
From nobody Tue Mar  1 00:14:56 2022
Return-Path: <kaigao@scu.edu.cn>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B9DC73A19A3; Tue,  1 Mar 2022 00:14:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.907
X-Spam-Level: 
X-Spam-Status: No, score=-1.907 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id d8FKxIv5FC8Q; Tue,  1 Mar 2022 00:14:46 -0800 (PST)
Received: from zg8tmty1ljiyny4xntqumjca.icoremail.net (zg8tmty1ljiyny4xntqumjca.icoremail.net [165.227.154.27]) by ietfa.amsl.com (Postfix) with SMTP id 38E473A19A0; Tue,  1 Mar 2022 00:14:40 -0800 (PST)
Received: by ajax-webmail-app1 (Coremail) ; Tue, 1 Mar 2022 16:14:34 +0800 (GMT+08:00)
X-Originating-IP: [10.133.61.194]
Date: Tue, 1 Mar 2022 16:14:34 +0800 (GMT+08:00)
X-CM-HeaderCharset: UTF-8
From: kaigao@scu.edu.cn
To: "Samuel Weiler" <weiler@csail.mit.edu>
Cc: secdir@ietf.org, alto@ietf.org, draft-ietf-alto-path-vector.all@ietf.org,  last-call@ietf.org
X-Priority: 3
X-Mailer: Coremail Webmail Server Version XT5.0.13 build 20210104(ab8c30b6) Copyright (c) 2002-2022 www.mailtech.cn mail
In-Reply-To: <164582513375.24683.540286870035746289@ietfa.amsl.com>
References: <164582513375.24683.540286870035746289@ietfa.amsl.com>
Content-Transfer-Encoding: base64
Content-Type: text/plain; charset=UTF-8
MIME-Version: 1.0
Message-ID: <6de076d2.17b80.17f448b9d2d.Coremail.kaigao@scu.edu.cn>
X-Coremail-Locale: en_US
X-CM-TRANSID: 4wAACgBHqLnr1R1iiSyhAQ--.21241W
X-CM-SenderInfo: 5ndlwt3r6vu3oohg3hdfq/1tbiAQUMB138kmHzvgAAsQ
X-Coremail-Antispam: 1Ur529EdanIXcx71UUUUU7IcSsGvfJ3iIAIbVAYjsxI4VWxJw CS07vEb4IE77IF4wCS07vE1I0E4x80FVAKz4kxMIAIbVAFxVCaYxvI4VCIwcAKzIAtYxBI daVFxhVjvjDU=
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/u3fsuqaMfm2eoJVKcUxuSAYa3BA>
Subject: Re: [secdir] Secdir telechat review of draft-ietf-alto-path-vector-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 01 Mar 2022 08:14:53 -0000
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From nobody Wed Mar  2 02:57:59 2022
Return-Path: <bill.wu@huawei.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A22F53A0D58; Wed,  2 Mar 2022 02:57:50 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.906
X-Spam-Level: 
X-Spam-Status: No, score=-1.906 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9obIUfRYXN7M; Wed,  2 Mar 2022 02:57:46 -0800 (PST)
Received: from frasgout.his.huawei.com (frasgout.his.huawei.com [185.176.79.56]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 27A243A1132; Wed,  2 Mar 2022 02:57:46 -0800 (PST)
Received: from fraeml713-chm.china.huawei.com (unknown [172.18.147.226]) by frasgout.his.huawei.com (SkyGuard) with ESMTP id 4K7rdt5sGKz684y4; Wed,  2 Mar 2022 18:56:34 +0800 (CST)
Received: from canpemm500008.china.huawei.com (7.192.105.151) by fraeml713-chm.china.huawei.com (10.206.15.32) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.2308.21; Wed, 2 Mar 2022 11:57:42 +0100
Received: from canpemm500005.china.huawei.com (7.192.104.229) by canpemm500008.china.huawei.com (7.192.105.151) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256) id 15.1.2308.21; Wed, 2 Mar 2022 18:57:34 +0800
Received: from canpemm500005.china.huawei.com ([7.192.104.229]) by canpemm500005.china.huawei.com ([7.192.104.229]) with mapi id 15.01.2308.021;  Wed, 2 Mar 2022 18:57:34 +0800
From: Qin Wu <bill.wu@huawei.com>
To: "kaigao@scu.edu.cn" <kaigao@scu.edu.cn>, Samuel Weiler <weiler@csail.mit.edu>
CC: "secdir@ietf.org" <secdir@ietf.org>, "alto@ietf.org" <alto@ietf.org>, "draft-ietf-alto-path-vector.all@ietf.org" <draft-ietf-alto-path-vector.all@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>
Thread-Topic: Secdir telechat review of draft-ietf-alto-path-vector-22
Thread-Index: AdguI9ch39tXOSH4cUGM4A9GcOGD4g==
Date: Wed, 2 Mar 2022 10:57:34 +0000
Message-ID: <ad9fcac81fe041468389fe9a8151621f@huawei.com>
Accept-Language: zh-CN, en-US
Content-Language: zh-CN
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
x-originating-ip: [10.136.100.16]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-CFilter-Loop: Reflected
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/Rk6_kmE-vl9SeLpFDG3Jytrl4pQ>
Subject: Re: [secdir] Secdir telechat review of draft-ietf-alto-path-vector-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 02 Mar 2022 10:57:51 -0000
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From nobody Wed Mar  2 10:58:04 2022
Return-Path: <hilarie@purplestreak.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7335A3A092F; Wed,  2 Mar 2022 10:57:55 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.908
X-Spam-Level: 
X-Spam-Status: No, score=-1.908 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id JUE8UxQTsW3e; Wed,  2 Mar 2022 10:57:53 -0800 (PST)
Received: from out02.mta.xmission.com (out02.mta.xmission.com [166.70.13.232]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 460423A08E3; Wed,  2 Mar 2022 10:57:52 -0800 (PST)
Received: from in02.mta.xmission.com ([166.70.13.52]:41592) by out02.mta.xmission.com with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.93) (envelope-from <hilarie@purplestreak.com>) id 1nPUAZ-00H0Wt-03; Wed, 02 Mar 2022 11:57:51 -0700
Received: from [166.70.232.207] (port=46456 helo=rumpleteazer.rhmr.com) by in02.mta.xmission.com with esmtpsa (TLS1.2) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.93) (envelope-from <hilarie@purplestreak.com>) id 1nPUAY-00D4GL-3C; Wed, 02 Mar 2022 11:57:50 -0700
Received: from rumpleteazer.rhmr.com (localhost [127.0.0.1]) by rumpleteazer.rhmr.com (8.14.4/8.14.4/Debian-4.1ubuntu1) with ESMTP id 222IukUr026217; Wed, 2 Mar 2022 11:56:46 -0700
Received: (from hilarie@localhost) by rumpleteazer.rhmr.com (8.14.4/8.14.4/Submit) id 222Iukla026216; Wed, 2 Mar 2022 11:56:46 -0700
Date: Wed, 2 Mar 2022 11:56:46 -0700
Message-Id: <202203021856.222Iukla026216@rumpleteazer.rhmr.com>
From: "Hilarie Orman" <hilarie@purplestreak.com>
Reply-To: "Hilarie Orman" <hilarie@purplestreak.com>
To: iesg@ietf.org, secdir@ietf.org
Cc: draft-ietf-tcpm-yang-tcp.all@ietf.org
X-XM-SPF: eid=1nPUAY-00D4GL-3C; ; ; mid=<202203021856.222Iukla026216@rumpleteazer.rhmr.com>; ; ; hst=in02.mta.xmission.com; ; ; ip=166.70.232.207; ; ; frm=hilarie@purplestreak.com; ; ; spf=pass
X-XM-AID: U2FsdGVkX1933tlRXygDLQTVfC+MspC2
X-SA-Exim-Connect-IP: 166.70.232.207
X-SA-Exim-Mail-From: hilarie@purplestreak.com
X-Spam-Virus: No
X-Spam-DCC: XMission; sa02 1397; Body=1 Fuz1=1 Fuz2=1 
X-Spam-Combo: ***;iesg@ietf.org, secdir@ietf.org
X-Spam-Relay-Country: 
X-Spam-Timing: total 410 ms - load_scoreonly_sql: 0.03 (0.0%), signal_user_changed: 4.8 (1.2%), b_tie_ro: 3.4 (0.8%), parse: 0.97 (0.2%), extract_message_metadata: 5 (1.2%), get_uri_detail_list: 1.75 (0.4%), tests_pri_-1000: 2.3 (0.6%), tests_pri_-950: 1.28 (0.3%), tests_pri_-900: 0.96 (0.2%), tests_pri_-90: 96 (23.5%), check_bayes: 95 (23.1%), b_tokenize: 5 (1.3%), b_tok_get_all: 7 (1.6%), b_comp_prob: 1.96 (0.5%), b_tok_touch_all: 78 (18.9%), b_finish: 0.84 (0.2%), tests_pri_0: 287 (69.9%), check_dkim_signature: 0.58 (0.1%), check_dkim_adsp: 21 (5.2%), poll_dns_idle: 14 (3.5%), tests_pri_10: 2.6 (0.6%), tests_pri_500: 7 (1.7%), rewrite_mail: 0.00 (0.0%)
X-SA-Exim-Version: 4.2.1 (built Sat, 08 Feb 2020 21:53:50 +0000)
X-SA-Exim-Scanned: Yes (on in02.mta.xmission.com)
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/rPgf6d_1Uv1BuUJ7JlB07qBdLV8>
Subject: [secdir] Security directorate review of draft-ietf-tcpm-yang-tcp-06
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 02 Mar 2022 18:57:56 -0000

                    Security review of 
A YANG Model for Transmission Control Protocol (TCP) Configuration
                draft-ietf-tcpm-yang-tcp-06

Do not be alarmed.  I generated this review of this document as part
of the security directorate's ongoing effort to review all IETF
documents being processed by the IESG.  These comments were written
with the intent of improving security requirements and considerations
in IETF drafts.  Comments not addressed in last call may be included
in AD reviews during the IESG review.  Document editors and WG chairs
should treat these comments just like any other last call comments.

The abstract:
   This document specifies a minimal YANG model for TCP on devices that
   are configured by network management protocols.  The YANG model
   defines a container for all TCP connections and groupings of
   authentication parameters that can be imported and used in TCP
   implementations or by other models that need to configure TCP
   parameters.  The model also includes basic TCP statistics. 

This is a well-written document that brings up a troubling issue, the
outdated use of a keyed hash for authentication in TCP.  The fact that
there is such an option seems to be an expediency introduced long ago.
Originally, the hash algorithm was MD5, which made sense at the time.
Apparently that has become deeply embedded in network infrastructure.
Although the Authentication Option was later updated to include a
better hash algorithm, the unfortunate choice was SHA-1.  Both MD5 and
SHA-1 are considered "broken".

The keyed hash with MD5 or SHA-1 might be justified as "better than
nothing" or "good enough for our use cases", but it has the effect of
forcing two bad hash algorithms to reside permanently in the code base
for network management.  There are security efforts to move to
post-quantum cryptography and a quantum Internet, yet the oldest and
most unsuitable cryptographic algorithms seem set in stone.  It is as
though one looked into an ALU with a microscope and found a tiny
abacus etched into the silicon for backwards compatibility.

>From a security standpoint, it would be best if the YANG TCP document
were to recommend strongly against using TCP authentication no matter
what the hash algorithm is.  The recommended security solution is to
use IPSec or TLS to secure connections.

In the event that TCP authentication remains in YANG, I note that
there are no statistics kept for authentication failures.  If a shared
key falls out of synch, the statistics might help detect that.

Hilarie



From nobody Wed Mar  2 11:36:38 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 01EFD3A0B18; Wed,  2 Mar 2022 11:36:29 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Daniel Migault via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
Cc: draft-ietf-ipwave-vehicular-networking.all@ietf.org, its@ietf.org, last-call@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <164624978894.17953.13607898323269640268@ietfa.amsl.com>
Reply-To: Daniel Migault <daniel.migault@ericsson.com>
Date: Wed, 02 Mar 2022 11:36:29 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/z8cE_IsObMjjS9JOQk9uk5OHe5k>
Subject: [secdir] Secdir telechat review of draft-ietf-ipwave-vehicular-networking-27
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 02 Mar 2022 19:36:29 -0000

Reviewer: Daniel Migault
Review result: Has Issues

1.  Introduction

   Vehicular networking studies have mainly focused on improving safety
   and efficiency, and also enabling entertainment in vehicular
   networks.  The Federal Communications Commission (FCC) in the US
   allocated wireless channels for Dedicated Short-Range Communications
   (DSRC) [DSRC] in the Intelligent Transportation Systems (ITS) with
   the frequency band of 5.850 - 5.925 GHz (i.e., 5.9 GHz band).  DSRC-
   based wireless communications can support vehicle-to-vehicle (V2V),
   vehicle-to-infrastructure (V2I), and vehicle-to-everything (V2X)
   networking.  The European Union (EU) allocated radio spectrum for
   safety-related and non-safety-related applications of ITS with the
   frequency band of 5.875 - 5.905 GHz, as part of the Commission
   Decision 2008/671/EC [EU-2008-671-EC].

<mglt>
I am wondering US/EU covers all spectrum allocation worldwide ?
</mglt>

3.2.  V2I

   The emergency communication between accident vehicles (or emergency
   vehicles) and a TCC can be performed via either IP-RSU or 4G-LTE
   networks.  The First Responder Network Authority (FirstNet)
   [FirstNet] is provided by the US government to establish, operate,
   and maintain an interoperable public safety broadband network for
   safety and security network services, e.g., emergency calls.  The
   construction of the nationwide FirstNet network requires each state
   in the US to have a Radio Access Network (RAN) that will connect to
   the FirstNet's network core.  The current RAN is mainly constructed
   using 4G-LTE for the communication between a vehicle and an
   infrastructure node (i.e., V2I) [FirstNet-Report], but it is expected
   that DSRC-based vehicular networks [DSRC] will be available for V2I
   and V2V in the near future.

<mglt>
Is this use case restricted to the US or do we have any equivalent in EU for
example ? <mglt>

3.3.  V2X

   The use case of V2X networking discussed in this section is for a
   pedestrian protection service.

<mglt>
I do have an issue with such use case - of course if my understanding is
correct. My understanding from the description is that the use case explains
how pedestrian can advertise its presence to a vehicle so avoid the vehicle to
hit that pedestrian. Such assumption does not seem to me acceptable as not
everyone has a phone, and their security - from a vehicle perspective - MUST
NOT be provided by such a mechanism as it would given a false sense of
security. If a vehicle is not able to detect a pedestrian unless this
pedestrian has a working smartphone with a specific application, the problem is
bigger and out of scope of the IETF. I can also see that in some countries, it
will become the pedestrian's fault if it is hit without its application. As I
understand it, I find this use case extremely dangerous, so my request would be
to remove it or if I misunderstood it to clarify its scope. <mglt>




From nobody Wed Mar  2 11:39:38 2022
Return-Path: <daniel.migault@ericsson.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 019083A0B18; Wed,  2 Mar 2022 11:39:28 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.111
X-Spam-Level: 
X-Spam-Status: No, score=-2.111 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mtgdePLhURHc; Wed,  2 Mar 2022 11:39:23 -0800 (PST)
Received: from NAM02-DM3-obe.outbound.protection.outlook.com (mail-dm3nam07on2060a.outbound.protection.outlook.com [IPv6:2a01:111:f400:7e83::60a]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9ED173A0C2A; Wed,  2 Mar 2022 11:39:22 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=dAM92mHPUmxfijs41N2IKmsQgl7Aqglr/cJxKNlhwM49Vk84xzQQ5xsT2RFYYUhF3u/XTLKMcDZiTKfqwo7HZznxUIHXYdIJzy7GYpuIcCYC2w6QDcUis9SSn8mf/DuhujQb6xc+oRLW44Oz66g+PFlpIfpTGIYhtS+dIymQMVFoiu7jqT4yZsiMiC0h/zHT5Niy50oot0Ffb9N5xQhxBov4Tcf92Ay+KKI3soMnly7FWIlPYIGhxNlikTZSsdCFW8jbSxst5P6a0bwXM5sMXgKTam1OiFFAVa1RDl5LSl6vb8e/N1RjrfDeWy0WHS2vrTjdfwbNC+xW+WWARL+4EA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;  s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=ZHqvt6Mtv23UwmhgLt9qdsKEHdf7Gi+ueQ3q7aDOqsQ=; b=RKA82OgsqZEEAU5z8zZSNqcVHPtiEkcBF0MZbo6xIJ5Lz4Ro2EJWqD7MmXRdmVPGxnJsgh6ueoSF5s7wygrh59LokoV+8GevN9w6+FRRzaxXUDSGbcVF/58Glas4k/n51vTwEpB+ige7GSJt+trJiNv7dMeg1WYcH86Y6TKBRWtxITyb7u982fpTNRW83IOlCkgxzlDAH73vIFBorlAUwMVRNYK2nmdzNlJGll4zTkN632ru2YTt3xU3qDxHjQJeC23hyWCF+XJYd7ngLLo+hgUC2IiUKqrKMsR80z0OGcCsIWmZilDZnAgmXbkqlBfOEbvXirpqJqA5RP1t9+tE9w==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=ZHqvt6Mtv23UwmhgLt9qdsKEHdf7Gi+ueQ3q7aDOqsQ=; b=u+xG9oOcxVUBDHNGSFHgaKsdV1AFz7NjEK4INvse8BnIgYjkhiOWrujkh8ksCHn2w3WAS6bNGFMH9xw7q9Ckn8EGa2f1J3AdvO04a/8AXTnd4c2BB5eTZ4mfEdh6k6laURlt6mhlsHkbemq9UwGMMJHcyUT8KjBraqfIyU7BJh4=
Received: from DM6PR15MB3689.namprd15.prod.outlook.com (2603:10b6:5:1fb::27) by BYAPR15MB3351.namprd15.prod.outlook.com (2603:10b6:a03:10c::29) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5017.25; Wed, 2 Mar 2022 19:39:16 +0000
Received: from DM6PR15MB3689.namprd15.prod.outlook.com ([fe80::d542:7780:3a29:cf56]) by DM6PR15MB3689.namprd15.prod.outlook.com ([fe80::d542:7780:3a29:cf56%4]) with mapi id 15.20.5038.014; Wed, 2 Mar 2022 19:39:16 +0000
From: Daniel Migault <daniel.migault@ericsson.com>
To: "secdir@ietf.org" <secdir@ietf.org>, Daniel Migault <daniel.migault@ericsson.com>
CC: "last-call@ietf.org" <last-call@ietf.org>, "draft-ietf-ipwave-vehicular-networking.all@ietf.org" <draft-ietf-ipwave-vehicular-networking.all@ietf.org>, "its@ietf.org" <its@ietf.org>
Thread-Topic: [secdir] Secdir telechat review of draft-ietf-ipwave-vehicular-networking-27
Thread-Index: AQHYLmzjyiXrno/3REmSlYn8+b1mvaysfSbp
Date: Wed, 2 Mar 2022 19:39:16 +0000
Message-ID: <DM6PR15MB368990AB8B44D06252BAA3F9E3039@DM6PR15MB3689.namprd15.prod.outlook.com>
References: <164624978894.17953.13607898323269640268@ietfa.amsl.com>
In-Reply-To: <164624978894.17953.13607898323269640268@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
suggested_attachment_session_id: 4a108539-8d1c-9392-812f-f0aadfae4aa2
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ericsson.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: c2b25344-aeec-4baf-2b9f-08d9fc845624
x-ms-traffictypediagnostic: BYAPR15MB3351:EE_
x-microsoft-antispam-prvs: <BYAPR15MB3351990E7CF7E1DD147E46AFE3039@BYAPR15MB3351.namprd15.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:;  IPV:NLI; SFV:NSPM; H:DM6PR15MB3689.namprd15.prod.outlook.com; PTR:; CAT:NONE;  SFS:(13230001)(4636009)(366004)(316002)(91956017)(66446008)(122000001)(4326008)(64756008)(83380400001)(66476007)(66556008)(76116006)(54906003)(66946007)(110136005)(8676002)(450100002)(52536014)(55016003)(966005)(38100700002)(5660300002)(8936002)(26005)(186003)(86362001)(44832011)(82960400001)(71200400001)(38070700005)(33656002)(53546011)(6506007)(7696005)(2906002)(9686003)(508600001); DIR:OUT; SFP:1101; 
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: =?us-ascii?Q?K+KTh3SM0ZI9sXFlCJdRU5zrZkB8lZ/wB8rSW3Y/AENCOSvHl4XiyrD+pgA3?= =?us-ascii?Q?6apaKOJlJFEkACp6djMA0znuYWWod6ndL4beUjPGjYP5mCi6ZiF5DfPXgAJn?= =?us-ascii?Q?cqdcL38f79iPSN3PFtFQ9m3iE93BgA/uvcrW977HNQv06zLfGPHBrXq0NRoY?= =?us-ascii?Q?6OeO1dqnM5vuPkWmy33ur0rQ8ddSBUO4DtISLlldQY8kG7Ytb1tHHFO4Zqnr?= =?us-ascii?Q?UAFArPrvA4WIB+UCtT5zUu16p9tHicX/EDTTGggyNz7U+yKAetIL5tTY4EYU?= =?us-ascii?Q?oYEbqK3mPEmgBp9ABsnGiu47C+/6ulYMgbvhee6VCIdLFNAKZ3QSmz7ROYXu?= =?us-ascii?Q?snxhAcjHtclr6fikM/mjch7JHoWYZYnQGWviYubw65Azj5zSXsKCu1gApwOv?= =?us-ascii?Q?7lqqEedIaFuifJitdC3mKitEzKP9WTAnqfrkGaxmH/8Ye7oFn4b1kaoABlrz?= =?us-ascii?Q?7AchFFCw/4xZ/52m4JeYPS0qonxtoqFu7T58QsLGBv404FzmOMrdC+n+FwG4?= =?us-ascii?Q?1Y1xzwSVeRfO2KAQL58TmFXtp3Q/LmfYSWJZAMFogpVJzpyVSdjqA+mp06qU?= =?us-ascii?Q?pBabAbuAkYgymoMsIpveiN7+USL1g1oc10gTZJrI15u1VmH3/8Prp9mdwQ+k?= =?us-ascii?Q?sYZw0YutT14D03R0loHIgKehrsQybCbmk7xGyeh1JCwEExuUwMU73qg8/7me?= =?us-ascii?Q?pn69t13Dy5kI8/0cxhegey9ioJ00o77uU/VtsaPYnynTGeNsyB9Wu7PMuGwk?= =?us-ascii?Q?gFraCGwpOBWq2kEAnznv4PPKqihMJqGyJ2AIGcit6430Y8BvMCgUQPoG8AcP?= =?us-ascii?Q?3VLFelkSsHKWDMuKqXUJx+H+t3kytib81k37kpChhQZVGDVE3N+/7LLZR8Kn?= =?us-ascii?Q?9N7gbsIGTvUIK0xx739IDzU5q2g47N0FbonjloHDXkW89zlBCyFQB0mVz06A?= =?us-ascii?Q?axoenE/Rs0JsCuL6k2wj+nIGONnwPh5x9HYDqMiA3MdPbmxYg1fzmsfpCD7L?= =?us-ascii?Q?PGGOGppZYPCZw8yEqbGzCOk+Wo4w4GObk44QVHe0Y/iRwHOLnjBd9fVDNT1v?= =?us-ascii?Q?PRkfD45GGepG+X4u6/wt55IO+LFv9/QPCwE3s8MbfeZtK09uMguWpfNUfp+7?= =?us-ascii?Q?l3bVl2iyw1Hgf0VaEShW1tHukf5g1E25DXhFSY4HZV6Tbg0Ciqs+SqqU54as?= =?us-ascii?Q?RXy4k2UZw6e5/SIbRcuIGc12sB8Yy7ipVRJA6fdPQN8pNutSEDI1OgC6JAOb?= =?us-ascii?Q?Tl0G3PVYjUIbMWEUD9fBb7NVwLe6qjVN5bxwXrzrM9CYKFBJWL1n4hSuFmZq?= =?us-ascii?Q?T1Z/B/vk3gxa4IOXFt0B2W344n//5xbz1UiSR0ifpKBRX9F+NHA/Q9NcEMfT?= =?us-ascii?Q?d0nnvzYafwzGNKDEsXSMHqUWyr5I40d0kM30nHV1wB2mcYTSmkZUqwmOcC91?= =?us-ascii?Q?IQ/gPH29fBybEF+o0IpKLb0rmlQU4WmjIMGDwvBmTtknIansMu102EAMN08U?= =?us-ascii?Q?u4icKQu3WzEOhaOIY3jk9gjOaFMa3F0Bpa3fvTJAwr8AL0Hn2e22po7o0/UH?= =?us-ascii?Q?OrkSgTaEZ4sRjSrI8/ZJIBg8ioSoZYyv9bNmwH4jN/z3PR2Fg16lydwn11e2?= =?us-ascii?Q?g3EWIVfYWVlftmqu0vgxOcqq8RsVPj+efaslR4aMhTVp15TYzRzhNFU7yIcY?= =?us-ascii?Q?JDBz/w=3D=3D?=
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM6PR15MB3689.namprd15.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: c2b25344-aeec-4baf-2b9f-08d9fc845624
X-MS-Exchange-CrossTenant-originalarrivaltime: 02 Mar 2022 19:39:16.0260 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: wXF47nmfUOfANd6Ko9mrDNYTBJPMl551bPUECmG+qXalpi69VMuaCxINSwOjig/r6LC8iprD7heSA5epA5pfWEieW4ZNyObigh98kRhem6U=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BYAPR15MB3351
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/-DCZR9yOPMddMD2BFiHddeiimnU>
Subject: Re: [secdir] Secdir telechat review of draft-ietf-ipwave-vehicular-networking-27
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 02 Mar 2022 19:39:28 -0000

-- clicking too fast

Reviewer: Daniel Migault
Review result: Has Issues

Hi,

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the
IESG.  These comments were written primarily for the benefit of the
security area directors.  Document editors and WG chairs should treat
these comments just like any other last call comments.

Please find my comments below:

1.  Introduction

   Vehicular networking studies have mainly focused on improving safety
   and efficiency, and also enabling entertainment in vehicular
   networks.  The Federal Communications Commission (FCC) in the US
   allocated wireless channels for Dedicated Short-Range Communications
   (DSRC) [DSRC] in the Intelligent Transportation Systems (ITS) with
   the frequency band of 5.850 - 5.925 GHz (i.e., 5.9 GHz band).  DSRC-
   based wireless communications can support vehicle-to-vehicle (V2V),
   vehicle-to-infrastructure (V2I), and vehicle-to-everything (V2X)
   networking.  The European Union (EU) allocated radio spectrum for
   safety-related and non-safety-related applications of ITS with the
   frequency band of 5.875 - 5.905 GHz, as part of the Commission
   Decision 2008/671/EC [EU-2008-671-EC].

<mglt>
I am wondering US/EU covers all spectrum allocation worldwide ?
</mglt>

3.2.  V2I

   The emergency communication between accident vehicles (or emergency
   vehicles) and a TCC can be performed via either IP-RSU or 4G-LTE
   networks.  The First Responder Network Authority (FirstNet)
   [FirstNet] is provided by the US government to establish, operate,
   and maintain an interoperable public safety broadband network for
   safety and security network services, e.g., emergency calls.  The
   construction of the nationwide FirstNet network requires each state
   in the US to have a Radio Access Network (RAN) that will connect to
   the FirstNet's network core.  The current RAN is mainly constructed
   using 4G-LTE for the communication between a vehicle and an
   infrastructure node (i.e., V2I) [FirstNet-Report], but it is expected
   that DSRC-based vehicular networks [DSRC] will be available for V2I
   and V2V in the near future.

<mglt>
Is this use case restricted to the US or do we have any equivalent in EU fo=
r
example ? <mglt>

3.3.  V2X

   The use case of V2X networking discussed in this section is for a
   pedestrian protection service.

<mglt>
I do have an issue with such use case - of course if my understanding is
correct. My understanding from the description is that the use case explain=
s
how pedestrian can advertise its presence to a vehicle so avoid the vehicle=
 to
hit that pedestrian. Such assumption does not seem to me acceptable as not
everyone has a phone, and their security - from a vehicle perspective - MUS=
T
NOT be provided by such a mechanism as it would given a false sense of
security. If a vehicle is not able to detect a pedestrian unless this
pedestrian has a working smartphone with a specific application, the proble=
m is
bigger and out of scope of the IETF. I can also see that in some countries,=
 it
will become the pedestrian's fault if it is hit without its application. As=
 I
understand it, I find this use case extremely dangerous, so my request woul=
d be
to remove it or if I misunderstood it to clarify its scope. <mglt>


________________________________________
From: secdir <secdir-bounces@ietf.org> on behalf of Daniel Migault via Data=
tracker <noreply@ietf.org>
Sent: Wednesday, March 2, 2022 2:36 PM
To: secdir@ietf.org
Cc: last-call@ietf.org; draft-ietf-ipwave-vehicular-networking.all@ietf.org=
; its@ietf.org
Subject: [secdir] Secdir telechat review of draft-ietf-ipwave-vehicular-net=
working-27

Reviewer: Daniel Migault
Review result: Has Issues

1.  Introduction

   Vehicular networking studies have mainly focused on improving safety
   and efficiency, and also enabling entertainment in vehicular
   networks.  The Federal Communications Commission (FCC) in the US
   allocated wireless channels for Dedicated Short-Range Communications
   (DSRC) [DSRC] in the Intelligent Transportation Systems (ITS) with
   the frequency band of 5.850 - 5.925 GHz (i.e., 5.9 GHz band).  DSRC-
   based wireless communications can support vehicle-to-vehicle (V2V),
   vehicle-to-infrastructure (V2I), and vehicle-to-everything (V2X)
   networking.  The European Union (EU) allocated radio spectrum for
   safety-related and non-safety-related applications of ITS with the
   frequency band of 5.875 - 5.905 GHz, as part of the Commission
   Decision 2008/671/EC [EU-2008-671-EC].

<mglt>
I am wondering US/EU covers all spectrum allocation worldwide ?
</mglt>

3.2.  V2I

   The emergency communication between accident vehicles (or emergency
   vehicles) and a TCC can be performed via either IP-RSU or 4G-LTE
   networks.  The First Responder Network Authority (FirstNet)
   [FirstNet] is provided by the US government to establish, operate,
   and maintain an interoperable public safety broadband network for
   safety and security network services, e.g., emergency calls.  The
   construction of the nationwide FirstNet network requires each state
   in the US to have a Radio Access Network (RAN) that will connect to
   the FirstNet's network core.  The current RAN is mainly constructed
   using 4G-LTE for the communication between a vehicle and an
   infrastructure node (i.e., V2I) [FirstNet-Report], but it is expected
   that DSRC-based vehicular networks [DSRC] will be available for V2I
   and V2V in the near future.

<mglt>
Is this use case restricted to the US or do we have any equivalent in EU fo=
r
example ? <mglt>

3.3.  V2X

   The use case of V2X networking discussed in this section is for a
   pedestrian protection service.

<mglt>
I do have an issue with such use case - of course if my understanding is
correct. My understanding from the description is that the use case explain=
s
how pedestrian can advertise its presence to a vehicle so avoid the vehicle=
 to
hit that pedestrian. Such assumption does not seem to me acceptable as not
everyone has a phone, and their security - from a vehicle perspective - MUS=
T
NOT be provided by such a mechanism as it would given a false sense of
security. If a vehicle is not able to detect a pedestrian unless this
pedestrian has a working smartphone with a specific application, the proble=
m is
bigger and out of scope of the IETF. I can also see that in some countries,=
 it
will become the pedestrian's fault if it is hit without its application. As=
 I
understand it, I find this use case extremely dangerous, so my request woul=
d be
to remove it or if I misunderstood it to clarify its scope. <mglt>



_______________________________________________
secdir mailing list
secdir@ietf.org
https://www.ietf.org/mailman/listinfo/secdir
wiki: https://trac.ietf.org/trac/sec/wiki/SecDirReview


From nobody Thu Mar  3 04:39:47 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id A0EEC3A0484 for <secdir@ietf.org>; Thu,  3 Mar 2022 04:39:44 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Tero Kivinen via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: secdir-secretary@mit.edu, Tero Kivinen <kivinen@iki.fi>
Message-ID: <164631118463.28454.15845838465309218731@ietfa.amsl.com>
Date: Thu, 03 Mar 2022 04:39:44 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/eFnWPp-iUi3SVYqIuONWqDYGfHg>
Subject: [secdir] Assignments
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 03 Mar 2022 12:39:45 -0000

Review instructions and related resources are at:
https://trac.ietf.org/trac/sec/wiki/SecDirReview

For telechat 2022-03-03

Reviewer               LC end     Draft
Aanchal Malhotra       2021-10-15 draft-ietf-kitten-tls-channel-bindings-for-tls13
Kathleen Moriarty      2022-02-24 draft-ietf-ipsecme-ikev2-intermediate
Brian Weis             2021-08-19 draft-ietf-dnsop-svcb-https

For telechat 2022-03-10

Reviewer               LC end     Draft
Daniel Gillmor         2022-01-28 draft-ietf-rats-yang-tpm-charra
Phillip Hallam-Baker  R2022-02-23 draft-ietf-dprive-dnsoquic
Sandra Murphy          2022-03-07 draft-rsalz-2028bis
Radia Perlman          2022-02-28 draft-ietf-ace-aif

Last calls:

Reviewer               LC end     Draft
Alan DeKok             2021-12-30 draft-ietf-sidrops-6486bis
Daniel Franke          2022-01-19 draft-ietf-pim-igmp-mld-extension
Daniel Gillmor         2022-01-28 draft-ietf-rats-yang-tpm-charra
Phillip Hallam-Baker  R2022-02-23 draft-ietf-dprive-dnsoquic
Steve Hanna            2022-01-24 draft-ietf-dots-telemetry
Aanchal Malhotra       2022-02-03 draft-ietf-bfd-rfc9127-bis
Aanchal Malhotra       2021-10-15 draft-ietf-kitten-tls-channel-bindings-for-tls13
Kathleen Moriarty      2022-02-24 draft-ietf-ipsecme-ikev2-intermediate
Sandra Murphy          2020-10-15 draft-ietf-tls-external-psk-importer
Sandra Murphy          2022-03-07 draft-rsalz-2028bis
Radia Perlman          2022-02-28 draft-ietf-ace-aif
Derrell Piper          2022-03-03 draft-ietf-ace-mqtt-tls-profile
Tirumaleswar Reddy.K   2022-04-07 draft-koster-rep
Stefan Santesson       2021-08-11 draft-ietf-bier-te-arch
Brian Weis             2021-08-19 draft-ietf-dnsop-svcb-https
Klaas Wierenga         2020-05-26 draft-ietf-kitten-krb-spake-preauth
Liang Xia              2021-09-07 draft-ietf-bess-evpn-igmp-mld-proxy
Liang Xia              2021-03-17 draft-ietf-core-sid

Early review requests:

Reviewer               Due        Draft
Stephen Farrell        2021-09-15 draft-ietf-ippm-ioam-direct-export
Stephen Farrell        2021-06-21 draft-ietf-idr-bgpls-srv6-ext
Tina Tsou              2021-08-25 draft-ietf-opsawg-sbom-access
Loganaden Velvindron   2021-08-18 draft-ietf-taps-arch
Christopher Wood       2021-12-20 draft-ietf-opsawg-mud-iot-dns-considerations

Next in the reviewer rotation:

  Vincent Roca
  Kyle Rose
  Joseph Salowey
  Rich Salz
  Stefan Santesson
  Benjamin Schwartz
  Yaron Sheffer
  Rifaat Shekh-Yusef
  Melinda Shore
  Valery Smyslov


From nobody Sat Mar  5 09:25:00 2022
Return-Path: <kaigao@scu.edu.cn>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 30ED93A08BC; Sat,  5 Mar 2022 09:24:44 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.907
X-Spam-Level: 
X-Spam-Status: No, score=-1.907 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5AZSP1utKDkM; Sat,  5 Mar 2022 09:24:39 -0800 (PST)
Received: from zg8tmty1ljiyny4xntqumjca.icoremail.net (zg8tmty1ljiyny4xntqumjca.icoremail.net [165.227.154.27]) by ietfa.amsl.com (Postfix) with SMTP id 307243A08B2; Sat,  5 Mar 2022 09:24:37 -0800 (PST)
Received: by ajax-webmail-app1 (Coremail) ; Sun, 6 Mar 2022 01:24:34 +0800 (GMT+08:00)
X-Originating-IP: [171.214.214.232]
Date: Sun, 6 Mar 2022 01:24:34 +0800 (GMT+08:00)
X-CM-HeaderCharset: UTF-8
From: kaigao@scu.edu.cn
To: "Qin Wu" <bill.wu@huawei.com>
Cc: "Samuel Weiler" <weiler@csail.mit.edu>,  "draft-ietf-alto-path-vector.all@ietf.org" <draft-ietf-alto-path-vector.all@ietf.org>,  "last-call@ietf.org" <last-call@ietf.org>,  "alto@ietf.org" <alto@ietf.org>, "secdir@ietf.org" <secdir@ietf.org>
X-Priority: 3
X-Mailer: Coremail Webmail Server Version XT5.0.13 build 20210104(ab8c30b6) Copyright (c) 2002-2022 www.mailtech.cn mail
In-Reply-To: <ad9fcac81fe041468389fe9a8151621f@huawei.com>
References: <ad9fcac81fe041468389fe9a8151621f@huawei.com>
Content-Transfer-Encoding: base64
Content-Type: text/plain; charset=UTF-8
MIME-Version: 1.0
Message-ID: <97f17a.192c6.17f5b1c955f.Coremail.kaigao@scu.edu.cn>
X-Coremail-Locale: en_US
X-CM-TRANSID: 4wAACgB3n2LSnCNi7vTAAQ--.22876W
X-CM-SenderInfo: 5ndlwt3r6vu3oohg3hdfq/1tbiAQUQB138kmIvhwACso
X-Coremail-Antispam: 1Ur529EdanIXcx71UUUUU7IcSsGvfJ3iIAIbVAYjsxI4VWxJw CS07vEb4IE77IF4wCS07vE1I0E4x80FVAKz4kxMIAIbVAFxVCaYxvI4VCIwcAKzIAtYxBI daVFxhVjvjDU=
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/PJ6fNJWgSYYfk3vDiFY7KfjLzGA>
Subject: Re: [secdir] [alto] Secdir telechat review of draft-ietf-alto-path-vector-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 05 Mar 2022 17:24:45 -0000
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From nobody Sun Mar  6 16:21:40 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 1D20D3A0E6C; Sun,  6 Mar 2022 16:21:35 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Christopher Wood via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
Cc: draft-ietf-opsawg-mud-iot-dns-considerations.all@ietf.org, opsawg@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <164661249505.9085.15140248784912063860@ietfa.amsl.com>
Reply-To: Christopher Wood <caw@heapingbits.net>
Date: Sun, 06 Mar 2022 16:21:35 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/ct9mWjRLDhb8OURErYjis33_Bps>
Subject: [secdir] Secdir early review of draft-ietf-opsawg-mud-iot-dns-considerations-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 07 Mar 2022 00:21:36 -0000

Reviewer: Christopher Wood
Review result: Not Ready

Reviewer: Christopher Wood
Review result: Has issues

General comments:

In general, the problem statement and motivation for this draft -- and the
techniques in Section 3 in particular -- seems underspecified. For example,
what are the requirements for the firewall or MUD controller name<>address
mappings? Is this mapping ever allowed to be stale? If so, how stale can it be?
What is the threat model for the controller when trying to enforce a name-based
policy and update its mappings? Does it consider an attacker that tries to
interfere with how the mappings are constructed, either via direct queries to
DNS or via reverse DNS queries through in-addr.arpa? What privacy
considerations are relevant in the presence of this (or other) attackers? What
sort of assumptions are made about the content or service that is accessed
after these DNS queries complete?

Specific comments:

Section 1.

   Use of a DNS name rather than IP address in the ACL has many
   advantages: not only does the layer of indirection permit the mapping
   of name to IP address to be changed over time, it also generalizes
   automatically to IPv4 and IPv6 addresses, as well as permitting
   loading balancing of traffic by many different common ways, including
   geography.

I might generalize this a bit to also include multi-CDN deployments for
services, wherein load balancing might account for geography, load, etc.

Section 3.

   In order to compensate for this, the MUD controller SHOULD regularly
   do DNS lookups.  These lookups need to be rate limited in order to
   avoid load.  It may be necessary to avoid recursive DNS servers in
   order to avoid receiving cached data.

This seems to suggest that controllers should, in the name of "security",
intentionally bypass resolver caches to ensure their view of the name<>address
mappings is never stale. This doesn't seem like great advice, considering (1)
the data should always be assumed to be stale (this is a distributed system,
after all) and (2) any benign firewall operator may simply try to increase the
rate of queries to drive down the probability of working with stale data. That
may in turn either overload the authoritative server, or cause the MUD
controller to be rate limited, yielding the opposite of the desired effect.

Section 4.2

   Those names are often within some third-party Content-Distribution-
   Network (CDN) system, or may be arbitrary names in a cloud-provider
   storage system such as Amazon S3 (such [AmazonS3], or [Akamai]).

Does this mean to say that the names are unpredictably chosen by the content
provider, and not by the content owner? If so, I might rephrase it as such.

Section 4.3

   Some CDNs make all customer content at a single URL (such as
   s3.amazonaws.com).  This seems to be ideal from a MUD point of view:
   a completely predictable URL.  The problem is that a compromised
   device could then connect to any S3 bucket, potentially attacking
   other buckets.

What does "attacking other buckets" mean here? Does it mean increasing number
of reads to those buckets? Or perhaps _writing_ to those buckets? I don't know
what sort of access control techniques are typically used here, but the latter,
i.e., people writing to arbitrary buckets, would be surprising to me. In any
case, I would clarify what is meant here, along with what assumptions are made
about the content providers themselves.

Section 5.

   There are significant privacy issues with having IoT devices sending
   their DNS queries to an outside entity.  Doing it over a secure
   transport (DoT/DoH) is clearly better than doing so on port 53.  The
   providers of the secure resolver service will, however, still see the
   IoT device queries.

This seems to be assuming a particular threat model that may not be universally
applicable. It may not be the case that using a public resolver will lead to
"significant privacy issues." I might clarify the assumed threat model here,
rather than prescribe one for all users of this document.

Moreover, if something like Oblivious DoH were used, would this still be an
issue? ODoH is mentioned later on in the privacy considerations, but I think it
warrants mention here as well.

Section 6.5.

   Use of public QuadX resolver instead of the provided DNS resolver,
   whether Do53, DoT or DoH is discouraged.  Should the network provide
   such a resolver for use, then there is no reason not to use it, as
   the network operator has clearly thought about this.

I would push back on this. As I understand the situation, some ISP recursive
resolvers essentially forward queries onwards to public (QuadX) resolvers.
What's the difference, then, between using the public resolver directly and the
network-provided resolver? (This points back to the previous comment on the
assumed threat model.)

Section 6.5.

   The recommendation here is to do this only when the provided
   resolvers provide no answers to any queries at all, and do so
   repeatedly.  The use of the operator provided resolvers SHOULD be
   retried on a periodic basis, and once they answer, there should be no
   further attempts to contact public resolvers.

I think this needs a better description of the threat model in order to make
sense. What if, for example, some attacker basically blocked all answers from
provided resolvers, forcing usage of public resolvers? Is that in scope or not?



From nobody Sun Mar  6 16:26:09 2022
Return-Path: <caw@heapingbits.net>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BDE8B3A0E6D; Sun,  6 Mar 2022 16:26:04 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.109
X-Spam-Level: 
X-Spam-Status: No, score=-2.109 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=heapingbits.net header.b=dBVW3F6v; dkim=pass (2048-bit key) header.d=messagingengine.com header.b=T+6Pypes
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HMpY3QKoohmR; Sun,  6 Mar 2022 16:25:56 -0800 (PST)
Received: from wout1-smtp.messagingengine.com (wout1-smtp.messagingengine.com [64.147.123.24]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E0F583A0E6C; Sun,  6 Mar 2022 16:25:52 -0800 (PST)
Received: from compute5.internal (compute5.nyi.internal [10.202.2.45]) by mailout.west.internal (Postfix) with ESMTP id 9B2F53201591; Sun,  6 Mar 2022 19:25:50 -0500 (EST)
Received: from mailfrontend2 ([10.202.2.163]) by compute5.internal (MEProxy); Sun, 06 Mar 2022 19:25:50 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=heapingbits.net; h=cc:cc:content-transfer-encoding:content-type:date:date:from :from:in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to; s=fm1; bh=EcD3IOxv9GMnsZ UTW9anFFI+N2RW5d+HmySIpeFYTRA=; b=dBVW3F6vdvOLtac1te+K7dKhfyzOq3 2rZEJD9KaVl+Br58Ff+MAjOdNQzcwujRSgwoesnxqowQXhNijQrpXPZJwJyvpS6u rn001R+Y1xk0iZX0aCSALHdm54TCbFEydsuhQGslgNCSZGGertYCk9ISHTgla3gE GO/i+n2Wz3I3Vr1qEdtD8tnJMhWuQ8uC0qaGeqvoAz5xO6dsGKzNZFfz/OAIxl8V qULvoVrCVznA3NJsYov7Ucbf+dfplCfMmc12jFd8cq5WXNZ4/UD8QYyVA9R0ix8M K0s5LnzmpbcblKY7LQAgd80oPPUypYxeLEdcI4jRxCWQLj4NNIV/ZrYQ==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-transfer-encoding :content-type:date:date:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to:x-me-proxy:x-me-proxy:x-me-sender:x-me-sender :x-sasl-enc; s=fm2; bh=EcD3IOxv9GMnsZUTW9anFFI+N2RW5d+HmySIpeFYT RA=; b=T+6Pypest0XfRXvrj9eBU8kYuz4MC/QKbywTVkvHzTOouA5p2IHqHkAIJ Qs0GfeGQhtXvBOlGQHsUuK4ki7S+hC8BBbPoO+4dgBuN0EdokTILPpWeeQ/Ax5Io fQPy0Tbvx6xP3WImKrfSsNuNOAxtWRIWPfma4WPMytiqJB2Al+nUUibTBXIZbbul URocLmeUJN9GXa2BtAIlXrGXgF3nr9/pK/K1AHhQFU6aH7jyf5WXEbGuQVe0+PpG Lnuo32OA84F7dwt22DU2c+YuJPOqodd1ApsndyRWLPrYe8PFFS/7//n2CGd7ui2q X7b1wKnu8goXZC2kT5GDfeaNtbm7Q==
X-ME-Sender: <xms:DlElYgyV-iZo54gUJ5zwuXlvldXVCLmx6zUtehyt3uJwekDHskJtzw> <xme:DlElYkRaoNFXEpx-PDCW3SVsiIv8gVsrQxtffTl-cKdj31tgC054MZnOwLKKCqK8H enSLWm76ONE_kQLyCg>
X-ME-Received: <xmr:DlElYiXfb3icUI0oOfCTYMjWNnMSKJ8nrD2rfwbyg6_J3me4Wbo5-S2AAXTIhC9KNVC3JEceKuklCnHA5MlXBkvyZ93sQRA4KQ>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvvddruddufedgvddtucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucgoteeftdduqddtudculdduhedmnecujfgurheptg gguffhjgffgffkfhfvofesthhqmhdthhdtjeenucfhrhhomhepvehhrhhishhtohhphhgv rhcuhghoohguuceotggrfieshhgvrghpihhnghgsihhtshdrnhgvtheqnecuggftrfgrth htvghrnhepieekgeduudfggfehtdegkedvleegudevtdfgffeugfdtudfgtdegteeitddt vdeunecuffhomhgrihhnpehinhdqrgguughrrdgrrhhprgdprghmrgiiohhnrgifshdrtg homhdpihgvthhfrdhorhhgnecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehm rghilhhfrhhomheptggrfieshhgvrghpihhnghgsihhtshdrnhgvth
X-ME-Proxy: <xmx:DlElYuisHNvZwEvZuahgWn5514tE3suK8VesXG-3KdR30Oo2FWS7Sw> <xmx:DlElYiDTseAqx9lcfJqPlJUO8RCT4gTzD-8SRZiF1cW1OfYJqCnKPw> <xmx:DlElYvJAzFGN7bPsQ-vmbr5abloQdDvGX77ElQn6nYlCKaWnLoSLHA> <xmx:DlElYlMkeIngUW3f-lf4dQK6goQB9wnYRbUuY_8MFXhNmv1UvuP3-w>
Received: by mail.messagingengine.com (Postfix) with ESMTPA; Sun, 6 Mar 2022 19:25:49 -0500 (EST)
Content-Type: text/plain; charset=utf-8
Mime-Version: 1.0 (Mac OS X Mail 15.0 \(3693.40.0.1.81\))
From: Christopher Wood <caw@heapingbits.net>
In-Reply-To: <164661249505.9085.15140248784912063860@ietfa.amsl.com>
Date: Sun, 6 Mar 2022 16:25:46 -0800
Cc: "secdir@ietf.org" <secdir@ietf.org>, draft-ietf-opsawg-mud-iot-dns-considerations.all@ietf.org, opsawg@ietf.org
Content-Transfer-Encoding: quoted-printable
Message-Id: <1C625713-898F-48D2-97E6-83B23893D3FA@heapingbits.net>
References: <164661249505.9085.15140248784912063860@ietfa.amsl.com>
To: Christopher Wood <caw@heapingbits.net>
X-Mailer: Apple Mail (2.3693.40.0.1.81)
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/vqIFJ1Wv2UpHIkR58yHavGRqlsE>
Subject: Re: [secdir] Secdir early review of draft-ietf-opsawg-mud-iot-dns-considerations-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 07 Mar 2022 00:26:05 -0000

Oops. I manually entered the review result in the datatracker form. The =
intended review result is =E2=80=9CNot Ready."

> On Mar 6, 2022, at 4:21 PM, Christopher Wood via Datatracker =
<noreply@ietf.org> wrote:
>=20
> Reviewer: Christopher Wood
> Review result: Not Ready
>=20
> Reviewer: Christopher Wood
> Review result: Has issues
>=20
> General comments:
>=20
> In general, the problem statement and motivation for this draft -- and =
the
> techniques in Section 3 in particular -- seems underspecified. For =
example,
> what are the requirements for the firewall or MUD controller =
name<>address
> mappings? Is this mapping ever allowed to be stale? If so, how stale =
can it be?
> What is the threat model for the controller when trying to enforce a =
name-based
> policy and update its mappings? Does it consider an attacker that =
tries to
> interfere with how the mappings are constructed, either via direct =
queries to
> DNS or via reverse DNS queries through in-addr.arpa? What privacy
> considerations are relevant in the presence of this (or other) =
attackers? What
> sort of assumptions are made about the content or service that is =
accessed
> after these DNS queries complete?
>=20
> Specific comments:
>=20
> Section 1.
>=20
>   Use of a DNS name rather than IP address in the ACL has many
>   advantages: not only does the layer of indirection permit the =
mapping
>   of name to IP address to be changed over time, it also generalizes
>   automatically to IPv4 and IPv6 addresses, as well as permitting
>   loading balancing of traffic by many different common ways, =
including
>   geography.
>=20
> I might generalize this a bit to also include multi-CDN deployments =
for
> services, wherein load balancing might account for geography, load, =
etc.
>=20
> Section 3.
>=20
>   In order to compensate for this, the MUD controller SHOULD regularly
>   do DNS lookups.  These lookups need to be rate limited in order to
>   avoid load.  It may be necessary to avoid recursive DNS servers in
>   order to avoid receiving cached data.
>=20
> This seems to suggest that controllers should, in the name of =
"security",
> intentionally bypass resolver caches to ensure their view of the =
name<>address
> mappings is never stale. This doesn't seem like great advice, =
considering (1)
> the data should always be assumed to be stale (this is a distributed =
system,
> after all) and (2) any benign firewall operator may simply try to =
increase the
> rate of queries to drive down the probability of working with stale =
data. That
> may in turn either overload the authoritative server, or cause the MUD
> controller to be rate limited, yielding the opposite of the desired =
effect.
>=20
> Section 4.2
>=20
>   Those names are often within some third-party Content-Distribution-
>   Network (CDN) system, or may be arbitrary names in a cloud-provider
>   storage system such as Amazon S3 (such [AmazonS3], or [Akamai]).
>=20
> Does this mean to say that the names are unpredictably chosen by the =
content
> provider, and not by the content owner? If so, I might rephrase it as =
such.
>=20
> Section 4.3
>=20
>   Some CDNs make all customer content at a single URL (such as
>   s3.amazonaws.com).  This seems to be ideal from a MUD point of view:
>   a completely predictable URL.  The problem is that a compromised
>   device could then connect to any S3 bucket, potentially attacking
>   other buckets.
>=20
> What does "attacking other buckets" mean here? Does it mean increasing =
number
> of reads to those buckets? Or perhaps _writing_ to those buckets? I =
don't know
> what sort of access control techniques are typically used here, but =
the latter,
> i.e., people writing to arbitrary buckets, would be surprising to me. =
In any
> case, I would clarify what is meant here, along with what assumptions =
are made
> about the content providers themselves.
>=20
> Section 5.
>=20
>   There are significant privacy issues with having IoT devices sending
>   their DNS queries to an outside entity.  Doing it over a secure
>   transport (DoT/DoH) is clearly better than doing so on port 53.  The
>   providers of the secure resolver service will, however, still see =
the
>   IoT device queries.
>=20
> This seems to be assuming a particular threat model that may not be =
universally
> applicable. It may not be the case that using a public resolver will =
lead to
> "significant privacy issues." I might clarify the assumed threat model =
here,
> rather than prescribe one for all users of this document.
>=20
> Moreover, if something like Oblivious DoH were used, would this still =
be an
> issue? ODoH is mentioned later on in the privacy considerations, but I =
think it
> warrants mention here as well.
>=20
> Section 6.5.
>=20
>   Use of public QuadX resolver instead of the provided DNS resolver,
>   whether Do53, DoT or DoH is discouraged.  Should the network provide
>   such a resolver for use, then there is no reason not to use it, as
>   the network operator has clearly thought about this.
>=20
> I would push back on this. As I understand the situation, some ISP =
recursive
> resolvers essentially forward queries onwards to public (QuadX) =
resolvers.
> What's the difference, then, between using the public resolver =
directly and the
> network-provided resolver? (This points back to the previous comment =
on the
> assumed threat model.)
>=20
> Section 6.5.
>=20
>   The recommendation here is to do this only when the provided
>   resolvers provide no answers to any queries at all, and do so
>   repeatedly.  The use of the operator provided resolvers SHOULD be
>   retried on a periodic basis, and once they answer, there should be =
no
>   further attempts to contact public resolvers.
>=20
> I think this needs a better description of the threat model in order =
to make
> sense. What if, for example, some attacker basically blocked all =
answers from
> provided resolvers, forcing usage of public resolvers? Is that in =
scope or not?
>=20
>=20
> _______________________________________________
> secdir mailing list
> secdir@ietf.org
> https://www.ietf.org/mailman/listinfo/secdir
> wiki: https://trac.ietf.org/trac/sec/wiki/SecDirReview


From nobody Mon Mar  7 08:48:51 2022
Return-Path: <bemasc@google.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 93C3D3A0D1D for <secdir@ietfa.amsl.com>; Mon,  7 Mar 2022 08:48:50 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -17.609
X-Spam-Level: 
X-Spam-Status: No, score=-17.609 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, ENV_AND_HDR_SPF_MATCH=-0.5, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5, USER_IN_DEF_SPF_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=google.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id H6_SUrEg9A3g for <secdir@ietfa.amsl.com>; Mon,  7 Mar 2022 08:48:45 -0800 (PST)
Received: from mail-il1-x12c.google.com (mail-il1-x12c.google.com [IPv6:2607:f8b0:4864:20::12c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2E1213A101A for <secdir@ietf.org>; Mon,  7 Mar 2022 08:47:24 -0800 (PST)
Received: by mail-il1-x12c.google.com with SMTP id k7so11972214ilo.8 for <secdir@ietf.org>; Mon, 07 Mar 2022 08:47:24 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=vxYrvyF6IA5MO98ejwXL3eK9E0cYiwN24B3wRkJt17M=; b=Qz3RSemArHn3YrbrpGLNXn9owuxHMctmbmfV32CR8BW40difj2phb0TZYF6lcioZTW yckqcPO31HcfTTuAg0FENfgEunxLcWUamKc93vRV1Mlm+Ff1hm9TLXoIvKvyC1uHKrg9 byq+chr8PE/Xm/iOYFpm5ZQtzpeW+gvdZa8NeaXn2S15IBUDHcWzTjuWwehGm5+dSjNz GAAo/XY9FymSsn0esw6/sZSef6oIol/iXtTeG2PcUbxtdceGJijtnw7fbIkmZmvOviCz UgVDNHQ0YDJFevzcqdMmM6AvhsSQKthf8FCa8W3cM6S0y3Sa/sdUDqHDNtGh8Cr9GVIM qn7A==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=vxYrvyF6IA5MO98ejwXL3eK9E0cYiwN24B3wRkJt17M=; b=3O1Yf4Vy/DAPqP5pgD8WTLHa3NT21G8AIEWFhOWPO0WLnTgzFwIRQYKJfiOfDxhmJa mh4FWv9clBNJJN1VDlP3f98HEbU/3fU9XtEX33fmIUrCEsjCmGSVUfazjzeIfArs8ZjS CBuAzeucRDlP+uvY9U6JAogkvgZghn/UhKTlKR+zLPNmOlArMyXtDNFdVDPDnKiw0LhT Xhn4NIrBwtqxLGukRG2Jk5e+8HP+4129m9Ic0ZE4/HJl0mwvFhWZraelHBp/F71dbBkR hKgNgzQjTPuIaW9VnDvg+v5D8tHsCvY9fyQ5AvHPT+BxPIv4FrvGOdmKfj1aPHCRDSny s1MQ==
X-Gm-Message-State: AOAM531pBVoAP9j7hRYnqnK4PhpJ7qJLzheOtV4DS+0KRnFlQIGbZnZW f889GU4jm4gCU4BoDpa/yIpspfcMbS9dGq9PvMAvag==
X-Google-Smtp-Source: ABdhPJy4Mvy4ZOuJ9z6ueSRFg5tznnq8iKhF1nfjNMzSmG0pgwQdZwBhEH7+W3F5MlxphTKaMsOLAZ2ON222Rk7zKJM=
X-Received: by 2002:a92:cd0c:0:b0:2c6:44e8:c630 with SMTP id z12-20020a92cd0c000000b002c644e8c630mr4858094iln.295.1646671643080; Mon, 07 Mar 2022 08:47:23 -0800 (PST)
MIME-Version: 1.0
References: <164661249505.9085.15140248784912063860@ietfa.amsl.com> <1C625713-898F-48D2-97E6-83B23893D3FA@heapingbits.net>
In-Reply-To: <1C625713-898F-48D2-97E6-83B23893D3FA@heapingbits.net>
From: Ben Schwartz <bemasc@google.com>
Date: Mon, 7 Mar 2022 11:47:12 -0500
Message-ID: <CAHbrMsATaT9SBveN94YP=Sr3Z5L9uE8cH=hMm022QkYjnHuDhw@mail.gmail.com>
To: Christopher Wood <caw@heapingbits.net>
Cc: draft-ietf-opsawg-mud-iot-dns-considerations.all@ietf.org,  opsawg <opsawg@ietf.org>, "secdir@ietf.org" <secdir@ietf.org>
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg=sha-256; boundary="0000000000005ff67205d9a39e8e"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/tb00Oh8wwlJ7X6ssj4HBgNha-Ok>
Subject: Re: [secdir] Secdir early review of draft-ietf-opsawg-mud-iot-dns-considerations-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 07 Mar 2022 16:48:51 -0000

--0000000000005ff67205d9a39e8e
Content-Type: multipart/alternative; boundary="000000000000597d5405d9a39eef"

--000000000000597d5405d9a39eef
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

I reviewed [1] this draft at version 01, but my concerns largely stand with
the current version.

The fundamental issue here, in my view, is that the urn:ietf:params:mud:dns
permission is not compatible with the desired threat model.  A correct
solution would be to recommend against this permission, and introduce a new
one that provides explicit coupling between DNS resolution, transport
setup, and the MUD gateway (e.g. using a SOCKS5 proxy).

[1] https://mailarchive.ietf.org/arch/msg/dnsop/PNJy-kf-6CErJrKf5NSwvTv0srk=
/

On Sun, Mar 6, 2022 at 7:26 PM Christopher Wood <caw@heapingbits.net> wrote=
:

> Oops. I manually entered the review result in the datatracker form. The
> intended review result is =E2=80=9CNot Ready."
>
> > On Mar 6, 2022, at 4:21 PM, Christopher Wood via Datatracker <
> noreply@ietf.org> wrote:
> >
> > Reviewer: Christopher Wood
> > Review result: Not Ready
> >
> > Reviewer: Christopher Wood
> > Review result: Has issues
> >
> > General comments:
> >
> > In general, the problem statement and motivation for this draft -- and
> the
> > techniques in Section 3 in particular -- seems underspecified. For
> example,
> > what are the requirements for the firewall or MUD controller
> name<>address
> > mappings? Is this mapping ever allowed to be stale? If so, how stale ca=
n
> it be?
> > What is the threat model for the controller when trying to enforce a
> name-based
> > policy and update its mappings? Does it consider an attacker that tries
> to
> > interfere with how the mappings are constructed, either via direct
> queries to
> > DNS or via reverse DNS queries through in-addr.arpa? What privacy
> > considerations are relevant in the presence of this (or other)
> attackers? What
> > sort of assumptions are made about the content or service that is
> accessed
> > after these DNS queries complete?
> >
> > Specific comments:
> >
> > Section 1.
> >
> >   Use of a DNS name rather than IP address in the ACL has many
> >   advantages: not only does the layer of indirection permit the mapping
> >   of name to IP address to be changed over time, it also generalizes
> >   automatically to IPv4 and IPv6 addresses, as well as permitting
> >   loading balancing of traffic by many different common ways, including
> >   geography.
> >
> > I might generalize this a bit to also include multi-CDN deployments for
> > services, wherein load balancing might account for geography, load, etc=
.
> >
> > Section 3.
> >
> >   In order to compensate for this, the MUD controller SHOULD regularly
> >   do DNS lookups.  These lookups need to be rate limited in order to
> >   avoid load.  It may be necessary to avoid recursive DNS servers in
> >   order to avoid receiving cached data.
> >
> > This seems to suggest that controllers should, in the name of "security=
",
> > intentionally bypass resolver caches to ensure their view of the
> name<>address
> > mappings is never stale. This doesn't seem like great advice,
> considering (1)
> > the data should always be assumed to be stale (this is a distributed
> system,
> > after all) and (2) any benign firewall operator may simply try to
> increase the
> > rate of queries to drive down the probability of working with stale
> data. That
> > may in turn either overload the authoritative server, or cause the MUD
> > controller to be rate limited, yielding the opposite of the desired
> effect.
> >
> > Section 4.2
> >
> >   Those names are often within some third-party Content-Distribution-
> >   Network (CDN) system, or may be arbitrary names in a cloud-provider
> >   storage system such as Amazon S3 (such [AmazonS3], or [Akamai]).
> >
> > Does this mean to say that the names are unpredictably chosen by the
> content
> > provider, and not by the content owner? If so, I might rephrase it as
> such.
> >
> > Section 4.3
> >
> >   Some CDNs make all customer content at a single URL (such as
> >   s3.amazonaws.com).  This seems to be ideal from a MUD point of view:
> >   a completely predictable URL.  The problem is that a compromised
> >   device could then connect to any S3 bucket, potentially attacking
> >   other buckets.
> >
> > What does "attacking other buckets" mean here? Does it mean increasing
> number
> > of reads to those buckets? Or perhaps _writing_ to those buckets? I
> don't know
> > what sort of access control techniques are typically used here, but the
> latter,
> > i.e., people writing to arbitrary buckets, would be surprising to me. I=
n
> any
> > case, I would clarify what is meant here, along with what assumptions
> are made
> > about the content providers themselves.
> >
> > Section 5.
> >
> >   There are significant privacy issues with having IoT devices sending
> >   their DNS queries to an outside entity.  Doing it over a secure
> >   transport (DoT/DoH) is clearly better than doing so on port 53.  The
> >   providers of the secure resolver service will, however, still see the
> >   IoT device queries.
> >
> > This seems to be assuming a particular threat model that may not be
> universally
> > applicable. It may not be the case that using a public resolver will
> lead to
> > "significant privacy issues." I might clarify the assumed threat model
> here,
> > rather than prescribe one for all users of this document.
> >
> > Moreover, if something like Oblivious DoH were used, would this still b=
e
> an
> > issue? ODoH is mentioned later on in the privacy considerations, but I
> think it
> > warrants mention here as well.
> >
> > Section 6.5.
> >
> >   Use of public QuadX resolver instead of the provided DNS resolver,
> >   whether Do53, DoT or DoH is discouraged.  Should the network provide
> >   such a resolver for use, then there is no reason not to use it, as
> >   the network operator has clearly thought about this.
> >
> > I would push back on this. As I understand the situation, some ISP
> recursive
> > resolvers essentially forward queries onwards to public (QuadX)
> resolvers.
> > What's the difference, then, between using the public resolver directly
> and the
> > network-provided resolver? (This points back to the previous comment on
> the
> > assumed threat model.)
> >
> > Section 6.5.
> >
> >   The recommendation here is to do this only when the provided
> >   resolvers provide no answers to any queries at all, and do so
> >   repeatedly.  The use of the operator provided resolvers SHOULD be
> >   retried on a periodic basis, and once they answer, there should be no
> >   further attempts to contact public resolvers.
> >
> > I think this needs a better description of the threat model in order to
> make
> > sense. What if, for example, some attacker basically blocked all answer=
s
> from
> > provided resolvers, forcing usage of public resolvers? Is that in scope
> or not?
> >
> >
> > _______________________________________________
> > secdir mailing list
> > secdir@ietf.org
> > https://www.ietf.org/mailman/listinfo/secdir
> > wiki: https://trac.ietf.org/trac/sec/wiki/SecDirReview
>
> _______________________________________________
> secdir mailing list
> secdir@ietf.org
> https://www.ietf.org/mailman/listinfo/secdir
> wiki: https://trac.ietf.org/trac/sec/wiki/SecDirReview
>

--000000000000597d5405d9a39eef
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr">I reviewed [1] this draft at version 01, but my concerns l=
argely stand with the current version.<div><br></div><div><div>The fundamen=
tal issue here, in my view, is that the=C2=A0urn:ietf:params:mud:dns permis=
sion is not compatible with the desired threat model.=C2=A0 A correct solut=
ion would be to recommend against this permission, and introduce a new one =
that provides explicit coupling between DNS resolution, transport setup, an=
d the MUD gateway (e.g. using a SOCKS5 proxy).</div><div><br></div><div>[1]=
=C2=A0<a href=3D"https://mailarchive.ietf.org/arch/msg/dnsop/PNJy-kf-6CErJr=
Kf5NSwvTv0srk/">https://mailarchive.ietf.org/arch/msg/dnsop/PNJy-kf-6CErJrK=
f5NSwvTv0srk/</a></div></div></div><br><div class=3D"gmail_quote"><div dir=
=3D"ltr" class=3D"gmail_attr">On Sun, Mar 6, 2022 at 7:26 PM Christopher Wo=
od &lt;<a href=3D"mailto:caw@heapingbits.net">caw@heapingbits.net</a>&gt; w=
rote:<br></div><blockquote class=3D"gmail_quote" style=3D"margin:0px 0px 0p=
x 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">Oops. I ma=
nually entered the review result in the datatracker form. The intended revi=
ew result is =E2=80=9CNot Ready.&quot;<br>
<br>
&gt; On Mar 6, 2022, at 4:21 PM, Christopher Wood via Datatracker &lt;<a hr=
ef=3D"mailto:noreply@ietf.org" target=3D"_blank">noreply@ietf.org</a>&gt; w=
rote:<br>
&gt; <br>
&gt; Reviewer: Christopher Wood<br>
&gt; Review result: Not Ready<br>
&gt; <br>
&gt; Reviewer: Christopher Wood<br>
&gt; Review result: Has issues<br>
&gt; <br>
&gt; General comments:<br>
&gt; <br>
&gt; In general, the problem statement and motivation for this draft -- and=
 the<br>
&gt; techniques in Section 3 in particular -- seems underspecified. For exa=
mple,<br>
&gt; what are the requirements for the firewall or MUD controller name&lt;&=
gt;address<br>
&gt; mappings? Is this mapping ever allowed to be stale? If so, how stale c=
an it be?<br>
&gt; What is the threat model for the controller when trying to enforce a n=
ame-based<br>
&gt; policy and update its mappings? Does it consider an attacker that trie=
s to<br>
&gt; interfere with how the mappings are constructed, either via direct que=
ries to<br>
&gt; DNS or via reverse DNS queries through in-addr.arpa? What privacy<br>
&gt; considerations are relevant in the presence of this (or other) attacke=
rs? What<br>
&gt; sort of assumptions are made about the content or service that is acce=
ssed<br>
&gt; after these DNS queries complete?<br>
&gt; <br>
&gt; Specific comments:<br>
&gt; <br>
&gt; Section 1.<br>
&gt; <br>
&gt;=C2=A0 =C2=A0Use of a DNS name rather than IP address in the ACL has ma=
ny<br>
&gt;=C2=A0 =C2=A0advantages: not only does the layer of indirection permit =
the mapping<br>
&gt;=C2=A0 =C2=A0of name to IP address to be changed over time, it also gen=
eralizes<br>
&gt;=C2=A0 =C2=A0automatically to IPv4 and IPv6 addresses, as well as permi=
tting<br>
&gt;=C2=A0 =C2=A0loading balancing of traffic by many different common ways=
, including<br>
&gt;=C2=A0 =C2=A0geography.<br>
&gt; <br>
&gt; I might generalize this a bit to also include multi-CDN deployments fo=
r<br>
&gt; services, wherein load balancing might account for geography, load, et=
c.<br>
&gt; <br>
&gt; Section 3.<br>
&gt; <br>
&gt;=C2=A0 =C2=A0In order to compensate for this, the MUD controller SHOULD=
 regularly<br>
&gt;=C2=A0 =C2=A0do DNS lookups.=C2=A0 These lookups need to be rate limite=
d in order to<br>
&gt;=C2=A0 =C2=A0avoid load.=C2=A0 It may be necessary to avoid recursive D=
NS servers in<br>
&gt;=C2=A0 =C2=A0order to avoid receiving cached data.<br>
&gt; <br>
&gt; This seems to suggest that controllers should, in the name of &quot;se=
curity&quot;,<br>
&gt; intentionally bypass resolver caches to ensure their view of the name&=
lt;&gt;address<br>
&gt; mappings is never stale. This doesn&#39;t seem like great advice, cons=
idering (1)<br>
&gt; the data should always be assumed to be stale (this is a distributed s=
ystem,<br>
&gt; after all) and (2) any benign firewall operator may simply try to incr=
ease the<br>
&gt; rate of queries to drive down the probability of working with stale da=
ta. That<br>
&gt; may in turn either overload the authoritative server, or cause the MUD=
<br>
&gt; controller to be rate limited, yielding the opposite of the desired ef=
fect.<br>
&gt; <br>
&gt; Section 4.2<br>
&gt; <br>
&gt;=C2=A0 =C2=A0Those names are often within some third-party Content-Dist=
ribution-<br>
&gt;=C2=A0 =C2=A0Network (CDN) system, or may be arbitrary names in a cloud=
-provider<br>
&gt;=C2=A0 =C2=A0storage system such as Amazon S3 (such [AmazonS3], or [Aka=
mai]).<br>
&gt; <br>
&gt; Does this mean to say that the names are unpredictably chosen by the c=
ontent<br>
&gt; provider, and not by the content owner? If so, I might rephrase it as =
such.<br>
&gt; <br>
&gt; Section 4.3<br>
&gt; <br>
&gt;=C2=A0 =C2=A0Some CDNs make all customer content at a single URL (such =
as<br>
&gt;=C2=A0 =C2=A0<a href=3D"http://s3.amazonaws.com" rel=3D"noreferrer" tar=
get=3D"_blank">s3.amazonaws.com</a>).=C2=A0 This seems to be ideal from a M=
UD point of view:<br>
&gt;=C2=A0 =C2=A0a completely predictable URL.=C2=A0 The problem is that a =
compromised<br>
&gt;=C2=A0 =C2=A0device could then connect to any S3 bucket, potentially at=
tacking<br>
&gt;=C2=A0 =C2=A0other buckets.<br>
&gt; <br>
&gt; What does &quot;attacking other buckets&quot; mean here? Does it mean =
increasing number<br>
&gt; of reads to those buckets? Or perhaps _writing_ to those buckets? I do=
n&#39;t know<br>
&gt; what sort of access control techniques are typically used here, but th=
e latter,<br>
&gt; i.e., people writing to arbitrary buckets, would be surprising to me. =
In any<br>
&gt; case, I would clarify what is meant here, along with what assumptions =
are made<br>
&gt; about the content providers themselves.<br>
&gt; <br>
&gt; Section 5.<br>
&gt; <br>
&gt;=C2=A0 =C2=A0There are significant privacy issues with having IoT devic=
es sending<br>
&gt;=C2=A0 =C2=A0their DNS queries to an outside entity.=C2=A0 Doing it ove=
r a secure<br>
&gt;=C2=A0 =C2=A0transport (DoT/DoH) is clearly better than doing so on por=
t 53.=C2=A0 The<br>
&gt;=C2=A0 =C2=A0providers of the secure resolver service will, however, st=
ill see the<br>
&gt;=C2=A0 =C2=A0IoT device queries.<br>
&gt; <br>
&gt; This seems to be assuming a particular threat model that may not be un=
iversally<br>
&gt; applicable. It may not be the case that using a public resolver will l=
ead to<br>
&gt; &quot;significant privacy issues.&quot; I might clarify the assumed th=
reat model here,<br>
&gt; rather than prescribe one for all users of this document.<br>
&gt; <br>
&gt; Moreover, if something like Oblivious DoH were used, would this still =
be an<br>
&gt; issue? ODoH is mentioned later on in the privacy considerations, but I=
 think it<br>
&gt; warrants mention here as well.<br>
&gt; <br>
&gt; Section 6.5.<br>
&gt; <br>
&gt;=C2=A0 =C2=A0Use of public QuadX resolver instead of the provided DNS r=
esolver,<br>
&gt;=C2=A0 =C2=A0whether Do53, DoT or DoH is discouraged.=C2=A0 Should the =
network provide<br>
&gt;=C2=A0 =C2=A0such a resolver for use, then there is no reason not to us=
e it, as<br>
&gt;=C2=A0 =C2=A0the network operator has clearly thought about this.<br>
&gt; <br>
&gt; I would push back on this. As I understand the situation, some ISP rec=
ursive<br>
&gt; resolvers essentially forward queries onwards to public (QuadX) resolv=
ers.<br>
&gt; What&#39;s the difference, then, between using the public resolver dir=
ectly and the<br>
&gt; network-provided resolver? (This points back to the previous comment o=
n the<br>
&gt; assumed threat model.)<br>
&gt; <br>
&gt; Section 6.5.<br>
&gt; <br>
&gt;=C2=A0 =C2=A0The recommendation here is to do this only when the provid=
ed<br>
&gt;=C2=A0 =C2=A0resolvers provide no answers to any queries at all, and do=
 so<br>
&gt;=C2=A0 =C2=A0repeatedly.=C2=A0 The use of the operator provided resolve=
rs SHOULD be<br>
&gt;=C2=A0 =C2=A0retried on a periodic basis, and once they answer, there s=
hould be no<br>
&gt;=C2=A0 =C2=A0further attempts to contact public resolvers.<br>
&gt; <br>
&gt; I think this needs a better description of the threat model in order t=
o make<br>
&gt; sense. What if, for example, some attacker basically blocked all answe=
rs from<br>
&gt; provided resolvers, forcing usage of public resolvers? Is that in scop=
e or not?<br>
&gt; <br>
&gt; <br>
&gt; _______________________________________________<br>
&gt; secdir mailing list<br>
&gt; <a href=3D"mailto:secdir@ietf.org" target=3D"_blank">secdir@ietf.org</=
a><br>
&gt; <a href=3D"https://www.ietf.org/mailman/listinfo/secdir" rel=3D"norefe=
rrer" target=3D"_blank">https://www.ietf.org/mailman/listinfo/secdir</a><br=
>
&gt; wiki: <a href=3D"https://trac.ietf.org/trac/sec/wiki/SecDirReview" rel=
=3D"noreferrer" target=3D"_blank">https://trac.ietf.org/trac/sec/wiki/SecDi=
rReview</a><br>
<br>
_______________________________________________<br>
secdir mailing list<br>
<a href=3D"mailto:secdir@ietf.org" target=3D"_blank">secdir@ietf.org</a><br=
>
<a href=3D"https://www.ietf.org/mailman/listinfo/secdir" rel=3D"noreferrer"=
 target=3D"_blank">https://www.ietf.org/mailman/listinfo/secdir</a><br>
wiki: <a href=3D"https://trac.ietf.org/trac/sec/wiki/SecDirReview" rel=3D"n=
oreferrer" target=3D"_blank">https://trac.ietf.org/trac/sec/wiki/SecDirRevi=
ew</a><br>
</blockquote></div>

--000000000000597d5405d9a39eef--

--0000000000005ff67205d9a39e8e
Content-Type: application/pkcs7-signature; name="smime.p7s"
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename="smime.p7s"
Content-Description: S/MIME Cryptographic Signature
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--0000000000005ff67205d9a39e8e--


From nobody Mon Mar  7 14:28:46 2022
Return-Path: <mcr+ietf@sandelman.ca>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5DC223A1018; Mon,  7 Mar 2022 14:28:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.109
X-Spam-Level: 
X-Spam-Status: No, score=-2.109 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=sandelman.ca
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NcjdFRmsX8AI; Mon,  7 Mar 2022 14:28:31 -0800 (PST)
Received: from tuna.sandelman.ca (tuna.sandelman.ca [209.87.249.19]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5D7933A1392; Mon,  7 Mar 2022 14:27:30 -0800 (PST)
Received: from localhost (localhost [127.0.0.1]) by tuna.sandelman.ca (Postfix) with ESMTP id 5D01138AE8; Mon,  7 Mar 2022 17:36:49 -0500 (EST)
Received: from tuna.sandelman.ca ([127.0.0.1]) by localhost (localhost [127.0.0.1]) (amavisd-new, port 10024) with LMTP id dlQJFLXX8_1f; Mon,  7 Mar 2022 17:36:47 -0500 (EST)
Received: from sandelman.ca (obiwan.sandelman.ca [IPv6:2607:f0b0:f:2::247]) by tuna.sandelman.ca (Postfix) with ESMTP id AF37138A0A; Mon,  7 Mar 2022 17:36:47 -0500 (EST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=sandelman.ca; s=mail; t=1646692607; bh=LrLQXrbvWUg531DCWCSxYuqnjRHEPynGK7/tM2apC4A=; h=From:To:Subject:In-Reply-To:References:Date:From; b=NrPGqE4OF3htEJHIsUe/BwIHkF9notlkEXMMcAP26T4v/q58xm24G+pB2uimvrnm/ PsH5eeoFPR/Rsmb9QzzCWDBzEsB2bU02sIC0Z3B2PwGRVBmG6amWUnZ8n+ka14X1JT tKy29EtHiSs+aolWvG4Km0u0rpukc9eiG3ffyv6aaO1VFSfmqa7WYwuc28o+ZIId9U aNWnMZTVBMFpWJ4yYezBXIVXu2MeqLjXqc1IETza5xGJdr2mCgqBggGG7UfN7wdjcN Oz44u5FYfsvgEmMGBabPwj75PVkuzfVYTc5ZA9cl2UeVWRCnrxkM/5ubHGz3sX40SA CCmPp0mPqneGw==
Received: from localhost (localhost [IPv6:::1]) by sandelman.ca (Postfix) with ESMTP id 62780632; Mon,  7 Mar 2022 17:27:27 -0500 (EST)
From: Michael Richardson <mcr+ietf@sandelman.ca>
To: Ben Schwartz <bemasc=40google.com@dmarc.ietf.org>, draft-ietf-opsawg-mud-iot-dns-considerations.all@ietf.org, opsawg <opsawg@ietf.org>, "secdir\@ietf.org" <secdir@ietf.org>
In-Reply-To: <CAHbrMsATaT9SBveN94YP=Sr3Z5L9uE8cH=hMm022QkYjnHuDhw@mail.gmail.com>
References: <164661249505.9085.15140248784912063860@ietfa.amsl.com> <1C625713-898F-48D2-97E6-83B23893D3FA@heapingbits.net> <CAHbrMsATaT9SBveN94YP=Sr3Z5L9uE8cH=hMm022QkYjnHuDhw@mail.gmail.com>
X-Mailer: MH-E 8.6+git; nmh 1.7+dev; GNU Emacs 26.1
X-Face: $\n1pF)h^`}$H>Hk{L"x@)JS7<%Az}5RyS@k9X%29-lHB$Ti.V>2bi.~ehC0; <'$9xN5Ub# z!G,p`nR&p7Fz@^UXIn156S8.~^@MJ*mMsD7=QFeq%AL4m<nPbLgmtKK-5dC@#:k
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=-=-="; micalg=pgp-sha512; protocol="application/pgp-signature"
Date: Mon, 07 Mar 2022 17:27:27 -0500
Message-ID: <29640.1646692047@localhost>
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/FTej6WkYl2cgDqMoiFOnHZzo7TI>
Subject: Re: [secdir] [OPSAWG] Secdir early review of draft-ietf-opsawg-mud-iot-dns-considerations-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 07 Mar 2022 22:28:38 -0000

--=-=-=
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: quoted-printable


Ben Schwartz <bemasc=3D40google.com@dmarc.ietf.org> wrote:
    > solution would be to recommend against this permission, and introduce=
 a new
    > one that provides explicit coupling between DNS resolution, transport
    > setup, and the MUD gateway (e.g. using a SOCKS5 proxy).

The MUD controller is a thing that programs ACLs into a standard gateway.
I don't think we have a "MUD gateway" in any of the architectures.

Yes, it would be a great idea if such a thing was deployable.
Which currently shipping home routers include SOCKS5 proxy?

Is SOCKSv5 it a standard part of MATTER, or Google Fiber, or Xfinity, or
free.fr routers?

How would the IoT device negotiate the authentication for the firewall
traversal, if that was part of the SOCKSv5?   It would be totally awesome if
IoT vendors could rely on that?

Unfortunately, recommending against urn:ietf:params:mud:dns is recommending
against RFC8520.

=2D-
Michael Richardson <mcr+IETF@sandelman.ca>   . o O ( IPv6 I=C3=B8T consulti=
ng )
           Sandelman Software Works Inc, Ottawa and Worldwide





--=-=-=
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----

iQEzBAEBCgAdFiEEbsyLEzg/qUTA43uogItw+93Q3WUFAmImhs8ACgkQgItw+93Q
3WWQNQf+MHK2FSGX83Sr3HkPVEdd5FgOJmBYnmOaiU0MNsH9Qd8927YNsXPKizXt
yuU+BKVtmG4pHAPbPDY4Jp1pq7FF0PUXnmQ6nPNgCSMroy/z//iz/AJNqX98tHCz
TsaZ8oFjj+zDatbwDOz2SiK3mAW2Hc6IfLWrduKIBrZMVay6j5JQh1Lj0f5EAeMj
WC9kdG4ihJZzQh2lDdxWQKU3MW6nMjwzy7S/Bm2c14+OsJ3TSjEAWM7bbTUzOO2B
BoxfhY8rwfdcMIT73OvylaFW4DxYLjH/mTdMBJjOgp59vui9R40KaMiO4PB7xt0a
J5ytDb3MCHscPCuFJsmI4xDMndep9w==
=Rjac
-----END PGP SIGNATURE-----
--=-=-=--


From nobody Mon Mar  7 18:28:17 2022
Return-Path: <bemasc@google.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DD4613A0969 for <secdir@ietfa.amsl.com>; Mon,  7 Mar 2022 18:27:57 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -17.608
X-Spam-Level: 
X-Spam-Status: No, score=-17.608 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, ENV_AND_HDR_SPF_MATCH=-0.5, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5, USER_IN_DEF_SPF_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=google.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BWzYxQ_K0isA for <secdir@ietfa.amsl.com>; Mon,  7 Mar 2022 18:27:51 -0800 (PST)
Received: from mail-il1-x132.google.com (mail-il1-x132.google.com [IPv6:2607:f8b0:4864:20::132]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3D3253A0980 for <secdir@ietf.org>; Mon,  7 Mar 2022 18:27:51 -0800 (PST)
Received: by mail-il1-x132.google.com with SMTP id i1so13054110ila.7 for <secdir@ietf.org>; Mon, 07 Mar 2022 18:27:51 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=aWGiZGfjrewhdwLMK0tgMcxOfn+TXDm8DFzTZWGwd/U=; b=OWBDDtjIdk+faYX0HcieaW67Jb4UjCcMVpT4UxXM03BT+i26LSVyEu0K6nLYVVti01 ttonHYkp4BJ5gHwAOqsE2wAdiO6RdF0ynmSmtmti0bcrU14yLWVMfzdw/s2f2ZtHxemx xLnIDwX+83Vr9cdjgj8xCF8atz3vxItKKYltMYAJUd6217r1fDkwyY2+nx63rdKvRu1u HOaSVdUnBV+2JjjjUjK/uv1wwJx7FaV9+bGF2Rpz7xxN4Q39VDuehb6n3CUAoyPlCiDa g8BWEQn+3qCxnkYXGFDBqsEadrYL5dRbLrgY/pEY4qkjFjytD6KKG9onAf6p6gWVMvnV Kjkg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=aWGiZGfjrewhdwLMK0tgMcxOfn+TXDm8DFzTZWGwd/U=; b=Bb2tGqrWBzCKfNzI1hOFJRq7D8LXn1yCnygWsoHkqspNe42/ued3bUZ7Du/icFqWQo eYkhh0KiC4Q27c/1+N047zidcS/DlOypVOABn1Y1T4UGUY5+8h2+0la/0zlv7uJ1o4E8 rBn9vRnSIb84FISyR3Tcuu72u9AVvy0RruNhn15AFu3yxvONnFLrrOVNTaaPQvimqfII SmPs2cziVa4JuFoK3hxZOwuakE9lNwx3qgWaGkCP1cN1vU6ncxUKwlKYWteZzsw38R97 4Ca5/0qvAxoZ9tsfX9Qib9rjWRYg2YcGtu9hwEeu1cRp0rFJ2/mosxZ0c6WhRVoqJw7w DIMQ==
X-Gm-Message-State: AOAM5308ka62JhZAyaFTKMcmS0TMJtG0tZy5ArM+JdObjcWHFjB7A56L 9U1GNXFunaiDZrlE4wmm/U8EIFkLsrNsgehGR3lj/hHu1uE=
X-Google-Smtp-Source: ABdhPJzXWTgT86/XyLGOwKohPWf9ohO0RpWgW2+sI7LxJfqOspPELgExuNJ0h55h2dVTM3sIu2Zce/r/j1gftEwYOWw=
X-Received: by 2002:a92:dad1:0:b0:2c6:b6:b613 with SMTP id o17-20020a92dad1000000b002c600b6b613mr14044188ilq.185.1646706469590;  Mon, 07 Mar 2022 18:27:49 -0800 (PST)
MIME-Version: 1.0
References: <164661249505.9085.15140248784912063860@ietfa.amsl.com> <1C625713-898F-48D2-97E6-83B23893D3FA@heapingbits.net> <CAHbrMsATaT9SBveN94YP=Sr3Z5L9uE8cH=hMm022QkYjnHuDhw@mail.gmail.com> <29640.1646692047@localhost>
In-Reply-To: <29640.1646692047@localhost>
From: Ben Schwartz <bemasc@google.com>
Date: Mon, 7 Mar 2022 21:27:38 -0500
Message-ID: <CAHbrMsCb89hiTxUPL07GvoCMbvYszYK3tRnvdXD3CP7aR-_9nA@mail.gmail.com>
To: Michael Richardson <mcr+ietf@sandelman.ca>
Cc: draft-ietf-opsawg-mud-iot-dns-considerations.all@ietf.org,  opsawg <opsawg@ietf.org>, "secdir@ietf.org" <secdir@ietf.org>
Content-Type: multipart/signed; protocol="application/pkcs7-signature"; micalg=sha-256; boundary="00000000000032a41a05d9abbaee"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/e6ZVIE7Rz5OKYMxLRtX9flhAXzU>
Subject: Re: [secdir] [OPSAWG] Secdir early review of draft-ietf-opsawg-mud-iot-dns-considerations-03
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 08 Mar 2022 02:27:58 -0000

--00000000000032a41a05d9abbaee
Content-Type: multipart/alternative; boundary="0000000000002bc71805d9abba7e"

--0000000000002bc71805d9abba7e
Content-Type: text/plain; charset="UTF-8"

On Mon, Mar 7, 2022 at 5:29 PM Michael Richardson <mcr+ietf@sandelman.ca>
wrote:

>
> Ben Schwartz <bemasc=40google.com@dmarc.ietf.org> wrote:
>     > solution would be to recommend against this permission, and
> introduce a new
>     > one that provides explicit coupling between DNS resolution, transport
>     > setup, and the MUD gateway (e.g. using a SOCKS5 proxy).
>
> The MUD controller is a thing that programs ACLs into a standard gateway.
> I don't think we have a "MUD gateway" in any of the architectures.
>

We are speaking about a new architecture, because the existing architecture
doesn't really work for named destinations.  However, if we wanted to stick
close to that architecture, the MUD controller could contain the proxy
server, and place an ACL in the gateway restricting certain MUD devices to
speak only to the MUD controller.

Yes, it would be a great idea if such a thing was deployable.
> Which currently shipping home routers include SOCKS5 proxy?
>
> Is SOCKSv5 it a standard part of MATTER, or Google Fiber, or Xfinity, or
> free.fr routers?
>

Do those all support MUD today?  I haven't encountered much in the way of
deployed support for MUD.

If we are trying to devise solutions that are compatible with some large
existing install base, then that certainly raises the difficulty.
Otherwise, we are free to consider the difficulty of implementation, which
I believe can be kept extremely low.

BTW, I'm not claiming that a transport proxy is the only possible answer.
Another option would be to proxy MUD DNS through the MUD controller, so it
can restrict the allowed DNS queries and install ACLs before returning the
AAAA/A records.

How would the IoT device negotiate the authentication for the firewall
> traversal, if that was part of the SOCKSv5?   It would be totally awesome
> if
> IoT vendors could rely on that?
>

I'm not sure what you mean.  Personally, I imagined that the proxy would
only accept connections from local IPs that have MUD profiles, and would
enforce the relevant MUD policies.

Unfortunately, recommending against urn:ietf:params:mud:dns is recommending
> against RFC8520.
>

It's certainly unfortunate when an RFC contains an oversight, but this
seems to me like a problem that is easily remedied.

--0000000000002bc71805d9abba7e
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr"><div dir=3D"ltr">On Mon, Mar 7, 2022 at 5:29 PM Michael Ri=
chardson &lt;<a href=3D"mailto:mcr%2Bietf@sandelman.ca">mcr+ietf@sandelman.=
ca</a>&gt; wrote:<br></div><div class=3D"gmail_quote"><blockquote class=3D"=
gmail_quote" style=3D"margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(20=
4,204,204);padding-left:1ex"><br>
Ben Schwartz &lt;bemasc=3D<a href=3D"mailto:40google.com@dmarc.ietf.org" ta=
rget=3D"_blank">40google.com@dmarc.ietf.org</a>&gt; wrote:<br>
=C2=A0 =C2=A0 &gt; solution would be to recommend against this permission, =
and introduce a new<br>
=C2=A0 =C2=A0 &gt; one that provides explicit coupling between DNS resoluti=
on, transport<br>
=C2=A0 =C2=A0 &gt; setup, and the MUD gateway (e.g. using a SOCKS5 proxy).<=
br>
<br>
The MUD controller is a thing that programs ACLs into a standard gateway.<b=
r>
I don&#39;t think we have a &quot;MUD gateway&quot; in any of the architect=
ures.<br></blockquote><div><br></div><div>We are speaking about a new archi=
tecture, because the existing architecture doesn&#39;t really work for name=
d=C2=A0destinations.=C2=A0 However, if we wanted to stick close to that arc=
hitecture, the MUD controller could contain the proxy server, and place an =
ACL in the gateway restricting certain MUD devices to speak only to the MUD=
 controller.</div><div><br></div><blockquote class=3D"gmail_quote" style=3D=
"margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-le=
ft:1ex">
Yes, it would be a great idea if such a thing was deployable.<br>
Which currently shipping home routers include SOCKS5 proxy?<br>
<br>
Is SOCKSv5 it a standard part of MATTER, or Google Fiber, or Xfinity, or<br=
>
<a href=3D"http://free.fr" rel=3D"noreferrer" target=3D"_blank">free.fr</a>=
 routers?<br></blockquote><div><br></div><div>Do those all support MUD toda=
y?=C2=A0 I haven&#39;t encountered much in the way of deployed support for =
MUD.</div><div><br></div><div>If we are trying to devise solutions that are=
 compatible with some large existing install base, then that certainly rais=
es the difficulty.=C2=A0 Otherwise, we are free to consider the difficulty =
of implementation, which I believe can be kept extremely low.</div><div><br=
></div><div>BTW, I&#39;m not claiming that a transport proxy is the only po=
ssible answer.=C2=A0 Another option would be to proxy MUD DNS through the M=
UD controller, so it can restrict the allowed DNS queries and install ACLs =
before returning the AAAA/A records.</div><div><br></div><blockquote class=
=3D"gmail_quote" style=3D"margin:0px 0px 0px 0.8ex;border-left:1px solid rg=
b(204,204,204);padding-left:1ex">
How would the IoT device negotiate the authentication for the firewall<br>
traversal, if that was part of the SOCKSv5?=C2=A0 =C2=A0It would be totally=
 awesome if<br>
IoT vendors could rely on that?<br></blockquote><div><br></div><div>I&#39;m=
 not sure what you mean.=C2=A0 Personally, I imagined that the proxy would =
only accept connections from local IPs that have MUD profiles, and would en=
force the relevant MUD policies.</div><div><br></div><blockquote class=3D"g=
mail_quote" style=3D"margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204=
,204,204);padding-left:1ex">
Unfortunately, recommending against urn:ietf:params:mud:dns is recommending=
<br>
against RFC8520.<br></blockquote><div><br></div><div>It&#39;s certainly unf=
ortunate when an RFC contains an oversight, but this seems to me like a pro=
blem that is easily remedied.</div></div></div>

--0000000000002bc71805d9abba7e--

--00000000000032a41a05d9abbaee
Content-Type: application/pkcs7-signature; name="smime.p7s"
Content-Transfer-Encoding: base64
Content-Disposition: attachment; filename="smime.p7s"
Content-Description: S/MIME Cryptographic Signature
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--00000000000032a41a05d9abbaee--


From nobody Wed Mar  9 14:05:14 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id A1E233A0E59; Wed,  9 Mar 2022 14:05:03 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Derrell Piper via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
Cc: ace@ietf.org, draft-ietf-ace-mqtt-tls-profile.all@ietf.org, last-call@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <164686350361.27401.2835449427771645971@ietfa.amsl.com>
Reply-To: Derrell Piper <ddp@electric-loft.org>
Date: Wed, 09 Mar 2022 14:05:03 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/MhOu5RSHpF0rCYvh3eeZH3wM8FM>
Subject: [secdir] Secdir last call review of draft-ietf-ace-mqtt-tls-profile-15
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 09 Mar 2022 22:05:04 -0000

Reviewer: Derrell Piper
Review result: Ready

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the
IESG.  These comments were written primarily for the benefit of the
security area directors.  Document editors and WG chairs should treat
these comments just like any other last call comments.

The summary of the review is: Ready.

Minor revisions, and a cipher suite clarification, presumably to align
with I-D.ietf-ace-dtls-authorize.




From nobody Thu Mar 10 16:26:41 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 59A593A0CBC for <secdir@ietf.org>; Thu, 10 Mar 2022 16:26:39 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Tero Kivinen via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: secdir-secretary@mit.edu, Tero Kivinen <kivinen@iki.fi>
Message-ID: <164695839934.7742.11563033219438371126@ietfa.amsl.com>
Date: Thu, 10 Mar 2022 16:26:39 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/g01nMtAGL6P5IS0WkGIk0Db0zsA>
Subject: [secdir] Assignments
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 11 Mar 2022 00:26:40 -0000

Review instructions and related resources are at:
https://trac.ietf.org/trac/sec/wiki/SecDirReview

For telechat 2022-03-10

Reviewer               LC end     Draft
Daniel Gillmor         2022-01-28 draft-ietf-rats-yang-tpm-charra
Phillip Hallam-Baker  R2022-02-23 draft-ietf-dprive-dnsoquic
Sandra Murphy          2022-03-07 draft-rsalz-2028bis
Radia Perlman          2022-02-28 draft-ietf-ace-aif

Last calls:

Reviewer               LC end     Draft
Alan DeKok             2021-12-30 draft-ietf-sidrops-6486bis
Daniel Franke          2022-01-19 draft-ietf-pim-igmp-mld-extension
Daniel Gillmor         2022-01-28 draft-ietf-rats-yang-tpm-charra
Phillip Hallam-Baker  R2022-02-23 draft-ietf-dprive-dnsoquic
Steve Hanna            2022-01-24 draft-ietf-dots-telemetry
Aanchal Malhotra       2022-02-03 draft-ietf-bfd-rfc9127-bis
Aanchal Malhotra       2021-10-15 draft-ietf-kitten-tls-channel-bindings-for-tls13
Kathleen Moriarty      2022-02-24 draft-ietf-ipsecme-ikev2-intermediate
Sandra Murphy          2020-10-15 draft-ietf-tls-external-psk-importer
Sandra Murphy          2022-03-07 draft-rsalz-2028bis
Radia Perlman          2022-02-28 draft-ietf-ace-aif
Tirumaleswar Reddy.K   2022-04-07 draft-koster-rep
Vincent Roca           2022-04-04 draft-ietf-bier-bar-ipa
Kyle Rose              2022-03-18 draft-ietf-sidrops-rpki-has-no-identity
Joseph Salowey         2022-03-18 draft-ietf-v6ops-transition-comparison
Stefan Santesson       2021-08-11 draft-ietf-bier-te-arch
Brian Weis             2021-08-19 draft-ietf-dnsop-svcb-https
Klaas Wierenga         2020-05-26 draft-ietf-kitten-krb-spake-preauth
Liang Xia              2021-09-07 draft-ietf-bess-evpn-igmp-mld-proxy
Liang Xia              2021-03-17 draft-ietf-core-sid

Early review requests:

Reviewer               Due        Draft
Stephen Farrell        2021-09-15 draft-ietf-ippm-ioam-direct-export
Stephen Farrell        2021-06-21 draft-ietf-idr-bgpls-srv6-ext
Rich Salz              2022-03-22 draft-ietf-drip-auth
Tina Tsou              2021-08-25 draft-ietf-opsawg-sbom-access
Loganaden Velvindron   2021-08-18 draft-ietf-taps-arch

Next in the reviewer rotation:

  Stefan Santesson
  Benjamin Schwartz
  Yaron Sheffer
  Rifaat Shekh-Yusef
  Melinda Shore
  Valery Smyslov
  Robert Sparks
  Tina Tsou
  Sean Turner
  Loganaden Velvindron


From nobody Mon Mar 14 20:06:39 2022
Return-Path: <radiaperlman@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A30333A17C3; Mon, 14 Mar 2022 20:06:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.108
X-Spam-Level: 
X-Spam-Status: No, score=-7.108 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1c3XG85UvXTP; Mon, 14 Mar 2022 20:06:20 -0700 (PDT)
Received: from mail-wr1-x42f.google.com (mail-wr1-x42f.google.com [IPv6:2a00:1450:4864:20::42f]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E1D053A17BF; Mon, 14 Mar 2022 20:06:19 -0700 (PDT)
Received: by mail-wr1-x42f.google.com with SMTP id r6so26491650wrr.2; Mon, 14 Mar 2022 20:06:19 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112;  h=mime-version:from:date:message-id:subject:to; bh=01YafqSsDYmiR3FnahoQCK95QSsSLty5aokP8gdxToM=; b=SiWVqCnjTe7HEiRd9BwPeLyNn76AfAZF2jLX/UMCX0HeGlNg4i/4LTLon8nxbkeBwo EcPOYdIZkEtuPeODp3KYfB+c/B80hAt2gcNGsmt1W8VlNh9BiV5Hc3r9FQSxFoQUud6r c/7JgP6AbhaxonvBeoeVbAc29lpy0R4hVLSF4TA27ppXNdWZOzOkHQ85Zi3LxK8IM7V8 gprmVxwegMcD7gCHk6scoijDzOwaxrnKEu+fTQGsPZhmlgoylFRDvi2ztfXYbW8GU/B4 AhDFQ7AI+TpC/pQubCKyr9ZTGnCY06D60BkPYn0pJytoVEcJeJorR3/45QrBFfx3MPjg QQrQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:from:date:message-id:subject:to; bh=01YafqSsDYmiR3FnahoQCK95QSsSLty5aokP8gdxToM=; b=R6bGMsBQhdEMpdptf+X4DF3txB9RbS6kIkAHklfV0KJUC9wwV8dQVwOWxMRV9wrOh6 ZmZ702NVjHlRBBpMccrIBF8Ekg7SFkaRz9EDLzOvhQeK/NiRg5WTOA0iGX4iJ60mO+gh 7PMKGDvgyKyyCp1r4ZLoUkn+F2ZjbqikE6iqaVdWyoRyVRO3gsYsJj2MKPSsLPjMnJEj J+fLWMfvFdzVlAez0WC8/QDvOxXT67qjqDqAzt3rdoH3w1s4BeNp1ofp+K47qzyVcjIX Ld/ND6VOV1LRaaBoLlIhEn14Xq8gUd05amuCjn1j5fJySxVlxrghdZxKPHyv1091IAaE F0rw==
X-Gm-Message-State: AOAM531oVkAYw056n0Lfmlu+4gY/w9RJ+DWVo6uHaL5ZJUx48qvUZXXc r5wi0/JWEzsojpnSSsAt4DHulUdVhEClo10B4DQyQdeUe18=
X-Google-Smtp-Source: ABdhPJwzMLQANCsZZCImnBIIwbPKb6QQZG9T1M7vW2lvuS1E8C+Hsp3KuZCTuR5MlfsOMJiTFp8V9NjhExxnhXyfR7w=
X-Received: by 2002:a05:6000:144a:b0:203:8688:35d with SMTP id v10-20020a056000144a00b002038688035dmr17825268wrx.399.1647313576814; Mon, 14 Mar 2022 20:06:16 -0700 (PDT)
MIME-Version: 1.0
From: Radia Perlman <radiaperlman@gmail.com>
Date: Mon, 14 Mar 2022 20:06:03 -0700
Message-ID: <CAFOuuo4v9ZzMt7s-Nb-yXeKLYcMSeZKMJSRg3RTEwFVCNp8CFg@mail.gmail.com>
To: secdir@ietf.org, The IESG <iesg@ietf.org>, draft-ietf-ace-aif.all@ietf.org
Content-Type: multipart/alternative; boundary="000000000000946d3305da3914f5"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/D8WGyTGhgnchsC02XwLdIxq4B2o>
Subject: [secdir] Secdir review of draft-ietf-ace-aif-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 15 Mar 2022 03:06:23 -0000

--000000000000946d3305da3914f5
Content-Type: text/plain; charset="UTF-8"

Review result: Ready



I have reviewed this document as part of the security directorate's ongoing
effort to review all IETF documents being processed by the IESG.  These
comments were written primarily for the benefit of the security area
directors.  Document editors and WG chairs should treat these comments just
like any other last call comments.



This document defines a syntax for specifying authorization information,
organized as a set of actions available to a particular subject. The design
targets IoT devices, though nothing limits its use to just IoT devices and
it would not be appropriate for all IoT devices because it targets a REST
interface.



Seems fine.


Radia

--000000000000946d3305da3914f5
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr"><p class=3D"MsoNormal" style=3D"margin:0in;font-size:11pt;=
font-family:Calibri,sans-serif">Review result: Ready</p>

<p class=3D"MsoNormal" style=3D"margin:0in;font-size:11pt;font-family:Calib=
ri,sans-serif">=C2=A0</p>

<p class=3D"MsoNormal" style=3D"margin:0in;font-size:11pt;font-family:Calib=
ri,sans-serif">I have reviewed this document as part of the security
directorate&#39;s ongoing effort to review all IETF documents being process=
ed by
the IESG.=C2=A0 These comments were written primarily for the benefit of th=
e
security area directors.=C2=A0 Document editors and WG chairs should treat
these comments just like any other last call comments.</p>

<p class=3D"MsoNormal" style=3D"margin:0in;font-size:11pt;font-family:Calib=
ri,sans-serif">=C2=A0</p>

<p class=3D"MsoNormal" style=3D"margin:0in;font-size:11pt;font-family:Calib=
ri,sans-serif">This document defines a syntax for specifying authorization
information, organized as a set of actions available to a particular subjec=
t.
The design targets IoT devices, though nothing limits its use to just IoT
devices and it would not be appropriate for all IoT devices because it targ=
ets
a REST interface.</p>

<p class=3D"MsoNormal" style=3D"margin:0in;font-size:11pt;font-family:Calib=
ri,sans-serif">=C2=A0</p>

<p class=3D"MsoNormal" style=3D"margin:0in;font-size:11pt;font-family:Calib=
ri,sans-serif">Seems fine.</p><p class=3D"MsoNormal" style=3D"margin:0in;fo=
nt-size:11pt;font-family:Calibri,sans-serif"><br></p><p class=3D"MsoNormal"=
 style=3D"margin:0in;font-size:11pt;font-family:Calibri,sans-serif">Radia</=
p></div>

--000000000000946d3305da3914f5--


From nobody Tue Mar 15 10:05:48 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 118FF3A09A1; Tue, 15 Mar 2022 10:05:19 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Kyle Rose via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
Cc: draft-ietf-sidrops-rpki-has-no-identity.all@ietf.org, last-call@ietf.org,  sidrops@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <164736391901.8166.304606388310583653@ietfa.amsl.com>
Reply-To: Kyle Rose <krose@krose.org>
Date: Tue, 15 Mar 2022 10:05:19 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/epeX5mkGXu-K6sQgqw2_piGd3LM>
Subject: [secdir] Secdir last call review of draft-ietf-sidrops-rpki-has-no-identity-04
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 15 Mar 2022 17:05:19 -0000

Reviewer: Kyle Rose
Review result: Ready

I have reviewed this document as part of the security directorate's ongoing
effort to review all IETF documents being processed by the IESG.  These
comments were written primarily for the benefit of the security area directors.
 Document editors and WG chairs should treat these comments just like any other
last call comments.

This document is Almost Ready, but its publication as an RFC may or may not be
the right way to address the problem it is targeted at.

Can one of the authors cite a specific reference to the problem that this draft
is trying to address? A written example of where this "false notion" exists?

If the sole purpose of this document is to state a normative prohibition on one
aspect of RPKI as described in the informational RFC 6480, would a better
approach not be to normatively specify RPKI via a 6480bis on standards track?
It feels weird to create a single normative prohibition for a specification
that is otherwise classified as informational, but perhaps there is sufficient
precedent for this.

My one nit suggestion would be to make some of the language a little less
casual, starting with the abstract.



From nobody Tue Mar 15 10:23:25 2022
Return-Path: <randy@psg.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3FD873A1064; Tue, 15 Mar 2022 10:23:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.909
X-Spam-Level: 
X-Spam-Status: No, score=-1.909 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sqKng4gRwxp3; Tue, 15 Mar 2022 10:23:00 -0700 (PDT)
Received: from ran.psg.com (ran.psg.com [IPv6:2001:418:8006::18]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0AA6F3A0D1C; Tue, 15 Mar 2022 10:23:00 -0700 (PDT)
Received: from localhost ([127.0.0.1] helo=ryuu.rg.net) by ran.psg.com with esmtp (Exim 4.93) (envelope-from <randy@psg.com>) id 1nUAss-0009nd-0q; Tue, 15 Mar 2022 17:22:58 +0000
Date: Tue, 15 Mar 2022 10:22:57 -0700
Message-ID: <m2h77zku4u.wl-randy@psg.com>
From: Randy Bush <randy@psg.com>
To: Kyle Rose via Datatracker <noreply@ietf.org>
Cc: <secdir@ietf.org>, draft-ietf-sidrops-rpki-has-no-identity.all@ietf.org, last-call@ietf.org, sidrops@ietf.org
In-Reply-To: <164736391901.8166.304606388310583653@ietfa.amsl.com>
References: <164736391901.8166.304606388310583653@ietfa.amsl.com>
User-Agent: Wanderlust/2.15.9 (Almost Unreal) Emacs/26.3 Mule/6.0 (HANACHIRUSATO)
MIME-Version: 1.0 (generated by SEMI-EPG 1.14.7 - "Harue")
Content-Type: text/plain; charset=US-ASCII
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/pdvBcbXP4qYoGQ79JwtMKxeBJ-U>
Subject: Re: [secdir] Secdir last call review of draft-ietf-sidrops-rpki-has-no-identity-04
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 15 Mar 2022 17:23:03 -0000

hi kyle

> Can one of the authors cite a specific reference to the problem that
> this draft is trying to address? A written example of where this
> "false notion" exists?

let be be lazy and quote the response to a similar question in an
artart review

    a few years back, two of the co-authors of a lot of sidr rfcs, working
    at apnic (supposedly a prudent steward of the net infra), put up a "sign
    arbitrary blob" service, with no warnings of the semantics.  one of them
    just wrote to say he thought 6480 was sufficient; which pretty much says
    it all.

    and early drafts and discussions of the first two informative references

       [I-D.ietf-sidrops-rpki-rsc]
		  Snijders, J., Harrison, T., and B. Maddison, "Resource
		  Public Key Infrastructure (RPKI) object profile for Signed
		  Checklist (RSC)", Work in Progress, Internet-Draft, draft-
		  ietf-sidrops-rpki-rsc-06, 12 February 2022,
		  <https://www.ietf.org/archive/id/draft-ietf-sidrops-rpki-
		  rsc-06.txt>.

       [I-D.ietf-sidrops-rpki-rta]
		  Michaelson, G. G., Huston, G., Harrison, T., Bruijnzeels,
		  T., and M. Hoffmann, "A profile for Resource Tagged
		  Attestations (RTAs)", Work in Progress, Internet-Draft,
		  draft-ietf-sidrops-rpki-rta-00, 21 January 2021,
		  <https://www.ietf.org/archive/id/draft-ietf-sidrops-rpki-
		  rta-00.txt>.

    brought to light massive misunderstanding and misrepresentation, despite
    6480

yes, this is depressing and a bit shocking.  sad to say, those terms can
be applied to a fair bit of RPKI deployment.

randy


From nobody Wed Mar 16 13:02:02 2022
Return-Path: <krose@krose.org>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BC7813A0C84 for <secdir@ietfa.amsl.com>; Wed, 16 Mar 2022 13:01:52 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.108
X-Spam-Level: 
X-Spam-Status: No, score=-2.108 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=krose.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MjhyYe6kVfyu for <secdir@ietfa.amsl.com>; Wed, 16 Mar 2022 13:01:47 -0700 (PDT)
Received: from mail-wr1-x436.google.com (mail-wr1-x436.google.com [IPv6:2a00:1450:4864:20::436]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E19643A0C82 for <secdir@ietf.org>; Wed, 16 Mar 2022 13:01:46 -0700 (PDT)
Received: by mail-wr1-x436.google.com with SMTP id a1so3113619wrh.10 for <secdir@ietf.org>; Wed, 16 Mar 2022 13:01:46 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=krose.org; s=google; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=/IK/nIciDnUsE4fHwS31SRwC4zkouoEM5aDaHgju09I=; b=F9mL/hWBOcy4iDyCSbVBTk/3tenHlalzd0BrNdMhmN1Wbp+XL81KcpvASysdhwo2FE MFZW5IsJ7nlaFBEdHVSXpo2XTv6EMJHlZx0Hkv4R8DbRmVqt8/cBnJEmHREcSyAllqof T0z1M05DQRufgFlepWU78QP0Auzp1wqBRCL7I=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=/IK/nIciDnUsE4fHwS31SRwC4zkouoEM5aDaHgju09I=; b=cs6JdJMss26BaGvH/YRHpUShTc0XQHtsAY6KEp36V/bSLttHi7EjqW0sgNiiz9YrMN +BwGSXnTFg08h7LMPBvOLqLbEne9VHOE0IipqOZ4VYl0Bkc0WOZN0IX/mM3VNkPvglCx RxIrqQftJhyNBtb6tQoCEB7l2rD/+k30kfQciZjUvpIebmcZZGimHZILy+IhCvOjh3+T kMc5XOtXuJgKsXdBQlFEvYdZUjJVcjf8zr5WpWJvPd8Q0GONe6iroKjdX25iaNVciAfo di/k5owSwk3RMj8MzMwfkW5UfFXv6yxbkd7lEcDRjqnh4GNMMZWOWwlV0g/MhEp/EZYD UAWA==
X-Gm-Message-State: AOAM532nW6fz0BNx96FBo+6T5ARvMxWKh+SEM6hZ4RUF+cSYhtS68kX/ m7x5dze0s5o2+VGMN4Z5g8hnx1GolAu3r+zaBg2ZxA==
X-Google-Smtp-Source: ABdhPJz9Fe8rf5P2+DwvyeoBqTSq7p3Lrlwnsb0Ki8fEvYMbtzADOu/8ItTyXf2gJv/cjzJPMGqIzaIuAPVX49QGn4k=
X-Received: by 2002:a5d:6c67:0:b0:203:bf25:f311 with SMTP id r7-20020a5d6c67000000b00203bf25f311mr1251050wrz.108.1647460904705; Wed, 16 Mar 2022 13:01:44 -0700 (PDT)
MIME-Version: 1.0
References: <164736391901.8166.304606388310583653@ietfa.amsl.com> <m2h77zku4u.wl-randy@psg.com>
In-Reply-To: <m2h77zku4u.wl-randy@psg.com>
From: Kyle Rose <krose@krose.org>
Date: Wed, 16 Mar 2022 16:01:33 -0400
Message-ID: <CAJU8_nXL+zf7A27RD5uOEAOtu-cxJP1M6Em6Gq1am5BKXpsckw@mail.gmail.com>
To: Randy Bush <randy@psg.com>
Cc: Kyle Rose via Datatracker <noreply@ietf.org>, last-call@ietf.org, sidrops@ietf.org,  draft-ietf-sidrops-rpki-has-no-identity.all@ietf.org, secdir@ietf.org
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/tgkvtRKyO0snmU-ysFlF2gbBAtc>
Subject: Re: [secdir] Secdir last call review of draft-ietf-sidrops-rpki-has-no-identity-04
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 16 Mar 2022 20:01:53 -0000

On Tue, Mar 15, 2022 at 1:23 PM Randy Bush <randy@psg.com> wrote:
>
> hi kyle
>
> > Can one of the authors cite a specific reference to the problem that
> > this draft is trying to address? A written example of where this
> > "false notion" exists?
>
> let be be lazy and quote the response to a similar question in an
> artart review

Heh... serves me right. I did read the artart review, but not any follow-ups.

>     a few years back, two of the co-authors of a lot of sidr rfcs, working
> ...
> yes, this is depressing and a bit shocking.  sad to say, those terms can
> be applied to a fair bit of RPKI deployment.

Ok, so I appreciate the problem. I'm still not sure this is quite the
right way to address it. This feels a bit too "protocol police"-ish to
me. Publishing a new RFC to reiterate something that is already
covered by an earlier spec in the hopes that it will deter willfulness
seems like trying to fix something by repeatedly banging on it. Do we
need a "No, we *really* mean it" track in the series? It seems like
vigilance around implementations will be required either way. ISTM
that the best way to address this particular problem is to make sure
the folks in industries that develop RPKI implementations understand
this, which probably means contacting them directly and pointing them
at the existing text that already makes clear that this is a bad idea,
whether in 6480 or in a mailing list archive someplace.

To be clear, I don't feel *especially* strongly about this; I'm mostly
just expressing skepticism of the degree of value in this approach.

Kyle


From nobody Fri Mar 18 14:06:30 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 5528D3A1185 for <secdir@ietf.org>; Fri, 18 Mar 2022 14:06:29 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: Tero Kivinen via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: secdir-secretary@mit.edu, Tero Kivinen <kivinen@iki.fi>
Message-ID: <164763758932.16671.11031840335818351878@ietfa.amsl.com>
Date: Fri, 18 Mar 2022 14:06:29 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/BGYYacqvwCQOiUPP3UO0BS-Vroc>
Subject: [secdir] Assignments
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 18 Mar 2022 21:06:29 -0000

Review instructions and related resources are at:
https://trac.ietf.org/trac/sec/wiki/SecDirReview

Last calls:

Reviewer               LC end     Draft
Alan DeKok             2021-12-30 draft-ietf-sidrops-6486bis
Daniel Franke          2022-01-19 draft-ietf-pim-igmp-mld-extension
Daniel Gillmor         2022-01-28 draft-ietf-rats-yang-tpm-charra
Phillip Hallam-Baker  R2022-02-23 draft-ietf-dprive-dnsoquic
Steve Hanna            2022-01-24 draft-ietf-dots-telemetry
Aanchal Malhotra       2022-02-03 draft-ietf-bfd-rfc9127-bis
Aanchal Malhotra       2021-10-15 draft-ietf-kitten-tls-channel-bindings-for-tls13
Kathleen Moriarty      2022-02-24 draft-ietf-ipsecme-ikev2-intermediate
Sandra Murphy          2022-03-07 draft-rsalz-2028bis
Sandra Murphy          2020-10-15 draft-ietf-tls-external-psk-importer
Tirumaleswar Reddy.K   2022-04-07 draft-koster-rep
Vincent Roca           2022-04-04 draft-ietf-bier-bar-ipa
Joseph Salowey         2022-03-18 draft-ietf-v6ops-transition-comparison
Stefan Santesson       2022-04-07 draft-ietf-teep-otrp-over-http
Stefan Santesson       2021-08-11 draft-ietf-bier-te-arch
Benjamin Schwartz      2022-04-07 draft-ietf-teep-architecture
Yaron Sheffer          2022-04-05 draft-uberti-rtcweb-rfc8829bis
Rifaat Shekh-Yusef     2022-04-05 draft-ietf-avtcore-cryptex
Brian Weis             2021-08-19 draft-ietf-dnsop-svcb-https
Klaas Wierenga         2020-05-26 draft-ietf-kitten-krb-spake-preauth
Liang Xia              2021-09-07 draft-ietf-bess-evpn-igmp-mld-proxy
Liang Xia              2021-03-17 draft-ietf-core-sid

Early review requests:

Reviewer               Due        Draft
Stephen Farrell        2021-09-15 draft-ietf-ippm-ioam-direct-export
Stephen Farrell        2021-06-21 draft-ietf-idr-bgpls-srv6-ext
Rich Salz              2022-03-22 draft-ietf-drip-auth
Tina Tsou              2021-08-25 draft-ietf-opsawg-sbom-access
Loganaden Velvindron   2021-08-18 draft-ietf-taps-arch

Next in the reviewer rotation:

  Melinda Shore
  Valery Smyslov
  Robert Sparks
  Tina Tsou
  Sean Turner
  Loganaden Velvindron
  Mališa Vučinić
  Carl Wallace
  Samuel Weiler
  Brian Weis


From nobody Sat Mar 19 10:30:35 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 5DF5D3A16F0; Sat, 19 Mar 2022 10:30:19 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Yaron Sheffer via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
Cc: draft-uberti-rtcweb-rfc8829bis.all@ietf.org, last-call@ietf.org, rtcweb@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <164771101929.16613.15544485411021583131@ietfa.amsl.com>
Reply-To: Yaron Sheffer <yaronf.ietf@gmail.com>
Date: Sat, 19 Mar 2022 10:30:19 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/rscgFTmSNKIVT-_yfOqtoKHGpZg>
Subject: [secdir] Secdir last call review of draft-uberti-rtcweb-rfc8829bis-02
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 19 Mar 2022 17:30:20 -0000

Reviewer: Yaron Sheffer
Review result: Ready

This document differs from RFC 8829 in one specific area, which was in fact
already anticipated by the RFC. This area of difference has to do with media
session negotiation and to the best of my understanding has no bearing on
protocol security.

Therefore the previous SecDir review still applies, and the document is Ready.



From nobody Sat Mar 19 12:56:24 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id D0FAA3A1015; Sat, 19 Mar 2022 12:56:22 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Joseph Salowey via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
Cc: draft-ietf-v6ops-transition-comparison.all@ietf.org, last-call@ietf.org, v6ops@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <164771978277.7485.4774498116077094472@ietfa.amsl.com>
Reply-To: Joseph Salowey <joe@salowey.net>
Date: Sat, 19 Mar 2022 12:56:22 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/6mx7R3vkH5HHWADmRrDuY4OL-zw>
Subject: [secdir] Secdir last call review of draft-ietf-v6ops-transition-comparison-02
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 19 Mar 2022 19:56:23 -0000

Reviewer: Joseph Salowey
Review result: Ready

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the
IESG.  These comments were written primarily for the benefit of the
security area directors.  Document editors and WG chairs should treat
these comments just like any other last call comments.

The summary of the review is ready.  The document provides a description of
deployed IPv6 translation mechanisms for IPv4 as a services.  I originally
marked this document as has issues because it is incomplete as the security
tradeoffs of these mechanisms are to be analyzed in separate documents.  Since
the document points to a defined methodology for assessing security of these
mechanisms and one mechanism has been reviewed I feel there is enough there
that makes it reasonable to believe this work will complete.  I would like to
understand if the additional security reviews are in progress and are being
tracked by the working group.



From nobody Tue Mar 22 08:24:14 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 416693A1549; Tue, 22 Mar 2022 08:24:06 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Rich Salz via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
Cc: draft-ietf-drip-auth.all@ietf.org, tm-rid@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <164796264611.30352.8191375984632777321@ietfa.amsl.com>
Reply-To: Rich Salz <rsalz@akamai.com>
Date: Tue, 22 Mar 2022 08:24:06 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/tbXK2CktKCdyYlFc46EpF-9aUjk>
Subject: [secdir] Secdir early review of draft-ietf-drip-auth-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 22 Mar 2022 15:24:06 -0000

Reviewer: Rich Salz
Review result: Has Issues

I know nothing about DRIP. I skimmed RFC 9153 and the suggested draft.
Take thesze comments with appropriate skepticism.

ASTM needs to be expanded.

Are "pages" basically packets? A confirmation/explanation, perhaps in the
definitions section would help. The definitions points to drip-requirements
draft, but then documents "aircraft"?  Really? :)

There are far too many one-paragraph sections.  Come up with broader titles
and merge things a bit; I think it will read better. I know kthis is not a
trivial amount of work.

Sec 3.3.1: the bit numbering is opposite of what I'm used to (i.e., 31->0,
this is 0->31).  This holds for all other ascii-art protocol blocks.
Consider breaking up the top byte into two nibbles AH and PH Pad out AuthType
into

Sec 3.3.2 the constraints/requirements should be first.

Sec 4.1.2.1 Put spaces between the logical parts of the bytes:
	12 50098960bf8c0504200100100 0a00145aac6b00abba268b7
Is that correct?  Why only the last 23?  Maybe I am missing some
other checksum, or don't know enough about Reed-Solomon.

Sec 5, "UNIX timestamp offset by ..." you mean Unix-style timestamp
but with an epoch of ... right?  Is the "UA signature" defined
somewhere?  Same question about the signatures in Sec 6, etc.

Related question, where are the algorithms for the "Message Hash"
and other hashes within the doc defined?  Should be a forward reference.
Or worse, it's an external reference?

Sec 6.3.5.1 "multiplexing" seems out of place.

General comment, putting all limitations, constraints, requirements, etc.,
should be up front.

Is Appendix A useful here?  I don't see how.

The sample messages in C do not seem useful, as they seem to be repeating
just the packet layouts.  I do not understand what the "Hex" values in
C.3 mean and there seems to be no way to re-compute/verify them.




From nobody Wed Mar 23 00:49:36 2022
Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D16F23A111A; Wed, 23 Mar 2022 00:49:32 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.105
X-Spam-Level: 
X-Spam-Status: No, score=-2.105 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H5=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id O1m-kuDTIAro; Wed, 23 Mar 2022 00:49:28 -0700 (PDT)
Received: from relais-inet.orange.com (relais-inet.orange.com [80.12.66.39]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 11C693A1119; Wed, 23 Mar 2022 00:49:24 -0700 (PDT)
Received: from opfedar02.francetelecom.fr (unknown [xx.xx.xx.4]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by opfedar26.francetelecom.fr (ESMTP service) with ESMTPS id 4KNgVC0WTPzFpjV;  Wed, 23 Mar 2022 08:49:23 +0100 (CET)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; s=ORANGE001; t=1648021763; bh=jDw8s+Vx/aUcDuMoeXdivYFstRJrg5LL1IbgGeohYv4=; h=From:To:Subject:Date:Message-ID:Content-Type: Content-Transfer-Encoding:MIME-Version; b=VOG86PsPUuoeQpNm65Kd4DjrVNKeRV8OiVAEIyZEqufYrAHP9wwgUQKoE9eDAYuxY CIAK51yRto3OCXOOtnRAGHF1tYyykqYW4ZVdTrTvAwoWGPGdSmvojrCuFjR6s5JV+G bcxO4fQL+S/f9KxS+jekzUVctXgf/JgiyvQxteKoaqFKF9AibR707umATRZtguvIfs csYV7Uo+s1Qpb4DV1n1OAkZAlJiULw8gbQj9ya5alfFnwFXyTUOSnYJO9NzNuXjg7v Inh0nuivjmQ6bU9uBtd/va8lxeRH4AQYntrDrudIABs0lNsuKv5Q6ZVv8AOJ1nKCOt ms/zbNU37bb4A==
From: <mohamed.boucadair@orange.com>
To: Rich Salz <rsalz@akamai.com>, "secdir@ietf.org" <secdir@ietf.org>
CC: "draft-ietf-drip-auth.all@ietf.org" <draft-ietf-drip-auth.all@ietf.org>, "tm-rid@ietf.org" <tm-rid@ietf.org>
Thread-Topic: Secdir early review of draft-ietf-drip-auth-05
Thread-Index: AQHYPgDgWoCz4xzIQUyaT6e5NyEDq6zMlUeQ
Content-Class: 
Date: Wed, 23 Mar 2022 07:49:22 +0000
Message-ID: <15974_1648021762_623AD102_15974_26_1_bc21dcd525a5402c9b0e5a09261978b4@orange.com>
References: <164796264611.30352.8191375984632777321@ietfa.amsl.com>
In-Reply-To: <164796264611.30352.8191375984632777321@ietfa.amsl.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2022-03-23T07:36:06Z;  MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=5edc729d-862f-4f13-9fe9-3ffe5e85f828; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
x-originating-ip: [10.115.27.53]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/E6GqYd6IWnYn_0p5XtwcXjiNfNQ>
Subject: Re: [secdir] Secdir early review of draft-ietf-drip-auth-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 23 Mar 2022 07:49:34 -0000

SGkgUmljaCwgDQoNCkl0IHdhcyByZWFsbHkgYSBjaGFsbGVuZ2UgdG8gcmVxdWVzdCB0aGlzIHJl
dmlldyAoMjAyMi0wMy0wOCkgd2l0aCBhIHN1Z2dlc3RlZCBkZWFkbGluZSBvZiAyMDIyLTAzLTIy
IGFuZCBnZXQgaXQgZG9uZSBiZWZvcmUgb3VyIHNlc3Npb24gKDIwMjItMDMtMjMpLiBTbywgbWFu
eSB0aGFua3MgZm9yIHNoYXJpbmcgeW91ciByZXZpZXcgaW4gYSB0aW1lbHkgbWFubmVyLg0KDQpB
bGwgZ29vZCBjb21tZW50cyBhbmQgZmFpciBxdWVzdGlvbnMuIEkgdHJ1c3QgdGhlIHBlbiBob2xk
ZXJzIHdpbGwgZm9sbG93LXVwIFNPT04gKCopLiANCg0KQ2hlZXJzLA0KTWVkCQ0KDQo+IC0tLS0t
TWVzc2FnZSBkJ29yaWdpbmUtLS0tLQ0KPiBEZcKgOiBSaWNoIFNhbHogdmlhIERhdGF0cmFja2Vy
IDxub3JlcGx5QGlldGYub3JnPg0KPiBFbnZvecOpwqA6IG1hcmRpIDIyIG1hcnMgMjAyMiAxNjoy
NA0KPiDDgMKgOiBzZWNkaXJAaWV0Zi5vcmcNCj4gQ2PCoDogZHJhZnQtaWV0Zi1kcmlwLWF1dGgu
YWxsQGlldGYub3JnOyB0bS1yaWRAaWV0Zi5vcmcNCj4gT2JqZXTCoDogU2VjZGlyIGVhcmx5IHJl
dmlldyBvZiBkcmFmdC1pZXRmLWRyaXAtYXV0aC0wNQ0KPiANCj4gUmV2aWV3ZXI6IFJpY2ggU2Fs
eg0KPiBSZXZpZXcgcmVzdWx0OiBIYXMgSXNzdWVzDQo+IA0KPiBJIGtub3cgbm90aGluZyBhYm91
dCBEUklQLiBJIHNraW1tZWQgUkZDIDkxNTMgYW5kIHRoZSBzdWdnZXN0ZWQgZHJhZnQuDQo+IFRh
a2UgdGhlc3plIGNvbW1lbnRzIHdpdGggYXBwcm9wcmlhdGUgc2tlcHRpY2lzbS4NCj4gDQo+IEFT
VE0gbmVlZHMgdG8gYmUgZXhwYW5kZWQuDQo+IA0KPiBBcmUgInBhZ2VzIiBiYXNpY2FsbHkgcGFj
a2V0cz8gQSBjb25maXJtYXRpb24vZXhwbGFuYXRpb24sIHBlcmhhcHMgaW4NCj4gdGhlIGRlZmlu
aXRpb25zIHNlY3Rpb24gd291bGQgaGVscC4gVGhlIGRlZmluaXRpb25zIHBvaW50cyB0byBkcmlw
LQ0KPiByZXF1aXJlbWVudHMgZHJhZnQsIGJ1dCB0aGVuIGRvY3VtZW50cyAiYWlyY3JhZnQiPyAg
UmVhbGx5PyA6KQ0KPiANCj4gVGhlcmUgYXJlIGZhciB0b28gbWFueSBvbmUtcGFyYWdyYXBoIHNl
Y3Rpb25zLiAgQ29tZSB1cCB3aXRoIGJyb2FkZXINCj4gdGl0bGVzIGFuZCBtZXJnZSB0aGluZ3Mg
YSBiaXQ7IEkgdGhpbmsgaXQgd2lsbCByZWFkIGJldHRlci4gSSBrbm93IGt0aGlzDQo+IGlzIG5v
dCBhIHRyaXZpYWwgYW1vdW50IG9mIHdvcmsuDQo+IA0KPiBTZWMgMy4zLjE6IHRoZSBiaXQgbnVt
YmVyaW5nIGlzIG9wcG9zaXRlIG9mIHdoYXQgSSdtIHVzZWQgdG8gKGkuZS4sIDMxLQ0KPiA+MCwg
dGhpcyBpcyAwLT4zMSkuICBUaGlzIGhvbGRzIGZvciBhbGwgb3RoZXIgYXNjaWktYXJ0IHByb3Rv
Y29sIGJsb2Nrcy4NCj4gQ29uc2lkZXIgYnJlYWtpbmcgdXAgdGhlIHRvcCBieXRlIGludG8gdHdv
IG5pYmJsZXMgQUggYW5kIFBIIFBhZCBvdXQNCj4gQXV0aFR5cGUgaW50bw0KPiANCj4gU2VjIDMu
My4yIHRoZSBjb25zdHJhaW50cy9yZXF1aXJlbWVudHMgc2hvdWxkIGJlIGZpcnN0Lg0KPiANCj4g
U2VjIDQuMS4yLjEgUHV0IHNwYWNlcyBiZXR3ZWVuIHRoZSBsb2dpY2FsIHBhcnRzIG9mIHRoZSBi
eXRlczoNCj4gCTEyIDUwMDk4OTYwYmY4YzA1MDQyMDAxMDAxMDAgMGEwMDE0NWFhYzZiMDBhYmJh
MjY4YjcgSXMgdGhhdA0KPiBjb3JyZWN0PyAgV2h5IG9ubHkgdGhlIGxhc3QgMjM/ICBNYXliZSBJ
IGFtIG1pc3Npbmcgc29tZSBvdGhlciBjaGVja3N1bSwNCj4gb3IgZG9uJ3Qga25vdyBlbm91Z2gg
YWJvdXQgUmVlZC1Tb2xvbW9uLg0KPiANCj4gU2VjIDUsICJVTklYIHRpbWVzdGFtcCBvZmZzZXQg
YnkgLi4uIiB5b3UgbWVhbiBVbml4LXN0eWxlIHRpbWVzdGFtcCBidXQNCj4gd2l0aCBhbiBlcG9j
aCBvZiAuLi4gcmlnaHQ/ICBJcyB0aGUgIlVBIHNpZ25hdHVyZSIgZGVmaW5lZCBzb21ld2hlcmU/
DQo+IFNhbWUgcXVlc3Rpb24gYWJvdXQgdGhlIHNpZ25hdHVyZXMgaW4gU2VjIDYsIGV0Yy4NCj4g
DQo+IFJlbGF0ZWQgcXVlc3Rpb24sIHdoZXJlIGFyZSB0aGUgYWxnb3JpdGhtcyBmb3IgdGhlICJN
ZXNzYWdlIEhhc2giDQo+IGFuZCBvdGhlciBoYXNoZXMgd2l0aGluIHRoZSBkb2MgZGVmaW5lZD8g
IFNob3VsZCBiZSBhIGZvcndhcmQgcmVmZXJlbmNlLg0KPiBPciB3b3JzZSwgaXQncyBhbiBleHRl
cm5hbCByZWZlcmVuY2U/DQo+IA0KPiBTZWMgNi4zLjUuMSAibXVsdGlwbGV4aW5nIiBzZWVtcyBv
dXQgb2YgcGxhY2UuDQo+IA0KPiBHZW5lcmFsIGNvbW1lbnQsIHB1dHRpbmcgYWxsIGxpbWl0YXRp
b25zLCBjb25zdHJhaW50cywgcmVxdWlyZW1lbnRzLA0KPiBldGMuLCBzaG91bGQgYmUgdXAgZnJv
bnQuDQo+IA0KPiBJcyBBcHBlbmRpeCBBIHVzZWZ1bCBoZXJlPyAgSSBkb24ndCBzZWUgaG93Lg0K
PiANCj4gVGhlIHNhbXBsZSBtZXNzYWdlcyBpbiBDIGRvIG5vdCBzZWVtIHVzZWZ1bCwgYXMgdGhl
eSBzZWVtIHRvIGJlDQo+IHJlcGVhdGluZyBqdXN0IHRoZSBwYWNrZXQgbGF5b3V0cy4gIEkgZG8g
bm90IHVuZGVyc3RhbmQgd2hhdCB0aGUgIkhleCINCj4gdmFsdWVzIGluDQo+IEMuMyBtZWFuIGFu
ZCB0aGVyZSBzZWVtcyB0byBiZSBubyB3YXkgdG8gcmUtY29tcHV0ZS92ZXJpZnkgdGhlbS4NCj4g
DQo+IA0KDQoKX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f
X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19f
X19fX19fX19fX19fX19fXwoKQ2UgbWVzc2FnZSBldCBzZXMgcGllY2VzIGpvaW50ZXMgcGV1dmVu
dCBjb250ZW5pciBkZXMgaW5mb3JtYXRpb25zIGNvbmZpZGVudGllbGxlcyBvdSBwcml2aWxlZ2ll
ZXMgZXQgbmUgZG9pdmVudCBkb25jCnBhcyBldHJlIGRpZmZ1c2VzLCBleHBsb2l0ZXMgb3UgY29w
aWVzIHNhbnMgYXV0b3Jpc2F0aW9uLiBTaSB2b3VzIGF2ZXogcmVjdSBjZSBtZXNzYWdlIHBhciBl
cnJldXIsIHZldWlsbGV6IGxlIHNpZ25hbGVyCmEgbCdleHBlZGl0ZXVyIGV0IGxlIGRldHJ1aXJl
IGFpbnNpIHF1ZSBsZXMgcGllY2VzIGpvaW50ZXMuIExlcyBtZXNzYWdlcyBlbGVjdHJvbmlxdWVz
IGV0YW50IHN1c2NlcHRpYmxlcyBkJ2FsdGVyYXRpb24sCk9yYW5nZSBkZWNsaW5lIHRvdXRlIHJl
c3BvbnNhYmlsaXRlIHNpIGNlIG1lc3NhZ2UgYSBldGUgYWx0ZXJlLCBkZWZvcm1lIG91IGZhbHNp
ZmllLiBNZXJjaS4KClRoaXMgbWVzc2FnZSBhbmQgaXRzIGF0dGFjaG1lbnRzIG1heSBjb250YWlu
IGNvbmZpZGVudGlhbCBvciBwcml2aWxlZ2VkIGluZm9ybWF0aW9uIHRoYXQgbWF5IGJlIHByb3Rl
Y3RlZCBieSBsYXc7CnRoZXkgc2hvdWxkIG5vdCBiZSBkaXN0cmlidXRlZCwgdXNlZCBvciBjb3Bp
ZWQgd2l0aG91dCBhdXRob3Jpc2F0aW9uLgpJZiB5b3UgaGF2ZSByZWNlaXZlZCB0aGlzIGVtYWls
IGluIGVycm9yLCBwbGVhc2Ugbm90aWZ5IHRoZSBzZW5kZXIgYW5kIGRlbGV0ZSB0aGlzIG1lc3Nh
Z2UgYW5kIGl0cyBhdHRhY2htZW50cy4KQXMgZW1haWxzIG1heSBiZSBhbHRlcmVkLCBPcmFuZ2Ug
aXMgbm90IGxpYWJsZSBmb3IgbWVzc2FnZXMgdGhhdCBoYXZlIGJlZW4gbW9kaWZpZWQsIGNoYW5n
ZWQgb3IgZmFsc2lmaWVkLgpUaGFuayB5b3UuCgo=


From nobody Wed Mar 23 08:56:33 2022
Return-Path: <stu.card@axenterprize.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B64B23A177D for <secdir@ietfa.amsl.com>; Wed, 23 Mar 2022 08:56:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.107
X-Spam-Level: 
X-Spam-Status: No, score=-2.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=axenterprize.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ZRortoohPukx for <secdir@ietfa.amsl.com>; Wed, 23 Mar 2022 08:56:25 -0700 (PDT)
Received: from mail-ed1-x52b.google.com (mail-ed1-x52b.google.com [IPv6:2a00:1450:4864:20::52b]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2630A3A1776 for <secdir@ietf.org>; Wed, 23 Mar 2022 08:56:25 -0700 (PDT)
Received: by mail-ed1-x52b.google.com with SMTP id t1so2379170edc.3 for <secdir@ietf.org>; Wed, 23 Mar 2022 08:56:25 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=axenterprize.com; s=google; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=Qhng3uNm3LMDadyUnWwZ5Fq2PiHpbU7pb7ScYjHHhkU=; b=obXNQdekchSoT0A2sBEjp5pewjXVS/SwcBfs0I7lry4siCiJJXMFuYAkBqLJd7uuNW lYxQn/Z7TZXLEGSeKQeaHuq7qKM2NexBmE8Q2u4Wgiox//DV+7c7JNuFgCC67CcZ5f4S l0Qup9MoQVbGXnhml8AN99/uE1lgaHuBwc/Hk=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=Qhng3uNm3LMDadyUnWwZ5Fq2PiHpbU7pb7ScYjHHhkU=; b=QM9321UFn85k5W2jZjFZ1YoyiDGkJRw4awbZK7CNhk0jqmzo2D5yaCSVUdue9X+5Dr 265Dqdc9Cgetl83whCErLCbEk0fDKxoxNSugSqDzWJAMnKSKWE+izlZ620cORkk+af61 or8SSog0jcUZW3Ui4UO5s4iphODC389Gw+HVKwozot9YbgPSjjzT35CnR9UqEitD+vLR CJeER2sKaOHiAQ1hp6SJxxu94ZCg8vOpary/DtXP2HHVHmZ4Ly0Ykn/d0KVUesqmalhL Sl8RZ/xLHKPs8Bdnx3cEycDmlfymf8Ag3gt2ZVg6JVwhGZMpn/PaC01SmwIhII7hgUkS W6BA==
X-Gm-Message-State: AOAM532lszAAxKAE0nYRGc8JvKSF5imDyToozxPpvK8S25prK2UYi724 QGDmPDygZcaNbr3W+8qDpaqEbIv/ZQSB26zxABKbiQ==
X-Google-Smtp-Source: ABdhPJxlVaUPoehz8q/I0Wzj6dyh2VgHNro5MqOaFXCa3wbioyaef3xyO0691dSjaj6sUaVOr5Opztha517y8JaAQ8k=
X-Received: by 2002:aa7:de96:0:b0:418:f9ca:67f6 with SMTP id j22-20020aa7de96000000b00418f9ca67f6mr940062edv.25.1648050983132; Wed, 23 Mar 2022 08:56:23 -0700 (PDT)
MIME-Version: 1.0
References: <164796264611.30352.8191375984632777321@ietfa.amsl.com> <15974_1648021762_623AD102_15974_26_1_bc21dcd525a5402c9b0e5a09261978b4@orange.com>
In-Reply-To: <15974_1648021762_623AD102_15974_26_1_bc21dcd525a5402c9b0e5a09261978b4@orange.com>
From: "Card, Stu" <stu.card@axenterprize.com>
Date: Wed, 23 Mar 2022 11:56:06 -0400
Message-ID: <CAKM0pYM7XCAnk=kzc62EMxh+sgoU6hcgb-RZStqHoQ73dxDTVw@mail.gmail.com>
To: Mohamed Boucadair <mohamed.boucadair@orange.com>
Cc: Rich Salz <rsalz@akamai.com>, "secdir@ietf.org" <secdir@ietf.org>,  "draft-ietf-drip-auth.all@ietf.org" <draft-ietf-drip-auth.all@ietf.org>, "tm-rid@ietf.org" <tm-rid@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000006c0eca05dae4c523"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/JGXdjfNtELgXXu3LMQ2uMoEDihg>
Subject: Re: [secdir] Secdir early review of draft-ietf-drip-auth-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 23 Mar 2022 15:56:31 -0000

--0000000000006c0eca05dae4c523
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

The only point on which I will respond without getting some sleep first is
expansion of ASTM.
Originally, it was an acronym for "the American Society for Testing and
Materials".
However, it is no longer such; the full name of the organization is now
"ASTM International".
The other points will require more thought. ;-) Thanks for the quick review=
!


On Wed, Mar 23, 2022 at 3:49 AM <mohamed.boucadair@orange.com> wrote:

> Hi Rich,
>
> It was really a challenge to request this review (2022-03-08) with a
> suggested deadline of 2022-03-22 and get it done before our session
> (2022-03-23). So, many thanks for sharing your review in a timely manner.
>
> All good comments and fair questions. I trust the pen holders will
> follow-up SOON (*).
>
> Cheers,
> Med
>
> > -----Message d'origine-----
> > De : Rich Salz via Datatracker <noreply@ietf.org>
> > Envoy=C3=A9 : mardi 22 mars 2022 16:24
> > =C3=80 : secdir@ietf.org
> > Cc : draft-ietf-drip-auth.all@ietf.org; tm-rid@ietf.org
> > Objet : Secdir early review of draft-ietf-drip-auth-05
> >
> > Reviewer: Rich Salz
> > Review result: Has Issues
> >
> > I know nothing about DRIP. I skimmed RFC 9153 and the suggested draft.
> > Take thesze comments with appropriate skepticism.
> >
> > ASTM needs to be expanded.
> >
> > Are "pages" basically packets? A confirmation/explanation, perhaps in
> > the definitions section would help. The definitions points to drip-
> > requirements draft, but then documents "aircraft"?  Really? :)
> >
> > There are far too many one-paragraph sections.  Come up with broader
> > titles and merge things a bit; I think it will read better. I know kthi=
s
> > is not a trivial amount of work.
> >
> > Sec 3.3.1: the bit numbering is opposite of what I'm used to (i.e., 31-
> > >0, this is 0->31).  This holds for all other ascii-art protocol blocks=
.
> > Consider breaking up the top byte into two nibbles AH and PH Pad out
> > AuthType into
> >
> > Sec 3.3.2 the constraints/requirements should be first.
> >
> > Sec 4.1.2.1 Put spaces between the logical parts of the bytes:
> >       12 50098960bf8c0504200100100 0a00145aac6b00abba268b7 Is that
> > correct?  Why only the last 23?  Maybe I am missing some other checksum=
,
> > or don't know enough about Reed-Solomon.
> >
> > Sec 5, "UNIX timestamp offset by ..." you mean Unix-style timestamp but
> > with an epoch of ... right?  Is the "UA signature" defined somewhere?
> > Same question about the signatures in Sec 6, etc.
> >
> > Related question, where are the algorithms for the "Message Hash"
> > and other hashes within the doc defined?  Should be a forward reference=
.
> > Or worse, it's an external reference?
> >
> > Sec 6.3.5.1 "multiplexing" seems out of place.
> >
> > General comment, putting all limitations, constraints, requirements,
> > etc., should be up front.
> >
> > Is Appendix A useful here?  I don't see how.
> >
> > The sample messages in C do not seem useful, as they seem to be
> > repeating just the packet layouts.  I do not understand what the "Hex"
> > values in
> > C.3 mean and there seems to be no way to re-compute/verify them.
> >
> >
>
>
>
> _________________________________________________________________________=
________________________________________________
>
> Ce message et ses pieces jointes peuvent contenir des informations
> confidentielles ou privilegiees et ne doivent donc
> pas etre diffuses, exploites ou copies sans autorisation. Si vous avez
> recu ce message par erreur, veuillez le signaler
> a l'expediteur et le detruire ainsi que les pieces jointes. Les messages
> electroniques etant susceptibles d'alteration,
> Orange decline toute responsabilite si ce message a ete altere, deforme o=
u
> falsifie. Merci.
>
> This message and its attachments may contain confidential or privileged
> information that may be protected by law;
> they should not be distributed, used or copied without authorisation.
> If you have received this email in error, please notify the sender and
> delete this message and its attachments.
> As emails may be altered, Orange is not liable for messages that have bee=
n
> modified, changed or falsified.
> Thank you.
>
>

--0000000000006c0eca05dae4c523
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr">The only point on which I will respond without getting som=
e sleep first is expansion of ASTM.<div>Originally, it was an acronym for &=
quot;the American Society for Testing and Materials&quot;.</div><div>Howeve=
r, it is no longer such; the full name of the organization is now &quot;AST=
M International&quot;.</div><div>The other points will require more thought=
. ;-) Thanks for the quick review!</div><div><br></div></div><br><div class=
=3D"gmail_quote"><div dir=3D"ltr" class=3D"gmail_attr">On Wed, Mar 23, 2022=
 at 3:49 AM &lt;<a href=3D"mailto:mohamed.boucadair@orange.com">mohamed.bou=
cadair@orange.com</a>&gt; wrote:<br></div><blockquote class=3D"gmail_quote"=
 style=3D"margin:0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);p=
adding-left:1ex">Hi Rich, <br>
<br>
It was really a challenge to request this review (2022-03-08) with a sugges=
ted deadline of 2022-03-22 and get it done before our session (2022-03-23).=
 So, many thanks for sharing your review in a timely manner.<br>
<br>
All good comments and fair questions. I trust the pen holders will follow-u=
p SOON (*). <br>
<br>
Cheers,<br>
Med=C2=A0 =C2=A0 =C2=A0<br>
<br>
&gt; -----Message d&#39;origine-----<br>
&gt; De=C2=A0: Rich Salz via Datatracker &lt;<a href=3D"mailto:noreply@ietf=
.org" target=3D"_blank">noreply@ietf.org</a>&gt;<br>
&gt; Envoy=C3=A9=C2=A0: mardi 22 mars 2022 16:24<br>
&gt; =C3=80=C2=A0: <a href=3D"mailto:secdir@ietf.org" target=3D"_blank">sec=
dir@ietf.org</a><br>
&gt; Cc=C2=A0: <a href=3D"mailto:draft-ietf-drip-auth.all@ietf.org" target=
=3D"_blank">draft-ietf-drip-auth.all@ietf.org</a>; <a href=3D"mailto:tm-rid=
@ietf.org" target=3D"_blank">tm-rid@ietf.org</a><br>
&gt; Objet=C2=A0: Secdir early review of draft-ietf-drip-auth-05<br>
&gt; <br>
&gt; Reviewer: Rich Salz<br>
&gt; Review result: Has Issues<br>
&gt; <br>
&gt; I know nothing about DRIP. I skimmed RFC 9153 and the suggested draft.=
<br>
&gt; Take thesze comments with appropriate skepticism.<br>
&gt; <br>
&gt; ASTM needs to be expanded.<br>
&gt; <br>
&gt; Are &quot;pages&quot; basically packets? A confirmation/explanation, p=
erhaps in<br>
&gt; the definitions section would help. The definitions points to drip-<br=
>
&gt; requirements draft, but then documents &quot;aircraft&quot;?=C2=A0 Rea=
lly? :)<br>
&gt; <br>
&gt; There are far too many one-paragraph sections.=C2=A0 Come up with broa=
der<br>
&gt; titles and merge things a bit; I think it will read better. I know kth=
is<br>
&gt; is not a trivial amount of work.<br>
&gt; <br>
&gt; Sec 3.3.1: the bit numbering is opposite of what I&#39;m used to (i.e.=
, 31-<br>
&gt; &gt;0, this is 0-&gt;31).=C2=A0 This holds for all other ascii-art pro=
tocol blocks.<br>
&gt; Consider breaking up the top byte into two nibbles AH and PH Pad out<b=
r>
&gt; AuthType into<br>
&gt; <br>
&gt; Sec 3.3.2 the constraints/requirements should be first.<br>
&gt; <br>
&gt; Sec 4.1.2.1 Put spaces between the logical parts of the bytes:<br>
&gt;=C2=A0 =C2=A0 =C2=A0 =C2=A012 50098960bf8c0504200100100 0a00145aac6b00a=
bba268b7 Is that<br>
&gt; correct?=C2=A0 Why only the last 23?=C2=A0 Maybe I am missing some oth=
er checksum,<br>
&gt; or don&#39;t know enough about Reed-Solomon.<br>
&gt; <br>
&gt; Sec 5, &quot;UNIX timestamp offset by ...&quot; you mean Unix-style ti=
mestamp but<br>
&gt; with an epoch of ... right?=C2=A0 Is the &quot;UA signature&quot; defi=
ned somewhere?<br>
&gt; Same question about the signatures in Sec 6, etc.<br>
&gt; <br>
&gt; Related question, where are the algorithms for the &quot;Message Hash&=
quot;<br>
&gt; and other hashes within the doc defined?=C2=A0 Should be a forward ref=
erence.<br>
&gt; Or worse, it&#39;s an external reference?<br>
&gt; <br>
&gt; Sec 6.3.5.1 &quot;multiplexing&quot; seems out of place.<br>
&gt; <br>
&gt; General comment, putting all limitations, constraints, requirements,<b=
r>
&gt; etc., should be up front.<br>
&gt; <br>
&gt; Is Appendix A useful here?=C2=A0 I don&#39;t see how.<br>
&gt; <br>
&gt; The sample messages in C do not seem useful, as they seem to be<br>
&gt; repeating just the packet layouts.=C2=A0 I do not understand what the =
&quot;Hex&quot;<br>
&gt; values in<br>
&gt; C.3 mean and there seems to be no way to re-compute/verify them.<br>
&gt; <br>
&gt; <br>
<br>
<br>
___________________________________________________________________________=
______________________________________________<br>
<br>
Ce message et ses pieces jointes peuvent contenir des informations confiden=
tielles ou privilegiees et ne doivent donc<br>
pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu=
 ce message par erreur, veuillez le signaler<br>
a l&#39;expediteur et le detruire ainsi que les pieces jointes. Les message=
s electroniques etant susceptibles d&#39;alteration,<br>
Orange decline toute responsabilite si ce message a ete altere, deforme ou =
falsifie. Merci.<br>
<br>
This message and its attachments may contain confidential or privileged inf=
ormation that may be protected by law;<br>
they should not be distributed, used or copied without authorisation.<br>
If you have received this email in error, please notify the sender and dele=
te this message and its attachments.<br>
As emails may be altered, Orange is not liable for messages that have been =
modified, changed or falsified.<br>
Thank you.<br>
<br>
</blockquote></div>

--0000000000006c0eca05dae4c523--


From nobody Wed Mar 23 08:58:09 2022
Return-Path: <rsalz@akamai.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 632BB3A176F; Wed, 23 Mar 2022 08:58:07 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.106
X-Spam-Level: 
X-Spam-Status: No, score=-2.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=akamai.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MfJXtCjz5YfR; Wed, 23 Mar 2022 08:58:03 -0700 (PDT)
Received: from mx0b-00190b01.pphosted.com (mx0b-00190b01.pphosted.com [IPv6:2620:100:9005:57f::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 27DA83A1760; Wed, 23 Mar 2022 08:57:57 -0700 (PDT)
Received: from pps.filterd (m0050096.ppops.net [127.0.0.1]) by m0050096.ppops.net-00190b01. (8.16.1.2/8.16.1.2) with ESMTP id 22NE25W3000383; Wed, 23 Mar 2022 15:57:55 GMT
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=akamai.com; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=jan2016.eng; bh=FKMIgeXc6NCYCC0iiPq+4Sm1/sHs/US6r8XJxB1vTyQ=; b=elQ/YceZH8YvXNRQy6EdCNpHJrlbebDKpd+2MToQDeQTjXXLdEw0cATfWZ4QNKFowEWE hshJKdkOSDRXleGpj1tiv47KawNu/SNWnPHs85QgP8mHR7Md4mHgbYlYY6vFn1KPf6uc Clr1hhK0KXGNrYYkca19Pj9E2LGaoXI798wRKLdsSGCVEUT7Sr5WKl+kqd/m9bIuGmSt EUwPCmwW+ooOWICoNP92fBQobqIZ/WxXBKVeFM13yELfwqThqbTSjOSuqop5nGvnT4cc 8iIU5ELKXUt1hfbEi3z1h0iCd0qwiuriOAdCayvTlIRz5o9qoLWUrdUSlml/2krttzAN uw== 
Received: from prod-mail-ppoint6 (prod-mail-ppoint6.akamai.com [184.51.33.61] (may be forged)) by m0050096.ppops.net-00190b01. (PPS) with ESMTPS id 3ew8fe7cp5-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Wed, 23 Mar 2022 15:57:55 +0000
Received: from pps.filterd (prod-mail-ppoint6.akamai.com [127.0.0.1]) by prod-mail-ppoint6.akamai.com (8.16.1.2/8.16.1.2) with SMTP id 22NFnZ5E003070; Wed, 23 Mar 2022 11:57:54 -0400
Received: from email.msg.corp.akamai.com ([172.27.91.21]) by prod-mail-ppoint6.akamai.com with ESMTP id 3ewagyemyk-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Wed, 23 Mar 2022 11:57:54 -0400
Received: from USMA1EX-DAG1MB3.msg.corp.akamai.com (172.27.123.103) by usma1ex-dag4mb5.msg.corp.akamai.com (172.27.91.24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.2.986.5;  Wed, 23 Mar 2022 11:57:53 -0400
Received: from USMA1EX-DAG1MB1.msg.corp.akamai.com (172.27.123.101) by usma1ex-dag1mb3.msg.corp.akamai.com (172.27.123.103) with Microsoft SMTP Server (TLS) id 15.0.1497.32; Wed, 23 Mar 2022 11:57:53 -0400
Received: from USMA1EX-DAG1MB1.msg.corp.akamai.com ([172.27.123.101]) by usma1ex-dag1mb1.msg.corp.akamai.com ([172.27.123.101]) with mapi id 15.00.1497.033; Wed, 23 Mar 2022 11:57:53 -0400
From: "Salz, Rich" <rsalz@akamai.com>
To: "Card, Stu" <stu.card@axenterprize.com>, Mohamed Boucadair <mohamed.boucadair@orange.com>
CC: "secdir@ietf.org" <secdir@ietf.org>, "draft-ietf-drip-auth.all@ietf.org" <draft-ietf-drip-auth.all@ietf.org>, "tm-rid@ietf.org" <tm-rid@ietf.org>
Thread-Topic: Secdir early review of draft-ietf-drip-auth-05
Thread-Index: AQHYPoqFqiFs28KYfkqbX8AJjh1YkKzNYvsA//+9cAA=
Date: Wed, 23 Mar 2022 15:57:52 +0000
Message-ID: <06E8FF99-973A-4D50-A91D-D0DDD2E9C989@akamai.com>
References: <164796264611.30352.8191375984632777321@ietfa.amsl.com> <15974_1648021762_623AD102_15974_26_1_bc21dcd525a5402c9b0e5a09261978b4@orange.com> <CAKM0pYM7XCAnk=kzc62EMxh+sgoU6hcgb-RZStqHoQ73dxDTVw@mail.gmail.com>
In-Reply-To: <CAKM0pYM7XCAnk=kzc62EMxh+sgoU6hcgb-RZStqHoQ73dxDTVw@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
user-agent: Microsoft-MacOutlook/16.59.22031300
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [172.27.118.139]
Content-Type: multipart/alternative; boundary="_000_06E8FF99973A4D50A91DD0DDD2E9C989akamaicom_"
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.425, 18.0.850 definitions=2022-03-23_04:2022-03-23, 2022-03-23 signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 phishscore=0 bulkscore=0 spamscore=0 mlxlogscore=680 adultscore=0 mlxscore=0 suspectscore=0 malwarescore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2202240000 definitions=main-2203230085
X-Proofpoint-ORIG-GUID: SxzIujgQ_VisChBGVrPXjx9qQlWbNGnh
X-Proofpoint-GUID: SxzIujgQ_VisChBGVrPXjx9qQlWbNGnh
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.205,Aquarius:18.0.850,Hydra:6.0.425,FMLib:17.11.64.514 definitions=2022-03-23_07,2022-03-23_01,2022-02-23_01
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 priorityscore=1501 impostorscore=0 adultscore=0 malwarescore=0 phishscore=0 mlxlogscore=660 spamscore=0 clxscore=1011 bulkscore=0 mlxscore=0 suspectscore=0 lowpriorityscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2202240000 definitions=main-2203230085
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/XMgL78yDIpPNQxwdA-53Z1mvPeM>
Subject: Re: [secdir] Secdir early review of draft-ietf-drip-auth-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 23 Mar 2022 15:58:08 -0000

--_000_06E8FF99973A4D50A91DD0DDD2E9C989akamaicom_
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64

ICAqICAgT3JpZ2luYWxseSwgaXQgd2FzIGFuIGFjcm9ueW0gZm9yICJ0aGUgQW1lcmljYW4gU29j
aWV0eSBmb3IgVGVzdGluZyBhbmQgTWF0ZXJpYWxzIi4NCkhvd2V2ZXIsIGl0IGlzIG5vIGxvbmdl
ciBzdWNoOyB0aGUgZnVsbCBuYW1lIG9mIHRoZSBvcmdhbml6YXRpb24gaXMgbm93ICJBU1RNIElu
dGVybmF0aW9uYWwiLg0KVGhlIG90aGVyIHBvaW50cyB3aWxsIHJlcXVpcmUgbW9yZSB0aG91Z2h0
LiA7LSkgVGhhbmtzIGZvciB0aGUgcXVpY2sgcmV2aWV3IQ0KDQpBaGEsIHNvIGp1c3QgbGlrZSBJ
U08vT1NJLiA6KQ0K

--_000_06E8FF99973A4D50A91DD0DDD2E9C989akamaicom_
Content-Type: text/html; charset="utf-8"
Content-ID: <885B8BA70BAB5B4C86D5FA6B17FBF7B4@akamai.com>
Content-Transfer-Encoding: base64

PGh0bWwgeG1sbnM6bz0idXJuOnNjaGVtYXMtbWljcm9zb2Z0LWNvbTpvZmZpY2U6b2ZmaWNlIiB4
bWxuczp3PSJ1cm46c2NoZW1hcy1taWNyb3NvZnQtY29tOm9mZmljZTp3b3JkIiB4bWxuczptPSJo
dHRwOi8vc2NoZW1hcy5taWNyb3NvZnQuY29tL29mZmljZS8yMDA0LzEyL29tbWwiIHhtbG5zPSJo
dHRwOi8vd3d3LnczLm9yZy9UUi9SRUMtaHRtbDQwIj4NCjxoZWFkPg0KPG1ldGEgaHR0cC1lcXVp
dj0iQ29udGVudC1UeXBlIiBjb250ZW50PSJ0ZXh0L2h0bWw7IGNoYXJzZXQ9dXRmLTgiPg0KPG1l
dGEgbmFtZT0iR2VuZXJhdG9yIiBjb250ZW50PSJNaWNyb3NvZnQgV29yZCAxNSAoZmlsdGVyZWQg
bWVkaXVtKSI+DQo8c3R5bGU+PCEtLQ0KLyogRm9udCBEZWZpbml0aW9ucyAqLw0KQGZvbnQtZmFj
ZQ0KCXtmb250LWZhbWlseTpXaW5nZGluZ3M7DQoJcGFub3NlLTE6NSAwIDAgMCAwIDAgMCAwIDAg
MDt9DQpAZm9udC1mYWNlDQoJe2ZvbnQtZmFtaWx5OiJDYW1icmlhIE1hdGgiOw0KCXBhbm9zZS0x
OjIgNCA1IDMgNSA0IDYgMyAyIDQ7fQ0KQGZvbnQtZmFjZQ0KCXtmb250LWZhbWlseTpDYWxpYnJp
Ow0KCXBhbm9zZS0xOjIgMTUgNSAyIDIgMiA0IDMgMiA0O30NCi8qIFN0eWxlIERlZmluaXRpb25z
ICovDQpwLk1zb05vcm1hbCwgbGkuTXNvTm9ybWFsLCBkaXYuTXNvTm9ybWFsDQoJe21hcmdpbjow
aW47DQoJZm9udC1zaXplOjExLjBwdDsNCglmb250LWZhbWlseToiQ2FsaWJyaSIsc2Fucy1zZXJp
Zjt9DQpwLk1zb0xpc3RQYXJhZ3JhcGgsIGxpLk1zb0xpc3RQYXJhZ3JhcGgsIGRpdi5Nc29MaXN0
UGFyYWdyYXBoDQoJe21zby1zdHlsZS1wcmlvcml0eTozNDsNCgltYXJnaW4tdG9wOjBpbjsNCglt
YXJnaW4tcmlnaHQ6MGluOw0KCW1hcmdpbi1ib3R0b206MGluOw0KCW1hcmdpbi1sZWZ0Oi41aW47
DQoJZm9udC1zaXplOjExLjBwdDsNCglmb250LWZhbWlseToiQ2FsaWJyaSIsc2Fucy1zZXJpZjt9
DQpzcGFuLkVtYWlsU3R5bGUxOA0KCXttc28tc3R5bGUtdHlwZTpwZXJzb25hbC1yZXBseTsNCglm
b250LWZhbWlseToiQ2FsaWJyaSIsc2Fucy1zZXJpZjsNCgljb2xvcjp3aW5kb3d0ZXh0O30NCi5N
c29DaHBEZWZhdWx0DQoJe21zby1zdHlsZS10eXBlOmV4cG9ydC1vbmx5Ow0KCWZvbnQtc2l6ZTox
MC4wcHQ7fQ0KQHBhZ2UgV29yZFNlY3Rpb24xDQoJe3NpemU6OC41aW4gMTEuMGluOw0KCW1hcmdp
bjoxLjBpbiAxLjBpbiAxLjBpbiAxLjBpbjt9DQpkaXYuV29yZFNlY3Rpb24xDQoJe3BhZ2U6V29y
ZFNlY3Rpb24xO30NCi8qIExpc3QgRGVmaW5pdGlvbnMgKi8NCkBsaXN0IGwwDQoJe21zby1saXN0
LWlkOjY5MTk1NzMzMDsNCgltc28tbGlzdC10eXBlOmh5YnJpZDsNCgltc28tbGlzdC10ZW1wbGF0
ZS1pZHM6LTEzNjE2NTg4NCAtOTk1MDgxMjI0IDY3Njk4NjkxIDY3Njk4NjkzIDY3Njk4Njg5IDY3
Njk4NjkxIDY3Njk4NjkzIDY3Njk4Njg5IDY3Njk4NjkxIDY3Njk4NjkzO30NCkBsaXN0IGwwOmxl
dmVsMQ0KCXttc28tbGV2ZWwtc3RhcnQtYXQ6MDsNCgltc28tbGV2ZWwtbnVtYmVyLWZvcm1hdDpi
dWxsZXQ7DQoJbXNvLWxldmVsLXRleHQ674OYOw0KCW1zby1sZXZlbC10YWItc3RvcDpub25lOw0K
CW1zby1sZXZlbC1udW1iZXItcG9zaXRpb246bGVmdDsNCgl0ZXh0LWluZGVudDotLjI1aW47DQoJ
Zm9udC1mYW1pbHk6V2luZ2RpbmdzOw0KCW1zby1mYXJlYXN0LWZvbnQtZmFtaWx5OiJUaW1lcyBO
ZXcgUm9tYW4iOw0KCW1zby1iaWRpLWZvbnQtZmFtaWx5OkNhbGlicmk7fQ0KQGxpc3QgbDA6bGV2
ZWwyDQoJe21zby1sZXZlbC1udW1iZXItZm9ybWF0OmJ1bGxldDsNCgltc28tbGV2ZWwtdGV4dDpv
Ow0KCW1zby1sZXZlbC10YWItc3RvcDpub25lOw0KCW1zby1sZXZlbC1udW1iZXItcG9zaXRpb246
bGVmdDsNCgl0ZXh0LWluZGVudDotLjI1aW47DQoJZm9udC1mYW1pbHk6IkNvdXJpZXIgTmV3Ijt9
DQpAbGlzdCBsMDpsZXZlbDMNCgl7bXNvLWxldmVsLW51bWJlci1mb3JtYXQ6YnVsbGV0Ow0KCW1z
by1sZXZlbC10ZXh0Ou+CpzsNCgltc28tbGV2ZWwtdGFiLXN0b3A6bm9uZTsNCgltc28tbGV2ZWwt
bnVtYmVyLXBvc2l0aW9uOmxlZnQ7DQoJdGV4dC1pbmRlbnQ6LS4yNWluOw0KCWZvbnQtZmFtaWx5
OldpbmdkaW5nczt9DQpAbGlzdCBsMDpsZXZlbDQNCgl7bXNvLWxldmVsLW51bWJlci1mb3JtYXQ6
YnVsbGV0Ow0KCW1zby1sZXZlbC10ZXh0Ou+CtzsNCgltc28tbGV2ZWwtdGFiLXN0b3A6bm9uZTsN
Cgltc28tbGV2ZWwtbnVtYmVyLXBvc2l0aW9uOmxlZnQ7DQoJdGV4dC1pbmRlbnQ6LS4yNWluOw0K
CWZvbnQtZmFtaWx5OlN5bWJvbDt9DQpAbGlzdCBsMDpsZXZlbDUNCgl7bXNvLWxldmVsLW51bWJl
ci1mb3JtYXQ6YnVsbGV0Ow0KCW1zby1sZXZlbC10ZXh0Om87DQoJbXNvLWxldmVsLXRhYi1zdG9w
Om5vbmU7DQoJbXNvLWxldmVsLW51bWJlci1wb3NpdGlvbjpsZWZ0Ow0KCXRleHQtaW5kZW50Oi0u
MjVpbjsNCglmb250LWZhbWlseToiQ291cmllciBOZXciO30NCkBsaXN0IGwwOmxldmVsNg0KCXtt
c28tbGV2ZWwtbnVtYmVyLWZvcm1hdDpidWxsZXQ7DQoJbXNvLWxldmVsLXRleHQ674KnOw0KCW1z
by1sZXZlbC10YWItc3RvcDpub25lOw0KCW1zby1sZXZlbC1udW1iZXItcG9zaXRpb246bGVmdDsN
Cgl0ZXh0LWluZGVudDotLjI1aW47DQoJZm9udC1mYW1pbHk6V2luZ2RpbmdzO30NCkBsaXN0IGww
OmxldmVsNw0KCXttc28tbGV2ZWwtbnVtYmVyLWZvcm1hdDpidWxsZXQ7DQoJbXNvLWxldmVsLXRl
eHQ674K3Ow0KCW1zby1sZXZlbC10YWItc3RvcDpub25lOw0KCW1zby1sZXZlbC1udW1iZXItcG9z
aXRpb246bGVmdDsNCgl0ZXh0LWluZGVudDotLjI1aW47DQoJZm9udC1mYW1pbHk6U3ltYm9sO30N
CkBsaXN0IGwwOmxldmVsOA0KCXttc28tbGV2ZWwtbnVtYmVyLWZvcm1hdDpidWxsZXQ7DQoJbXNv
LWxldmVsLXRleHQ6bzsNCgltc28tbGV2ZWwtdGFiLXN0b3A6bm9uZTsNCgltc28tbGV2ZWwtbnVt
YmVyLXBvc2l0aW9uOmxlZnQ7DQoJdGV4dC1pbmRlbnQ6LS4yNWluOw0KCWZvbnQtZmFtaWx5OiJD
b3VyaWVyIE5ldyI7fQ0KQGxpc3QgbDA6bGV2ZWw5DQoJe21zby1sZXZlbC1udW1iZXItZm9ybWF0
OmJ1bGxldDsNCgltc28tbGV2ZWwtdGV4dDrvgqc7DQoJbXNvLWxldmVsLXRhYi1zdG9wOm5vbmU7
DQoJbXNvLWxldmVsLW51bWJlci1wb3NpdGlvbjpsZWZ0Ow0KCXRleHQtaW5kZW50Oi0uMjVpbjsN
Cglmb250LWZhbWlseTpXaW5nZGluZ3M7fQ0Kb2wNCgl7bWFyZ2luLWJvdHRvbTowaW47fQ0KdWwN
Cgl7bWFyZ2luLWJvdHRvbTowaW47fQ0KLS0+PC9zdHlsZT4NCjwvaGVhZD4NCjxib2R5IGxhbmc9
IkVOLVVTIiBsaW5rPSJibHVlIiB2bGluaz0icHVycGxlIiBzdHlsZT0id29yZC13cmFwOmJyZWFr
LXdvcmQiPg0KPGRpdiBjbGFzcz0iV29yZFNlY3Rpb24xIj4NCjxkaXY+DQo8ZGl2Pg0KPHVsIHN0
eWxlPSJtYXJnaW4tdG9wOjBpbiIgdHlwZT0iZGlzYyI+DQo8bGkgY2xhc3M9Ik1zb0xpc3RQYXJh
Z3JhcGgiIHN0eWxlPSJtYXJnaW4tbGVmdDowaW47bXNvLWxpc3Q6bDAgbGV2ZWwxIGxmbzEiPk9y
aWdpbmFsbHksIGl0IHdhcyBhbiBhY3JvbnltIGZvciAmcXVvdDt0aGUgQW1lcmljYW4gU29jaWV0
eSBmb3IgVGVzdGluZyBhbmQgTWF0ZXJpYWxzJnF1b3Q7LjxvOnA+PC9vOnA+PC9saT48L3VsPg0K
PC9kaXY+DQo8ZGl2Pg0KPHAgY2xhc3M9Ik1zb05vcm1hbCI+SG93ZXZlciwgaXQgaXMgbm8gbG9u
Z2VyIHN1Y2g7IHRoZSBmdWxsIG5hbWUgb2YgdGhlIG9yZ2FuaXphdGlvbiBpcyBub3cgJnF1b3Q7
QVNUTSBJbnRlcm5hdGlvbmFsJnF1b3Q7LjxvOnA+PC9vOnA+PC9wPg0KPC9kaXY+DQo8ZGl2Pg0K
PHAgY2xhc3M9Ik1zb05vcm1hbCI+VGhlIG90aGVyIHBvaW50cyB3aWxsIHJlcXVpcmUgbW9yZSB0
aG91Z2h0LiA7LSkgVGhhbmtzIGZvciB0aGUgcXVpY2sgcmV2aWV3ITxvOnA+PC9vOnA+PC9wPg0K
PHAgY2xhc3M9Ik1zb05vcm1hbCI+PG86cD4mbmJzcDs8L286cD48L3A+DQo8cCBjbGFzcz0iTXNv
Tm9ybWFsIj5BaGEsIHNvIGp1c3QgbGlrZSBJU08vT1NJLiA6KTxvOnA+PC9vOnA+PC9wPg0KPC9k
aXY+DQo8L2Rpdj4NCjwvZGl2Pg0KPC9ib2R5Pg0KPC9odG1sPg0K

--_000_06E8FF99973A4D50A91DD0DDD2E9C989akamaicom_--


From nobody Wed Mar 23 09:26:55 2022
Return-Path: <adam.wiethuechter@axenterprize.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7F1593A17BF; Wed, 23 Mar 2022 09:26:36 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.909
X-Spam-Level: 
X-Spam-Status: No, score=-6.909 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=axenterprize.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CTF5h9PnRFrV; Wed, 23 Mar 2022 09:26:33 -0700 (PDT)
Received: from NAM11-DM6-obe.outbound.protection.outlook.com (mail-dm6nam11on2070f.outbound.protection.outlook.com [IPv6:2a01:111:f400:7eaa::70f]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6C1A53A17BE; Wed, 23 Mar 2022 09:26:33 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=f1iXhAKLbo2cTDwimOK78PqBYeHWXqJIiGeOfJE1lasvsjRVDSjX9551e0jiuhxalOABTd/Rwb/Uxj08ICyNV9krTrmhq648JYCj5R9Tiy6Mw1HOb4iE/arL6IRGsD9p2XyHfUvusf4I1DYoJStfvmjKXJCDdXnsPT2HF7saVOrC9tbt5CTplvWA+vzmy0t0F5FWwolvXi9/otSxCCa8713dBM+JE9ILVkO0MVbD2z/J4dkJsMXhLtMjvfn1eOl7GLDa/jR7ABlfcRxgiHob0m6VDaGCyg/fHc9DsOKcQF0L09S90Godw+tSb/n5jwWyD6YBC7cqTQzo5u0MlH0JPw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;  s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=+RjwTTkSOMy4er7cMxrzA8DCbTP1wwZjKG63efe/FB0=; b=OOyYspyBcyXKHeqPOLFY/k/UtGTNbPXlT0mQ378V/FhKP9ID610BAtxFl5rxWW+ctAu0l9w47JTP67b7fbF2qT70x/D32Rq7evsL+N3m7K5NDTsucSd+691djLhFpZ9481WsteQboZaJEr4CzfTlfVfRS5HCJUoBp/6YmmQzDeU4IdFJ7H9Hiiam8MH5fDnb8r8+iuyYsTUrW0ztpiC0BAET+QSk4wq62nZUty9ZmYJaKjFfymR1bz2XhOEaWrfJAMkEcQip9f1EoIyMRNsOVMo2ZY+Rhr1+7i7XQgRFM2LeRXP9jvkLkMKXKkjsoVd4zHEDlaF8A+56ozpd+tx8ZA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=axenterprize.com; dmarc=pass action=none header.from=axenterprize.com; dkim=pass header.d=axenterprize.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=axenterprize.onmicrosoft.com; s=selector1-axenterprize-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=+RjwTTkSOMy4er7cMxrzA8DCbTP1wwZjKG63efe/FB0=; b=AFKBDHWiZEG/h/1igLuX5S670TdLtAy+cvf4IIpPXnM3vLNrYRv6FN5NXOyNrR4/dgEUSDX7hEaS19s5TihqJJiV7/0rOwag/UA/uhPfiBghq0cSCOuCmrwpDVeGbKOH6c51kP1DBTl1EfqUmhWyCct6hVCJdZIqMY12vBe2soc=
Received: from SN6PR13MB2446.namprd13.prod.outlook.com (2603:10b6:805:5f::26) by BN0PR13MB5215.namprd13.prod.outlook.com (2603:10b6:408:157::21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5102.8; Wed, 23 Mar 2022 16:26:28 +0000
Received: from SN6PR13MB2446.namprd13.prod.outlook.com ([fe80::c8cd:531c:1d0e:e730]) by SN6PR13MB2446.namprd13.prod.outlook.com ([fe80::c8cd:531c:1d0e:e730%3]) with mapi id 15.20.5102.016; Wed, 23 Mar 2022 16:26:28 +0000
From: Adam Wiethuechter <adam.wiethuechter@axenterprize.com>
To: "secdir@ietf.org" <secdir@ietf.org>, Rich Salz <rsalz@akamai.com>
CC: "draft-ietf-drip-auth.all@ietf.org" <draft-ietf-drip-auth.all@ietf.org>, "tm-rid@ietf.org" <tm-rid@ietf.org>
Thread-Topic: Secdir early review of draft-ietf-drip-auth-05
Thread-Index: AQHYPgDie0PrqxPnRESVKZvME1b3pKzNGsnJ
Date: Wed, 23 Mar 2022 16:26:28 +0000
Message-ID: <SN6PR13MB2446482E06CA4A8AF282D77F88189@SN6PR13MB2446.namprd13.prod.outlook.com>
References: <164796264611.30352.8191375984632777321@ietfa.amsl.com>
In-Reply-To: <164796264611.30352.8191375984632777321@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
suggested_attachment_session_id: 174f14e4-dcf2-0c76-65a8-6995eb2b172d
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=axenterprize.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 53a4f3a5-4393-4ea1-d484-08da0ce9e1d8
x-ms-traffictypediagnostic: BN0PR13MB5215:EE_
x-microsoft-antispam-prvs: <BN0PR13MB5215F23D8BE75F11A8E45B8788189@BN0PR13MB5215.namprd13.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:;  IPV:NLI; SFV:NSPM; H:SN6PR13MB2446.namprd13.prod.outlook.com; PTR:; CAT:NONE;  SFS:(13230001)(396003)(366004)(39830400003)(376002)(346002)(136003)(38070700005)(83380400001)(38100700002)(110136005)(122000001)(33656002)(19627405001)(86362001)(91956017)(76116006)(66946007)(44832011)(316002)(54906003)(66556008)(66476007)(5660300002)(52536014)(66446008)(64756008)(4326008)(2906002)(8936002)(8676002)(9686003)(26005)(53546011)(55016003)(186003)(6506007)(66574015)(7696005)(71200400001)(508600001); DIR:OUT; SFP:1102; 
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: =?iso-8859-1?Q?22lJEVY1gOoGXjSA7w/pF3gpHxDbrY9psqfVdxGDDdNQF21NiXXnH18/hW?= =?iso-8859-1?Q?RMzaq97VnL4iDBNFaUohw+L5c4wMKBv41v057vYnLT2TATHOO3hy0V/1Zr?= =?iso-8859-1?Q?lZ0U8Zf0HDVbZtMRZdRcHvqvUGHpngKmxqhDHEgx5Wl4VpEbYSZIxCGQfT?= =?iso-8859-1?Q?GmdTWBuKh2EkpvjXoe/vmIUQSStfl7DtaYHqcZ0NY51MDPPXy1FrebeCpJ?= =?iso-8859-1?Q?VRjTi6BXArYTdyqOyxofpW8SQZB/dg5GsZis5p4o9+PcoMooiugb6B1j1T?= =?iso-8859-1?Q?LuQoNCLKdBZ5JipxVoCF1u/0FZSpZKQaSyEd15wvjlu4GN35/8LO0MRRzh?= =?iso-8859-1?Q?UFPc87XJdVRPLfq9+ffp3e444T3CWZTayiMke++OmodKug7afONDngWPql?= =?iso-8859-1?Q?uSLP4VmY/S5s7SfwJgoJZfIC74rvyVSXvRltlL5Rsu7DpmfwtiDxUGDI6v?= =?iso-8859-1?Q?UkAc6fLZXWzIUjTE5t4TQm3q6VrxOj/xTBQ5i0dQNocK3D1Wjpn/sUV60V?= =?iso-8859-1?Q?1Zc90YJpny7VbbpKwz1Gk8VihzFgQlPmG2V1Kf5yCjfRQQNhCrpBKxzRlf?= =?iso-8859-1?Q?46548LMO9g7aR/8gljplwD1rkE+qCzAZRjlFnNXbaKdB9TeKnaQIu4hWlj?= =?iso-8859-1?Q?Tj4R0eCa3a6VaZAOggiNRfGnSRzBxZ23SK6appfNPzNDl2Gouqi/jMFnG9?= =?iso-8859-1?Q?Kh/NbPCF66EMjEYz53ylcTkD1cYc6iyYF6TRGMrMYpwf47SQo48PIPMw4E?= =?iso-8859-1?Q?Tr2+xF4Gi/dYet/9gIfslbYo6E4lY3xvjxoDZ4Lpg83RJKJ6A6S2NFKYK/?= =?iso-8859-1?Q?i/O56pJ+Z6mxAhg9PRbD+MQAa8ajFltjKUIZ1YxfsZst2vkytwkUC5PaAl?= =?iso-8859-1?Q?q6ehHIt9/aM79HScZOwidtwKmox8gE8On4IEtbzURyV6FUd/En5pBN41e5?= =?iso-8859-1?Q?rIIRip7tmACLq+nboUmroxUmmaJ0BaAFy43m70iPY0AQrqL1WEmh/B3Cs3?= =?iso-8859-1?Q?dkEsjmDVf4PGRs4GLnC+vDX6Np2AGDcYsIl/6hAi3iFqZKUreqqlqgQwfU?= =?iso-8859-1?Q?DxM4Vev6HB/tKdNJemigEJ3wiV1BcrBvexpEqXtePsghJryxPdrSAYKlC9?= =?iso-8859-1?Q?OT55/3a/SCby9kf/WTGYwFgzhBn571i7sJih0eOkPRj4t6C9yzwl/4hPR/?= =?iso-8859-1?Q?S8vxw4j1nu2DyM6/0cLFtScqRRDpYYuo1rpZUyIz/wQJm0WfYUGxQO3+cR?= =?iso-8859-1?Q?8h0ecCC7j4b3iORxXIZaQqSM8v+9FVRJlDA7j7ZSUndLyIu92v859zywuI?= =?iso-8859-1?Q?fd1H4zYy3/+85x4b70Y40vFio/IHWcTo/BOEvCF3l+dxWPfaRsmgVEngay?= =?iso-8859-1?Q?H9brLcP4HrOwg+My2NzpIhIBX+6o7WBlhkzbcxpZTgtw5K6OSa5O2c+xU2?= =?iso-8859-1?Q?7x56ItBaGH782gEMd6DVDSy6ElSPwefEyT58JMTzVeb7vmZmAEQQs4Sx6i?= =?iso-8859-1?Q?WssSEWbbCxJx5r94nXLoDL6c2/2cI1cI7OU7RAL/nCRRDurNvtMpKbH/hH?= =?iso-8859-1?Q?AXN2m0Q=3D?=
Content-Type: multipart/alternative; boundary="_000_SN6PR13MB2446482E06CA4A8AF282D77F88189SN6PR13MB2446namp_"
MIME-Version: 1.0
X-OriginatorOrg: axenterprize.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SN6PR13MB2446.namprd13.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 53a4f3a5-4393-4ea1-d484-08da0ce9e1d8
X-MS-Exchange-CrossTenant-originalarrivaltime: 23 Mar 2022 16:26:28.1249 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 00ad0178-ead0-441e-96ff-0c72baf3a6fa
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: lfjLjhIX2Ns66LPs1eoTcQno01z6hQ6Vq4BYT5RQs69FTfHLg4fwxf+uGC1x090idg7qgbeOavBrg093LXe1dnjRsRe/1OB6EjfIou0dAVFmJGaxJK31pp6HpYE2bp1Q
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN0PR13MB5215
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/8N6AVXmC2dOzWMlNphMfcNfBwGE>
Subject: Re: [secdir] Secdir early review of draft-ietf-drip-auth-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 23 Mar 2022 16:26:37 -0000

--_000_SN6PR13MB2446482E06CA4A8AF282D77F88189SN6PR13MB2446namp_
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

Rich,

Thanks for the first external review of the document! My comments are inlin=
e.

I should have a new version by end of next week.

--------
73,
Adam T. Wiethuechter
Software Engineer; AX Enterprize, LLC
________________________________
From: Rich Salz via Datatracker <noreply@ietf.org>
Sent: Tuesday, March 22, 2022 11:24 AM
To: secdir@ietf.org <secdir@ietf.org>
Cc: draft-ietf-drip-auth.all@ietf.org <draft-ietf-drip-auth.all@ietf.org>; =
tm-rid@ietf.org <tm-rid@ietf.org>
Subject: Secdir early review of draft-ietf-drip-auth-05

Reviewer: Rich Salz
Review result: Has Issues

I know nothing about DRIP. I skimmed RFC 9153 and the suggested draft.
Take thesze comments with appropriate skepticism.

<atw>
Will do - it is a fair bit to grok so understandable.
</atw>

ASTM needs to be expanded.

<atw>
I saw Stu responded to this for you.
</atw>

Are "pages" basically packets? A confirmation/explanation, perhaps in the
definitions section would help. The definitions points to drip-requirements
draft, but then documents "aircraft"?  Really? :)

<atw>
The Authentication Pages could be considered packets (especially on Bluetoo=
th 4). They are part of a much larger Bluetooth framing structure that it i=
s sent in a single shot.

The 'aircraft' definition is probably unnecessary at this point and I will =
make it an action item to remove it and fix any text that needs adjusting b=
ecause of it. To be honest it was me being lazy and not wanting to comb the=
 document to add "Unmanned" in front of every instance.
</atw>

There are far too many one-paragraph sections.  Come up with broader titles
and merge things a bit; I think it will read better. I know kthis is not a
trivial amount of work.

<atw>
This was a stylistic choice on my part so good to hear some feedback on it.

My intention was that specific fields that are later referenced in the docu=
ment to explicitly state what nests into what would be easier with section =
headers for them rather than pointing to a general section and have to dig =
through some text in section to figure things out.

I will play with collapsing some of them and seeing how it flows.
</atw>

Sec 3.3.1: the bit numbering is opposite of what I'm used to (i.e., 31->0,
this is 0->31).  This holds for all other ascii-art protocol blocks.
Consider breaking up the top byte into two nibbles AH and PH Pad out AuthTy=
pe
into

<atw>
I will double check but the document we work from (ASTM F3411) is 0->31 and=
 not the IETF convention of 31->0. This threw me off too at first. I can ea=
sily flip it as it really doesn't matter either way I think.
</atw>

Sec 3.3.2 the constraints/requirements should be first.

<atw>
This is a hard section to find a place. A new reader with no context of the=
 fields I reference could find the text puzzling to understand. This was wh=
y I place it at the end of section 3 rather than the beginning.

I will see if I can do some re-arrangements. I suppose forward references a=
ren't the worst thing.
</atw>

Sec 4.1.2.1 Put spaces between the logical parts of the bytes:
        12 50098960bf8c0504200100100 0a00145aac6b00abba268b7
Is that correct?  Why only the last 23?  Maybe I am missing some
other checksum, or don't know enough about Reed-Solomon.

<atw>
The correct breakdown of the line you have is this:
12 50 098960bf8c05 042001001000a00145aac6b00abba268b7

The last 23-bytes are used as the first two bytes are well known to a recei=
ver. The first byte being Protocol Version and Message Type - this won't ch=
ange in the middle of a Authentication Message from a transmitter and it ha=
s other pages to reference to get the value. The second byte is the AuthTyp=
e and Page Number - AuthType does not change in a message being reconstruct=
ed while Page Number is contextual. If there are 3 pages (0 indexed) and yo=
u only received Page 0 and Page 2 - then the missing one is Page 1. For the=
se reasons there is no need to perform the Reed Solomon FEC operation over =
the bytes - there used to be more explicit text about this - perhaps it got=
 lost?

I think this indicates the text in this section still needs work and more d=
etailed reviews from others.
</atw>

Sec 5, "UNIX timestamp offset by ..." you mean Unix-style timestamp
but with an epoch of ... right?  Is the "UA signature" defined
somewhere?  Same question about the signatures in Sec 6, etc.

<atw>
Yes a Unix-style timestamp. I will adjust the wording.

The structure in Section 5 is more formally defined in draft-ietf-drip-regi=
stries. This section is more of an abbreviated "copy-paste" of it so its in=
line in this document. It's just in this document I explicitly set certain =
field values that are different from the other document.
</atw>

Related question, where are the algorithms for the "Message Hash"
and other hashes within the doc defined?  Should be a forward reference.
Or worse, it's an external reference?

<atw>
The algorithm for the Message Hash is bound to the hash algorithm used to g=
enerate the DET. This is defined in draft-ietf-drip-uas-rid. So its an exte=
rnal reference that needs to be more well explained and called out.
</atw>

Sec 6.3.5.1 "multiplexing" seems out of place.

<atw>
Perhaps it is the wrong word here. Sub-type is probably the better term.
</atw>

General comment, putting all limitations, constraints, requirements, etc.,
should be up front.

<atw>
Understood. To me it seems a bit odd to have Section 7 near the top but per=
haps forward referencing into the document is not the worst thing in this c=
ase if the implementation makes his choice from that section and just click=
s the link to go to the relevant section to know implementation details.

Guess I am old school and read the full document first and attempt to under=
stand everything the author wrote and tried to convey rather than jump arou=
nd sections. :-)
</atw>

Is Appendix A useful here?  I don't see how.

<atw>
ASTM F3411 Authentication has really only 3 states: None, Invalid or Valid.=
 This is because under ASTM the idea is that Authentication is done by an e=
xternal service hosted somewhere on the Internet so you will always get som=
e sort of answer back. With DRIP this classification becomes more complex a=
s we support "offline" scenarios where the receiver does not have Internet =
connectivity. Since we are using asymmetric keys this means the public key =
must somehow be obtained - DRIP Registries gets more into detail how these =
keys are stored on DNS and one reason for DRIP Authentication is to send th=
e key over Broadcast RID.

There are two keys of interest: the PK of the UA and the PK of the HDA (or =
Registry). The draft gives a clear way to send the PK of the UA over the Br=
oadcast RID messages - however the PK of the Registry is not. It can be usi=
ng the same mechanism but is not required to do so due to potential operati=
onal constraints and implementation of a given UA transmitter. As such ther=
e are scenarios where you may have part of the key-chain but not all of it.

The intent of Appendix A is to give some kind of recommended way to classif=
y these various states and convey it to the user through colors and state n=
ames/text.

I will add some introductory text in this area to better explain why it is =
included at all.
</atw>

The sample messages in C do not seem useful, as they seem to be repeating
just the packet layouts.  I do not understand what the "Hex" values in
C.3 mean and there seems to be no way to re-compute/verify them.

<atw>
They were added to give context for someone who may have a hard time grokki=
ng the packet layouts and the various nesting. The hex values were taken fr=
om a running implementation log of such messages to give an example of what=
 would be seen over the air.
</atw>

--_000_SN6PR13MB2446482E06CA4A8AF282D77F88189SN6PR13MB2446namp_
Content-Type: text/html; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<html>
<head>
<meta http-equiv=3D"Content-Type" content=3D"text/html; charset=3Diso-8859-=
1">
<style type=3D"text/css" style=3D"display:none;"> P {margin-top:0;margin-bo=
ttom:0;} </style>
</head>
<body dir=3D"ltr">
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0); background-color: rgb(255, 255, 255);">
Rich,</div>
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0); background-color: rgb(255, 255, 255);">
<br>
</div>
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0); background-color: rgb(255, 255, 255);">
Thanks for the first external review of the document! My comments are inlin=
e.</div>
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0); background-color: rgb(255, 255, 255);">
<br>
</div>
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0); background-color: rgb(255, 255, 255);">
I should have a new version by end of next week.<br>
</div>
<div>
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0);">
<br>
</div>
<div id=3D"Signature">
<div>
<div></div>
<div></div>
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0);">
--------<br>
</div>
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0);">
73,</div>
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0);">
Adam T. Wiethuechter</div>
<div style=3D"font-family: Calibri, Arial, Helvetica, sans-serif; font-size=
: 12pt; color: rgb(0, 0, 0);">
Software Engineer; AX Enterprize, LLC<br>
</div>
</div>
</div>
</div>
<div id=3D"appendonsend"></div>
<hr tabindex=3D"-1" style=3D"display:inline-block; width:98%">
<div id=3D"divRplyFwdMsg" dir=3D"ltr"><font style=3D"font-size: 11pt;" face=
=3D"Calibri, sans-serif" color=3D"#000000"><b>From:</b> Rich Salz via Datat=
racker &lt;noreply@ietf.org&gt;<br>
<b>Sent:</b> Tuesday, March 22, 2022 11:24 AM<br>
<b>To:</b> secdir@ietf.org &lt;secdir@ietf.org&gt;<br>
<b>Cc:</b> draft-ietf-drip-auth.all@ietf.org &lt;draft-ietf-drip-auth.all@i=
etf.org&gt;; tm-rid@ietf.org &lt;tm-rid@ietf.org&gt;<br>
<b>Subject:</b> Secdir early review of draft-ietf-drip-auth-05</font>
<div>&nbsp;</div>
</div>
<div class=3D"BodyFragment"><font size=3D"2"><span style=3D"font-size:11pt"=
>
<div class=3D"PlainText">Reviewer: Rich Salz<br>
Review result: Has Issues<br>
<br>
I know nothing about DRIP. I skimmed RFC 9153 and the suggested draft.<br>
Take thesze comments with appropriate skepticism.</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">Will do - it is a fair bit to grok so understandab=
le.</div>
<div class=3D"PlainText">&lt;/atw&gt;<br>
</div>
<div class=3D"PlainText"><br>
ASTM needs to be expanded.</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">I saw Stu responded to this for you.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">Are &quot;pages&quot; basically packets? A confirm=
ation/explanation, perhaps in the<br>
definitions section would help. The definitions points to drip-requirements=
<br>
draft, but then documents &quot;aircraft&quot;?&nbsp; Really? :)<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">The Authentication Pages could be considered packe=
ts (especially on Bluetooth 4). They are part of a much larger Bluetooth fr=
aming structure that it is sent in a single shot.
<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">The 'aircraft' definition is probably unnecessary =
at this point and I will make it an action item to remove it and fix any te=
xt that needs adjusting because of it. To be honest it was me being lazy an=
d not wanting to comb the document
 to add &quot;Unmanned&quot; in front of every instance.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;<br>
</div>
<div class=3D"PlainText"><br>
There are far too many one-paragraph sections.&nbsp; Come up with broader t=
itles<br>
and merge things a bit; I think it will read better. I know kthis is not a<=
br>
trivial amount of work.</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">This was a stylistic choice on my part so good to =
hear some feedback on it.
<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">My intention was that specific fields that are lat=
er referenced in the document to explicitly state what nests into what woul=
d be easier with section headers for them rather than pointing to a general=
 section and have to dig through some
 text in section to figure things out.</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">I will play with collapsing some of them and seein=
g how it flows.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">Sec 3.3.1: the bit numbering is opposite of what I=
'm used to (i.e., 31-&gt;0,<br>
this is 0-&gt;31).&nbsp; This holds for all other ascii-art protocol blocks=
.<br>
Consider breaking up the top byte into two nibbles AH and PH Pad out AuthTy=
pe<br>
into</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">I will double check but the document we work from =
(ASTM F3411) is 0-&gt;31 and not the IETF convention of 31-&gt;0. This thre=
w me off too at first. I can easily flip it as it really doesn't matter eit=
her way I think.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">Sec 3.3.2 the constraints/requirements should be f=
irst.<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">This is a hard section to find a place. A new read=
er with no context of the fields I reference could find the text puzzling t=
o understand. This was why I place it at the end of section 3 rather than t=
he beginning.
<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">I will see if I can do some re-arrangements. I sup=
pose forward references aren't the worst thing.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;<br>
</div>
<div class=3D"PlainText"><br>
Sec 4.1.2.1 Put spaces between the logical parts of the bytes:<br>
&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp;&nbsp; 12 50098960bf8c0504200100100 0a0=
0145aac6b00abba268b7<br>
Is that correct?&nbsp; Why only the last 23?&nbsp; Maybe I am missing some<=
br>
other checksum, or don't know enough about Reed-Solomon.<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">The correct breakdown of the line you have is this=
:</div>
<div class=3D"PlainText"><font size=3D"2"><span style=3D"font-size:11pt">12=
 50 098960bf8c05 042001001000a00145aac6b00abba268b7</span></font><br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">The last 23-bytes are used as the first two bytes =
are well known to a receiver. The first byte being Protocol Version and Mes=
sage Type - this won't change in the middle of a Authentication Message fro=
m a transmitter and it has other pages
 to reference to get the value. The second byte is the AuthType and Page Nu=
mber - AuthType does not change in a message being reconstructed while Page=
 Number is contextual. If there are 3 pages (0 indexed) and you only receiv=
ed Page 0 and Page 2 - then the
 missing one is Page 1. For these reasons there is no need to perform the R=
eed Solomon FEC operation over the bytes - there used to be more explicit t=
ext about this - perhaps it got lost?<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">I think this indicates the text in this section st=
ill needs work and more detailed reviews from others.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;<br>
</div>
<div class=3D"PlainText"><br>
Sec 5, &quot;UNIX timestamp offset by ...&quot; you mean Unix-style timesta=
mp<br>
but with an epoch of ... right?&nbsp; Is the &quot;UA signature&quot; defin=
ed<br>
somewhere?&nbsp; Same question about the signatures in Sec 6, etc.<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">Yes a Unix-style timestamp. I will adjust the word=
ing. <br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">The structure in Section 5 is more formally define=
d in draft-ietf-drip-registries. This section is more of an abbreviated &qu=
ot;copy-paste&quot; of it so its inline in this document. It's just in this=
 document I explicitly set certain field values
 that are different from the other document.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;<br>
</div>
<div class=3D"PlainText"><br>
Related question, where are the algorithms for the &quot;Message Hash&quot;=
<br>
and other hashes within the doc defined?&nbsp; Should be a forward referenc=
e.<br>
Or worse, it's an external reference?</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">The algorithm for the Message Hash is bound to the=
 hash algorithm used to generate the DET. This is defined in draft-ietf-dri=
p-uas-rid. So its an external reference that needs to be more well explaine=
d and called out.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;</div>
<div class=3D"PlainText"><br>
Sec 6.3.5.1 &quot;multiplexing&quot; seems out of place.<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">Perhaps it is the wrong word here. Sub-type is pro=
bably the better term.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;<br>
</div>
<div class=3D"PlainText"><br>
General comment, putting all limitations, constraints, requirements, etc.,<=
br>
should be up front.</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">Understood. To me it seems a bit odd to have Secti=
on 7 near the top but perhaps forward referencing into the document is not =
the worst thing in this case if the implementation makes his choice from th=
at section and just clicks the link
 to go to the relevant section to know implementation details.</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">Guess I am old school and read the full document f=
irst and attempt to understand everything the author wrote and tried to con=
vey rather than jump around sections. :-)<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;<br>
</div>
<div class=3D"PlainText"><br>
Is Appendix A useful here?&nbsp; I don't see how.</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">&lt;atw&gt;</div>
<div class=3D"PlainText">ASTM F3411 Authentication has really only 3 states=
: None, Invalid or Valid. This is because under ASTM the idea is that Authe=
ntication is done by an external service hosted somewhere on the Internet s=
o you will always get some sort of
 answer back. With DRIP this classification becomes more complex as we supp=
ort &quot;offline&quot; scenarios where the receiver does not have Internet=
 connectivity. Since we are using asymmetric keys this means the public key=
 must somehow be obtained - DRIP Registries
 gets more into detail how these keys are stored on DNS and one reason for =
DRIP Authentication is to send the key over Broadcast RID.<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">There are two keys of interest: the PK of the UA a=
nd the PK of the HDA (or Registry). The draft gives a clear way to send the=
 PK of the UA over the Broadcast RID messages - however the PK of the Regis=
try is not. It can be using the same
 mechanism but is not required to do so due to potential operational constr=
aints and implementation of a given UA transmitter. As such there are scena=
rios where you may have part of the key-chain but not all of it.<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">The intent of Appendix A is to give some kind of r=
ecommended way to classify these various states and convey it to the user t=
hrough colors and state names/text.<br>
</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">I will add some introductory text in this area to =
better explain why it is included at all.<br>
</div>
<div class=3D"PlainText">&lt;/atw&gt;</div>
<div class=3D"PlainText"><br>
</div>
<div class=3D"PlainText">The sample messages in C do not seem useful, as th=
ey seem to be repeating<br>
just the packet layouts.&nbsp; I do not understand what the &quot;Hex&quot;=
 values in<br>
C.3 mean and there seems to be no way to re-compute/verify them.<br>
<br>
&lt;atw&gt;</div>
<div class=3D"PlainText">They were added to give context for someone who ma=
y have a hard time grokking the packet layouts and the various nesting. The=
 hex values were taken from a running implementation log of such messages t=
o give an example of what would be
 seen over the air.</div>
<div class=3D"PlainText">&lt;/atw&gt;<br>
</div>
</span></font></div>
</body>
</html>

--_000_SN6PR13MB2446482E06CA4A8AF282D77F88189SN6PR13MB2446namp_--


From nobody Wed Mar 23 09:35:45 2022
Return-Path: <rsalz@akamai.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 796493A08B1; Wed, 23 Mar 2022 09:35:31 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.107
X-Spam-Level: 
X-Spam-Status: No, score=-2.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=akamai.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ZTKSDyHsRM_x; Wed, 23 Mar 2022 09:35:27 -0700 (PDT)
Received: from mx0b-00190b01.pphosted.com (mx0b-00190b01.pphosted.com [IPv6:2620:100:9005:57f::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id AA6A53A17C4; Wed, 23 Mar 2022 09:35:25 -0700 (PDT)
Received: from pps.filterd (m0050102.ppops.net [127.0.0.1]) by m0050102.ppops.net-00190b01. (8.16.1.2/8.16.1.2) with ESMTP id 22NEMxxv026581; Wed, 23 Mar 2022 16:35:23 GMT
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=akamai.com; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=jan2016.eng; bh=5vyKGBF2vT+FbgyU073IYfPrFU3IIVgWTstsq86erBY=; b=EUCqnsE/mMXEg7zPOcR1Gj4LUD99xyMSVBaVi1JkniiYyEzaiclkIJ2pHGdbW5IysWUq CRihsBLtgdzcF6oLhDcU7Hn9ySNhMbVEN0lGoYRan5Pxvdwh+G8iBbG4VEJ8U0VZJxyQ jWv1tbSO5AbQLXUMkklLw8SGXh1jtT53gIGOCM3ERrlZ7Xm9sbWNtxFHIu3dgM8iJq9u GbvHALf0bo4iVK9SSp2oalvqHRPPCFXWh0dHE21TjekFtmQK4R3gxqgmANestvqMZCsG dOonwOoPA1egNCaTc5EwEOlFNPPsWe6twdkeA8+a8HLFuq/4h7WcsnYMyWEalhgO1LFV 3A== 
Received: from prod-mail-ppoint5 (prod-mail-ppoint5.akamai.com [184.51.33.60] (may be forged)) by m0050102.ppops.net-00190b01. (PPS) with ESMTPS id 3ew54kv16j-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Wed, 23 Mar 2022 16:35:23 +0000
Received: from pps.filterd (prod-mail-ppoint5.akamai.com [127.0.0.1]) by prod-mail-ppoint5.akamai.com (8.16.1.2/8.16.1.2) with SMTP id 22NGJrSK009951; Wed, 23 Mar 2022 09:35:22 -0700
Received: from email.msg.corp.akamai.com ([172.27.123.33]) by prod-mail-ppoint5.akamai.com with ESMTP id 3ewd5axg5f-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NOT); Wed, 23 Mar 2022 09:35:22 -0700
Received: from usma1ex-dag1mb6.msg.corp.akamai.com (172.27.123.65) by usma1ex-dag4mb5.msg.corp.akamai.com (172.27.91.24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384) id 15.2.986.5;  Wed, 23 Mar 2022 12:35:22 -0400
Received: from USMA1EX-DAG1MB1.msg.corp.akamai.com (172.27.123.101) by usma1ex-dag1mb6.msg.corp.akamai.com (172.27.123.65) with Microsoft SMTP Server (TLS) id 15.0.1497.32; Wed, 23 Mar 2022 12:35:21 -0400
Received: from USMA1EX-DAG1MB1.msg.corp.akamai.com ([172.27.123.101]) by usma1ex-dag1mb1.msg.corp.akamai.com ([172.27.123.101]) with mapi id 15.00.1497.033; Wed, 23 Mar 2022 12:35:21 -0400
From: "Salz, Rich" <rsalz@akamai.com>
To: Adam Wiethuechter <adam.wiethuechter@axenterprize.com>, "secdir@ietf.org" <secdir@ietf.org>
CC: "draft-ietf-drip-auth.all@ietf.org" <draft-ietf-drip-auth.all@ietf.org>, "tm-rid@ietf.org" <tm-rid@ietf.org>
Thread-Topic: Secdir early review of draft-ietf-drip-auth-05
Thread-Index: AQHYPtLDjn2MZLM9Kkudjc51e+bT4qzNKlMA
Date: Wed, 23 Mar 2022 16:35:20 +0000
Message-ID: <2C5F74D0-F72E-464C-898C-DAD26657F442@akamai.com>
References: <164796264611.30352.8191375984632777321@ietfa.amsl.com> <SN6PR13MB2446482E06CA4A8AF282D77F88189@SN6PR13MB2446.namprd13.prod.outlook.com>
In-Reply-To: <SN6PR13MB2446482E06CA4A8AF282D77F88189@SN6PR13MB2446.namprd13.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
user-agent: Microsoft-MacOutlook/16.59.22031300
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [172.27.118.139]
Content-Type: multipart/alternative; boundary="_000_2C5F74D0F72E464C898CDAD26657F442akamaicom_"
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.425, 18.0.850 definitions=2022-03-23_04:2022-03-23, 2022-03-23 signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 adultscore=0 mlxlogscore=763 spamscore=0 suspectscore=0 malwarescore=0 phishscore=0 bulkscore=0 mlxscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2202240000 definitions=main-2203230086
X-Proofpoint-GUID: ZbR7c_cljUS7IL8cWH1eW6B1B1Ooa5gJ
X-Proofpoint-ORIG-GUID: ZbR7c_cljUS7IL8cWH1eW6B1B1Ooa5gJ
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.205,Aquarius:18.0.850,Hydra:6.0.425,FMLib:17.11.64.514 definitions=2022-03-23_07,2022-03-23_01,2022-02-23_01
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 suspectscore=0 phishscore=0 impostorscore=0 lowpriorityscore=0 spamscore=0 priorityscore=1501 mlxscore=0 clxscore=1011 mlxlogscore=735 adultscore=0 bulkscore=0 malwarescore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2202240000 definitions=main-2203230087
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/9C0SnsUSI3OqDkHFoaOBirtp_g8>
Subject: Re: [secdir] Secdir early review of draft-ietf-drip-auth-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 23 Mar 2022 16:35:32 -0000

--_000_2C5F74D0F72E464C898CDAD26657F442akamaicom_
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64

VGhhbmtzIGZvciBnaXZpbmcgdGhlIGZlZWRiYWNrIGNvbnNpZGVyYXRpb24uDQo=

--_000_2C5F74D0F72E464C898CDAD26657F442akamaicom_
Content-Type: text/html; charset="utf-8"
Content-ID: <0E33211D681FF14AB0A52E7D705D8CA7@akamai.com>
Content-Transfer-Encoding: base64
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--_000_2C5F74D0F72E464C898CDAD26657F442akamaicom_--


From nobody Wed Mar 23 09:46:13 2022
Return-Path: <d3e3e3@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 43FEB3A17C5; Wed, 23 Mar 2022 09:46:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.858
X-Spam-Level: 
X-Spam-Status: No, score=-1.858 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_ENVFROM_END_DIGIT=0.25, FREEMAIL_FROM=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id zbgBp44iWPZk; Wed, 23 Mar 2022 09:46:05 -0700 (PDT)
Received: from mail-lj1-x229.google.com (mail-lj1-x229.google.com [IPv6:2a00:1450:4864:20::229]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4DAB53A0BB3; Wed, 23 Mar 2022 09:46:05 -0700 (PDT)
Received: by mail-lj1-x229.google.com with SMTP id b5so2644408ljf.13; Wed, 23 Mar 2022 09:46:05 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112;  h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=0g/Pv/zBgc8YdNo7mWJEO+KHb248dw7pzlmTBS1zjsY=; b=poOwmD8hJHIC2eTEiY/cTzanzh3TjIywwrUc8FrdYMo1bzZli0/r2gKn8dgkHI1nv4 fFz1m4w3iudbGbWCjLlSBlYquprplq0qDoRrf/F5dkDmioXN1noDU5P/Lh0x4H19R2Cf VMP+bOpaxODBfXJn70Iu/5h8I+qJAbVy1b8LR8beDGo1/+iJJdYR8behgFfnkmdjr8YN 5BUcwnAcrAOB0aJcYwSjEsTYzxJTXNntZbRwINf1nJUUvhOai6k82gLf2zGi+5Qw5AHc lbiz1qEyZhtxpTEBgp5L0B/77CDH9iArtaozR7d/UvpdrpZ7yNhSoyzpAWoYtwwXXD48 Y2mA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=0g/Pv/zBgc8YdNo7mWJEO+KHb248dw7pzlmTBS1zjsY=; b=ecGGsX3zPlks9+aIqKAOu1E9d1/PwSqsROx10Zjz1YGVvRwnSlqZ7eJ+4n5QjgtUyX 7Pf7cgV5DtLjuRAKFJR/iXpHzQCUJvBfVih9lh2fF5uXLbk5Uiq+xqvrGflpWcRfK/Nn DYfnlKGJmKTfZCyzDmPFFILATYeH3IUE+qBcVuDyz8oSRZa1sZfHrxdsOnZkUlBkOl67 mVn+B9Uz/np/HYZri93kZpT7xLzetS8idqVm+lJBJEZvS8fjN4wGposqHpKJL2Ojyp91 GPRyU2jkzpbH3Xxk/cQAKJElFrXZlDafObiozxkma7ORJ7h6gPak8iEG0jE0s6v8OKFD j7iw==
X-Gm-Message-State: AOAM530aiQBj6MbZA5FkFeEVYsIzXV9N0yFqM14QYJ+vhum5WcfvpcMP 04m7jnwHzc3dZz/H7Y7MnDX3+XDWqb+knWOsdzzG/oSC8co=
X-Google-Smtp-Source: ABdhPJx6ThFgmpR9Tsq+BZk3ODsvT/2+zEOim/nuQjF/92kXaM6Xb2lBh6j96LaOOo5VnBcrHSBLPO79ehTFJ8/4MP0=
X-Received: by 2002:a2e:5858:0:b0:249:3cf6:8724 with SMTP id x24-20020a2e5858000000b002493cf68724mr740607ljd.336.1648053962562; Wed, 23 Mar 2022 09:46:02 -0700 (PDT)
MIME-Version: 1.0
References: <164796264611.30352.8191375984632777321@ietfa.amsl.com> <SN6PR13MB2446482E06CA4A8AF282D77F88189@SN6PR13MB2446.namprd13.prod.outlook.com>
In-Reply-To: <SN6PR13MB2446482E06CA4A8AF282D77F88189@SN6PR13MB2446.namprd13.prod.outlook.com>
From: Donald Eastlake <d3e3e3@gmail.com>
Date: Wed, 23 Mar 2022 12:45:51 -0400
Message-ID: <CAF4+nEG0wOp3Vxi0oZ0e+10JnZuRNKSdRY23xJT4f=r=8yrjXg@mail.gmail.com>
To: Adam Wiethuechter <adam.wiethuechter@axenterprize.com>
Cc: "secdir@ietf.org" <secdir@ietf.org>, Rich Salz <rsalz@akamai.com>,  "tm-rid@ietf.org" <tm-rid@ietf.org>,  "draft-ietf-drip-auth.all@ietf.org" <draft-ietf-drip-auth.all@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/2qKpqZ0MYxgij69vJaGDkwfhBiQ>
Subject: Re: [secdir] Secdir early review of draft-ietf-drip-auth-05
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 23 Mar 2022 16:46:11 -0000

Just a quick comment.

On Wed, Mar 23, 2022 at 12:26 PM Adam Wiethuechter
<adam.wiethuechter@axenterprize.com> wrote:
> ...
> ________________________________
> From: Rich Salz via Datatracker <noreply@ietf.org>
> Sent: Tuesday, March 22, 2022 11:24 AM
> ...
> <atw>
> I will double check but the document we work from (ASTM F3411) is 0->31 and not the IETF convention of 31->0. This threw me off too at first. I can easily flip it as it really doesn't matter either way I think.
> </atw>

Maybe I am confused, but I believe the IETF usual bit ordering is from
0 at the left through 31 (or 15 or whatever) at the right. So the
diagrams in this draft look perfectly normal and expected to me.

Thanks,
Donald
===============================
 Donald E. Eastlake 3rd   +1-508-333-2270 (cell)
 2386 Panoramic Circle, Apopka, FL 32703 USA
 d3e3e3@gmail.com


From nobody Thu Mar 24 03:30:33 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 9C3A43A18B8; Thu, 24 Mar 2022 03:30:29 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: Vincent Roca via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
Cc: bier@ietf.org, draft-ietf-bier-bar-ipa.all@ietf.org, last-call@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <164811782957.30345.1786492893062018914@ietfa.amsl.com>
Reply-To: Vincent Roca <vincent.roca@inria.fr>
Date: Thu, 24 Mar 2022 03:30:29 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/Op1zTdlXbYWug6R530i2YMUWXBA>
Subject: [secdir] Secdir last call review of draft-ietf-bier-bar-ipa-10
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 Mar 2022 10:30:30 -0000

Reviewer: Vincent Roca
Review result: Ready

Hello,

I have reviewed this document as part of the security directorate’s ongoing
effort to review all IETF documents being processed by the IESG. These
comments were written primarily for the benefit of the security area
directors.  Document editors and WG chairs should treat these comments just
like any other last call comments.

Summary: Ready

I have no comment regarding the security part, little is said in section 6 which
seems appropriate. The three RFCs referenced are appropriate and I agree with
the authors the present document does not change the situation.

However, I have a few comments on non-SecDir aspects, so feel free to ignore it.

For someone who's not aware of the topic, the abstract and introduction are really
obscur and of little help to understand the context (e.g., no mention of multicast).
After reading the abstract of RFC8279, then everything became clear.
Sure, RFC8279 is prominently mentioned in the introduction, yet I think a sentence
to position this document in the full architecture would be very helpful.

Also, the document makes use of several acronyms that are not defined:
Section 1 mentions BFERs that is never defined/expended.
Section 2 mentions BFRs that is defined only in section 3.

Finally, shouldn't step 4 be rewritten to highlight the case where RC(BC(X)),
 is empty as in:
        4.  if (RC(BC(X) non empty)
             then run AG on RC(BC(X) 
             else throw an exception.
As explained in Section 4, this is an exception caused by a bad network design.

Typo: 

- Section 2: mistake, this is probably RFC 8444 and not 8441.
>   The definition for the BAR and IPA fields in [RFC8401] and [RFC8441]
>   are updated as following.

Cheers,

   Vincent



From nobody Thu Mar 24 13:30:43 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 782743A14D4 for <secdir@ietf.org>; Thu, 24 Mar 2022 13:30:41 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: Tero Kivinen via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: secdir-secretary@mit.edu, Tero Kivinen <kivinen@iki.fi>
Message-ID: <164815384146.30345.11702361649484508036@ietfa.amsl.com>
Date: Thu, 24 Mar 2022 13:30:41 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/AqD2A9eHxUetMIrLCjPpcdRgu0w>
Subject: [secdir] Assignments
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 Mar 2022 20:30:42 -0000

Review instructions and related resources are at:
https://trac.ietf.org/trac/sec/wiki/SecDirReview

For telechat 2022-04-07

Reviewer               LC end     Draft
Watson Ladd           R2022-02-08 draft-ietf-detnet-bounded-latency
Aanchal Malhotra       2022-02-03 draft-ietf-bfd-rfc9127-bis
Sandra Murphy          2020-10-15 draft-ietf-tls-external-psk-importer

Last calls:

Reviewer               LC end     Draft
Alan DeKok             2021-12-30 draft-ietf-sidrops-6486bis
Daniel Franke          2022-01-19 draft-ietf-pim-igmp-mld-extension
Daniel Gillmor         2022-01-28 draft-ietf-rats-yang-tpm-charra
Watson Ladd           R2022-02-08 draft-ietf-detnet-bounded-latency
Aanchal Malhotra       2021-10-15 draft-ietf-kitten-tls-channel-bindings-for-tls13
Aanchal Malhotra       2022-02-03 draft-ietf-bfd-rfc9127-bis
Sandra Murphy          2022-03-07 draft-rsalz-2028bis
Sandra Murphy          2020-10-15 draft-ietf-tls-external-psk-importer
Tirumaleswar Reddy.K   2022-04-07 draft-koster-rep
Stefan Santesson       2022-04-07 draft-ietf-teep-otrp-over-http
Stefan Santesson       2021-08-11 draft-ietf-bier-te-arch
Benjamin Schwartz      2022-04-07 draft-ietf-teep-architecture
Rifaat Shekh-Yusef     2022-04-05 draft-ietf-avtcore-cryptex
Melinda Shore          2022-04-08 draft-ietf-tls-subcerts
Valery Smyslov         2022-04-06 draft-ietf-drip-arch
Robert Sparks          2022-04-06 draft-ietf-6lo-use-cases
Tina Tsou              2022-04-04 draft-ietf-raw-ldacs
Brian Weis             2021-08-19 draft-ietf-dnsop-svcb-https
Klaas Wierenga         2020-05-26 draft-ietf-kitten-krb-spake-preauth
Liang Xia              2021-03-17 draft-ietf-core-sid

Early review requests:

Reviewer               Due        Draft
Stephen Farrell        2021-09-15 draft-ietf-ippm-ioam-direct-export
Stephen Farrell        2021-06-21 draft-ietf-idr-bgpls-srv6-ext
Tina Tsou              2021-08-25 draft-ietf-opsawg-sbom-access
Loganaden Velvindron   2021-08-18 draft-ietf-taps-arch

Next in the reviewer rotation:

  Sean Turner
  Loganaden Velvindron
  Mališa Vučinić
  Carl Wallace
  Samuel Weiler
  Brian Weis
  Klaas Wierenga
  Christopher Wood
  Liang Xia
  Dacheng Zhang


From nobody Thu Mar 24 15:52:57 2022
Return-Path: <zzhang@juniper.net>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BD6643A0D98; Thu, 24 Mar 2022 15:52:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.109
X-Spam-Level: 
X-Spam-Status: No, score=-2.109 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b=Aq8F1SAw; dkim=pass (1024-bit key) header.d=juniper.net header.b=BlaKPeVG
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dMqrE4RaOzcE; Thu, 24 Mar 2022 15:52:48 -0700 (PDT)
Received: from mx0a-00273201.pphosted.com (mx0a-00273201.pphosted.com [208.84.65.16]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 30A9E3A113E; Thu, 24 Mar 2022 15:52:33 -0700 (PDT)
Received: from pps.filterd (m0108159.ppops.net [127.0.0.1]) by mx0a-00273201.pphosted.com (8.16.1.2/8.16.1.2) with ESMTP id 22OMYdKs002873; Thu, 24 Mar 2022 15:52:32 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : content-transfer-encoding : mime-version; s=PPS1017; bh=GkPUQOVjFwNKFQoUQjRHxlzUiEiz+ii4XpVFH+DIATA=; b=Aq8F1SAw5Q5zfqQY644xn5nlTNL4isBaSP3zeSdtoRosx8Kb3FYt/SLp2sv9qed1vWfP aGzI0zzVfvyVRcObrr/IAe4++NBhF29F0tOFT7UFamXgc1t7IihuK9tMJG4oT6gqHgn2 b61BmgcT2l7UpfHYNg0YQozm80IhOWPVsROMGqXEZgXHOJd+RVg3vdCqunSu6zvQR2BV D1pCou9JeQn+lezW4xPfFrSdXXNy6aV8zV1840WO6raNtTQQ9zJdRqa2d/2ErTqdMCkj b0d2qMLBHe9LIEKuC2PuLixdrhvutcSOmw4SVwJFvzwmJ4c45qXPr5YLCj9PqLFyOPm8 tA== 
Received: from nam10-bn7-obe.outbound.protection.outlook.com (mail-bn7nam10lp2100.outbound.protection.outlook.com [104.47.70.100]) by mx0a-00273201.pphosted.com (PPS) with ESMTPS id 3f11jbr0sq-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Thu, 24 Mar 2022 15:52:31 -0700
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=JB2YuSKZ5WRctbvN1GpsiPCbQGYNe914eOPC9bI9rmNnp0wxt2VSC7S8IoiGn1AuNaHqcS8WA2SQddRzKucg20Cy6twK+DvJLGRyVJvODlSK6FxK8LctJW7BAWf5Gqsi2iW8MmQuo1P0+FuYlxB7AhHoSUECH2W0eImL4nmzjL+SomSiHtbqNsdMfsNdnxoCZEyol+Zqa3QQhbRbDZ790Z//OyQ8WfbeDzO3SNJBWJ8d5S89n505LQK/vAxIHPofnIOCshiCXEmeAXnwoKOfDIm9IvaHRB+pf+1Ksos7UVvUwaCELBMZG4qjh7h3/Nr7dgjol+61HaCGLrsSN5ZHLw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;  s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=GkPUQOVjFwNKFQoUQjRHxlzUiEiz+ii4XpVFH+DIATA=; b=Jjq1+5VMAeNapRhnkOF5YFYCxSZrDaCBQizwZgKJ3YzJRrP20T9q34KYFEqsUADIly1oi5kQimUclPQz7LLIAO/SUVyhZJo6x19L5CZ0y0a8aLyxf5G6HJjQqlPaDpR+QProTqEWEsjHFpj0PWpKqepzI4GSk8jg567ETQ6idU7t91cAPYL/pXFrUovXoOP1SiVveG+Skr5lxu1gWdyEfy4k8nChOlaUbRY6W1DcL4VSTy8OoXyuBqzZTK1C1vfDiinEbllsIP1qiCkz3jywo//SzHdet6wOgDguaHTX8vrUh1IhSjdc7wTJQ2tycQTWPiaG7HvivarxSUxtpLlpYA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=GkPUQOVjFwNKFQoUQjRHxlzUiEiz+ii4XpVFH+DIATA=; b=BlaKPeVGCmCAWcgY0DbRJa8sBCW4E7/aCigZUjyjlKOe96MIO7i7f5n5L/OaAL/TLaIGSXuB9PtU6elVpmgYv62L2C5ETy0T+Hljqbi/w2kXsGmoKT3ZOLFFzZylYhF596dZOhDZdyUJKGneaW1WCD/xbk7HeLSCaDOZiTDyzWo=
Received: from BL0PR05MB5652.namprd05.prod.outlook.com (2603:10b6:208:6a::19) by SN6PR05MB4000.namprd05.prod.outlook.com (2603:10b6:805:27::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5102.11; Thu, 24 Mar 2022 22:52:29 +0000
Received: from BL0PR05MB5652.namprd05.prod.outlook.com ([fe80::dd5:3242:3508:3cf9]) by BL0PR05MB5652.namprd05.prod.outlook.com ([fe80::dd5:3242:3508:3cf9%5]) with mapi id 15.20.5102.017; Thu, 24 Mar 2022 22:52:29 +0000
From: "Jeffrey (Zhaohui) Zhang" <zzhang@juniper.net>
To: Vincent Roca <vincent.roca@inria.fr>, "secdir@ietf.org" <secdir@ietf.org>,  Alvaro Retana <aretana.ietf@gmail.com>
CC: "bier@ietf.org" <bier@ietf.org>, "draft-ietf-bier-bar-ipa.all@ietf.org" <draft-ietf-bier-bar-ipa.all@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>
Thread-Topic: Secdir last call review of draft-ietf-bier-bar-ipa-10
Thread-Index: AQHYP2ozT1FWak0YKUGFDEEdaUnkRazPItLA
Date: Thu, 24 Mar 2022 22:52:28 +0000
Message-ID: <BL0PR05MB5652070E602F927B1FB353EAD4199@BL0PR05MB5652.namprd05.prod.outlook.com>
References: <164811782957.30345.1786492893062018914@ietfa.amsl.com>
In-Reply-To: <164811782957.30345.1786492893062018914@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-Mentions: vincent.roca@inria.fr
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
dlp-product: dlpe-windows
dlp-version: 11.9.0.81
dlp-reaction: no-action
msip_labels: MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Enabled=true; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SetDate=2022-03-24T22:52:26Z;  MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Method=Standard; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Name=0633b888-ae0d-4341-a75f-06e04137d755; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SiteId=bea78b3c-4cdb-4130-854a-1d193232e5f4; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ActionId=ebb71363-89ea-4c98-b68d-fbd4b109e11a; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ContentBits=2
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 72a908b2-1db3-43a6-a65a-08da0de8f933
x-ms-traffictypediagnostic: SN6PR05MB4000:EE_
x-ms-exchange-atpmessageproperties: SA|SL
x-microsoft-antispam-prvs: <SN6PR05MB40002C95E2FC72A708123A01D4199@SN6PR05MB4000.namprd05.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:;  IPV:NLI; SFV:NSPM; H:BL0PR05MB5652.namprd05.prod.outlook.com; PTR:; CAT:NONE;  SFS:(13230001)(4636009)(366004)(186003)(54906003)(316002)(66574015)(110136005)(83380400001)(26005)(86362001)(66946007)(52536014)(4326008)(66476007)(5660300002)(76116006)(66556008)(64756008)(66446008)(8936002)(38070700005)(2906002)(8676002)(122000001)(38100700002)(71200400001)(7696005)(6506007)(9686003)(33656002)(508600001)(55016003)(53546011); DIR:OUT; SFP:1102; 
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: =?utf-8?B?SDlQOWl1RHM0bjlMWSs3QzcrU0JYSVdBQVd3U1FJcDA2N0pKdlVhTjUzNzZV?= =?utf-8?B?ZUhsblV6ektmNWM2SFVnUG1FVjhiTkJNYTU0RlZ2ZlNJQ2Y3QTM5bEFXWkJZ?= =?utf-8?B?SHlIcHk0aUlnd2FYd043aEtOZHBlU012Q3RNZW1KaThMWDc0aFZHcUhqVkt1?= =?utf-8?B?T0JSODYvWlhnbnlHUzdadzJKSGZUYVhoZTc2S0Vkd2pjK2tvdThKakF1dnk4?= =?utf-8?B?ZlhCalZEUG5KU0lqamUzaWhXMExSODViVVBBTzMrWjFDR1dMWTVPNEZYWlYy?= =?utf-8?B?ZlFqYWZmak8rS1RPb0NQSkVvaW1ldEVoaTBaTk5zOUJKN3RKYXpqckRCM2I3?= =?utf-8?B?cHpPYkRLSWx2REs3OWFIQVh6c1dSOXQ2eVFVbERKTzZHWTArc0tZZVhUZGxp?= =?utf-8?B?ZmRWemlLK2dCM2ZwRGwrZmIyR1hJc3h1UGcwUTVZVHUyb3BrMUFxbzBjdHFo?= =?utf-8?B?SDY3UHA1Y1lVQ3p5a1RpWmJ3RUZkdWhNSzUxSFdndEtjUC8wcFFVa2h2YWho?= =?utf-8?B?QmxlZGtSdm9nTnNDOEg4T3JReXp3eVo1L2ZxRzFiUTNYT1VGOUpTbHZqa092?= =?utf-8?B?eDJYR1NPbHNPcFdJTk4ySm9MQmZmTGNyOGVZMkRDZ0tUenJob3V2NlgrRXdo?= =?utf-8?B?MnhSM1lTQlVGMEh1M2NpbTN4ZFBnTUhIVFNlRDBHYnVGQVNmc0lqTThlQnlj?= =?utf-8?B?QldOMGNjZDZJUTZ4VGpmbnpkTXFxZ3dWVkNUcTkzTWF2dmk4UmZSYUgxTHNh?= =?utf-8?B?RXlvVk0wdm9RWkFNcXFlMXdSL3Nyb0Jxd25LK2hLb0N0YXBZMEl4amZ3NklW?= =?utf-8?B?SWluY2xMZXRQc3dBOGw0YUhKdnRBekhBS1FGR0h3VmxEL1VrVnVNU2RMODE4?= =?utf-8?B?VmcyS0JjVEVxcVlNSGlnWG5FRXcyRHRxYUN2YS94Tm5NTlIyVnBYQVVkanlL?= =?utf-8?B?TnRGR1hCemhKSXpOcVh0NUFLSXkzQlB3M1ZaMEJtaFUrd3JRWGJSUDhPQmFM?= =?utf-8?B?dDFLNThQR2RZTXZOb2x3bXFYTDBaV2NXb0M3MGZoMW1uK2s1eHJrOTlUNTgx?= =?utf-8?B?V3Y3aHU3RTkzMTNScGdnQ3ZrQlJwa0gxZTluM1ZRanVsMG1YaTB4TUVpZ2F6?= =?utf-8?B?cEc4enV1SE84Uk1YeDRvNW9Rd0l2ZFd0S29zOTJmYk5DcGx3dGUvWmp0cHZw?= =?utf-8?B?WjNBZlY2emtyK2ZlVHo1akZkMjhkL0J5U1laZWhUM0lNVnRFSnlmT1ZSOTVW?= =?utf-8?B?UVpZSkRXdDlEWkhsVFUzUS8zemlaOUZpaWdoRkhCUURzTWppaTMzYmVraGJq?= =?utf-8?B?bmFLSnpBeCtpL0pRME1hNUpNcGtvZUw2bXQ0ZkZKY3RiNjJncEtnaDlRSUtx?= =?utf-8?B?NUp3NWpReFh5bjJSdVNuOFpBWUNsUVBkTWgwVGdZVjFJOTRNQnRDc3lYUWNE?= =?utf-8?B?cGZpN3FXL1NzM2QycmtEOGRvR00xbU43UllQK3M0SWVSYmRwdTRsN2NjLytr?= =?utf-8?B?WTBzVHdyQzFBcm10N2FPVTN1aHlpL0Z6Z3NON3ZrT0lqa0ZFNk5Wd2RuQzBq?= =?utf-8?B?elhrd3c0VlBtbUdYUjlUSUJicEtsYVRGaGJJanpLWUZJSzMxTk9sRkg1UGRJ?= =?utf-8?B?VmNFS0E5ckN0M0tqcU95R3E2a3hVb0pYeGtDRTNDZ05jMkVGeGVhNU16SjYr?= =?utf-8?B?eVVFenBFNEJ3V2JmU2k1UzNZdWNvOFZSQS83bzdJUkVLeG9aV1hZMnNxV2pk?= =?utf-8?B?dXhiZmg5NUtOdUtSbXNaNUE4SVFwakcycHlGdEpBMmpiek54azEydDhPSzhG?= =?utf-8?B?TkdKMXJRUDl6SWt6bm4wUmhYRkNkb3FUcmFJMDY3anUrSzAvbDQrSTVVN2xW?= =?utf-8?B?KzhlbUJMdWxSelJ6S0ZwVEpvdnppUHl3MlpheGg2MlBYb1lPd2F1bjVnR2N0?= =?utf-8?B?cHlxZ3dDSDNvalMzYUtHWnpXa082ZklkYVNJRG9rN3NmbU82QU9mVWE0T215?= =?utf-8?B?cDhtZWx6Y0hRUjQ1WWpyVncxVVM0UHY1OGdDV0RWQ0Q5alFiSWxZSW1PQWpy?= =?utf-8?B?d3I3RWxxUyt6RTZxSlQwK1lrRU15cFdObDFEWFVLWjZIeW80S2NRSmdzK00v?= =?utf-8?B?YnJlUWxwZ2FEdmpiS1ZWMlVLV0VRclM3aGtIcExBbFNKOXBxeisvMEpJd3VR?= =?utf-8?B?anVON0NIblRvVEZqdGltenMxb1hXeGorbEJGK2VKa3oxUDM0NDhiMTFVSW9h?= =?utf-8?B?TjgzZk1KSEYzTHdWbk9iUjlwekZtcmJRQklZQlpXMk5raVovOUkzSjkrK1E2?= =?utf-8?B?YUtlcUdUUlNOT2VOUkpHMzVtTVdCWjdMVjdvV3BOQ3Y4Nkxpbnhadz09?=
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BL0PR05MB5652.namprd05.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 72a908b2-1db3-43a6-a65a-08da0de8f933
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Mar 2022 22:52:29.0050 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: iU3LGwO9Iq3cznIpflN9nZy9wRs2nB1KolhtM5ks/mhBmq4ub5AqyXYWbZcTv3ttjRNy1NrC0D7dEQwLrtWJBw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN6PR05MB4000
X-Proofpoint-GUID: rNKh-WYTHC8lA4PmervJV2_vDL8mvAib
X-Proofpoint-ORIG-GUID: rNKh-WYTHC8lA4PmervJV2_vDL8mvAib
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.205,Aquarius:18.0.850,Hydra:6.0.425,FMLib:17.11.64.514 definitions=2022-03-24_08,2022-03-24_01,2022-02-23_01
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 priorityscore=1501 malwarescore=0 clxscore=1011 phishscore=0 adultscore=0 impostorscore=0 suspectscore=0 bulkscore=0 mlxscore=0 lowpriorityscore=0 spamscore=0 mlxlogscore=999 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2202240000 definitions=main-2203240121
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/4mVEMYO4FKUR_FwAg4PGdQckM-s>
Subject: Re: [secdir] Secdir last call review of draft-ietf-bier-bar-ipa-10
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 24 Mar 2022 22:52:54 -0000
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From nobody Tue Mar 29 08:31:27 2022
Return-Path: <rjsparks@nostrum.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AB5AA3A153D; Tue, 29 Mar 2022 08:31:06 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.503
X-Spam-Level: 
X-Spam-Status: No, score=-1.503 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_INVALID=0.1, DKIM_SIGNED=0.1, KHOP_HELO_FCRDNS=0.186, T_SCC_BODY_TEXT_LINE=-0.01, T_SPF_HELO_PERMERROR=0.01, T_SPF_PERMERROR=0.01, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=fail (1024-bit key) reason="fail (message has been altered)" header.d=nostrum.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id IcipLXklzMWL; Tue, 29 Mar 2022 08:31:02 -0700 (PDT)
Received: from nostrum.com (raven-v6.nostrum.com [IPv6:2001:470:d:1130::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6701A3A1A3B; Tue, 29 Mar 2022 08:31:02 -0700 (PDT)
Received: from [192.168.1.114] ([47.186.48.51]) (authenticated bits=0) by nostrum.com (8.17.1/8.16.1) with ESMTPSA id 22TFUxF1086954 (version=TLSv1.3 cipher=TLS_AES_256_GCM_SHA384 bits=256 verify=NO); Tue, 29 Mar 2022 10:30:59 -0500 (CDT) (envelope-from rjsparks@nostrum.com)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=nostrum.com; s=default; t=1648567860; bh=KLAnVyXhUqSMLl7jZaIkW1V9xiOU1YRb/tQiXz5B+QI=; h=Date:To:From:Reply-To:Subject; b=SdysDfZ1IcXpxE4k/NrWd9ui58tBEEyry3oDx3SoGBQAXTSOUCXwk7Q70B4H7wYi8 VJLJJ9aT7gNfDGVGM98g8ovPAyVB4RmtHHQKIi8tolyVpkmoquLYNQnwJuzBHsMNL5 tnNrEYeGEiK9o38b+jy4yKvYTSPN3m1NttNpOYdo=
X-Authentication-Warning: raven.nostrum.com: Host [47.186.48.51] claimed to be [192.168.1.114]
Message-ID: <3a9558f0-a9c2-d973-dab2-768dd190fb66@nostrum.com>
Date: Tue, 29 Mar 2022 10:30:54 -0500
MIME-Version: 1.0
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:91.0) Gecko/20100101 Thunderbird/91.7.0
Content-Language: en-US
To: secdir@ietf.org, yang-doctors@ietf.org, gen-art@ietf.org, int-dir@ietf.org, iot-directorate@ietf.org, ops-dir@ietf.org, rtg-dir@ietf.org, tsv-art@ietf.org, art@ietf.org, i18ndir@ietf.org
From: Robert Sparks <rjsparks@nostrum.com>
Reply-To: tools-discuss <tools-discuss@ietf.org>
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/VXU2rAQ_88GhcVxqGW4-JadrVsY>
Subject: [secdir] Proposed change to review assignment email subject
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 29 Mar 2022 15:31:08 -0000

Please take note of 
https://github.com/ietf-tools/datatracker/discussions/3760. If the 
change proposed there will cause problems for you, add a comment there, 
or reply to tools-discuss@ietf.org to let us know.

RjS


From nobody Wed Mar 30 06:51:31 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 614243A18A9; Wed, 30 Mar 2022 06:51:29 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: Valery Smyslov via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
Cc: draft-ietf-drip-arch.all@ietf.org, last-call@ietf.org, tm-rid@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <164864828914.19999.4038160950945043224@ietfa.amsl.com>
Reply-To: Valery Smyslov <valery@smyslov.net>
Date: Wed, 30 Mar 2022 06:51:29 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/qNNxTjsAXCHRF8Y700kkN1v2qj8>
Subject: [secdir] Secdir last call review of draft-ietf-drip-arch-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 Mar 2022 13:51:30 -0000

Reviewer: Valery Smyslov
Review result: Has Issues

The topic of the draft is complex and involves many fields which I'm not expert
of. The overall architecture looks secure, however it's difficult for me to
analyse all the details. Nevertheless, it seems to me that there are some
security issues with the draft.

1. Section 3.2

   A UA equipped for Broadcast RID SHOULD be provisioned not only with
   its HHIT but also with the HI public key from which the HHIT was
   derived and the corresponding private key, to enable message
   signature.  A UAS equipped for Network RID SHOULD be provisioned
   likewise; the private key resides only in the ultimate source of
   Network RID messages (i.e., on the UA itself if the GCS is merely
   relaying rather than sourcing Network RID messages).  Each Observer
   device SHOULD be provisioned either with public keys of the DRIP
   identifier root registries or certificates for subordinate
   registries.

I wonder why SHOULDs are used here and not MUSTs. In which cases it's OK not to
equip e.g. UAs with private keys and how they will perform digital signatures
in this case? Am I missing something?

2. It is not clear for me how revocation is done in case the private key of UA
is compromised. While the Security considerations section states that
revocation procedures are yet to be determined, I think that some text about
the directions in which they are planned to be determined should be present.

3. Section 9.

   The size of the public key hash in the HHIT is also of concern.  It
   is well within current server array technology to compute another key
   pair that hashes to the same HHIT.

If I understand the draft correctly, the size of public key hash is 20 or 19
octets (Section 3.1). Finding another key pair that hashes to the same hash
requires second preimage attack, which must take in this case 2^160 or 2^152.
In my understanding of the state-of-art, it's still beyond possibilities of
current computers. Am I missing something?

4. The Security Considerations section is silent about possible impact of
Cryptographically Relevant Quantum Computers. While it's not clear whether such
computers will be ever build, the proposed architecture looks fragile with
respect to them. First, from my understanding the architecture, private/public
key pairs in UA are relatively long-lived and difficult to update. This gives
an attacker plenty of time to break them and once they are broken, enough time
to exploit. Second, the impact of breaking can be substantial due to the nature
of UA (a potentially dangerous object). Third, while many protocols involved in
this architecture can be upgraded with quantum safe cryptographic primitives,
it seems to me that for some pieces it will be really challenging (e.g. the
draft discusses limitations on payload size for Bluetooth, which will be more
severe with PQ cryptography with much larger keys and signatures). I think this
issue must be addressed somehow, at least mentioned.

5. While an example when one UA physically steals UAS RID sender of another UA
is clever, I think that such scenarios (physical security) are not in scope of
IETF work. I believe that many others similar schemes can be invented, so I
suggest to discuss physical security in a separate subsection of Section 9.

Not related to security:

Section 3.2:

   A self-attestation of a HHIT used as a UAS ID can be done in as
   little as 84 bytes when Ed25519 [RFC8032] is used, by avoiding an
   explicit encoding technology like ASN.1 or Concise Binary Object
   Representation (CBOR [RFC8949]).  This attestation consists of only
   the HHIT, a timestamp, and the EdDSA signature on them.

If no encoding is used then how extensibility is achieved?

I also wonder how algorithm agility property is achieved for broadcast RID
messages.




From nobody Wed Mar 30 07:48:11 2022
Return-Path: <rgm@labs.htt-consult.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 157583A0B68; Wed, 30 Mar 2022 07:48:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.911
X-Spam-Level: 
X-Spam-Status: No, score=-1.911 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, NICE_REPLY_A=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qwDMIii8ZWhG; Wed, 30 Mar 2022 07:48:01 -0700 (PDT)
Received: from z9m9z.htt-consult.com (z9m9z.htt-consult.com [23.123.122.147]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 146CC3A0B6C; Wed, 30 Mar 2022 07:47:31 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by z9m9z.htt-consult.com (Postfix) with ESMTP id 5FEE46256E; Wed, 30 Mar 2022 10:46:40 -0400 (EDT)
X-Virus-Scanned: amavisd-new at htt-consult.com
Received: from z9m9z.htt-consult.com ([127.0.0.1]) by localhost (z9m9z.htt-consult.com [127.0.0.1]) (amavisd-new, port 10024) with LMTP id nHCn4Mv7F-57; Wed, 30 Mar 2022 10:46:31 -0400 (EDT)
Received: from [192.168.160.11] (unknown [192.168.160.11]) (using TLSv1.2 with cipher AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by z9m9z.htt-consult.com (Postfix) with ESMTPSA id DDFA562569; Wed, 30 Mar 2022 10:46:27 -0400 (EDT)
Message-ID: <ca3a9df9-1056-825a-2900-119df42a1a44@labs.htt-consult.com>
Date: Wed, 30 Mar 2022 10:47:13 -0400
MIME-Version: 1.0
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Thunderbird/91.7.0
Content-Language: en-US
To: Valery Smyslov <valery@smyslov.net>, secdir@ietf.org
Cc: draft-ietf-drip-arch.all@ietf.org, last-call@ietf.org, tm-rid@ietf.org
References: <164864828914.19999.4038160950945043224@ietfa.amsl.com>
From: Robert Moskowitz <rgm@labs.htt-consult.com>
In-Reply-To: <164864828914.19999.4038160950945043224@ietfa.amsl.com>
Content-Type: text/plain; charset=UTF-8; format=flowed
Content-Transfer-Encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/oYX8wRE2ESu2ZdZc-zif1wn8tNE>
Subject: Re: [secdir] Secdir last call review of draft-ietf-drip-arch-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 Mar 2022 14:48:04 -0000

I am taking a quick response here, and will have to go over it more 
closely for a second pass.

On 3/30/22 09:51, Valery Smyslov via Datatracker wrote:
> Reviewer: Valery Smyslov
> Review result: Has Issues
>
> The topic of the draft is complex and involves many fields which I'm not expert
> of. The overall architecture looks secure, however it's difficult for me to
> analyse all the details. Nevertheless, it seems to me that there are some
> security issues with the draft.
>
> 1. Section 3.2
>
>     A UA equipped for Broadcast RID SHOULD be provisioned not only with
>     its HHIT but also with the HI public key from which the HHIT was
>     derived and the corresponding private key, to enable message
>     signature.  A UAS equipped for Network RID SHOULD be provisioned
>     likewise; the private key resides only in the ultimate source of
>     Network RID messages (i.e., on the UA itself if the GCS is merely
>     relaying rather than sourcing Network RID messages).  Each Observer
>     device SHOULD be provisioned either with public keys of the DRIP
>     identifier root registries or certificates for subordinate
>     registries.
>
> I wonder why SHOULDs are used here and not MUSTs. In which cases it's OK not to
> equip e.g. UAs with private keys and how they will perform digital signatures
> in this case? Am I missing something?

Good catch.  Thanks.  All too often you read things so many times that 
points like this just slip by and this is why we have last calls...

Broadcast RID MUST be provisioned

As our whole architecture is to prove the Remote ID ownership in 
messages broadcasted from the UA and that needs to private key...

Note for Network RID, it is not so simple.  It may be that the GCS does 
all the signing for NRID messages, having its own trusted link to the UA 
to get the data to proxy.  This is why SHOULD for NRID is appropriate.

And SHOULD for Observers is correct, as an Observer might be using a 
verifying service, rather than directly validating the messages. Our 
position is direct validation on by the Observer is preferred, but ASTM 
does diagram validation services.

So recapping, change first SHOULD to MUST.  Other SHOULDs are correct.

> 2. It is not clear for me how revocation is done in case the private key of UA
> is compromised. While the Security considerations section states that
> revocation procedures are yet to be determined, I think that some text about
> the directions in which they are planned to be determined should be present.

Since these are raw keys, revocation is not directly possible.  The 
drip-registry draft may evolve various methodologies for providing 
revocation information.  At this writing, we would be really 
speculating.  Perhaps, black-holing in DNS; if a DET has been revoked, a 
DNSSEC protected response on looking up the DET would say so.  We might 
be able to include this as an example for revocation, but only an 
example at this point.


> 3. Section 9.
>
>     The size of the public key hash in the HHIT is also of concern.  It
>     is well within current server array technology to compute another key
>     pair that hashes to the same HHIT.
>
> If I understand the draft correctly, the size of public key hash is 20 or 19
> octets (Section 3.1).

The architecture document does not detail the format of an HHIT.  It 
turns out that in draft-ietf-drip-rid, the hash size is 64 bits so this 
attack is real and details about it are in the Security Considerations 
of that draft.  Perhaps say:

The size of the public key hash in the HHIT (64 bits) is also of concern

?  Do we need to reference ietf-drip-rid?  We really do not want to do 
that is it creates delaying dependencies.

> Finding another key pair that hashes to the same hash
> requires second preimage attack, which must take in this case 2^160 or 2^152.
> In my understanding of the state-of-art, it's still beyond possibilities of
> current computers. Am I missing something?

Unfortunately you have to see:

draft-ietf-drip-rid-17 sec 10.

> 4. The Security Considerations section is silent about possible impact of
> Cryptographically Relevant Quantum Computers. While it's not clear whether such
> computers will be ever build, the proposed architecture looks fragile with
> respect to them. First, from my understanding the architecture, private/public
> key pairs in UA are relatively long-lived and difficult to update. This gives
> an attacker plenty of time to break them and once they are broken, enough time
> to exploit. Second, the impact of breaking can be substantial due to the nature
> of UA (a potentially dangerous object). Third, while many protocols involved in
> this architecture can be upgraded with quantum safe cryptographic primitives,
> it seems to me that for some pieces it will be really challenging (e.g. the
> draft discusses limitations on payload size for Bluetooth, which will be more
> severe with PQ cryptography with much larger keys and signatures). I think this
> issue must be addressed somehow, at least mentioned.

Intentionally so.  We could get lost in the weeds.  We are extremely 
size and computing constrained and current QSC is just not providing 
solutions.  IF such a crypto suite is invented, it can be slotted in, as 
we have designed for crypto-agility.  Also, we do not spell it out, but 
we do say that a DET may be used for only a single 'operation' (flight 
to us non-UAS operators).  Thus a concerned implementor could use a 
fresh DET, making the exposure for only the duration of the operation.  
We do not spell this out, as there are other operational reasons for a 
UAS operator to constantly change DETs.

> 5. While an example when one UA physically steals UAS RID sender of another UA
> is clever, I think that such scenarios (physical security) are not in scope of
> IETF work. I believe that many others similar schemes can be invented, so I
> suggest to discuss physical security in a separate subsection of Section 9.

? other authors?  chairs? advise please.

> Not related to security:
>
> Section 3.2:
>
>     A self-attestation of a HHIT used as a UAS ID can be done in as
>     little as 84 bytes when Ed25519 [RFC8032] is used, by avoiding an
>     explicit encoding technology like ASN.1 or Concise Binary Object
>     Representation (CBOR [RFC8949]).  This attestation consists of only
>     the HHIT, a timestamp, and the EdDSA signature on them.
>
> If no encoding is used then how extensibility is achieved?

Extensibility is in the HHIT which includes the Suite ID (Ed25519/cSHAKE 
here).  A different HHIT Suite ID will result in a differently 
structured self-attestation.  None exist right now, so no attempt is 
made to consider what other results would look like.

> I also wonder how algorithm agility property is achieved for broadcast RID
> messages.

As above the HHIT includes the Suite ID.  Note that the HHIT is an 
extension of the HIT in rfc7401 that also provided algorithm agility 
through the included Suite ID.


I hope this helps.



From nobody Wed Mar 30 08:45:13 2022
Return-Path: <mohamed.boucadair@orange.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id F18BF3A0EE3; Wed, 30 Mar 2022 08:45:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.106
X-Spam-Level: 
X-Spam-Status: No, score=-2.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=orange.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Jx5gZ0gldBKm; Wed, 30 Mar 2022 08:45:05 -0700 (PDT)
Received: from relais-inet.orange.com (relais-inet.orange.com [80.12.70.36]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6C83D3A0EDB; Wed, 30 Mar 2022 08:45:05 -0700 (PDT)
Received: from opfednr02.francetelecom.fr (unknown [xx.xx.xx.66]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits)) (No client certificate requested) by opfednr25.francetelecom.fr (ESMTP service) with ESMTPS id 4KT9jq3XwczCrdB;  Wed, 30 Mar 2022 17:45:03 +0200 (CEST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=orange.com; s=ORANGE001; t=1648655103; bh=1sBr0l9FJlK+DTuRH+vf44QDwEsWZRqp0ffMo5290yQ=; h=From:To:Subject:Date:Message-ID:Content-Type: Content-Transfer-Encoding:MIME-Version; b=JM+20BNgrggyBFBL897Cn9hO9DiDxxhiY2GwPGkWGuRHPQyS5XCRn49KtX7FfFMui PUB4JhoMrBweQW6V6enoSlFZycBt4M+mvHm7epvEJY1o6o7KonWrqqRh2Miyw4mUQG +UAzUfqKCINYfKvPyliJWNyKfc4Tn3HhPvC40UNij7beTL7sdbdgVr1VcNiqMBlXj0 xiyPiFbae5q6tzlNx+DdiA8h5UoftWybdyzYKEG7V4ahjU6TTzQMH6jhE2ZC105TWM S6H/evy/r75kJ/uZqb133loN+FyhYalrRNu3p0gseNXi9APisJiDqMNuNvjywp3OT5 nO/bUvSIOZnZA==
From: <mohamed.boucadair@orange.com>
To: Robert Moskowitz <rgm@labs.htt-consult.com>, Valery Smyslov <valery@smyslov.net>, "secdir@ietf.org" <secdir@ietf.org>
CC: "draft-ietf-drip-arch.all@ietf.org" <draft-ietf-drip-arch.all@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>, "tm-rid@ietf.org" <tm-rid@ietf.org>
Thread-Topic: Secdir last call review of draft-ietf-drip-arch-22
Thread-Index: AQHYREUsqkLdMuv8dE2Z+svc9xERjazYDs6w
Content-Class: 
Date: Wed, 30 Mar 2022 15:45:02 +0000
Message-ID: <29593_1648655103_62447AFF_29593_392_1_4634356031924946bb2c52c8aa9ca290@orange.com>
References: <164864828914.19999.4038160950945043224@ietfa.amsl.com> <ca3a9df9-1056-825a-2900-119df42a1a44@labs.htt-consult.com>
In-Reply-To: <ca3a9df9-1056-825a-2900-119df42a1a44@labs.htt-consult.com>
Accept-Language: fr-FR, en-US
Content-Language: fr-FR
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2022-03-30T15:44:46Z;  MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=f8abec4d-5b91-43c8-8b3e-2d666e044de0; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
x-originating-ip: [10.115.26.50]
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/wZD3DfJDSLeqWnRo1ij5FGIT2a8>
Subject: Re: [secdir] Secdir last call review of draft-ietf-drip-arch-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 Mar 2022 15:45:11 -0000
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From nobody Wed Mar 30 09:53:39 2022
Return-Path: <jaehoon.paul@gmail.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2AF753A153B; Wed, 30 Mar 2022 09:53:24 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.087
X-Spam-Level: 
X-Spam-Status: No, score=-2.087 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_FREEMAIL_DOC_PDF=0.01, T_HK_NAME_FM_MR_MRS=0.01, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HB1VW754b7_j; Wed, 30 Mar 2022 09:53:21 -0700 (PDT)
Received: from mail-lf1-x136.google.com (mail-lf1-x136.google.com [IPv6:2a00:1450:4864:20::136]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C2B3C3A1804; Wed, 30 Mar 2022 09:52:33 -0700 (PDT)
Received: by mail-lf1-x136.google.com with SMTP id p10so30982411lfa.12; Wed, 30 Mar 2022 09:52:33 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112;  h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=5nTYs9kZWWzbHkx50OPu44lK/0PtIXmtCR4kQd7d/3E=; b=Te+W6tzgoE5Hs37gs0eqXcQZ2IUG1BuKLE5t19SogJXdj/fLogDXehkWdlrq2Y7ATj 9XoDU0z/09N2+5dL9y0f+Cm9D0jScO6iBDDU41raGvGfhjWkSjMCD7B4snHzk69rZh7g XdU8AEbLu65vYA/swISBLvfp66RhP3V/5issQ+GZB8N3kU7JcLeb+Ink9BOplbrQ+yuS v+JvN9IGZRTAKiPTc2B47O5XjQ9mM+REhmTaBqVSRR1Zx62X5wWKjL9A7xec0fGl25DO 5RiFfbjy1FceJxGhben0iHVuqZyrvW5m7A18dlv0xevTBsCZIW0mdte9BOQNRxOEGEfi teww==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=5nTYs9kZWWzbHkx50OPu44lK/0PtIXmtCR4kQd7d/3E=; b=Y9n1S3xMhhOjjmFxtucAFCmj26Ouy6pS8l+BfuErfl5QW4Wh0NECwl8kmVK12ClZg+ 0/6v0j6bDfibhlCbWdGnEUtlrGOmbKSmmj+MJKubJWSyTAMJmxsD1PQMhVlskutuZWDA 7OCPDsjbDhfFK8Fvt+uZdqf55HHFBqeyJanjOQ5fobmLfy3BL2nvTb3w+msopAdFSToJ /QONtNF1W+oqqea+eCuN5anlgkkJFO4Gc6bEOrzEsveyhzTUzni0FljCUSFYq5zfAKx9 fpAOH9WH78CHxox0n8fYcCBZDB2zhHmxsBAJrTEJaqNlzzaPFeHqEaVW6Nvk+0j2u39z 5C3w==
X-Gm-Message-State: AOAM531qVhyMqIkgcHMLvNE1+w6cKgqWNe3CBb7JanVOnslnmsNnqTZc L00krQbQ0+oV0cnJG7t43DCGZDL0kPS7YdSH7iB4ioYxK+I=
X-Google-Smtp-Source: ABdhPJx07cRE6FEfTQEFLH9ylYB7arrv3ZEtZjD5aWplMHSF8XEneIC3PRvwuQXv5ai1UWMRqzUfHddMn11beVl/JhQ=
X-Received: by 2002:a19:650d:0:b0:448:6bf1:ab65 with SMTP id z13-20020a19650d000000b004486bf1ab65mr7647784lfb.668.1648659150783; Wed, 30 Mar 2022 09:52:30 -0700 (PDT)
MIME-Version: 1.0
References: <164624978894.17953.13607898323269640268@ietfa.amsl.com> <DM6PR15MB368990AB8B44D06252BAA3F9E3039@DM6PR15MB3689.namprd15.prod.outlook.com>
In-Reply-To: <DM6PR15MB368990AB8B44D06252BAA3F9E3039@DM6PR15MB3689.namprd15.prod.outlook.com>
From: "Mr. Jaehoon Paul Jeong" <jaehoon.paul@gmail.com>
Date: Thu, 31 Mar 2022 01:51:53 +0900
Message-ID: <CAPK2DexkP2L-7L7M0rV4U=LOuqkmn6HQeycM7ZNs=pgt_-wZUw@mail.gmail.com>
To: Daniel Migault <daniel.migault=40ericsson.com@dmarc.ietf.org>
Cc: "secdir@ietf.org" <secdir@ietf.org>, Daniel Migault <daniel.migault@ericsson.com>,  "last-call@ietf.org" <last-call@ietf.org>, "its@ietf.org" <its@ietf.org>, Chris Shen <shenyiwen7@gmail.com>,  skku-iotlab-members <skku-iotlab-members@googlegroups.com>,  "Mr. Jaehoon Paul Jeong" <jaehoon.paul@gmail.com>
Content-Type: multipart/mixed; boundary="00000000000009f6ed05db725f74"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/Vmbln3dBbFpX65J82vKe6ZB7IrE>
Subject: Re: [secdir] [ipwave] Secdir telechat review of draft-ietf-ipwave-vehicular-networking-27
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 Mar 2022 16:53:25 -0000

--00000000000009f6ed05db725f74
Content-Type: multipart/alternative; boundary="00000000000009f6ea05db725f72"

--00000000000009f6ea05db725f72
Content-Type: text/plain; charset="UTF-8"

Hi Daniel,
Here is the revision of IPWAVE PS Draft:

https://datatracker.ietf.org/doc/html/draft-ietf-ipwave-vehicular-networking-28

I attach a revision letter to explain how Chris and I have addressed your
comments
on the revision.

Thanks.

Best Regards,
Paul


On Thu, Mar 3, 2022 at 4:40 AM Daniel Migault <daniel.migault=
40ericsson.com@dmarc.ietf.org> wrote:

> -- clicking too fast
>
> Reviewer: Daniel Migault
> Review result: Has Issues
>
> Hi,
>
> I have reviewed this document as part of the security directorate's
> ongoing effort to review all IETF documents being processed by the
> IESG.  These comments were written primarily for the benefit of the
> security area directors.  Document editors and WG chairs should treat
> these comments just like any other last call comments.
>
> Please find my comments below:
>
> 1.  Introduction
>
>    Vehicular networking studies have mainly focused on improving safety
>    and efficiency, and also enabling entertainment in vehicular
>    networks.  The Federal Communications Commission (FCC) in the US
>    allocated wireless channels for Dedicated Short-Range Communications
>    (DSRC) [DSRC] in the Intelligent Transportation Systems (ITS) with
>    the frequency band of 5.850 - 5.925 GHz (i.e., 5.9 GHz band).  DSRC-
>    based wireless communications can support vehicle-to-vehicle (V2V),
>    vehicle-to-infrastructure (V2I), and vehicle-to-everything (V2X)
>    networking.  The European Union (EU) allocated radio spectrum for
>    safety-related and non-safety-related applications of ITS with the
>    frequency band of 5.875 - 5.905 GHz, as part of the Commission
>    Decision 2008/671/EC [EU-2008-671-EC].
>
> <mglt>
> I am wondering US/EU covers all spectrum allocation worldwide ?
> </mglt>
>
> 3.2.  V2I
>
>    The emergency communication between accident vehicles (or emergency
>    vehicles) and a TCC can be performed via either IP-RSU or 4G-LTE
>    networks.  The First Responder Network Authority (FirstNet)
>    [FirstNet] is provided by the US government to establish, operate,
>    and maintain an interoperable public safety broadband network for
>    safety and security network services, e.g., emergency calls.  The
>    construction of the nationwide FirstNet network requires each state
>    in the US to have a Radio Access Network (RAN) that will connect to
>    the FirstNet's network core.  The current RAN is mainly constructed
>    using 4G-LTE for the communication between a vehicle and an
>    infrastructure node (i.e., V2I) [FirstNet-Report], but it is expected
>    that DSRC-based vehicular networks [DSRC] will be available for V2I
>    and V2V in the near future.
>
> <mglt>
> Is this use case restricted to the US or do we have any equivalent in EU
> for
> example ? <mglt>
>
> 3.3.  V2X
>
>    The use case of V2X networking discussed in this section is for a
>    pedestrian protection service.
>
> <mglt>
> I do have an issue with such use case - of course if my understanding is
> correct. My understanding from the description is that the use case
> explains
> how pedestrian can advertise its presence to a vehicle so avoid the
> vehicle to
> hit that pedestrian. Such assumption does not seem to me acceptable as not
> everyone has a phone, and their security - from a vehicle perspective -
> MUST
> NOT be provided by such a mechanism as it would given a false sense of
> security. If a vehicle is not able to detect a pedestrian unless this
> pedestrian has a working smartphone with a specific application, the
> problem is
> bigger and out of scope of the IETF. I can also see that in some
> countries, it
> will become the pedestrian's fault if it is hit without its application.
> As I
> understand it, I find this use case extremely dangerous, so my request
> would be
> to remove it or if I misunderstood it to clarify its scope. <mglt>
>
>
> ________________________________________
> From: secdir <secdir-bounces@ietf.org> on behalf of Daniel Migault via
> Datatracker <noreply@ietf.org>
> Sent: Wednesday, March 2, 2022 2:36 PM
> To: secdir@ietf.org
> Cc: last-call@ietf.org;
> draft-ietf-ipwave-vehicular-networking.all@ietf.org; its@ietf.org
> Subject: [secdir] Secdir telechat review of
> draft-ietf-ipwave-vehicular-networking-27
>
> Reviewer: Daniel Migault
> Review result: Has Issues
>
> 1.  Introduction
>
>    Vehicular networking studies have mainly focused on improving safety
>    and efficiency, and also enabling entertainment in vehicular
>    networks.  The Federal Communications Commission (FCC) in the US
>    allocated wireless channels for Dedicated Short-Range Communications
>    (DSRC) [DSRC] in the Intelligent Transportation Systems (ITS) with
>    the frequency band of 5.850 - 5.925 GHz (i.e., 5.9 GHz band).  DSRC-
>    based wireless communications can support vehicle-to-vehicle (V2V),
>    vehicle-to-infrastructure (V2I), and vehicle-to-everything (V2X)
>    networking.  The European Union (EU) allocated radio spectrum for
>    safety-related and non-safety-related applications of ITS with the
>    frequency band of 5.875 - 5.905 GHz, as part of the Commission
>    Decision 2008/671/EC [EU-2008-671-EC].
>
> <mglt>
> I am wondering US/EU covers all spectrum allocation worldwide ?
> </mglt>
>
> 3.2.  V2I
>
>    The emergency communication between accident vehicles (or emergency
>    vehicles) and a TCC can be performed via either IP-RSU or 4G-LTE
>    networks.  The First Responder Network Authority (FirstNet)
>    [FirstNet] is provided by the US government to establish, operate,
>    and maintain an interoperable public safety broadband network for
>    safety and security network services, e.g., emergency calls.  The
>    construction of the nationwide FirstNet network requires each state
>    in the US to have a Radio Access Network (RAN) that will connect to
>    the FirstNet's network core.  The current RAN is mainly constructed
>    using 4G-LTE for the communication between a vehicle and an
>    infrastructure node (i.e., V2I) [FirstNet-Report], but it is expected
>    that DSRC-based vehicular networks [DSRC] will be available for V2I
>    and V2V in the near future.
>
> <mglt>
> Is this use case restricted to the US or do we have any equivalent in EU
> for
> example ? <mglt>
>
> 3.3.  V2X
>
>    The use case of V2X networking discussed in this section is for a
>    pedestrian protection service.
>
> <mglt>
> I do have an issue with such use case - of course if my understanding is
> correct. My understanding from the description is that the use case
> explains
> how pedestrian can advertise its presence to a vehicle so avoid the
> vehicle to
> hit that pedestrian. Such assumption does not seem to me acceptable as not
> everyone has a phone, and their security - from a vehicle perspective -
> MUST
> NOT be provided by such a mechanism as it would given a false sense of
> security. If a vehicle is not able to detect a pedestrian unless this
> pedestrian has a working smartphone with a specific application, the
> problem is
> bigger and out of scope of the IETF. I can also see that in some
> countries, it
> will become the pedestrian's fault if it is hit without its application.
> As I
> understand it, I find this use case extremely dangerous, so my request
> would be
> to remove it or if I misunderstood it to clarify its scope. <mglt>
>
>
>
> _______________________________________________
> secdir mailing list
> secdir@ietf.org
> https://www.ietf.org/mailman/listinfo/secdir
> wiki: https://trac.ietf.org/trac/sec/wiki/SecDirReview
>
> _______________________________________________
> its mailing list
> its@ietf.org
> https://www.ietf.org/mailman/listinfo/its
>

--00000000000009f6ea05db725f72
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr">Hi Daniel,<br>Here is the revision of IPWAVE PS Draft:<br>=
<br><a href=3D"https://datatracker.ietf.org/doc/html/draft-ietf-ipwave-vehi=
cular-networking-28">https://datatracker.ietf.org/doc/html/draft-ietf-ipwav=
e-vehicular-networking-28</a><br><br><div>I attach a revision letter to exp=
lain how=C2=A0Chris and I have addressed your comments</div><div>on=C2=A0th=
e revision.<br><br>Thanks.<br><br>Best Regards,<br>Paul<br><div><br></div><=
/div></div><br><div class=3D"gmail_quote"><div dir=3D"ltr" class=3D"gmail_a=
ttr">On Thu, Mar 3, 2022 at 4:40 AM Daniel Migault &lt;daniel.migault=3D<a =
href=3D"mailto:40ericsson.com@dmarc.ietf.org">40ericsson.com@dmarc.ietf.org=
</a>&gt; wrote:<br></div><blockquote class=3D"gmail_quote" style=3D"margin:=
0px 0px 0px 0.8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">=
-- clicking too fast<br>
<br>
Reviewer: Daniel Migault<br>
Review result: Has Issues<br>
<br>
Hi,<br>
<br>
I have reviewed this document as part of the security directorate&#39;s<br>
ongoing effort to review all IETF documents being processed by the<br>
IESG.=C2=A0 These comments were written primarily for the benefit of the<br=
>
security area directors.=C2=A0 Document editors and WG chairs should treat<=
br>
these comments just like any other last call comments.<br>
<br>
Please find my comments below:<br>
<br>
1.=C2=A0 Introduction<br>
<br>
=C2=A0 =C2=A0Vehicular networking studies have mainly focused on improving =
safety<br>
=C2=A0 =C2=A0and efficiency, and also enabling entertainment in vehicular<b=
r>
=C2=A0 =C2=A0networks.=C2=A0 The Federal Communications Commission (FCC) in=
 the US<br>
=C2=A0 =C2=A0allocated wireless channels for Dedicated Short-Range Communic=
ations<br>
=C2=A0 =C2=A0(DSRC) [DSRC] in the Intelligent Transportation Systems (ITS) =
with<br>
=C2=A0 =C2=A0the frequency band of 5.850 - 5.925 GHz (i.e., 5.9 GHz band).=
=C2=A0 DSRC-<br>
=C2=A0 =C2=A0based wireless communications can support vehicle-to-vehicle (=
V2V),<br>
=C2=A0 =C2=A0vehicle-to-infrastructure (V2I), and vehicle-to-everything (V2=
X)<br>
=C2=A0 =C2=A0networking.=C2=A0 The European Union (EU) allocated radio spec=
trum for<br>
=C2=A0 =C2=A0safety-related and non-safety-related applications of ITS with=
 the<br>
=C2=A0 =C2=A0frequency band of 5.875 - 5.905 GHz, as part of the Commission=
<br>
=C2=A0 =C2=A0Decision 2008/671/EC [EU-2008-671-EC].<br>
<br>
&lt;mglt&gt;<br>
I am wondering US/EU covers all spectrum allocation worldwide ?<br>
&lt;/mglt&gt;<br>
<br>
3.2.=C2=A0 V2I<br>
<br>
=C2=A0 =C2=A0The emergency communication between accident vehicles (or emer=
gency<br>
=C2=A0 =C2=A0vehicles) and a TCC can be performed via either IP-RSU or 4G-L=
TE<br>
=C2=A0 =C2=A0networks.=C2=A0 The First Responder Network Authority (FirstNe=
t)<br>
=C2=A0 =C2=A0[FirstNet] is provided by the US government to establish, oper=
ate,<br>
=C2=A0 =C2=A0and maintain an interoperable public safety broadband network =
for<br>
=C2=A0 =C2=A0safety and security network services, e.g., emergency calls.=
=C2=A0 The<br>
=C2=A0 =C2=A0construction of the nationwide FirstNet network requires each =
state<br>
=C2=A0 =C2=A0in the US to have a Radio Access Network (RAN) that will conne=
ct to<br>
=C2=A0 =C2=A0the FirstNet&#39;s network core.=C2=A0 The current RAN is main=
ly constructed<br>
=C2=A0 =C2=A0using 4G-LTE for the communication between a vehicle and an<br=
>
=C2=A0 =C2=A0infrastructure node (i.e., V2I) [FirstNet-Report], but it is e=
xpected<br>
=C2=A0 =C2=A0that DSRC-based vehicular networks [DSRC] will be available fo=
r V2I<br>
=C2=A0 =C2=A0and V2V in the near future.<br>
<br>
&lt;mglt&gt;<br>
Is this use case restricted to the US or do we have any equivalent in EU fo=
r<br>
example ? &lt;mglt&gt;<br>
<br>
3.3.=C2=A0 V2X<br>
<br>
=C2=A0 =C2=A0The use case of V2X networking discussed in this section is fo=
r a<br>
=C2=A0 =C2=A0pedestrian protection service.<br>
<br>
&lt;mglt&gt;<br>
I do have an issue with such use case - of course if my understanding is<br=
>
correct. My understanding from the description is that the use case explain=
s<br>
how pedestrian can advertise its presence to a vehicle so avoid the vehicle=
 to<br>
hit that pedestrian. Such assumption does not seem to me acceptable as not<=
br>
everyone has a phone, and their security - from a vehicle perspective - MUS=
T<br>
NOT be provided by such a mechanism as it would given a false sense of<br>
security. If a vehicle is not able to detect a pedestrian unless this<br>
pedestrian has a working smartphone with a specific application, the proble=
m is<br>
bigger and out of scope of the IETF. I can also see that in some countries,=
 it<br>
will become the pedestrian&#39;s fault if it is hit without its application=
. As I<br>
understand it, I find this use case extremely dangerous, so my request woul=
d be<br>
to remove it or if I misunderstood it to clarify its scope. &lt;mglt&gt;<br=
>
<br>
<br>
________________________________________<br>
From: secdir &lt;<a href=3D"mailto:secdir-bounces@ietf.org" target=3D"_blan=
k">secdir-bounces@ietf.org</a>&gt; on behalf of Daniel Migault via Datatrac=
ker &lt;<a href=3D"mailto:noreply@ietf.org" target=3D"_blank">noreply@ietf.=
org</a>&gt;<br>
Sent: Wednesday, March 2, 2022 2:36 PM<br>
To: <a href=3D"mailto:secdir@ietf.org" target=3D"_blank">secdir@ietf.org</a=
><br>
Cc: <a href=3D"mailto:last-call@ietf.org" target=3D"_blank">last-call@ietf.=
org</a>; <a href=3D"mailto:draft-ietf-ipwave-vehicular-networking.all@ietf.=
org" target=3D"_blank">draft-ietf-ipwave-vehicular-networking.all@ietf.org<=
/a>; <a href=3D"mailto:its@ietf.org" target=3D"_blank">its@ietf.org</a><br>
Subject: [secdir] Secdir telechat review of draft-ietf-ipwave-vehicular-net=
working-27<br>
<br>
Reviewer: Daniel Migault<br>
Review result: Has Issues<br>
<br>
1.=C2=A0 Introduction<br>
<br>
=C2=A0 =C2=A0Vehicular networking studies have mainly focused on improving =
safety<br>
=C2=A0 =C2=A0and efficiency, and also enabling entertainment in vehicular<b=
r>
=C2=A0 =C2=A0networks.=C2=A0 The Federal Communications Commission (FCC) in=
 the US<br>
=C2=A0 =C2=A0allocated wireless channels for Dedicated Short-Range Communic=
ations<br>
=C2=A0 =C2=A0(DSRC) [DSRC] in the Intelligent Transportation Systems (ITS) =
with<br>
=C2=A0 =C2=A0the frequency band of 5.850 - 5.925 GHz (i.e., 5.9 GHz band).=
=C2=A0 DSRC-<br>
=C2=A0 =C2=A0based wireless communications can support vehicle-to-vehicle (=
V2V),<br>
=C2=A0 =C2=A0vehicle-to-infrastructure (V2I), and vehicle-to-everything (V2=
X)<br>
=C2=A0 =C2=A0networking.=C2=A0 The European Union (EU) allocated radio spec=
trum for<br>
=C2=A0 =C2=A0safety-related and non-safety-related applications of ITS with=
 the<br>
=C2=A0 =C2=A0frequency band of 5.875 - 5.905 GHz, as part of the Commission=
<br>
=C2=A0 =C2=A0Decision 2008/671/EC [EU-2008-671-EC].<br>
<br>
&lt;mglt&gt;<br>
I am wondering US/EU covers all spectrum allocation worldwide ?<br>
&lt;/mglt&gt;<br>
<br>
3.2.=C2=A0 V2I<br>
<br>
=C2=A0 =C2=A0The emergency communication between accident vehicles (or emer=
gency<br>
=C2=A0 =C2=A0vehicles) and a TCC can be performed via either IP-RSU or 4G-L=
TE<br>
=C2=A0 =C2=A0networks.=C2=A0 The First Responder Network Authority (FirstNe=
t)<br>
=C2=A0 =C2=A0[FirstNet] is provided by the US government to establish, oper=
ate,<br>
=C2=A0 =C2=A0and maintain an interoperable public safety broadband network =
for<br>
=C2=A0 =C2=A0safety and security network services, e.g., emergency calls.=
=C2=A0 The<br>
=C2=A0 =C2=A0construction of the nationwide FirstNet network requires each =
state<br>
=C2=A0 =C2=A0in the US to have a Radio Access Network (RAN) that will conne=
ct to<br>
=C2=A0 =C2=A0the FirstNet&#39;s network core.=C2=A0 The current RAN is main=
ly constructed<br>
=C2=A0 =C2=A0using 4G-LTE for the communication between a vehicle and an<br=
>
=C2=A0 =C2=A0infrastructure node (i.e., V2I) [FirstNet-Report], but it is e=
xpected<br>
=C2=A0 =C2=A0that DSRC-based vehicular networks [DSRC] will be available fo=
r V2I<br>
=C2=A0 =C2=A0and V2V in the near future.<br>
<br>
&lt;mglt&gt;<br>
Is this use case restricted to the US or do we have any equivalent in EU fo=
r<br>
example ? &lt;mglt&gt;<br>
<br>
3.3.=C2=A0 V2X<br>
<br>
=C2=A0 =C2=A0The use case of V2X networking discussed in this section is fo=
r a<br>
=C2=A0 =C2=A0pedestrian protection service.<br>
<br>
&lt;mglt&gt;<br>
I do have an issue with such use case - of course if my understanding is<br=
>
correct. My understanding from the description is that the use case explain=
s<br>
how pedestrian can advertise its presence to a vehicle so avoid the vehicle=
 to<br>
hit that pedestrian. Such assumption does not seem to me acceptable as not<=
br>
everyone has a phone, and their security - from a vehicle perspective - MUS=
T<br>
NOT be provided by such a mechanism as it would given a false sense of<br>
security. If a vehicle is not able to detect a pedestrian unless this<br>
pedestrian has a working smartphone with a specific application, the proble=
m is<br>
bigger and out of scope of the IETF. I can also see that in some countries,=
 it<br>
will become the pedestrian&#39;s fault if it is hit without its application=
. As I<br>
understand it, I find this use case extremely dangerous, so my request woul=
d be<br>
to remove it or if I misunderstood it to clarify its scope. &lt;mglt&gt;<br=
>
<br>
<br>
<br>
_______________________________________________<br>
secdir mailing list<br>
<a href=3D"mailto:secdir@ietf.org" target=3D"_blank">secdir@ietf.org</a><br=
>
<a href=3D"https://www.ietf.org/mailman/listinfo/secdir" rel=3D"noreferrer"=
 target=3D"_blank">https://www.ietf.org/mailman/listinfo/secdir</a><br>
wiki: <a href=3D"https://trac.ietf.org/trac/sec/wiki/SecDirReview" rel=3D"n=
oreferrer" target=3D"_blank">https://trac.ietf.org/trac/sec/wiki/SecDirRevi=
ew</a><br>
<br>
_______________________________________________<br>
its mailing list<br>
<a href=3D"mailto:its@ietf.org" target=3D"_blank">its@ietf.org</a><br>
<a href=3D"https://www.ietf.org/mailman/listinfo/its" rel=3D"noreferrer" ta=
rget=3D"_blank">https://www.ietf.org/mailman/listinfo/its</a><br>
</blockquote></div>

--00000000000009f6ea05db725f72--

--00000000000009f6ed05db725f74
Content-Type: application/pdf; 
 name="Revision-Letter-on-IPWAVE-PS-Document-28-2022-03-30-v1.pdf"
Content-Disposition: attachment; 
 filename="Revision-Letter-on-IPWAVE-PS-Document-28-2022-03-30-v1.pdf"
Content-Transfer-Encoding: base64
Content-ID: <f_l1dt2drz0>
X-Attachment-Id: f_l1dt2drz0
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--00000000000009f6ed05db725f74--


From nobody Wed Mar 30 12:16:21 2022
Return-Path: <mcr+ietf@sandelman.ca>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 85FD03A012A; Wed, 30 Mar 2022 12:15:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.109
X-Spam-Level: 
X-Spam-Status: No, score=-2.109 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=sandelman.ca
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id VWI94cSSWDCc; Wed, 30 Mar 2022 12:15:47 -0700 (PDT)
Received: from tuna.sandelman.ca (tuna.sandelman.ca [IPv6:2607:f0b0:f:3:216:3eff:fe7c:d1f3]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D6FA43A0112; Wed, 30 Mar 2022 12:15:45 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by tuna.sandelman.ca (Postfix) with ESMTP id 86AB438CF4; Wed, 30 Mar 2022 15:26:28 -0400 (EDT)
Received: from tuna.sandelman.ca ([127.0.0.1]) by localhost (localhost [127.0.0.1]) (amavisd-new, port 10024) with LMTP id CTmu8i2ypoNW; Wed, 30 Mar 2022 15:26:27 -0400 (EDT)
Received: from sandelman.ca (obiwan.sandelman.ca [IPv6:2607:f0b0:f:2::247]) by tuna.sandelman.ca (Postfix) with ESMTP id 1AA8D38CC4; Wed, 30 Mar 2022 15:26:27 -0400 (EDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=sandelman.ca; s=mail; t=1648668387; bh=E1yOC2QUUVM3tHkIT7q5Fx0RYBsE1RiE1DjrtFTxdMg=; h=From:To:cc:Subject:In-Reply-To:References:Date:From; b=EKrJdAHx38DgovffI/I6Y3kMVU2iG4lbbi0fDi8G+0qswcvCfRkL4zHe70pDjty0+ x94RliIy4PIdSnmwRplTPfCWPCquu2fTAO5ugIe89/98pM59ULYc21Hp6eNBnQc/fC KzZu7t+lNxC9UNTuvr+ZaRJCbJOIqEIfAsgjr5WXz4WXPQioOV9anuqRdnAS8akcdz sKFNkGLJT28AvtvMJACqSid4e8R004uHbsC/QtcNjTUehG/O82n4OFH80dWRUYOdnT CCBhFUYAhv4x9Xr34QzsdUPxFgGxp4jNDMUSmoG8u/D0Epq7k23OZaumXh4Xqbi45q nK6CkhujPO/ZQ==
Received: from localhost (localhost [IPv6:::1]) by sandelman.ca (Postfix) with ESMTP id D20F453F; Wed, 30 Mar 2022 15:15:40 -0400 (EDT)
From: Michael Richardson <mcr+ietf@sandelman.ca>
To: Valery Smyslov <valery@smyslov.net>
cc: secdir@ietf.org, draft-ietf-drip-arch.all@ietf.org, tm-rid@ietf.org, last-call@ietf.org
In-Reply-To: <164864828914.19999.4038160950945043224@ietfa.amsl.com>
References: <164864828914.19999.4038160950945043224@ietfa.amsl.com>
X-Mailer: MH-E 8.6+git; nmh 1.7+dev; GNU Emacs 26.1
X-Face: $\n1pF)h^`}$H>Hk{L"x@)JS7<%Az}5RyS@k9X%29-lHB$Ti.V>2bi.~ehC0; <'$9xN5Ub# z!G,p`nR&p7Fz@^UXIn156S8.~^@MJ*mMsD7=QFeq%AL4m<nPbLgmtKK-5dC@#:k
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=-=-="; micalg=pgp-sha512; protocol="application/pgp-signature"
Date: Wed, 30 Mar 2022 15:15:40 -0400
Message-ID: <25202.1648667740@localhost>
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/jEEFsKCf-2a9XNQcH2hx5EKmAQ8>
Subject: Re: [secdir] [Last-Call] Secdir last call review of draft-ietf-drip-arch-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 30 Mar 2022 19:15:54 -0000

--=-=-=
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: quoted-printable


Valery Smyslov via Datatracker <noreply@ietf.org> wrote:
    > 2. It is not clear for me how revocation is done in case the private =
key of UA
    > is compromised. While the Security considerations section states that
    > revocation procedures are yet to be determined, I think that some tex=
t about
    > the directions in which they are planned to be determined should be p=
resent.

Revocation is done with a hammer.
(Insert picture of Hulk smashing drone...)

=2D-
Michael Richardson <mcr+IETF@sandelman.ca>   . o O ( IPv6 I=C3=B8T consulti=
ng )
           Sandelman Software Works Inc, Ottawa and Worldwide





--=-=-=
Content-Type: application/pgp-signature; name="signature.asc"

-----BEGIN PGP SIGNATURE-----

iQEzBAEBCgAdFiEEbsyLEzg/qUTA43uogItw+93Q3WUFAmJErFwACgkQgItw+93Q
3WXOPQgAo/rprneXfme0jfoJpLEdY/LnobYXzdUURydqqoS/VjJ57gpZNGawA5x4
G9uK93G95SLZtbDQ47+QBoyV7hB08aE1Mc1Lc42tAyFHPbyUBz0YFfHvVKnY/t0s
dBldBxqNZUbl0I3Jl2CgS5eK3p7Y77x/nEEHmfXHVS+zvUtn7qN2D13YEohhN6wh
BWg5KTFzcAVVPa6nixmxkQwjwHFbXVHB4YKkLfYLBY27tg70lVwUXoI1IL/fGAN3
Y7M1ZCabmPeDkVXbNglAawOxLyZdYINaai+tFmr1daYv9vXHHJVLQpKUbJ/doQJ8
cEkvGD8sCMfySXxEk787cC05OXbaTg==
=O43f
-----END PGP SIGNATURE-----
--=-=-=--


From nobody Thu Mar 31 01:12:33 2022
Return-Path: <valery@smyslov.net>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B2C983A08D5; Thu, 31 Mar 2022 01:12:31 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.109
X-Spam-Level: 
X-Spam-Status: No, score=-7.109 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=smyslov.net
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id cGEc--arcZFj; Thu, 31 Mar 2022 01:12:27 -0700 (PDT)
Received: from direct.host-care.com (direct.host-care.com [198.136.54.115]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5475D3A1905; Thu, 31 Mar 2022 01:12:25 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=smyslov.net ; s=default; h=Content-Transfer-Encoding:Content-Type:MIME-Version:Message-ID :Date:Subject:In-Reply-To:References:Cc:To:From:Sender:Reply-To:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=viAtLdZigJcnyXr9qf+wcWHmtYHxNThr2r31UNgX1d8=; b=onB534oYbmkYQHdJkOskCRKM8m nmtPEs9RrQdk4sZJ5Tq1La6h3kD7Xt3CVL67VFnCw+g7ru4a3XdZMqeChJTwgJF4VP63Jx7C6PVhW CCYBaUdblBUsPBbTtD9Z8oUeuQ2tGjHZ3jclf+ZoJu2m5P6tZl20vciyEqr+fxlDSU7+TtX5QqDrw wFfvXqwWyTmWaIpBmuwhMbHJATFbLHxPk7qXRSq/fyx9EyW/3S58A/Lj7t92DDUhY/fvUcKaHOOG6 ri5JzIKTvbOQ1EUHLQvzYfQITIM01J0GDucwtcKjzdYaBN9yB2FayH/xGwtJ4MrxdjnlFWD9ZNeVE 4mGfs3Zw==;
Received: from [93.188.44.204] (port=50642 helo=buildpc) by direct.host-care.com with esmtpsa (TLS1.2) tls TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.93) (envelope-from <valery@smyslov.net>) id 1nZpuo-0000BJ-Bc; Thu, 31 Mar 2022 04:12:22 -0400
From: "Valery Smyslov" <valery@smyslov.net>
To: "'Robert Moskowitz'" <rgm@labs.htt-consult.com>, <secdir@ietf.org>
Cc: <draft-ietf-drip-arch.all@ietf.org>, <last-call@ietf.org>, <tm-rid@ietf.org>
References: <164864828914.19999.4038160950945043224@ietfa.amsl.com> <ca3a9df9-1056-825a-2900-119df42a1a44@labs.htt-consult.com>
In-Reply-To: <ca3a9df9-1056-825a-2900-119df42a1a44@labs.htt-consult.com>
Date: Thu, 31 Mar 2022 11:12:21 +0300
Message-ID: <19b101d844d7$0e376b40$2aa641c0$@smyslov.net>
MIME-Version: 1.0
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 14.0
Thread-Index: AQHAkWuyxQUkzf87mu+hlPYoCbOlNwGc9tz5rPuWVIA=
Content-Language: ru
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - direct.host-care.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - smyslov.net
X-Get-Message-Sender-Via: direct.host-care.com: authenticated_id: valery@smyslov.net
X-Authenticated-Sender: direct.host-care.com: valery@smyslov.net
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/RcUe7co4TQrLn6x830X-Job3Z4c>
Subject: Re: [secdir] Secdir last call review of draft-ietf-drip-arch-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 31 Mar 2022 08:12:32 -0000

Hi Bob,

thank you for prompt reply, please see my comments below.

> I am taking a quick response here, and will have to go over it more
> closely for a second pass.
> 
> On 3/30/22 09:51, Valery Smyslov via Datatracker wrote:
> > Reviewer: Valery Smyslov
> > Review result: Has Issues
> >
> > The topic of the draft is complex and involves many fields which I'm not expert
> > of. The overall architecture looks secure, however it's difficult for me to
> > analyse all the details. Nevertheless, it seems to me that there are some
> > security issues with the draft.
> >
> > 1. Section 3.2
> >
> >     A UA equipped for Broadcast RID SHOULD be provisioned not only with
> >     its HHIT but also with the HI public key from which the HHIT was
> >     derived and the corresponding private key, to enable message
> >     signature.  A UAS equipped for Network RID SHOULD be provisioned
> >     likewise; the private key resides only in the ultimate source of
> >     Network RID messages (i.e., on the UA itself if the GCS is merely
> >     relaying rather than sourcing Network RID messages).  Each Observer
> >     device SHOULD be provisioned either with public keys of the DRIP
> >     identifier root registries or certificates for subordinate
> >     registries.
> >
> > I wonder why SHOULDs are used here and not MUSTs. In which cases it's OK not to
> > equip e.g. UAs with private keys and how they will perform digital signatures
> > in this case? Am I missing something?
> 
> Good catch.  Thanks.  All too often you read things so many times that
> points like this just slip by and this is why we have last calls...
> 
> Broadcast RID MUST be provisioned

OK.

> As our whole architecture is to prove the Remote ID ownership in
> messages broadcasted from the UA and that needs to private key...
> 
> Note for Network RID, it is not so simple.  It may be that the GCS does
> all the signing for NRID messages, having its own trusted link to the UA
> to get the data to proxy.  This is why SHOULD for NRID is appropriate.

I think that having "trusted link" assumes that UA has some private key to authenticate 
information it sends to GCS. Well, I understand that this may be a different key...

> And SHOULD for Observers is correct, as an Observer might be using a
> verifying service, rather than directly validating the messages. Our
> position is direct validation on by the Observer is preferred, but ASTM
> does diagram validation services.

Agree.

> So recapping, change first SHOULD to MUST.  Other SHOULDs are correct.
> 
> > 2. It is not clear for me how revocation is done in case the private key of UA
> > is compromised. While the Security considerations section states that
> > revocation procedures are yet to be determined, I think that some text about
> > the directions in which they are planned to be determined should be present.
> 
> Since these are raw keys, revocation is not directly possible.  The
> drip-registry draft may evolve various methodologies for providing
> revocation information.  At this writing, we would be really
> speculating.  Perhaps, black-holing in DNS; if a DET has been revoked, a
> DNSSEC protected response on looking up the DET would say so.  We might
> be able to include this as an example for revocation, but only an
> example at this point.

I see. I still think that architecture document should have some text
about revocation (even if the text is speculative) in the main body,
i.e. where the architecture is defined. Just to show readers that
revocation is in scope of architecture and will be addressed later.

> > 3. Section 9.
> >
> >     The size of the public key hash in the HHIT is also of concern.  It
> >     is well within current server array technology to compute another key
> >     pair that hashes to the same HHIT.
> >
> > If I understand the draft correctly, the size of public key hash is 20 or 19
> > octets (Section 3.1).
> 
> The architecture document does not detail the format of an HHIT.  It
> turns out that in draft-ietf-drip-rid, the hash size is 64 bits so this
> attack is real and details about it are in the Security Considerations
> of that draft.  Perhaps say:
> 
> The size of the public key hash in the HHIT (64 bits) is also of concern
> 
> ?  Do we need to reference ietf-drip-rid?  We really do not want to do
> that is it creates delaying dependencies.

Oh, I now see, for 64 bits it is really possible to find second preimage. 
Perhaps the text can be modified along the lines (with no specific details about solution spec
as Med advised):

   Depending on the selected size of the public key hash in the HHIT,
   it may be well within current server array technology to compute another key
   pair that hashes to the same HHIT.  

> > Finding another key pair that hashes to the same hash
> > requires second preimage attack, which must take in this case 2^160 or 2^152.
> > In my understanding of the state-of-art, it's still beyond possibilities of
> > current computers. Am I missing something?
> 
> Unfortunately you have to see:
> 
> draft-ietf-drip-rid-17 sec 10.
> 
> > 4. The Security Considerations section is silent about possible impact of
> > Cryptographically Relevant Quantum Computers. While it's not clear whether such
> > computers will be ever build, the proposed architecture looks fragile with
> > respect to them. First, from my understanding the architecture, private/public
> > key pairs in UA are relatively long-lived and difficult to update. This gives
> > an attacker plenty of time to break them and once they are broken, enough time
> > to exploit. Second, the impact of breaking can be substantial due to the nature
> > of UA (a potentially dangerous object). Third, while many protocols involved in
> > this architecture can be upgraded with quantum safe cryptographic primitives,
> > it seems to me that for some pieces it will be really challenging (e.g. the
> > draft discusses limitations on payload size for Bluetooth, which will be more
> > severe with PQ cryptography with much larger keys and signatures). I think this
> > issue must be addressed somehow, at least mentioned.
> 
> Intentionally so.  We could get lost in the weeds.  We are extremely
> size and computing constrained and current QSC is just not providing
> solutions.  IF such a crypto suite is invented, it can be slotted in, as
> we have designed for crypto-agility.  Also, we do not spell it out, but
> we do say that a DET may be used for only a single 'operation' (flight
> to us non-UAS operators).  Thus a concerned implementor could use a
> fresh DET, making the exposure for only the duration of the operation.
> We do not spell this out, as there are other operational reasons for a
> UAS operator to constantly change DETs.

I think that the document will benefit if you mention in the Security 
Considerations that quantum security is intentionally out of scope
(perhaps with some of the reasoning you provided). 
Otherwise it looks like this is overlooked.

> > 5. While an example when one UA physically steals UAS RID sender of another UA
> > is clever, I think that such scenarios (physical security) are not in scope of
> > IETF work. I believe that many others similar schemes can be invented, so I
> > suggest to discuss physical security in a separate subsection of Section 9.
> 
> ? other authors?  chairs? advise please.
> 
> > Not related to security:
> >
> > Section 3.2:
> >
> >     A self-attestation of a HHIT used as a UAS ID can be done in as
> >     little as 84 bytes when Ed25519 [RFC8032] is used, by avoiding an
> >     explicit encoding technology like ASN.1 or Concise Binary Object
> >     Representation (CBOR [RFC8949]).  This attestation consists of only
> >     the HHIT, a timestamp, and the EdDSA signature on them.
> >
> > If no encoding is used then how extensibility is achieved?
> 
> Extensibility is in the HHIT which includes the Suite ID (Ed25519/cSHAKE
> here).  A different HHIT Suite ID will result in a differently
> structured self-attestation.  None exist right now, so no attempt is
> made to consider what other results would look like.

OK.

> > I also wonder how algorithm agility property is achieved for broadcast RID
> > messages.
> 
> As above the HHIT includes the Suite ID.  Note that the HHIT is an
> extension of the HIT in rfc7401 that also provided algorithm agility
> through the included Suite ID.

OK, good to know. My concern was that with broadcasts changing 
algorithms is operationally challenging - since there is no negotiation 
you should first upgrade all the receivers and only then start 
upgrading UAs.

> I hope this helps.

Definitely.

Thank you,
Valery.


From nobody Thu Mar 31 06:56:42 2022
Return-Path: <noreply@ietf.org>
X-Original-To: secdir@ietf.org
Delivered-To: secdir@ietfa.amsl.com
Received: from ietfa.amsl.com (localhost [IPv6:::1]) by ietfa.amsl.com (Postfix) with ESMTP id 9C0AB3A18FC for <secdir@ietf.org>; Thu, 31 Mar 2022 06:56:40 -0700 (PDT)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 8bit
From: Tero Kivinen via Datatracker <noreply@ietf.org>
To: <secdir@ietf.org>
X-Test-IDTracker: no
X-IETF-IDTracker: 7.46.0
Auto-Submitted: auto-generated
Precedence: bulk
Reply-To: secdir-secretary@mit.edu, Tero Kivinen <kivinen@iki.fi>
Message-ID: <164873500061.18024.2464141076464093073@ietfa.amsl.com>
Date: Thu, 31 Mar 2022 06:56:40 -0700
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/ZwwUiOgeguHBC0Qc3WBNyfHWQOc>
Subject: [secdir] Assignments
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 31 Mar 2022 13:56:41 -0000

Review instructions and related resources are at:
https://trac.ietf.org/trac/sec/wiki/SecDirReview

For telechat 2022-04-07

Reviewer               LC end     Draft
Watson Ladd           R2022-02-08 draft-ietf-detnet-bounded-latency
Aanchal Malhotra       2022-02-03 draft-ietf-bfd-rfc9127-bis
Daniel Migault        R2021-06-28 draft-ietf-ipwave-vehicular-networking
Sandra Murphy          2020-10-15 draft-ietf-tls-external-psk-importer

Last calls:

Reviewer               LC end     Draft
Alan DeKok             2021-12-30 draft-ietf-sidrops-6486bis
Daniel Franke          2022-01-19 draft-ietf-pim-igmp-mld-extension
Daniel Gillmor         2022-01-28 draft-ietf-rats-yang-tpm-charra
Watson Ladd           R2022-02-08 draft-ietf-detnet-bounded-latency
Aanchal Malhotra       2021-10-15 draft-ietf-kitten-tls-channel-bindings-for-tls13
Aanchal Malhotra       2022-02-03 draft-ietf-bfd-rfc9127-bis
Daniel Migault        R2021-06-28 draft-ietf-ipwave-vehicular-networking
Sandra Murphy          2022-03-07 draft-rsalz-2028bis
Sandra Murphy          2020-10-15 draft-ietf-tls-external-psk-importer
Tirumaleswar Reddy.K   2022-04-07 draft-koster-rep
Stefan Santesson       2022-04-07 draft-ietf-teep-otrp-over-http
Stefan Santesson       2021-08-11 draft-ietf-bier-te-arch
Benjamin Schwartz      2022-04-07 draft-ietf-teep-architecture
Rifaat Shekh-Yusef     2022-04-05 draft-ietf-avtcore-cryptex
Melinda Shore          2022-04-08 draft-ietf-tls-subcerts
Robert Sparks          2022-04-06 draft-ietf-6lo-use-cases
Tina Tsou              2022-04-04 draft-ietf-raw-ldacs
Sean Turner            2022-04-26 draft-davies-int-historic
Loganaden Velvindron   2022-04-12 draft-ietf-lisp-vendor-lcaf
Mališa Vučinić         2022-04-08 draft-ietf-anima-constrained-join-proxy
Carl Wallace           2022-04-08 draft-ietf-avtext-framemarking
Brian Weis             2021-08-19 draft-ietf-dnsop-svcb-https
Klaas Wierenga         2020-05-26 draft-ietf-kitten-krb-spake-preauth
Liang Xia              2021-03-17 draft-ietf-core-sid

Early review requests:

Reviewer               Due        Draft
Stephen Farrell        2021-09-15 draft-ietf-ippm-ioam-direct-export
Stephen Farrell        2021-06-21 draft-ietf-idr-bgpls-srv6-ext
Tina Tsou              2021-08-25 draft-ietf-opsawg-sbom-access
Loganaden Velvindron   2021-08-18 draft-ietf-taps-arch
Brian Weis             2022-05-16 draft-ietf-ippm-capacity-protocol

Next in the reviewer rotation:

  Klaas Wierenga
  Christopher Wood
  Liang Xia
  Dacheng Zhang
  John Bradley
  Nancy Cam-Winget
  Shaun Cooley
  Alan DeKok
  Linda Dunbar
  Donald Eastlake


From nobody Thu Mar 31 17:50:29 2022
Return-Path: <stu.card@axenterprize.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 536E83A07F1 for <secdir@ietfa.amsl.com>; Thu, 31 Mar 2022 17:50:25 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.107
X-Spam-Level: 
X-Spam-Status: No, score=-2.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=axenterprize.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Kr0F_OxrvGO3 for <secdir@ietfa.amsl.com>; Thu, 31 Mar 2022 17:50:21 -0700 (PDT)
Received: from mail-ej1-x631.google.com (mail-ej1-x631.google.com [IPv6:2a00:1450:4864:20::631]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CB8253A07D3 for <secdir@ietf.org>; Thu, 31 Mar 2022 17:50:20 -0700 (PDT)
Received: by mail-ej1-x631.google.com with SMTP id bq8so2627306ejb.10 for <secdir@ietf.org>; Thu, 31 Mar 2022 17:50:20 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=axenterprize.com; s=google; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=s6WbjIpQdgximXBenDj9rvkvcVXT36LnG8bMBiABiuU=; b=E/rwXlGWdy9N214l60i3TZhON8iWPrcAjjwroT5ff0/4FQdp83i0k3DIgngJMR9uaU ++1VYrQbO6E68r6LNUIQ/uN1rEdOF4ot4wXqrJ98DdqyC5IXeHjHXM9LBEiMXRFI2DqA uOkTfH4YC0nr0RrnngeMQ7Wd11phNIVhjPWD8=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=s6WbjIpQdgximXBenDj9rvkvcVXT36LnG8bMBiABiuU=; b=7i/5mb0XyEDTMnH11k4GGslcsrRuaZCjws0Va+BipRw2p3ay+/ShK4hIcG7AuUlMJ5 Mm3jrwE0XDHLVJQv/W2ezrTOo1x08Kt8Q3gGtA9/G0keBfPrjfXV9s4XkcoRPvaT/dTi EUDswBF4Hzn94SBs3QmCW/vuKOlX29BEDGJWQh+3jomIpOH+Vom4TjVmvYarWVF7fBMS WPTBy0vIqRF3wlpcD2H42w8fB9Y3fvoKPaQ3rea4M5tvRIGQ4f8fRPAQg+7JuHaip9dF h2v4n1G97dvKTSIKNfE6EvqrfboIMfoPJdhckx94ChxDxgU1PgreqBqslOJ1fFAChH/T g6eA==
X-Gm-Message-State: AOAM532I9cnN/TMTQnXZUPW1JsghJhNpKhnVyHhAZ82USQ1VF9Tcg02I Vw5DHTbMNTji1CKYMufx587akfWfnCmAoheDShvPjQ==
X-Google-Smtp-Source: ABdhPJzD1xfGs0ah3lJB54vqpm9cmzdGHzRnZjcFMKGaX/vE/PiHwBde3e9F3jrmvpCE9UGBwkNnQSwy8TkJcScUnjs=
X-Received: by 2002:a17:907:1b25:b0:6da:8206:fc56 with SMTP id mp37-20020a1709071b2500b006da8206fc56mr7050328ejc.81.1648774218427; Thu, 31 Mar 2022 17:50:18 -0700 (PDT)
MIME-Version: 1.0
References: <164864828914.19999.4038160950945043224@ietfa.amsl.com>
In-Reply-To: <164864828914.19999.4038160950945043224@ietfa.amsl.com>
From: "Card, Stu" <stu.card@axenterprize.com>
Date: Thu, 31 Mar 2022 20:50:18 -0400
Message-ID: <CAKM0pYNLxDC9fD7Cwd_39NEuGDARmy0V7qNbO9oZ5huWxAPNQA@mail.gmail.com>
To: Valery Smyslov <valery@smyslov.net>
Cc: secdir@ietf.org, draft-ietf-drip-arch.all@ietf.org, last-call@ietf.org,  tm-rid@ietf.org
Content-Type: multipart/alternative; boundary="0000000000009ac53105db8d29d0"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/zO6OjhNHisX2JJ0BhJop5haas-g>
Subject: Re: [secdir] Secdir last call review of draft-ietf-drip-arch-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 01 Apr 2022 00:50:26 -0000

--0000000000009ac53105db8d29d0
Content-Type: text/plain; charset="UTF-8"

Valery --

Thanks for the review! As you have already seen from the preliminary
responses, we are collectively working on addressing all your points. Here,
I would like to address just one, from a different perspective. So below I
will snip your mail down to just that one point.

We included, in the Security Considerations section, the idea of a large
malicious UA carrying a small and seemingly harmless UA as a false flag. We
did not put this idea in there because we felt that mitigating such
vulnerabilities was in scope of IETF. We put it there to forestall some of
the discussion that would otherwise ensue about protecting private keys
that could be used for spoofing. As a device (small UA) containing a
private key can be physically carried by another device (large UA), there
is no way clever key distribution/management/protection can prevent one
device spoofing generally as another such readily available device. This is
quite distinct from preventing a device from spoofing as a _specific_ other
device: with DRIP, Carol's UA cannot successfully pretend to be Bob's UA.

Your review suggests, to me, that we should make the above reasoning
explicit in the draft.

On Wed, Mar 30, 2022 at 9:51 AM Valery Smyslov via Datatracker <
noreply@ietf.org> wrote:

> ...
> 5. While an example when one UA physically steals UAS RID sender of
> another UA
> is clever, I think that such scenarios (physical security) are not in
> scope of
> IETF work. I believe that many others similar schemes can be invented, so I
> suggest to discuss physical security in a separate subsection of Section 9.
>

--0000000000009ac53105db8d29d0
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div dir=3D"ltr"><div dir=3D"ltr">Valery --<div><br></div><div>Thanks for t=
he review! As you have already seen from the preliminary responses, we are =
collectively working on addressing all your points. Here, I would like to a=
ddress just one, from a different perspective. So below I will snip your ma=
il down to just that one point.</div><div><br></div><div>We included, in th=
e Security Considerations section, the idea of a large malicious UA carryin=
g a small and seemingly harmless UA as a false flag. We did not put this id=
ea in there because we felt that mitigating such vulnerabilities was in sco=
pe of IETF. We put it there to forestall some of the discussion that would =
otherwise ensue about protecting private keys that could be used for spoofi=
ng. As a device (small UA) containing a private key can be physically carri=
ed by another device (large UA), there is no way clever key distribution/ma=
nagement/protection can prevent one device spoofing generally as another su=
ch readily available device. This is quite distinct from preventing a devic=
e from spoofing as a _specific_ other device: with DRIP, Carol&#39;s UA can=
not successfully pretend to be Bob&#39;s UA.</div><div><br></div><div>Your =
review suggests, to me, that we should make the above reasoning explicit in=
 the draft.</div></div><br><div class=3D"gmail_quote"><div dir=3D"ltr" clas=
s=3D"gmail_attr">On Wed, Mar 30, 2022 at 9:51 AM Valery Smyslov via Datatra=
cker &lt;<a href=3D"mailto:noreply@ietf.org">noreply@ietf.org</a>&gt; wrote=
:<br></div><blockquote class=3D"gmail_quote" style=3D"margin:0px 0px 0px 0.=
8ex;border-left:1px solid rgb(204,204,204);padding-left:1ex">...<br>
5. While an example when one UA physically steals UAS RID sender of another=
 UA<br>
is clever, I think that such scenarios (physical security) are not in scope=
 of<br>
IETF work. I believe that many others similar schemes can be invented, so I=
<br>
suggest to discuss physical security in a separate subsection of Section 9.=
<br></blockquote><div>=C2=A0</div></div></div>

--0000000000009ac53105db8d29d0--


From nobody Thu Mar 31 23:17:04 2022
Return-Path: <valery@smyslov.net>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1362F3A20BD; Thu, 31 Mar 2022 23:16:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.107
X-Spam-Level: 
X-Spam-Status: No, score=-2.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=smyslov.net
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id L9L9d9XZa4bd; Thu, 31 Mar 2022 23:16:37 -0700 (PDT)
Received: from direct.host-care.com (direct.host-care.com [198.136.54.115]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E31563A20AE; Thu, 31 Mar 2022 23:16:36 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=smyslov.net ; s=default; h=Content-Type:MIME-Version:Message-ID:Date:Subject:In-Reply-To: References:Cc:To:From:Sender:Reply-To:Content-Transfer-Encoding:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=Z09XSVQWzSYoGIXgitBLACCMDz8WR4z7/O6QzMCo66c=; b=Zmn/FiLDM8kbWz/nxORFhoyaLZ kN7jcijsEUuqM+oH2sLCgCPPu2jmzCVQJVNkiqAl19yl7YIxMdWmS+MBh/wzNSNTXkgmNqtw+615b ZP2x//31LnKvOYD+KYBdeheqkzlgK++zs5QwjKo/aH9Z4tnAO48h2C2UtQeq1N7f/VJWWJGPqCUx8 +1NMa85FMkI+uWXVsj3Ht5SjJjKayg3HHC22ggLvlSEEqJDEg+LCJ4DozkROTfUslPHwyjpnVlufR Ssgr1RNXYvsuvZvmQkoWZaIavyfNQPzqXa2gTtWZUqnxJpzdyd9vfVTgh/9e/Uy9iFrfqIvZcHP0Y RctqB6ZQ==;
Received: from [93.188.44.204] (port=64152 helo=buildpc) by direct.host-care.com with esmtpsa (TLS1.2) tls TLS_DHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.93) (envelope-from <valery@smyslov.net>) id 1naAaF-000720-Bf; Fri, 01 Apr 2022 02:16:31 -0400
From: "Valery Smyslov" <valery@smyslov.net>
To: "'Card, Stu'" <stu.card@axenterprize.com>
Cc: <secdir@ietf.org>, <draft-ietf-drip-arch.all@ietf.org>, <last-call@ietf.org>, <tm-rid@ietf.org>
References: <164864828914.19999.4038160950945043224@ietfa.amsl.com> <CAKM0pYNLxDC9fD7Cwd_39NEuGDARmy0V7qNbO9oZ5huWxAPNQA@mail.gmail.com>
In-Reply-To: <CAKM0pYNLxDC9fD7Cwd_39NEuGDARmy0V7qNbO9oZ5huWxAPNQA@mail.gmail.com>
Date: Fri, 1 Apr 2022 09:16:31 +0300
Message-ID: <1a4f01d84590$0a4179e0$1ec46da0$@smyslov.net>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="----=_NextPart_000_1A50_01D845A9.2F8F9C40"
X-Mailer: Microsoft Outlook 14.0
Thread-Index: AQHAkWuyxQUkzf87mu+hlPYoCbOlNwJItAj0rPe0cWA=
Content-Language: ru
X-AntiAbuse: This header was added to track abuse, please include it with any abuse report
X-AntiAbuse: Primary Hostname - direct.host-care.com
X-AntiAbuse: Original Domain - ietf.org
X-AntiAbuse: Originator/Caller UID/GID - [47 12] / [47 12]
X-AntiAbuse: Sender Address Domain - smyslov.net
X-Get-Message-Sender-Via: direct.host-care.com: authenticated_id: valery@smyslov.net
X-Authenticated-Sender: direct.host-care.com: valery@smyslov.net
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdir/LT7ghV9Yz0eTQEKk6K6061-Bccs>
Subject: Re: [secdir] Secdir last call review of draft-ietf-drip-arch-22
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 01 Apr 2022 06:16:43 -0000

This is a multipart message in MIME format.

------=_NextPart_000_1A50_01D845A9.2F8F9C40
Content-Type: text/plain;
	charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

Hi Card,

=20

I don=E2=80=99t disagree with you. My point was that it=E2=80=99s better =
to discuss scenarios involving physical actions with devices

in a separate subsection in the Security Considerations section. Just =
because they are very different from security

point of view. And it will also be helpful if you make your reasoning =
explicit.

=20

Regards,

Valery.

=20

=20

From: Card, Stu [mailto:stu.card@axenterprize.com]=20
Sent: Friday, April 01, 2022 3:50 AM
To: Valery Smyslov
Cc: secdir@ietf.org; draft-ietf-drip-arch.all@ietf.org; =
last-call@ietf.org; tm-rid@ietf.org
Subject: Re: Secdir last call review of draft-ietf-drip-arch-22

=20

Valery --

=20

Thanks for the review! As you have already seen from the preliminary =
responses, we are collectively working on addressing all your points. =
Here, I would like to address just one, from a different perspective. So =
below I will snip your mail down to just that one point.

=20

We included, in the Security Considerations section, the idea of a large =
malicious UA carrying a small and seemingly harmless UA as a false flag. =
We did not put this idea in there because we felt that mitigating such =
vulnerabilities was in scope of IETF. We put it there to forestall some =
of the discussion that would otherwise ensue about protecting private =
keys that could be used for spoofing. As a device (small UA) containing =
a private key can be physically carried by another device (large UA), =
there is no way clever key distribution/management/protection can =
prevent one device spoofing generally as another such readily available =
device. This is quite distinct from preventing a device from spoofing as =
a _specific_ other device: with DRIP, Carol's UA cannot successfully =
pretend to be Bob's UA.

=20

Your review suggests, to me, that we should make the above reasoning =
explicit in the draft.

=20

On Wed, Mar 30, 2022 at 9:51 AM Valery Smyslov via Datatracker =
<noreply@ietf.org> wrote:

...
5. While an example when one UA physically steals UAS RID sender of =
another UA
is clever, I think that such scenarios (physical security) are not in =
scope of
IETF work. I believe that many others similar schemes can be invented, =
so I
suggest to discuss physical security in a separate subsection of Section =
9.

=20


------=_NextPart_000_1A50_01D845A9.2F8F9C40
Content-Type: text/html;
	charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<html xmlns:v=3D"urn:schemas-microsoft-com:vml" =
xmlns:o=3D"urn:schemas-microsoft-com:office:office" =
xmlns:w=3D"urn:schemas-microsoft-com:office:word" =
xmlns:m=3D"http://schemas.microsoft.com/office/2004/12/omml" =
xmlns=3D"http://www.w3.org/TR/REC-html40"><head><meta =
http-equiv=3DContent-Type content=3D"text/html; charset=3Dutf-8"><meta =
name=3DGenerator content=3D"Microsoft Word 14 (filtered =
medium)"><style><!--
/* Font Definitions */
@font-face
	{font-family:Calibri;
	panose-1:2 15 5 2 2 2 4 3 2 4;}
@font-face
	{font-family:Tahoma;
	panose-1:2 11 6 4 3 5 4 4 2 4;}
/* Style Definitions */
p.MsoNormal, li.MsoNormal, div.MsoNormal
	{margin:0cm;
	margin-bottom:.0001pt;
	font-size:12.0pt;
	font-family:"Times New Roman","serif";}
a:link, span.MsoHyperlink
	{mso-style-priority:99;
	color:blue;
	text-decoration:underline;}
a:visited, span.MsoHyperlinkFollowed
	{mso-style-priority:99;
	color:purple;
	text-decoration:underline;}
span.EmailStyle17
	{mso-style-type:personal-reply;
	font-family:"Calibri","sans-serif";
	color:#44546A;}
.MsoChpDefault
	{mso-style-type:export-only;
	font-family:"Calibri","sans-serif";
	mso-fareast-language:EN-US;}
@page WordSection1
	{size:612.0pt 792.0pt;
	margin:2.0cm 42.5pt 2.0cm 3.0cm;}
div.WordSection1
	{page:WordSection1;}
--></style><!--[if gte mso 9]><xml>
<o:shapedefaults v:ext=3D"edit" spidmax=3D"1026" />
</xml><![endif]--><!--[if gte mso 9]><xml>
<o:shapelayout v:ext=3D"edit">
<o:idmap v:ext=3D"edit" data=3D"1" />
</o:shapelayout></xml><![endif]--></head><body lang=3DRU link=3Dblue =
vlink=3Dpurple><div class=3DWordSection1><p class=3DMsoNormal><span =
lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'>Hi Card,<o:p></o:p></span></p><p class=3DMsoNormal><span lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal><span lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'>I don=E2=80=99t disagree with you. My point was that it=E2=80=99s =
better to discuss scenarios involving physical actions with =
devices<o:p></o:p></span></p><p class=3DMsoNormal><span lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'>in a separate subsection in the Security Considerations section. Just =
because they are very different from security<o:p></o:p></span></p><p =
class=3DMsoNormal><span lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'>point of view. And it will also be helpful if you make your reasoning =
explicit.<o:p></o:p></span></p><p class=3DMsoNormal><span lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal><span lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'>Regards,<o:p></o:p></span></p><p class=3DMsoNormal><span lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'>Valery.<o:p></o:p></span></p><p class=3DMsoNormal><span lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'><o:p>&nbsp;</o:p></span></p><p class=3DMsoNormal><span lang=3DEN-US =
style=3D'font-size:14.0pt;font-family:"Calibri","sans-serif";color:#44546=
A'><o:p>&nbsp;</o:p></span></p><div =
style=3D'border:none;border-left:solid blue 1.5pt;padding:0cm 0cm 0cm =
4.0pt'><div><div style=3D'border:none;border-top:solid #B5C4DF =
1.0pt;padding:3.0pt 0cm 0cm 0cm'><p class=3DMsoNormal><b><span =
lang=3DEN-US =
style=3D'font-size:10.0pt;font-family:"Tahoma","sans-serif"'>From:</span>=
</b><span lang=3DEN-US =
style=3D'font-size:10.0pt;font-family:"Tahoma","sans-serif"'> Card, Stu =
[mailto:stu.card@axenterprize.com] <br><b>Sent:</b> Friday, April 01, =
2022 3:50 AM<br><b>To:</b> Valery Smyslov<br><b>Cc:</b> secdir@ietf.org; =
draft-ietf-drip-arch.all@ietf.org; last-call@ietf.org; =
tm-rid@ietf.org<br><b>Subject:</b> Re: Secdir last call review of =
draft-ietf-drip-arch-22<o:p></o:p></span></p></div></div><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p><div><div><p =
class=3DMsoNormal>Valery --<o:p></o:p></p><div><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p></div><div><p =
class=3DMsoNormal>Thanks for the review! As you have already seen from =
the preliminary responses, we are collectively working on addressing all =
your points. Here, I would like to address just one, from a different =
perspective. So below I will snip your mail down to just that one =
point.<o:p></o:p></p></div><div><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p></div><div><p =
class=3DMsoNormal>We included, in the Security Considerations section, =
the idea of a large malicious UA carrying a small and seemingly harmless =
UA as a false flag. We did not put this idea in there because we felt =
that mitigating such vulnerabilities was in scope of IETF. We put it =
there to forestall some of the discussion that would otherwise ensue =
about protecting private keys that could be used for spoofing. As a =
device (small UA) containing a private key can be physically carried by =
another device (large UA), there is no way clever key =
distribution/management/protection can prevent one device spoofing =
generally as another such readily available device. This is quite =
distinct from preventing a device from spoofing as a _specific_ other =
device: with DRIP, Carol's UA cannot successfully pretend to be Bob's =
UA.<o:p></o:p></p></div><div><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p></div><div><p =
class=3DMsoNormal>Your review suggests, to me, that we should make the =
above reasoning explicit in the draft.<o:p></o:p></p></div></div><p =
class=3DMsoNormal><o:p>&nbsp;</o:p></p><div><div><p class=3DMsoNormal>On =
Wed, Mar 30, 2022 at 9:51 AM Valery Smyslov via Datatracker &lt;<a =
href=3D"mailto:noreply@ietf.org">noreply@ietf.org</a>&gt; =
wrote:<o:p></o:p></p></div><blockquote =
style=3D'border:none;border-left:solid #CCCCCC 1.0pt;padding:0cm 0cm 0cm =
6.0pt;margin-left:4.8pt;margin-right:0cm'><p class=3DMsoNormal>...<br>5. =
While an example when one UA physically steals UAS RID sender of another =
UA<br>is clever, I think that such scenarios (physical security) are not =
in scope of<br>IETF work. I believe that many others similar schemes can =
be invented, so I<br>suggest to discuss physical security in a separate =
subsection of Section 9.<o:p></o:p></p></blockquote><div><p =
class=3DMsoNormal>&nbsp;<o:p></o:p></p></div></div></div></div></div></bo=
dy></html>
------=_NextPart_000_1A50_01D845A9.2F8F9C40--

