Re: [secdir] [Last-Call] Secdir last call review of draft-ietf-alto-unified-props-new-18

"Randriamasy, Sabine (Nokia - FR/Paris-Saclay)" <sabine.randriamasy@nokia-bell-labs.com> Wed, 20 October 2021 09:39 UTC

Return-Path: <sabine.randriamasy@nokia-bell-labs.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DE6AB3A095C; Wed, 20 Oct 2021 02:39:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.354
X-Spam-Level:
X-Spam-Status: No, score=-2.354 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.452, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=nokia.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vogPjsApKCZu; Wed, 20 Oct 2021 02:39:14 -0700 (PDT)
Received: from EUR03-VE1-obe.outbound.protection.outlook.com (mail-eopbgr50120.outbound.protection.outlook.com [40.107.5.120]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9510E3A108F; Wed, 20 Oct 2021 02:37:54 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=NS4LWo1vRa60F2gCcNL5p6ycyChGXbJqKwiI/5apClsVKOVrpjDcppsTniTypVf8XfbamTp4w1GUALbfD7jpMnx/W41qlUmo5U3fk/TGFCLmBQiwhAbQBN2irY67393c7o7MqeRn9YNuHdpG+EDHGY9rEx2nYG9GAwcsxEPt/jmnA0WGWehATwjMT+nbSA0xo/EHsek9i3QrMlbq4K7oJSuDwLcqM+DU3xcFUy7z2eWiIPlIcbUkrxnfLWrUx6uw9MwL9nVRcbYFDCD4GG3dNQyNCnVWNNKHwhjOe2bzNWHCCJiLsUFBXf6NBrYWwQVfYmlrnbjLLP3NPTwpY0/PvQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=1JVYcOhVcZ1oy3UsGxqAZY2VSqYuLMxBqwEtdhDM4Ig=; b=LI8r/ThZVpScG0mWJlW1HDkADYsnR6/G3Y5BiuIG29QyjDqzui3HRMnphK6QiUffHm9tbxoFoGfedITvnLc7IhZrjZYwUo5D1Qb3ypyWlu/s2VpczGm7P4081MThH355YI/lchs7+CElsqitUh/S3WD9vr87PfndvWVnPZpQ+vvCBochwRlgUx6fxoHSAFdCkyjfG62vpoTpNrzbVFvAg6IqVQtqWxrGOAXtGKfkHQIC/jGFjuWpXLmBLVJAiJVaZyAccThvqhFM/rhSvHTlPq836zoA3eMGlp3qWFLVdfQdCXRTDNiqs1wdv0jQ7l2J0kN5hdVsTZCQmx+HFqRk1g==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=nokia-bell-labs.com; dmarc=pass action=none header.from=nokia-bell-labs.com; dkim=pass header.d=nokia-bell-labs.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nokia.onmicrosoft.com; s=selector1-nokia-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=1JVYcOhVcZ1oy3UsGxqAZY2VSqYuLMxBqwEtdhDM4Ig=; b=n/E0OXrueV/pibvR9utDE6FoIXmfCgaykUvTxHt39UFA0zpaYU+9IbC0DLUJp0rtR1C7IQWJCn5Enc2jtCadcllb7ysAYCS4RsLPSChC20uxBWQoZzPef/5+lvb3CG4zIpZBkXZI29F4UI4RvzTfUhy16V8SPq5kyYz6nYodBrk=
Received: from PR3PR07MB7018.eurprd07.prod.outlook.com (2603:10a6:102:7d::13) by PR1PR07MB5033.eurprd07.prod.outlook.com (2603:10a6:102:8::33) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4628.13; Wed, 20 Oct 2021 09:37:51 +0000
Received: from PR3PR07MB7018.eurprd07.prod.outlook.com ([fe80::905b:f94d:2807:c70]) by PR3PR07MB7018.eurprd07.prod.outlook.com ([fe80::905b:f94d:2807:c70%6]) with mapi id 15.20.4628.016; Wed, 20 Oct 2021 09:37:51 +0000
From: "Randriamasy, Sabine (Nokia - FR/Paris-Saclay)" <sabine.randriamasy@nokia-bell-labs.com>
To: Paul Wouters <paul.wouters@aiven.io>
CC: "secdir@ietf.org" <secdir@ietf.org>, "draft-ietf-alto-unified-props-new.all@ietf.org" <draft-ietf-alto-unified-props-new.all@ietf.org>, "alto@ietf.org" <alto@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>
Thread-Topic: [Last-Call] Secdir last call review of draft-ietf-alto-unified-props-new-18
Thread-Index: AQHXqnnk7JtJLI4x6UiiL1aHEjfKt6vatqJggAAoCoCAAPhvMA==
Date: Wed, 20 Oct 2021 09:37:51 +0000
Message-ID: <PR3PR07MB7018058FADE11CB57D9B54AB95BE9@PR3PR07MB7018.eurprd07.prod.outlook.com>
References: <163174184742.9427.9373192733692803905@ietfa.amsl.com> <PR3PR07MB70185C1C330B1617B83F7ED995BD9@PR3PR07MB7018.eurprd07.prod.outlook.com> <40ff27ba-5c94-efc4-3b4e-41a9d390f590@nohats.ca>
In-Reply-To: <40ff27ba-5c94-efc4-3b4e-41a9d390f590@nohats.ca>
Accept-Language: fr-FR, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=nokia-bell-labs.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 8a5d9046-f7b2-4f20-6d1f-08d993ad4938
x-ms-traffictypediagnostic: PR1PR07MB5033:
x-microsoft-antispam-prvs: <PR1PR07MB50335988746D60D439846EE395BE9@PR1PR07MB5033.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PR3PR07MB7018.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(366004)(66476007)(64756008)(66556008)(66446008)(8676002)(76116006)(66946007)(55016002)(186003)(6916009)(38070700005)(5660300002)(86362001)(122000001)(71200400001)(2906002)(54906003)(38100700002)(4326008)(8936002)(82960400001)(316002)(52536014)(9686003)(26005)(83380400001)(33656002)(508600001)(7696005)(6506007); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: nokia-bell-labs.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PR3PR07MB7018.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 8a5d9046-f7b2-4f20-6d1f-08d993ad4938
X-MS-Exchange-CrossTenant-originalarrivaltime: 20 Oct 2021 09:37:51.5889 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5d471751-9675-428d-917b-70f44f9630b0
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: Z3DLFfSewtcjz9qn1FavbgfDrJMiKDk0FxRwS8lfrJlLtei9jmi86dg90WLYpWEWqUbvr4wD5FnZKSg+fyKL/b19mTV0TjX89+yDcDLVVyKxLwWcEugpxQK7JCX63SA8
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PR1PR07MB5033
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/i65n66mQnNafdcEU79iyoYnjSfc>
Subject: Re: [secdir] [Last-Call] Secdir last call review of draft-ietf-alto-unified-props-new-18
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 20 Oct 2021 09:39:20 -0000

Hello Paul, 
Thanks a lot for your feedback. You will see the updates in version 19
Best regards,
Sabine

>-----Original Message-----
>From: Paul Wouters <paul.wouters@aiven.io>
>Sent: Tuesday, October 19, 2021 8:48 PM
>To: Randriamasy, Sabine (Nokia - FR/Paris-Saclay)
><sabine.randriamasy@nokia-bell-labs.com>
>Cc: secdir@ietf.org; draft-ietf-alto-unified-props-new.all@ietf.org;
>alto@ietf.org; last-call@ietf.org
>Subject: Re: [Last-Call] Secdir last call review of draft-ietf-alto-unified-props-
>new-18
>
>On Tue, 19 Oct 2021, Randriamasy, Sabine (Nokia - FR/Paris-Saclay) wrote:
>
>> Thanks a lot for your review. A new version is under edition to address your
>comments.
>> Please see inline how we plan to address them. Can you let us know
>whether the proposed updates meet your expectations?
>
>That looks good, thanks!
>
>>> appropriate to refer to RFC 7285 for the Security Considerations, as
>>> is done in this document.
>> [ [SR] ]
>> [ [SR] ] Do you mean we should keep the security section of this document
>as it is or should we shorten it?
>
>I meant it is good as is.
>
>>> While extensions to a protocol don't necessitate an Updates: clause,
>>> in this case I think it should because the document addresses
>>> shortcomings in the original protocol. That is, new implementations
>>> are expected to really require implementing this new document as part
>>> of the "core specification". Thus implementers reading 7285 should
>>> really be warned to also read (and
>>> implement) this document.
>>
>> [ [SR] ] we do not oppose entities against endpoints therefore this
>> extension does not intend to replace endpoints by entities. Both are
>> useful, as some use cases can live with the base protocol. A
>> discussion thread has just started on this point and we will like to
>> have your conclusions on the exposed points of view
>
>An RFC update does not mean "do not implement what was in the older one".
>Update really means that one should read (and ideally implement) both
>documents to get the updated picture of what the IETF believes should be
>implemented. If this is just an optional extension, then Update: is not needed.
>But if it modifies the previous document to clarify or extend in a way that is
>core to the protocol, it should probably Update: the previous RFC so
>implementers know there is more to take into account than just that core
>older document.
>
>>> The IANA considerations are quite verbose. Usually, this section only
>>> contains
>
>> [ [SR] ] We have identified some paragraphs and text that are more
>considerations than specifications:
>
>Thanks. I think it will look better. Generally, think of this Section as something
>only the IANA operator will read to actually perform the registry updates and
>that any other reader will skip the section entirely.
>
>Paul