ietf
[Top] [All Lists]

Re: Security for various IETF services

2014-04-06 14:28:58
On 5 April 2014 14:40, <l(_dot_)wood(_at_)surrey(_dot_)ac(_dot_)uk> wrote:

"I didn't see anything that stood out. Are you referring to his why
question?  Really?  It seems others answered why."

they did not.

Other noises off-stage are rrelevant

The author(s) of the proposal MUST provide the threat model for each
service and a reasoned argument why the proposed action mitigates the
identified threat or threats.

Engineering best practice demands no less.

Transparent decision process demands no less.

Ignoring Lloyd Wood's question is not an option.


Dick Franks