Re: [tcpm] [Technical Errata Reported] RFC5961 (4772)

Loganaden Velvindron <loganaden@gmail.com> Thu, 11 August 2016 16:24 UTC

Return-Path: <loganaden@gmail.com>
X-Original-To: tcpm@ietfa.amsl.com
Delivered-To: tcpm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EFD0612D738 for <tcpm@ietfa.amsl.com>; Thu, 11 Aug 2016 09:24:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wqFTSvNIKeqH for <tcpm@ietfa.amsl.com>; Thu, 11 Aug 2016 09:24:37 -0700 (PDT)
Received: from mail-pa0-x229.google.com (mail-pa0-x229.google.com [IPv6:2607:f8b0:400e:c03::229]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 78CC412D5AD for <tcpm@ietf.org>; Thu, 11 Aug 2016 09:24:37 -0700 (PDT)
Received: by mail-pa0-x229.google.com with SMTP id i5so120342pat.2 for <tcpm@ietf.org>; Thu, 11 Aug 2016 09:24:37 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc:content-transfer-encoding; bh=A88E/EEeccZI/jXUZ2erBJPHQsg95JZtZ/n0wKE4R/0=; b=xsC6ga18lLnmyR4HuAhCpozQXR1h+4nBlbWeuok/RL9B5wXEEyWVJlVCl9ceaSeevl AhMaYpUUP9ZQbMYNvaUZFwwnaFlI5vHyrMQdmUMRfjOGyIOK1movaCjRZ+639P8g3+58 k5Pacd+EFduCUsnZGeGTFsW/8BU1nFHKu9dUkGnzqUAH/46K8SGbuTVIbU4eEEqpiI0m PMr2OieM4jpiqksVtLsCzxQELndTBmEJFQ3KrK2c0umQyqLAoqvYqR12WKxKe3vgJwpa FyT6ke1Htc23n1pxjMaCOA30UoiVqdhsCQwtw+WbBfHwfiPXDydMw3IeY9VvQzWGOfZD 6DCg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc:content-transfer-encoding; bh=A88E/EEeccZI/jXUZ2erBJPHQsg95JZtZ/n0wKE4R/0=; b=GX4JGwPHDTQqTAVeb7MKJWJufGwr+kcw7BLKVkt6fiJ5m68a11uZI0TV1kXKUYmWlZ ajLWs0CIwSyVIyyuc7cQSJzijbqGfgG4Sz5Dx1nuy728/LLxhD20ERBqoR5ChCDzqV3C U91EiEY5C87NJ+yVm5WSHoV+ygtoKkF2Q+HQGo9lvB8z4AUQx72hcJ/X6tqFOBrrK9QF FxfXJYS2naovRn9/9xuGi50BIdvJmAUg2c7UuPSS8SU6tEZQTeicBy+95yKwArH+yOZE XpLcKWkOduu7rnbkJP6fqA5OovVp5J81AKRUXYv7BJtb70+2jCLqaDphcxlzpOuXrQ1T T2ZQ==
X-Gm-Message-State: AEkoouvv2wljOJmGCe1NpgOpuwiT9DTA3H/Aw22PuKpiuTCSTy2F8PdH57OwB36VAwom1mE8X/Vf0FFukuwMww==
X-Received: by 10.66.54.229 with SMTP id m5mr18549361pap.91.1470932676995; Thu, 11 Aug 2016 09:24:36 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.66.142.133 with HTTP; Thu, 11 Aug 2016 09:24:36 -0700 (PDT)
In-Reply-To: <20160810183654.05358B80C3A@rfc-editor.org>
References: <20160810183654.05358B80C3A@rfc-editor.org>
From: Loganaden Velvindron <loganaden@gmail.com>
Date: Thu, 11 Aug 2016 20:24:36 +0400
Message-ID: <CAOp4FwRffge_6XbdyFwA=C4QEf0Yq7qMC-OA3EyuhKr5FzYDzQ@mail.gmail.com>
To: RFC Errata System <rfc-editor@rfc-editor.org>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/tcpm/7sGqSKNp-zFN5Q0oZFSL8jRKrvM>
X-Mailman-Approved-At: Fri, 12 Aug 2016 08:48:04 -0700
Cc: tcpm@ietf.org, bortzmeyer+ietf@nic.fr, ananth@cisco.com, ietf@kuehlewind.net, randall@lakerest.net, mdalal@cisco.com
Subject: Re: [tcpm] [Technical Errata Reported] RFC5961 (4772)
X-BeenThere: tcpm@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: TCP Maintenance and Minor Extensions Working Group <tcpm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tcpm>, <mailto:tcpm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tcpm/>
List-Post: <mailto:tcpm@ietf.org>
List-Help: <mailto:tcpm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tcpm>, <mailto:tcpm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 11 Aug 2016 16:24:39 -0000

Hi folks,

I submitted this, independently:

https://tools.ietf.org/html/draft-lvelvindron-ack-throttling-02

On Wed, Aug 10, 2016 at 10:36 PM, RFC Errata System
<rfc-editor@rfc-editor.org> wrote:
> The following errata report has been submitted for RFC5961,
> "Improving TCP's Robustness to Blind In-Window Attacks".
>
> --------------------------------------
> You may review the report below and at:
> http://www.rfc-editor.org/errata_search.php?rfc=5961&eid=4772
>
> --------------------------------------
> Type: Technical
> Reported by: Stéphane Bortzmeyer <bortzmeyer+ietf@nic.fr>
>
> Section: 7
>
> Original Text
> -------------
> [The entire section]
>
> Corrected Text
> --------------
> No suggested text because it requires a much more serious analysis.
> May be adding that the rate-limit counter SHOULD be per-connection,
> in the spirit of RFC 6528?
>
> Notes
> -----
> It appears the section does not specify that the counter for ACK throttling SHOULD be per-connection. In Linux, it is apparently global, which allowed its use as a side channel enabling nasty attacks (CVE-2016-5696 and the paper "Off-Path TCP Exploits: Global Rate Limit Considered Dangerous" <http://www.cs.ucr.edu/~zhiyunq/pub/sec16_TCP_pure_offpath.pdf>)
>
> Instructions:
> -------------
> This erratum is currently posted as "Reported". If necessary, please
> use "Reply All" to discuss whether it should be verified or
> rejected. When a decision is reached, the verifying party (IESG)
> can log in to change the status and edit the report, if necessary.
>
> --------------------------------------
> RFC5961 (draft-ietf-tcpm-tcpsecure-13)
> --------------------------------------
> Title               : Improving TCP's Robustness to Blind In-Window Attacks
> Publication Date    : August 2010
> Author(s)           : A. Ramaiah, R. Stewart, M. Dalal
> Category            : PROPOSED STANDARD
> Source              : TCP Maintenance and Minor Extensions
> Area                : Transport
> Stream              : IETF
> Verifying Party     : IESG
>
>
> _______________________________________________
> tcpm mailing list
> tcpm@ietf.org
> https://www.ietf.org/mailman/listinfo/tcpm
>