In general, this charter looks good, but I've got one question about
the security section. In IAB discussions with Ran Atkinson last fall,
it came up that one inhibitor for end to end Diffsrv is that it opens
a potential DoS attack pathway on the receiving network, in that the
attacker can label packets as EF and thereby enhance the effectiveness
of the attack (and potentially overwhelm the EF forwarding capacity of
the routers). According to Ran, this is a major barrier to QoS
deployment among ISPs.