[secdir] SECDIR review of draft-ietf-extra-imap-objectid-03

Chris Lonvick <lonvick.ietf@gmail.com> Fri, 13 July 2018 14:38 UTC

Return-Path: <lonvick.ietf@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5097F130E0E; Fri, 13 Jul 2018 07:38:35 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HKcp26rz7WKq; Fri, 13 Jul 2018 07:38:34 -0700 (PDT)
Received: from mail-yw0-x242.google.com (mail-yw0-x242.google.com [IPv6:2607:f8b0:4002:c05::242]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D5A40129619; Fri, 13 Jul 2018 07:38:30 -0700 (PDT)
Received: by mail-yw0-x242.google.com with SMTP id y203-v6so11800651ywd.9; Fri, 13 Jul 2018 07:38:30 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=to:from:subject:message-id:date:user-agent:mime-version; bh=7gw4lHbVBVHpRN0Yx+3ZSoSgkfuNMjoECxylqRXKfqs=; b=WMvw1BdsXHLEB5ieGUAZZTP3ax30XZPtqtHhaJ4m4FHF+VBgIylc4Luwx9+F364O3P uAzWlc7BI1Z9ya6g1kzNhM7Z9OwtUR1sYzg9M2ZIA64LNPzvm5n86llpRuyPb5dMfEp/ 3DiNEPs0pS6UbOflH00yy6UgbQVyu7wXR/rutgQVe8yzGcHi5j/+c/XB1+9+fNwm+ktT 5BQmCjZ4eerUDBQMHn+BnFyX0KMKnXQrZOKvODHoi/t/1S9KV9qpjNwZYwNCXhXns8TK 9Rd8bU3ggwKGJPLS34bZUkdicnmHTCooe3NqThB05ay1Bzh4RqqfMn8WK0iZ2mQuQsL9 ZDmQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:to:from:subject:message-id:date:user-agent :mime-version; bh=7gw4lHbVBVHpRN0Yx+3ZSoSgkfuNMjoECxylqRXKfqs=; b=sX6KHrjozqXM9Cw2h6l0WB7Uya5Ui6S1PgM32gqryl4IyDuzfvxs7Ry40aoS+1wUj9 w9NRB+w+QhiGpr0fNdSVITSeruCyqfNYoaQ0wlIqjeYV0JNvXMCnkOOnuniNS2Ve4WIb q2UWI6tSw20cSCDCwA/Da020Nydkzrl5YEfynpSeJ6F74C1AjHOytsXTnOyCEBraKJ6o OgULYPYvjZF9LzIXlMZPAjj3PZZqigalXifyXiiwcaNsjLMd/IxEl4btUOACfYDGIuSd yPiotes/X3aYpxpShU4Hgx3XJjB/hwlnQcYEVHepCvARDhLeonMtBd+e9d0yWp/rjDLF tu+g==
X-Gm-Message-State: AOUpUlHHSxM5QKV185ueGfilAaU2xzAmzM2mQti0NpR4aCEaCk2xYKT/ PTuFCgCzNE2qR0z2lRHzulG5qg==
X-Google-Smtp-Source: AAOMgpdXgCqno4NhqHAAqzagNeh4jjjb3sx5Iq+W7knUWrrtrx3i0kQQyQt1j/T6E802O6slJ/IQ6A==
X-Received: by 2002:a0d:db92:: with SMTP id d140-v6mr3387733ywe.213.1531492709994; Fri, 13 Jul 2018 07:38:29 -0700 (PDT)
Received: from Chriss-Air.attlocal.net ([2600:1700:12b0:adf0:98ec:3d3d:ff1f:48de]) by smtp.googlemail.com with ESMTPSA id m19-v6sm18498566ywd.90.2018.07.13.07.38.29 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Fri, 13 Jul 2018 07:38:29 -0700 (PDT)
To: draft-ietf-extra-imap-objectid.all@ietf.org, "iesg@ietf.org" <iesg@ietf.org>, "secdir@ietf.org" <secdir@ietf.org>
From: Chris Lonvick <lonvick.ietf@gmail.com>
Message-ID: <5B48B964.3010208@gmail.com>
Date: Fri, 13 Jul 2018 09:38:28 -0500
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:38.0) Gecko/20100101 Thunderbird/38.7.2
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="------------090407000705010200090600"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/7KXsD234KyTirS3w19XHDBQADdI>
Subject: [secdir] SECDIR review of draft-ietf-extra-imap-objectid-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 13 Jul 2018 14:38:35 -0000

Hi,

I have reviewed this document as part of the security directorate's 
ongoing effort to review all IETF documents being processed by the IESG. 
These comments were written primarily for the benefit of the security 
area directors. Document editors and WG chairs should treat these 
comments just like any other last call comments.

The summary of the review is READY with nits.

I found the document to be understandable and thorough. The only nit I 
would call out is that the security considerations section should 
reference the security considerations section of RFC 3501, which it is 
updating. Perhaps an additional line such as:

Implementers should be aware of and follow the advice provided in the 
security considerations section of RFC 3501.

Regards,
Chris