Skip to main content

Last Call Review of draft-ietf-detnet-data-plane-framework-04
review-ietf-detnet-data-plane-framework-04-secdir-lc-lonvick-2020-03-20-00

Request Review of draft-ietf-detnet-data-plane-framework
Requested revision No specific revision (document currently at 06)
Type Last Call Review
Team Security Area Directorate (secdir)
Deadline 2020-03-13
Requested 2020-02-28
Authors Balazs Varga , János Farkas , Lou Berger , Andrew G. Malis , Stewart Bryant
I-D last updated 2020-03-20
Completed reviews Rtgdir Last Call review of -03 by Sasha Vainshtein (diff)
Tsvart Last Call review of -04 by Yoshifumi Nishida (diff)
Genart Last Call review of -04 by Christer Holmberg (diff)
Secdir Last Call review of -04 by Chris M. Lonvick (diff)
Assignment Reviewer Chris M. Lonvick
State Completed
Request Last Call review on draft-ietf-detnet-data-plane-framework by Security Area Directorate Assigned
Posted at https://mailarchive.ietf.org/arch/msg/secdir/MYXBv1XAh52QqxA2bqqywKNqmVk
Reviewed revision 04 (document currently at 06)
Result Has issues
Completed 2020-03-13
review-ietf-detnet-data-plane-framework-04-secdir-lc-lonvick-2020-03-20-00
Hello,

I have reviewed this document as part of the security directorate's 
ongoing effort to review all IETF documents being processed by the IESG. 
These comments were written primarily for the benefit of the security 
area directors. Document editors and WG chairs should treat these 
comments just like any other last call comments.

The summary of the review is Ready with Issues. The only reason I add 
the "with Issues" caveat is that the Security Considerations section 
broadly defers to I-D.ietf-detnet-security.

The Security Considerations section of 
draft-ietf-detnet-data-plane-framework additionally provides some 
comments that are specific to the draft. I found those to be well 
thought out and appropriate. I skimmed I-D.ietf-detnet-security and 
found it to also be well thought out. The threat model was clear and 
understandable and the document appeared to appropriately address the 
threat analysis.

I would give draft-ietf-detnet-data-plane-framework an unqualified 
Ready, as soon as I-D.ietf-detnet-security is reviewed and becomes an RFC.

Regards,

Chris