[secdir] Secdir review of draft-ietf-anima-stable-connectivity-07

Magnus Nyström <magnusn@gmail.com> Mon, 27 November 2017 05:47 UTC

Return-Path: <magnusn@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 85EE5127775 for <secdir@ietfa.amsl.com>; Sun, 26 Nov 2017 21:47:23 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id iMQk51ly4IMJ for <secdir@ietfa.amsl.com>; Sun, 26 Nov 2017 21:47:22 -0800 (PST)
Received: from mail-pl0-x235.google.com (mail-pl0-x235.google.com [IPv6:2607:f8b0:400e:c01::235]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EE8D81200E5 for <secdir@ietf.org>; Sun, 26 Nov 2017 21:47:21 -0800 (PST)
Received: by mail-pl0-x235.google.com with SMTP id b12so7849824plm.3; Sun, 26 Nov 2017 21:47:21 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:from:date:message-id:subject:to; bh=qrjnyc/UQS84uO9CIRzdYqjMYaOjQzz9QwfE2yyubcQ=; b=vehKBexqmy6ARWujOv5vtKEeQuHYf5a8a7xDar+cN1zzAzbw4a7q4tDtKtAvJ+aCKB unfbwsuFTXA2C6PEr3Z6KaMcCIOro3hsnXxyc54Qpsz9dyrb2MQyKoB90EzMMfrtE51B 8+9dsSeJKmzZXFYpBi2NxXPSn6oHSCSPuzlA6vny3nQRB37PXvGSN25kDDEHHblmbu1O g9mLFskmZoW/08FKcD/NKYedieIy+q7iTIZDQj4oT9Z2Fv5VDji5+LU1GE/kppJBQyff 0AMC9Lhcq4rYBD5p0Eb3C/nsgYpTFrYowtom+thmBFBwOrobb0KAkVKyZBCEqEdXNIRl aZsg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:from:date:message-id:subject:to; bh=qrjnyc/UQS84uO9CIRzdYqjMYaOjQzz9QwfE2yyubcQ=; b=ssMNPzbGVszbHL0KjxzSa8pib9K7q1e+toQ22SUtdWkpe09MFH/Vqphli70uKYtp7C r7dU3RzBNYYnsoQE8ZSCzQLXmCeAhkS99Nr8G+RXeUdTF8Kyrej2S+wvpmvZnAr8vZiD xkO/cB/fk7dqST1fIcnk48Yvrx+q1kaZgFyZaq3xdg6RP3ToS3luLwYqs1mY7smku9Al x+RL+45s+Fcduo5o8J5p847j690YFsq6q8t2kqFchMzvbHRledCDR6K9t+2OCNlxf7rt 08NJYPcAo+xq2M26lG20ate8oW183Jf2SIfo37+YOccwaIO1p+jMcF8RVwf5bod8EV6C 6HnA==
X-Gm-Message-State: AJaThX6PDPHd2OC9I/Ao4r2Y5PW++EM1bQ1Y053rc4+7OF0tfHfCgOH/ cDmDkRgW5Ww/4B6AXiS+hrFgDo7sZ/SHcRLfUddLsw==
X-Google-Smtp-Source: AGs4zMYGkiZJQN4nZp3UUE9A92g96d9oMqws54gxuwK8/Lykf6G00g+gQyph52zw2vsrAroPjF7rwbHzQmZ+Nh/uNlE=
X-Received: by 10.84.229.79 with SMTP id d15mr36536545pln.397.1511761641120; Sun, 26 Nov 2017 21:47:21 -0800 (PST)
MIME-Version: 1.0
Received: by 10.100.187.2 with HTTP; Sun, 26 Nov 2017 21:47:20 -0800 (PST)
From: Magnus Nyström <magnusn@gmail.com>
Date: Sun, 26 Nov 2017 21:47:20 -0800
Message-ID: <CADajj4ZQ-9av_XWfjqaiyRWyOXV8SQ0gexDcfTLm5-StkOY88A@mail.gmail.com>
To: "secdir@ietf.org" <secdir@ietf.org>, dreft-ietf-anima-stable-connectivity@ietf.org
Content-Type: multipart/alternative; boundary="94eb2c19ecb49aa7d4055ef06fab"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/SJGDKh34-J9gU8P7KJjEnryAUMM>
Subject: [secdir] Secdir review of draft-ietf-anima-stable-connectivity-07
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 27 Nov 2017 05:47:23 -0000

I have reviewed this document as part of the security directorate's ongoing
effort to review all IETF documents being processed by the IESG. These
comments were written primarily for the benefit of the security area
directors. Document editors and WG chairs should treat these comments just
like any other last call comments.

This document describes how to leverage the Automatic Control Plane (ACP)
in Automatic Networks (AN) to provide stable and secure connectivity for
Operations, Administration and Maintenance (OAM) processes. The document is
intended to be *informational*.

The document is well written and has an adequate Security Considerations
section. I have no issues with this document. Minor nit: "encryption
protected" -> "encrypted."
-- 
-- Magnus