Last Call Review of draft-ietf-6lo-fragment-recovery-08
review-ietf-6lo-fragment-recovery-08-secdir-lc-reddyk-2020-02-06-00

Request Review of draft-ietf-6lo-fragment-recovery
Requested rev. no specific revision (document currently at 12)
Type Last Call Review
Team Security Area Directorate (secdir)
Deadline 2020-01-30
Requested 2020-01-16
Authors Pascal Thubert
Draft last updated 2020-02-06
Completed reviews Iotdir Last Call review of -07 by Erik Nordmark (diff)
Genart Last Call review of -08 by Peter Yee (diff)
Secdir Last Call review of -08 by Tirumaleswar Reddy.K (diff)
Tsvart Last Call review of -11 by Colin Perkins (diff)
Genart Telechat review of -12 by Peter Yee
Assignment Reviewer Tirumaleswar Reddy.K
State Completed
Review review-ietf-6lo-fragment-recovery-08-secdir-lc-reddyk-2020-02-06
Posted at https://mailarchive.ietf.org/arch/msg/secdir/ha9rOmKSj7Bp6HXSFgUz4bSv5R4
Reviewed rev. 08 (document currently at 12)
Review result Has Nits
Review completed: 2020-02-03

Review
review-ietf-6lo-fragment-recovery-08-secdir-lc-reddyk-2020-02-06

Reviewer: Tirumaleswar Reddy
Review result: Ready with nits

I have reviewed this document as part of the security directorate's ongoing effort to review all IETF documents being processed by the IESG.
These comments were written primarily for the benefit of the security area directors.  Document editors and WG chairs should treat these comments just like any other last call comments.

Summary: Ready with nits

[1] It is not clear to me how the Security sections of I-D.ietf-core-cocoa apply to this specification ?
[2] The security considerations section discusses I-D.ietf-lwig-6lowpan-virtual-reassembly but that document does not discuss any security considerations yet.
[3] It is not clear how the DoS attack of bogus first fragments is handled and other attacks discussed in https://tools.ietf.org/html/draft-ietf-intarea-frag-fragile-17#section-3.7 are tackled ?
[4] How does the document align with the recommendations given in https://tools.ietf.org/html/draft-ietf-intarea-frag-fragile-17#section-6 ?

Cheers,
-Tiru