Re: Roman Danyliw's Yes on draft-ietf-quic-transport-33: (with COMMENT)

Christian Huitema <huitema@huitema.net> Wed, 06 January 2021 00:31 UTC

Return-Path: <huitema@huitema.net>
X-Original-To: quic@ietfa.amsl.com
Delivered-To: quic@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 321393A0FD6 for <quic@ietfa.amsl.com>; Tue, 5 Jan 2021 16:31:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.151
X-Spam-Level:
X-Spam-Status: No, score=-2.151 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, NICE_REPLY_A=-0.262, SPF_HELO_NONE=0.001, T_SPF_PERMERROR=0.01] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id idAaRGNuLljG for <quic@ietfa.amsl.com>; Tue, 5 Jan 2021 16:31:39 -0800 (PST)
Received: from mx36-out10.antispamcloud.com (mx36-out10.antispamcloud.com [209.126.121.30]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 00F9A3A0FC5 for <quic@ietf.org>; Tue, 5 Jan 2021 16:31:38 -0800 (PST)
Received: from xse340.mail2web.com ([66.113.197.86] helo=xse.mail2web.com) by mx135.antispamcloud.com with esmtp (Exim 4.92) (envelope-from <huitema@huitema.net>) id 1kwwje-000KPG-Vq for quic@ietf.org; Wed, 06 Jan 2021 01:31:36 +0100
Received: from xsmtp22.mail2web.com (unknown [10.100.68.61]) by xse.mail2web.com (Postfix) with ESMTPS id 4D9VfW75VRz1kvZ for <quic@ietf.org>; Tue, 5 Jan 2021 16:31:31 -0800 (PST)
Received: from [10.5.2.31] (helo=xmail09.myhosting.com) by xsmtp22.mail2web.com with esmtps (TLS1.0:DHE_RSA_AES_256_CBC_SHA1:256) (Exim 4.92) (envelope-from <huitema@huitema.net>) id 1kwwjb-00052P-TO for quic@ietf.org; Tue, 05 Jan 2021 16:31:31 -0800
Received: (qmail 32286 invoked from network); 6 Jan 2021 00:31:31 -0000
Received: from unknown (HELO [192.168.1.106]) (Authenticated-user:_huitema@huitema.net@[172.58.43.253]) (envelope-sender <huitema@huitema.net>) by xmail09.myhosting.com (qmail-ldap-1.03) with ESMTPA for <quic@ietf.org>; 6 Jan 2021 00:31:30 -0000
Subject: Re: Roman Danyliw's Yes on draft-ietf-quic-transport-33: (with COMMENT)
To: Roman Danyliw <rdd@cert.org>, The IESG <iesg@ietf.org>
Cc: quic@ietf.org
References: <160988707394.22369.1941637915786774837@ietfa.amsl.com>
From: Christian Huitema <huitema@huitema.net>
Message-ID: <884764e8-5f41-8cf4-e9b8-ee2ed86e8979@huitema.net>
Date: Tue, 05 Jan 2021 16:31:30 -0800
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Thunderbird/78.5.1
MIME-Version: 1.0
In-Reply-To: <160988707394.22369.1941637915786774837@ietfa.amsl.com>
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Transfer-Encoding: 8bit
Content-Language: en-US
X-Originating-IP: 66.113.197.86
X-Spampanel-Domain: xsmtpout.mail2web.com
X-Spampanel-Username: 66.113.197.0/24
Authentication-Results: antispamcloud.com; auth=pass smtp.auth=66.113.197.0/24@xsmtpout.mail2web.com
X-Spampanel-Outgoing-Class: unsure
X-Spampanel-Outgoing-Evidence: Combined (0.12)
X-Recommended-Action: accept
X-Filter-ID: Pt3MvcO5N4iKaDQ5O6lkdGlMVN6RH8bjRMzItlySaT/715jNXzLb0A0Xao6pC2RQPUtbdvnXkggZ 3YnVId/Y5jcf0yeVQAvfjHznO7+bT5x6h2yQpzTslcOqazQkKtAFKj/EwzSHE5FGYwwjsNRPCLCX LVqcufae2TcfKl+BOFHmD6wdmZPcItWbGe10hXJtXL4FsauCVkDjmcYJdU3yWp7KuHNaaKdg7iBE ZefdsNUFWKwa/wzJUjmazeC7ImcaSiHjxvv4gKLTeB2fpVmS6BQ6V51u76v35b1wNe/MvdL/hXir I7jpLA3NtNK1rbkD2+J9PgaoF8SQHto3le4zsHTaeQtlKubP6iUTjj6yPARK6buALVaA782LKxg6 vRmng8N1aLhXqdc+jC1RcnVud53D5caUhbVtvqItBqoizkEt9O20UjkwI0v+LOlw05G4BS+iyyNq bT8dUMXMJ4tUCMj6G37ZfAMLceP5aNHPt26RBupu5v1nytoNnc138GfEJRQ2qC7jjynPIHPNqSn4 QTXUjLjYWQt1/5xnQymMoPsgr/U0flMcy2Vi/IcBgY4arPaiJ1W6hAyiRC61jekdwIcXNugoOEbH RyFULpSjm7jZ1h/HfDRQ5Ig8VhPsPE8NlkBmbR1LS6Kx8w5MHqDEE4cL+lg4hGsxmggEv31pu5IS YBhN7CfbaP86RxCYWh1bDRojSVizNl0ce/s7u0P9b7Oijoc3SCZfWp1RjkjWCw/vIUzTXkDAiiJi mGhLUFuS2lhaIetXfCg1JdAVrOwKfMAV7ZlUi5TdtoUl4EPIZ2xUoFIvD3sIcP1fhJPM6B/8fKdM ANE27rR2zRqoKS88mt8eNBfo7IYMceaq5wRWPc837Fo9Xqg2bQC831cpDah1trxuvWYVk2c+lk2U GGxpe20AuXq0T17woJo3avKeADIsy647Mn0zwmGzAi3Zn+YdthRNgs7Ig4l/XErpYn3glZTKFuaT l19W3ISq9+1KiLsESGU+y+fjdgjudZxiTPi+MG1QP35nsYfP84c+RFK3KiZuZ5OAUoGBziSYFLZu u6zX3xxsmqT8l9ARlsTalAaf
X-Report-Abuse-To: spam@quarantine11.antispamcloud.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic/LlP_3WIFennNO_gopY85ZD-OD4A>
X-BeenThere: quic@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Main mailing list of the IETF QUIC working group <quic.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic>, <mailto:quic-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic/>
List-Post: <mailto:quic@ietf.org>
List-Help: <mailto:quic-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic>, <mailto:quic-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 06 Jan 2021 00:31:40 -0000

On 1/5/2021 2:51 PM, Roman Danyliw via Datatracker wrote:
> ...
>
> ** Section 21.5.  Per “QUIC servers SHOULD NOT be deployed in networks that
> also have inadequately secured UDP endpoints”, I was wondering if this caution
> is a realistic.

It better be. It is one of those "SHOULD NOT AND WE REALLY MEAN IT". We 
may also want to say something here about taking section 21.5.6 seriously.

-- Christian Huitema