[secdir] Secdir last call review of draft-ietf-lamps-rfc8398bis-03
Rich Salz via Datatracker <noreply@ietf.org> Mon, 29 January 2024 16:39 UTC
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 02778C151080; Mon, 29 Jan 2024 08:39:25 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Rich Salz via Datatracker <noreply@ietf.org>
To: secdir@ietf.org
Cc: draft-ietf-lamps-rfc8398bis.all@ietf.org, last-call@ietf.org, spasm@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 12.4.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <170654636499.18988.15412382333916953624@ietfa.amsl.com>
Reply-To: Rich Salz <rsalz@akamai.com>
Date: Mon, 29 Jan 2024 08:39:25 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/XUDfDq2WTSYgF9AVtaGJkl2d-BY>
Subject: [secdir] Secdir last call review of draft-ietf-lamps-rfc8398bis-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.39
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Jan 2024 16:39:25 -0000
Reviewer: Rich Salz Review result: Ready This is the SECDIR review for draft-ietf-lamps-rfc8398bis. This is intended for the Security ADs, authors should treat this as any other IETF LC review. This is a short document that removes an ambiguity in encoding non-ASCII names in internationalized email addresses in DNS. The ambiguity is a security hole. This document mandates only, and always, using A-label format. Code will be simpler, too. I found a nit during WGLC, DNSDIR reviewed it, the outgoing SecAD had no issues, and one person asked for a sample cert (which wasn't added). This is ready to move forward.
- [secdir] Secdir last call review of draft-ietf-la… Rich Salz via Datatracker