[secdir] secdir review of draft-ietf-tls-dtls-heartbeat-03

Tobias Gondrom <tobias.gondrom@gondrom.org> Wed, 19 October 2011 12:32 UTC

Return-Path: <tobias.gondrom@gondrom.org>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 67BA621F8BA0 for <secdir@ietfa.amsl.com>; Wed, 19 Oct 2011 05:32:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -96.164
X-Spam-Level:
X-Spam-Status: No, score=-96.164 tagged_above=-999 required=5 tests=[AWL=0.613, BAYES_00=-2.599, FH_HELO_EQ_D_D_D_D=1.597, HELO_DYNAMIC_IPADDR=2.426, HELO_EQ_DE=0.35, HELO_MISMATCH_DE=1.448, HTML_MESSAGE=0.001, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5tr9qfJQEo4J for <secdir@ietfa.amsl.com>; Wed, 19 Oct 2011 05:32:32 -0700 (PDT)
Received: from lvps83-169-7-107.dedicated.hosteurope.de (www.gondrom.org [83.169.7.107]) by ietfa.amsl.com (Postfix) with ESMTP id 3D39021F8B5B for <secdir@ietf.org>; Wed, 19 Oct 2011 05:32:31 -0700 (PDT)
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=default; d=gondrom.org; b=aa1/aSR8LboQSwkrIgbjeiOPxGFpPnplpQOi60oSCJYVsGewE8IW7sqxrYGmu5U1wmQRYIoOHLZIv6U5uG3BtPgdyZwnlztIlw2TCqEZ83y9CrbErl0uP57VWyOjs6hl; h=Received:Received:Message-ID:Date:From:User-Agent:MIME-Version:To:CC:Subject:Content-Type;
Received: (qmail 27938 invoked from network); 19 Oct 2011 14:31:56 +0200
Received: from d1-231-46-143-118-on-nets.com (HELO ?118.143.46.231?) (118.143.46.231) by www.gondrom.org with (DHE-RSA-AES256-SHA encrypted) SMTP; 19 Oct 2011 14:31:55 +0200
Message-ID: <4E9EC337.1070404@gondrom.org>
Date: Wed, 19 Oct 2011 13:31:51 +0100
From: Tobias Gondrom <tobias.gondrom@gondrom.org>
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:7.0) Gecko/20110923 Thunderbird/7.0
MIME-Version: 1.0
To: iesg@ietf.org, secdir@ietf.org
Content-Type: multipart/alternative; boundary="------------080802080006030305050108"
Cc: draft-ietf-tls-dtls-heartbeat.all@tools.ietf.org
Subject: [secdir] secdir review of draft-ietf-tls-dtls-heartbeat-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 19 Oct 2011 12:32:33 -0000

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the
IESG.  These comments were written primarily for the benefit of the
security area directors.  Document editors and WG chairs should treat
these comments just like any other last call comments.


The draft introduces a Heartbeat Extension for TLS and DTLS.

The Security Considerations sections states:
"This document does not add any additional security considerations in 
addition to the ones given in [I-D.ietf-tls-rfc4347-bis] and [RFC5246]."

I agree and have no concerns with the draft.

Best regards, Tobias