I did OPSDIR review for this document. Such reviews are primarily intended to check if there is any operational or network management impact. I do not see any such impact/aspects in the document, so I think the doc is ready for publication from this perspective. Some nits/questions: - Section: 5.2. PBKDFs should that be: 5.2. PBKDF2 ??? - I am somewhat surprised to see that ALL references are normative. even a reference to a slide deck: [WANG] X. Wang, A.C. Yao, and F. Yao. Cryptanalysis on SHA-1. Presented by Adi Shamir at the rump session of CRYPTO 2005. Slides may be found currently at < http://csrc.nist.gov/groups/ST/hash/documents/Wang_SHA1-New- Result.pdf> ??? Bert