[secdir] Secdir review of draft-ietf-ecrit-ecall-21

zhangdacheng <dacheng.zhang@huawei.com> Thu, 05 January 2017 03:42 UTC

Return-Path: <dacheng.zhang@huawei.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 226DA129448; Wed, 4 Jan 2017 19:42:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.32
X-Spam-Level:
X-Spam-Status: No, score=-7.32 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, RP_MATCHES_RCVD=-3.1, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id yUaxttD5VkL5; Wed, 4 Jan 2017 19:42:35 -0800 (PST)
Received: from lhrrgout.huawei.com (lhrrgout.huawei.com [194.213.3.17]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 39DF6126CD8; Wed, 4 Jan 2017 19:42:35 -0800 (PST)
Received: from 172.18.7.190 (EHLO lhreml708-cah.china.huawei.com) ([172.18.7.190]) by lhrrg02-dlp.huawei.com (MOS 4.3.7-GA FastPath queued) with ESMTP id CYG60084; Thu, 05 Jan 2017 03:42:33 +0000 (GMT)
Received: from SZXEMI412-HUB.china.huawei.com (10.86.210.35) by lhreml708-cah.china.huawei.com (10.201.5.202) with Microsoft SMTP Server (TLS) id 14.3.301.0; Thu, 5 Jan 2017 03:42:32 +0000
Received: from SZXEMI502-MBX.china.huawei.com ([169.254.5.216]) by szxemi412-hub.china.huawei.com ([10.86.210.35]) with mapi id 14.03.0235.001; Thu, 5 Jan 2017 11:42:28 +0800
From: zhangdacheng <dacheng.zhang@huawei.com>
To: secdir <secdir@ietf.org>
Thread-Topic: Secdir review of draft-ietf-ecrit-ecall-21
Thread-Index: AdJnBG+gbmu/FF/IT9OUyRIsRQ3NAg==
Date: Thu, 05 Jan 2017 03:42:27 +0000
Message-ID: <879E76B64CF340468BF5E4DE504C2242C1364E@szxemi502-mbx.china.huawei.com>
Accept-Language: zh-CN, en-US
Content-Language: zh-CN
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.130.167.227]
Content-Type: multipart/alternative; boundary="_000_879E76B64CF340468BF5E4DE504C2242C1364Eszxemi502mbxchina_"
MIME-Version: 1.0
X-CFilter-Loop: Reflected
X-Mirapoint-Virus-RAPID-Raw: score=unknown(0), refid=str=0001.0A020203.586DC0A9.01CD, ss=1, re=0.000, recu=0.000, reip=0.000, cl=1, cld=1, fgs=0, ip=169.254.5.216, so=2013-06-18 04:22:30, dmn=2013-03-21 17:37:32
X-Mirapoint-Loop-Id: 86924388571e4f5a55be8152775f17b1
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/1evnF7J7mKKbsa-puc7u1ETQEiU>
Cc: "draft-ietf-ecrit-ecall.all@ietf.org" <draft-ietf-ecrit-ecall.all@ietf.org>, The IESG <iesg@ietf.org>
Subject: [secdir] Secdir review of draft-ietf-ecrit-ecall-21
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 05 Jan 2017 03:42:37 -0000

I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG. These comments were written primarily for the benefit of the security area directors. Document editors and WG chairs should treat these comments just like any other last call comments.


The security considerations cites multiple RFCs. In those RFCs, the security issues related with this work are extensively discussed, although I have to look up those RFCs to find out how to deal with, for example, DDoS attacks.

I think it would really helpful if authors can briefly introduce what issues are discuss in those RFCs. Apart from this, this document is ready for publication.