[secdir] SecDir review of draft-zorn-radius-pkmv1-10.txt

Donald Eastlake <d3e3e3@gmail.com> Tue, 16 February 2010 05:06 UTC

Return-Path: <d3e3e3@gmail.com>
X-Original-To: secdir@core3.amsl.com
Delivered-To: secdir@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 0EAED28C13E; Mon, 15 Feb 2010 21:06:26 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.444
X-Spam-Level:
X-Spam-Status: No, score=-2.444 tagged_above=-999 required=5 tests=[AWL=0.154, BAYES_00=-2.599, HTML_MESSAGE=0.001]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id nJO5wgzs+W7r; Mon, 15 Feb 2010 21:06:25 -0800 (PST)
Received: from ey-out-2122.google.com (ey-out-2122.google.com [74.125.78.27]) by core3.amsl.com (Postfix) with ESMTP id C233A28C0D0; Mon, 15 Feb 2010 21:06:24 -0800 (PST)
Received: by ey-out-2122.google.com with SMTP id 9so807709eyd.5 for <multiple recipients>; Mon, 15 Feb 2010 21:07:53 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=gamma; h=domainkey-signature:mime-version:received:date:message-id:subject :from:to:cc:content-type; bh=I0bS3dfuf7vt0Q4xmj3lC0Av8dKlMdPDTucCE4AbsMI=; b=ZiZeWIFUoky7IbeYSx1OEfr3XT1C8yymPu3vGDqKtQt8UKC0fuHfrhZ3Bm9/rMvX1f qEmUOa7keaFGFLYgj3GowScGe7UwYda7wxHEYsrplwQ/KM0MbG5juoK0oK7PZDtvMsMA PRxvpThnC/Pkwl7FymXFRz/JlpGbFBTbwcp9M=
DomainKey-Signature: a=rsa-sha1; c=nofws; d=gmail.com; s=gamma; h=mime-version:date:message-id:subject:from:to:cc:content-type; b=jrjyVUQ1Vg8BtSvS563uLcNT3aPsofCfdFson1dL32OphETAjggfXgO/8qhsxUG5od HdVzr48mnCP9iDABUcv+kgSqbYw3IDtgmN8wFaUQ9sH8wCvnsRkDHeiv4rrejy7WH7uJ 058Z0SYh2CFjJPN4Vq0V6pWb2aXVaCYQkJ75U=
MIME-Version: 1.0
Received: by 10.216.87.208 with SMTP id y58mr1742340wee.30.1266296873649; Mon, 15 Feb 2010 21:07:53 -0800 (PST)
Date: Tue, 16 Feb 2010 00:07:53 -0500
Message-ID: <1028365c1002152107p103a7cf1pac611ba5e4d2d0d3@mail.gmail.com>
From: Donald Eastlake <d3e3e3@gmail.com>
To: Glen Zorn <gwz@net-zen.net>, Dan Romascanu <dromasca@avaya.com>, iesg@ietf.org
Content-Type: multipart/alternative; boundary="0016e6d7e352558a92047fb0b7ac"
Cc: secdir@ietf.org
Subject: [secdir] SecDir review of draft-zorn-radius-pkmv1-10.txt
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 16 Feb 2010 05:06:26 -0000

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the
IESG.  Document editors and WG chairs should treat these comments just
like any other last call comments.

This document defines seven RADIUS Attributes to support the
implementation of 802.16 (WiMax) PKMv1 (Privacy Key Management version
1). I previous reviewed version -05 of this draft.

The Security Considerations section has been significantly improved since
the -05 Draft. The only question I have is the "[SecEn]" reference. It is
not common, in my experience, to reference a conference proceedings for the
significant security properties of a protocol and I do not know how
accessible this document is. But in this case, I think it is OK.

Thanks,
Donald
=============================
 Donald E. Eastlake 3rd   +1-508-634-2066 (home)
 155 Beaver Street
 Milford, MA 01757 USA
 d3e3e3@gmail.com