[secdir] draft-ietf-mpls-mldp-yang-16 ietf last call Secdir review

Linda Dunbar via Datatracker <noreply@ietf.org> Tue, 28 April 2026 02:22 UTC

Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@mail2.ietf.org
Received: from [10.244.6.213] (unknown [4.156.85.76]) by mail2.ietf.org (Postfix) with ESMTP id 2D854E45CF04; Mon, 27 Apr 2026 19:22:26 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1777342946; bh=lkbVwDsZFdp1tXefyV1QGiPViIK77Q8x/9TLzJH5xE8=; h=From:To:Cc:Subject:Reply-To:Date; b=naOnXYunBFdsDxVTx1FnKgnNt0a4nc6ta8mlUenDxVmib+LwAqWsbM4H7C98pq+1h DBb5TG+pvNSQ3iI7MiV6l8MsUKYu9cQcWgPxLRxjAnovo+mIkJDL8xzYrMjAQlqN06 rjTzFpKlbjIFNUXHmp/BfhPurs6iwYUZDg6IJknw=
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: Linda Dunbar via Datatracker <noreply@ietf.org>
To: secdir@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 12.62.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <177734294605.749.276267136077533042@dt-datatracker-b45949c58-t72jx>
Date: Mon, 27 Apr 2026 19:22:26 -0700
Message-ID-Hash: BGEDDWYKPKAP5J4QPXJPLKWSH442TMGD
X-Message-ID-Hash: BGEDDWYKPKAP5J4QPXJPLKWSH442TMGD
X-MailFrom: noreply@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-secdir.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: draft-ietf-mpls-mldp-yang.all@ietf.org, last-call@ietf.org, mpls@ietf.org
X-Mailman-Version: 3.3.9rc6
Reply-To: Linda Dunbar <linda.dunbar@futurewei.com>
Subject: [secdir] draft-ietf-mpls-mldp-yang-16 ietf last call Secdir review
List-Id: Security Area Directorate <secdir.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/gIJOx1WQ1C18C69a6uAts_mhPnM>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Owner: <mailto:secdir-owner@ietf.org>
List-Post: <mailto:secdir@ietf.org>
List-Subscribe: <mailto:secdir-join@ietf.org>
List-Unsubscribe: <mailto:secdir-leave@ietf.org>

Document: draft-ietf-mpls-mldp-yang
Title: YANG Data Model for MPLS mLDP
Reviewer: Linda Dunbar
Review result: Has Nits

The document is generally well structured and appears consistent with common
YANG data model RFC practice. The Security Considerations section follows the
usual pattern by referencing NETCONF/RESTCONF secure transports, NACM, writable
nodes, readable nodes, and notifications.

One minor security comment is that the readable-node discussion could more
explicitly say that exposure of mLDP roots, peers, FEC-label bindings, RDs, and
multicast group information may reveal topology and service information. The
notification text already mentions rate limiting, which is good; it may be
useful to mention that excessive mLDP FEC-event notifications could also create
operational load.

Nits:
“copytight” should be “copyright”;
“Operatiobal” should be “Operational”;
“exchnaged” should be “exchanged”;
“yang” should be consistently capitalized as “YANG.”;

Best Regards,
Linda Dunbar