[secdir] secdir review of draft-ietf-tls-extractor-06
"pat cain" <pcain2@mail2.coopercain.com> Mon, 10 August 2009 18:02 UTC
Return-Path: <pcain2@mail2.coopercain.com>
X-Original-To: secdir@core3.amsl.com
Delivered-To: secdir@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 50AA13A6359; Mon, 10 Aug 2009 11:02:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.74
X-Spam-Level:
X-Spam-Status: No, score=-0.74 tagged_above=-999 required=5 tests=[BAYES_20=-0.74]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 74TgCXgxbcua; Mon, 10 Aug 2009 11:02:38 -0700 (PDT)
Received: from server1.acmehacking.com (server1.acmehacking.com [72.51.39.79]) by core3.amsl.com (Postfix) with ESMTP id 7D1123A6E72; Mon, 10 Aug 2009 11:02:38 -0700 (PDT)
Received: from familyroom (familyroom8.bc.edu [136.167.27.78]) (authenticated bits=0) by server1.acmehacking.com (8.14.3/8.13.8) with ESMTP id n7AG1HWB001594 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=NO); Mon, 10 Aug 2009 11:01:58 -0500
Received: from familyroom by familyroom (PGP Universal service); Mon, 10 Aug 2009 12:01:59 -0500
X-PGP-Universal: processed; by familyroom on Mon, 10 Aug 2009 12:01:59 -0500
From: pat cain <pcain2@mail2.coopercain.com>
To: secdir@ietf.org, iesg@ietf.org, draft-ietf-tls-extractor@tools.ietf.org
Date: Mon, 10 Aug 2009 12:01:17 -0400
Message-ID: <078f01ca19d3$ce6e7620$6b4b6260$@coopercain.com>
MIME-Version: 1.0
X-Mailer: Microsoft Office Outlook 12.0
Thread-Index: AcoZ08Jv4fKiOlQZThuonAZ7QwbYVA==
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Content-Language: en-us
Subject: [secdir] secdir review of draft-ietf-tls-extractor-06
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 10 Aug 2009 18:02:39 -0000
Hi, I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG. These comments were written primarily for the benefit of the security area directors. Document editors and WG chairs should treat these comments just like any other last call comments. A number of protocols wish to leverage Transport Layer Security (TLS) to perform key establishment but then use some of the keying material for their own purposes. This document describes a general mechanism for allowing that. The document looks alright to me. Pat Cain