[secdir] secdir review of draft-ietf-storm-rdmap-ext-09

Adam Montville <adam@stoicsecurity.com> Tue, 25 March 2014 13:12 UTC

Return-Path: <adam@stoicsecurity.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 873381A011D for <secdir@ietfa.amsl.com>; Tue, 25 Mar 2014 06:12:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.601
X-Spam-Level:
X-Spam-Status: No, score=-2.601 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=unavailable
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vPkhObEB-oca for <secdir@ietfa.amsl.com>; Tue, 25 Mar 2014 06:12:09 -0700 (PDT)
Received: from mail-oa0-f52.google.com (mail-oa0-f52.google.com [209.85.219.52]) by ietfa.amsl.com (Postfix) with ESMTP id EC8901A0110 for <secdir@ietf.org>; Tue, 25 Mar 2014 06:12:08 -0700 (PDT)
Received: by mail-oa0-f52.google.com with SMTP id l6so502367oag.25 for <secdir@ietf.org>; Tue, 25 Mar 2014 06:12:07 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:from:content-type:content-transfer-encoding :subject:message-id:date:to:mime-version; bh=pRtRfFXDm0Wv8ynmGLtqOvSi6XdmjmBw/VsHsj4xtV0=; b=EdCy8qw42HbOj0eUkE7Wk7H4iYHP8dz+6mSJbTSLWl4dX/1KeI9WMGwcLBXotkvVpi N+C7PKbXMLlw2yRpjcS52LTcltrZXvfT7XxvIOi75DY5YDC8bzz87A4mFbVjhzqWvE66 wa5679c0cTvVkld/9x8IwTI8oZhUzpQxX2vN1LLrg2g/PHPM8kFr0sMWwFAlh0tinitq /RtO5hN6liTL7vTtV5WCPCfnc1lbK6UNm21ipfLtY05mGSpMUo/6zq1ShGGTCnGbKh/X vk8Y9+qo3RR40PBf4G2qCjPBec4f9xqXMp1l4vl/pD6RExvfzHSNT/teWZAWXPLegpvH f9wg==
X-Gm-Message-State: ALoCoQl9Dhvx4IE+TS3FJE3RMHJZiCv4OgT6p0nEFLeo+tdBpG47YkJ9kOXaA4y4bSqBuBZC/VMC
X-Received: by 10.182.33.35 with SMTP id o3mr58028558obi.15.1395753127617; Tue, 25 Mar 2014 06:12:07 -0700 (PDT)
Received: from ?IPv6:2602:306:3406:4f00:b9ff:6038:d65a:97ce? ([2602:306:3406:4f00:b9ff:6038:d65a:97ce]) by mx.google.com with ESMTPSA id m7sm30262700obo.7.2014.03.25.06.12.06 for <multiple recipients> (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Tue, 25 Mar 2014 06:12:06 -0700 (PDT)
From: Adam Montville <adam@stoicsecurity.com>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
Message-Id: <BBAA6390-DE3D-47C3-BF0F-AEE5838EBA64@stoicsecurity.com>
Date: Tue, 25 Mar 2014 08:12:04 -0500
To: iesg@ietf.org, secdir@ietf.org, draft-ietf-storm-rdmap-ext.all@tools.ietf.org
Mime-Version: 1.0 (Mac OS X Mail 7.2 \(1874\))
X-Mailer: Apple Mail (2.1874)
Archived-At: http://mailarchive.ietf.org/arch/msg/secdir/vpxXGXbD94g0YT6Myh3WyBTpGNo
Subject: [secdir] secdir review of draft-ietf-storm-rdmap-ext-09
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 25 Mar 2014 13:12:10 -0000

I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG.  These comments were written primarily for the benefit of the security area directors.  Document editors and WG chairs should treat these comments just like any other last call comments.
This draft is ready.  
One non-blocking suggestion comes to mind.  It would be to add subsection references in draft-ietf-storm-rdmap-ext Section 9 (Security Considerations) to RFC5040 and RFC5042.  Such references might better describe how use of ULP Buffer addresses for the Remote Peer buffer addressing by Atomic Operations satisfies the security model described in RFC5042.
Regards,
Adam