Hi Ted, Thank you for the reply and for implementing these changes.
I checked the diff, but I’m afraid the -06 version has the same issues as the ones I reported in January 31. I’m reiterating that most of my comments are still unaddressed in -06. Cheers, Med De : Ted Hardie [mailto:ted.ietf@xxxxxxxxm]
Hi Mohamed, Thanks for your review. I've uploaded a draft -06 with updates from your and other reviews. Some notes in-line. On Tue, Jan 31, 2017 at 1:49 AM, <mohamed.boucadair@xxxxxxxxxx> wrote: Dear Ted, I have updated this to clarify that this is the host/end system not the user.
I've adopted this language.
I've also considered your point that an updated version of RFC7258 might be a better outlet for advice like this. We did consider several approaches, including incorporating the text in an update to RFC 3552
or as part of a document describing the full set of companion mitigations to the threats in RFC 7624 (draft-iab-privsec-confidentiality-mitigations would be one approach). Those are all valid approaches, but it seemed that short, easily read documents tackling
a single point might be easier to produce and consume. Thanks again for your review, Ted Hardie |