Skip to main content

Last Call Review of draft-ietf-bess-evpn-optimized-ir-09
review-ietf-bess-evpn-optimized-ir-09-secdir-lc-atkins-2021-10-07-00

Request Review of draft-ietf-bess-evpn-optimized-ir
Requested revision No specific revision (document currently at 12)
Type Last Call Review
Team Security Area Directorate (secdir)
Deadline 2021-09-07
Requested 2021-08-24
Authors Jorge Rabadan , Senthil Sathappan , Wen Lin , Mukul Katiyar , Ali Sajassi
I-D last updated 2021-10-07
Completed reviews Rtgdir Early review of -09 by Julien Meuric (diff)
Tsvart Last Call review of -08 by Michael Tüxen (diff)
Secdir Last Call review of -09 by Derek Atkins (diff)
Genart Last Call review of -09 by Gyan Mishra (diff)
Opsdir Last Call review of -09 by Tim Chown (diff)
Intdir Telechat review of -09 by Pascal Thubert (diff)
Assignment Reviewer Derek Atkins
State Completed
Request Last Call review on draft-ietf-bess-evpn-optimized-ir by Security Area Directorate Assigned
Posted at https://mailarchive.ietf.org/arch/msg/secdir/fAsS6YPiAXFGj6oiTjs4B504vGM
Reviewed revision 09 (document currently at 12)
Result Ready
Completed 2021-10-07
review-ietf-bess-evpn-optimized-ir-09-secdir-lc-atkins-2021-10-07-00
Hi,

I have reviewed this document as part of the security directorate's
ongoing effort to review all IETF documents being processed by the
IESG.  These comments were written with the intent of improving
security requirements and considerations in IETF drafts.  Comments
not addressed in last call may be included in AD reviews during the
IESG review.  Document editors and WG chairs should treat these
comments just like any other last call comments.

Summary:

* Ready to Publish

Details:

* It is unclear to me how one would protect from a (D)DoS attack with
  a forged BM packet sent into the replicator and prevent
  amplification attacks.

-derek