Secdir last call review of draft-ietf-bess-mvpn-mib-10

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Reviewer: Valery Smyslov	
Review result: Almost Ready

I have reviewed this document as part of the security directorate's 
ongoing effort to review all IETF documents being processed by the 
IESG.  These comments were written primarily for the benefit of the 
security area directors.  Document editors and WG chairs should treat 
these comments just like any other last call comments.

The document provides a MIB module for Level 3 Multicast VPNs.
The MIB Module passed a thorough MIB doctor review.

The Security Considerations text follows the "Security Guidelines for IETF 
MIB Modules" (https://trac.ietf.org/trac/ops/wiki/mib-security).
In particular, all the objects with read-write access from this MIB module 
are listed and the possible impact of manipulating their values is described.
In addition, readable address-related objects from this MIB module 
that may reveal the locations of the peers are listed too.
My only concern with the Security Considerations is that the latter list lacks 
mvpnMrouteRtAddr object, which in my opinion should be there, 
since it's also readable and contains address-related information.
I think that once this issue is resolved the document will be ready for publication.





[Index of Archives]     [IETF Annoucements]     [IETF]     [IP Storage]     [Yosemite News]     [Linux SCTP]     [Linux Newbies]     [Mhonarc]     [Fedora Users]

  Powered by Linux