Re: [TLS] Éric Vyncke's No Objection on draft-ietf-tls-dtls-connection-id-11: (with COMMENT)

"Eric Vyncke (evyncke)" <evyncke@cisco.com> Mon, 19 April 2021 13:32 UTC

Return-Path: <evyncke@cisco.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 231163A31AF; Mon, 19 Apr 2021 06:32:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.718
X-Spam-Level:
X-Spam-Status: No, score=-7.718 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_NONE=0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=WbM7LHEz; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=0uFQpU16
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8gr_jWU-M9xg; Mon, 19 Apr 2021 06:32:13 -0700 (PDT)
Received: from alln-iport-8.cisco.com (alln-iport-8.cisco.com [173.37.142.95]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 07BA53A31AE; Mon, 19 Apr 2021 06:32:12 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=7140; q=dns/txt; s=iport; t=1618839133; x=1620048733; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-id:content-transfer-encoding: mime-version; bh=XJIBfL6L2qDWf5Z8TCuTNHiyMvOBInvw59qJcAINqCA=; b=WbM7LHEzjW9xP4LQmEsYbpKBScaMyBSvl6NCZjLnXLhtGmMnwH1xjFz8 r8iA93e6wkWDkmXeNwCHxXHS9OQfcs/A3+Vr0o4aTdBtXDcvuQvvX3eDh NN22eKLX6JqwUYk9vrOS0+B8vlJ9TxxWcsvJoNw96S7heRFHF363LLxi6 c=;
X-IPAS-Result: A0A5AADphX1gmIQNJK1aHAEBAQEBAQcBARIBAQQEAQFAgUAFAQELAYFSKSh+WjYxhEODSAOFOYhwA48oihWBLhSBEQNUCwEBAQ0BASgKAgQBAYRQAheBXQIlNgcOAgMBAQEDAgMBAQEBAQUBAQECAQYEFAEBAQEBAQEBaIVQDYZEAQEBBCMRDAEBKQUJAQsEAgEIEQMBAgECAiYCAgIwFQUDCAIEAQ0FG4JWAYJVAy8BDp8WAoofeYEygQGCBAEBBoEzAQMCDkGDJBiCEwMGgRAqAYJ3hAuCQB2Ce3onHIFJQiZtJxyCXz6CYAEBAQKBKAESAQkGEgcQIQKCXTaCK4FPCmsoECsHBBgKGRAGAiACXQQVNBsFFQIPGQZDhHeLSBMKgzWLQIkrkFeBCwqDDIlojHB9hTcEH4NPPYpCljSFEopwhRyCEolekmUEGYRIAgICAgQFAg4BAQaBWwIva1gRB3AVZQGCPlAXAg6OHwwNCRVtAQKCSYUUhUlzAjYCBgEJAQEDCQF7iU8tghcBAQ
IronPort-PHdr: A9a23:2dZnqxKiTVIkrIDm+NmcuYkyDhhPgJ39IxIV55w7irlHbqWk+dH4M VfC4el25HfAR4Cd4PVB2KLasKHlDGoH55vJ8HUPa4dFWBJNj8IK1xchD8iIBQyeTrbqYiU2E d4EWApj+He2YkFPHYD1YFiB6nG35CQZTxP4Mwc9L+/pG4nU2sKw0e36+5DabwhSwjSnZrYnJ xStpgKXvc4T0uNf
IronPort-HdrOrdr: A9a23:jv+yua/8hDWGVd8FSPluk+HJcb1zdoIgy1knxilNYDRvWIixi9 2ukPMH1RX9lTYWXzUalcqdPbSbKEm8ybdc2qNUGbu5RgHptC+TLI9k5Zb/2DGIIUPD38Zn/+ Nbf6B6YeeeMXFTh8z3+RT9Nt4mzsWO/qzAv5ag815GZ2hRGsZdxi1+DRuWFVAzZCQuP+t4KL O34M1bqz28PVEeacqmDncINtKz2eHjvpTgfBIAGlob8wGIlzyl8/rXFBKf0xcYXVp0sPQf2E LClBH04bjmjuGjxnbnpi7uxrl1uP+k8NtMA8SQltMYQw+Nti+EbJlsMofyxwwdj/qo7D8R4b zxijcme/9+8nbAOlyyyCGdpzXI9BYLxzvcxUSDgX3lyPaJBg4SL8Zan4pWfl/4xiMbzatB+Z lG1W6YqJZbZCmo9E+WirS4NGAJqmOOrXUviuIVhXBEOLFuFYN5l5AV/09eDf47bUTHwb0nC+ VnAYX94/tbYDqhHgjkl1Rv29ClUzAPGA6HSCE5y7Wo+gVR9UoJq3cw9Yg6pDMt5Zg9Q55L66 DvKaJzjoxDSccQcOZUGPoBadHfMB2JfTv8dEapZXj3HqAOPHzA77Tt5q8u2e2scJsUiLMvhZ X6Vk9Cv2JaQTOrNeS+mLlwtjzdSmS0WjrgjutE4YJih7H6TL33dQqOVU4piMnlh/kEGMXUV7 KSNfttcrjeBFqrPbwM8xz1WpFUJ3VbetYSoMwHV1WHpd+OJZbtsuDdbfbPNLvgGTspQQrEcy I+dQm2AP8FwlGgW3f+jhSUcWjqYFbD8ZV5F7Wf/+V78vlUCqR89iwuzXip7MCCLjNP9oYsel FlHb/hmqSn4W2//WPC6XR1KgNQZ3wlu4nIYjdvn0snIkn0ebEMt5G0YmZJxkaKIRd5UofRCw 5Qp1N+/KqtNJyOzSU+C9aqW1jqyUc7lTavddMxi6eD7cDqdtcTFZA9QpF8Eg3NClhogwpwsX xCbwUFX0fbETvrhcye/cYpLdCaU+M5rBagIMZSp36aiF6Vots3QGAHGxS0V9SMvAooTz1Ip1 F4/qMFmoCckTK3JWZXupVkDHR8LECsRJNPFkCseZhdkLGDQnAAcU66wRihzywVVkWv3UMInW DlJTCTYpjwcypgk0Ed9L3r/lNyfniaZGRqZBlBwNFAPFWDnGpv2umWYaf29G2dZjI5s78gGQ CARycOKQVzwN3y7jqpoXKpEHUrwYhGBJ2DMJ0qb6zT1nSxKIeBiKEBGLtO8Ix4Mc3129V7I9 63ZxWYN3fxBe8vxmWu1wUYETgxp38+nfzy3hr5qGC+wX4kGPLXZE9rXrcBPrinniTZbufN1J VyltQuu+Ssdm33d96d0KnSBgQzYC/7sCqzT+syr4pTsr93vLxvH4PDWT+N0H1cxh0xIIP1k0 wZKZ4LrYzpK8tqf8YIfThe8UdsnNOTLFEzugizG/QgZzgW/jbmFsLM56CNpaskA0WHqge1MV 6D8zdF9/OAWyeYz7YVB685PGw+Ujly1F1yuOeZM4HAAgSjcO9OuEC3NXKwa7dRQqmIE7d4lG cw3/iY2+uMMybo0gHZujV2Zr9U+2G8WMWoHUaCH/VL/9HSAyXDvoK6pMqoyDH5RjuwZx5G2c lLdUkMYt9CjTdnhostySS2QrH2pEVgk1Y220ARqnf9noy9pGHcFgVaNAechJNcVzxaKGKJgs TI6vLw7gW03BFVnZ3YUF5NddRPEcUKRof5Ly1yOdEd1YTYi5YHk2BGelMyFGYyhzD2wvN+0b q40PvUXff+CX2AAyN2xRdVQohuniIqrmlcc8+xqZKlCz9nY9I1Pw==
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="5.82,234,1613433600"; d="scan'208";a="697507291"
Received: from alln-core-10.cisco.com ([173.36.13.132]) by alln-iport-8.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 19 Apr 2021 13:31:27 +0000
Received: from mail.cisco.com (xbe-rcd-002.cisco.com [173.37.102.17]) by alln-core-10.cisco.com (8.15.2/8.15.2) with ESMTPS id 13JDVRJg027633 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=OK); Mon, 19 Apr 2021 13:31:27 GMT
Received: from xfe-aln-001.cisco.com (173.37.135.121) by xbe-rcd-002.cisco.com (173.37.102.17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.792.3; Mon, 19 Apr 2021 08:31:26 -0500
Received: from xhs-rtp-002.cisco.com (64.101.210.229) by xfe-aln-001.cisco.com (173.37.135.121) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.2.792.3; Mon, 19 Apr 2021 08:31:26 -0500
Received: from NAM12-DM6-obe.outbound.protection.outlook.com (64.101.32.56) by xhs-rtp-002.cisco.com (64.101.210.229) with Microsoft SMTP Server (TLS) id 15.0.1497.2 via Frontend Transport; Mon, 19 Apr 2021 09:31:25 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=FQR/hQe3DsWR+q1N3gbemGKazmf8Pcw1R0yWeqa9ZBNDF2TqW0GuMZwZMPPsk/6wF0z/+Ore/nerSniVmnBf1JoqbAnZ03HgBeuHmk06AQoPeDH32uqn+TPJ6KfGgj7Uo7HJrEp2dzOU9YW6AQGHbmigDbtFc61uQrjSHza7bJthWdOzt0Hc1cjEgDxceqQGpQ38oBiRj163FqY6zt4Pc0dVYcSaI9GMa5ZMNiBF28crI14oTjsFUZuo/dnYLOCx9aPa8Ts7+4M6pBTbR6CpB5sCKMJWDUxY+TSQlkVhw7kIiH3lWRCGZC1Peek+0D6C4L7CGZ2MPlLl+hi2ueZ4sQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=XJIBfL6L2qDWf5Z8TCuTNHiyMvOBInvw59qJcAINqCA=; b=f87FoxG/OSRHH1F3lJLp+Ew7J0NiUfrAoUKyJlbLQJCe0RxJ4Aua4WtAqF9LamhbW0sQOLTteLUWHZddXzWT3iGkmKgxlIBYA25RaPehW9olmSefZipUBb8rZbaqAXclNOgfJ9gd+phhS5D24mISVbXEXCKexy0J9CFeo+NQgvtfijYviT7oN+iWWEgBDGwlDBva31kVndEP98LSfJn6FvSlUhtmedxfRMWRfm3sup22AyCOv4yxOQg5qrc7DiALAG1mF6RZblsLlzzeUNkPwxEBdE5xE1JeZ+KnVzh+ycbGH46iorGCpevO8FiHm2FjfGD5XLlPH1aXoTHaxvxfEQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=XJIBfL6L2qDWf5Z8TCuTNHiyMvOBInvw59qJcAINqCA=; b=0uFQpU16X/b0DoD26FweIeHWwtX+c2nzeqBJr6ijNId9wPrZhZ5XOkUM9yr5jLrTrxkHizRd5/rTZb1hnDHbsZJDVi6O7Nm26l5hhhVm39JJF5MmWhhinOGXW6FoIcNCPA7qmugnU1Xky75oCi8Oq+3U+/ZdGiG/D27u3LbN548=
Received: from PH0PR11MB4966.namprd11.prod.outlook.com (2603:10b6:510:42::21) by PH0PR11MB5032.namprd11.prod.outlook.com (2603:10b6:510:3a::21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4042.16; Mon, 19 Apr 2021 13:31:25 +0000
Received: from PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::dcdf:3910:b85d:6eba]) by PH0PR11MB4966.namprd11.prod.outlook.com ([fe80::dcdf:3910:b85d:6eba%7]) with mapi id 15.20.4042.018; Mon, 19 Apr 2021 13:31:25 +0000
From: "Eric Vyncke (evyncke)" <evyncke@cisco.com>
To: Thomas Fossati <Thomas.Fossati@arm.com>, The IESG <iesg@ietf.org>
CC: "draft-ietf-tls-dtls-connection-id@ietf.org" <draft-ietf-tls-dtls-connection-id@ietf.org>, "tls-chairs@ietf.org" <tls-chairs@ietf.org>, "tls@ietf.org" <tls@ietf.org>, Joseph Salowey <joe@salowey.net>
Thread-Topic: Éric Vyncke's No Objection on draft-ietf-tls-dtls-connection-id-11: (with COMMENT)
Thread-Index: AQHXNPBZZezfwR9VkUGSVn2sMruLaqq7oDkAgABYAgA=
Date: Mon, 19 Apr 2021 13:31:24 +0000
Message-ID: <2A97938A-CC64-4B7B-B519-10C0A031E592@cisco.com>
References: <161881847125.7764.5253050405833557836@ietfa.amsl.com> <CA34B35C-046A-4CB3-BEF5-632672B3D363@arm.com>
In-Reply-To: <CA34B35C-046A-4CB3-BEF5-632672B3D363@arm.com>
Accept-Language: fr-BE, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.48.21041102
authentication-results: arm.com; dkim=none (message not signed) header.d=none;arm.com; dmarc=none action=none header.from=cisco.com;
x-originating-ip: [2001:420:c0c1:36:4108:b7e0:ed19:cb0f]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 567a805a-68dc-4860-0977-08d903376de2
x-ms-traffictypediagnostic: PH0PR11MB5032:
x-microsoft-antispam-prvs: <PH0PR11MB50322E733235BF9A9DEC93FCA9499@PH0PR11MB5032.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:PH0PR11MB4966.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(136003)(39860400002)(376002)(366004)(396003)(346002)(76116006)(66476007)(91956017)(2616005)(66946007)(64756008)(6486002)(66446008)(966005)(83380400001)(66574015)(186003)(478600001)(71200400001)(66556008)(8936002)(4326008)(122000001)(110136005)(316002)(6506007)(5660300002)(36756003)(54906003)(6512007)(2906002)(224303003)(86362001)(53546011)(38100700002)(33656002)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <0635BD94763A4F41983831B39C83D70F@namprd11.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: PH0PR11MB4966.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 567a805a-68dc-4860-0977-08d903376de2
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 Apr 2021 13:31:24.9308 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 57aDYlf3wGHdlfZDq51gfj6bVGFR/pxf6j+G9KVXDVq9Z31M2cm52TSI1O5C266t9ar67C4MT8YMgT0KNfzjAg==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PH0PR11MB5032
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.37.102.17, xbe-rcd-002.cisco.com
X-Outbound-Node: alln-core-10.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/w2540h2rxyc4Qt18aV3_PVa3sew>
Subject: Re: [TLS] Éric Vyncke's No Objection on draft-ietf-tls-dtls-connection-id-11: (with COMMENT)
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 19 Apr 2021 13:32:18 -0000

Thank Thomas for your reply.

Re-reading the end of the section 6 gives indeed some insights on the overall process, which I failed to understand at first reading. May I suggest to complement the last bullet as " defined in this specification but relies on the application using DTLS" ?

Hope this helps

-éric

-----Original Message-----
From: Thomas Fossati <Thomas.Fossati@arm.com>
Date: Monday, 19 April 2021 at 11:16
To: Eric Vyncke <evyncke@cisco.com>, The IESG <iesg@ietf.org>
Cc: "draft-ietf-tls-dtls-connection-id@ietf.org" <draft-ietf-tls-dtls-connection-id@ietf.org>, "tls-chairs@ietf.org" <tls-chairs@ietf.org>, "tls@ietf.org" <tls@ietf.org>, Joseph Salowey <joe@salowey.net>, Thomas Fossati <Thomas.Fossati@arm.com>
Subject: Re: Éric Vyncke's No Objection on draft-ietf-tls-dtls-connection-id-11: (with COMMENT)

    Hi Éric,

    Thank you very much for your review, there's now a ticket to track it
    here:

      https://github.com/tlswg/dtls-conn-id/issues/103

    Re:

    > -- Section 6 --
    > I am puzzled by the text:
    >      "There is a strategy for ensuring that the new peer address is
    >       able to receive and process DTLS records.  No such strategy is
    >       defined in this specification."
    > Does this mean that there is no way to update the peer IP address ?

    No, it means that we delegate the application using DTLS to do the
    Validation (*).  Specifically, the DTLS API on the receiver must be able
    to:
    (1) forward the "peer address update" signal to the application so that
        it can carry out validation of the new address using some minimal
        application traffic exchange (e.g., CoAP has the Echo option for
        that purpose);
    (2) update the new address if requested by the application - in case
        the action triggered by (1) is successful in confirming that the
        new address is effectively the known peer.

    This should be already captured in the penultimate paragraph of Section
    6.  If that is not the case, could you suggest text to improve it?

    Cheers, thanks!

    (*) Note that an in-protocol solution [1] has been proposed but it is
        not (yet) adopted.

    [1] https://tools.ietf.org/html/draft-tschofenig-tls-dtls-rrc-01

    On 19/04/2021, 08:48, "Éric Vyncke via Datatracker" <noreply@ietf.org> wrote:
    >
    > Éric Vyncke has entered the following ballot position for
    > draft-ietf-tls-dtls-connection-id-11: No Objection
    >
    > When responding, please keep the subject line intact and reply to all
    > email addresses included in the To and CC lines. (Feel free to cut this
    > introductory paragraph, however.)
    >
    >
    > Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
    > for more information about DISCUSS and COMMENT positions.
    >
    >
    > The document, along with other ballot positions, can be found here:
    > https://datatracker.ietf.org/doc/draft-ietf-tls-dtls-connection-id/
    >
    >
    >
    > ----------------------------------------------------------------------
    > COMMENT:
    > ----------------------------------------------------------------------
    >
    > Thank you for the work put into this document. This specification
    > addresses the IPv4-mainly issue of NAT binding and is still required.
    > I am also trusted the security ADs for section 5.
    >
    > Please find below some non-blocking COMMENT points (but replies would
    > be appreciated), and some nits.
    >
    > I hope that this helps to improve the document,
    >
    > Regards,
    >
    > -éric
    >
    > == COMMENTS ==
    >
    > -- Abstract --
    > As an important part of this document is the padding, should it be
    > mentioned also in the abstract ?
    >
    > -- Section 3 --
    > While I am not a DTLS expert, I find this section quite difficult to
    > understand the reasoning behind the specification as little
    > explanations are given about, e.g, what is the motivation of "A
    > zero-length value indicates that the server will send with the
    > client's CID but does not wish the client to include a CID."
    >
    > -- Section 6 --
    > I am puzzled by the text:
    >      "There is a strategy for ensuring that the new peer address is
    >       able to receive and process DTLS records.  No such strategy is
    >       defined in this specification."
    > Does this mean that there is no way to update the peer IP address ?
    >
    > == NITS ==
    >
    > -- Section 1 --
    > Please expand CID on first use outside of the abstract.
    >
    > -- Section 4 --
    > Suggest to add a short paragraph as a preamble to figure 3. Currently,
    > it looks like figure 3 belongs to the 'zeros' field description.
    >

    IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.