Re: [trill] [secdir] Repeat SecDir review of draft-ietf-trill-channel-tunnel-10

Donald Eastlake <d3e3e3@gmail.com> Fri, 29 July 2016 16:20 UTC

Return-Path: <d3e3e3@gmail.com>
X-Original-To: trill@ietfa.amsl.com
Delivered-To: trill@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E35FF12B04A; Fri, 29 Jul 2016 09:20:34 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.449
X-Spam-Level:
X-Spam-Status: No, score=-2.449 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_ENVFROM_END_DIGIT=0.25, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GArLvAzE6Qh9; Fri, 29 Jul 2016 09:20:33 -0700 (PDT)
Received: from mail-vk0-x232.google.com (mail-vk0-x232.google.com [IPv6:2607:f8b0:400c:c05::232]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 35AE012B024; Fri, 29 Jul 2016 09:20:33 -0700 (PDT)
Received: by mail-vk0-x232.google.com with SMTP id x130so57887417vkc.0; Fri, 29 Jul 2016 09:20:33 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=fdH0SY6Fy0nZXFIiOdQAYOIqhw699LW0b8VmB9+YkbY=; b=UORsjnClAq0zEwq1oSWL/UaYzutTdqj5dPHPOZkGz0afQSTbvYoiVoNAIvg9l76dk6 Rp5zKFqviBhwwn3F7o2wR6ssSfcP7YHTB7BFLzNrxGfkTRWq3VePLn13xwXCB1URpxJa 9ETcS6gZK2o1v23p+hENKcByOeMlo+I0zDw3eRNZlb0ylr680ohWsIMCRxBHrbY/Xtqn fdPnhFirRb1Mu7VxpE8orLdu99ayt2l4FCg8thp5Med+6BudvyqYo/XEJkG1srvZIqJd KgGQOcLQRApglS3glXM7caYg+GBzgWas2YJIdUSqSFG8AcR07bq6gtShDLCLBeFgj4BN bfLQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=fdH0SY6Fy0nZXFIiOdQAYOIqhw699LW0b8VmB9+YkbY=; b=QYVaZ36bsWsf8p8+SvgGnS49eYjafFG1M4jOKRde0e3QM1dkjkBKeBT8T6qlvKz2Uk gEKisjL9WchDSh6cum+ptB0UAfLPpeDxdP1tzfyp2pFr7o6m6GveWstghHvHfYcmVKsb /3iNnIAqUMcWJ+9vtXghpdGaB52B2Gpa8uFPgdZJJDb3eRCawOyK4KscAvR/Ki8x7kys yfQXs0cOFnHKw/XTeu6ZiJPH0TXIm2mIuouebMG5/SHYok0PDXAgLuTuCak5GZz22v1x a1SLNFWdIRoXAqMQX71LkB7qdDqyzvJpVHrNWcHUuk3NNVxynQ2lb4Mp8Wmdahr2gI8X qBag==
X-Gm-Message-State: AEkoouuLfevjb/4Y1GNOBLcAzC6JT5zYgWbXf3/O0W27a01Giy5J94ibXHT8PB2NMD5UO3tdpJPKznrZvzWp7A==
X-Received: by 10.31.3.213 with SMTP id f82mr19115668vki.38.1469809232377; Fri, 29 Jul 2016 09:20:32 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.103.104.2 with HTTP; Fri, 29 Jul 2016 09:20:17 -0700 (PDT)
In-Reply-To: <e317471e-04e2-e360-d8d5-f29b1f895070@gmail.com>
References: <e317471e-04e2-e360-d8d5-f29b1f895070@gmail.com>
From: Donald Eastlake <d3e3e3@gmail.com>
Date: Fri, 29 Jul 2016 12:20:17 -0400
Message-ID: <CAF4+nEHjsJuDYaw6TU0cX0yzkjJMSD3fZF_XgEZGsmRB0sv0_A@mail.gmail.com>
To: Yaron Sheffer <yaronf.ietf@gmail.com>
Content-Type: multipart/alternative; boundary=001a11426cde2efbd60538c8a11b
Archived-At: <https://mailarchive.ietf.org/arch/msg/trill/0B_2QKl8st83wYVll8EIds5kFBk>
Cc: draft-ietf-trill-channel-tunnel.all@tools.ietf.org, "iesg@ietf.org" <iesg@ietf.org>, "trill@ietf.org" <trill@ietf.org>
Subject: Re: [trill] [secdir] Repeat SecDir review of draft-ietf-trill-channel-tunnel-10
X-BeenThere: trill@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: "Developing a hybrid router/bridge." <trill.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/trill>, <mailto:trill-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/trill/>
List-Post: <mailto:trill@ietf.org>
List-Help: <mailto:trill-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/trill>, <mailto:trill-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 29 Jul 2016 16:20:35 -0000

Hi Yaron,

On Fri, Jul 29, 2016 at 12:17 PM, Yaron Sheffer <yaronf.ietf@gmail.com>
wrote:

> I have reviewed this document as part of the security directorate's
> ongoing effort to review all IETF documents being processed by the IESG.
> These comments were written primarily for the benefit of the security area
> directors.  Document editors and WG chairs should treat these comments just
> like any other last call comments.
>
> The document defines a way to tunnel arbitrary frames of related control
> protocols within the TRILL "channel". Most of the document (and the focus
> of this review) is about security of this tunnel.
>
> Summary
>
> The document is ready for publication.
>
> Details
>
> My early review of -07 contained numerous comments, which were all
> addressed by the authors. I would like to thank them for greatly improving
> the document's treatment of security issues.
>

Thanks for the review.

Donald
===============================
 Donald E. Eastlake 3rd   +1-508-333-2270 (cell)
 155 Beaver Street, Milford, MA 01757 USA
 d3e3e3@gmail.com


> _______________________________________________
> secdir mailing list
> secdir@ietf.org
> https://www.ietf.org/mailman/listinfo/secdir
> wiki: http://tools.ietf.org/area/sec/trac/wiki/SecDirReview
>