Re: [savi] Status of draft-ietf-savi-threat-scope

Stephen Farrell <stephen.farrell@cs.tcd.ie> Mon, 20 June 2011 18:12 UTC

Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: savi@ietfa.amsl.com
Delivered-To: savi@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4354D11E819E for <savi@ietfa.amsl.com>; Mon, 20 Jun 2011 11:12:44 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -106.154
X-Spam-Level:
X-Spam-Status: No, score=-106.154 tagged_above=-999 required=5 tests=[AWL=0.445, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id g6SdknFARJsq for <savi@ietfa.amsl.com>; Mon, 20 Jun 2011 11:12:42 -0700 (PDT)
Received: from scss.tcd.ie (hermes.cs.tcd.ie [134.226.32.56]) by ietfa.amsl.com (Postfix) with ESMTP id 9223011E81B7 for <savi@ietf.org>; Mon, 20 Jun 2011 11:12:42 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by hermes.scss.tcd.ie (Postfix) with ESMTP id 24C8A171C19; Mon, 20 Jun 2011 19:12:20 +0100 (IST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cs.tcd.ie; h= content-transfer-encoding:content-type:in-reply-to:references :subject:mime-version:user-agent:from:date:message-id:received :received:x-virus-scanned; s=cs; t=1308593539; bh=EPrn2ImEMTH5KO 4Y80UTrOayraG4tIhntuGik5RC0h4=; b=nv2tdsmqgHVaBBfgy4Kc1BOjjUHUso wBmNgflOF2tvUbGTnuPxj4qElQQJcEoWp5DDfJGoS3R1vw6o+UES8URaPwEeqiZm iKVT+AuAU92v7ARB2hoVAGWOSRTkd0/e/0ks/8F2m82feV6JXZYvz9/oL7mtzNGZ 92J+gxEt5anJZh1qYjzvkFlpPy05Ea77VErXc0/ykcrVUXS8vrnlzw52Ir3HwQdg Rj8yMw1rX8993cDv4h+QMXN6QFeMBc2O+TeOW0vy0GL9y6OL/9sCMm8sCFrp5QX4 s+D/kWJBp37eM1Ar+1DH7DJsP4VoWIYjFjyxQzt52AqiarQMrCM+59zA==
X-Virus-Scanned: Debian amavisd-new at scss.tcd.ie
Received: from scss.tcd.ie ([127.0.0.1]) by localhost (scss.tcd.ie [127.0.0.1]) (amavisd-new, port 10027) with ESMTP id kyKSk3BG3qnY; Mon, 20 Jun 2011 19:12:19 +0100 (IST)
Received: from [134.226.36.137] (stephen-samy.dsg.cs.tcd.ie [134.226.36.137]) by smtp.scss.tcd.ie (Postfix) with ESMTPSA id 72D11171C18; Mon, 20 Jun 2011 19:12:18 +0100 (IST)
Message-ID: <4DFF8D82.5080001@cs.tcd.ie>
Date: Mon, 20 Jun 2011 19:12:18 +0100
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
User-Agent: Mozilla/5.0 (X11; U; Linux i686; en-US; rv:1.9.2.17) Gecko/20110424 Lightning/1.0b2 Thunderbird/3.1.10
MIME-Version: 1.0
To: Jean-Michel Combes <jeanmichel.combes@gmail.com>
References: <20110526184749.21820.68101.idtracker@ietfa.amsl.com> <4DE34147.8070103@piuha.net> <4DE3A604.8080807@joelhalpern.com> <BANLkTiky5iejz2gnL=tgt4u+-52OZ-pQJA@mail.gmail.com> <4DFA7585.4060406@cs.tcd.ie> <BANLkTing6OAcmmY_W2UuEnb6S8rsrysSUw@mail.gmail.com> <4DFF6EBC.9080406@cs.tcd.ie> <BANLkTimce51=a_K25gJxYSWL6heaD0FcoA@mail.gmail.com>
In-Reply-To: <BANLkTimce51=a_K25gJxYSWL6heaD0FcoA@mail.gmail.com>
X-Enigmail-Version: 1.1.1
Content-Type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: 7bit
Cc: SAVI Mailing List <savi@ietf.org>, draft-ietf-savi-threat-scope@tools.ietf.org
Subject: Re: [savi] Status of draft-ietf-savi-threat-scope
X-BeenThere: savi@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Mailing list for the SAVI working group at IETF <savi.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/savi>, <mailto:savi-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/savi>
List-Post: <mailto:savi@ietf.org>
List-Help: <mailto:savi-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/savi>, <mailto:savi-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 20 Jun 2011 18:12:44 -0000

Hiya,

On 20/06/11 18:55, Jean-Michel Combes wrote:
> Stephen, fine! I will check carefully this point during my future reviews.

Lovely.

> Now, coming back on the Threats document, do you think some text is
> not compliant with your requirement?

I think my discuss points 3, 18 and 21 for this document are the
relevant ones. With our current understanding they should be
easy fixes.

Cheers,
S.

> 
> Thanks in advance.
> 
> Best regards.
> 
> JMC.
> 
> 2011/6/20 Stephen Farrell <stephen.farrell@cs.tcd.ie>:
>>
>>
>> On 20/06/11 16:25, Jean-Michel Combes wrote:
>>> Hi Stephen,
>>>
> 
> [snip]
> 
>>>>
>>>> So I think that given that the charter and rfc 2804 have
>>>> IETF consensus that would trump even a quite strong WG
>>>> consensus on this topic. Hence my discuss.
>>>>
>>>
>>> What can be done in the different SAVI documents, is to restrict
>>> logging only when an incident has been detected (i.e. use of an IP
>>> address not allowed on a binding anchor).
>>>
>>> Would it be fine for you?
>>
>> Only logging when an incident has been detected sounds
>> perfect to me.
>>
>> Thanks for considering this,
>> Regards,
>> Stephen.
>>
>>
> 
> [snip]
> _______________________________________________
> savi mailing list
> savi@ietf.org
> https://www.ietf.org/mailman/listinfo/savi
>