<html><body><div style="color:#000; background-color:#fff; font-family:HelveticaNeue, Helvetica Neue, Helvetica, Arial, Lucida Grande, sans-serif;font-size:8pt"><div id="yiv6198273881"><div><div style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 8pt; background-color: rgb(255, 255, 255);"><div id="yiv6198273881yui_3_16_0_11_1403022702943_4"><span></span></div><div class="yiv6198273881qtdSeparateBR" id="yiv6198273881yui_3_16_0_11_1403022702943_6"><br clear="none"><br clear="none"></div>  <div class="yiv6198273881yahoo_quoted" id="yiv6198273881yui_3_16_0_11_1403022702943_9" style="display: block;"> <div class="yiv6198273881yui_3_16_0_1_1403022702943_535925" id="yiv6198273881yui_3_16_0_1_1403022702943_536050" style="font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 8pt;"> <div
 class="yiv6198273881yui_3_16_0_1_1403022702943_535926" id="yiv6198273881yui_3_16_0_1_1403022702943_536049" style="font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 12pt;"> <div class="qtdSeparateBR"><br><br></div><div class="yiv6198273881yqt7057022466" id="yiv6198273881yqt68093"><div dir="ltr" id="yiv6198273881yui_3_16_0_1_1403022702943_536048"> <font id="yiv6198273881yui_3_16_0_1_1403022702943_536051" size="2" face="Arial"> On Wednesday, June 18, 2014 10:54 AM, Mahalingam Mani
 &lt;mmani@yahoo.com&gt; wrote:<br clear="none"> </font> </div>  <br clear="none"><br clear="none"> <div class="yiv6198273881y_msg_container" id="yiv6198273881yui_3_16_0_1_1403022702943_536057"><div id="yiv6198273881"><div id="yiv6198273881yui_3_16_0_1_1403022702943_536056"><div class="yiv6198273881yui_3_16_0_1_1403022702943_535928" id="yiv6198273881yui_3_16_0_1_1403022702943_536055" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 8pt; background-color: rgb(255, 255, 255);"><div id="yiv6198273881"><div id="yiv6198273881yui_3_16_0_1_1403022702943_536054"><div class="yiv6198273881yui_3_16_0_1_1403022702943_535929" id="yiv6198273881yui_3_16_0_1_1403022702943_536053" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 8pt; background-color: rgb(255, 255, 255);"><div class="yiv6198273881"
 id="yiv6198273881" style=""><div class="yiv6198273881" id="yiv6198273881yui_3_16_0_1_1403022702943_346213" style=""><div class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535932" id="yiv6198273881yui_3_16_0_1_1403022702943_346212" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 10pt; background-color: rgb(255, 255, 255);"><span class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535933" id="yiv6198273881yui_3_16_0_9_1403022702943_16" style="font-family: monospace; font-size: 10pt;">[I have reviewed this document as part of the Operational directorate's
 ongoing&nbsp;</span><span class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535934" id="yiv6198273881yui_3_16_0_9_1403022702943_20" style="font-family: monospace; font-size: 10pt;">effort to review all IETF documents being processed by the IESG.&nbsp;</span><span class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535935" id="yiv6198273881yui_3_16_0_1_1403022702943_346765" style="font-family: monospace; font-size: 10pt;">These comments were written
 primarily for the benefit of the</span></div><div class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535936" id="yiv6198273881yui_3_16_0_1_1403022702943_346212" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 10pt; background-color: rgb(255, 255, 255);"><span class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535937" id="yiv6198273881yui_3_16_0_1_1403022702943_346238" style="font-family: monospace;">operational area directors.&nbsp; Document editors and WG chairs should&nbsp;</span><span class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535938" id="yiv6198273881yui_3_16_0_1_1403022702943_346225" style="font-family: monospace;">treat these comments just like any other last call comments]</span><br clear="none" style=""></div><div class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535940"
 id="yiv6198273881yui_3_16_0_1_1403022702943_346212" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 10pt; background-color: rgb(255, 255, 255);"><br clear="none" class="yiv6198273881" id="yiv6198273881yui_3_16_0_1_1403022702943_346222" style=""></div><div class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535942" id="yiv6198273881yui_3_16_0_1_1403022702943_346212" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 10pt; background-color: rgb(255, 255, 255);">The purpose of 2870bis itself, as stated up front in the introduction, is to separate operational requirements from protocol and deployment requirements. The operational requirements now reference a document&nbsp;<span class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535943" style="font-family: 'Courier New';
 white-space: pre-wrap; font-size: 1em;">[</span><a rel="nofollow" shape="rect" class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535944" target="_blank" href="http://tools.ietf.org/html/draft-iab-2870bis-01#ref-RSSAC-001" style="font-family: 'Courier  New'; white-space: pre-wrap; font-size: 1em; background-color: rgb(255, 255, 255);">RSSAC-001</a><span class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535945" id="yiv6198273881yui_3_16_0_1_1403022702943_347045" style="font-family: 'Courier New'; white-space: pre-wrap; font-size: 1em;">]</span><span class="yiv6198273881" id="yiv6198273881yui_3_16_0_1_1403022702943_347052" style="font-size:10pt;">&nbsp;outside of this SDO. This document has protocol requirements and some&nbsp;deployment requirements: I have no OAM-related concerns on the
 stated deployment requirements.</span><br clear="none" class="yiv6198273881" style=""></div><div class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535948" id="yiv6198273881yui_3_16_0_1_1403022702943_346212" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 10pt; background-color: rgb(255, 255, 255);"><br clear="none" class="yiv6198273881" id="yiv6198273881yui_3_16_0_1_1403022702943_346900" style=""></div><div class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535950" id="yiv6198273881yui_3_16_0_1_1403022702943_346212" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 10pt; background-color: rgb(255, 255, 255);">Many of the security considerations in the original RFC2870 are themselves related to operational considerations and they are hopefully (re)captured fully
 in&nbsp;<span class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535951" style="font-family: 'Courier  New'; white-space: pre-wrap; font-size: 1em;">[</span><a rel="nofollow" shape="rect" class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535952" target="_blank" href="http://tools.ietf.org/html/draft-iab-2870bis-01#ref-RSSAC-001" style="font-family: 'Courier New'; white-space: pre-wrap; font-size: 1em; background-color: rgb(255, 255, 255);">RSSAC-001</a><span class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535953" id="yiv6198273881yui_3_16_0_1_1403022702943_347054" style="font-family: 'Courier New'; white-space: pre-wrap; font-size: 1em;">]. A</span><span class="yiv6198273881" style="font-size:10pt;">lthough security considerations on respective DNS protocols are captured in respective RFCs; operational security considerations are critical to the security of the DNS (and, hence, the internet) infrastructure.</span><br
 clear="none" class="yiv6198273881" style=""></div><div class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535956" id="yiv6198273881yui_3_16_0_1_1403022702943_346212" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 10pt; background-color: rgb(255, 255, 255);"><br clear="none" class="yiv6198273881" id="yiv6198273881yui_3_16_0_1_1403022702943_346633" style=""></div><div class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535958" id="yiv6198273881yui_3_16_0_1_1403022702943_346212" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 10pt; background-color: rgb(255, 255, 255);">Thanks,</div><div class="yiv6198273881 yiv6198273881yui_3_16_0_1_1403022702943_535959" id="yiv6198273881yui_3_16_0_1_1403022702943_346212" style="color: rgb(0, 0, 0); font-family: HelveticaNeue, 'Helvetica
 Neue', Helvetica, Arial, 'Lucida Grande', sans-serif; font-size: 10pt; background-color: rgb(255, 255, 255);">-mani</div></div></div></div></div></div></div></div></div><br clear="none">_______________________________________________<br clear="none">OPS-DIR mailing list<br clear="none"><a rel="nofollow" shape="rect" ymailto="mailto:OPS-DIR@ietf.org" target="_blank" href="mailto:OPS-DIR@ietf.org">OPS-DIR@ietf.org</a><br clear="none"><a rel="nofollow" shape="rect" target="_blank" href="https://www.ietf.org/mailman/listinfo/ops-dir">https://www.ietf.org/mailman/listinfo/ops-dir</a><br clear="none"><br clear="none"><br clear="none"></div></div>  </div> </div>  </div> </div></div></div></div></body></html>