[secdir] secdir review of draft-ietf-precis-7700bis-07

Daniel Migault <daniel.migault@ericsson.com> Fri, 09 June 2017 17:05 UTC

Return-Path: <mglt.ietf@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BAF5E1292AE; Fri, 9 Jun 2017 10:05:00 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.399
X-Spam-Level:
X-Spam-Status: No, score=-2.399 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FREEMAIL_FORGED_FROMDOMAIN=0.199, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xbW63O6bLtjl; Fri, 9 Jun 2017 10:04:58 -0700 (PDT)
Received: from mail-lf0-x231.google.com (mail-lf0-x231.google.com [IPv6:2a00:1450:4010:c07::231]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EDCCC126C89; Fri, 9 Jun 2017 10:04:57 -0700 (PDT)
Received: by mail-lf0-x231.google.com with SMTP id m77so7493099lfe.0; Fri, 09 Jun 2017 10:04:57 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:sender:from:date:message-id:subject:to:cc; bh=ZB6dRgA5+7jxfnaJ1b+0+9R3Jvpf+eoEgu8V+kNLnPY=; b=r1BUwd0QMZeXNpO8Nv6KmfZXPwzAY3MC2YdPtboXVill4GOVe3rSJQQJx20SbZRtT4 el2MxABCyGNJdqLMRr9JEzzFINYsFREj50Wnw2KS0Dg1YWSg+Vz0sh1NI7MnE9nV6vfe v/mUdq4vrpfgaLoohFa9k96ngDeZiv7qEw60D8/TsANX59E+JYGVGIB72wU0CJrluLyG hVrl9jeh3uo7DJPOe8lSlonBnjFd5c1+xSs5NRIBlf5A62hExkbCICMld/EzstmTdg7b pU4nJbOLg9S6ZIw8ZKVdsIkRrnXYpSjFRFGs9OxTAQg9MvLNlavURjfcjd9oOmthGUXZ 6CFQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:sender:from:date:message-id:subject :to:cc; bh=ZB6dRgA5+7jxfnaJ1b+0+9R3Jvpf+eoEgu8V+kNLnPY=; b=jVGPkD4OAFlbrfYYROy1QtnYEVFcI7sjBFv9xN13S3dGrGIF4m/4RGCuQYem6E1qAx 29g6ae0jNpwPb+kpSIgxKK+uRc5TQOSDvaVRV4S/2Nka/W0AwTy8CmTdVhBe2ZBzpLbA +rjuZlAMG2lRLbHl4VLjBrMFzsvh1LGLSrb/hoyC3o2Gt3CjNX7x5ZrCSeN8TJXckYyh PPmMmreaD+l4xtghTsUl7JIUnEPlbPLDSOz8w3SR8hjKKe0StYXcfQK7XjjvLLoT21ch CqnHaBbZCFXsQPofVqKKg/CmlcnyZEKxBl6vl08TvpeheGms1LVS8fEX0znCIbsT5YJ6 7CwA==
X-Gm-Message-State: AODbwcDP3Fpbo2Dvmp3zFw0/vpRMA+VIxZ4upHf9FCiA49QnAugDydpg ALrNUirrD+gjFxLtaKiwvb3nDANi3wHY
X-Received: by 10.46.1.155 with SMTP id f27mr8389592lji.55.1497027895883; Fri, 09 Jun 2017 10:04:55 -0700 (PDT)
MIME-Version: 1.0
Sender: mglt.ietf@gmail.com
Received: by 10.46.0.30 with HTTP; Fri, 9 Jun 2017 10:04:55 -0700 (PDT)
From: Daniel Migault <daniel.migault@ericsson.com>
Date: Fri, 09 Jun 2017 13:04:55 -0400
X-Google-Sender-Auth: GOjk1Lsq3IMA3jLDAEvjb092rmw
Message-ID: <CADZyTkkXvF9RQ1BmnJCjbZ9tR=8DYE004r2zeT3L3d24mDZPMg@mail.gmail.com>
To: secdir@ietf.org
Cc: The IESG <iesg@ietf.org>, draft-ietf-precis-7700bis.all@ietf.org
Content-Type: multipart/alternative; boundary="001a1142c5b2f3ff37055189f78c"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/57U6wgLkyQb5UiNJ8gOpFxFWXkw>
Subject: [secdir] secdir review of draft-ietf-precis-7700bis-07
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 09 Jun 2017 17:05:01 -0000

Hi,

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the
IESG.  These comments were written primarily for the benefit of the
security area directors.  Document editors and WG chairs should treat
these comments just like any other last call comments.

The summary of the review is READY


nits:

COMMENT A)

"""
2.1.  Rules

   The following rules apply within the Nickname profile of the PRECIS
   FreeformClass.
"""

I might be helpful to add the reference to RFC7564 after the FreeformClass
as you did in section 2.2. Another way could also to assume in the
introduction the reader is familiar with RFC7564. I also agree RFC7564 is
mentioned in the terminology section.

COMMENT B)

"""
 4.  Normalization Rule: Apply Unicode Normalization Form KC.  Because
"""

Two unexpected white spaces. Can be fixed by rfc-editor

COMMENT C)

"""
6.  Security Considerations

6.3.  Visually Similar Characters
"""

Maybe a reference to the example section with the names 5/7 or 6/7 can
illustrate that the current profile does not prevent visually similar
characters.