[secdir] Security review of draft-ietf-i2rs-yang-l3-topology-13

"Hilarie Orman" <hilarie@purplestreak.com> Fri, 08 December 2017 05:09 UTC

Return-Path: <hilarie@purplestreak.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 68A6D128D3E; Thu, 7 Dec 2017 21:09:36 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.1
X-Spam-Level:
X-Spam-Status: No, score=-2.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_SORBS_SPAM=0.5] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Lq_1-qBdvGvl; Thu, 7 Dec 2017 21:09:35 -0800 (PST)
Received: from out03.mta.xmission.com (out03.mta.xmission.com [166.70.13.233]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 54363127B57; Thu, 7 Dec 2017 21:09:35 -0800 (PST)
Received: from in02.mta.xmission.com ([166.70.13.52]) by out03.mta.xmission.com with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.87) (envelope-from <hilarie@purplestreak.com>) id 1eNAui-0007GR-Je; Thu, 07 Dec 2017 22:09:32 -0700
Received: from [72.250.219.84] (helo=rumpleteazer.rhmr.com) by in02.mta.xmission.com with esmtpsa (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.87) (envelope-from <hilarie@purplestreak.com>) id 1eNAug-0002Gd-R1; Thu, 07 Dec 2017 22:09:32 -0700
Received: from rumpleteazer.rhmr.com (localhost [127.0.0.1]) by rumpleteazer.rhmr.com (8.14.4/8.14.4/Debian-4.1ubuntu1) with ESMTP id vB8596um021144; Thu, 7 Dec 2017 22:09:06 -0700
Received: (from hilarie@localhost) by rumpleteazer.rhmr.com (8.14.4/8.14.4/Submit) id vB8594b1021139; Thu, 7 Dec 2017 22:09:04 -0700
Date: Thu, 07 Dec 2017 22:09:04 -0700
Message-Id: <201712080509.vB8594b1021139@rumpleteazer.rhmr.com>
From: Hilarie Orman <hilarie@purplestreak.com>
Reply-To: Hilarie Orman <hilarie@purplestreak.com>
To: iesg@ietf.org, secdir@ietf.org
Cc: draft-ietf-i2rs-yang-l3-topology-all@tools.ietf.org
X-XM-SPF: eid=1eNAug-0002Gd-R1; ; ; mid=<201712080509.vB8594b1021139@rumpleteazer.rhmr.com>; ; ; hst=in02.mta.xmission.com; ; ; ip=72.250.219.84; ; ; frm=hilarie@purplestreak.com; ; ; spf=none
X-XM-AID: U2FsdGVkX1+r+ne2LiJ4Ajq0b8aIyJPf
X-SA-Exim-Connect-IP: 72.250.219.84
X-SA-Exim-Mail-From: hilarie@purplestreak.com
X-Spam-DCC: XMission; sa06 1397; Body=1 Fuz1=1 Fuz2=1
X-Spam-Combo: ******;iesg@ietf.org, secdir@ietf.org
X-Spam-Relay-Country:
X-Spam-Timing: total 641 ms - load_scoreonly_sql: 0.04 (0.0%), signal_user_changed: 2.9 (0.5%), b_tie_ro: 2.1 (0.3%), parse: 0.63 (0.1%), extract_message_metadata: 2.5 (0.4%), get_uri_detail_list: 0.44 (0.1%), tests_pri_-1000: 2.6 (0.4%), tests_pri_-950: 1.22 (0.2%), tests_pri_-900: 1.38 (0.2%), tests_pri_-400: 15 (2.3%), check_bayes: 13 (2.1%), b_tokenize: 4.1 (0.6%), b_tok_get_all: 3.3 (0.5%), b_comp_prob: 1.65 (0.3%), b_tok_touch_all: 2.4 (0.4%), b_finish: 0.77 (0.1%), tests_pri_0: 609 (95.0%), check_dkim_signature: 0.43 (0.1%), check_dkim_adsp: 443 (69.2%), tests_pri_500: 3.4 (0.5%), rewrite_mail: 0.00 (0.0%)
X-SA-Exim-Version: 4.2.1 (built Thu, 05 May 2016 13:38:54 -0600)
X-SA-Exim-Scanned: Yes (on in02.mta.xmission.com)
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/YuxJWA0mTmpP5dS1YDSbim7Y6tI>
Subject: [secdir] Security review of draft-ietf-i2rs-yang-l3-topology-13
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Dec 2017 05:09:36 -0000

			  Security review of
	       A YANG Data Model for Layer 3 Topologies
	       draft-ietf-i2rs-yang-l3-topology-13.txt

Do not be alarmed.  I have reviewed this document as part of the
security directorate's ongoing effort to review all IETF documents
being processed by the IESG.  These comments were written primarily
for the benefit of the security area directors.  Document editors and
WG chairs should treat these comments just like any other last call
comments.

The security consideration regarding the data model storage and transmission
for layer 3 topologies seem to be delineated clearly enough.  I call it Ready.

Hilarie