Re: [sidr] wglc for draft-ietf-sidr-rfc6485bis-05

"Brian Weis (bew)" <bew@cisco.com> Fri, 01 April 2016 03:55 UTC

Return-Path: <bew@cisco.com>
X-Original-To: sidr@ietfa.amsl.com
Delivered-To: sidr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8C07512D14D for <sidr@ietfa.amsl.com>; Thu, 31 Mar 2016 20:55:40 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.531
X-Spam-Level:
X-Spam-Status: No, score=-14.531 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sKslSMBEIu5L for <sidr@ietfa.amsl.com>; Thu, 31 Mar 2016 20:55:38 -0700 (PDT)
Received: from aer-iport-4.cisco.com (aer-iport-4.cisco.com [173.38.203.54]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 650BC12D1B8 for <sidr@ietf.org>; Thu, 31 Mar 2016 20:55:38 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=2489; q=dns/txt; s=iport; t=1459482938; x=1460692538; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-id:content-transfer-encoding: mime-version; bh=ufTW5ztoZ4IFxWTdWiAudbpILg7wYEQEBTWKmqCKX8A=; b=SQFAdfiP3WwzvKoFwBYdF1SOk9Reb7QECprAW07Cuj1chFKI+k6Q3WXM EsrUcYx82rp5dSix7L/WxcXhSfxVI72TcqL4qpKQWY+TqiABp3M1e0xES 51qtqpxSaoMWkPDqA7EcTRPK+/aeyX8V2F0fHKIuXAtGNWvMQSGKS0QPI I=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0CtBADv8P1W/xbLJq1aA4QGfQa9DhcKhWwCghQBAQEBAQFmJ4RBAQEBAwEBAQFrCwULAgEIDgouJwslAgQOBYgfCA7DWAEBAQEBAQEBAQEBAQEBAQEBAQEBAREEiBMIgkmEDhEBHCMmgmSCKwWXdQGFcoJyhSOBZoRNgyiEF4EbhhqIfQFiggQZgUpsAYcxNn4BAQE
X-IronPort-AV: E=Sophos;i="5.24,425,1454976000"; d="scan'208";a="636722673"
Received: from aer-iport-nat.cisco.com (HELO aer-core-4.cisco.com) ([173.38.203.22]) by aer-iport-4.cisco.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 01 Apr 2016 03:55:35 +0000
Received: from XCH-RTP-003.cisco.com (xch-rtp-003.cisco.com [64.101.220.143]) by aer-core-4.cisco.com (8.14.5/8.14.5) with ESMTP id u313tYZp025154 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL); Fri, 1 Apr 2016 03:55:35 GMT
Received: from xch-rtp-001.cisco.com (64.101.220.141) by XCH-RTP-003.cisco.com (64.101.220.143) with Microsoft SMTP Server (TLS) id 15.0.1104.5; Thu, 31 Mar 2016 23:55:34 -0400
Received: from xch-rtp-001.cisco.com ([64.101.220.141]) by XCH-RTP-001.cisco.com ([64.101.220.141]) with mapi id 15.00.1104.009; Thu, 31 Mar 2016 23:55:33 -0400
From: "Brian Weis (bew)" <bew@cisco.com>
To: Sandra Murphy <sandy@tislabs.com>
Thread-Topic: [sidr] wglc for draft-ietf-sidr-rfc6485bis-05
Thread-Index: AQHRi8pXFXe4h0A/qE6ande6rIMZfQ==
Date: Fri, 01 Apr 2016 03:55:33 +0000
Message-ID: <CDC15900-C094-4418-969D-748973B5A756@cisco.com>
References: <769D58E2-90FF-4F93-ACDB-3D1F8C0B2294@tislabs.com> <FA611ED7-8457-460F-ACBF-4F41E6BD10AB@tislabs.com>
In-Reply-To: <FA611ED7-8457-460F-ACBF-4F41E6BD10AB@tislabs.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.19.191.171]
Content-Type: text/plain; charset="Windows-1252"
Content-ID: <E2A2E08B1172494BA3F478FF271B2277@emea.cisco.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Archived-At: <http://mailarchive.ietf.org/arch/msg/sidr/VImzgodQITiPf30KW8tDeTLLuus>
Cc: sidr <sidr@ietf.org>
Subject: Re: [sidr] wglc for draft-ietf-sidr-rfc6485bis-05
X-BeenThere: sidr@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Secure Interdomain Routing <sidr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidr>, <mailto:sidr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidr/>
List-Post: <mailto:sidr@ietf.org>
List-Help: <mailto:sidr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 01 Apr 2016 03:55:40 -0000

I’ve read this draft version, and compared it to RFC 6485. It's a reasonable update, and believe this draft to be ready for publication.

There’s one nit that could be fixed.  At some point during the rfc6485bis development three words were added at the end of this sentence in section 2:

  “The Object Identifier (OID) sha256WithRSAEncryption from [RFC4055] MUST
   be used in these products."

This is a bit imprecise as the requirement being made on the RPKI portion of the “product”, not the “product” itself. I would suggest replacing these three words with either "by subscribers" or  “in RPKI implementations” (to match wording used elsewhere in the draft).

Thanks,
Brian

On Mar 21, 2016, at 2:20 PM, Sandra Murphy <sandy@tislabs.com> wrote:

> A nagging reminder.  There has been no comment, pro or con.
> 
> It’s a short draft.  Please do review and say whether you want the draft to progress or not.
> 
> If you want to see the differences in this latest version, one way is to look at the tools page for the draft:
> 
> draft page: https://tools.ietf.org/html/draft-ietf-sidr-rfc6485bis-05
> side-by-side diff:  https://tools.ietf.org/rfcdiff?url2=draft-ietf-sidr-rfc6485bis-05.txt
> 
> —Sandy, speaking as one of the wg co-chair
> 
> On Mar 9, 2016, at 6:28 AM, Sandra Murphy <sandy@tislabs.com> wrote:
> 
>> As discussed in December, a new version for draft-ietf-sidr-rfc6485bis was required to deal with an IESG comment on the Security Considerations section.
>> 
>> The authors have submitted a new version and ask for a working group last call.
>> 
>> This starts the wglc which will end on 23 Mar 2016.  Please review the draft for its readiness for publication and provide comments to the list.
>> 
>> Positive support is needed in order to judge consensus for publication, so please do comment on the list.
>> 
>> The draft is available at:  https://tools.ietf.org/html/draft-ietf-sidr-rfc6485bis-05.
>> 
>> —Sandy, speaking as one of the wg co-chairs
>> _______________________________________________
>> sidr mailing list
>> sidr@ietf.org
>> https://www.ietf.org/mailman/listinfo/sidr
> 
> _______________________________________________
> sidr mailing list
> sidr@ietf.org
> https://www.ietf.org/mailman/listinfo/sidr

-- 
Brian Weis
Security, CSG, Cisco Systems
Telephone: +1 408 526 4796
Email: bew@cisco.com