Last Call Review of draft-ietf-uta-ciphersuites-in-sec-syslog-05
review-ietf-uta-ciphersuites-in-sec-syslog-05-opsdir-lc-wu-2024-04-12-00
Request | Review of | draft-ietf-uta-ciphersuites-in-sec-syslog |
---|---|---|
Requested revision | No specific revision (document currently at 07) | |
Type | IETF Last Call Review | |
Team | Ops Directorate (opsdir) | |
Deadline | 2024-04-16 | |
Requested | 2024-04-02 | |
Authors | Chris M. Lonvick , Sean Turner , Joseph A. Salowey | |
I-D last updated | 2024-10-07 (Latest revision 2024-07-24) | |
Completed reviews |
Opsdir IETF Last Call review of -05
by Qin Wu
(diff)
Genart IETF Last Call review of -05 by Vijay K. Gurbani (diff) Secdir IETF Last Call review of -05 by Loganaden Velvindron (diff) |
|
Assignment | Reviewer | Qin Wu |
State | Completed | |
Request | IETF Last Call review on draft-ietf-uta-ciphersuites-in-sec-syslog by Ops Directorate Assigned | |
Posted at | https://mailarchive.ietf.org/arch/msg/ops-dir/IuE0XxGSo4upnryTmxaIc0iNAzQ | |
Reviewed revision | 05 (document currently at 07) | |
Result | Has nits | |
Completed | 2024-04-12 |
review-ietf-uta-ciphersuites-in-sec-syslog-05-opsdir-lc-wu-2024-04-12-00
Hi, I have reviewed this document as part of the Operational directorate's ongoing effort to review all IETF documents being processed by the IESG. These comments were written with the intent of improving the operational aspects of the IETF drafts per guidelines in RFC5706. Comments that are not addressed in last call may be included in AD reviews during the IESG review. Document editors and WG chairs should treat these comments just like any other last call comments. This document deprecates the use of DTLS 1.0 and updates the mandatory to implement cipher suites to be compliant with all RFCs and laterst version of TLS and DTSL for Syslog. This document is well written and ready for publication. The only comment I have is to fix nits complaints in the document which is also raised in document shepherd. Also I am wondering whether we have the timeframe for the device to be updated to support a secure cipher suite? in other words, When such transition from old version of DTLS starts and how long such transition will last? How do we expect developers and implementers know where they can find these recommendations in this document? How many other IETF developed protocols need to go through similar transition? I know these questions are not only applied to this document, but it seems worth to flag it out to make these update can be easily tracked and followed, for community members within IETF or other SDOs in the outside of IETF.