Re: [secdir] Secdir review of draft-ietf-grow-bgp-reject-05

Takeshi Takahashi <tt2@rc5.so-net.ne.jp> Thu, 08 June 2017 04:21 UTC

Return-Path: <tt2@rc5.so-net.ne.jp>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EE0FA129B0E; Wed, 7 Jun 2017 21:21:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.202
X-Spam-Level:
X-Spam-Status: No, score=-2.202 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_SORBS_SPAM=0.5, RP_MATCHES_RCVD=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=rc5.so-net.ne.jp
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Jg9ClB_2Tmtc; Wed, 7 Jun 2017 21:21:24 -0700 (PDT)
Received: from ms-omx51.so-net.ne.jp (ms-omx51.so-net.ne.jp [202.238.84.151]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8B0CB129B09; Wed, 7 Jun 2017 21:21:24 -0700 (PDT)
Received: from ms-omx61.so-net.ne.jp (ms-omx61.plus.so-net.ne.jp [10.240.84.163]) by ms-omx51.plus.so-net.ne.jp with ESMTP id v584LNk0024582; Thu, 8 Jun 2017 13:21:23 +0900
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=rc5.so-net.ne.jp; s=sn2017; t=1496895683; bh=DGLgt7ufQHPl/2nI82vdOw4iaG4889cHnZrZMcXOaXc=; h=In-Reply-To:References:From:Date:Subject:To:Cc; b=ryNWZY1fy97LtcmT8fY6ynLTv/7gxgpZPJUCOoYtk44cEOJ0tUhtnKKitsT8qlcaK 8LSGu+Fz7lcuk8NUhI4NhCA0nHwyMX/ZJq/vThAGxk6RVSwPsMVzFVBuMQCZFMtdGG DLQI8uzdj4c7QPgp86KSouDA+j9gMgZIoOjE2niu0CulbJpdcNiSbIXGVAk3sD3aAS LuO5XBIWxdeLAfiOYAYzBsk5M4dlnbz6nJ/stSn95quR64CW7Q7SKS4b/vwM+WAGo3 UcAf9lHWUYyhZ623u5JvRfHN/tVYty2i/KlCdo9/OMV5Ib9nJBQmaRhTclFl4sVGO+ ntnijhmZt77/A==
Received: from mail-qt0-f179.google.com (mail-qt0-f179.google.com [209.85.216.179]) (authenticated) by ms-omx61.plus.so-net.ne.jp with ESMTP id v584LLag024985 (using TLSv1/SSLv3 with cipher AES128-SHA (128 bits)); Thu, 8 Jun 2017 13:21:22 +0900
Received: by mail-qt0-f179.google.com with SMTP id c10so28807525qtd.1; Wed, 07 Jun 2017 21:21:22 -0700 (PDT)
X-Gm-Message-State: AKS2vOy/dfaspElcyIwaAF2R4TzJu17MC37KzYt0vx6PIMERuutHSpH2 7NgcVAWaJnzUDG/a9MBRWcpmghBfWA==
X-Received: by 10.55.82.67 with SMTP id g64mr10361914qkb.41.1496895681241; Wed, 07 Jun 2017 21:21:21 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.200.53.16 with HTTP; Wed, 7 Jun 2017 21:20:40 -0700 (PDT)
In-Reply-To: <002701d2b742$812b7880$83826980$@nict.go.jp>
References: <002701d2b742$812b7880$83826980$@nict.go.jp>
From: Takeshi Takahashi <tt2@rc5.so-net.ne.jp>
Date: Thu, 08 Jun 2017 13:20:40 +0900
X-Gmail-Original-Message-ID: <CAMA4c9UZ_xUfyE1ak2Tq0zAp99T0EstMB6z8oe1RA_ihu5MrpQ@mail.gmail.com>
Message-ID: <CAMA4c9UZ_xUfyE1ak2Tq0zAp99T0EstMB6z8oe1RA_ihu5MrpQ@mail.gmail.com>
To: Takeshi Takahashi <takeshi_takahashi@nict.go.jp>
Cc: draft-ietf-grow-bgp-reject.all@ietf.org, iesg@ietf.org, secdir@ietf.org
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/7bgy6IICqWdCSgczVYMchH7B2IY>
Subject: Re: [secdir] Secdir review of draft-ietf-grow-bgp-reject-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 08 Jun 2017 04:21:27 -0000

Hello,

I was re-assigned to review this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the IESG.
These comments were written primarily for the benefit of the security area
directors.
Document editors and WG chairs should treat these comments just like any
other last call comments.

[overall feeling on this draft]
ready

[overview of the changes after the 05 draft]
Many changes are made.
Especially, this draft updates RFC4271, which anyway was cited in the
normative reference section.
Moreover, the "solution" section was removed, (especially, its 4th
bullet was completely removed.)
I believe the content became more mature.
As mentioned before, I see no problem in this draft.

Thank you.
Take




2017-04-17 12:07 GMT+09:00 Takeshi Takahashi <takeshi_takahashi@nict.go.jp>:
> Hello,
>
> I have reviewed this document as part of the security directorate's
> ongoing effort to review all IETF documents being processed by the IESG.
> These comments were written primarily for the benefit of the security area
> directors.
> Document editors and WG chairs should treat these comments just like any
> other last call comments.
>
> [overall feeling on this draft]
> ready
>
> [overview]
> This document defines the default behavior of a BGP speaker when there is
> no import or export policy associated with an External BGP session.
>
> This document is very concise.
> I do not have any discussion issues.
>
> Thank you.
> Take
>



-- 
--
Takeshi Takahashi, Ph.D., CISSP, PMP
"Practice makes perfect!"