[secdir] Fwd: Secdir review of draft-ietf-avtcore-6222bis-03

Magnus Nyström <magnusn@gmail.com> Fri, 16 August 2013 23:50 UTC

Return-Path: <magnusn@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C8E3821F9BD0; Fri, 16 Aug 2013 16:50:19 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.299
X-Spam-Level:
X-Spam-Status: No, score=-2.299 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HTML_MESSAGE=0.001, MIME_8BIT_HEADER=0.3, NO_RELAYS=-0.001]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id itBMWOxfWVOQ; Fri, 16 Aug 2013 16:50:19 -0700 (PDT)
Received: from mail-vc0-x22e.google.com (mail-vc0-x22e.google.com [IPv6:2607:f8b0:400c:c03::22e]) by ietfa.amsl.com (Postfix) with ESMTP id F339321F9B8F; Fri, 16 Aug 2013 16:50:18 -0700 (PDT)
Received: by mail-vc0-f174.google.com with SMTP id gd11so1837523vcb.19 for <multiple recipients>; Fri, 16 Aug 2013 16:50:17 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type; bh=Jr0Eo8ugcIVLwUFLMqMJA2qRpxPOpSVbP46L5Gg7KEE=; b=noTvNVxCivPxYtoVxL82VjEhu8v7yHwf23sTj8vbbiuWBlHmTrTy5RDrLYSB+CqptE MnOMiwiDQo2P8B1FBrb13RA0S8U9yGdKJq7DHUQUaI5IaPkgx8RsKJn4DKtikaOlnEuq EGSFQGji6Kv5k0QP1pGlq8bFnsWVVu40qMbOUkLFzG9EZuIVDZRluZfPMwmjyyfWp3pY bUjTWUhRXRas11IfQHsfDzU3kh8bKhczq4fIdlqqH4qH7iZWqAJjtVn2RRXUltmSsyHg yb8c67nojfJXxhYN4Esvo2wKRbUIfc58JdLNc/oskpXJNfilFqeUZsifa+XdcgMH1nCA wYdA==
MIME-Version: 1.0
X-Received: by 10.58.73.202 with SMTP id n10mr209755vev.7.1376697017302; Fri, 16 Aug 2013 16:50:17 -0700 (PDT)
Received: by 10.52.36.115 with HTTP; Fri, 16 Aug 2013 16:50:17 -0700 (PDT)
In-Reply-To: <CADajj4ZpeOL07XDHoB-rRxunu=fkV_ZJunXqSGZ9rmBGuoKM=g@mail.gmail.com>
References: <CADajj4ZpeOL07XDHoB-rRxunu=fkV_ZJunXqSGZ9rmBGuoKM=g@mail.gmail.com>
Date: Fri, 16 Aug 2013 16:50:17 -0700
Message-ID: <CADajj4YhdSUP-fj-q0c6Kcx2U2BSDOXC_tc2rAoY7MYoNrFq2Q@mail.gmail.com>
From: Magnus Nyström <magnusn@gmail.com>
To: "secdir@ietf.org" <secdir@ietf.org>, draft-allen-dispatch-imei-urn-as-instanceid@tools.ietf.org
Content-Type: multipart/alternative; boundary="047d7bacbb5cae04e304e4194068"
Cc: "iesg@ietf.org" <iesg@ietf.org>
Subject: [secdir] Fwd: Secdir review of draft-ietf-avtcore-6222bis-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 16 Aug 2013 23:50:33 -0000

I have reviewed this document as part of the security directorate's ongoing
effort to review all IETF documents being processed by the IESG.  These
comments were written primarily for the benefit of the security area
directors. Document editors and WG chairs should treat these comments just
like any other last call comments.

This memo describes how to use the GSM IMEI URN as an instance-id in SIP
contexts.
The Security Considerations section seems adequate to me although I think
that an IMEI more than "loosely" associates a user with a device; most
mobile devices have only one user and so the IMEI tracks a user pretty well.

Thanks,
-- Magnus