
From jmh@joelhalpern.com  Thu Nov  1 07:21:40 2012
Return-Path: <jmh@joelhalpern.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 87C6421F8D9B; Thu,  1 Nov 2012 07:21:40 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.265
X-Spam-Level: 
X-Spam-Status: No, score=-102.265 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, IP_NOT_FRIENDLY=0.334, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YRl-HTaPKb1W; Thu,  1 Nov 2012 07:21:40 -0700 (PDT)
Received: from morbo.mail.tigertech.net (morbo.mail.tigertech.net [67.131.251.54]) by ietfa.amsl.com (Postfix) with ESMTP id 20E7D21F8D99; Thu,  1 Nov 2012 07:21:40 -0700 (PDT)
Received: from mailc2.tigertech.net (mailc2.tigertech.net [208.80.4.156]) by morbo.tigertech.net (Postfix) with ESMTP id 83B0C558099; Thu,  1 Nov 2012 07:21:39 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by mailc2.tigertech.net (Postfix) with ESMTP id 7FE491BD124B; Thu,  1 Nov 2012 07:21:38 -0700 (PDT)
X-Virus-Scanned: Debian amavisd-new at c2.tigertech.net
Received: from [10.10.10.104] (pool-71-161-52-6.clppva.btas.verizon.net [71.161.52.6]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mailc2.tigertech.net (Postfix) with ESMTPSA id D29811BD1245; Thu,  1 Nov 2012 07:21:37 -0700 (PDT)
Message-ID: <5092856B.6070502@joelhalpern.com>
Date: Thu, 01 Nov 2012 10:21:31 -0400
From: "Joel M. Halpern" <jmh@joelhalpern.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:16.0) Gecko/20121010 Thunderbird/16.0.1
MIME-Version: 1.0
To: "karp@ietf.org" <karp@ietf.org>, "lisp@ietf.org" <lisp@ietf.org>
References: <CANTg3aDLgxhon1gXQfwJEDxH1oMeYfzAxPEApwMeWsK1g+SNbg@mail.gmail.com>
In-Reply-To: <CANTg3aDLgxhon1gXQfwJEDxH1oMeYfzAxPEApwMeWsK1g+SNbg@mail.gmail.com>
X-Forwarded-Message-Id: <CANTg3aDLgxhon1gXQfwJEDxH1oMeYfzAxPEApwMeWsK1g+SNbg@mail.gmail.com>
Content-Type: text/plain; charset=ISO-8859-1; format=flowed
Content-Transfer-Encoding: 7bit
Subject: [karp] Fwd: Re: [85all] NomCom: Office Hours in Atlanta
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 01 Nov 2012 14:21:40 -0000

Correction to the deadline for feedback.
Yours,
Joel


-------- Original Message --------
Subject: Re: [85all] NomCom: Office Hours in Atlanta
Date: Thu, 1 Nov 2012 08:22:48 -0400
From: Matthew Lepinski <mlepinski.ietf@gmail.com>
To: 85all@ietf.org

I apologize for a minor error in the message below.

In order to ensure that your input is useful to the NomCom, please
send us your feedback on or before Sunday, November 11.
(i.e., NOT November 4 as incorrectly indicated in the email below)

- Matt Lepinski
   nomcom-chair@ietf.org

On Wed, Oct 31, 2012 at 11:09 PM, Matthew Lepinski
<mlepinski.ietf@gmail.com> wrote:
> The IETF Nominations Committee (NomCom) continues to seek input from
> the IETF Community.
>
> The final list of candidates (as per RFC 5680) that the NomCom is
> considering for open positions can be found at:
> https://www.ietf.org/group/nomcom/2012/input/
>
> The NomCom will be holding office hours during IETF 85, Monday-
> Thursday from 1:00pm to 3:00pm in Room 305. The NomCom welcomes
> comments on specific individuals, as well as general feedback related to
> any of the positions that NomCom is considering.
>
> Note: A list of leadership positions that the NomCom is considering can be
> found at: https://www.ietf.org/group/nomcom/2012/
>
> If the NomCom office hours are inconvenient for you or if you cannot
> attend IETF 85, the NomCom is happy to take community input via email
> to nomcom12@ietf.org. Additionally, the NomCom is happy to arrange a
> meeting outside of office hours, just send us email and we can set
> something up.
>
> Comments on specific candidates can also be provided to the NomCom
> via the web feedback tool:
> https://www.ietf.org/group/nomcom/2012/input/
>
> In order to ensure that your input is received in time to be useful, please
> provide your input on or before Sunday, November 4.
>
> Thank you for your help,
> - Matt Lepinski
>   nomcom-chair@ietf.org
_______________________________________________
85all mailing list
85all@ietf.org
https://www.ietf.org/mailman/listinfo/85all




From william.atwood@concordia.ca  Fri Nov  2 12:45:21 2012
Return-Path: <william.atwood@concordia.ca>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4C1E71F0C71 for <karp@ietfa.amsl.com>; Fri,  2 Nov 2012 12:45:21 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level: 
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id O9yTwetPmfYf for <karp@ietfa.amsl.com>; Fri,  2 Nov 2012 12:45:20 -0700 (PDT)
Received: from oldperseverance.encs.concordia.ca (oldperseverance.encs.concordia.ca [132.205.96.94]) by ietfa.amsl.com (Postfix) with ESMTP id 776481F0C6A for <karp@ietf.org>; Fri,  2 Nov 2012 12:45:19 -0700 (PDT)
Received: from [IPv6:::1] (bill@poise.encs.concordia.ca [132.205.2.209]) by oldperseverance.encs.concordia.ca (envelope-from william.atwood@concordia.ca) (8.13.7/8.13.7) with ESMTP id qA2JjHRB004017 for <karp@ietf.org>; Fri, 2 Nov 2012 15:45:17 -0400
Message-ID: <509422E9.2030705@concordia.ca>
Date: Fri, 02 Nov 2012 15:45:45 -0400
From: John William Atwood <william.atwood@concordia.ca>
Organization: Concordia University, Montreal
User-Agent: Mozilla/5.0 (Windows NT 6.0; rv:15.0) Gecko/20120824 Thunderbird/15.0
MIME-Version: 1.0
To: KARP Working Group <karp@ietf.org>
References: <2F9EF617-2481-4176-B09F-21755093F0B1@cisco.com>
In-Reply-To: <2F9EF617-2481-4176-B09F-21755093F0B1@cisco.com>
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
X-Scanned-By: MIMEDefang 2.58 on oldperseverance.encs.concordia.ca at 2012/11/02 15:45:17 EDT
Subject: Re: [karp] WG LC: draft-ietf-karp-crypto-key-table-04 to Standards Track
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 02 Nov 2012 19:45:21 -0000

I support the publication of draft-ietf-karp-crypto-key-table-04 as an RFC.

  Bill

On 10/29/2012 4:31 PM, Brian Weis wrote:
> This begins a two week WG last call to determine if folks will support the chairs to submit
> <http://tools.ietf.org/html/draft-ietf-karp-crypto-key-table-04>
> to our AD for publication as an Standards Track RFC.
> 
> Please send comments of support, or raising issues or concerns, to the WG email list by 5pm PDT on 12-November-2012.
> 
> Thank you,
> Joel M. Halpern
> and Brian Weis
> co-chairs
> 
> _______________________________________________
> karp mailing list
> karp@ietf.org
> https://www.ietf.org/mailman/listinfo/karp
> 

-- 
Dr. J.W. Atwood, Eng.             tel:   +1 (514) 848-2424 x3046
Distinguished Professor Emeritus  fax:   +1 (514) 848-2830
Department of Computer Science
   and Software Engineering
Concordia University EV 3.185     email:william.atwood@concordia.ca
1455 de Maisonneuve Blvd. West    http://users.encs.concordia.ca/~bill
Montreal, Quebec Canada H3G 1M8

From acee.lindem@gmail.com  Mon Nov  5 04:35:59 2012
Return-Path: <acee.lindem@gmail.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D7ECD21F8671 for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 04:35:59 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level: 
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id fvNz08yNSb6j for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 04:35:59 -0800 (PST)
Received: from mail-da0-f44.google.com (mail-da0-f44.google.com [209.85.210.44]) by ietfa.amsl.com (Postfix) with ESMTP id 5443021F85BC for <karp@ietf.org>; Mon,  5 Nov 2012 04:35:59 -0800 (PST)
Received: by mail-da0-f44.google.com with SMTP id h15so2666201dan.31 for <karp@ietf.org>; Mon, 05 Nov 2012 04:35:59 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=from:content-type:content-transfer-encoding:subject:date:message-id :to:mime-version:x-mailer; bh=QAskqR53g9wOroHVHFkHVvHvOiQFJYjRkAH5ioEfIIE=; b=YmyuGjm3fSwr/2sP7krkrGgvp+PYFWWE9HEAzP2nA4BMQjm5E7jJaDW4I6VJv4TYg6 6DMIM1vRGxr3BMBQHptomwm1BbLtDEbJkRnpTfx0p1gcd6MZ8uOIfp2515cYiNpH6MV5 WCcuotyTXXAfAoiNwxeX//fPKYxOQAWwMyNvQJERklkC966i1EiLrlxNQemjOv+6CL6b UdtTvA4nL+WhiocA1u4ab+HpO6C5zTq9rIpI89uASiRnXGbCNMnwJkn3Ej5L3BdUmBpo 1KNS29XNkfk+N+nGvziGMdrS1N223ytVdD6wF0gu3c3fIChLu9l1BPRCDd9ZxN9LfZOx cgbA==
Received: by 10.68.247.39 with SMTP id yb7mr30368960pbc.15.1352118959099; Mon, 05 Nov 2012 04:35:59 -0800 (PST)
Received: from ?IPv6:2001:df8::64:7e6d:62ff:fe8f:15ed? ([2001:df8:0:64:7e6d:62ff:fe8f:15ed]) by mx.google.com with ESMTPS id k4sm10603762pax.7.2012.11.05.04.35.56 (version=TLSv1/SSLv3 cipher=OTHER); Mon, 05 Nov 2012 04:35:58 -0800 (PST)
From: Acee Lindem <acee.lindem@gmail.com>
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: quoted-printable
Date: Mon, 5 Nov 2012 07:35:54 -0500
Message-Id: <8DEFCA93-10FD-41DB-851F-42C775937B5C@lindem.com>
To: karp@ietf.org
Mime-Version: 1.0 (Apple Message framework v1085)
X-Mailer: Apple Mail (2.1085)
Subject: [karp] WG Last-Call Comments on "Database of Long-Lived Symmetric Cryptographic Keys"
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Nov 2012 12:36:00 -0000

Comments:=20

Peer Field - Remove "For example, this might name a routing area for a =
multicast routing protocol." This is a very bad example as the area =
would more likely be in the abstract interface identifier.=20

SendNotBefore, SendNotAfter, RecvNotBefore and RcvNotAfter - There are =
already several implementations that use the term SendLifetimeStart, =
SendLifeTimeEnd, AcceptLifeTimeStart, and AcceptLifeTimeEnd in their =
keychain implementations - why can't you use these terms?  Note that =
this is, at least, the second time I've raised this comment.=20





From kivinen@iki.fi  Mon Nov  5 06:23:39 2012
Return-Path: <kivinen@iki.fi>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EBA1721F8477 for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 06:23:38 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level: 
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[AWL=0.000, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aYiZlNxpiBGV for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 06:23:37 -0800 (PST)
Received: from mail.kivinen.iki.fi (fireball.kivinen.iki.fi [IPv6:2001:1bc8:100d::2]) by ietfa.amsl.com (Postfix) with ESMTP id E50CB21F8458 for <karp@ietf.org>; Mon,  5 Nov 2012 06:23:35 -0800 (PST)
Received: from fireball.kivinen.iki.fi (localhost [127.0.0.1]) by mail.kivinen.iki.fi (8.14.5/8.14.5) with ESMTP id qA5ENMDG003268 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Mon, 5 Nov 2012 16:23:22 +0200 (EET)
Received: (from kivinen@localhost) by fireball.kivinen.iki.fi (8.14.5/8.12.11) id qA5ENMTu021233; Mon, 5 Nov 2012 16:23:22 +0200 (EET)
X-Authentication-Warning: fireball.kivinen.iki.fi: kivinen set sender to kivinen@iki.fi using -f
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
Message-ID: <20631.52185.732239.262861@fireball.kivinen.iki.fi>
Date: Mon, 5 Nov 2012 16:23:21 +0200
From: Tero Kivinen <kivinen@iki.fi>
To: karp@ietf.org, draft-ietf-karp-crypto-key-table@tools.ietf.org
X-Mailer: VM 7.19 under Emacs 21.4.1
X-Edit-Time: 10 min
X-Total-Time: 12 min
Subject: [karp] Some comments to the draft-ietf-karp-crypto-key-table-04.txt
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Nov 2012 14:23:39 -0000

In section 2:

      RcvNotAfter
         The RcvNotAfter field specifies the latest date and time at
         which this key should be considered for use when processing
         received traffic.  The format of this field is identical to the
         format of NotBefore.
		   ^^^^^^^^^

That NotBefore should be RcvNotBefore.

--

In section 6 it says:

			When installing a series
   of keys to be used one after another (sometimes called a key chain),
   operators should configure the SendNotBefore field of the key to be
   several days after the RcvNotBefore field of the key to address the
   clock skew issue and guarantee there is some overlap.

If some routers have clock skew that is in order of DAYS and we need
to have keys overlapping for "several days" to fix that, I think there
might be something wrong with the router... Clock skew should be less
than few minutes. There might be operation reasons to support multiple
days of overlap, but on the other hand if those keys are already
configured in the keytable beforehand and they are taken in to use
automatically from there, I do not think we need days of overlap.

If it is assumed that sometimes the adminstrators starts to type keys
in to the keytable only when it gets close to be expiring then this
might be useful, but I do not think this is something that is supposed
to be done with keytable.

-

In section 8.3

8.3. KeyTable AlgIDs

   This document requests establishment of a registry called "KeyTable
   AlgIDs".  The remainder of this section describes the registry.

   All assignments to the KeyTable KDFs registry are made on a First
			  ^^^^^^^^^^^^^
   Come First Served basis per Section 4.1 of RFC 5226.

The KeyTable KDFs should be KeyTable AlgIDs in this section, the KDFs
was 8.2...
-- 
kivinen@iki.fi

From kivinen@iki.fi  Mon Nov  5 07:22:37 2012
Return-Path: <kivinen@iki.fi>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AF5A421F878F for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 07:22:37 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level: 
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[AWL=0.000, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Q8vrq-fQexmZ for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 07:22:37 -0800 (PST)
Received: from mail.kivinen.iki.fi (fireball.kivinen.iki.fi [IPv6:2001:1bc8:100d::2]) by ietfa.amsl.com (Postfix) with ESMTP id CCAF821F878A for <karp@ietf.org>; Mon,  5 Nov 2012 07:22:36 -0800 (PST)
Received: from fireball.kivinen.iki.fi (localhost [127.0.0.1]) by mail.kivinen.iki.fi (8.14.5/8.14.5) with ESMTP id qA5FMTXj025840 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Mon, 5 Nov 2012 17:22:29 +0200 (EET)
Received: (from kivinen@localhost) by fireball.kivinen.iki.fi (8.14.5/8.12.11) id qA5FMT0Z022538; Mon, 5 Nov 2012 17:22:29 +0200 (EET)
X-Authentication-Warning: fireball.kivinen.iki.fi: kivinen set sender to kivinen@iki.fi using -f
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
Message-ID: <20631.55733.385287.235673@fireball.kivinen.iki.fi>
Date: Mon, 5 Nov 2012 17:22:29 +0200
From: Tero Kivinen <kivinen@iki.fi>
To: karp@ietf.org, albert.tian@ericsson.com
X-Mailer: VM 7.19 under Emacs 21.4.1
X-Edit-Time: 11 min
X-Total-Time: 10 min
Subject: [karp] Comments to draft-chunduri-karp-kmp-router-fingerprints-01.txt
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Nov 2012 15:22:37 -0000

In section 3.1 the draft says:

	   [RFC4301] supports X.509 certificate or pre-shared secret
   authentication data types.  So, it is necessary (and one more reason)
   to encode the raw public keys as X.509 certificates before sending
   the same in CERT payload.  

RFC4301 PAD does not forbid using other formats of authentication
than what is already there in the RFC4301. The RFC4301 lists the X.509
certificate and pre-shared secret as authentication information, but
also says (RFC4301 section 4.4.3.2):

   This document does not mandate support for any other authentication
   methods, although such methods MAY be employed.

I.e. it is completely possible to use just raw public keys, and store
the actual fingerprint of public key to the PAD and use that when
verifying the other ends authentication credentials. I would actually
assume all implementations supporting raw public keys does something
like that already.

I.e. the pad contains that other peer should authenticate himself
using the public key that has hash of xxxx, and when the peer connects
and identifies itself through ID payload and sends raw public key
inside the certificate payload, the implementation will calculate hash
of that public key and verify that it matches the one stored on the
PAD. If they match, then peer is authenticated.

BTW, to revoke the compromized key you simply need to remove the hash
from the PAD, which do require you to update the PAD of all possible
routers where this one router was talking to. Quite often those
configurations are already pushed to routers by some kind of
managament tool, so it is completly possibly to do this kind of things
quite easily.
-- 
kivinen@iki.fi

From acee.lindem@gmail.com  Mon Nov  5 07:41:14 2012
Return-Path: <acee.lindem@gmail.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1B1AE21F8817 for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 07:41:14 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level: 
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id S4wEKDem1-rQ for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 07:41:13 -0800 (PST)
Received: from mail-da0-f44.google.com (mail-da0-f44.google.com [209.85.210.44]) by ietfa.amsl.com (Postfix) with ESMTP id 9655621F8814 for <karp@ietf.org>; Mon,  5 Nov 2012 07:41:13 -0800 (PST)
Received: by mail-da0-f44.google.com with SMTP id h15so2728723dan.31 for <karp@ietf.org>; Mon, 05 Nov 2012 07:41:13 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=subject:mime-version:content-type:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to:x-mailer; bh=ZjEvbrMc+yzewvDerNydIGAdWk9e55i7eZ7o87zjb7A=; b=YA6qwXJTXwKGNSmY5JvFu5y4zS0q10Mv5zk1GJUI4wX6RcT5q73X+1MT8S3GxUHtfx NrJdanx04PB4NCxDoXEPh4bavCBm7F1i5DG2dO/HoUjgrdunxABls/uiCSRG7y6+3WOX 9V2FRLxYS+FpTKvwiKxtFrnto3XN1VH5HnUNtgiTIhymet/+G9pBfuPL0E9/9oE7iXSX u4HnjyFmd8hmcn9ZZYIk9IberxCJf3fYV0taWmkUm+C+ciqVppF+bKLqYKFOdJEdZKGv E8tq8WdgIw5WtS2ay8S1QN02cKZ0/23F6+/M+1beswwP9v59fBNcqU6bUk5cRTkFx+3a T/BA==
Received: by 10.66.87.165 with SMTP id az5mr29416691pab.46.1352130073394; Mon, 05 Nov 2012 07:41:13 -0800 (PST)
Received: from ?IPv6:2001:df8::16:5ab0:35ff:fe74:605? ([2001:df8:0:16:5ab0:35ff:fe74:605]) by mx.google.com with ESMTPS id m8sm10808059pax.38.2012.11.05.07.41.10 (version=TLSv1/SSLv3 cipher=OTHER); Mon, 05 Nov 2012 07:41:12 -0800 (PST)
Mime-Version: 1.0 (Apple Message framework v1085)
Content-Type: text/plain; charset=us-ascii
From: Acee Lindem <acee.lindem@gmail.com>
In-Reply-To: <8DEFCA93-10FD-41DB-851F-42C775937B5C@lindem.com>
Date: Mon, 5 Nov 2012 10:41:08 -0500
Content-Transfer-Encoding: quoted-printable
Message-Id: <0EC704DE-DAF3-406A-914C-B79078165618@lindem.com>
References: <8DEFCA93-10FD-41DB-851F-42C775937B5C@lindem.com>
To: Acee Lindem <acee.lindem@gmail.com>
X-Mailer: Apple Mail (2.1085)
Cc: karp@ietf.org
Subject: Re: [karp] WG Last-Call Comments on "Database of Long-Lived Symmetric Cryptographic Keys"
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Nov 2012 15:41:14 -0000

Also, the "KARP Operational Key" draft reminded me of the issue of =
multiple VRFs (aka, router contexts or Virtual Routers). Since this is =
common to all the protocols, should this be a field in the database?=20
On Nov 5, 2012, at 7:35 AM, Acee Lindem wrote:

> Comments:=20
>=20
> Peer Field - Remove "For example, this might name a routing area for a =
multicast routing protocol." This is a very bad example as the area =
would more likely be in the abstract interface identifier.=20
>=20
> SendNotBefore, SendNotAfter, RecvNotBefore and RcvNotAfter - There are =
already several implementations that use the term SendLifetimeStart, =
SendLifeTimeEnd, AcceptLifeTimeStart, and AcceptLifeTimeEnd in their =
keychain implementations - why can't you use these terms?  Note that =
this is, at least, the second time I've raised this comment.=20
>=20
>=20
>=20
>=20
> _______________________________________________
> karp mailing list
> karp@ietf.org
> https://www.ietf.org/mailman/listinfo/karp


From uma.chunduri@ericsson.com  Mon Nov  5 09:39:47 2012
Return-Path: <uma.chunduri@ericsson.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3067821F886E for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 09:39:47 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level: 
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4BRZLTu4alBN for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 09:39:46 -0800 (PST)
Received: from imr4.ericy.com (imr4.ericy.com [198.24.6.9]) by ietfa.amsl.com (Postfix) with ESMTP id 955CE21F8702 for <karp@ietf.org>; Mon,  5 Nov 2012 09:39:46 -0800 (PST)
Received: from eusaamw0707.eamcs.ericsson.se ([147.117.20.32]) by imr4.ericy.com (8.14.3/8.14.3/Debian-9.1ubuntu1) with ESMTP id qA5HiYhL015279; Mon, 5 Nov 2012 11:44:37 -0600
Received: from EUSAAHC002.ericsson.se (147.117.188.78) by eusaamw0707.eamcs.ericsson.se (147.117.20.32) with Microsoft SMTP Server (TLS) id 8.3.279.1; Mon, 5 Nov 2012 12:39:39 -0500
Received: from EUSAAMB105.ericsson.se ([147.117.188.122]) by EUSAAHC002.ericsson.se ([147.117.188.78]) with mapi id 14.02.0318.001; Mon, 5 Nov 2012 12:39:39 -0500
From: Uma Chunduri <uma.chunduri@ericsson.com>
To: Tero Kivinen <kivinen@iki.fi>, "karp@ietf.org" <karp@ietf.org>, "Albert Tian" <albert.tian@ericsson.com>
Thread-Topic: [karp] Comments to draft-chunduri-karp-kmp-router-fingerprints-01.txt
Thread-Index: AQHNu2l1QT6FlA6OVkSrXYlPLSkW0pfbgC7A
Date: Mon, 5 Nov 2012 17:39:39 +0000
Message-ID: <1B502206DFA0C544B7A60469152008630199CF@EUSAAMB105.ericsson.se>
References: <20631.55733.385287.235673@fireball.kivinen.iki.fi>
In-Reply-To: <20631.55733.385287.235673@fireball.kivinen.iki.fi>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
x-originating-ip: [147.117.188.135]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Subject: Re: [karp] Comments to	draft-chunduri-karp-kmp-router-fingerprints-01.txt
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Nov 2012 17:39:47 -0000

Hi Tero,

Thanks for the comments.
Response In-line [Uma]:

=3D=3D=3D=3D

=20
In section 3.1 the draft says:

-- [Snip]

   This document does not mandate support for any other authentication
   methods, although such methods MAY be employed.

[Uma]: Agree. I missed this part.

I.e. it is completely possible to use just raw public keys, and store the a=
ctual fingerprint of public key to the PAD and use that when verifying the =
other ends authentication credentials. I would actually assume all implemen=
tations supporting raw public keys does something like that already.
I.e. the pad contains that other peer should authenticate himself using the=
 public key that has hash of xxxx, and when the peer connects and identifie=
s itself through ID payload and sends raw public key inside the certificate=
 payload, the implementation will calculate hash of that public key and ver=
ify that it matches the one stored on the PAD. If they match, then peer is =
authenticated.

[Uma]: As I indicated in the meeting we will change the text to reflect thi=
s. =20


BTW, to revoke the compromized key you simply need to remove the hash from =
the PAD, which do require you to update the PAD of all possible routers whe=
re this one router was talking to. Quite often those configurations are alr=
eady pushed to routers by some kind of managament tool, so it is completly =
possibly to do this kind of things quite easily.

[Uma]: Absolutely. We thought this and you mentioned this quite correct her=
e. Thank you.


From bew@cisco.com  Mon Nov  5 11:40:19 2012
Return-Path: <bew@cisco.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E581821F8441 for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 11:40:19 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -110.599
X-Spam-Level: 
X-Spam-Status: No, score=-110.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_HI=-8, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id upnl3+4lYPqH for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 11:40:18 -0800 (PST)
Received: from mtv-iport-3.cisco.com (mtv-iport-3.cisco.com [173.36.130.14]) by ietfa.amsl.com (Postfix) with ESMTP id C6C8321F8550 for <karp@ietf.org>; Mon,  5 Nov 2012 11:40:07 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=547; q=dns/txt; s=iport; t=1352144418; x=1353354018; h=from:content-transfer-encoding:subject:message-id:date: to:mime-version; bh=taZoPrdrsU+v3H5plRiqH3xHl7jU+bZeDhbMWwzH0bM=; b=D/wsVnT1s0i3Ufn21KjxQKYAODLWC2wDzjWIAr8A2NUXa5ccBS9SEHsK Y89J04RXy5YH6ySbycOnsRby6mv97bMMrJXUTpYeXkppPV8wxnGP0YCsj qjwFxf11a+5FLwR9tri2hEK3nlWgH0bWpB200zFiLDoanO++9zV4IMjx0 E=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AgUFABsVmFCrRDoG/2dsb2JhbABEhVC9ZIEIgjcBJ4F9NYdnDJlPgSugCZFcYQOIWo0hgRyNPYFrgw0
X-IronPort-AV: E=Sophos;i="4.80,716,1344211200"; d="scan'208";a="60668822"
Received: from mtv-core-1.cisco.com ([171.68.58.6]) by mtv-iport-3.cisco.com with ESMTP; 05 Nov 2012 19:40:06 +0000
Received: from sjc-vpn3-336.cisco.com (sjc-vpn3-336.cisco.com [10.21.65.80]) by mtv-core-1.cisco.com (8.14.5/8.14.5) with ESMTP id qA5Je5fc023565 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=NO) for <karp@ietf.org>; Mon, 5 Nov 2012 19:40:05 GMT
From: Brian Weis <bew@cisco.com>
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: quoted-printable
Message-Id: <0B346B23-C9F5-4E99-A62B-C3A4A0A54637@cisco.com>
Date: Mon, 5 Nov 2012 14:40:07 -0500
To: "karp@ietf.org" <karp@ietf.org>
Mime-Version: 1.0 (Mac OS X Mail 6.2 \(1499\))
X-Mailer: Apple Mail (2.1499)
Subject: [karp] WG Adoption: draft-chunduri-karp-is-is-gap-analysis-03
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Nov 2012 19:40:20 -0000

Folks,

The document =
<http://tools.ietf.org/html/draft-chunduri-karp-is-is-gap-analysis-03> =
(KARP IS-IS security gap analysis) has been proposed to address the KARP =
WG charter deliverable "Submit specification document for ISIS to the =
IESG to be considered as a Proposed Standard".

As discussed in this morning's meeting, we are requesting comments from =
the WG on taking this as the starting point for this WG work. We would =
like to hear within the next two weeks, by 5PM PST Monday, November 19.

Thanks,
Brian & Joel=

From bew@cisco.com  Mon Nov  5 11:43:22 2012
Return-Path: <bew@cisco.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A6CB221F8705 for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 11:43:22 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -110.599
X-Spam-Level: 
X-Spam-Status: No, score=-110.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_HI=-8, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Wtq0wRiIoyIv for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 11:43:22 -0800 (PST)
Received: from mtv-iport-3.cisco.com (mtv-iport-3.cisco.com [173.36.130.14]) by ietfa.amsl.com (Postfix) with ESMTP id 4FA8221F84CF for <karp@ietf.org>; Mon,  5 Nov 2012 11:43:20 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=607; q=dns/txt; s=iport; t=1352144600; x=1353354200; h=from:content-transfer-encoding:subject:message-id:date: to:mime-version; bh=IXjVYquF4tbElF/YYbrESgnYCCH0zOiYAsWq64prqls=; b=jut+MlxotXVwRXf4Cz2u+511hiiOD1ohFj8POk1KyZJSX/3XsE4E0DC1 4EWtpw6M4JLg8/Xeh1kAHdSz2vOh5Zx8DzPUeBR0h96/ymxJPZBrefNQy StR5H0zxmYE0Ws+5lxytMHrl4cvWRQfCEVkXgICvfCNoO5FPHnuPjjDR5 c=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AgUFAK0WmFCrRDoG/2dsb2JhbABEhVC9ZIEIgjcBJ4F9NYdnDJlLgSugCpFcYQOIWo0hgRyNPYFrgw0
X-IronPort-AV: E=Sophos;i="4.80,716,1344211200"; d="scan'208";a="60669114"
Received: from mtv-core-1.cisco.com ([171.68.58.6]) by mtv-iport-3.cisco.com with ESMTP; 05 Nov 2012 19:43:20 +0000
Received: from sjc-vpn3-336.cisco.com (sjc-vpn3-336.cisco.com [10.21.65.80]) by mtv-core-1.cisco.com (8.14.5/8.14.5) with ESMTP id qA5JhJeH025676 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=NO) for <karp@ietf.org>; Mon, 5 Nov 2012 19:43:19 GMT
From: Brian Weis <bew@cisco.com>
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: quoted-printable
Message-Id: <E73E5851-6963-4C0A-9D2B-4F95242ACAF1@cisco.com>
Date: Mon, 5 Nov 2012 14:43:21 -0500
To: "karp@ietf.org" <karp@ietf.org>
Mime-Version: 1.0 (Mac OS X Mail 6.2 \(1499\))
X-Mailer: Apple Mail (2.1499)
Subject: [karp] WG Adoption: draft-bhatia-zhang-karp-bfd-analysis-03
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Nov 2012 19:43:22 -0000

Folks,

The document =
<http://tools.ietf.org/html/draft-bhatia-zhang-karp-bfd-analysis-03> =
(Analysis of Bidirectional Forwarding Detection (BFD) Security According =
to KARP Design Guide) has been proposed to address the KARP WG charter =
deliverable "Submit specification document for BFD to the IESG to be =
considered as a Proposed Standard".

As discussed in this morning's meeting, we are requesting comments from =
the WG on taking this as the starting point for this WG work. We would =
like to hear within the next two weeks, by 5PM PST Monday, November 19.

Thanks,
Brian & Joel=

From housley@vigilsec.com  Mon Nov  5 16:09:31 2012
Return-Path: <housley@vigilsec.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B211F11E80AE for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 16:09:31 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.595
X-Spam-Level: 
X-Spam-Status: No, score=-102.595 tagged_above=-999 required=5 tests=[AWL=0.004, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tglXl++DvOec for <karp@ietfa.amsl.com>; Mon,  5 Nov 2012 16:09:31 -0800 (PST)
Received: from odin.smetech.net (mail.smetech.net [208.254.26.82]) by ietfa.amsl.com (Postfix) with ESMTP id 4891F11E80AD for <karp@ietf.org>; Mon,  5 Nov 2012 16:09:31 -0800 (PST)
Received: from localhost (unknown [208.254.26.81]) by odin.smetech.net (Postfix) with ESMTP id 8B57C9A4002; Mon,  5 Nov 2012 19:09:48 -0500 (EST)
X-Virus-Scanned: amavisd-new at smetech.net
Received: from odin.smetech.net ([208.254.26.82]) by localhost (ronin.smetech.net [208.254.26.81]) (amavisd-new, port 10024) with ESMTP id Yt8CfM26dU7r; Mon,  5 Nov 2012 19:09:26 -0500 (EST)
Received: from dhcp-5421.meeting.ietf.org (dhcp-5421.meeting.ietf.org [130.129.84.33]) (using TLSv1 with cipher AES128-SHA (128/128 bits)) (No client certificate requested) by odin.smetech.net (Postfix) with ESMTP id AF47A9A4001; Mon,  5 Nov 2012 19:09:47 -0500 (EST)
Mime-Version: 1.0 (Apple Message framework v1085)
Content-Type: text/plain; charset=us-ascii
From: Russ Housley <housley@vigilsec.com>
In-Reply-To: <8DEFCA93-10FD-41DB-851F-42C775937B5C@lindem.com>
Date: Mon, 5 Nov 2012 19:09:29 -0500
Content-Transfer-Encoding: quoted-printable
Message-Id: <4E38F57D-BB87-47FC-B99D-FF0B836CD5F9@vigilsec.com>
References: <8DEFCA93-10FD-41DB-851F-42C775937B5C@lindem.com>
To: Acee Lindem <acee.lindem@gmail.com>
X-Mailer: Apple Mail (2.1085)
Cc: karp@ietf.org
Subject: Re: [karp] WG Last-Call Comments on "Database of Long-Lived Symmetric Cryptographic Keys"
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Nov 2012 00:09:31 -0000

> SendNotBefore, SendNotAfter, RecvNotBefore and RcvNotAfter - There are =
already several implementations that use the term SendLifetimeStart, =
SendLifeTimeEnd, AcceptLifeTimeStart, and AcceptLifeTimeEnd in their =
keychain implementations - why can't you use these terms?  Note that =
this is, at least, the second time I've raised this comment.=20

I have not seen support for this change.  I have no problem making these =
changes if there is consensus on this set of terms.

Russ


From william.atwood@concordia.ca  Tue Nov  6 08:01:41 2012
Return-Path: <william.atwood@concordia.ca>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 902FC21F8A14 for <karp@ietfa.amsl.com>; Tue,  6 Nov 2012 08:01:41 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.599
X-Spam-Level: 
X-Spam-Status: No, score=-6.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HYooeE0XF3TN for <karp@ietfa.amsl.com>; Tue,  6 Nov 2012 08:01:41 -0800 (PST)
Received: from oldperseverance.encs.concordia.ca (oldperseverance.encs.concordia.ca [132.205.96.94]) by ietfa.amsl.com (Postfix) with ESMTP id E64AF21F89FA for <karp@ietf.org>; Tue,  6 Nov 2012 08:01:40 -0800 (PST)
Received: from [IPv6:::1] (bill@poise.encs.concordia.ca [132.205.2.209]) by oldperseverance.encs.concordia.ca (envelope-from william.atwood@concordia.ca) (8.13.7/8.13.7) with ESMTP id qA6G1dgo028419 for <karp@ietf.org>; Tue, 6 Nov 2012 11:01:39 -0500
Message-ID: <50993469.8050007@concordia.ca>
Date: Tue, 06 Nov 2012 11:01:45 -0500
From: John William Atwood <william.atwood@concordia.ca>
Organization: Concordia University, Montreal
User-Agent: Mozilla/5.0 (Windows NT 6.0; rv:15.0) Gecko/20120824 Thunderbird/15.0
MIME-Version: 1.0
To: karp@ietf.org
References: <8DEFCA93-10FD-41DB-851F-42C775937B5C@lindem.com> <4E38F57D-BB87-47FC-B99D-FF0B836CD5F9@vigilsec.com>
In-Reply-To: <4E38F57D-BB87-47FC-B99D-FF0B836CD5F9@vigilsec.com>
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
X-Scanned-By: MIMEDefang 2.58 on oldperseverance.encs.concordia.ca at 2012/11/06 11:01:39 EST
Subject: Re: [karp] WG Last-Call Comments on "Database of Long-Lived Symmetric Cryptographic Keys"
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Nov 2012 16:01:41 -0000

"several implementations"

Perhaps the consensus (or not) would come if the implementations (or the
rfc/standards document) were to be listed.  Then WG members could make a
more informed decision.  This change could be particularly helpful if
code-sharing between the database and the named implementations would be
likely.

  Bill

On 11/5/2012 7:09 PM, Russ Housley wrote:
> 
>> SendNotBefore, SendNotAfter, RecvNotBefore and RcvNotAfter - There are already several implementations that use the term SendLifetimeStart, SendLifeTimeEnd, AcceptLifeTimeStart, and AcceptLifeTimeEnd in their keychain implementations - why can't you use these terms?  Note that this is, at least, the second time I've raised this comment. 
> 
> I have not seen support for this change.  I have no problem making these changes if there is consensus on this set of terms.
> 
> Russ
> 
> _______________________________________________
> karp mailing list
> karp@ietf.org
> https://www.ietf.org/mailman/listinfo/karp
> 

-- 
Dr. J.W. Atwood, Eng.             tel:   +1 (514) 848-2424 x3046
Distinguished Professor Emeritus  fax:   +1 (514) 848-2830
Department of Computer Science
   and Software Engineering
Concordia University EV 3.185     email:william.atwood@concordia.ca
1455 de Maisonneuve Blvd. West    http://users.encs.concordia.ca/~bill
Montreal, Quebec Canada H3G 1M8

From acee.lindem@gmail.com  Tue Nov  6 11:25:41 2012
Return-Path: <acee.lindem@gmail.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9E72321F85C0 for <karp@ietfa.amsl.com>; Tue,  6 Nov 2012 11:25:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level: 
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id bp6QNLzVt5CX for <karp@ietfa.amsl.com>; Tue,  6 Nov 2012 11:25:38 -0800 (PST)
Received: from mail-pa0-f44.google.com (mail-pa0-f44.google.com [209.85.220.44]) by ietfa.amsl.com (Postfix) with ESMTP id 8012D21F851C for <karp@ietf.org>; Tue,  6 Nov 2012 11:25:38 -0800 (PST)
Received: by mail-pa0-f44.google.com with SMTP id fb11so581090pad.31 for <karp@ietf.org>; Tue, 06 Nov 2012 11:25:38 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=subject:mime-version:content-type:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to:x-mailer; bh=dhD0U/l4D3ccJ/UIsWcp4WrkVZF6Mv9RMCaqOLq/NiE=; b=GUeVINfRAFcz9YJLWqWE/Jzke4+sNy3da4/tX+IaDrvnhvV6vr3ZTl1nvmmqJg7yAP fQ7wD9PwJZ2D9aKkhKTsVH7vNC0E6kqfUntQxf2ciz17jpJwaublQJYNMv1GLwNH8He3 /eZfd6bBVmDFlEraNp4GzcvK7uHwSsV6CL3MY3+kaXzvfjkhF+QzMrMc2a2wrRsOgwyo NAwKq5FMWWHpegD6lznARXPbUC/FHxjWuoo2iJev0vnSduN0k7tZPIQXtonT0B97JdaX wLTOCZqnJv5Rb8jMTftLzdZrlwwQ9XXPm8tumXVwYj67m3MVJv2Fpt/L3IFMk3RyIOzb VJew==
Received: by 10.66.79.168 with SMTP id k8mr5470578pax.12.1352229937947; Tue, 06 Nov 2012 11:25:37 -0800 (PST)
Received: from ?IPv6:2001:df8::16:5ab0:35ff:fe74:605? ([2001:df8:0:16:5ab0:35ff:fe74:605]) by mx.google.com with ESMTPS id j4sm12884334pax.31.2012.11.06.11.25.35 (version=TLSv1/SSLv3 cipher=OTHER); Tue, 06 Nov 2012 11:25:36 -0800 (PST)
Mime-Version: 1.0 (Apple Message framework v1085)
Content-Type: text/plain; charset=us-ascii
From: Acee Lindem <acee.lindem@gmail.com>
In-Reply-To: <0B346B23-C9F5-4E99-A62B-C3A4A0A54637@cisco.com>
Date: Tue, 6 Nov 2012 14:25:33 -0500
Content-Transfer-Encoding: quoted-printable
Message-Id: <F248DE32-230F-4D02-AFB4-6717A7DE0B44@lindem.com>
References: <0B346B23-C9F5-4E99-A62B-C3A4A0A54637@cisco.com>
To: Brian Weis <bew@cisco.com>
X-Mailer: Apple Mail (2.1085)
Cc: "karp@ietf.org" <karp@ietf.org>
Subject: Re: [karp] WG Adoption: draft-chunduri-karp-is-is-gap-analysis-03
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Nov 2012 19:25:41 -0000

Support
On Nov 5, 2012, at 2:40 PM, Brian Weis wrote:

> Folks,
>=20
> The document =
<http://tools.ietf.org/html/draft-chunduri-karp-is-is-gap-analysis-03> =
(KARP IS-IS security gap analysis) has been proposed to address the KARP =
WG charter deliverable "Submit specification document for ISIS to the =
IESG to be considered as a Proposed Standard".
>=20
> As discussed in this morning's meeting, we are requesting comments =
from the WG on taking this as the starting point for this WG work. We =
would like to hear within the next two weeks, by 5PM PST Monday, =
November 19.
>=20
> Thanks,
> Brian & Joel
> _______________________________________________
> karp mailing list
> karp@ietf.org
> https://www.ietf.org/mailman/listinfo/karp


From acee.lindem@gmail.com  Tue Nov  6 11:25:54 2012
Return-Path: <acee.lindem@gmail.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B16FB21F85C0 for <karp@ietfa.amsl.com>; Tue,  6 Nov 2012 11:25:53 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level: 
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id y6X+-n3hx096 for <karp@ietfa.amsl.com>; Tue,  6 Nov 2012 11:25:52 -0800 (PST)
Received: from mail-pb0-f44.google.com (mail-pb0-f44.google.com [209.85.160.44]) by ietfa.amsl.com (Postfix) with ESMTP id CD80221F8D8B for <karp@ietf.org>; Tue,  6 Nov 2012 11:25:50 -0800 (PST)
Received: by mail-pb0-f44.google.com with SMTP id ro8so644045pbb.31 for <karp@ietf.org>; Tue, 06 Nov 2012 11:25:50 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=subject:mime-version:content-type:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to:x-mailer; bh=ny1q8KlKuPA5xWaWkHb/voGQVGwH7Arbmp/F9Oh6K/Y=; b=ESfE9fXi+k0Gxn7bAZCwz8XNNajwJZWYZTDY+zbQflG3gqaZGyDvF2Lkj7WeD8/8eO KLWFycWSUtCKVVZBFUABw2/fkXwJaxtDxIpmzH3KeL5yx7m2l7mvITR/MCipGdEfG6E5 hTv4v3C54Ld+yr5gbbQlbv85utQ21e2yMTdgLRcAsTigdoxZ0eL0bYLyaa02xlOjY02Z SH3eVEUQ8GE5k0i5+IaLdplPuY/tJ+NCezYyEsoze/MeLdBIolU3qcoc4y8vwxhNUmp3 Va9k5uvnHIU0N3K7ScN1qiN2UqfUWEsEoH+pTDraiLz3uxbDenAO0HKzLQYZZSBEYAVc 2LqQ==
Received: by 10.68.241.133 with SMTP id wi5mr6345127pbc.48.1352229950627; Tue, 06 Nov 2012 11:25:50 -0800 (PST)
Received: from ?IPv6:2001:df8::16:5ab0:35ff:fe74:605? ([2001:df8:0:16:5ab0:35ff:fe74:605]) by mx.google.com with ESMTPS id j4sm12884334pax.31.2012.11.06.11.25.48 (version=TLSv1/SSLv3 cipher=OTHER); Tue, 06 Nov 2012 11:25:49 -0800 (PST)
Mime-Version: 1.0 (Apple Message framework v1085)
Content-Type: text/plain; charset=us-ascii
From: Acee Lindem <acee.lindem@gmail.com>
In-Reply-To: <E73E5851-6963-4C0A-9D2B-4F95242ACAF1@cisco.com>
Date: Tue, 6 Nov 2012 14:25:48 -0500
Content-Transfer-Encoding: quoted-printable
Message-Id: <68AA2222-D49C-4FE0-AB24-416C689FC826@lindem.com>
References: <E73E5851-6963-4C0A-9D2B-4F95242ACAF1@cisco.com>
To: Brian Weis <bew@cisco.com>
X-Mailer: Apple Mail (2.1085)
Cc: "karp@ietf.org" <karp@ietf.org>
Subject: Re: [karp] WG Adoption: draft-bhatia-zhang-karp-bfd-analysis-03
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Nov 2012 19:25:54 -0000

Support
On Nov 5, 2012, at 2:43 PM, Brian Weis wrote:

> Folks,
>=20
> The document =
<http://tools.ietf.org/html/draft-bhatia-zhang-karp-bfd-analysis-03> =
(Analysis of Bidirectional Forwarding Detection (BFD) Security According =
to KARP Design Guide) has been proposed to address the KARP WG charter =
deliverable "Submit specification document for BFD to the IESG to be =
considered as a Proposed Standard".
>=20
> As discussed in this morning's meeting, we are requesting comments =
from the WG on taking this as the starting point for this WG work. We =
would like to hear within the next two weeks, by 5PM PST Monday, =
November 19.
>=20
> Thanks,
> Brian & Joel
> _______________________________________________
> karp mailing list
> karp@ietf.org
> https://www.ietf.org/mailman/listinfo/karp


From acee.lindem@gmail.com  Tue Nov  6 11:38:57 2012
Return-Path: <acee.lindem@gmail.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9A10B21F8CB9 for <karp@ietfa.amsl.com>; Tue,  6 Nov 2012 11:38:57 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level: 
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id loE79UKpoElV for <karp@ietfa.amsl.com>; Tue,  6 Nov 2012 11:38:57 -0800 (PST)
Received: from mail-pb0-f44.google.com (mail-pb0-f44.google.com [209.85.160.44]) by ietfa.amsl.com (Postfix) with ESMTP id 7754B21F8D5F for <karp@ietf.org>; Tue,  6 Nov 2012 11:38:56 -0800 (PST)
Received: by mail-pb0-f44.google.com with SMTP id ro8so651273pbb.31 for <karp@ietf.org>; Tue, 06 Nov 2012 11:38:56 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=subject:mime-version:content-type:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to:x-mailer; bh=JAAZJbflSWXMW0qaNnd70RQwA0Kwn84/i5Ti4DKwwMc=; b=r+AIUhl+DwFB1ZC1FHZvXXSUhXit9ctZ2H8qEBK/LprMcTGaSMiOTeBHc4ujxVGutX YutN62Wietk/CA4Ka7IA8blIUoObaJAv4Yg/xSTMbE9wrouSBz3eh20H7Mu8x6VUGlr6 03P8oLIUdIU50UOLzXFtcjB6+AGVg0x6h8s7aWfAXdxT/colNz1csuKw4TvJbuxWOSU6 8knvmxEVpqNw8ErzY50f56JvxIFWeS8b8dp9HLt3nyKE6M3R1Ssq4ClC5er7VraCJa+C t/lhGOcwc8af73ka/qrGWENnlUjSz9yS60v2kH/AhECTfObuvuSGEJ/sX1m/kK2vqgBa Z17Q==
Received: by 10.68.209.170 with SMTP id mn10mr6552372pbc.11.1352230736204; Tue, 06 Nov 2012 11:38:56 -0800 (PST)
Received: from ?IPv6:2001:df8::16:5ab0:35ff:fe74:605? ([2001:df8:0:16:5ab0:35ff:fe74:605]) by mx.google.com with ESMTPS id pw2sm12772091pbb.59.2012.11.06.11.38.53 (version=TLSv1/SSLv3 cipher=OTHER); Tue, 06 Nov 2012 11:38:55 -0800 (PST)
Mime-Version: 1.0 (Apple Message framework v1085)
Content-Type: text/plain; charset=us-ascii
From: Acee Lindem <acee.lindem@gmail.com>
In-Reply-To: <50993469.8050007@concordia.ca>
Date: Tue, 6 Nov 2012 14:38:51 -0500
Content-Transfer-Encoding: quoted-printable
Message-Id: <2308511F-A526-492F-B295-1DFC573DCB49@lindem.com>
References: <8DEFCA93-10FD-41DB-851F-42C775937B5C@lindem.com> <4E38F57D-BB87-47FC-B99D-FF0B836CD5F9@vigilsec.com> <50993469.8050007@concordia.ca>
To: John William Atwood <william.atwood@concordia.ca>
X-Mailer: Apple Mail (2.1085)
Cc: karp@ietf.org
Subject: Re: [karp] WG Last-Call Comments on "Database of Long-Lived Symmetric Cryptographic Keys"
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Nov 2012 19:38:57 -0000

Hi John,
I'm sure those who have deployed routing protocol security will be =
familiar with these terms. The terminology was introduced for Cisco IOS =
keychains. Here is a link for IOS XR:

=
http://www.cisco.com/en/US/docs/ios_xr_sw/iosxr_r3.7/security/command/refe=
rence/sr37kcm.html

This terminology has been carried over to several implementations =
including my own, Ericsson IPOS (previously Redback SEOS) and IPInfusion =
routing stack offering.=20

Thanks,
Acee



On Nov 6, 2012, at 11:01 AM, John William Atwood wrote:

> "several implementations"
>=20
> Perhaps the consensus (or not) would come if the implementations (or =
the
> rfc/standards document) were to be listed.  Then WG members could make =
a
> more informed decision.  This change could be particularly helpful if
> code-sharing between the database and the named implementations would =
be
> likely.
>=20
>  Bill
>=20
> On 11/5/2012 7:09 PM, Russ Housley wrote:
>>=20
>>> SendNotBefore, SendNotAfter, RecvNotBefore and RcvNotAfter - There =
are already several implementations that use the term SendLifetimeStart, =
SendLifeTimeEnd, AcceptLifeTimeStart, and AcceptLifeTimeEnd in their =
keychain implementations - why can't you use these terms?  Note that =
this is, at least, the second time I've raised this comment.=20
>>=20
>> I have not seen support for this change.  I have no problem making =
these changes if there is consensus on this set of terms.
>>=20
>> Russ
>>=20
>> _______________________________________________
>> karp mailing list
>> karp@ietf.org
>> https://www.ietf.org/mailman/listinfo/karp
>>=20
>=20
> --=20
> Dr. J.W. Atwood, Eng.             tel:   +1 (514) 848-2424 x3046
> Distinguished Professor Emeritus  fax:   +1 (514) 848-2830
> Department of Computer Science
>   and Software Engineering
> Concordia University EV 3.185     email:william.atwood@concordia.ca
> 1455 de Maisonneuve Blvd. West    http://users.encs.concordia.ca/~bill
> Montreal, Quebec Canada H3G 1M8
> _______________________________________________
> karp mailing list
> karp@ietf.org
> https://www.ietf.org/mailman/listinfo/karp


From internet-drafts@ietf.org  Mon Nov 26 13:44:44 2012
Return-Path: <internet-drafts@ietf.org>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 65CF021F86F3; Mon, 26 Nov 2012 13:44:44 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.589
X-Spam-Level: 
X-Spam-Status: No, score=-102.589 tagged_above=-999 required=5 tests=[AWL=0.010, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YiO16KTYYlqv; Mon, 26 Nov 2012 13:44:43 -0800 (PST)
Received: from ietfa.amsl.com (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DB78C21F86CA; Mon, 26 Nov 2012 13:44:43 -0800 (PST)
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 4.36
Message-ID: <20121126214443.6415.31666.idtracker@ietfa.amsl.com>
Date: Mon, 26 Nov 2012 13:44:43 -0800
Cc: karp@ietf.org
Subject: [karp] I-D Action: draft-ietf-karp-ospf-analysis-06.txt
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 26 Nov 2012 21:44:44 -0000

A New Internet-Draft is available from the on-line Internet-Drafts director=
ies.
 This draft is a work item of the Keying and Authentication for Routing Pro=
tocols Working Group of the IETF.

	Title           : Analysis of OSPF Security According to KARP Design Guide
	Author(s)       : Sam Hartman
                          Dacheng Zhang
	Filename        : draft-ietf-karp-ospf-analysis-06.txt
	Pages           : 12
	Date            : 2012-11-26

Abstract:
   This document analyzes OSPFv2 and OSPFv3 according to the guidelines
   set forth in section 4.2 of RFC6518.  Key components of solutions to
   gaps identified in this draft are already underway.



The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-karp-ospf-analysis

There's also a htmlized version available at:
http://tools.ietf.org/html/draft-ietf-karp-ospf-analysis-06

A diff from the previous version is available at:
http://www.ietf.org/rfcdiff?url2=3Ddraft-ietf-karp-ospf-analysis-06


Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/


From bew@cisco.com  Wed Nov 28 13:10:23 2012
Return-Path: <bew@cisco.com>
X-Original-To: karp@ietfa.amsl.com
Delivered-To: karp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A546621F85E2 for <karp@ietfa.amsl.com>; Wed, 28 Nov 2012 13:10:23 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -110.599
X-Spam-Level: 
X-Spam-Status: No, score=-110.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_HI=-8, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id m2lEm9QJCktc for <karp@ietfa.amsl.com>; Wed, 28 Nov 2012 13:10:22 -0800 (PST)
Received: from mtv-iport-3.cisco.com (mtv-iport-3.cisco.com [173.36.130.14]) by ietfa.amsl.com (Postfix) with ESMTP id 3833C21F8A1C for <karp@ietf.org>; Wed, 28 Nov 2012 13:10:22 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=270; q=dns/txt; s=iport; t=1354137022; x=1355346622; h=from:content-transfer-encoding:subject:message-id:date: to:mime-version; bh=d10XdqV+SPT+JJHdVLXV+J0DNzOiLlO7ANbnS81SyZo=; b=LRHcjgKGxXpL+bsn2s/Q2Z6G8dszDWaNVmZBDHlejNxhB4/Y2xd14SE+ 1+fr+XDJzryQdJgUh3YlCqHbbokdySHas+ikg0xk6abTfmg7Mdm24zpBV JD4Ohcs5PRPyM21YV8+wGp7/hzwsISgCybl7rd9bBxpy2BTop1q0ms8Sm w=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AoUcAHZ9tlCrRDoH/2dsb2JhbABFgzpRgViIZ7FYFmwHgl+BfRMJiAYBDJ08oVCQH2EDiF6NI5BEgxM
X-IronPort-AV: E=McAfee;i="5400,1158,6910"; a="62576638"
Received: from mtv-core-2.cisco.com ([171.68.58.7]) by mtv-iport-3.cisco.com with ESMTP; 28 Nov 2012 21:10:20 +0000
Received: from dhcp-128-107-147-82.cisco.com (dhcp-128-107-147-82.cisco.com [128.107.147.82]) by mtv-core-2.cisco.com (8.14.5/8.14.5) with ESMTP id qASLAKAF024398 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=NO) for <karp@ietf.org>; Wed, 28 Nov 2012 21:10:20 GMT
From: Brian Weis <bew@cisco.com>
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: quoted-printable
Message-Id: <053B239E-38E4-4E95-9B04-7A5ACC52F9D2@cisco.com>
Date: Wed, 28 Nov 2012 13:10:21 -0800
To: "karp@ietf.org" <karp@ietf.org>
Mime-Version: 1.0 (Mac OS X Mail 6.2 \(1499\))
X-Mailer: Apple Mail (2.1499)
Subject: [karp] IETF 85 KARP WG Minutes
X-BeenThere: karp@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Discussion list for key management for routing and transport protocols <karp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/karp>, <mailto:karp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/karp>
List-Post: <mailto:karp@ietf.org>
List-Help: <mailto:karp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/karp>, <mailto:karp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 28 Nov 2012 21:10:23 -0000

Greetings,

The KARP WG minutes have been posted. Many thanks to Dan Harkins for =
providing them.
	<http://www.ietf.org/proceedings/85/minutes/minutes-85-karp>
Corrections may be sent to the list or to the chairs =
<karp-chairs@tools.ietf.org>.

Joel & Brian=
