[secdir] Security directorate review of draft-ietf-lsr-yang-isis-reverse-metric-04

Hilarie Orman <hilarie@purplestreak.com> Mon, 15 November 2021 18:15 UTC

Return-Path: <hilarie@purplestreak.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 364E93A0FD1; Mon, 15 Nov 2021 10:15:17 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.898
X-Spam-Level:
X-Spam-Status: No, score=-1.898 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id jSv3H4kMJJqH; Mon, 15 Nov 2021 10:15:15 -0800 (PST)
Received: from out01.mta.xmission.com (out01.mta.xmission.com [166.70.13.231]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E0CF33A0FCC; Mon, 15 Nov 2021 10:15:11 -0800 (PST)
Received: from in02.mta.xmission.com ([166.70.13.52]:55616) by out01.mta.xmission.com with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.93) (envelope-from <hilarie@purplestreak.com>) id 1mmgVY-004gql-IC; Mon, 15 Nov 2021 11:15:08 -0700
Received: from [166.70.232.207] (port=60182 helo=rumpleteazer.rhmr.com) by in02.mta.xmission.com with esmtpsa (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.93) (envelope-from <hilarie@purplestreak.com>) id 1mmgVX-000XQq-Ai; Mon, 15 Nov 2021 11:15:08 -0700
Received: from rumpleteazer.rhmr.com (localhost [127.0.0.1]) by rumpleteazer.rhmr.com (8.14.4/8.14.4/Debian-4.1ubuntu1) with ESMTP id 1AFIDQu5002873; Mon, 15 Nov 2021 11:13:26 -0700
Received: (from hilarie@localhost) by rumpleteazer.rhmr.com (8.14.4/8.14.4/Submit) id 1AFIDQkh002872; Mon, 15 Nov 2021 11:13:26 -0700
Date: Mon, 15 Nov 2021 11:13:26 -0700
Message-Id: <202111151813.1AFIDQkh002872@rumpleteazer.rhmr.com>
From: Hilarie Orman <hilarie@purplestreak.com>
Reply-To: Hilarie Orman <hilarie@purplestreak.com>
To: iesg@ietf.org, secdir@ietf.org
Cc: draft-ietf-lsr-yang-isis-reverse-metric.all@ietf.org
X-XM-SPF: eid=1mmgVX-000XQq-Ai; ; ; mid=<202111151813.1AFIDQkh002872@rumpleteazer.rhmr.com>; ; ; hst=in02.mta.xmission.com; ; ; ip=166.70.232.207; ; ; frm=hilarie@purplestreak.com; ; ; spf=pass
X-XM-AID: U2FsdGVkX1/bXkPXrM6ajkXTCA7U7XLE
X-SA-Exim-Connect-IP: 166.70.232.207
X-SA-Exim-Mail-From: hilarie@purplestreak.com
X-Spam-Virus: No
X-Spam-DCC: XMission; sa03 1397; Body=1 Fuz1=1 Fuz2=1
X-Spam-Combo: *******;iesg@ietf.org, secdir@ietf.org
X-Spam-Relay-Country:
X-Spam-Timing: total 259 ms - load_scoreonly_sql: 0.03 (0.0%), signal_user_changed: 3.7 (1.4%), b_tie_ro: 2.5 (1.0%), parse: 0.58 (0.2%), extract_message_metadata: 2.4 (0.9%), get_uri_detail_list: 0.56 (0.2%), tests_pri_-1000: 1.96 (0.8%), tests_pri_-950: 1.04 (0.4%), tests_pri_-900: 0.90 (0.3%), tests_pri_-90: 61 (23.7%), check_bayes: 60 (23.2%), b_tokenize: 3.3 (1.3%), b_tok_get_all: 4.0 (1.6%), b_comp_prob: 1.27 (0.5%), b_tok_touch_all: 49 (19.0%), b_finish: 0.63 (0.2%), tests_pri_0: 175 (67.7%), check_dkim_signature: 0.34 (0.1%), check_dkim_adsp: 14 (5.6%), poll_dns_idle: 10 (3.9%), tests_pri_10: 2.8 (1.1%), tests_pri_500: 7 (2.7%), rewrite_mail: 0.00 (0.0%)
X-SA-Exim-Version: 4.2.1 (built Sat, 08 Feb 2020 21:53:50 +0000)
X-SA-Exim-Scanned: Yes (on in02.mta.xmission.com)
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/oUGqZ3DJ9PNOMI51X8cfYFKkTOo>
Subject: [secdir] Security directorate review of draft-ietf-lsr-yang-isis-reverse-metric-04
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 15 Nov 2021 18:15:17 -0000

	 Security review of YANG Module for IS-IS Reverse Metric
	 draft-ietf-lsr-yang-isis-reverse-metric-04

Do not be alarmed.  I generated this review of this document as part
of the security directorate's ongoing effort to review all IETF
documents being processed by the IESG.  These comments were written
with the intent of improving security requirements and considerations
in IETF drafts.  Comments not addressed in last call may be included
in AD reviews during the IESG review.  Document editors and WG chairs
should treat these comments just like any other last call comments.

The abstract (with typo noted):

   This document defines a YANG module for managing the reverse metric
   extension to the Intermediate System to Intermediate System intra-
   domain routeing information exchange protocol (IS-IS).
              ^
The spelling error seems to have been copied from ISO Standard 10589:2002.
There's no need to continue propagating it.

The draft has a decent discussion of security considerations regarding
the privacy of the information expressed in the data.

The document is READY.  


Hilarie