Re: [Sidrops] Opsdir last call review of draft-ietf-sidrops-rpki-tree-validation-02

Oleg Muravskiy <oleg@ripe.net> Fri, 10 August 2018 12:57 UTC

Return-Path: <oleg@ripe.net>
X-Original-To: sidrops@ietfa.amsl.com
Delivered-To: sidrops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 00178130DF7; Fri, 10 Aug 2018 05:57:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.901
X-Spam-Level:
X-Spam-Status: No, score=-6.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tJTTm6J5z_Ci; Fri, 10 Aug 2018 05:57:12 -0700 (PDT)
Received: from molamola.ripe.net (molamola.ripe.net [IPv6:2001:67c:2e8:11::c100:1371]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 632A9130DD5; Fri, 10 Aug 2018 05:57:12 -0700 (PDT)
Received: from nene.ripe.net ([193.0.23.10]) by molamola.ripe.net with esmtps (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.90_1) (envelope-from <oleg@ripe.net>) id 1fo6yc-000BIh-V7; Fri, 10 Aug 2018 14:57:10 +0200
Received: from sslvpn.ipv6.ripe.net ([2001:67c:2e8:9::c100:14e6] helo=[IPv6:2001:67c:2e8:5009::1a4]) by nene.ripe.net with esmtps (TLSv1.2:ECDHE-RSA-AES256-GCM-SHA384:256) (Exim 4.90_1) (envelope-from <oleg@ripe.net>) id 1fo6yb-0001TS-QC; Fri, 10 Aug 2018 14:57:09 +0200
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 11.5 \(3445.9.1\))
From: Oleg Muravskiy <oleg@ripe.net>
In-Reply-To: <153384489210.28635.11096824147990448991@ietfa.amsl.com>
Date: Fri, 10 Aug 2018 14:57:09 +0200
Cc: ops-dir@ietf.org, sidrops@ietf.org, ietf@ietf.org, draft-ietf-sidrops-rpki-tree-validation.all@ietf.org
Content-Transfer-Encoding: quoted-printable
Message-Id: <8ADEB215-45E2-43BA-95C8-1806D418B88E@ripe.net>
References: <153384489210.28635.11096824147990448991@ietfa.amsl.com>
To: Jürgen Schönwälder <j.schoenwaelder@jacobs-university.de>
X-Mailer: Apple Mail (2.3445.9.1)
X-ACL-Warn: Delaying message
X-RIPE-Signature: c408758d4ce2e8eb06762a65a3365b74a2a3a688655120c4a128cf45ccaa8314
Archived-At: <https://mailarchive.ietf.org/arch/msg/sidrops/_Y10VsJNwhseyRrri7qyszN2iwA>
Subject: Re: [Sidrops] Opsdir last call review of draft-ietf-sidrops-rpki-tree-validation-02
X-BeenThere: sidrops@ietf.org
X-Mailman-Version: 2.1.27
Precedence: list
List-Id: A list for the SIDR Operations WG <sidrops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/sidrops>, <mailto:sidrops-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/sidrops/>
List-Post: <mailto:sidrops@ietf.org>
List-Help: <mailto:sidrops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/sidrops>, <mailto:sidrops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 10 Aug 2018 12:57:14 -0000

Thanks, Jürgen,

We will update READMEs in both versions of the validator once this document is published.


Cheers,
Oleg

> On 9 Aug 2018, at 22:01, Jürgen Schönwälder <j.schoenwaelder@jacobs-university.de> wrote:
> 
> Reviewer: Jürgen Schönwälder
> Review result: Ready
> 
> This is an informational draft documenting a specific algorithm
> used to validate RPKI certificate trees. The draft is well
> written	and appears to be technically sound.
> 
> The code of the RIPE NCC implementation can be found on github
> (follow the reference [github] contained in the draft). The README
> on github says that there is a newer rpki-validator-3 and it is
> somewhat unclear whether the algorithm described in this I-D is also
> used by rpki-validator-3 or whether this I-D documents an algorithm
> used by a meanwhile "legacy" implementation. I understand that this
> I-D took almost 6 years from the initial -00 version to IETF last
> call. Anyway, it may help if the github READMEs will eventually refer
> to the RFC version of this I-D and explain to what extend the code
> follows the algorithm detailed in this document. So this is more a
> comment to the RIPE NCC maintainers of the github repository.
> 
> Nits:
> 
> - draft-ietf-sidr-rpki-validation-reconsidered-10 is now RFC 8360
> - draft-ietf-sidr-delta-protocol-08 is now RFC 8182
> 
>