[secdir] Secdir review of draft-ietf-lsr-flex-algo-23

Charlie Kaufman <charliekaufman@outlook.com> Sun, 25 September 2022 04:21 UTC

Return-Path: <charliekaufman@outlook.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9B718C1522D8; Sat, 24 Sep 2022 21:21:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.11
X-Spam-Level:
X-Spam-Status: No, score=-2.11 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=outlook.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ano_CZku5S81; Sat, 24 Sep 2022 21:21:56 -0700 (PDT)
Received: from NAM11-CO1-obe.outbound.protection.outlook.com (mail-co1nam11olkn2073.outbound.protection.outlook.com [40.92.18.73]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id A0166C1522D5; Sat, 24 Sep 2022 21:21:56 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=lNWx/119q8LFM+5Q+C5nmiSoJjb/UJwy9JzlwNobZ03u0VRbfrohNOOhFPzujfhiZ6srlSULmuNbdRx5wqb3Q0t+4LbshC1fif5HxeyZDkCgtiTnXJFR1BwD6ZY0aP283Nj2Wo0IbMj7WvNik7tfgrFHo7dfQD/9ARouLc9CZMHTcMDlKcvFQ8Akau2R3WJfQb0lDERTk40x+G7YnGomEBtXxZOfbEW01gDA4QLnvurRCL4t7igsezVPlROTM+2SHzjf4FdSPV5qlMP5FlPamHjjcT04WW32pxXha7FyRJ3a1nxAv9LdzGWhinXC4vd2wYqoqgH0H1NYsCpLQxfHiQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=5H0bI34KqMD+Dy9TsWcpfYcfd/uac5+oNKQf5huTbtc=; b=og+dy76sUVsDN7mQ1LKw8jfYLLmvkbC1ZUNaqn0u5xz9j6+58WM3HoXaEXxWzFL51o6uU5uxrarr4/O6KDRB8g+wI5dV2i9Z3K7nsiLT08fzjQMzPJs82rWqL2pASYnsOVxCnZvkriW2JFox59Ny5C1y7zpgY6xQ/0CvNqoeMbPQ6Bt/JyXYGEGTFIm3itp/Zco6rhIhUTUU8l6BGLmsJM/Hbyqqun1GZEilDfYf+p2a6ztcWy+rkb19xx8/+iMgCAocRqYGO4woRwh7yXvdFQV7yany1CKh3XzDHaL4S9Wiyg0iz9lE32ue3HMF3PSP6N1buRgzaNWivyxCTaPkdg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=none; dmarc=none; dkim=none; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=outlook.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=5H0bI34KqMD+Dy9TsWcpfYcfd/uac5+oNKQf5huTbtc=; b=QZnfggcIm6Q4ScVxSHifPAi2DRLOjSKv5Gv3foIgk/CfuIHQNws6uJeaglzmiiOClmaewErz+iZ5y0pBXNtxhjmEJAN2FWA7+eS0Y6u/JupcYLv7GG4NAKBM6VGxHfNH2IvC7Ay8x30gzz4hw5rqu8D9U/CGvFP771aWtkMUIls3rXAxTvU0Qsb7QWXWiZenZKat58OdGH61eA3zLwFY+G87Thow0/jqtwCSO2aZ5unscV0NUrmhw7qWKSAJBjHBrTnh0bhKo2LI+W9SBgyywNPERWzEaXnwAxMNe56+www5WKdzQUICocyDqZAsiGTW2YaWbLjdVmHhqWkKowHe4Q==
Received: from MW2PR1901MB4683.namprd19.prod.outlook.com (2603:10b6:302:6::28) by CH2PR19MB4086.namprd19.prod.outlook.com (2603:10b6:610:9b::15) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5654.24; Sun, 25 Sep 2022 04:21:54 +0000
Received: from MW2PR1901MB4683.namprd19.prod.outlook.com ([fe80::a47d:5a35:3b32:93d7]) by MW2PR1901MB4683.namprd19.prod.outlook.com ([fe80::a47d:5a35:3b32:93d7%5]) with mapi id 15.20.5654.024; Sun, 25 Sep 2022 04:21:54 +0000
From: Charlie Kaufman <charliekaufman@outlook.com>
To: "secdir@ietf.org" <secdir@ietf.org>, "iesg@ietf.org" <iesg@ietf.org>, "draft-ietf-lsr-flex-algo.all@ietf.org" <draft-ietf-lsr-flex-algo.all@ietf.org>
Thread-Topic: Secdir review of draft-ietf-lsr-flex-algo-23
Thread-Index: AQHY0JYjuAYXDyodiE6bkXhbHmrLkg==
Date: Sun, 25 Sep 2022 04:21:54 +0000
Message-ID: <MW2PR1901MB4683BCAF48847C503FD9C959DF539@MW2PR1901MB4683.namprd19.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels:
x-tmn: [C4p05BRI9NW82yBXrQ0VlAau6WZ3zledbch8XyJzv0kRxnK4Rax8/Ep7FIIg1rxK]
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: MW2PR1901MB4683:EE_|CH2PR19MB4086:EE_
x-ms-office365-filtering-correlation-id: a70485a6-921f-49e1-ce6c-08da9ead7a1f
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: /f/hp47wUHKxjbifflwW1nwbwKWINV1Q90zi+1d4t2/8ZK2iGsAyrOSFucItlkYY2bP9dEpQVhMdmPU8HIJYVc2TLNAJxfJEHGT2ELBwQI51+I/Lo24Ths/w7mVg0+fxg1dC8eja8NtX4WmnnIcmhgUuayUlS/+Uh1Yl51cVFGk9D15MSqgxvwC/f4G8WIrt2xwKguophlkXImdk48ezL+ZSQ7mZJszXC/yYLbojy6Yp1C7bxdFNSuAnFeYs8WGqh0aISih3uAc2tXJbzer8ZxozjB1lTSUgcaz4lzwDMuiZSrr2rLkLp2n61jd9pGdJL06joO3ab70uEWY6KYNKBNediuDzuuLirgQdi/OmK+ZRnE//hexEOS7FHPhz5MBqDc1b+lpyMmiPvzbyV0ZWqLam/opn+UR3x2RzEx2esa2TReAYV2aVNcBe5Eb0N7Jig7zLMP+shtLhkfk5dkljUZoqBe0Ybf6OFpembJyKVkKrmhot9uCgcR6LJ33uv6DmVhjyTnv0ViOO7y9FEQFZ264giO2+k7UPxAU0C8Hy98jBtTTWDlyryWup3mfn56sI0QT+m+mBQGYXU3iZ4nSFn4yIaIC121p7oo3xXCsE6gshTQbcVSR67/mYEMk+A6DErWMWgfAMRgSkgILZunfVNmZmXbS/rMGB9+0FK+D8NqLcOpTpBFqjqiUo4UWj0QowY2bLrzWIZWblMfJed957D0BocevSfifXE1qt/zMH0H/QqtOWQ1KXVmOvRgvgPCllJELC9z1XGmla/PYp+bZeROuGZC848uxsXgFQxhJlL1Yz6NaXxmMCBE+ZwCwoih91t6kWDLltojW8BBVAFINb3D5JDiduugSSGCDS9V9JCDhBmka678H9+4FIhgg+sr6zaLbmek7+ibZJwmRGWKs+4DpMSW3xJYg7g/NKnK7Jp5T7Yjk7+KsN/r7zDwNa/yllzX3PBdbBLRycDL+RQKsjcxEvsdYmAY9GXMdQf2W7Y3LyEpz1Qc0VfLnbZw7rkb4jEkyejliSsGMDddUJnGkd5oZYnwUwNKhtQbpLFq8G7vU/HYHbDoA5dW5QiwAZ0XxTUwff2zJAIFW5hH0K/iIw/PVCKplWnwrDn4BiT0YecyR6hwy1iwXFeFA3CCgAI+th7vFTePinpXnrKph1nicfW1uaYNLlSWMLzMFFha442yNLiBq52kaLh+U9JdFaZllxqLHVpAG/T1QP+H5I2lz3L9g/eehqtq5FMUuuOUZA4IwTQnxc4eu3PfFWEDKY08dVLWeZyeTHe3nkQ6E1XV/t8t8JZX1NzIT2E3YxgMM6EUsjnSXVea4OpErUIRY1Elrrr3N0MYimSzbjynFONxA58g==
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MW2PR1901MB4683.namprd19.prod.outlook.com
X-MS-Exchange-CrossTenant-RMS-PersistedConsumerOrg: 00000000-0000-0000-0000-000000000000
X-MS-Exchange-CrossTenant-Network-Message-Id: a70485a6-921f-49e1-ce6c-08da9ead7a1f
X-MS-Exchange-CrossTenant-originalarrivaltime: 25 Sep 2022 04:21:54.1469 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 84df9e7f-e9f6-40af-b435-aaaaaaaaaaaa
X-MS-Exchange-CrossTenant-rms-persistedconsumerorg: 00000000-0000-0000-0000-000000000000
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CH2PR19MB4086
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/Kf-P_qedAXneCWO8feUk9VGpeMo>
Subject: [secdir] Secdir review of draft-ietf-lsr-flex-algo-23
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 25 Sep 2022 04:21:57 -0000

Reviewer: Charlie Kaufman
Review result: Ready

I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG.  These comments were written primarily for the benefit of the security area directors.  Document editors and WG chairs should treat these comments just like any other last call comments.

This document primarily concerns the syntax for extensions to the IS-IS and OSPF protocols to carry information about alternative metrics and constraints on path selection. As described in Security Considerations, there are attacks possible if this new information is corrupted or miscommunicated, but those attacks are addressed in other existing RFCs.

	--Charlie