Early Review of draft-ietf-netconf-yang-library-03
review-ietf-netconf-yang-library-03-secdir-early-yu-2016-02-04-00

Request Review of draft-ietf-netconf-yang-library
Requested rev. no specific revision (document currently at 06)
Type Early Review
Team Security Area Directorate (secdir)
Deadline 2016-05-03
Requested 2015-12-22
Authors Andy Bierman, Martin Björklund, Kent Watsen
Draft last updated 2016-02-04
Completed reviews Genart Last Call review of -05 by Vijay Gurbani (diff)
Secdir Early review of -03 by Taylor Yu (diff)
Secdir Last Call review of -05 by Taylor Yu (diff)
Opsdir Last Call review of -05 by Jouni Korhonen (diff)
Assignment Reviewer Taylor Yu
State Completed
Review review-ietf-netconf-yang-library-03-secdir-early-yu-2016-02-04
Reviewed rev. 03 (document currently at 06)
Review result Ready
Review completed: 2016-02-04

Review
review-ietf-netconf-yang-library-03-secdir-early-yu-2016-02-04

I have reviewed this document as part of the security directorate's 
ongoing effort to review all IETF documents being processed by the 
IESG.  These comments were written primarily for the benefit of the 
security area directors.  Document editors and WG chairs should treat 
these comments just like any other last call comments.

The Security Considerations of this document seem reasonable.  It might
be useful to add a comparison of the risks posed by sensitive
information exposed by this YANG module with information exposed by
other aspects of NETCONF, or available through methods such as
fingerprinting.  Admittedly, a meaningful comparison might be highly
context-specific, so a general comparison might have limited utility.