[sidr] Alissa Cooper's No Objection on draft-ietf-sidr-rfc6490-bis-04: (with COMMENT)

"Alissa Cooper" <alissa@cooperw.in> Tue, 04 August 2015 18:32 UTC

Return-Path: <alissa@cooperw.in>
X-Original-To: sidr@ietfa.amsl.com
Delivered-To: sidr@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F35591ACDD0; Tue, 4 Aug 2015 11:32:34 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.1
X-Spam-Level:
X-Spam-Status: No, score=-1.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_ADSP_ALL=0.8] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2hUe6lq6IDHk; Tue, 4 Aug 2015 11:32:33 -0700 (PDT)
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id D780F1ACDCB; Tue, 4 Aug 2015 11:32:33 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: Alissa Cooper <alissa@cooperw.in>
To: The IESG <iesg@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 6.3.0.p1
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <20150804183233.23500.8213.idtracker@ietfa.amsl.com>
Date: Tue, 04 Aug 2015 11:32:33 -0700
Archived-At: <http://mailarchive.ietf.org/arch/msg/sidr/P0ASWxDaHS48ZjWIbSP09LFsc3M>
Cc: sidr@ietf.org, draft-ietf-sidr-rfc6490-bis@ietf.org, sidr-chairs@ietf.org, sandy@tislabs.com
Subject: [sidr] Alissa Cooper's No Objection on draft-ietf-sidr-rfc6490-bis-04: (with COMMENT)
X-BeenThere: sidr@ietf.org
X-Mailman-Version: 2.1.15
List-Id: Secure Interdomain Routing <sidr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidr>, <mailto:sidr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidr/>
List-Post: <mailto:sidr@ietf.org>
List-Help: <mailto:sidr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 04 Aug 2015 18:32:35 -0000

Alissa Cooper has entered the following ballot position for
draft-ietf-sidr-rfc6490-bis-04: No Objection

When responding, please keep the subject line intact and reply to all
email addresses included in the To and CC lines. (Feel free to cut this
introductory paragraph, however.)


Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
for more information about IESG DISCUSS and COMMENT positions.


The document, along with other ballot positions, can be found here:
https://datatracker.ietf.org/doc/draft-ietf-sidr-rfc6490-bis/



----------------------------------------------------------------------
COMMENT:
----------------------------------------------------------------------

I think it would be helpful to explain in Section 1 what the purpose is
for having multiple URIs in a TAL. It is implied in Section 2.2 but would
help to make it explicit.

Regarding this text in 2.2:

"In order to operational increase resilience, it is RECOMMENDED that the
   domain name parts of each of these URIs resolve to distinct IP
   addresses that are used by a diverse set of repository publication
   points, and these IP addresses be included in distinct Route
   Origination Authorizations (ROAs) objects signed by different CAs.”

I think it would be good to point out why one might construct a TAL with
URIs that do resolve to the same address in the exceptional case. Alvaro
pointed out one case to me offline (diversity of DNS resolution despite
the address sharing), but it might help to make the exception case
explicit.