Re: [sidr] Stephen Farrell's No Objection on draft-ietf-sidr-rfc6490-bis-04: (with COMMENT)

"Ben Campbell" <ben@nostrum.com> Wed, 05 August 2015 16:40 UTC

Return-Path: <ben@nostrum.com>
X-Original-To: sidr@ietfa.amsl.com
Delivered-To: sidr@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1152D1A21C7; Wed, 5 Aug 2015 09:40:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.91
X-Spam-Level:
X-Spam-Status: No, score=-1.91 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4ysc0kHtbGtW; Wed, 5 Aug 2015 09:40:22 -0700 (PDT)
Received: from nostrum.com (raven-v6.nostrum.com [IPv6:2001:470:d:1130::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DFA971B3192; Wed, 5 Aug 2015 09:40:22 -0700 (PDT)
Received: from [10.0.1.23] (cpe-70-119-203-4.tx.res.rr.com [70.119.203.4]) (authenticated bits=0) by nostrum.com (8.15.2/8.14.9) with ESMTPSA id t75Ge5S4061611 (version=TLSv1 cipher=DHE-RSA-AES128-SHA bits=128 verify=NO); Wed, 5 Aug 2015 11:40:15 -0500 (CDT) (envelope-from ben@nostrum.com)
X-Authentication-Warning: raven.nostrum.com: Host cpe-70-119-203-4.tx.res.rr.com [70.119.203.4] claimed to be [10.0.1.23]
From: Ben Campbell <ben@nostrum.com>
To: Stephen Farrell <stephen.farrell@cs.tcd.ie>
Date: Wed, 05 Aug 2015 11:40:05 -0500
Message-ID: <C7B35037-2F42-440C-AE7C-1D91F8E0E14F@nostrum.com>
In-Reply-To: <20150805133144.20399.96252.idtracker@ietfa.amsl.com>
References: <20150805133144.20399.96252.idtracker@ietfa.amsl.com>
MIME-Version: 1.0
X-Mailer: MailMate (1.9.2r5107)
Archived-At: <http://mailarchive.ietf.org/arch/msg/sidr/os2WZV8iGr2jdHNy3tb61hKlAtY>
Cc: sandy@tislabs.com, sidr-chairs@ietf.org, draft-ietf-sidr-rfc6490-bis@ietf.org, The IESG <iesg@ietf.org>, sidr@ietf.org
Subject: Re: [sidr] Stephen Farrell's No Objection on draft-ietf-sidr-rfc6490-bis-04: (with COMMENT)
X-BeenThere: sidr@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Secure Interdomain Routing <sidr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidr>, <mailto:sidr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidr/>
List-Post: <mailto:sidr@ietf.org>
List-Help: <mailto:sidr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidr>, <mailto:sidr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 05 Aug 2015 16:40:26 -0000

On 5 Aug 2015, at 8:31, Stephen Farrell wrote:

> - (In response to Ben's comment:) Assuming this change
> only represents a change to the  means to get more
> anchor information, after you have the public key, and
> that any additional into is protected with the key I
> don't think there's any real security change here - this
> is basically like having an anycast address for the host
> in the current URI (from the security POV). If that's
> wrong please do correct me.

I believe you are right, and that addresses my concern.

Thanks!

Ben.