Return-Path: <fcalabri@cisco.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1])
 by ietfa.amsl.com (Postfix) with ESMTP id 6DA481A87BE;
 Wed,  1 Jul 2015 05:59:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.51
X-Spam-Level: 
X-Spam-Status: No, score=-14.51 tagged_above=-999 required=5
 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1,
 DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5,
 SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5]
 autolearn=ham
Received: from mail.ietf.org ([4.31.198.44])
 by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024)
 with ESMTP id V2oMSeY0PadW; Wed,  1 Jul 2015 05:59:54 -0700 (PDT)
Received: from alln-iport-1.cisco.com (alln-iport-1.cisco.com [173.37.142.88])
 (using TLSv1 with cipher RC4-SHA (128/128 bits))
 (No client certificate requested)
 by ietfa.amsl.com (Postfix) with ESMTPS id 8318F1A87B2;
 Wed,  1 Jul 2015 05:59:54 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple;
 d=cisco.com; i=@cisco.com; l=24411; q=dns/txt;
 s=iport; t=1435755595; x=1436965195;
 h=from:to:subject:date:message-id:references:in-reply-to:
 mime-version; bh=AxFjaCdO/xKHMlwN9K5y8EJp7rUgGaGo+RxxzwaJJ3U=;
 b=B13AAA521GRVExC3/5DGzrgSq+xkttu5HgSNeR459hbYkMzv8FtsrgX5
 S8Mg9Q/lN4IGX3mq4EqoUGeVZD0vsdWNfGd8H1LjBvd4bc6ZueBoI8xSd
 QU6lRXLxsB86sEihgK/OjWVsqXKY8NKUOKOFX4CRzZhOmf4W2wKjOIzoI I=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0AYBAD045NV/5RdJa1bgkVMVF8GvSgJhDKDNAKBUTgUAQEBAQEBAYEKhCIBAQEELUcVAgEIEQMBAQEhBwcyFAkIAQEEARKIL8thAQEBAQEBAQEBAQEBAQEBAQEBAQEBF4tKhGITFwGEKwEElBABi2CBOochjAyDXSaDem+BRoECAQEB
X-IronPort-AV: E=Sophos;i="5.15,385,1432598400"; 
 d="scan'208,217";a="164631800"
Received: from rcdn-core-12.cisco.com ([173.37.93.148])
 by alln-iport-1.cisco.com with ESMTP/TLS/DHE-RSA-AES256-SHA;
 01 Jul 2015 12:59:54 +0000
Received: from xhc-aln-x10.cisco.com (xhc-aln-x10.cisco.com [173.36.12.84])
 by rcdn-core-12.cisco.com (8.14.5/8.14.5) with ESMTP id t61CxrPX030194
 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL);
 Wed, 1 Jul 2015 12:59:53 GMT
Received: from xmb-aln-x03.cisco.com ([169.254.6.60]) by xhc-aln-x10.cisco.com
 ([173.36.12.84]) with mapi id 14.03.0195.001;
 Wed, 1 Jul 2015 07:59:53 -0500
From: "Fernando Calabria (fcalabri)" <fcalabri@cisco.com>
To: "MORTON, ALFRED C (AL)" <acmorton@att.com>, "Xialiang (Frank)"
 <frank.xialiang@huawei.com>,
 "secdir@ietf.org" <secdir@ietf.org>, "iesg@ietf.org" <iesg@ietf.org>,
 "draft-ietf-bmwg-issu-meth.all@ietf.org"
 <draft-ietf-bmwg-issu-meth.all@ietf.org>
Thread-Topic: Secdir review of draft-ietf-bmwg-issu-meth-01
Thread-Index: AdCznVhNjRYm7y6ZS9SgpDHakbeZ2QAWCOBAAAQtUQA=
Date: Wed, 1 Jul 2015 12:59:52 +0000
Message-ID: <D1B950B6.49F87%fcalabri@cisco.com>
References: <C02846B1344F344EB4FAA6FA7AF481F12ADE7046@SZXEMA502-MBS.china.huawei.com>
 <4AF73AA205019A4C8A1DDD32C034631D0662C6E4BD@NJFPSRVEXG0.research.att.com>
In-Reply-To: <4AF73AA205019A4C8A1DDD32C034631D0662C6E4BD@NJFPSRVEXG0.research.att.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
user-agent: Microsoft-MacOutlook/14.5.1.150515
x-originating-ip: [10.117.99.244]
Content-Type: multipart/alternative;
 boundary="_000_D1B950B649F87fcalabriciscocom_"
MIME-Version: 1.0
Archived-At: <http://mailarchive.ietf.org/arch/msg/secdir/5YZgr6z-fLsaeI9obYErkaVmMpA>
X-Mailman-Approved-At: Wed, 01 Jul 2015 06:19:00 -0700
Subject: Re: [secdir] Secdir review of draft-ietf-bmwg-issu-meth-01
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>,
 <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>,
 <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 01 Jul 2015 12:59:57 -0000

--_000_D1B950B649F87fcalabriciscocom_
Content-Type: text/plain; charset="Windows-1252"
Content-Transfer-Encoding: quoted-printable


Thank you Frank for your review and Al for addressing # 1 and # 4 ..

In regards to # 2 and #3


We also saw and considered how  verifications like the authenticity of a SW=
 package may be a concern , even more,   nowadays,  with emerging SDN  like=
 implementations ,

Unfortunately   not all the vendors nor even software specific operating sy=
stems  within vendors,  have =93consistent  implementations" of  Digital Si=
gnatures nor  Certificates and do not make these checks a mandatory task  b=
efore performing a Software upgrade.

Because of it  we tried to address it with a =91generic=92 statement on Sec=
tions 3.1 and 3.2 that basically read:

"Internal compatibility
   verification may be performed by the software running on the DUT, to
   verify the checksum of the files downloaded as well as any other
   pertinent checks. Depending upon vendor implementation, these
   mechanisms may extend to include verification that the downloaded
   module(s) =85"

=97

Internal compatibility verification may be
   performed by the software running on the DUT, as part of the upgrade
   process itself, to verify the checksum of the files downloaded as
   well as any other pertinent checks=85.



The authors of this document understand  how these are real issues / concer=
ns on managing an operating a  Software   environment, ,  but we do not bel=
ieve that an specific ISSU  document should addresses them in  detail

-Fernando







From: <MORTON>, "ALFRED C (AL)" <acmorton@att.com<mailto:acmorton@att.com>>
Date: Wednesday, July 1, 2015 at 8:08 AM
To: "Xialiang (Frank)" <frank.xialiang@huawei.com<mailto:frank.xialiang@hua=
wei.com>>, "secdir@ietf.org<mailto:secdir@ietf.org>" <secdir@ietf.org<mailt=
o:secdir@ietf.org>>, "iesg@ietf.org<mailto:iesg@ietf.org>" <iesg@ietf.org<m=
ailto:iesg@ietf.org>>, "draft-ietf-bmwg-issu-meth.all@ietf.org<mailto:draft=
-ietf-bmwg-issu-meth.all@ietf.org>" <draft-ietf-bmwg-issu-meth.all@ietf.org=
<mailto:draft-ietf-bmwg-issu-meth.all@ietf.org>>
Subject: RE: Secdir review of draft-ietf-bmwg-issu-meth-01

Hi Frank,
Thanks for your review and comments.

On #1, DoS attacks: since human control is involved here,
it seems unlikely that operators will begin an upgrade
during a DoS attack when they know it=92s in-progress, IMO.
Others should chime-in if they have other rationale or opinions.

On #4, That=92s the draft date, not the expiration date.
see below,
Al
doc shepherd

Benchmarking Working Group                                  Sarah Banks
Internet Draft                                           VSS Monitoring
Intended status: Informational                        Fernando Calabria
Expires: November 30, 2015                                Cisco Systems
                                                           Gery Czirjak
                                                          Ramdas Machat
                                                       Juniper Networks
                                                           May 30, 2015

ISSU Benchmarking Methodology
draft-ietf-bmwg-issu-meth-01

From: Xialiang (Frank) [mailto:frank.xialiang@huawei.com]
Sent: Tuesday, June 30, 2015 9:29 PM
To: secdir@ietf.org<mailto:secdir@ietf.org>; iesg@ietf.org<mailto:iesg@ietf=
.org>; draft-ietf-bmwg-issu-meth.all@ietf.org<mailto:draft-ietf-bmwg-issu-m=
eth.all@ietf.org>
Subject: Secdir review of draft-ietf-bmwg-issu-meth-01

I have reviewed this document as part of the security directorate's ongoing=
 effort to review all IETF documents being processed by the IESG.  These co=
mments were written primarily for the benefit of the security area director=
s.  Document editors and WG chairs should treat these comments just like an=
y other last call comment.

This draft specifies a set of common methodologies and procedures designed =
to characterize the overall behavior of a Device Under Test (DUT), subject =
to an ISSU event.

I have the following comments:

1.       Should the ISSU test methodology include the verification and test=
 when the DUT is under network DDoS attacks?

2.       In the software download stage, in addition to compatibility check=
s and verification of checksums, we should also explicitly mention that the=
 device should verify the authenticity and integrity of its download. I.e. =
verify signatures on signed code and OCSP/CRL for the used signature. And t=
hat a system must not load unverified code;

3.       even in a test environment all deployed software components must b=
e verified (e.g. using signatures);

4.       Nits: this draft has expired on May-30, 2015

Recommendation:  Ready With Issues

B.R.
Frank

--_000_D1B950B649F87fcalabriciscocom_
Content-Type: text/html; charset="Windows-1252"
Content-ID: <7DA14B3390DD7345A2036F7DFA37DCB5@emea.cisco.com>
Content-Transfer-Encoding: quoted-printable

<html>
<head>
<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3DWindows-1=
252">
</head>
<body style=3D"word-wrap: break-word; -webkit-nbsp-mode: space; -webkit-lin=
e-break: after-white-space; color: rgb(0, 0, 0); font-size: 14px; font-fami=
ly: Calibri, sans-serif;">
<div>
<div><br>
Thank you Frank for your review and Al for addressing # 1 and # 4 ..</div>
</div>
<div><br>
</div>
<div>In regards to # 2 and #3&nbsp;</div>
<div><br>
</div>
<div><br>
</div>
<div>We also saw and considered how &nbsp;verifications like the authentici=
ty of a SW package may be a concern , even more, &nbsp; nowadays, &nbsp;wit=
h emerging SDN &nbsp;like implementations ,&nbsp;</div>
<div><br>
</div>
<div>Unfortunately &nbsp; not all the vendors nor even software specific op=
erating systems &nbsp;within vendors, &nbsp;have =93consistent &nbsp;implem=
entations&quot; of &nbsp;Digital Signatures nor &nbsp;Certificates and do n=
ot make these checks a mandatory task &nbsp;before performing a Software up=
grade.</div>
<div><br>
</div>
<div>Because of it &nbsp;we tried to address it with a =91generic=92 statem=
ent on Sections 3.1 and 3.2 that basically read:</div>
<div><br>
</div>
<div>&quot;Internal compatibility</div>
<div>&nbsp; &nbsp;verification may be performed by the software running on =
the DUT, to</div>
<div>&nbsp; &nbsp;verify the checksum of the files downloaded as well as an=
y other</div>
<div>&nbsp; &nbsp;pertinent checks. Depending upon vendor implementation, t=
hese</div>
<div>&nbsp; &nbsp;mechanisms may extend to include verification that the do=
wnloaded</div>
<div>&nbsp; &nbsp;module(s) =85&quot;</div>
<div><br>
</div>
<div>=97</div>
<div><br>
</div>
<div>
<div>Internal compatibility verification may be</div>
<div>&nbsp; &nbsp;performed by the software running on the DUT, as part of =
the upgrade</div>
<div>&nbsp; &nbsp;process itself, to verify the checksum of the files downl=
oaded as</div>
<div>&nbsp; &nbsp;well as any other pertinent checks=85.</div>
</div>
<div><br>
</div>
<div><br>
</div>
<div><br>
</div>
<div>The authors of this document understand &nbsp;how these are real issue=
s / concerns on managing an operating a &nbsp;Software &nbsp; environment, =
, &nbsp;but we do not believe that an specific ISSU &nbsp;document should a=
ddresses them in &nbsp;detail&nbsp;</div>
<div><br>
</div>
<div>-Fernando&nbsp;</div>
<div><br>
</div>
<div><br>
</div>
<div><br>
</div>
<div><br>
</div>
<div><br>
</div>
<div><br>
</div>
<div><br>
</div>
<span id=3D"OLK_SRC_BODY_SECTION">
<div style=3D"font-family:Calibri; font-size:11pt; text-align:left; color:b=
lack; BORDER-BOTTOM: medium none; BORDER-LEFT: medium none; PADDING-BOTTOM:=
 0in; PADDING-LEFT: 0in; PADDING-RIGHT: 0in; BORDER-TOP: #b5c4df 1pt solid;=
 BORDER-RIGHT: medium none; PADDING-TOP: 3pt">
<span style=3D"font-weight:bold">From: </span>&lt;MORTON&gt;, &quot;ALFRED =
C (AL)&quot; &lt;<a href=3D"mailto:acmorton@att.com">acmorton@att.com</a>&g=
t;<br>
<span style=3D"font-weight:bold">Date: </span>Wednesday, July 1, 2015 at 8:=
08 AM<br>
<span style=3D"font-weight:bold">To: </span>&quot;Xialiang (Frank)&quot; &l=
t;<a href=3D"mailto:frank.xialiang@huawei.com">frank.xialiang@huawei.com</a=
>&gt;, &quot;<a href=3D"mailto:secdir@ietf.org">secdir@ietf.org</a>&quot; &=
lt;<a href=3D"mailto:secdir@ietf.org">secdir@ietf.org</a>&gt;, &quot;<a hre=
f=3D"mailto:iesg@ietf.org">iesg@ietf.org</a>&quot;
 &lt;<a href=3D"mailto:iesg@ietf.org">iesg@ietf.org</a>&gt;, &quot;<a href=
=3D"mailto:draft-ietf-bmwg-issu-meth.all@ietf.org">draft-ietf-bmwg-issu-met=
h.all@ietf.org</a>&quot; &lt;<a href=3D"mailto:draft-ietf-bmwg-issu-meth.al=
l@ietf.org">draft-ietf-bmwg-issu-meth.all@ietf.org</a>&gt;<br>
<span style=3D"font-weight:bold">Subject: </span>RE: Secdir review of draft=
-ietf-bmwg-issu-meth-01<br>
</div>
<div><br>
</div>
<div xmlns:v=3D"urn:schemas-microsoft-com:vml" xmlns:o=3D"urn:schemas-micro=
soft-com:office:office" xmlns:w=3D"urn:schemas-microsoft-com:office:word" x=
mlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml" xmlns=3D"http:/=
/www.w3.org/TR/REC-html40">
<meta name=3D"Generator" content=3D"Microsoft Word 14 (filtered medium)">
<style><!--
/* Font Definitions */
@font-face
	{font-family:Calibri;
	panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
	{font-family:Tahoma;
	panose-1:2 11 6 4 3 5 4 4 2 4;}
@font-face
	{font-family:Consolas;
	panose-1:2 11 6 9 2 2 4 3 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
	{margin:0in;
	margin-bottom:.0001pt;
	text-align:justify;
	font-size:10.5pt;
	font-family:"Calibri","sans-serif";}
a:link, span.MsoHyperlink
	{mso-style-priority:99;
	color:blue;
	text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
	{mso-style-priority:99;
	color:purple;
	text-decoration:underline;}
p.MsoPlainText, li.MsoPlainText, div.MsoPlainText
	{mso-style-priority:99;
	mso-style-link:"Plain Text Char";
	margin:0in;
	margin-bottom:.0001pt;
	text-align:justify;
	font-size:10.5pt;
	font-family:"Calibri","sans-serif";}
p.MsoListParagraph, li.MsoListParagraph, div.MsoListParagraph
	{mso-style-priority:34;
	margin:0in;
	margin-bottom:.0001pt;
	text-align:justify;
	text-indent:21.0pt;
	font-size:10.5pt;
	font-family:"Calibri","sans-serif";}
span.PlainTextChar
	{mso-style-name:"Plain Text Char";
	mso-style-priority:99;
	mso-style-link:"Plain Text";
	font-family:Consolas;}
span.EmailStyle20
	{mso-style-type:personal;
	font-family:"Calibri","sans-serif";
	color:windowtext;}
p.a, li.a, div.a
	{mso-style-name:\7EAF\6587\672C;
	mso-style-link:"\7EAF\6587\672C Char";
	margin:0in;
	margin-bottom:.0001pt;
	text-align:justify;
	font-size:10.5pt;
	font-family:"Calibri","sans-serif";}
span.Char
	{mso-style-name:"\7EAF\6587\672C Char";
	mso-style-priority:99;
	mso-style-link:\7EAF\6587\672C;
	font-family:"Calibri","sans-serif";}
span.EmailStyle23
	{mso-style-type:personal-reply;
	font-family:"Courier New";
	color:black;}
.MsoChpDefault
	{mso-style-type:export-only;
	font-size:10.0pt;}
@page WordSection1
	{size:8.5in 11.0in;
	margin:1.0in 1.25in 1.0in 1.25in;}
div.WordSection1
	{page:WordSection1;}
/* List Definitions */
@list l0
	{mso-list-id:2106269078;
	mso-list-type:hybrid;
	mso-list-template-ids:856326880 -263141384 67698713 67698715 67698703 6769=
8713 67698715 67698703 67698713 67698715;}
@list l0:level1
	{mso-level-tab-stop:none;
	mso-level-number-position:left;
	margin-left:.25in;
	text-indent:-.25in;}
@list l0:level2
	{mso-level-tab-stop:1.0in;
	mso-level-number-position:left;
	text-indent:-.25in;}
@list l0:level3
	{mso-level-tab-stop:1.5in;
	mso-level-number-position:left;
	text-indent:-.25in;}
@list l0:level4
	{mso-level-tab-stop:2.0in;
	mso-level-number-position:left;
	text-indent:-.25in;}
@list l0:level5
	{mso-level-tab-stop:2.5in;
	mso-level-number-position:left;
	text-indent:-.25in;}
@list l0:level6
	{mso-level-tab-stop:3.0in;
	mso-level-number-position:left;
	text-indent:-.25in;}
@list l0:level7
	{mso-level-tab-stop:3.5in;
	mso-level-number-position:left;
	text-indent:-.25in;}
@list l0:level8
	{mso-level-tab-stop:4.0in;
	mso-level-number-position:left;
	text-indent:-.25in;}
@list l0:level9
	{mso-level-tab-stop:4.5in;
	mso-level-number-position:left;
	text-indent:-.25in;}
ol
	{margin-bottom:0in;}
ul
	{margin-bottom:0in;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext=3D"edit">
<o:idmap v:ext=3D"edit" data=3D"1" />
</o:shapelayout></xml><![endif]-->
<div lang=3D"EN-US" link=3D"blue" vlink=3D"purple" style=3D"text-justify-tr=
im:punctuation">
<div class=3D"WordSection1">
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">Hi Frank,<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">Thanks for your review and comments.<o:p></o:p></spa=
n></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;"><o:p>&nbsp;</o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">On #1, DoS attacks: since human control is involved =
here,<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">it seems unlikely that operators will begin an upgra=
de<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">during a DoS attack when they know it=92s in-progres=
s, IMO.<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">Others should chime-in if they have other rationale =
or opinions.<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;"><o:p>&nbsp;</o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">On #4, That=92s the draft date, not the expiration d=
ate.<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">see below,<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">Al<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">doc shepherd<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;"><o:p>&nbsp;</o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">Benchmarking Working Group&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp=
;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;&nbsp;&nbsp;&nbsp; Sarah Banks<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">Internet Draft&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp=
;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; VSS Monito=
ring<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">Intended status: Informational&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Fernando Calabria<o:p></o:p></spa=
n></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">Expires: November 30, 2015&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp=
;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&n=
bsp;&nbsp; Cisco Systems<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Ger=
y Czirjak<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Ramdas Ma=
chat<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; Juniper Networks<o:p></o:p>=
</span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; &nbsp;&nbsp;&nb=
sp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;=
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;May=
 30, 2015<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbs=
p;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&=
nbsp;
<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">ISSU Benchmarking Methodology<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;">draft-ietf-bmwg-issu-meth-01<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"font-size: 11pt; font-family: 'Courie=
r New'; color: black;"><o:p>&nbsp;</o:p></span></p>
<div style=3D"border:none;border-left:solid blue 1.5pt;padding:0in 0in 0in =
4.0pt">
<div>
<div style=3D"border:none;border-top:solid #B5C4DF 1.0pt;padding:3.0pt 0in =
0in 0in">
<p class=3D"MsoNormal" align=3D"left" style=3D"text-align:left"><b><span st=
yle=3D"font-size: 10pt; font-family: Tahoma, sans-serif;">From:</span></b><=
span style=3D"font-size: 10pt; font-family: Tahoma, sans-serif;"> Xialiang =
(Frank) [<a href=3D"mailto:frank.xialiang@huawei.com">mailto:frank.xialiang=
@huawei.com</a>]
<br>
<b>Sent:</b> Tuesday, June 30, 2015 9:29 PM<br>
<b>To:</b> <a href=3D"mailto:secdir@ietf.org">secdir@ietf.org</a>; <a href=
=3D"mailto:iesg@ietf.org">
iesg@ietf.org</a>; <a href=3D"mailto:draft-ietf-bmwg-issu-meth.all@ietf.org=
">draft-ietf-bmwg-issu-meth.all@ietf.org</a><br>
<b>Subject:</b> Secdir review of draft-ietf-bmwg-issu-meth-01<o:p></o:p></s=
pan></p>
</div>
</div>
<p class=3D"MsoNormal" align=3D"left" style=3D"text-align:left"><o:p>&nbsp;=
</o:p></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN">I have re=
viewed this document as part of the security directorate's&nbsp;ongoing eff=
ort to review all IETF documents being processed by the&nbsp;IESG. &nbsp;Th=
ese comments were written primarily for the benefit
 of the&nbsp;security area directors. &nbsp;Document editors and WG chairs =
should treat&nbsp;these comments just like any other last call comment.<o:p=
></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN"><o:p>&nbs=
p;</o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN">This draf=
t specifies a set of common methodologies and procedures designed to charac=
terize the overall behavior of a Device Under Test (DUT), subject to an ISS=
U event.<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN"><o:p>&nbs=
p;</o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN">I have th=
e following comments:<o:p></o:p></span></p>
<p class=3D"MsoListParagraph" style=3D"margin-left:.25in;text-indent:-.25in=
;mso-list:l0 level1 lfo2">
<!--[if !supportLists]--><span style=3D"mso-fareast-language:ZH-CN"><span s=
tyle=3D"mso-list:Ignore">1.<span style=3D"font-style: normal; font-variant:=
 normal; font-weight: normal; font-size: 7pt; line-height: normal; font-fam=
ily: 'Times New Roman';">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
</span></span></span><!--[endif]--><span style=3D"mso-fareast-language:ZH-C=
N">Should the ISSU test methodology include the verification and test when =
the DUT is under network DDoS attacks?<o:p></o:p></span></p>
<p class=3D"MsoPlainText" style=3D"margin-left:.25in;text-indent:-.25in;mso=
-list:l0 level1 lfo2">
<!--[if !supportLists]--><span style=3D"mso-fareast-language:ZH-CN"><span s=
tyle=3D"mso-list:Ignore">2.<span style=3D"font-style: normal; font-variant:=
 normal; font-weight: normal; font-size: 7pt; line-height: normal; font-fam=
ily: 'Times New Roman';">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
</span></span></span><!--[endif]--><span style=3D"mso-fareast-language:ZH-C=
N">In the software download stage, in addition to compatibility checks and =
verification of checksums, we should also explicitly mention that the devic=
e should verify the authenticity and
 integrity of its download. I.e. verify signatures on signed code and OCSP/=
CRL for the used signature. And that a system must not load unverified code=
;<o:p></o:p></span></p>
<p class=3D"MsoPlainText" style=3D"margin-left:.25in;text-indent:-.25in;mso=
-list:l0 level1 lfo2">
<!--[if !supportLists]--><span style=3D"mso-fareast-language:ZH-CN"><span s=
tyle=3D"mso-list:Ignore">3.<span style=3D"font-style: normal; font-variant:=
 normal; font-weight: normal; font-size: 7pt; line-height: normal; font-fam=
ily: 'Times New Roman';">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
</span></span></span><!--[endif]--><span style=3D"mso-fareast-language:ZH-C=
N">even in a test environment all deployed software components must be veri=
fied (e.g. using signatures);<o:p></o:p></span></p>
<p class=3D"MsoPlainText" style=3D"margin-left:.25in;text-indent:-.25in;mso=
-list:l0 level1 lfo2">
<!--[if !supportLists]--><span style=3D"mso-fareast-language:ZH-CN"><span s=
tyle=3D"mso-list:Ignore">4.<span style=3D"font-style: normal; font-variant:=
 normal; font-weight: normal; font-size: 7pt; line-height: normal; font-fam=
ily: 'Times New Roman';">&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;
</span></span></span><!--[endif]--><span style=3D"mso-fareast-language:ZH-C=
N">Nits: this draft has expired on May-30, 2015<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN"><o:p>&nbs=
p;</o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN">Recommend=
ation: &nbsp;Ready With Issues<o:p></o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN"><o:p>&nbs=
p;</o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN">B.R.<o:p>=
</o:p></span></p>
<p class=3D"MsoNormal"><span style=3D"mso-fareast-language:ZH-CN">Frank<o:p=
></o:p></span></p>
</div>
</div>
</div>
</div>
</span>
</body>
</html>

--_000_D1B950B649F87fcalabriciscocom_--

