[secdir] Secdir last call review of draft-ietf-regext-rdap-sorting-and-paging-15

Rifaat Shekh-Yusef via Datatracker <noreply@ietf.org> Sun, 09 August 2020 20:22 UTC

Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 52DC73A0C23; Sun, 9 Aug 2020 13:22:38 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Rifaat Shekh-Yusef via Datatracker <noreply@ietf.org>
To: secdir@ietf.org
Cc: last-call@ietf.org, draft-ietf-regext-rdap-sorting-and-paging.all@ietf.org, regext@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.13.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <159700455794.3835.2617295222782861901@ietfa.amsl.com>
Reply-To: Rifaat Shekh-Yusef <rifaat.s.ietf@gmail.com>
Date: Sun, 09 Aug 2020 13:22:38 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/feTh3AwIfb_ZSxaUvsPomxmxsOY>
Subject: [secdir] Secdir last call review of draft-ietf-regext-rdap-sorting-and-paging-15
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 09 Aug 2020 20:22:39 -0000

Reviewer: Rifaat Shekh-Yusef
Review result: Ready

This document updates the existing Registration Data Access Protocol (RDAP) by adding 
new RDAP query extensions that allow clients to specify their preferences for sorting 
and paging result sets.

The security considerations section of the document points to RFC7481 which discusses 
all security aspect of the RDAP, and discusses the risks associated with search queries 
and potential mitigation for these risks.