recipient, you are hereby notified that any dissemination,
distribution
> or copying of this communication is strictly prohibited. If you have
> received this transmission in error, do not read it. Please
immediately
> reply to the sender that you have received this communication in error
> and then delete it.
>
> Esta mensagem e seus anexos se dirigem exclusivamente ao seu
> destinatário, pode conter informação privilegiada ou confidencial e é
> para uso exclusivo da pessoa ou entidade de destino. Se não é vossa
> senhoria o destinatário indicado, fica notificado de que a leitura,
> utilização, divulgação e/ou cópia sem autorização pode estar proibida
em
> virtude da legislação vigente. Se recebeu esta mensagem por erro,
> rogamos-lhe que nos o comunique imediatamente por esta mesma via e
> proceda a sua destruição
> _______________________________________________
> Pce mailing list
> Pce@ietf.org<mailto:Pce@ietf.org><mailto:Pce@ietf.org>
> https://www.ietf.org/mailman/listinfo/pce
>
> --
> "Esta vez no fallaremos, Doctor Infierno"
>
> Dr Diego R. Lopez
> Telefonica I+D
> http://people.tid.es/diego.lopez/
>
> e-mail: diego.r.lopez@telefonica.com
> Tel:    +34 913 129 041
> Mobile: +34 682 051 091
> ----------------------------------
>
>
> ________________________________
>
> Este mensaje y sus adjuntos se dirigen exclusivamente a su
> destinatario, puede contener información privilegiada o confidencial y
> es para uso exclusivo de la persona o entidad de destino. Si no es
> usted. el destinatario indicado, queda notificado de que la lectura,
> utilización, divulgación y/o copia sin autorización puede estar
> prohibida en virtud de la legislación vigente. Si ha recibido este
> mensaje por error, le rogamos que nos lo comunique inmediatamente por
> esta misma vía y proceda a su destrucción.
>
> The information contained in this transmission is privileged and
> confidential information intended only for the use of the individual
or
> entity named above. If the reader of this message is not the intended
> recipient, you are hereby notified that any dissemination,
distribution
> or copying of this communication is strictly prohibited. If you have
> received this transmission in error, do not read it. Please
immediately
> reply to the sender that you have received this communication in error
> and then delete it.
>
> Esta mensagem e seus anexos se dirigem exclusivamente ao seu
> destinatário, pode conter informação privilegiada ou confidencial e é
> para uso exclusivo da pessoa ou entidade de destino. Se não é vossa
> senhoria o destinatário indicado, fica notificado de que a leitura,
> utilização, divulgação e/ou cópia sem autorização pode estar proibida
em
> virtude da legislação vigente. Se recebeu esta mensagem por erro,
> rogamos-lhe que nos o comunique imediatamente por esta mesma via e
> proceda a sua destruição
>
>
>
> --
> "Esta vez no fallaremos, Doctor Infierno"
>
> Dr Diego R. Lopez
> Telefonica I+D
> http://people.tid.es/diego.lopez/
>
> e-mail: diego.r.lopez@telefonica.com
> Tel:    +34 913 129 041
> Mobile: +34 682 051 091
> ----------------------------------
>
>
> ________________________________
>
> Este mensaje y sus adjuntos se dirigen exclusivamente a su
destinatario, puede contener información privilegiada o confidencial y
es para uso exclusivo de la persona o entidad de destino. Si no es
usted. el destinatario indicado, queda notificado de que la lectura,
utilización, divulgación y/o copia sin autorización puede estar
prohibida en virtud de la legislación vigente. Si ha recibido este
mensaje por error, le rogamos que nos lo comunique inmediatamente por
esta misma vía y proceda a su destrucción.
>
> The information contained in this transmission is privileged and
confidential information intended only for the use of the individual or
entity named above. If the reader of this message is not the intended
recipient, you are hereby notified that any dissemination, distribution
or copying of this communication is strictly prohibited. If you have
received this transmission in error, do not read it. Please immediately
reply to the sender that you have received this communication in error
and then delete it.
>
> Esta mensagem e seus anexos se dirigem exclusivamente ao seu
destinatário, pode conter informação privilegiada ou confidencial e é
para uso exclusivo da pessoa ou entidade de destino. Se não é vossa
senhoria o destinatário indicado, fica notificado de que a leitura,
utilização, divulgação e/ou cópia sem autorização pode estar proibida em
virtude da legislação vigente. Se recebeu esta mensagem por erro,
rogamos-lhe que nos o comunique imediatamente por esta mesma via e
proceda a sua destruição
>