Re: [tcpm] tcpsecure recommendations

Mark Allman <mallman@icir.org> Tue, 19 February 2008 00:12 UTC

Return-Path: <tcpm-bounces@ietf.org>
X-Original-To: ietfarch-tcpm-archive@core3.amsl.com
Delivered-To: ietfarch-tcpm-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 849BC3A6D90; Mon, 18 Feb 2008 16:12:15 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.051
X-Spam-Level:
X-Spam-Status: No, score=-1.051 tagged_above=-999 required=5 tests=[AWL=-0.614, BAYES_00=-2.599, FH_RELAY_NODNS=1.451, HELO_MISMATCH_ORG=0.611, RDNS_NONE=0.1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KHNuhVQ9wKxr; Mon, 18 Feb 2008 16:12:14 -0800 (PST)
Received: from core3.amsl.com (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 9E4C13A697F; Mon, 18 Feb 2008 16:12:14 -0800 (PST)
X-Original-To: tcpm@core3.amsl.com
Delivered-To: tcpm@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id E77243A697F for <tcpm@core3.amsl.com>; Mon, 18 Feb 2008 16:12:13 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id yY52tgMOkBci for <tcpm@core3.amsl.com>; Mon, 18 Feb 2008 16:12:13 -0800 (PST)
Received: from pork.ICSI.Berkeley.EDU (pork.ICSI.Berkeley.EDU [192.150.186.19]) by core3.amsl.com (Postfix) with ESMTP id 579DA3A6833 for <tcpm@ietf.org>; Mon, 18 Feb 2008 16:12:11 -0800 (PST)
Received: from guns.icir.org (adsl-69-222-35-58.dsl.bcvloh.ameritech.net [69.222.35.58]) by pork.ICSI.Berkeley.EDU (8.12.11.20060308/8.12.11) with ESMTP id m1J0C8Hf004174 for <tcpm@ietf.org>; Mon, 18 Feb 2008 16:12:08 -0800
Received: from lawyers.icir.org (adsl-69-222-35-58.dsl.bcvloh.ameritech.net [69.222.35.58]) by guns.icir.org (Postfix) with ESMTP id 13F85163AE14 for <tcpm@ietf.org>; Mon, 18 Feb 2008 19:11:57 -0500 (EST)
Received: from lawyers.icir.org (localhost [127.0.0.1]) by lawyers.icir.org (Postfix) with ESMTP id 5CDB23D31DB for <tcpm@ietf.org>; Mon, 18 Feb 2008 19:11:59 -0500 (EST)
To: tcpm@ietf.org
From: Mark Allman <mallman@icir.org>
In-Reply-To: <01bd01c87255$83c0dae0$0601a8c0@pc6>
Organization: International Computer Science Institute (ICSI)
Song-of-the-Day: Glory Days
MIME-Version: 1.0
Date: Mon, 18 Feb 2008 19:11:59 -0500
Message-Id: <20080219001159.5CDB23D31DB@lawyers.icir.org>
Subject: Re: [tcpm] tcpsecure recommendations
X-BeenThere: tcpm@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
Reply-To: mallman@icir.org
List-Id: TCP Maintenance and Minor Extensions Working Group <tcpm.ietf.org>
List-Unsubscribe: <http://www.ietf.org/mailman/listinfo/tcpm>, <mailto:tcpm-request@ietf.org?subject=unsubscribe>
List-Post: <mailto:tcpm@ietf.org>
List-Help: <mailto:tcpm-request@ietf.org?subject=help>
List-Subscribe: <http://www.ietf.org/mailman/listinfo/tcpm>, <mailto:tcpm-request@ietf.org?subject=subscribe>
Content-Type: multipart/mixed; boundary="===============2079320002=="
Sender: tcpm-bounces@ietf.org
Errors-To: tcpm-bounces@ietf.org

Folks-

Based on the minimal feedback in this thread and the hum we took in
Chicago it seems that there is some preference for this path:

>     (3) RST spoofing mitigation: SHOULD
>         SYN spoofing mitigation: SHOULD
>         data injection mitigation: MAY

The preference does not seem to be overwhelming, but in the absence of
additional input Ted and I are inclined to take the above option as the
WG's consensus.  Note, we do not see overwhelming preference here, but
we need to get this draft moving.  So, if you are opposed to this
approach and have not yet weighed in then now is your chance.  We know
that y'all will let us know if we have called this inappropriately.

Thanks!

allman
tcpm co-chair



_______________________________________________
tcpm mailing list
tcpm@ietf.org
http://www.ietf.org/mailman/listinfo/tcpm