Skip to main content

Telechat Review of draft-ietf-ospf-hmac-sha-
review-ietf-ospf-hmac-sha-secdir-telechat-orman-2009-08-27-00

Request Review of draft-ietf-ospf-hmac-sha
Requested revision No specific revision (document currently at 07)
Type Telechat Review
Team Security Area Directorate (secdir)
Deadline 2009-08-25
Requested 2009-08-17
Authors M Fanto , Randall Atkinson , Michael Barnes , Vishwas Manral , Russ White , Tony Li , Manav Bhatia
Draft last updated 2009-08-27
Completed reviews Secdir Last Call review of -?? by Hilarie Orman
Secdir Telechat review of -?? by Hilarie Orman
Assignment Reviewer Hilarie Orman
State Completed
Review review-ietf-ospf-hmac-sha-secdir-telechat-orman-2009-08-27
Completed 2009-08-27
review-ietf-ospf-hmac-sha-secdir-telechat-orman-2009-08-27-00
Review of draft-ietf-ospf-hmac-sha-06.txt

Do not be alarmed.  I have reviewed this document as part of the
security directorate's ongoing effort to review all IETF documents
being processed by the IESG. These comments were written primarily for
the benefit of the security area directors.  Document editors and WG
chairs should treat these comments just like any other last call
comments.

My only comment on this greatly improved document concerns the last
paragraph of section 4:

   Use of full digital signatures would ...
   eliminat[e] the replay issue that was noted above.

Replay can remain a problem even with signed data, can't it?  I think
that two-way communication is may be a requirement for eliminating the
possibility of replay.

Hilarie