Skip to main content

Last Call Review of draft-ietf-dnsop-rfc7958bis-03
review-ietf-dnsop-rfc7958bis-03-secdir-lc-wierenga-2024-08-01-00

Request Review of draft-ietf-dnsop-rfc7958bis
Requested revision No specific revision (document currently at 06)
Type Last Call Review
Team Security Area Directorate (secdir)
Deadline 2024-08-08
Requested 2024-07-18
Authors Joe Abley , Jakob Schlyter , Guillaume Bailey , Paul E. Hoffman
I-D last updated 2024-08-01
Completed reviews Dnsdir Early review of -00 by Florian Obser (diff)
Dnsdir Last Call review of -03 by Petr Špaček (diff)
Secdir Last Call review of -03 by Klaas Wierenga (diff)
Artart Last Call review of -03 by Scott Hollenbeck (diff)
Genart Last Call review of -03 by Dan Romascanu (diff)
Dnsdir Telechat review of -04 by Petr Špaček (diff)
Dnsdir Telechat review of -05 by Petr Špaček (diff)
Dnsdir Telechat review of -06 by Petr Špaček
Assignment Reviewer Klaas Wierenga
State Completed
Request Last Call review on draft-ietf-dnsop-rfc7958bis by Security Area Directorate Assigned
Posted at https://mailarchive.ietf.org/arch/msg/secdir/zKfRSOCzOHwDO7yFER-7sNNN6O0
Reviewed revision 03 (document currently at 06)
Result Has nits
Completed 2024-08-01
review-ietf-dnsop-rfc7958bis-03-secdir-lc-wierenga-2024-08-01-00
The draft reads well and is clear. I have one question that is maybe worth
answering in the security considerations. What is the impact of retrieving the
trust anchors over http instead of https? Does that lead to a risk of ending up
with an invalid set of trust anchors?

Klaas