[secdir] SECDIR review of draft-sgtatham-secsh-iutf8

Melinda Shore <melinda.shore@gmail.com> Sun, 26 February 2017 20:33 UTC

Return-Path: <melinda.shore@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D69C6127A90; Sun, 26 Feb 2017 12:33:59 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.1
X-Spam-Level:
X-Spam-Status: No, score=-0.1 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2qmYKEXWsTEV; Sun, 26 Feb 2017 12:33:58 -0800 (PST)
Received: from mail-pg0-x232.google.com (mail-pg0-x232.google.com [IPv6:2607:f8b0:400e:c05::232]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D22BE127735; Sun, 26 Feb 2017 12:33:55 -0800 (PST)
Received: by mail-pg0-x232.google.com with SMTP id p5so10789954pga.1; Sun, 26 Feb 2017 12:33:55 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=to:from:subject:message-id:date:user-agent:mime-version; bh=TBsAyXZ0iu+BtsOOkmtw6rr7ug+6i938unVQZM7C5/E=; b=Sw/B9Nu/Y1K6J46WANwwHfv2VBmal4nCtDAYN3HDduDEYBpQzTAmCEDx2OwygHo7EC 0xVLOXmM56UIz3Pz/S+aLQXoxpuA4NUG//fQIEX2+qJaCpAF0kNgShK7a3T6GGK7mr2u rzFvy5ZLcDUVKjMsNYWgw8Jfmdy4RWk/TeLEj/Ihym5T+s7raBCRugwYTeMG/7lKIEZu HJcSZqQS+cc8dqi4baq6B3vu5qQwfbFJMhBrsBl3ZC411VB6vdeHJn4fIgxhFD5yAWcn ptqg1ie+uhMdMV2/FZtIsmboH/GKCNBMwJKHgvmFXU6EVlQK7pvyeibs0GeVUzfv/lHV CLYg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:to:from:subject:message-id:date:user-agent :mime-version; bh=TBsAyXZ0iu+BtsOOkmtw6rr7ug+6i938unVQZM7C5/E=; b=rRu1HjzFaXctMm1lVzB4P/iUhTd21Oj0/fHy0/h1kjmQU1i8kepQsOQWUux3NnG7/C Bbin9Ee9jB8vlwzHFjDH6Z8zS+rAvHieJK5Som43efSSqio6vOg6HTrwX9okwZKMl+DV Zkj1kF1TRjHDYYdBqNXJWxx8s6BhcWZKiRiR/v9R/b78qEirzP1noz6ouHXEVDvO+dq1 hRMX4dG7efY1oJlM+W2eq3oX/Dpr1PjzObJvgHBdjkOk9toqQQlsQSQ/9oyGklC0pLcZ 038TAX9RKi666s0HmEI2jB55HWnz6gnp9AK2YrEw3sKNqHgb1AzCyYJ5917h5TFqvCWj Q1SQ==
X-Gm-Message-State: AMke39m9TUa0P7RWVmAn8aCHsZLaqLO8JYjSfaeOdf8VniBIbm6Z8UqT5b3AK/hlbuRcHw==
X-Received: by 10.98.41.5 with SMTP id p5mr16877752pfp.183.1488141234823; Sun, 26 Feb 2017 12:33:54 -0800 (PST)
Received: from Melindas-MacBook-Pro.local (63-140-84-215-radius.dynamic.acsalaska.net. [63.140.84.215]) by smtp.gmail.com with ESMTPSA id u75sm20553223pfk.3.2017.02.26.12.33.53 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Sun, 26 Feb 2017 12:33:54 -0800 (PST)
To: secdir@ietf.org, iesg@ietf.org, draft-sgtatham-secsh-iutf8.all@ietf.org
From: Melinda Shore <melinda.shore@gmail.com>
Message-ID: <e94692fe-f381-43f7-3638-c81f601c9d8e@gmail.com>
Date: Sun, 26 Feb 2017 11:33:51 -0900
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.12; rv:45.0) Gecko/20100101 Thunderbird/45.7.0
MIME-Version: 1.0
Content-Type: multipart/signed; micalg="pgp-sha512"; protocol="application/pgp-signature"; boundary="2TXfdiGDKOln4JETCTSqNUOHtLaFW1R1b"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/Ba3AY0ZOeBKNDqaZUdKPkTns6gI>
Subject: [secdir] SECDIR review of draft-sgtatham-secsh-iutf8
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 26 Feb 2017 20:34:00 -0000

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the
IESG.  These comments were written primarily for the benefit of the
security area directors.  Document editors and WG chairs should treat
these comments just like any other last call comments.

Summary: ready with some incredibly minor nits

This document adds a new opcode to ssh terminal modes, to match
the iutf8 flag in the Linux terminal driver.  This draft has been
implemented in openssh and putty.  There are no additional security
concerns introduced by this draft beyond those already documented
in RFC 4254.

The nits checker didn't like the spacing in the table in section
4.  There's an unused reference (UNICODE).  Otherwise it's clean.

Melinda