[secdir] SECDIR Review of draft-ietf-6lo-rfc6775-update-11

Chris Lonvick <lonvick.ietf@gmail.com> Sun, 18 February 2018 15:38 UTC

Return-Path: <lonvick.ietf@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2B8AE124BE8; Sun, 18 Feb 2018 07:38:33 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id OvpHNx8lq_41; Sun, 18 Feb 2018 07:38:31 -0800 (PST)
Received: from mail-it0-x22b.google.com (mail-it0-x22b.google.com [IPv6:2607:f8b0:4001:c0b::22b]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 44F63120454; Sun, 18 Feb 2018 07:38:28 -0800 (PST)
Received: by mail-it0-x22b.google.com with SMTP id p204so6628112itc.4; Sun, 18 Feb 2018 07:38:28 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=to:from:subject:message-id:date:user-agent:mime-version; bh=ntwp0tEBjaHEVvoi/MA62D1g5SedewIzV3yihPEX6aA=; b=tLGvF/tPqcrKiXTD3mi9QwlbTqdHf9HUBn8X7eflhzzgvSw+50AvB5x+Br4LrarqxC A8t3J8HnYPq2cdcJGlVZhGflNGKWjDtYXQm24ltPrb+e3dtToeHAt00hDQtr4x6GIYn4 n4EEXoSEvAQce9KeBRIemUbTQwmvEzrPsOzSxD9nBp7H+C/U353rR1yzFtGiQrAZdJn7 eT5468MCsUFMQWVxKyDSpUOl4V5y0kjl7aURWwfv5hwlGuD1DRLcHR+U8UmYoP/JzEb+ 70OldxTjD5yVE11wiBeoc06d+gvsq14iW6HRqCSN6qR6ZTkTtWgTxHAKvAsuMGljRWSs ioUw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:to:from:subject:message-id:date:user-agent :mime-version; bh=ntwp0tEBjaHEVvoi/MA62D1g5SedewIzV3yihPEX6aA=; b=COeCKj9SFWWzYXMfYJPesoOHsu2oTeA5qBLYTDudR2PGgMxkjQrS/iD2vSZR5lO/AM rZLm1AGlOOlPoTJk0QaTih2P4c5djvxmFmXiNtN4fRxTq/9Ji4hXIRgkMPaa+2KbpuR3 DiqENjDVt94bS8sZCGeQUzuHU6ig2P9VzKhKEikV/N+PYaslaIoClhHsyBumGSXwToI2 5S7X+gssFGFK0SwS0R6btVxmHCO7QYoZ2XhqrylhR8ygqScnSvdX8WQZ+ztk42MknigI Crs0wSGKn36uChWlM2bkF6aSobAThdY1hDrRaX6c+0YfTy9zf4XfDRMthMA03LKXx+nQ /gpw==
X-Gm-Message-State: APf1xPAgASOMXXPscMk8YFNBvMLq1J4QNmyWLNasFmGonHssZg6CjdVb VRy2YQD/27EAHZz3ImyS1niNIQ==
X-Google-Smtp-Source: AH8x2276e7e64JqESG+JCtp0sUZFqFXcZJSsZEwEUnis2XnXwt6e+I0znTeT8zc9W+2/aiaPG4WhWA==
X-Received: by 10.36.40.16 with SMTP id h16mr16555969ith.125.1518968307295; Sun, 18 Feb 2018 07:38:27 -0800 (PST)
Received: from Chriss-Air.attlocal.net ([2600:1700:d590:b2f0:8480:406f:34a8:4d24]) by smtp.googlemail.com with ESMTPSA id 12sm3286586itm.1.2018.02.18.07.38.26 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Sun, 18 Feb 2018 07:38:26 -0800 (PST)
To: "iesg@ietf.org" <iesg@ietf.org>, "secdir@ietf.org" <secdir@ietf.org>, draft-ietf-6lo-rfc6775-update.all@ietf.org
From: Chris Lonvick <lonvick.ietf@gmail.com>
Message-ID: <5A899DF0.7050607@gmail.com>
Date: Sun, 18 Feb 2018 09:38:24 -0600
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.11; rv:38.0) Gecko/20100101 Thunderbird/38.7.2
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="------------070403020901040600000305"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/L3dQ_5hLpO5tnC5Uy5KuInwrDRQ>
Subject: [secdir] SECDIR Review of draft-ietf-6lo-rfc6775-update-11
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 18 Feb 2018 15:38:33 -0000

Hello,

I have reviewed this document as part of the security directorate's 
ongoing effort to review all IETF documents being processed by the IESG. 
These comments were written primarily for the benefit of the security 
area directors. Document editors and WG chairs should treat these 
comments just like any other last call comments.

The summary of the review is Ready with Nits.

I skimmed through the document, which appears thorough and well laid out.

The Security Considerations section is appropriate.

Below are some nits that I found in the Security Considerations section:

Current:
Backbone Router in a way that prevents tempering with or replaying
Suggested:
s/tempering/tampering/

Current:
This specification recommends to using privacy techniques (see
Suggested:
s/to using/the use of/

Section B.5 is a section on Requirements Related to Security. This is an 
appropriate threat model.

Also, just because I'm a bit late in doing this, I reviewed the Privacy 
Considerations section of this document. This is also well written and 
provides guidance to implementers in the way of pointers to other RFCs.

Regards,
Chris