>>>>> "Gray," == Gray, Eric <Eric.Gray@xxxxxxxxxxx> writes: Gray,> Sam, I thought the Security Area Directorate was limited to Gray,> determining if the description of security risks is Gray,> adequate and that determination of whether security is Gray,> adequate - for adequately described security risks - would Gray,> be up to the end consumer. first, this document is in last call. It's very clear to me that I can make a last call comment as an IETf contributor that I think the security is inadequate. I don't have time right now to come up with text I believe to be formally correct that describes when I would feel comfortable entering a security discuss. I refer you to the IESG discuss criteria document as a good starting point. --Sam _______________________________________________ Ietf@xxxxxxxx https://www1.ietf.org/mailman/listinfo/ietf