Re: [secdir] Security review of draft-ietf-geopriv-pdif-lo-profile-14(resend)

"Hannes Tschofenig" <Hannes.Tschofenig@gmx.net> Fri, 02 January 2009 10:11 UTC

Return-Path: <secdir-bounces@ietf.org>
X-Original-To: secdir-archive@ietf.org
Delivered-To: ietfarch-secdir-archive@core3.amsl.com
Received: from [127.0.0.1] (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 5060F3A6999; Fri, 2 Jan 2009 02:11:26 -0800 (PST)
X-Original-To: secdir@core3.amsl.com
Delivered-To: secdir@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 96B863A6999 for <secdir@core3.amsl.com>; Fri, 2 Jan 2009 02:11:24 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.204
X-Spam-Level:
X-Spam-Status: No, score=-2.204 tagged_above=-999 required=5 tests=[AWL=0.395, BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ls8PqK2eLqSL for <secdir@core3.amsl.com>; Fri, 2 Jan 2009 02:11:23 -0800 (PST)
Received: from mail.gmx.net (mail.gmx.net [213.165.64.20]) by core3.amsl.com (Postfix) with SMTP id 3A8983A6906 for <secdir@ietf.org>; Fri, 2 Jan 2009 02:11:22 -0800 (PST)
Received: (qmail invoked by alias); 02 Jan 2009 10:11:09 -0000
Received: from a91-154-105-43.elisa-laajakaista.fi (EHLO 4FIL42860) [91.154.105.43] by mail.gmx.net (mp007) with SMTP; 02 Jan 2009 11:11:09 +0100
X-Authenticated: #29516787
X-Provags-ID: V01U2FsdGVkX1+/vsZeACe/YrBKpgAWcQO2F7MozAvounA4H7xV1D aOwtNHex7kiPvX
From: Hannes Tschofenig <Hannes.Tschofenig@gmx.net>
To: 'Patrick Cain' <pcain@coopercain.com>, martin.thomson@andrew.com, james.winterbottom@andrew.com
References: <013f01c96c4f$f5865ed0$e0931c70$@com>
Date: Fri, 02 Jan 2009 12:11:32 +0200
Message-ID: <01e701c96cc2$7f8222a0$0201a8c0@nsnintra.net>
MIME-Version: 1.0
X-Mailer: Microsoft Office Outlook 11
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2900.3350
In-Reply-To: <013f01c96c4f$f5865ed0$e0931c70$@com>
thread-index: AclP3fpZIOZKnRFLS9uHMmGOrLYfeAc5HvKQ
X-Y-GMX-Trusted: 0
X-FuHaFi: 0.57
Cc: geopriv-chairs@tools.ietf.org, iesg@ietf.org, secdir@ietf.org
Subject: Re: [secdir] Security review of draft-ietf-geopriv-pdif-lo-profile-14(resend)
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/pipermail/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Sender: secdir-bounces@ietf.org
Errors-To: secdir-bounces@ietf.org

Thanks for your review Patrick!
 

>-----Original Message-----
>From: secdir-bounces@ietf.org [mailto:secdir-bounces@ietf.org] 
>On Behalf Of Patrick Cain
>Sent: 01 January, 2009 22:31
>To: Hannes.Tschofenig@gmx.net; martin.thomson@andrew.com; 
>james.winterbottom@andrew.com
>Cc: geopriv-chairs@tools.ietf.org; iesg@ietf.org; secdir@ietf.org
>Subject: [secdir] Security review of 
>draft-ietf-geopriv-pdif-lo-profile-14(resend)
>
>[You may have seen this message before. Many recipients 
>apparently have not.
>:(  ]
>
>I have reviewed this document as part of the security 
>directorate's ongoing effort to review all IETF documents 
>being processed by the IESG.  These comments were written 
>primarily for the benefit of the security area directors.  
>Document editors and WG chairs should treat these comments 
>just like any other last call comments.
>
>Document synopsis (snipped):
>
>There is growing interest in being able to use location 
>information contained in a PIDF-LO for routing applications.  
>To allow successful interoperability between applications, 
>location information needs to be normative and more tightly 
>constrained than is currently specified in the RFC 4119 
>(PIDF-LO).  This document makes recommendations on how to 
>constrain, represent and interpret locations in a PIDF-LO.
>
>-----
>
>The document looks fine to me from a security standpoint. The 
>security considerations correctly points out that this is 
>mostly a formatting document and other places define and 
>recommend proper usage and protection of the data.
>
>Pat Cain
>
>_______________________________________________
>secdir mailing list
>secdir@ietf.org
>https://www.ietf.org/mailman/listinfo/secdir
>

_______________________________________________
secdir mailing list
secdir@ietf.org
https://www.ietf.org/mailman/listinfo/secdir