Re: [sidr] posted: draft-huston-sidr-validity-00.txt

Geoff Huston <gih@apnic.net> Tue, 13 October 2015 18:06 UTC

Return-Path: <gih@apnic.net>
X-Original-To: sidr@ietfa.amsl.com
Delivered-To: sidr@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AF51C1A0387 for <sidr@ietfa.amsl.com>; Tue, 13 Oct 2015 11:06:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -101.801
X-Spam-Level:
X-Spam-Status: No, score=-101.801 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, SPF_PASS=-0.001, T_DKIM_INVALID=0.01, T_RP_MATCHES_RCVD=-0.01, USER_IN_WHITELIST=-100] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id IXxEJP58UF5F for <sidr@ietfa.amsl.com>; Tue, 13 Oct 2015 11:06:46 -0700 (PDT)
Received: from ia-mailgw.apnic.net (ia-mailgw.apnic.net [IPv6:2001:dd8:a:851::25]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4E6201A0379 for <sidr@ietf.org>; Tue, 13 Oct 2015 11:06:46 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=apnic.net; s=c3po; h=received:received:content-type:mime-version:subject:from:in-reply-to:date:cc: content-transfer-encoding:message-id:references:to:x-mailer:return-path; bh=f5wuVn2ZOKPZlYFPxyFR9tE3RaipL5Wx4uYoESpJgRM=; b=6t3fENQWFlzlZnQgQdqAcFxSv08f21bG+f2MVFqH2mtFcSQxJLSAtYisKWN7di1CovqiOYRW2gxl5 ROH/fVcQiH5fnjY2YSE8LuHM4T3WbxInFnX/4DP6TRoN4i22tEulIUawerlTdwqJlMfxsWaYXb3M5H FMxxPEocvdv13RRc=
Received: from NXMDA2.org.apnic.net (unknown [IPv6:2001:dd8:9:2::101:249]) by ia-mailgw.apnic.net (Halon Mail Gateway) with ESMTPS; Wed, 14 Oct 2015 04:07:23 +1000 (AEST)
Received: from dhcp148.potaroo.net (203.119.101.249) by NXMDA2.org.apnic.net (203.119.107.21) with Microsoft SMTP Server (TLS) id 14.1.218.12; Wed, 14 Oct 2015 04:09:37 +1000
Content-Type: text/plain; charset="us-ascii"
MIME-Version: 1.0 (Mac OS X Mail 9.0 \(3094\))
From: Geoff Huston <gih@apnic.net>
In-Reply-To: <CALo9H1Yc9OF4eWchoOBspLsfZ4DZcUHtwVuRUCjjKutUFQasGw@mail.gmail.com>
Date: Wed, 14 Oct 2015 05:06:41 +1100
Content-Transfer-Encoding: quoted-printable
Message-ID: <6156E4B5-6306-4030-81E0-3AA1D8ECD7E1@apnic.net>
References: <20151009170650.4800.42354.idtracker@ietfa.amsl.com> <4FC98452-5859-4A7B-ABA2-9281CB27FC15@apnic.net> <B04829F7-0065-4E8A-B8D1-677B23B092B1@apnic.net> <CALo9H1Yc9OF4eWchoOBspLsfZ4DZcUHtwVuRUCjjKutUFQasGw@mail.gmail.com>
To: Arturo Servin <arturo.servin@gmail.com>
X-Mailer: Apple Mail (2.3094)
Archived-At: <http://mailarchive.ietf.org/arch/msg/sidr/DJJbOIg34nms1XVAdkLVYRwzfFc>
Cc: Christopher Morrow <christopher.morrow@gmail.com>, Sandra Murphy <sandy@tislabs.com>, George Michaelson <ggm@apnic.net>, sidr wg list <sidr@ietf.org>
Subject: Re: [sidr] posted: draft-huston-sidr-validity-00.txt
X-BeenThere: sidr@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Secure Interdomain Routing <sidr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidr>, <mailto:sidr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidr/>
List-Post: <mailto:sidr@ietf.org>
List-Help: <mailto:sidr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 13 Oct 2015 18:06:54 -0000

I think that a standards track document that updates a specification
should be precisely and exactly that. Note that the document it updates
contains no rationale for its many design decisions.

This does not stop an informational document being published that contains
the discussion of the rationale for the change, but I think it better to keep
the desired change to the specification as succinct and as focussed as
possible

thanks,

  Geoff


> On 14 Oct 2015, at 12:27 AM, Arturo Servin <arturo.servin@gmail.com> wrote:
> 
> Hi
> 
> Something that I liked from draft-ietf-sidr-rpki-validation-reconsidered is that it explained very well why we need to change the validation process. Although it is not mandatory and I do not have a strong position about it, I think it would be good to add some context to this document of why the change.
> 
> /as
> 
> 
> On Fri, 9 Oct 2015 at 18:25 Geoff Huston <gih@apnic.net> wrote:
> sorry - forgot to add the url for this draft - here tis:
> 
> 
> A new version of I-D, draft-huston-sidr-validity-00.txt
> has been successfully submitted by Geoff Huston and posted to the
> IETF repository.
> 
> Name:           draft-huston-sidr-validity
> Revision:       00
> Title:          Update to RPKI Validation
> Document date:  2015-10-09
> Group:          Individual Submission
> Pages:          6
> URL:            https://www.ietf.org/internet-drafts/draft-huston-sidr-validity-00.txt
> Status:         https://datatracker.ietf.org/doc/draft-huston-sidr-validity/
> Htmlized:       https://tools.ietf.org/html/draft-huston-sidr-validity-00
> 
> 
> Abstract:
>   This document updates the RPKI certificate validation procedure as
>   specified in Section 7.2 of RFC6487.
> 
> 
> 
> 
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org.
> 
> The IETF Secretariat
> 
> 
> 
> > On 9 Oct 2015, at 1:23 PM, Geoff Huston <gih@apnic.net> wrote:
> >
> > Hi,
> >
> > We were about to ask the WG chairs for a WG Last Call on this document, but then noticed that this is an informational document and its attempting to update a standards track RFC
> >
> > We suspect that the best case is to instead look at a precise standards track document that describes the update to the validation procedure described RFC6487 and would be a clear candidate for Standards Track itself.
> >
> > So draft-huston-sidr-validity-00.txt is that draft.
> >
> > WG Chairs:- We would like to request WG adoption of draft-huston-sidr-validity-00.txt, on the understanding that draft-ietf-sidr-rpki-validation-reconsidered has done its work and should be allowed to expire gracefully in a corner at this point!
> >
> >
> > regards,
> >
> >    Geoff & George
> >
> >
> >
> >
> >> On 9 Oct 2015, at 1:06 PM, internet-drafts@ietf.org wrote:
> >>
> >>
> >> A New Internet-Draft is available from the on-line Internet-Drafts directories.
> >> This draft is a work item of the Secure Inter-Domain Routing Working Group of the IETF.
> >>
> >>      Title           : RPKI Validation Reconsidered
> >>      Authors         : Geoff Huston
> >>                        George Michaelson
> >>                        Carlos M. Martinez
> >>                        Tim Bruijnzeels
> >>                        Andrew Lee Newton
> >>                        Alain Aina
> >>      Filename        : draft-ietf-sidr-rpki-validation-reconsidered-02.txt
> >>      Pages           : 12
> >>      Date            : 2015-10-09
> >>
> >> Abstract:
> >> This document reviews the certificate validation procedure specified
> >> in RFC6487 and highlights aspects of operational fragility in the
> >> management of certificates in the RPKI.
> >>
> >>
> >> The IETF datatracker status page for this draft is:
> >> https://datatracker.ietf.org/doc/draft-ietf-sidr-rpki-validation-reconsidered/
> >>
> >> There's also a htmlized version available at:
> >> https://tools.ietf.org/html/draft-ietf-sidr-rpki-validation-reconsidered-02
> >>
> >> A diff from the previous version is available at:
> >> https://www.ietf.org/rfcdiff?url2=draft-ietf-sidr-rpki-validation-reconsidered-02
> >>
> >>
> >> Please note that it may take a couple of minutes from the time of submission
> >> until the htmlized version and diff are available at tools.ietf.org.
> >>
> >> Internet-Drafts are also available by anonymous FTP at:
> >> ftp://ftp.ietf.org/internet-drafts/
> >>
> >> _______________________________________________
> >> sidr mailing list
> >> sidr@ietf.org
> >> https://www.ietf.org/mailman/listinfo/sidr
> >
> > _______________________________________________
> > sidr mailing list
> > sidr@ietf.org
> > https://www.ietf.org/mailman/listinfo/sidr
> >
> > _______________________________________________
> > sidr mailing list
> > sidr@ietf.org
> > https://www.ietf.org/mailman/listinfo/sidr
> 
> _______________________________________________
> sidr mailing list
> sidr@ietf.org
> https://www.ietf.org/mailman/listinfo/sidr