[Roll] NSA extn review

Rahul Jadhav <nyrahul@outlook.com> Fri, 27 September 2019 01:26 UTC

Return-Path: <nyrahul@outlook.com>
X-Original-To: roll@ietfa.amsl.com
Delivered-To: roll@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3431B12013C for <roll@ietfa.amsl.com>; Thu, 26 Sep 2019 18:26:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.025
X-Spam-Level:
X-Spam-Status: No, score=-2.025 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.026, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=outlook.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ZAYBOHJNFJxd for <roll@ietfa.amsl.com>; Thu, 26 Sep 2019 18:26:57 -0700 (PDT)
Received: from APC01-SG2-obe.outbound.protection.outlook.com (mail-oln040092253104.outbound.protection.outlook.com [40.92.253.104]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D45F1120020 for <roll@ietf.org>; Thu, 26 Sep 2019 18:26:56 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=j3GFF/BwPM4mLXfVtFVD2BG9cS9Be9GhDy3y5PwOYjftvcEqI2YwC7oZTF6Ux7PYklX4/MgJVeAvpyYkHaZ/efgnJqrD11At4K9gEeo0dwBwl4omKC622h/YvtJyb2/m7l5FruBSJtiYw16b2IZvkA/pcHoPNzgScUP8FysiQsk5DSjrTZwwDf+8hsk0JDGOvD9N5LanSg/INXX6kPoYRdqN7HUCvCDOlhufKmN4RD11cZajzru7GVL2UozGayGEJKzvYPk9+syYscIkF9Y4q5VXWYkLBcvPLfilVCr+LyCmrTkYmuyKxcW9uXcFxtE0AdcHlfLyUzHuR7E20KhoDA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=s1Dbi5vXYzcRWjd6remWTAKofFvCIJGxUWAKOHricKg=; b=f69X+dxt3LMyW4Mq+0LU4UkiVqQd9UaFRHBWDVE76yfHnt5GoTLhA/GvXhYAK3LTpsTFob9tLzKgECbZrYMu4KHVdwa5VeBoMqdOlHiRijRJzB4g2cywNcoIZVIORT5kzyx2x2dfv+1Nckoctx6p9TbaGC2jzXQxqGgPt3/nAgaWiV0vfXJDmVj46u9pysfgtm5r9bOS8bbPP4TvvT7suPuaeQT6RWXvN6ZE/bP3e061xyc9mc/Oij1486z2N3KKhsHSnkM9RXCMevEK2KqKXA+RkxrUUyCdzk3N8BfFGQt+AzOYx+i6lGLUlBKaRK4qyUn4NU0hwfRmnreqA7hS3w==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=none; dmarc=none; dkim=none; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=outlook.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=s1Dbi5vXYzcRWjd6remWTAKofFvCIJGxUWAKOHricKg=; b=V3CMljyNFB3S3LZmA5VTfxANUNZBofTGtvdwnNo/oyEzuXM9QNrOdlgTZGEzwczQYHVzcFQB8oj4yRARcJZ0D7Xv/ub14oI9wrYqDBiTbJeIj2EOZrzQv4Vdr15nujqePK0JEvuyxyrNoWRTEJiL/Stt+TVm4EeSg00LKstL+SJWt3upI/qH4Prejso81bGJGGw+/FpPtnvyFNT9YGkriSexLQscNJPa5VB7Db9ptNHbOR1XpVKfnZDCCdNba9xeSkf4ewncx50dnyjN0MKTGx+kCytcKSFSPWbp3X9HN3dUoM00EY+3ZoUgyKX/rSmeml6K3LCWyoCHqpwtA7c0tA==
Received: from SG2APC01FT012.eop-APC01.prod.protection.outlook.com (10.152.250.60) by SG2APC01HT096.eop-APC01.prod.protection.outlook.com (10.152.251.174) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.20.2305.15; Fri, 27 Sep 2019 01:26:54 +0000
Received: from BM1PR01MB2612.INDPRD01.PROD.OUTLOOK.COM (10.152.250.53) by SG2APC01FT012.mail.protection.outlook.com (10.152.250.184) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.20.2305.15 via Frontend Transport; Fri, 27 Sep 2019 01:26:54 +0000
Received: from BM1PR01MB2612.INDPRD01.PROD.OUTLOOK.COM ([fe80::4cdc:d4ce:1df5:c441]) by BM1PR01MB2612.INDPRD01.PROD.OUTLOOK.COM ([fe80::4cdc:d4ce:1df5:c441%3]) with mapi id 15.20.2284.023; Fri, 27 Sep 2019 01:26:54 +0000
From: Rahul Jadhav <nyrahul@outlook.com>
To: Routing Over Low power and Lossy networks <roll@ietf.org>
Thread-Topic: NSA extn review
Thread-Index: AQHVdMuVtXjwnXoULEiXZiBZ5jkGkQ==
Date: Fri, 27 Sep 2019 01:26:54 +0000
Message-ID: <BM1PR01MB26128F018BFC1088353F7541A9810@BM1PR01MB2612.INDPRD01.PROD.OUTLOOK.COM>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-incomingtopheadermarker: OriginalChecksum:B15D7CEE40B82C204B3393D5E26DE0BEA993B7F8B544AB5569C8AA344BFFFF07; UpperCasedChecksum:300FAA157E0A0C10CB193731CFA81C40AE70D9E23EEEC44430513AEDEFD5B4F9; SizeAsReceived:6705; Count:41
x-tmn: [cr62fd79w1JlWVx4hEy/I60Y7xpeuwgXOnZ2vGwyhunSpt10Y7A2KsFH9qKh4zTMAbdkjn1mjU0=]
x-ms-publictraffictype: Email
x-incomingheadercount: 41
x-eopattributedmessage: 0
x-ms-traffictypediagnostic: SG2APC01HT096:
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: IctJW6oRQr7ULCF+OclvE8dsVw4nCBdmYemK5cnW+MkMD2+a1c0isjJXSPIC4/kzobdYZTZJQ2fFGt7Zo0GtHxb78dyO0HYXX89G8YCU+ytTO7LzuavO+xH+TNVdxkUBOVWEmqFzeoQ8dcN00NPcjDTQe5DMnig25vkYE+DUUYUoWSfj8EuluSDL777kRU3b
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_BM1PR01MB26128F018BFC1088353F7541A9810BM1PR01MB2612INDP_"
MIME-Version: 1.0
X-OriginatorOrg: outlook.com
X-MS-Exchange-CrossTenant-RMS-PersistedConsumerOrg: 00000000-0000-0000-0000-000000000000
X-MS-Exchange-CrossTenant-Network-Message-Id: 3ee5e558-1be5-4197-85ce-08d742e9c7d2
X-MS-Exchange-CrossTenant-rms-persistedconsumerorg: 00000000-0000-0000-0000-000000000000
X-MS-Exchange-CrossTenant-originalarrivaltime: 27 Sep 2019 01:26:54.2690 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Internet
X-MS-Exchange-CrossTenant-id: 84df9e7f-e9f6-40af-b435-aaaaaaaaaaaa
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SG2APC01HT096
Archived-At: <https://mailarchive.ietf.org/arch/msg/roll/Y-zFm6XQPwwMYRqTQYbyBwe9Qm4>
Subject: [Roll] NSA extn review
X-BeenThere: roll@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Routing Over Low power and Lossy networks <roll.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/roll>, <mailto:roll-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/roll/>
List-Post: <mailto:roll@ietf.org>
List-Help: <mailto:roll-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/roll>, <mailto:roll-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 27 Sep 2019 01:26:59 -0000

Hello, Authors of NSA-extension,

I agreed to review the document in IETF105 and would like to provide my comments.

But before going into details, will it be possible to upload the XML version of the draft to the datatracker? Unlike other drafts, I do not see the XML form of this draft! Also, it would be much efficient if we sync using GitHub repo (where I can send PR for you to review).

My primary point of discussion would be the way MRHoF is handled in the draft.
The current text/OF described in the document seems insufficient.
MRHOF makes sense only for metrics that are additive in nature. The CAOFs presented in the document are not additive, and the text simply tries to somehow fit MRHOF in the context.

The draft reserves different OCPs for different Common Ancestor Policies (Strict, Medium, Relaxed). I thought that the policies are local in nature and different nodes in the same instance could use different policies. If we use different OCPs, then this is not possible. It is impractical to assume that certain policies (such as CA Strict policy) can be enforced using OCP.

The promiscuous overhearing assumes different security settings. I read the refed draft in 6tisch and it explains the assumptions, however, I believe it is better we explain the security implication of promiscuous overhearing in the security considerations in this draft.

Regards,
Rahul