[secdir] Secdir telechat review of draft-ietf-spring-oam-usecase-09

Takeshi Takahashi <takeshi_takahashi@nict.go.jp> Tue, 12 December 2017 07:52 UTC

Return-Path: <takeshi_takahashi@nict.go.jp>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 3494C12941C; Mon, 11 Dec 2017 23:52:17 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Takeshi Takahashi <takeshi_takahashi@nict.go.jp>
To: <secdir@ietf.org>
Cc: spring@ietf.org, ietf@ietf.org, draft-ietf-spring-oam-usecase.all@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 6.67.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <151306513713.20438.3742368041842215985@ietfa.amsl.com>
Date: Mon, 11 Dec 2017 23:52:17 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/mkGQFbZ1-yIKmBf6OgtRsqfQUWA>
Subject: [secdir] Secdir telechat review of draft-ietf-spring-oam-usecase-09
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.22
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 12 Dec 2017 07:52:17 -0000

Reviewer: Takeshi Takahashi
Review result: Has Nits

The issues I have here are very minor.
The security consideration section became better than the 06 version that I
have reviewed before, but I hope the editors could be kind enough to help
reader understand security situation better.

Minor comments:

Regarding this sentence "but it can be used to compromse security in the cse of
external IP domains", what do you mean by "compromise security"? It would be
nice if you could describe what kind of security compromise may happen in order
for the readers to understand the threats more vividly.

Editorial comments:

1. LDP had better be spelled out.
2. "skilled personal": could it be "skilled personnel"?
3. This sentence "As it is necessary to know that the information is
   stale is order to follow the instruction, as is the case with for
   example convergence events that may be ongoing at the time of
   diagnostic measurement." is not easy to understand ofr me. I see some typo
   in this sentence as well.