[secdir] Secdir review of draft-housley-sow-author-statistics-00

"Brian Weis (bew)" <bew@cisco.com> Mon, 21 September 2015 16:20 UTC

Return-Path: <bew@cisco.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1CD381A9104; Mon, 21 Sep 2015 09:20:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.511
X-Spam-Level:
X-Spam-Status: No, score=-14.511 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 986OMEGTtoxv; Mon, 21 Sep 2015 09:20:36 -0700 (PDT)
Received: from rcdn-iport-4.cisco.com (rcdn-iport-4.cisco.com [173.37.86.75]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 80DE41A90F7; Mon, 21 Sep 2015 09:20:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=827; q=dns/txt; s=iport; t=1442852436; x=1444062036; h=from:to:cc:subject:date:message-id:content-id: content-transfer-encoding:mime-version; bh=PBwD9Ht+ELeF6AiHub1MKsLeHD6UQ2VevYDDYfviBTs=; b=clRv+DkARP9eP9ehTiHIqpTICrL3WN240E6rpf0c22xPEEBToAVuehDz EqhZQqmVY0hZXwFSrABIBFhiouDhrkFobGf6V0/JbeBI9DfmSKKya4YMZ kxXKOvT1KCpW7wAHl1JTQChQV1b+hQWNFo1VCxpVNgDop+dASdFy5CVRc I=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0D0AQDPLQBW/51dJa1dgySBQ71AAQ2HdIE3OBQBAQEBAQEBgQqEJgQ6PxIBPkInBAENiDPLEQEBAQEBAQEBAQEBAQEBAQEBAQEZiQKHe4MfgRQFlWQBdowQmxkBHwEBQoQBiVmBBQEBAQ
X-IronPort-AV: E=Sophos;i="5.17,568,1437436800"; d="scan'208";a="30666001"
Received: from rcdn-core-6.cisco.com ([173.37.93.157]) by rcdn-iport-4.cisco.com with ESMTP; 21 Sep 2015 16:20:35 +0000
Received: from XCH-RCD-001.cisco.com (xch-rcd-001.cisco.com [173.37.102.11]) by rcdn-core-6.cisco.com (8.14.5/8.14.5) with ESMTP id t8LGKZX1030150 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL); Mon, 21 Sep 2015 16:20:35 GMT
Received: from xch-aln-001.cisco.com (173.36.7.11) by XCH-RCD-001.cisco.com (173.37.102.11) with Microsoft SMTP Server (TLS) id 15.0.1104.5; Mon, 21 Sep 2015 11:20:34 -0500
Received: from xch-aln-001.cisco.com ([173.36.7.11]) by XCH-ALN-001.cisco.com ([173.36.7.11]) with mapi id 15.00.1104.000; Mon, 21 Sep 2015 11:20:34 -0500
From: "Brian Weis (bew)" <bew@cisco.com>
To: The IESG <iesg@ietf.org>, "secdir@ietf.org" <secdir@ietf.org>
Thread-Topic: Secdir review of draft-housley-sow-author-statistics-00
Thread-Index: AQHQ9IlxCj3sTSDbo0+nPTqc+MpEgA==
Date: Mon, 21 Sep 2015 16:20:34 +0000
Message-ID: <D32CEC2B-40C8-439B-A807-6B01E02083ED@cisco.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.24.200.178]
Content-Type: text/plain; charset="us-ascii"
Content-ID: <B1F087CDFC9E3F4999628BEECA5EC887@emea.cisco.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Archived-At: <http://mailarchive.ietf.org/arch/msg/secdir/hBBZrlsWRT98D0g0az9l-KpRI0g>
Cc: "draft-housley-sow-author-statistics.all@tools.ietf.org" <draft-housley-sow-author-statistics.all@tools.ietf.org>
Subject: [secdir] Secdir review of draft-housley-sow-author-statistics-00
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 21 Sep 2015 16:20:38 -0000

I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG. These comments were written primarily for the benefit of the security area directors. Document editors and WG chairs should treat these comments just like any other last call comments.

This draft outlines requirements for a statement of work to provide statistics about RFCs, Internet-Drafts, and their authors. There are no particular security considerations to the statement of work. There are also no privacy considerations that I can see, insomuch that the results will formalize the existing tools that gather statistics, and the statistics are gathered from previously published documents.

I consider this draft to be Ready to publish.

Brian