[secdir] SecDir review of draft-ietf-lmap-yang

"Paul Hoffman" <paul.hoffman@vpnc.org> Thu, 02 March 2017 01:22 UTC

Return-Path: <paul.hoffman@vpnc.org>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1758A1294FF for <secdir@ietfa.amsl.com>; Wed, 1 Mar 2017 17:22:11 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6BXA2RryaCMq for <secdir@ietfa.amsl.com>; Wed, 1 Mar 2017 17:22:10 -0800 (PST)
Received: from mail.proper.com (Opus1.Proper.COM [207.182.41.91]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3A5CD1293EB for <secdir@ietf.org>; Wed, 1 Mar 2017 17:22:10 -0800 (PST)
Received: from [10.32.60.146] (142-254-101-176.dsl.dynamic.fusionbroadband.com [142.254.101.176]) (authenticated bits=0) by mail.proper.com (8.15.2/8.14.9) with ESMTPSA id v221M5sc032747 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO) for <secdir@ietf.org>; Wed, 1 Mar 2017 18:22:07 -0700 (MST) (envelope-from paul.hoffman@vpnc.org)
X-Authentication-Warning: mail.proper.com: Host 142-254-101-176.dsl.dynamic.fusionbroadband.com [142.254.101.176] claimed to be [10.32.60.146]
From: Paul Hoffman <paul.hoffman@vpnc.org>
To: secdir <secdir@ietf.org>
Date: Wed, 01 Mar 2017 17:22:07 -0800
Message-ID: <658BC77D-D7A2-466F-80FD-6A015653F2C6@vpnc.org>
MIME-Version: 1.0
Content-Type: text/plain; format="flowed"
X-Mailer: MailMate (1.9.6r5347)
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/B22cPC2eZqNV6XQmbYc2VvjofQQ>
Subject: [secdir] SecDir review of draft-ietf-lmap-yang
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 02 Mar 2017 01:22:11 -0000

This document is a fairly standard YANG data model, in this case for for 
LMAP measurement agents, where LMAP stands for "Large-Scale Measurement 
Platforms". In short, it's a data model for measuring management 
platforms themselves.

The Security Considerations follows the YANG template of listing all the 
data elements that are writable (and this maybe dangerous) and those 
that might reveal information you might not want revealed about your 
networked management systems, with the appropriate platitudes about 
using good access control with the data. If any developer or user reads 
this section, that's wonderful.

--Paul Hoffman