Re: [Trans] Fwd: I-D Action: draft-ietf-trans-threat-analysis-01.txt

Stephen Kent <kent@bbn.com> Thu, 02 July 2015 17:36 UTC

Return-Path: <kent@bbn.com>
X-Original-To: trans@ietfa.amsl.com
Delivered-To: trans@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EB4C01A1A03 for <trans@ietfa.amsl.com>; Thu, 2 Jul 2015 10:36:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.211
X-Spam-Level:
X-Spam-Status: No, score=-4.211 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vbQPowtvnmnN for <trans@ietfa.amsl.com>; Thu, 2 Jul 2015 10:36:10 -0700 (PDT)
Received: from smtp.bbn.com (smtp.bbn.com [128.33.0.80]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 97BE21A0AF1 for <trans@ietf.org>; Thu, 2 Jul 2015 10:36:10 -0700 (PDT)
Received: from ssh.bbn.com ([192.1.122.15]:46579 helo=COMSEC-2.home) by smtp.bbn.com with esmtp (Exim 4.77 (FreeBSD)) (envelope-from <kent@bbn.com>) id 1ZAiPB-0003Zu-6i for trans@ietf.org; Thu, 02 Jul 2015 13:36:09 -0400
Message-ID: <55957688.3070506@bbn.com>
Date: Thu, 02 Jul 2015 13:36:08 -0400
From: Stephen Kent <kent@bbn.com>
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.10; rv:31.0) Gecko/20100101 Thunderbird/31.7.0
MIME-Version: 1.0
To: trans@ietf.org
References: <20150702162551.30258.91747.idtracker@ietfa.amsl.com> <55956808.9030502@gmail.com>
In-Reply-To: <55956808.9030502@gmail.com>
Content-Type: text/plain; charset="windows-1252"; format="flowed"
Content-Transfer-Encoding: 7bit
Archived-At: <http://mailarchive.ietf.org/arch/msg/trans/0po3KPVXzWgtjT3Bs8pUmWFop7Y>
Subject: Re: [Trans] Fwd: I-D Action: draft-ietf-trans-threat-analysis-01.txt
X-BeenThere: trans@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Public Notary Transparency working group discussion list <trans.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/trans>, <mailto:trans-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/trans/>
List-Post: <mailto:trans@ietf.org>
List-Help: <mailto:trans-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/trans>, <mailto:trans-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 02 Jul 2015 17:36:16 -0000

As Melinda noted, the threat analysis doc has been revised and posted.

Two major classes of edits have been made:
     - changes based on feedback from folks on the list, consistent with 
my replies.
       The title was changed ("attack model"), several sections were 
revised, and
       the term "misbehaving" is now used instead of "malicious or 
conspiring."

     - an expanded intro that provides a high level background and 
description of
       the CT architecture, including a diagram derived from DKG's 
slides at a previous
       meeting

I'm not sure if the intro text needs to be in this doc. It seems more 
appropriate for
an architecture doc, but we don't have one (yet). Also, although I have 
included some
text about browser behavior, the description is not complete. I believe 
there is work
ongoing to generate a Monitor spec, and maybe a separate client spec 
plus an arch doc
would be the best way to have a complete, modular set of CT docs. I 
suggest we re-cast
6962-bis as a spec only for the log, the nexus of CT.

Comments welcome, as always.

Steve