Re: [secdir] [Last-Call] [tsvwg] Secdir last call review of draft-ietf-tsvwg-ecn-l4s-id-26

Valery Smyslov <valery@smyslov.net> Tue, 26 July 2022 18:09 UTC

Return-Path: <valery@smyslov.net>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 402ADC14F73A; Tue, 26 Jul 2022 11:09:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.105
X-Spam-Level:
X-Spam-Status: No, score=-7.105 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=smyslov.net
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tfCIa7wmL1SK; Tue, 26 Jul 2022 11:09:51 -0700 (PDT)
Received: from direct.host-care.com (direct.host-care.com [198.136.54.115]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E3C85C13CCE5; Tue, 26 Jul 2022 11:04:16 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=smyslov.net ; s=default; h=Content-Type:MIME-Version:Message-ID:Date:Subject:In-Reply-To: References:Cc:To:From:Sender:Reply-To:Content-Transfer-Encoding:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=K5r00q8vkrf2lUW7lVzEfQZywvSvyhaSXwmkpslytRA=; b=InwdFOW1A64AO1aAsps/uSvK+n /dNsKAXXrrnHQ8cJF+Q51yvOS+32XMOnIoa3JDPZ2PmHQiCcP7Iph3mSfdmjXxwcov8uDg3AE4/3I 3arnVTfkkd9N1qwKSjY+bnP6ZdKGCzgu9WmVkwA95QFc3n1BCgS3TdSUhbPZKl1+OwdLQjaXuGF+w euslgonuYLhDDYgtEBrFmlPXuHSmE66Jl1z71dVoL1zu//xfS7XvKe4t3NY6Sjco4UDJqk86o3gM6 VSYpgH4MxY57Lqz3irpB92E9xj4HzGAHDLp71RpjWqaKErOgR2/8WQCiUB4/81Vie9cMyhZ22amsW fPa71Vxg==;
Received: from broadband-46-242-11-25.ip.moscow.rt.ru ([46.242.11.25]:16523 helo=svannotebook) by direct.host-care.com with esmtpsa (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.93) (envelope-from <valery@smyslov.net>) id 1oGOuh-0002lT-T7; Tue, 26 Jul 2022 14:04:12 -0400
From: Valery Smyslov <valery@smyslov.net>
To: 'Bob Briscoe' <ietf@bobbriscoe.net>, secdir@ietf.org
Cc: draft-ietf-tsvwg-ecn-l4s-id.all@ietf.org, last-call@ietf.org, tsvwg@ietf.org
References: <165821380763.42590.15229345400729787988@ietfa.amsl.com> <6efc828b-eb78-ce05-2a1e-b018476f8da5@bobbriscoe.net> <068201d89cff$eb916ec0$c2b44c40$@smyslov.net> <c7772a9d-e4f5-eb0e-0518-a53531150447@bobbriscoe.net> <07a501d89dcd$4f588f10$ee09ad30$@gmail.com> <4c75d637-2ca2-3e80-0584-0ff89a0e94fc@bobbriscoe.net> <092701d89fe9$dd7183b0$98548b10$@smyslov.net> <6699faab-cca9-3c5f-c75b-10feec827058@bobbriscoe.net>
In-Reply-To: <6699faab-cca9-3c5f-c75b-10feec827058@bobbriscoe.net>
Date: Tue, 26 Jul 2022 21:04:08 +0300
Message-ID: <017901d8a11a$1bc66c80$53534580$@smyslov.net>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="----=_NextPart_000_017A_01D8A133.41183860"
X-Mailer: Microsoft Outlook 16.0
Content-Language: ru
Thread-Index: AQHf4movVzoXBLHo30m5oIoIigDUoAHau42gAdJfQ7QB7ixJYQD4XA+/AnERzeoBVyerzQHifEOYrSB3ZWA=
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - direct.host-care.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - smyslov.net
X-Get-Message-Sender-Via: direct.host-care.com: authenticated_id: valery@smyslov.net
X-Authenticated-Sender: direct.host-care.com: valery@smyslov.net
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/oBt67aj4ZogE75C6RrtCUWyAIdo>
Subject: Re: [secdir] [Last-Call] [tsvwg] Secdir last call review of draft-ietf-tsvwg-ecn-l4s-id-26
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 26 Jul 2022 18:09:56 -0000

Hi Bob,

 

From: Bob Briscoe <ietf@bobbriscoe.net> 
Sent: Tuesday, July 26, 2022 8:33 PM
To: Valery Smyslov <valery@smyslov.net>; secdir@ietf.org
Cc: draft-ietf-tsvwg-ecn-l4s-id.all@ietf.org; last-call@ietf.org; tsvwg@ietf.org
Subject: Re: [Last-Call] [tsvwg] Secdir last call review of draft-ietf-tsvwg-ecn-l4s-id-26

 

Valery,

On 25/07/2022 06:46, Valery Smyslov wrote:

Hi Bob,

 

please see inline.

 

From: Bob Briscoe [mailto:ietf@bobbriscoe.net] 
Sent: Sunday, July 24, 2022 12:36 AM
To: Valery Smyslov; 'Valery Smyslov'; secdir@ietf.org <mailto:secdir@ietf.org> 
Cc: draft-ietf-tsvwg-ecn-l4s-id.all@ietf.org <mailto:draft-ietf-tsvwg-ecn-l4s-id.all@ietf.org> ; last-call@ietf.org <mailto:last-call@ietf.org> ; tsvwg@ietf.org <mailto:tsvwg@ietf.org> 
Subject: Re: [Last-Call] [tsvwg] Secdir last call review of draft-ietf-tsvwg-ecn-l4s-id-26

 

Valery, see [BB3]

          [snipped]

 


[Snipped conversation about integrity of congestion notifications, given agreement reached]

 

          I only want to be sure that you removed reference to AH and replaced it with ESP or with generic term IPsec.

          As I wrote, AH is almost dead in real life.


[BB] Thank you yes, of course. I've described it as 
    "...or end-to-end IPsec integrity protection [RFC4303]".
so the intended security property is clear (from the English), and the intended mechanism is clear (from the citation of ESP).



Thank you, my concerns are resolved.

 

How does this formally close off? Do you change the status of your review from "Has Issues"?



          I cannot do it, by hopefully the security ADs will take the result of our discussion into consideration.


          Regards,

          Valery.



Bob









       [snipped]

 

[BB3] Yes, fully converged. Thank you again. 

 

          Agreed (but see above). Thank you!

 

          Regards,

          Valery.



Bob





-- 
________________________________________________________________
Bob Briscoe                               http://bobbriscoe.net/







-- 
________________________________________________________________
Bob Briscoe                               http://bobbriscoe.net/






-- 
________________________________________________________________
Bob Briscoe                               http://bobbriscoe.net/





-- 
________________________________________________________________
Bob Briscoe                               http://bobbriscoe.net/