[secdir] secdir review of draft-ietf-netext-pmip-lr-08

Carl Wallace <carl@redhoundsoftware.com> Tue, 28 February 2012 13:00 UTC

Return-Path: <carl@redhoundsoftware.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 12D5421F85C0 for <secdir@ietfa.amsl.com>; Tue, 28 Feb 2012 05:00:12 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level:
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ok6Px2A7CvjZ for <secdir@ietfa.amsl.com>; Tue, 28 Feb 2012 05:00:11 -0800 (PST)
Received: from mail-vw0-f44.google.com (mail-vw0-f44.google.com [209.85.212.44]) by ietfa.amsl.com (Postfix) with ESMTP id 1820F21F8559 for <secdir@ietf.org>; Tue, 28 Feb 2012 05:00:10 -0800 (PST)
Received: by vbbez10 with SMTP id ez10so2245944vbb.31 for <secdir@ietf.org>; Tue, 28 Feb 2012 05:00:10 -0800 (PST)
Received-SPF: pass (google.com: domain of carl@redhoundsoftware.com designates 10.52.69.116 as permitted sender) client-ip=10.52.69.116;
Authentication-Results: mr.google.com; spf=pass (google.com: domain of carl@redhoundsoftware.com designates 10.52.69.116 as permitted sender) smtp.mail=carl@redhoundsoftware.com
Received: from mr.google.com ([10.52.69.116]) by 10.52.69.116 with SMTP id d20mr12855849vdu.58.1330434010574 (num_hops = 1); Tue, 28 Feb 2012 05:00:10 -0800 (PST)
Received: by 10.52.69.116 with SMTP id d20mr10624911vdu.58.1330434010534; Tue, 28 Feb 2012 05:00:10 -0800 (PST)
Received: from [192.168.1.4] (pool-173-79-172-61.washdc.fios.verizon.net. [173.79.172.61]) by mx.google.com with ESMTPS id ew2sm15916619vdc.16.2012.02.28.05.00.09 (version=SSLv3 cipher=OTHER); Tue, 28 Feb 2012 05:00:10 -0800 (PST)
User-Agent: Microsoft-MacOutlook/14.14.0.111121
Date: Tue, 28 Feb 2012 08:00:03 -0500
From: Carl Wallace <carl@redhoundsoftware.com>
To: iesg@ietf.org, secdir@ietf.org
Message-ID: <CB723A03.1400E%carl@redhoundsoftware.com>
Thread-Topic: secdir review of draft-ietf-netext-pmip-lr-08
Mime-version: 1.0
Content-type: text/plain; charset="US-ASCII"
Content-transfer-encoding: 7bit
X-Gm-Message-State: ALoCoQmQGo5PC8ZhxGtu97VUwlppx07CMgxGNOzb8pi+a7vhIWOSKlMyaQhiJ0bWatQ7Gx+o40gz
Cc: draft-ietf-netext-pmip-lr.all@tools.ietf.org
Subject: [secdir] secdir review of draft-ietf-netext-pmip-lr-08
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 28 Feb 2012 13:00:12 -0000

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the IESG.
These comments were written primarily for the benefit of the security area
directors.  Document editors and WG chairs should treat these comments
just like any other last call comments.


This document proposes initiation, utilization and termination mechanisms
for localized routing between mobile access gateways within a proxy mobile
IPv6 domain.  The security considerations section introduces (for this
document) the requirement for IPSec and the reuse of a security
association described in RFC 5213.  This text belongs in the body of the
document in my opinion, with the security considerations possibly changed
to simply reference RFC 4832 and RFC 5213 security considerations.