Re: [secdir] secdir review of draft-ietf-ospf-node-admin-tag-05

"Acee Lindem (acee)" <acee@cisco.com> Thu, 15 October 2015 09:15 UTC

Return-Path: <acee@cisco.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5612A1A8920; Thu, 15 Oct 2015 02:15:03 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.511
X-Spam-Level:
X-Spam-Status: No, score=-14.511 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id h-_ltc8i-6cu; Thu, 15 Oct 2015 02:15:01 -0700 (PDT)
Received: from rcdn-iport-5.cisco.com (rcdn-iport-5.cisco.com [173.37.86.76]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B513C1A8901; Thu, 15 Oct 2015 02:15:01 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=3104; q=dns/txt; s=iport; t=1444900502; x=1446110102; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-id:content-transfer-encoding: mime-version; bh=8nS9NrzBOR3czVxE9aqazI3S5DPhnyyG9A3wroS3Y2I=; b=SkhteWkIe7rKrz2SV7l+cVgsdNq1W3c/RRlGQ5HoS769HibtssqgWJ8W VYlj7PFjOXXc3o9u2rNM8ndNpe3XLWRpXU81078TyNteyYLcvY0/jF+Dz p44V62Ubq2cYFIUW7MOGWgyXrFSaKu0JTfu2Z/zzjVAywM+avZu9R1k2X A=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0AcAgCFbR9W/4kNJK1eDoMYgUIGvTEBDYFZhhwCHIEkOBQBAQEBAQEBgQqEJgEBAQQjEUUMBAIBCBEEAQEBAgIjAwICAjAUAQgIAgQBDQWILq9ekzIBAQEBAQEBAQEBAQEBAQEBAQEBAQEXgSKKUoRaGBsHBoJjgUUBBJYXAY0anAoBHwEBQoNFPnGEYYEGAQEB
X-IronPort-AV: E=Sophos;i="5.17,684,1437436800"; d="scan'208";a="37805587"
Received: from alln-core-4.cisco.com ([173.36.13.137]) by rcdn-iport-5.cisco.com with ESMTP; 15 Oct 2015 09:15:01 +0000
Received: from XCH-ALN-012.cisco.com (xch-aln-012.cisco.com [173.36.7.22]) by alln-core-4.cisco.com (8.14.5/8.14.5) with ESMTP id t9F9F0Ej023574 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL); Thu, 15 Oct 2015 09:15:00 GMT
Received: from xch-rcd-015.cisco.com (173.37.102.25) by XCH-ALN-012.cisco.com (173.36.7.22) with Microsoft SMTP Server (TLS) id 15.0.1104.5; Thu, 15 Oct 2015 04:14:46 -0500
Received: from xch-rcd-015.cisco.com ([173.37.102.25]) by XCH-RCD-015.cisco.com ([173.37.102.25]) with mapi id 15.00.1104.000; Thu, 15 Oct 2015 04:14:45 -0500
From: "Acee Lindem (acee)" <acee@cisco.com>
To: Shraddha Hegde <shraddha@juniper.net>, Benjamin Kaduk <kaduk@MIT.EDU>
Thread-Topic: secdir review of draft-ietf-ospf-node-admin-tag-05
Thread-Index: AQHRAtRkZED+3D3sTk6f1e8MGzkzuJ5lH6mAgABoLJCABH8tgIAABXOAgAADDQCAAAE9AIAA3F8AgADWWYCAADQwMIAAZ24A
Date: Thu, 15 Oct 2015 09:14:45 +0000
Message-ID: <D244E682.35E13%acee@cisco.com>
References: <alpine.GSO.1.10.1510091159450.26829@multics.mit.edu> <D23ED021.34690%acee@cisco.com> <BY1PR0501MB1381A8D06B804AE4508F371AD5320@BY1PR0501MB1381.namprd05.prod.outlook.com> <alpine.GSO.1.10.1510131547130.26829@multics.mit.edu> <D242FF5D.34EA7%acee@cisco.com> <alpine.GSO.1.10.1510131856050.26829@multics.mit.edu> <D2430569.34EFD%acee@cisco.com> <D243BD35.351B8%acee@cisco.com> <alpine.GSO.1.10.1510142057370.26829@multics.mit.edu> <BY1PR0501MB13810A4EB34DBD4915D10465D53E0@BY1PR0501MB1381.namprd05.prod.outlook.com>
In-Reply-To: <BY1PR0501MB13810A4EB34DBD4915D10465D53E0@BY1PR0501MB1381.namprd05.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.116.152.199]
Content-Type: text/plain; charset="utf-8"
Content-ID: <4C6AF14D8E87CD4397642315EF0E02E4@emea.cisco.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <http://mailarchive.ietf.org/arch/msg/secdir/wyRKs_cm7xW22zaynoFEYD_F8is>
Cc: "draft-ietf-ospf-node-admin-tag.all@ietf.org" <draft-ietf-ospf-node-admin-tag.all@ietf.org>, "iesg@ietf.org" <iesg@ietf.org>, "secdir@ietf.org" <secdir@ietf.org>
Subject: Re: [secdir] secdir review of draft-ietf-ospf-node-admin-tag-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 15 Oct 2015 09:15:03 -0000

It looks good too me other than there is space missing.

s/router.When/router. When/

Thanks,
Acee

On 10/15/15, 12:05 AM, "Shraddha Hegde" <shraddha@juniper.net> wrote:

>Acee/Ben,
>
>Updated the text as below.
>
><t> Multiple node administrative tag TLVs MAY appear in an RI LSA or
>   multiple node administrative tag TLVs MAY be contained in different
>   instances of the RI LSA.  The node administrative tags associated
>   with a node that originates tags for the purpose of any computation or
>processing at a receiving node
>   SHOULD be a superset of node administrative tags from all the TLVs in
>all the
>   received RI LSA instances in the Link-State Database (LSDB) advertised
>by the 
>   corresponding OSPF router.When an RI LSA is received that changes the
>set of 
>   tags applicable to any originating node, a receiving node MUST repeat
>any computation or
>	processing that is based on those administrative tags.
></t>
>
>
>Rgds
>Shraddha
>
>-----Original Message-----
>From: Benjamin Kaduk [mailto:kaduk@MIT.EDU]
>Sent: Thursday, October 15, 2015 6:28 AM
>To: Acee Lindem (acee) <acee@cisco.com>
>Cc: Shraddha Hegde <shraddha@juniper.net>; iesg@ietf.org;
>secdir@ietf.org; draft-ietf-ospf-node-admin-tag.all@ietf.org
>Subject: Re: secdir review of draft-ietf-ospf-node-admin-tag-05
>
>On Wed, 14 Oct 2015, Acee Lindem (acee) wrote:
>
>> Hi Ben,
>>
>> On 10/13/15, 7:02 PM, "Acee Lindem (acee)" <acee@cisco.com> wrote:
>>
>> >
>> >
>> >On 10/13/15, 6:57 PM, "Benjamin Kaduk" <kaduk@MIT.EDU> wrote:
>> >
>> >>Thanks for clarifying.  So, this is a non-issue, and the only
>> >>question is whether the text could/should be changed to improve
>>clarity.
>> >
>> >Let me think about this since it is a generic OSPF RI ambiguity and
>> >it will affect multiple documents. In a WebEx right now though…
>>
>> The key point here is that an OSPF router only maintains the
>> most-recent instance of an LSA in its Link-State Database. So, there
>> shouldn’t be any ambiguity. Perhaps, the text could be changed to “all
>> RI LSA instances in the Link-State Database (LSDB) advertised by the
>> corresponding OSPF router.”
>
>That seems like a useful improvement; thanks.
>
>-Ben