[tcpm] Re: Secdir early review of draft-ietf-tcpm-accurate-ecn-30

Michael Tuexen <michael.tuexen@lurchi.franken.de> Fri, 13 September 2024 12:04 UTC

Return-Path: <michael.tuexen@lurchi.franken.de>
X-Original-To: tcpm@ietfa.amsl.com
Delivered-To: tcpm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C04A3C1519AF; Fri, 13 Sep 2024 05:04:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.907
X-Spam-Level:
X-Spam-Status: No, score=-1.907 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3vriMgS8H7HG; Fri, 13 Sep 2024 05:04:47 -0700 (PDT)
Received: from drew.franken.de (mail-n.franken.de [193.175.24.27]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1109EC15154D; Fri, 13 Sep 2024 05:04:42 -0700 (PDT)
Received: from smtpclient.apple (unknown [IPv6:2a02:8109:1140:c3d:a5f0:37f8:3690:b0f0]) (Authenticated sender: lurchi) by mail-n.franken.de (Postfix) with ESMTPSA id 26CCA721E281F; Fri, 13 Sep 2024 14:04:38 +0200 (CEST)
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 16.0 \(3776.700.51\))
From: Michael Tuexen <michael.tuexen@lurchi.franken.de>
In-Reply-To: <172621433521.3358685.17927957431370747521@dt-datatracker-68b7b78cf9-q8rsp>
Date: Fri, 13 Sep 2024 14:04:37 +0200
Content-Transfer-Encoding: quoted-printable
Message-Id: <0B2196B5-81AF-4CD4-8823-F0C791FA4AB7@lurchi.franken.de>
References: <172621433521.3358685.17927957431370747521@dt-datatracker-68b7b78cf9-q8rsp>
To: Scott Kelly <scott@hyperthought.com>
X-Mailer: Apple Mail (2.3776.700.51)
Message-ID-Hash: 5QKV3SNVLDHGUTK4A642XOVQRWEZUAJR
X-Message-ID-Hash: 5QKV3SNVLDHGUTK4A642XOVQRWEZUAJR
X-MailFrom: michael.tuexen@lurchi.franken.de
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tcpm.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: secdir@ietf.org, draft-ietf-tcpm-accurate-ecn.all@ietf.org, tcpm@ietf.org
X-Mailman-Version: 3.3.9rc4
Precedence: list
Subject: [tcpm] Re: Secdir early review of draft-ietf-tcpm-accurate-ecn-30
List-Id: TCP Maintenance and Minor Extensions Working Group <tcpm.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tcpm/bUEC2RXFs6XHi8kE6NGEC1DTC6E>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tcpm>
List-Help: <mailto:tcpm-request@ietf.org?subject=help>
List-Owner: <mailto:tcpm-owner@ietf.org>
List-Post: <mailto:tcpm@ietf.org>
List-Subscribe: <mailto:tcpm-join@ietf.org>
List-Unsubscribe: <mailto:tcpm-leave@ietf.org>

> On 13. Sep 2024, at 09:58, Scott Kelly via Datatracker <noreply@ietf.org> wrote:
> 
> Reviewer: Scott Kelly
> Review result: Ready
> 
> I have reviewed this document as part of the security directorate's ongoing
> effort to review all IETF documents being processed by the IESG. These comments
> were written primarily for the benefit of the security area directors. Document
> editors and WG chairs should treat these comments just like any other last call
> comments.
> 
> The summary of the review is Ready.
> 
> I did an early review of this document in April of 2021. At that time, I said
> I'm not a TCP or ECN expert, so please take my comments with a proverbial grain
> of salt. Nothing has changed, I am still not a TCP or ECN expert.
> 
> The security considerations in the original draft contained a TODO about a
> potential covert channel; this document still contains the TODO. I think this
Wasn't the ToDo removed in revision 15:

https://author-tools.ietf.org/iddiff?url1=draft-ietf-tcpm-accurate-ecn-14&url2=draft-ietf-tcpm-accurate-ecn-15&difftype=--html

Or are you referring to some other statement you consider a ToDO?

Best regards
Michael
> should be resolved before publication, but I leave this to the AD. I have
> nothing new to add.
> 
> 
> _______________________________________________
> tcpm mailing list -- tcpm@ietf.org
> To unsubscribe send an email to tcpm-leave@ietf.org