[secdir] sec-dir review of draft-ietf-cose-rfc8152bis-struct-09
Derek Atkins <derek@ihtfp.com> Wed, 10 June 2020 21:44 UTC
Return-Path: <derek@ihtfp.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5E9683A154B; Wed, 10 Jun 2020 14:44:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ihtfp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ndzv2oFEiQqi; Wed, 10 Jun 2020 14:44:12 -0700 (PDT)
Received: from mail2.ihtfp.org (MAIL2.IHTFP.ORG [204.107.200.7]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E3F373A154D; Wed, 10 Jun 2020 14:44:11 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by mail2.ihtfp.org (Postfix) with ESMTP id 246AEE2040; Wed, 10 Jun 2020 17:44:10 -0400 (EDT)
Received: from mail2.ihtfp.org ([127.0.0.1]) by localhost (mail2.ihtfp.org [127.0.0.1]) (amavisd-maia, port 10024) with ESMTP id 02166-10; Wed, 10 Jun 2020 17:44:08 -0400 (EDT)
Received: from securerf.ihtfp.org (IHTFP-DHCP-158.IHTFP.ORG [192.168.248.158]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client CN "mocana.ihtfp.org", Issuer "IHTFP Consulting Certification Authority" (not verified)) by mail2.ihtfp.org (Postfix) with ESMTPS id CAF06E203F; Wed, 10 Jun 2020 17:44:08 -0400 (EDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ihtfp.com; s=default; t=1591825448; bh=joPEqoQgftydQwBZw/8rSd9PEK7LSL7gBIWV+nO3SzY=; h=From:To:Cc:Subject:Date; b=LNHCVKWZTb9T2HY6Nio5D43wyXY8hXSmXwvw4EdBrXdfAexn+euqOWQso1X0h1iRI /HZemtD+w0nmRs9ustjn/XcUjHs+NeZWnD1SB/6WmWRuWPtXbefB8o/8JeI8MnOVVG ynPJvyAY4bprSjUtlvls91B7sfIJu16lqtYAJVgo=
Received: (from warlord@localhost) by securerf.ihtfp.org (8.15.2/8.15.2/Submit) id 05ALi7YB029459; Wed, 10 Jun 2020 17:44:07 -0400
From: Derek Atkins <derek@ihtfp.com>
To: iesg@ietf.org, secdir@ietf.org
Cc: cose-chairs@ietf.org, ietf@augustcellars.com
Date: Wed, 10 Jun 2020 17:44:07 -0400
Message-ID: <sjm36728ul4.fsf@securerf.ihtfp.org>
User-Agent: Gnus/5.13 (Gnus v5.13) Emacs/26.1 (gnu/linux)
MIME-Version: 1.0
Content-Type: text/plain
X-Virus-Scanned: Maia Mailguard 1.0.2a
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/DruKW7ykv8g-4CjAukQQAB2CiUY>
Subject: [secdir] sec-dir review of draft-ietf-cose-rfc8152bis-struct-09
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 10 Jun 2020 21:44:14 -0000
Hi, I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG. These comments were written with the intent of improving security requirements and considerations in IETF drafts. Comments not addressed in last call may be included in AD reviews during the IESG review. Document editors and WG chairs should treat these comments just like any other last call comments. Summary: * Ready to publish Details: * Just as a point of information, if I recall correctly I was also present when this topic was first discussed ;) -derek -- Derek Atkins 617-623-3745 derek@ihtfp.com www.ihtfp.com Computer and Internet Security Consultant
- [secdir] sec-dir review of draft-ietf-cose-rfc815… Derek Atkins
- Re: [secdir] sec-dir review of draft-ietf-cose-rf… Benjamin Kaduk
- Re: [secdir] sec-dir review of draft-ietf-cose-rf… Derek Atkins
- Re: [secdir] sec-dir review of draft-ietf-cose-rf… Benjamin Kaduk