Re: [sidr] I-D Action: draft-ietf-sidr-bgpsec-rollover-04.txt

"Brian Weis (bew)" <bew@cisco.com> Mon, 06 July 2015 23:40 UTC

Return-Path: <bew@cisco.com>
X-Original-To: sidr@ietfa.amsl.com
Delivered-To: sidr@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A3F681A1AD9 for <sidr@ietfa.amsl.com>; Mon, 6 Jul 2015 16:40:08 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.511
X-Spam-Level:
X-Spam-Status: No, score=-14.511 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JoGBNsTf0t9D for <sidr@ietfa.amsl.com>; Mon, 6 Jul 2015 16:40:07 -0700 (PDT)
Received: from alln-iport-5.cisco.com (alln-iport-5.cisco.com [173.37.142.92]) (using TLSv1 with cipher RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6CF3E1A1ABE for <sidr@ietf.org>; Mon, 6 Jul 2015 16:40:00 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=2461; q=dns/txt; s=iport; t=1436226000; x=1437435600; h=from:to:subject:date:message-id:references:in-reply-to: content-id:content-transfer-encoding:mime-version; bh=cex04R4s+5oSMl7+VKO7wWZsxzOV0NQtwMLsXhHGcBg=; b=CBAsGeZuoJWMMIj0pzR+2t5tx+jQoFb3+1cQngdsgSTh4B1v1LIKRrss 90DxB943CU5k9bF6kIh0+XzaTm4tIXway90mj76Ucb3kNbGoXn3kOrIEP F8OCC3OyIgFfBqQlsPt3DsiBn0CrDf264+EnYRxfyZzQC6qdhC/u8MOHG U=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0C+AwA4EZtV/5BdJa1ZA4MSVGAGvVcJgWQKhXcCgUA4FAEBAQEBAQGBCoQkAQEDAQEBAWsbAgEIRicLJQIEE4gmCA3LHQEBAQEBAQEBAQEBAQEBAQEBAQEBAReLS4QjEQEeIxcRgwaBFAWUFQGEYYJZhC2BOkSDUZMHJoN7b4ENOoEEAQEB
X-IronPort-AV: E=Sophos;i="5.15,418,1432598400"; d="scan'208";a="166075241"
Received: from rcdn-core-8.cisco.com ([173.37.93.144]) by alln-iport-5.cisco.com with ESMTP; 06 Jul 2015 23:39:59 +0000
Received: from xhc-rcd-x14.cisco.com (xhc-rcd-x14.cisco.com [173.37.183.88]) by rcdn-core-8.cisco.com (8.14.5/8.14.5) with ESMTP id t66Ndxsm014378 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL) for <sidr@ietf.org>; Mon, 6 Jul 2015 23:39:59 GMT
Received: from xmb-aln-x04.cisco.com ([169.254.9.109]) by xhc-rcd-x14.cisco.com ([173.37.183.88]) with mapi id 14.03.0195.001; Mon, 6 Jul 2015 18:39:59 -0500
From: "Brian Weis (bew)" <bew@cisco.com>
To: "sidr@ietf.org" <sidr@ietf.org>
Thread-Topic: [sidr] I-D Action: draft-ietf-sidr-bgpsec-rollover-04.txt
Thread-Index: AQHQuEURJ31FzXYe6k6JxX0u9bhIug==
Date: Mon, 06 Jul 2015 23:39:58 +0000
Message-ID: <6EDCAD9D-900C-4F88-946E-CAA8AA6971FA@cisco.com>
References: <20150706233343.25843.40172.idtracker@ietfa.amsl.com>
In-Reply-To: <20150706233343.25843.40172.idtracker@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.154.49.74]
Content-Type: text/plain; charset="Windows-1252"
Content-ID: <C42A3B0F68282C4E8DFE68DD7F8C9A8A@emea.cisco.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Archived-At: <http://mailarchive.ietf.org/arch/msg/sidr/_DEvDoRi9AuaHO1NkuQh6iXTyVo>
Subject: Re: [sidr] I-D Action: draft-ietf-sidr-bgpsec-rollover-04.txt
X-BeenThere: sidr@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Secure Interdomain Routing <sidr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidr>, <mailto:sidr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidr/>
List-Post: <mailto:sidr@ietf.org>
List-Help: <mailto:sidr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 06 Jul 2015 23:40:08 -0000

This version addresses comments provided during the Dallas meeting, and many helpful suggestions by Steve Kent that had been sent to the list. The document can’t progress until some of the referenced documents are finalized. In the meantime the authors do welcome additional comments.

Thanks,
Brian
 
On Jul 6, 2015, at 4:33 PM, <internet-drafts@ietf.org> <internet-drafts@ietf.org> wrote:

> 
> A New Internet-Draft is available from the on-line Internet-Drafts directories.
> This draft is a work item of the Secure Inter-Domain Routing Working Group of the IETF.
> 
>        Title           : BGPsec Router Certificate Rollover
>        Authors         : Roque Gagliano
>                          Keyur Patel
>                          Brian Weis
> 	Filename        : draft-ietf-sidr-bgpsec-rollover-04.txt
> 	Pages           : 15
> 	Date            : 2015-07-06
> 
> Abstract:
>   BGPsec will need to address the impact from regular and emergency
>   rollover processes for the BGPsec End-Entity (EE) certificates that
>   will be performed by Certificate Authorities (CAs) participating at
>   the Resource Public Key Infrastructure (RPKI).  Rollovers of BGPsec
>   EE certificates must be carefully managed in order to synchronize
>   distribution of router public keys and the usage of those pubic keys
>   by BGPsec routers.  This document provides general recommendations
>   for that process, as well as describing reasons why the rollover of
>   BGPsec EE certificates might be necessary.
> 
> 
> The IETF datatracker status page for this draft is:
> https://datatracker.ietf.org/doc/draft-ietf-sidr-bgpsec-rollover/
> 
> There's also a htmlized version available at:
> https://tools.ietf.org/html/draft-ietf-sidr-bgpsec-rollover-04
> 
> A diff from the previous version is available at:
> https://www.ietf.org/rfcdiff?url2=draft-ietf-sidr-bgpsec-rollover-04
> 
> 
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org.
> 
> Internet-Drafts are also available by anonymous FTP at:
> ftp://ftp.ietf.org/internet-drafts/
> 
> _______________________________________________
> sidr mailing list
> sidr@ietf.org
> https://www.ietf.org/mailman/listinfo/sidr

-- 
Brian Weis
Security, CSG, Cisco Systems
Telephone: +1 408 526 4796
Email: bew@cisco.com