[secdir] Secdir review of draft-eastlake-rfc5342bis-02

Charlie Kaufman <charliek@microsoft.com> Mon, 20 May 2013 06:39 UTC

Return-Path: <charliek@microsoft.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2F63021F9019; Sun, 19 May 2013 23:39:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 2.535
X-Spam-Level: **
X-Spam-Status: No, score=2.535 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HTML_MESSAGE=0.001, SARE_RAND_6=2, UNPARSEABLE_RELAY=0.001, UNRESOLVED_TEMPLATE=3.132]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PswSovW9ELXI; Sun, 19 May 2013 23:39:52 -0700 (PDT)
Received: from na01-by2-obe.outbound.protection.outlook.com (mail-by2lp0238.outbound.protection.outlook.com [207.46.163.238]) by ietfa.amsl.com (Postfix) with ESMTP id 2BE1C21F9021; Sun, 19 May 2013 23:39:52 -0700 (PDT)
Received: from BL2FFO11FD005.protection.gbl (10.173.161.203) by BL2FFO11HUB008.protection.gbl (10.173.160.228) with Microsoft SMTP Server (TLS) id 15.0.698.0; Mon, 20 May 2013 06:39:50 +0000
Received: from TK5EX14HUBC103.redmond.corp.microsoft.com (131.107.125.37) by BL2FFO11FD005.mail.protection.outlook.com (10.173.161.1) with Microsoft SMTP Server (TLS) id 15.0.698.0 via Frontend Transport; Mon, 20 May 2013 06:39:50 +0000
Received: from CO9EHSOBE024.bigfish.com (157.54.51.112) by mail.microsoft.com (157.54.86.9) with Microsoft SMTP Server (TLS) id 14.3.136.1; Mon, 20 May 2013 06:39:07 +0000
Received: from mail18-co9-R.bigfish.com (10.236.132.241) by CO9EHSOBE024.bigfish.com (10.236.130.87) with Microsoft SMTP Server id 14.1.225.23; Mon, 20 May 2013 06:38:48 +0000
Received: from mail18-co9 (localhost [127.0.0.1]) by mail18-co9-R.bigfish.com (Postfix) with ESMTP id 015963A083D; Mon, 20 May 2013 06:38:48 +0000 (UTC)
X-Forefront-Antispam-Report-Untrusted: CIP:157.56.240.21; KIP:(null); UIP:(null); (null); H:BL2PRD0310HT002.namprd03.prod.outlook.com; R:internal; EFV:INT
X-SpamScore: 2
X-BigFish: PS2(zzc85fhzz1f42h1ee6h1de0h1fdah1202h1e76h1d1ah1d2ah1fc6hzz17326ah18c673h8275bh8275dhz31h2a8h668h839hd24hf0ah1288h12a5h12bdh137ah1441h1504h1537h153bh162dh1631h1758h18e1h1946h19b5h19ceh1ad9h1b0ah1bceh1d07h1d0ch1d2eh1d3fh9a9j1155h)
Received-SPF: softfail (mail18-co9: transitioning domain of microsoft.com does not designate 157.56.240.21 as permitted sender) client-ip=157.56.240.21; envelope-from=charliek@microsoft.com; helo=BL2PRD0310HT002.namprd03.prod.outlook.com ; .outlook.com ;
X-Forefront-Antispam-Report-Untrusted: SFV:SKI; SFS:; DIR:OUT; SFP:; SCL:-1; SRVR:BL2PR03MB593; H:CH1PR03MB599.namprd03.prod.outlook.com; LANG:en;
Received: from mail18-co9 (localhost.localdomain [127.0.0.1]) by mail18-co9 (MessageSwitch) id 1369031926996168_23641; Mon, 20 May 2013 06:38:46 +0000 (UTC)
Received: from CO9EHSMHS012.bigfish.com (unknown [10.236.132.236]) by mail18-co9.bigfish.com (Postfix) with ESMTP id F0CAD340078; Mon, 20 May 2013 06:38:46 +0000 (UTC)
Received: from BL2PRD0310HT002.namprd03.prod.outlook.com (157.56.240.21) by CO9EHSMHS012.bigfish.com (10.236.130.22) with Microsoft SMTP Server (TLS) id 14.1.225.23; Mon, 20 May 2013 06:38:46 +0000
Received: from BL2PR03MB593.namprd03.prod.outlook.com (10.255.109.36) by BL2PRD0310HT002.namprd03.prod.outlook.com (10.255.97.37) with Microsoft SMTP Server (TLS) id 14.16.311.1; Mon, 20 May 2013 06:38:45 +0000
Received: from BL2PR03MB593.namprd03.prod.outlook.com ((10.255.109.36)) by BL2PR03MB593.namprd03.prod.outlook.com ((10.255.109.36)) with ShadowRedundancy id 15.0.680.19; Mon, 20 May 2013 06:38:45 +0000
Received: from CH1PR03MB599.namprd03.prod.outlook.com (10.255.156.164) by BL2PR03MB593.namprd03.prod.outlook.com (10.255.109.36) with Microsoft SMTP Server (TLS) id 15.0.680.19; Mon, 20 May 2013 06:38:41 +0000
Received: from CH1PR03MB599.namprd03.prod.outlook.com ([169.254.7.86]) by CH1PR03MB599.namprd03.prod.outlook.com ([169.254.7.86]) with mapi id 15.00.0698.010; Mon, 20 May 2013 06:38:41 +0000
From: Charlie Kaufman <charliek@microsoft.com>
To: "secdir@ietf.org" <secdir@ietf.org>, "iesg@ietf.org" <iesg@ietf.org>, "draft-eastlake-rfc5342bis.all@tools.ietf.org" <draft-eastlake-rfc5342bis.all@tools.ietf.org>
Thread-Topic: Secdir review of draft-eastlake-rfc5342bis-02
Thread-Index: Ac5VItQMwrxHzODCTO+I0n35ML5kGg==
Date: Mon, 20 May 2013 06:38:39 +0000
Message-ID: <88dab74d72cc4a0daa2b2050ccc7ebc0@CH1PR03MB599.namprd03.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [50.46.151.49]
Content-Type: multipart/alternative; boundary="_000_88dab74d72cc4a0daa2b2050ccc7ebc0CH1PR03MB599namprd03pro_"
MIME-Version: 1.0
X-OrganizationHeadersPreserved: BL2PR03MB593.namprd03.prod.outlook.com
X-FOPE-CONNECTOR: Id%0$Dn%*$RO%0$TLS%0$FQDN%$TlsDn%
X-FOPE-CONNECTOR: Id%59$Dn%TOOLS.IETF.ORG$RO%2$TLS%6$FQDN%corpf5vips-237160.customer.frontbridge.com$TlsDn%
X-FOPE-CONNECTOR: Id%59$Dn%IETF.ORG$RO%2$TLS%6$FQDN%corpf5vips-237160.customer.frontbridge.com$TlsDn%
X-CrossPremisesHeadersPromoted: TK5EX14HUBC103.redmond.corp.microsoft.com
X-CrossPremisesHeadersFiltered: TK5EX14HUBC103.redmond.corp.microsoft.com
X-Forefront-Antispam-Report: CIP:131.107.125.37; CTRY:US; IPV:CAL; IPV:NLI; EFV:NLI; SFV:NSPM; SFS:(189002)(199002)(69226001)(77982001)(76482001)(80022001)(33646001)(81542001)(65816001)(15202345002)(16676001)(16236675002)(81342001)(49866001)(74316001)(79102001)(71186001)(56816002)(6806003)(44976003)(56776001)(74366001)(59766001)(74706001)(31966008)(46102001)(53806001)(50986001)(47976001)(74876001)(47736001)(20776003)(63696002)(74662001)(51856001)(512954002)(54356001)(47446002)(66066001)(74502001)(4396001)(54316002)(24736002); DIR:OUT; SFP:; SCL:1; SRVR:BL2FFO11HUB008; H:TK5EX14HUBC103.redmond.corp.microsoft.com; RD:InfoDomainNonexistent; MX:1; A:1; LANG:en;
X-OriginatorOrg: microsoft.onmicrosoft.com
X-Forefront-PRVS: 0852EB6797
Subject: [secdir] Secdir review of draft-eastlake-rfc5342bis-02
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 20 May 2013 06:39:59 -0000

I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG.  These comments were written primarily for the benefit of the security area directors.  Document editors and WG chairs should treat these comments just like any other last call comments.

This document is a minor update to rfc5342bis, which discusses IANA considerations for the assignment of code points below the IANA OUI delegated to the IETF by IEEE 802. This document decouples the assignment of unicast and multicast addresses, which should lead to a more efficient allocation given that few protocols need both. It also allocates some code points for use in documentation as examples.

There really are no security considerations associated with this document. The author points out as a security consideration that allocation of code points for use in documentation may reduce confusion and conflict if people erroneously copy code points literally from documentation rather than substituting their own assigned values, and such confusion could have resulted in security issues.

I found no typos or other errors other than there may be a formatting glitch on the first page of the .pdf version, where my printer put the page 1 trailer line on a page by itself.

                --Charlie