Re: [secdir] Secdir last call review of draft-ietf-mboned-ieee802-mcast-problems-09

"Eric Vyncke (evyncke)" <evyncke@cisco.com> Mon, 14 October 2019 07:10 UTC

Return-Path: <evyncke@cisco.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3820612010C; Mon, 14 Oct 2019 00:10:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.5
X-Spam-Level:
X-Spam-Status: No, score=-14.5 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=ljdXXCix; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=J4fih5z8
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id VD8H4U3RrWU8; Mon, 14 Oct 2019 00:10:10 -0700 (PDT)
Received: from rcdn-iport-3.cisco.com (rcdn-iport-3.cisco.com [173.37.86.74]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4A782120106; Mon, 14 Oct 2019 00:10:10 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=3260; q=dns/txt; s=iport; t=1571037010; x=1572246610; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-id:content-transfer-encoding: mime-version; bh=NoVfC7u4FU+7hvZkn4I9sS/NSMkn+xXLjID4AaTjJcI=; b=ljdXXCixUZgwglIPZhX1QMBvIrKDphCKS9fnDOHuOko+ARPWFCgoykGr OP9uDMXan2aCfBxE+77b61A0p8Cvw0LG5qP37CZLX0ENLjbJf69pA2l+B VawkalG90oK0wwvehD6FTtHOrtggjxTVZsJZ8Gd5YXs6yeKbQuD+pacXI I=;
IronPort-PHdr: 9a23:WsSb1hGLsyIbtnKEwP0WC51GYnJ96bzpIg4Y7IYmgLtSc6Oluo7vJ1Hb+e4z1A3SRYuO7fVChqKWqK3mVWEaqbe5+HEZON0pNVcejNkO2QkpAcqLE0r+efP0fioxH8lqX15+9Hb9Ok9QS47z
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0DZAQCqHqRd/4QNJK1mDg0BAQEBAQEBBQEBAREBAQMDAQEBgXuBS1AFbFcgBAsqhCSDRwOKSppagUKBEANUCQEBAQwBASMKAgEBhEACF4JHJDgTAgMJAQEEAQEBAgEFBG2FLQyFTAIBAQISEREMAQE3AQ8CAQgODAImAgICMBUQAgQBDQUigwABgkYDLgECDKUPAoE4iGF1gTKCfQEBBYE0AYNNGIIXAwaBDCiMDhiBQD+BEScfgkw+gmEDgRkPBQESATaCdzKCLI04gjecam4KgiKHCIoNhAQbgjqLeosMji2IIpEVAgQCBAUCDgEBBYFpImdxcBVlAYJBUBAUgU+Dc4UUhQQ7dAEBgSeNF4JFAQE
X-IronPort-AV: E=Sophos;i="5.67,295,1566864000"; d="scan'208";a="633038404"
Received: from alln-core-10.cisco.com ([173.36.13.132]) by rcdn-iport-3.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 14 Oct 2019 07:10:09 +0000
Received: from XCH-ALN-010.cisco.com (xch-aln-010.cisco.com [173.36.7.20]) by alln-core-10.cisco.com (8.15.2/8.15.2) with ESMTPS id x9E7A9WE019987 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Mon, 14 Oct 2019 07:10:09 GMT
Received: from xhs-rcd-002.cisco.com (173.37.227.247) by XCH-ALN-010.cisco.com (173.36.7.20) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Mon, 14 Oct 2019 02:10:08 -0500
Received: from xhs-rtp-003.cisco.com (64.101.210.230) by xhs-rcd-002.cisco.com (173.37.227.247) with Microsoft SMTP Server (TLS) id 15.0.1473.3; Mon, 14 Oct 2019 02:10:08 -0500
Received: from NAM03-BY2-obe.outbound.protection.outlook.com (64.101.32.56) by xhs-rtp-003.cisco.com (64.101.210.230) with Microsoft SMTP Server (TLS) id 15.0.1473.3 via Frontend Transport; Mon, 14 Oct 2019 03:10:08 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=SfEuyz/YxrZYETK5xFVG0hxoKfB56gg3kBpEtroJc+tmQChgPh9y+B6RMfuoZs74+iZdYwYgMkFuwzuhyHqBCDfKgcxqfSX1h+7+QNrFPP2rOONjRNIqH284QzTFt25YOktkHJLIOOCJD5Ol3ytQwqNxisq76jkEKH1w6XZv8rGmSGa9mfcU5alvLsocK1rNN5dBKovlQFraQ+ZUZj6BGsT7oOA8ZpKmYBPGzTmuj59UlE/eYTplbSvtlvWolH1N7jTxWzBn0XnAEBE4aHjjqSLmBc+8zVKtsE4R1PMvmxwDP1oefLx6zSEwPC1rg5jHz9FEGRyoY9NalOqcEd71Hg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=NoVfC7u4FU+7hvZkn4I9sS/NSMkn+xXLjID4AaTjJcI=; b=jwj6hDVWjGTEXGtlceA65V3S4UeXTI/c6zIg+WGllomueFA8gcvfzm2toD1FJi58s0tpr3TecCjYsw6bqaSLUsyR/fTj9cUjQ8HpXVG9d9nQQ/t9foqKMPXJqPNoqLAm+E06Dt20bJs7OoQa9qGXLiSs09ijTj2xa6qbN39W9f3OZTdHgFjHP2vUl5izo1TUXVOEJj4yCl9eP7ZWCQZMXnnQSw/EVT6p2v0cfA5iRKmcSwa+5BqZkBiUrUELKm+6yaoZipjWJk+NSUseNm3s3H5LF3Pho1ZNNnhXDthca5yzHg3tqgBPXQLp6pn3xHVup5AlJiPW17eSxkgzViuGnA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=NoVfC7u4FU+7hvZkn4I9sS/NSMkn+xXLjID4AaTjJcI=; b=J4fih5z8GBZriTItOL5+pBM/k0dlWx7hllYnS5dtTjOtaFjrjTXeJDcSIXNsvhbB8nYwDZwCqPCf+Xy8QFxsy782Nl0Pvj4KtOdD9vQQL5qjTOyTw7vkYxD78MMLXFtkqFwFoVBx9pux3SPgJo4XcwLdR5+G82XLzK91c4fTZYA=
Received: from MN2PR11MB4144.namprd11.prod.outlook.com (20.179.150.210) by MN2PR11MB3920.namprd11.prod.outlook.com (10.255.181.26) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2347.21; Mon, 14 Oct 2019 07:10:06 +0000
Received: from MN2PR11MB4144.namprd11.prod.outlook.com ([fe80::e4f8:d335:c018:c62a]) by MN2PR11MB4144.namprd11.prod.outlook.com ([fe80::e4f8:d335:c018:c62a%7]) with mapi id 15.20.2347.021; Mon, 14 Oct 2019 07:10:06 +0000
From: "Eric Vyncke (evyncke)" <evyncke@cisco.com>
To: Kyle Rose <krose@krose.org>, "secdir@ietf.org" <secdir@ietf.org>, "gorry@erg.abdn.ac.uk" <gorry@erg.abdn.ac.uk>
CC: "mboned@ietf.org" <mboned@ietf.org>, "draft-ietf-mboned-ieee802-mcast-problems.all@ietf.org" <draft-ietf-mboned-ieee802-mcast-problems.all@ietf.org>
Thread-Topic: Secdir last call review of draft-ietf-mboned-ieee802-mcast-problems-09
Thread-Index: AQHVgkAY0N6Z+kqf+kWm4acOtxmCt6dZ2dYA
Date: Mon, 14 Oct 2019 07:10:06 +0000
Message-ID: <FF93FA7D-31F9-4EC6-A617-B1FAB93ADEE4@cisco.com>
References: <157102397341.20776.9338396539567675909@ietfa.amsl.com>
In-Reply-To: <157102397341.20776.9338396539567675909@ietfa.amsl.com>
Accept-Language: fr-BE, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.1d.0.190908
authentication-results: spf=none (sender IP is ) smtp.mailfrom=evyncke@cisco.com;
x-originating-ip: [2001:420:c0c1:36:e9f7:9043:77eb:a55c]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: d5e6e51e-4bc7-4a91-58c5-08d750758af0
x-ms-traffictypediagnostic: MN2PR11MB3920:
x-ms-exchange-purlcount: 1
x-microsoft-antispam-prvs: <MN2PR11MB39204FCEE93E0487444AA442A9900@MN2PR11MB3920.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-forefront-prvs: 01901B3451
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(4636009)(39860400002)(136003)(366004)(396003)(346002)(376002)(52544003)(189003)(199004)(504964003)(91956017)(58126008)(486006)(25786009)(33656002)(76116006)(229853002)(54906003)(14444005)(256004)(2201001)(86362001)(316002)(6486002)(110136005)(8936002)(478600001)(8676002)(14454004)(66446008)(64756008)(66556008)(476003)(66476007)(66946007)(71200400001)(71190400001)(81166006)(81156014)(6246003)(76176011)(6506007)(2616005)(7736002)(6116002)(4326008)(2501003)(305945005)(99286004)(46003)(2906002)(102836004)(186003)(11346002)(6306002)(5660300002)(6512007)(6436002)(446003)(36756003); DIR:OUT; SFP:1101; SCL:1; SRVR:MN2PR11MB3920; H:MN2PR11MB4144.namprd11.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
received-spf: None (protection.outlook.com: cisco.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: s/0KSNev3HBjLbFeWyAF3IXqbCpykvJNkXMKaVnzlvVmqaYy7eiYNkk/fr5/8d+myOdu5pqBpuCotAA6QzrM5MnEGla+NXEka3iz8s8jtdxm2w87C3kTjq1zikTx4djt3vwNYR3UHrBmG0nlVtce0NvZqL94mZ22SFv22hhtskOrPMfHiL1230HJRdK2NbTsxy8CG6MhqhjrrPi8OoWL9pfgKIS6nY383PeoHHd8T+rD++JoBRy9obcuss1Zf2YjmXyZxxS5eO64m3RnjF7Qc/sv37oRBIhFnkpxd+/GRRdr7VCGM6555W1LZxO8fnSSjTjdjUlhWL1/IXmu6+uzPogKTzCErOIjzVoSsze5GwN4Cuypuy7BJpBieAGqs3wrcy8KPZfTaP/3v5ptcrSrbvCBpi2EN4/0p2WybtF48OVMvW13Lmqp/oySmZdCeBzlYWI29aHdBbci8mImLQ4IBQ==
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <6F4526FE45BC9E48B24DBC9717210E61@namprd11.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-Network-Message-Id: d5e6e51e-4bc7-4a91-58c5-08d750758af0
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Oct 2019 07:10:06.7198 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: xV4GN4HntKdTHr+eCSzxjNemqQLN2g7VQnhpgpd6Mr2wLY8JwoL67WkO9YvNjsk4bpzrkrFBd8wkWyYwPtPPfA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MN2PR11MB3920
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.36.7.20, xch-aln-010.cisco.com
X-Outbound-Node: alln-core-10.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/ALEYc44ndCnd1Ppy3xVfz-XwNfQ>
Subject: Re: [secdir] Secdir last call review of draft-ietf-mboned-ieee802-mcast-problems-09
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 14 Oct 2019 07:10:13 -0000

Thank you Kyle for the review: nits are nits but let's fix them when the last call ends (later today).

Dear authors, I would appreciate it if a new revision was uploaded on Tuesday 15th (i.e. after the last call expiration) fixing all issues detected in the last call (see Gorry's email dated 2nd October) and Kyle's one below.

Once done, I will proceed with the publication process

Regards and thank you in advance

-éric (shepherding AD for this document)


On 14/10/2019, 05:33, "Kyle Rose via Datatracker" <noreply@ietf.org> wrote:

    Reviewer: Kyle Rose
    Review result: Has Nits
    
    I have reviewed this document as part of the security directorate's ongoing
    effort to review all IETF documents being processed by the IESG.  These
    comments were written primarily for the benefit of the security area directors.
     Document editors and WG chairs should treat these comments just like any other
    last call comments.
    
    I marked this "ready with nits" because I see no serious security or privacy
    considerations, but I'm confused by the wording in section 7, which begins:
    
    q( This section will provide some recommendations about the usage and
    combinations of the multicast enhancements described in Section 4 and Section
    5. )
    
    and then proceeds to provide little in the way of such recommendations. Maybe
    the phrasing here is just awkward?
    
    Nits:
    
    Reference dot11aa
    (https://standards.ieee.org/findstds/standard/802.11aa-2012.pdf) gives me a
    404. Maybe I simply lack the appropriate decoder ring?
    
    The IETF meeting network is referenced three times in section 5.1. For example,
    
    q( The distribution of users on wireless networks / subnets changes from one
    IETF meeting to the next (e.g SSIDs are renamed, some SSIDs lose favor, etc). 
    This makes utilization for particular SSIDs difficult to predict ahead of time,
    but usage can be monitored as attendees use the different networks. )
    
    This feels like a non-sequitur. Maybe some introductory text about using the
    IETF meetings as an exemplar would make this read a little better, but it seems
    like the advice to operators here should be generic and not connected to
    particular goals for network connectivity at IETF meetings.