Re: [secdir] SECDIR review of draft-ietf-softwire-encaps-ipsec-01

Eric Rosen <erosen@cisco.com> Mon, 09 February 2009 16:50 UTC

Return-Path: <erosen@cisco.com>
X-Original-To: secdir@core3.amsl.com
Delivered-To: secdir@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 2F2403A6A6A; Mon, 9 Feb 2009 08:50:07 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.466
X-Spam-Level:
X-Spam-Status: No, score=-6.466 tagged_above=-999 required=5 tests=[AWL=0.133, BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id E2XamHFGD2KS; Mon, 9 Feb 2009 08:50:06 -0800 (PST)
Received: from rtp-iport-2.cisco.com (rtp-iport-2.cisco.com [64.102.122.149]) by core3.amsl.com (Postfix) with ESMTP id 288F43A69B1; Mon, 9 Feb 2009 08:50:06 -0800 (PST)
X-IronPort-AV: E=Sophos;i="4.37,406,1231113600"; d="scan'208";a="36400484"
Received: from rtp-dkim-1.cisco.com ([64.102.121.158]) by rtp-iport-2.cisco.com with ESMTP; 09 Feb 2009 15:41:09 +0000
Received: from rtp-core-1.cisco.com (rtp-core-1.cisco.com [64.102.124.12]) by rtp-dkim-1.cisco.com (8.12.11/8.12.11) with ESMTP id n19Ff9sQ016094; Mon, 9 Feb 2009 10:41:09 -0500
Received: from erosen-linux.cisco.com (erosen-linux.cisco.com [161.44.70.34]) by rtp-core-1.cisco.com (8.13.8/8.13.8) with ESMTP id n19Ff9t2000907; Mon, 9 Feb 2009 15:41:09 GMT
Received: from erosen-linux (localhost.localdomain [127.0.0.1]) by erosen-linux.cisco.com (8.13.1/8.13.1) with ESMTP id n19FeuoF001375; Mon, 9 Feb 2009 10:41:00 -0500
To: Sandra Murphy <sandy@sparta.com>
In-reply-to: Your message of Thu, 29 Jan 2009 18:28:21 -0500. <Pine.WNT.4.64.0901291801410.1220@SANDYM-LT.columbia.ads.sparta.com>
Date: Mon, 09 Feb 2009 10:40:56 -0500
Message-ID: <1374.1234194056@erosen-linux>
From: Eric Rosen <erosen@cisco.com>
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; l=184; t=1234194069; x=1235058069; c=relaxed/simple; s=rtpdkim1001; h=Content-Type:From:Subject:Content-Transfer-Encoding:MIME-Version; d=cisco.com; i=erosen@cisco.com; z=From:=20Eric=20Rosen=20<erosen@cisco.com> |Subject:=20Re=3A=20[secdir]=20SECDIR=20review=20of=20draft -ietf-softwire-encaps-ipsec-01=20 |Sender:=20 |To:=20Sandra=20Murphy=20<sandy@sparta.com>; bh=ps8loLzlpSpDNXyDagn4N105mfgUfEH2qjj7eyRvNy0=; b=rmy4/Kd3XgHGFAfDn73DZ4MjpsWOHUnq07X9cBnncJuynrxG88Aj28fwOe 8HJLsTNr0r9VXB1hAXxFnF1iq4qsxQoE52zzKtecwvQ7tbXc9/Q7VuBvTLwD Hqmbscm+na;
Authentication-Results: rtp-dkim-1; header.From=erosen@cisco.com; dkim=pass ( sig from cisco.com/rtpdkim1001 verified; );
X-Mailman-Approved-At: Mon, 09 Feb 2009 13:31:17 -0800
Cc: draft-ietf-softwire-encaps-ipsec@tools.ietf.org, secdir@ietf.org, Tim Polk <tim.polk@nist.gov>, softwire-chairs@tools.ietf.org, Lou Berger <lberger@labn.net>, iesg@ietf.org
Subject: Re: [secdir] SECDIR review of draft-ietf-softwire-encaps-ipsec-01
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
Reply-To: erosen@cisco.com
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 09 Feb 2009 16:50:07 -0000

> I found it somewhat ironic that signalling the use of public key 
> cryptography in these IPsec tunnels is itself to be protected by TCP MD5:

Could you let me in on the joke?