Re: [secdir] [Last-Call] Secdir last call review of draft-foudil-securitytxt-08

Paul Wouters <paul@nohats.ca> Sat, 28 December 2019 00:22 UTC

Return-Path: <paul@nohats.ca>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4441F1200E5; Fri, 27 Dec 2019 16:22:29 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.996
X-Spam-Level:
X-Spam-Status: No, score=-1.996 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, MIME_QP_LONG_LINE=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=nohats.ca
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tfCUOoXVo7GB; Fri, 27 Dec 2019 16:22:28 -0800 (PST)
Received: from mx.nohats.ca (mx.nohats.ca [193.110.157.68]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D8B4B1200CE; Fri, 27 Dec 2019 16:22:27 -0800 (PST)
Received: from localhost (localhost [IPv6:::1]) by mx.nohats.ca (Postfix) with ESMTP id 47l4C42XKCzFn6; Sat, 28 Dec 2019 01:22:24 +0100 (CET)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nohats.ca; s=default; t=1577492544; bh=2fgxjAgU2GmwSJpzgrHsXUFAZ9OYWWKPiUYP07I/+HE=; h=Subject:From:In-Reply-To:Date:Cc:References:To; b=blgTUmDU992my92fTbgWiWE70od+Ktc1F4tuhJEL5k6rtX/xzVkfqj0XBiu3Mn5xT SQ1hYZcx2yUvVWPeXivte71rLAOzwyP+YQyGNjG6SMpK3YTHOGNyH7oxeKweIXOxQy NbOebR9BoKUG8tarSqQcj44e1QjifwW4twC6r9TU=
X-Virus-Scanned: amavisd-new at mx.nohats.ca
Received: from mx.nohats.ca ([IPv6:::1]) by localhost (mx.nohats.ca [IPv6:::1]) (amavisd-new, port 10024) with ESMTP id Ho75YIHVGoAj; Sat, 28 Dec 2019 01:22:22 +0100 (CET)
Received: from bofh.nohats.ca (bofh.nohats.ca [76.10.157.69]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mx.nohats.ca (Postfix) with ESMTPS; Sat, 28 Dec 2019 01:22:22 +0100 (CET)
Received: from [193.111.228.74] (unknown [193.111.228.74]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by bofh.nohats.ca (Postfix) with ESMTPSA id A871960015B8; Fri, 27 Dec 2019 19:22:20 -0500 (EST)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (1.0)
From: Paul Wouters <paul@nohats.ca>
X-Mailer: iPhone Mail (16G102)
In-Reply-To: <24070.38156.658126.30539@fireball.acr.fi>
Date: Fri, 27 Dec 2019 19:22:20 -0500
Cc: Yakov Shafranovich <yakov@nightwatchcybersecurity.com>, last-call@ietf.org, draft-foudil-securitytxt.all@ietf.org, secdir@ietf.org
Content-Transfer-Encoding: quoted-printable
Message-Id: <427E1372-59C7-4304-9562-2C93DDDD05AD@nohats.ca>
References: <157720267698.19361.11750709876624228448@ietfa.amsl.com> <CAAyEnSOx-MH0Ua6o9j-zMKwLktvYGXzBUw1ZkuO49BWD+1yxRQ@mail.gmail.com> <24070.38156.658126.30539@fireball.acr.fi>
To: Tero Kivinen <kivinen@iki.fi>
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/Lqjt8A4RRLSpHq3pFLVG9eIcWoM>
Subject: Re: [secdir] [Last-Call] Secdir last call review of draft-foudil-securitytxt-08
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 28 Dec 2019 00:22:29 -0000

> On Dec 27, 2019, at 18:34, Tero Kivinen <kivinen@iki.fi> wrote:
> 
> 
> Especially the hiring directive information will most likely be out of
> date very quickly so it does not go very well with the requirement
> that organations SHOULD keep it up to date....

It is worse. A company MUST always be seen as growing, so even if they are not hiring, some bogus information will be provided here, similar to the “mandatory” statement on their website regarding hiring.

Paul




>