[secdir] secdir review of draft-ietf-core-oscore-edhoc-10

Wes Hardaker <wjhns1@hardakers.net> Sun, 17 March 2024 19:43 UTC

Return-Path: <wjhns1@hardakers.net>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 098D3C14F601 for <secdir@ietfa.amsl.com>; Sun, 17 Mar 2024 12:43:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.107
X-Spam-Level:
X-Spam-Status: No, score=-2.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=hardakers.net
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wzl3y93LGpq5 for <secdir@ietfa.amsl.com>; Sun, 17 Mar 2024 12:43:34 -0700 (PDT)
Received: from mail.hardakers.net (mail.hardakers.net [107.220.113.177]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 29EAAC14F5EB for <secdir@ietf.org>; Sun, 17 Mar 2024 12:43:34 -0700 (PDT)
Received: from localhost (dhcp-97a7.meeting.ietf.org [31.133.151.167]) by mail.hardakers.net (Postfix) with ESMTPA id 5DD2C207EB; Sun, 17 Mar 2024 12:43:33 -0700 (PDT)
DKIM-Filter: OpenDKIM Filter v2.11.0 mail.hardakers.net 5DD2C207EB
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=hardakers.net; s=default; t=1710704613; bh=NPraU6rvFYPoYS/lqpPT3VkcbPWOXsSRtygljaJsJHQ=; h=From:To:Subject:Date:From; b=kVqYWCLmOa9FiqtXXmYAfv5mQbKBTi6J6JQFySh+ous0ZPdVyCIizAOtroyvgYW+y u+7eELcjEr8x3AUfNOUaNOselEw+bvzoW0bPmWsYtAmx5+XUl8HEJ1ugofCh5iUniE QkZ/CuIdiikKzzueBy/U5El6609dyBnM5Y22qAu8=
From: Wes Hardaker <wjhns1@hardakers.net>
To: secdir@ietf.org, iesg@ietf.org, draft-ietf-core-oscore-edhoc.all@ietf.org
User-Agent: Gnus/5.13 (Gnus v5.13)
Date: Sun, 17 Mar 2024 12:43:32 -0700
Message-ID: <yblttl4bq57.fsf@wx.hardakers.net>
MIME-Version: 1.0
Content-Type: text/plain
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/8HbqckcKV8H6MZiNOOTLLVfzycI>
Subject: [secdir] secdir review of draft-ietf-core-oscore-edhoc-10
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 17 Mar 2024 19:43:38 -0000

[the secdir and the iesg may get a duplicate of this message -- sorry]

Document: draft-ietf-core-oscore-edhoc-10
Reviewer: Wes Hardaker
Review Date: 2024-03-15
Review result: Ready

I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG.  These comments were written primarily for the benefit of the security area directors.  Document editors and WG chairs should treat these comments just like any other last call comments.

I reviewed the diffs since my last review in November of 2023, and found that the authors took my past comments into consideration most of the time, changing the text accordingly.  In particular they clarified some of my interoperability concerns and strengthened the text in the security considerations.  Thank you for your work.

-- 
Wes Hardaker
USC/ISI