Re: [secdir] Secdir telechat review of draft-ietf-secevent-http-push-12

Roman Danyliw <rdd@cert.org> Tue, 23 June 2020 13:55 UTC

Return-Path: <rdd@cert.org>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 816213A0E1F; Tue, 23 Jun 2020 06:55:17 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cert.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cU4q6oUFZJ7W; Tue, 23 Jun 2020 06:55:16 -0700 (PDT)
Received: from veto.sei.cmu.edu (veto.sei.cmu.edu [147.72.252.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BAC233A0BF2; Tue, 23 Jun 2020 06:55:15 -0700 (PDT)
Received: from korb.sei.cmu.edu (korb.sei.cmu.edu [10.64.21.30]) by veto.sei.cmu.edu (8.14.7/8.14.7) with ESMTP id 05NDtEev001565; Tue, 23 Jun 2020 09:55:14 -0400
DKIM-Filter: OpenDKIM Filter v2.11.0 veto.sei.cmu.edu 05NDtEev001565
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cert.org; s=yc2bmwvrj62m; t=1592920514; bh=f9v0AVg1shAAX5mpgp2bmEof7gguzwVf3+MhNTqwrBc=; h=From:To:CC:Subject:Date:References:In-Reply-To:From; b=qU7s39IeE3CxTV8X8hIvsNER13uqLN7hoCmZEd1vXBvUxIjJkg9DvUH3P6EEnFukX L1nOfJ2SnRIiVViwY4N3hgzzxQQ95hA9bEjuoSiviWYBWeCM2UKlnn4aOWCYfGmRU+ T+yFq9H1zZ6JfoZ6cmhQcROR3+tWw1k2qllkLVNs=
Received: from CASSINA.ad.sei.cmu.edu (cassina.ad.sei.cmu.edu [10.64.28.249]) by korb.sei.cmu.edu (8.14.7/8.14.7) with ESMTP id 05NDtEqY013356; Tue, 23 Jun 2020 09:55:14 -0400
Received: from MURIEL.ad.sei.cmu.edu (147.72.252.47) by CASSINA.ad.sei.cmu.edu (10.64.28.249) with Microsoft SMTP Server (TLS) id 14.3.487.0; Tue, 23 Jun 2020 09:55:13 -0400
Received: from MORRIS.ad.sei.cmu.edu (147.72.252.46) by MURIEL.ad.sei.cmu.edu (147.72.252.47) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.1979.3; Tue, 23 Jun 2020 09:55:13 -0400
Received: from MORRIS.ad.sei.cmu.edu ([fe80::555b:9498:552e:d1bb]) by MORRIS.ad.sei.cmu.edu ([fe80::555b:9498:552e:d1bb%13]) with mapi id 15.01.1979.003; Tue, 23 Jun 2020 09:55:13 -0400
From: Roman Danyliw <rdd@cert.org>
To: Valery Smyslov <valery@smyslov.net>, "secdir@ietf.org" <secdir@ietf.org>, Mike Jones <Michael.Jones@microsoft.com>
CC: "draft-ietf-secevent-http-push.all@ietf.org" <draft-ietf-secevent-http-push.all@ietf.org>, "id-event@ietf.org" <id-event@ietf.org>
Thread-Topic: [secdir] Secdir telechat review of draft-ietf-secevent-http-push-12
Thread-Index: AQHWRjsWw+Jh/YaAyECvBLbmOhoJSKjmPkaw
Date: Tue, 23 Jun 2020 13:55:12 +0000
Message-ID: <62e0936425a144f2837306f6c9676f5d@cert.org>
References: <159257225069.31013.12380067855802786524@ietfa.amsl.com>
In-Reply-To: <159257225069.31013.12380067855802786524@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.64.202.179]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/I1jl7vlfsFmDI670DjDmO0uBpLo>
Subject: Re: [secdir] Secdir telechat review of draft-ietf-secevent-http-push-12
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 23 Jun 2020 13:55:18 -0000

Hi Valery, thank you for the LC and follow-up telechat review.  

Hi Mike, thank you for incorporating the feedback into -11.

I have balloted with a COMMENT as I had a few items of feedback/questions on the security considerations.

Regards,
Roman

> -----Original Message-----
> From: secdir <secdir-bounces@ietf.org> On Behalf Of Valery Smyslov via
> Datatracker
> Sent: Friday, June 19, 2020 9:11 AM
> To: secdir@ietf.org
> Cc: last-call@ietf.org; draft-ietf-secevent-http-push.all@ietf.org; id-
> event@ietf.org
> Subject: [secdir] Secdir telechat review of draft-ietf-secevent-http-push-12
> 
> Reviewer: Valery Smyslov
> Review result: Ready
> 
> I have reviewed this document as part of the security directorate's ongoing
> effort to review all IETF documents being processed by the IESG.  These
> comments were written primarily for the benefit of the security area directors.
> Document editors and WG chairs should treat these comments just like any
> other last call comments.
> 
> This is my second review of the draft, last time I reviewed -10 version.
> 
> I looked over the diff between these versions and found that my concerns have
> been addressed.
> I'm also glad that using TLS is now mandatory. Thank you.
> 
> 
> 
> 
> _______________________________________________
> secdir mailing list
> secdir@ietf.org
> https://www.ietf.org/mailman/listinfo/secdir
> wiki: http://tools.ietf.org/area/sec/trac/wiki/SecDirReview