On Thu, Jan 29, 2015 at 09:03:17AM +0100, Johannes Merkle wrote:

> > 
> > s9.4 refers to OBJECTS, but there aren't any, only IDENTITY so I think
> > that s9.4 should reflect that (lest it confuses, or am I confused having
> > missed an OBJECT somewhere?)
> 
> Here I definitely need help, as I have no knowledge about MIBs. Actually, I 
> copied that section from RFC 3411. Please
> give advise what to write here or if this section is needed at all.
>

The 'official' security considerations template for MIB modules can be
found here:

http://trac.tools.ietf.org/area/ops/trac/wiki/mib-security

It does not really apply here since this MIB module only defines a
couple of constants. Perhaps write something along these lines:

  The SNMP-USM-HMAC-SHA2-MIB module defines OBJECT IDENTIFIER values
  for use in other MIB modules. It does not define any objects that
  can be accessed. As such, the SNMP-USM-HMAC-SHA2-MIB does not, by
  itself, have any effect on the security of the Internet.

  The values defined in this module are expected to be used with the
  usmUserTable defined in the SNMP-USER-BASED-SM-MIB [RFC3414]. The
  considerations in Section 11.5 of [RFC3414] should be taken into
  account.

/js

-- 
Juergen Schoenwaelder           Jacobs University Bremen gGmbH
Phone: +49 421 200 3587         Campus Ring 1, 28759 Bremen, Germany
Fax:   +49 421 200 3103         <http://www.jacobs-university.de/>

_______________________________________________
OPSAWG mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/opsawg

Reply via email to