[OPSAWG]Secdir last call review of draft-ietf-opsawg-tacacs-tls13-18

2025-03-08 Thread Russ Housley via Datatracker
Reviewer: Russ Housley Review result: Not Ready I reviewed this document as part of the Security Directorate's ongoing effort to review all IETF documents being processed by the IESG. These comments were written primarily for the benefit of the Security Area Directors. Document authors, document

[OPSAWG]Re: Shepherd procedural review

2025-03-08 Thread mohamed . boucadair
Re-, Please see inline. Cheers, Med De : Joe Clarke (jclarke) Envoyé : vendredi 7 mars 2025 17:37 À : draft-ietf-opsawg-secure-tacacs-y...@ietf.org Cc : opsawg@ietf.org Objet : Shepherd procedural review As I work through the shepherd write-up, I have questions: * Has this module been im

[OPSAWG]New Liaison Statement, "LS on work progress on quantum key distribution network (QKDN) in SG11"

2025-03-08 Thread Liaison Statement Management Tool
Title: LS on work progress on quantum key distribution network (QKDN) in SG11 Submission Date: 2025-03-07 URL of the IETF Web page: https://datatracker.ietf.org/liaison/1980/ From: Denis ANDREEV To: Joe Clarke ,Benoît Claise Cc: Joe Clarke ,Scott Mansfield ,Operations and Management Area Workin

[OPSAWG]Re: WGLC/Shepherd comments for TACACS+ TLS YANG (draft-ietf-opsawg-secure-tacacs-yang)

2025-03-08 Thread mohamed . boucadair
Hi Joe, Thanks you the review. Good points. These are fixed as you can see in this diff: https://boucadair.github.io/secure-tacacs-yang/#go.draft-ietf-opsawg-secure-tacacs-yang.diff Please see inline for more context. Cheers, Med De : Joe Clarke (jclarke) Envoyé : vendredi 7 mars 2025 16:57

[OPSAWG]Re: Shepherd procedural review on draft-ietf-opsawg-secure-tacacs-yang

2025-03-08 Thread Joe Clarke (jclarke)
Thanks for the context, Med. I’ll note that in the review. Other authors, please confirm you wish to be listed as such. Joe From: mohamed.boucad...@orange.com Date: Saturday, March 8, 2025 at 04:39 To: Joe Clarke (jclarke) , Wubo (lana) , Zitao Wang (wangzi...@huawei.com) , Guangying Zheng

[OPSAWG]Re: WGLC/Shepherd comments for TACACS+ TLS YANG (draft-ietf-opsawg-secure-tacacs-yang)

2025-03-08 Thread mohamed . boucadair
Re-, Good catch. Please see https://github.com/boucadair/secure-tacacs-yang/pull/13/files Thanks. Cheers, Med De : Joe Clarke (jclarke) Envoyé : vendredi 7 mars 2025 17:19 À : Joe Clarke (jclarke) ; opsawg@ietf.org Objet : [OPSAWG]Re: WGLC/Shepherd comments for TACACS+ TLS YANG (draft-ietf-o

[OPSAWG]Re: WGLC/Shepherd comments for TACACS+ TLS YANG (draft-ietf-opsawg-secure-tacacs-yang)

2025-03-08 Thread Joe Clarke (jclarke)
This diff looks good to me. And while not in my track changes comments, I have a question. In your appendix B, you have examples with SNI enabled where each of the four specified servers uses the same domain name. Is that an approach that is typically done? In my TACACS+ deployments, I gener