[secdir] R: secdir review of draft-ietf-ippm-alt-mark-13

Fioccola Giuseppe <giuseppe.fioccola@telecomitalia.it> Thu, 26 October 2017 09:14 UTC

Return-Path: <giuseppe.fioccola@telecomitalia.it>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CB82E13F4F4; Thu, 26 Oct 2017 02:14:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.62
X-Spam-Level:
X-Spam-Status: No, score=-2.62 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H4=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0nrP2_9o8zdn; Thu, 26 Oct 2017 02:14:17 -0700 (PDT)
Received: from mx02.telecomitalia.it (mx02.telecomitalia.it [217.169.121.22]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 81E9613AB12; Thu, 26 Oct 2017 02:14:16 -0700 (PDT)
X-AuditID: d9a97916-059ff7000000b3a3-ec-59f1a766d46a
Received: from TELMBXB02RM001.telecomitalia.local ( [10.14.252.27]) (using TLS with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (Client did not present a certificate) by mx02.telecomitalia.it () with SMTP id B9.BD.45987.667A1F95; Thu, 26 Oct 2017 11:14:14 +0200 (CEST)
From: Fioccola Giuseppe <giuseppe.fioccola@telecomitalia.it>
To: Taylor Yu <tlyu@mit.edu>, "iesg@ietf.org" <iesg@ietf.org>, "secdir@ietf.org" <secdir@ietf.org>, "draft-ietf-ippm-alt-mark.all@ietf.org" <draft-ietf-ippm-alt-mark.all@ietf.org>
Thread-Topic: secdir review of draft-ietf-ippm-alt-mark-13
Thread-Index: AQHTTfzDqwPRXUR6aE6ZHyCQVGUiw6L11+CA
Date: Thu, 26 Oct 2017 09:14:13 +0000
Message-ID: <391beb71155048f3b8168c2c1fb5c8bd@TELMBXB02RM001.telecomitalia.local>
References: <ldvtvym4r03.fsf@ubuntu-1gb-nyc1-01.localdomain>
In-Reply-To: <ldvtvym4r03.fsf@ubuntu-1gb-nyc1-01.localdomain>
Accept-Language: it-IT, en-US
Content-Language: it-IT
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.14.252.234]
x-ti-disclaimer: Disclaimer1
Content-Type: text/plain; charset="iso-8859-1"
content-transfer-encoding: quoted-printable
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFlrPKsWRmVeSWpSXmKPExsXCxfdHWjdt+cdIg76FwhazbjeyW8z4M5HZ 4sPChywW3c0b2RxYPJYs+cnk0XTmKHMAU1QDo01iXl5+SWJJqkJKanGyrZJLZnFyTmJmbmqR QkhqTmpyfq6SQmaKrZKxkkJBTmJyam5qXomtUmJBQWpeipIdlwIGsAEqy8xTSM1Lzk/JzEu3 VfIM9te1sDC11DVUsgssTS0uyVfITS0uTkxPz8xXSE1YL5ixaPN6xoJjvBVbvx5hbGD8z9XF yMkhIWAicXNiD1MXIxeHkMBUJomt84+ygiTYBGwkDr46wQZiiwhsZ5SY0G8KYgsLWEh8+vCU ESJuJbF2705mCNtIouXTJrA4i4CqxLTt38Hm8AoESrx/0Q82Rwho5vRju9hBbE4BW4nVXxaD xRkFZCUm7F4E1sssIC7xYvoJdojjBCSW7DnPDGGLSrx8/I8VwjaQ2Lp0HwuErSgx5fdORghb RmLhkcmsEHP0JG5MncIGYWtLLFv4mhniHkGJkzOfsExgFJ2FZN0sJC2zkLTMQtKygJFlFaNo boWBkV4JJM4ySxJzMhP1Mks2MQJTxc2VlWI7GFvXOh9iFOBgVOLhvdb+MVKINbGsuDL3EKME B7OSCO+dGUAh3pTEyqrUovz4otKc1OJDjD7AEJvILCWanA9MY3kl8YYmFpaGxhYWRoYWZqY4 hJXEeeMdPkQKCaQDE1V2ampBahHMOCYOTqkGRsYS897oc2eEFzsV7P++KfUkc0ZGzuvr7r4v Yn/UtRy/YvS+9/+puTGNqanGfIYsO5tc87k+K+jO4FbbMHND4J7rO6a0hOsaz2AwkPmiUO/c nHXifepq/v9HHrkL/zDf9rb9ypK+a6eDT78WmGRXnMp0mf/G6023Hp9szpNsPh/20jaC73yk ohJLcUaioRZzUXEiAD6BO1pCAwAA
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/dYwXHZ__a4o9qPA8LXEfHj0URg4>
Subject: [secdir] R: secdir review of draft-ietf-ippm-alt-mark-13
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 26 Oct 2017 09:14:19 -0000

Hi Taylor,
I appreciate your good opinion of the document and I agree with your notes.

Thanks,

Giuseppe

-----Messaggio originale-----
Da: Taylor Yu [mailto:tlyu@mit.edu] 
Inviato: giovedì 26 ottobre 2017 03:50
A: iesg@ietf.org; secdir@ietf.org; draft-ietf-ippm-alt-mark.all@ietf.org
Oggetto: secdir review of draft-ietf-ippm-alt-mark-13

I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG.  These comments were written primarily for the benefit of the security area directors.  Document editors and WG chairs should treat these comments just like any other last call comments.

The summary of the review is Ready.

The Security Considerations section seems reasonable.  I mostly agree that

  "The privacy concerns of network measurement are limited because the
   method only relies on information contained in the IP header without
   any release of user data."

I would add that although information in the IP header is metadata that can be used to compromise the privacy of users, the limited marking technique in this document seems unlikely to substantially increase the existing privacy risks from IP header metadata.  I also think it's reasonable to consider this detail to be already addressed by the wording "privacy concerns... are limited".

It might be theoretically possible to modulate the marking to serve as a covert channel, but I think it would have a very low data rate if it is to avoid adversely affecting the measurement systems that monitor the marking.  It's probably not worth mentioning this possibility in the document.

Best regards,

-Taylor

Questo messaggio e i suoi allegati sono indirizzati esclusivamente alle persone indicate. La diffusione, copia o qualsiasi altra azione derivante dalla conoscenza di queste informazioni sono rigorosamente vietate. Qualora abbiate ricevuto questo documento per errore siete cortesemente pregati di darne immediata comunicazione al mittente e di provvedere alla sua distruzione, Grazie. 

This e-mail and any attachments is confidential and may contain privileged information intended for the addressee(s) only. Dissemination, copying, printing or use by anybody else is unauthorised. If you are not the intended recipient, please delete this message and any attachments and advise the sender by return e-mail, Thanks. 

Rispetta l'ambiente. Non stampare questa mail se non è necessario.