Re: [trill] Review of draft-ietf-trill-oam-framework-01.txt

"Samer Salam (ssalam)" <ssalam@cisco.com> Tue, 07 May 2013 01:20 UTC

Return-Path: <ssalam@cisco.com>
X-Original-To: trill@ietfa.amsl.com
Delivered-To: trill@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1723F21F93A6 for <trill@ietfa.amsl.com>; Mon, 6 May 2013 18:20:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.297
X-Spam-Level:
X-Spam-Status: No, score=-10.297 tagged_above=-999 required=5 tests=[AWL=0.302, BAYES_00=-2.599, RCVD_IN_DNSWL_HI=-8]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id RpI2hXNU8DZw for <trill@ietfa.amsl.com>; Mon, 6 May 2013 18:19:57 -0700 (PDT)
Received: from rcdn-iport-6.cisco.com (rcdn-iport-6.cisco.com [173.37.86.77]) by ietfa.amsl.com (Postfix) with ESMTP id DE35621F90B9 for <trill@ietf.org>; Mon, 6 May 2013 18:19:56 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=1113; q=dns/txt; s=iport; t=1367889597; x=1369099197; h=from:to:subject:date:message-id:in-reply-to:content-id: content-transfer-encoding:mime-version; bh=xmdg/GHU5k60dQuXSq4spCt1NH2mw9loJd6tbQwFE6I=; b=UTLerk1Ic+JfyebSxVWxyFT4MsS56hHNm7/6+0K4uxz7h7ABjQXVLxvU RBUzXp5WDZWwfjj6dhovy13s65xreP7CVE4ihl2YtXGjnjWJYRsSzz72I jNCJpjjn1C3NJ1C8EwIC4zs4rmTNr25IvNS1B2o97g7RpF4SrjLfJXNu/ 0=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: Ag0FAHJViFGtJXG//2dsb2JhbABQgmYhN78JgQoWdIIfAQEBAwEBAQE3NBANAQgiFDcLJQIEARIIh34GAQuySY43BI8AOIJyYQOoYoMNgic
X-IronPort-AV: E=Sophos;i="4.87,624,1363132800"; d="scan'208";a="207134464"
Received: from rcdn-core2-4.cisco.com ([173.37.113.191]) by rcdn-iport-6.cisco.com with ESMTP; 07 May 2013 01:19:56 +0000
Received: from xhc-rcd-x08.cisco.com (xhc-rcd-x08.cisco.com [173.37.183.82]) by rcdn-core2-4.cisco.com (8.14.5/8.14.5) with ESMTP id r471JuPB003649 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL); Tue, 7 May 2013 01:19:56 GMT
Received: from xmb-aln-x13.cisco.com ([fe80::5404:b599:9f57:834b]) by xhc-rcd-x08.cisco.com ([173.37.183.82]) with mapi id 14.02.0318.004; Mon, 6 May 2013 20:19:56 -0500
From: "Samer Salam (ssalam)" <ssalam@cisco.com>
To: gayle noble <windy_1@skyhighway.com>, "trill@ietf.org" <trill@ietf.org>
Thread-Topic: [trill] Review of draft-ietf-trill-oam-framework-01.txt
Thread-Index: AQHOLpe60Wa3hWnEnEqqCpVZjHVuE5j5AziA
Date: Tue, 07 May 2013 01:19:55 +0000
Message-ID: <8F25FF8EA49D164EBE5F1B5AD33F3BC9123CC6AC@xmb-aln-x13.cisco.com>
In-Reply-To: <201304010513.r315DbDx076312@skyhighway.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/14.2.3.120616
x-originating-ip: [161.44.210.112]
Content-Type: text/plain; charset="us-ascii"
Content-ID: <680E72352027F94A9B3A54D6B67A9403@emea.cisco.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Subject: Re: [trill] Review of draft-ietf-trill-oam-framework-01.txt
X-BeenThere: trill@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "Developing a hybrid router/bridge." <trill.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/trill>, <mailto:trill-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/trill>
List-Post: <mailto:trill@ietf.org>
List-Help: <mailto:trill-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/trill>, <mailto:trill-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 07 May 2013 01:20:02 -0000

Hi Gayle,

We have updated the draft to incorporate your comments on the security
considerations section.

Regards,
Samer

On 13-03-31 10:13 PM, "gayle noble" <windy_1@skyhighway.com> wrote:

>  In reading some of the drafts it occurred to me that something
>should be specified as to how one should handle OAM messages that
>might be sent from outside the TRILL campus in the draft that talks
>about this.
>
>Currently in draft draft-ietf-trill-oam-framework-01.txt, in the
>Security Considerations Section it says:
>"Optionally authenticate communicating endpoints (MEPs and MIPs)"
>
>To be real clear I think it should read something like::
>
>"Optionally authenticate at communicating endpoints (MEPs and MIPs)
>that an OAM message has originated at a communicating endpoint."
>
>Perhaps even add in that if the OAM message fails authentication, the
>switch should log the attempt and notify the sys admin. Or maybe that
>is obvious?
>
>gayle
>
>_______________________________________________
>trill mailing list
>trill@ietf.org
>https://www.ietf.org/mailman/listinfo/trill