Re: [secdir] draft-ietf-mext-nemo-pd-06

Carlos Jesús Bernardos Cano <cjbc@it.uc3m.es> Wed, 22 September 2010 22:38 UTC

Return-Path: <cjbc@it.uc3m.es>
X-Original-To: secdir@core3.amsl.com
Delivered-To: secdir@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 80C6B28C0F6; Wed, 22 Sep 2010 15:38:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -5.634
X-Spam-Level:
X-Spam-Status: No, score=-5.634 tagged_above=-999 required=5 tests=[AWL=0.065, BAYES_00=-2.599, J_CHICKENPOX_21=0.6, MIME_8BIT_HEADER=0.3, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Hn0anlLzBHq8; Wed, 22 Sep 2010 15:38:20 -0700 (PDT)
Received: from smtp02.uc3m.es (smtp02.uc3m.es [163.117.176.132]) by core3.amsl.com (Postfix) with ESMTP id 0F39F28C0E8; Wed, 22 Sep 2010 15:38:19 -0700 (PDT)
X-uc3m-safe: yes
Received: from [IPv6:::1] (luciernaga.it.uc3m.es [163.117.140.159]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by smtp02.uc3m.es (Postfix) with ESMTP id 6DEDF70E938; Thu, 23 Sep 2010 00:38:41 +0200 (CEST)
From: Carlos Jesús Bernardos Cano <cjbc@it.uc3m.es>
To: Donald Eastlake <d3e3e3@gmail.com>
In-Reply-To: <AANLkTinLLzOOJb8+wSQifZop=gkN0fg4nvK4=7A=5j4y@mail.gmail.com>
References: <AANLkTinLLzOOJb8+wSQifZop=gkN0fg4nvK4=7A=5j4y@mail.gmail.com>
Content-Type: multipart/signed; micalg="pgp-sha1"; protocol="application/pgp-signature"; boundary="=-C5bzuIDPP8pcAO9ns8Rk"
Organization: Universidad Carlos III de Madrid
Date: Thu, 23 Sep 2010 00:38:52 +0200
Message-ID: <1285195132.4045.800.camel@acorde.it.uc3m.es>
Mime-Version: 1.0
X-Mailer: Evolution 2.30.2
X-TM-AS-Product-Ver: IMSS-7.0.0.3116-6.0.0.1038-17660.002
X-Mailman-Approved-At: Fri, 24 Sep 2010 08:05:27 -0700
Cc: pthubert@cisco.com, Francis Dupont <Francis.Dupont@fdupont.fr>, secdir@ietf.org, julienl@qualcomm.com, Ralph Droms <rdroms@cisco.com>, Wassim.Haddad@ericsson.com, iesg@ietf.org, marcelo@it.uc3m.es
Subject: Re: [secdir] draft-ietf-mext-nemo-pd-06
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
Reply-To: cjbc@it.uc3m.es
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 22 Sep 2010 22:38:22 -0000

Hi Donald,

Thanks for the comments. See below inline.

On Sun, 2010-09-19 at 23:42 -0400, Donald Eastlake wrote:
> I have reviewed this document as part of the security directorate's
> ongoing effort to review all IETF documents being processed by the
> IESG.  Document editors and WG chairs should treat
> these comments just like any other last call comments.
> 
> This document specifies how to delegate IPv6 prefixes to a Mobile
> Router in a Mobile Network.
> 
> It has a reasonably extensive Security Considerations section and
> appears to appropriately specify protective measures against plausible
> threats. In particular, when the Mobile Router is away from home, it
> mandates the use of IPsec a la MIPv6. Possibly someone more familiar
> with IPsec should look at the specified Security Policy Database and
> Security Association Database.
> 
> Trivia:
> 
> Section 3.1, page 5, "...currently used by the is about to expire..."
> ? perhaps "...by the Mobile Node..."

Thanks, it should say "by the Mobile Router".

> 
> "an Mobile" -> "a Mobile"

Right.

> 
> Various acronyms, such as BU, HoA, while usually explained when first
> used, are missing from Section 2. HoA is not explained at all. Even
> better would be to vastly reduce the overuse of acronyms throughout
> this document.

Agree. This has been pointed out by other reviewers and we'll improve
this.

Thanks again.

Kind Regards,

Carlos

> 
> Thanks,
> Donald

-- 
Carlos Jesús Bernardos Cano     http://www.netcoms.net
GPG FP: D29B 0A6A 639A A561 93CA  4D55 35DC BA4D D170 4F67