[secdir] secdir review of draft-ietf-nvo3-mcast-framework

Carl Wallace <carl@redhoundsoftware.com> Mon, 02 October 2017 12:41 UTC

Return-Path: <carl@redhoundsoftware.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3804B1345EA for <secdir@ietfa.amsl.com>; Mon, 2 Oct 2017 05:41:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.701
X-Spam-Level:
X-Spam-Status: No, score=-2.701 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=redhoundsoftware.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4nXI29jMO_Fs for <secdir@ietfa.amsl.com>; Mon, 2 Oct 2017 05:41:03 -0700 (PDT)
Received: from mail-qk0-x22c.google.com (mail-qk0-x22c.google.com [IPv6:2607:f8b0:400d:c09::22c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C9D5D1345F8 for <secdir@ietf.org>; Mon, 2 Oct 2017 05:41:00 -0700 (PDT)
Received: by mail-qk0-x22c.google.com with SMTP id k123so1482658qke.3 for <secdir@ietf.org>; Mon, 02 Oct 2017 05:41:00 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhoundsoftware.com; s=google; h=user-agent:date:subject:from:to:cc:message-id:thread-topic :mime-version:content-transfer-encoding; bh=PtBR7xog8LtQDYWaqiCzQv12ijwOKjK7NsD/P9DFHD0=; b=L2nNAi6pb5yrsGNOPxeQERQqElb2JvZbuswkrhWyIS3rIfC4ywKYtU/qnce+JqDoRz ZQffWqzusR5F50JsFQsWEvJHqRPitptCa+wwBjzY77h9Udi+EYS3fk8KUCmzJekjCtOl PjRB0wY/Wgb1ddn8UFjpVRw55IxiWxgpWK6Ec=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:user-agent:date:subject:from:to:cc:message-id :thread-topic:mime-version:content-transfer-encoding; bh=PtBR7xog8LtQDYWaqiCzQv12ijwOKjK7NsD/P9DFHD0=; b=siUAtt/GDIKfks0jUakKYI7hDHpSIVWpNn/1hE2Wvuv8o0cOhmSXKfuoNCnGs6UiTA fJI8OBZ7d4reFN/u2Xo5DRr/35l1A2LPa0yTKXmZ/s65HsfzrC/SiD2WLG7GnSNNiC10 JUb64vekV642YcpTAsWz5KFl/ti/2vODOYgz0pdd2DT7F8jPwRyyWfepteQUFJAZ6K+e CzB7yCFjPC1BgWHOhqI5Z7ZZRn3HkZ5ugBxW2XpfWs5/0RIrXZuogmWQ4B3F+3h/00mS bGxuKJXOcca1harXZgFLdZYkgazUjQGC91HLDIWEjhqdUAKNg6/WpTQMWCGVKUZoP6K4 i8rw==
X-Gm-Message-State: AMCzsaWI2vAWTJMABjYLtif2WornPV1C5d7VqMPdVwfyV0SLlnbCeJmZ TXI5f6V682GiYe9tNr9N4zsmsw==
X-Google-Smtp-Source: AOwi7QCSxr/z3ffaYxs96nnFZLUONd8EdLT03yOyO0vU17sCqd/FNFUvemg9xyKIlKFYyeDT4gTkyQ==
X-Received: by 10.55.201.135 with SMTP id m7mr9904079qkl.97.1506948059586; Mon, 02 Oct 2017 05:40:59 -0700 (PDT)
Received: from [192.168.2.27] (pool-173-66-76-215.washdc.fios.verizon.net. [173.66.76.215]) by smtp.googlemail.com with ESMTPSA id c188sm6195096qkg.55.2017.10.02.05.40.55 (version=TLS1 cipher=AES128-SHA bits=128/128); Mon, 02 Oct 2017 05:40:59 -0700 (PDT)
User-Agent: Microsoft-MacOutlook/14.7.6.170621
Date: Mon, 02 Oct 2017 08:40:50 -0400
From: Carl Wallace <carl@redhoundsoftware.com>
To: draft-ietf-nvo3-mcast-framework.all@ietf.org
CC: secdir@ietf.org, "iesg@ietf.org" <iesg@ietf.org>
Message-ID: <D5F7AC12.A09B1%carl@redhoundsoftware.com>
Thread-Topic: secdir review of draft-ietf-nvo3-mcast-framework
Mime-version: 1.0
Content-type: text/plain; charset="UTF-8"
Content-transfer-encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/gaHMRiEomSexJ7hAh_TDmS5D6lo>
Subject: [secdir] secdir review of draft-ietf-nvo3-mcast-framework
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 02 Oct 2017 12:41:04 -0000

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the IESG.
These comments were written primarily for the benefit of the  security
area directors.  Document editors and WG chairs should treat  these
comments just like any other last call comments.

The summary of the review is Ready.


The draft provides additional detail for handling multi-cast vs the
material in RFC7365 and RFC8014. The draft references RFC8014 for Security
Considerations content, which in turn reference RFC7365. This seems fine
(though I was surprised the additional depth of detail on multi-cast did
not generate any additional detail in the security considerations section).