Re: [radext] Suresh Krishnan's No Objection on draft-ietf-radext-ip-port-radius-ext-11: (with COMMENT)

<mohamed.boucadair@orange.com> Wed, 05 October 2016 13:59 UTC

Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: radext@ietfa.amsl.com
Delivered-To: radext@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4AE3C129717; Wed, 5 Oct 2016 06:59:03 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.619
X-Spam-Level:
X-Spam-Status: No, score=-2.619 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 54TXicc_-uHa; Wed, 5 Oct 2016 06:58:59 -0700 (PDT)
Received: from relais-inet.francetelecom.com (relais-ias91.francetelecom.com [193.251.215.91]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EB217129715; Wed, 5 Oct 2016 06:58:58 -0700 (PDT)
Received: from omfedm08.si.francetelecom.fr (unknown [xx.xx.xx.4]) by omfedm10.si.francetelecom.fr (ESMTP service) with ESMTP id 6824F26578F; Wed, 5 Oct 2016 15:58:57 +0200 (CEST)
Received: from Exchangemail-eme2.itn.ftgroup (unknown [10.114.31.19]) by omfedm08.si.francetelecom.fr (ESMTP service) with ESMTP id 3946F238071; Wed, 5 Oct 2016 15:58:57 +0200 (CEST)
Received: from OPEXCLILMA3.corporate.adroot.infra.ftgroup ([fe80::60a9:abc3:86e6:2541]) by OPEXCLILM44.corporate.adroot.infra.ftgroup ([fe80::b08d:5b75:e92c:a45f%18]) with mapi id 14.03.0319.002; Wed, 5 Oct 2016 15:58:56 +0200
From: mohamed.boucadair@orange.com
To: Suresh Krishnan <suresh.krishnan@ericsson.com>
Thread-Topic: Suresh Krishnan's No Objection on draft-ietf-radext-ip-port-radius-ext-11: (with COMMENT)
Thread-Index: AQHR+QQj+hLVw3tlXkWOuHlKIm5Px6CaLntg
Date: Wed, 05 Oct 2016 13:58:55 +0000
Message-ID: <75698fc6-9d4d-4a62-9219-973a3019e887@OPEXCLILM44.corporate.adroot.infra.ftgroup>
References: <147149243113.23694.15020227285534665980.idtracker@ietfa.amsl.com>
In-Reply-To: <147149243113.23694.15020227285534665980.idtracker@ietfa.amsl.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.168.234.1]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-PMX-Version: 6.2.1.2478543, Antispam-Engine: 2.7.2.2107409, Antispam-Data: 2016.6.17.114517
Archived-At: <https://mailarchive.ietf.org/arch/msg/radext/xzecbWSuuAf78clDWpn7G-Q-s-U>
Cc: The IESG <iesg@ietf.org>, "draft-ietf-radext-ip-port-radius-ext@ietf.org" <draft-ietf-radext-ip-port-radius-ext@ietf.org>, MORAND Lionel IMT/OLN <lionel.morand@orange.com>, "radext-chairs@ietf.org" <radext-chairs@ietf.org>, "radext@ietf.org" <radext@ietf.org>
Subject: Re: [radext] Suresh Krishnan's No Objection on draft-ietf-radext-ip-port-radius-ext-11: (with COMMENT)
X-BeenThere: radext@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: RADIUS EXTensions working group discussion list <radext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/radext>, <mailto:radext-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/radext/>
List-Post: <mailto:radext@ietf.org>
List-Help: <mailto:radext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/radext>, <mailto:radext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 05 Oct 2016 13:59:03 -0000

Hi Suresh, 

Thank you for the review. 

Please see inline for more details.

Cheers,
Med

> -----Message d'origine-----
> De : Suresh Krishnan [mailto:suresh.krishnan@ericsson.com]
> Envoyé : jeudi 18 août 2016 05:54
> À : The IESG
> Cc : draft-ietf-radext-ip-port-radius-ext@ietf.org; radext@ietf.org;
> radext-chairs@ietf.org; MORAND Lionel IMT/OLN; radext@ietf.org
> Objet : Suresh Krishnan's No Objection on draft-ietf-radext-ip-port-
> radius-ext-11: (with COMMENT)
> 
> Suresh Krishnan has entered the following ballot position for
> draft-ietf-radext-ip-port-radius-ext-11: No Objection
> 
> When responding, please keep the subject line intact and reply to all
> email addresses included in the To and CC lines. (Feel free to cut this
> introductory paragraph, however.)
> 
> 
> Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
> for more information about IESG DISCUSS and COMMENT positions.
> 
> 
> The document, along with other ballot positions, can be found here:
> https://datatracker.ietf.org/doc/draft-ietf-radext-ip-port-radius-ext/
> 
> 
> 
> ----------------------------------------------------------------------
> COMMENT:
> ----------------------------------------------------------------------
> 
> * Why are the the uint8 and unit16 based types getting stuffed into 32
> bit fields inside the TLVs? This feels like a complete waste. Is there
> any specific reason this is required?

[Med] Added this new text: 

The attribute is encoded in 32
   bits as per the recommendation in Appendix A.2.1 of [RFC6158].

> 
> * Does the IP-Port-Limit include the count of ports already allocated
> through the IP-Port-Forwarding-Map or not?

[Med] Added this clarification:

         This limit applies to all
         mappings that can be instantiated by an underlying address
         sharing device without soliciting any external entity.  In
         particular, this limit does not include the ports that are
         instructed by an AAA server.

A new revision integrating your comments is available online. FWIW, a diff to track the changes: https://www.ietf.org/rfcdiff?url1=draft-ietf-radext-ip-port-radius-ext-12&url2=draft-ietf-radext-ip-port-radius-ext-13   

> 
> * I agree with Alissa's DISCUSS points about the lack of error handling
> and the privacy issues and Mirja's DISCUSS point about restricting
> transport protocols to TCP and UDP.

[Med] Those are discussed in other threads.