Re: [anonsec] Connection latching by default?

Sam Hartman <hartmans-ietf@mit.edu> Mon, 14 January 2008 22:27 UTC

Return-path: <anonsec-bounces@postel.org>
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1JEXmO-0007Y9-DB for btns-archive-waDah9Oh@lists.ietf.org; Mon, 14 Jan 2008 17:27:40 -0500
Received: from boreas.isi.edu ([128.9.160.161]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1JEXmO-0007Ar-2V for btns-archive-waDah9Oh@lists.ietf.org; Mon, 14 Jan 2008 17:27:40 -0500
Received: from boreas.isi.edu (localhost [127.0.0.1]) by boreas.isi.edu (8.13.8/8.13.8) with ESMTP id m0EMJAse024865; Mon, 14 Jan 2008 14:19:11 -0800 (PST)
Received: from carter-zimmerman.suchdamage.org (carter-zimmerman.suchdamage.org [69.25.196.178]) by boreas.isi.edu (8.13.8/8.13.8) with ESMTP id m0EMIrat024756 for <anonsec@postel.org>; Mon, 14 Jan 2008 14:18:54 -0800 (PST)
Received: by carter-zimmerman.suchdamage.org (Postfix, from userid 8042) id B3F84C400B; Mon, 14 Jan 2008 17:18:52 -0500 (EST)
From: Sam Hartman <hartmans-ietf@mit.edu>
To: Black_David@emc.com
References: <20080110234505.GG810@Sun.COM>
Date: Mon, 14 Jan 2008 17:18:52 -0500
In-Reply-To: <20080110234505.GG810@Sun.COM> (Nicolas Williams's message of "Thu, 10 Jan 2008 17:45:05 -0600")
Message-ID: <tslbq7ojbjn.fsf@mit.edu>
User-Agent: Gnus/5.110006 (No Gnus v0.6) Emacs/21.4 (gnu/linux)
MIME-Version: 1.0
X-ISI-4-43-8-MailScanner: Found to be clean
X-MailScanner-From: hartmans@mit.edu
Cc: anonsec@postel.org
Subject: Re: [anonsec] Connection latching by default?
X-BeenThere: anonsec@postel.org
X-Mailman-Version: 2.1.6
Precedence: list
List-Id: "Discussions of anonymous Internet security." <anonsec.postel.org>
List-Unsubscribe: <http://mailman.postel.org/mailman/listinfo/anonsec>, <mailto:anonsec-request@postel.org?subject=unsubscribe>
List-Archive: <http://mailman.postel.org/pipermail/anonsec>
List-Post: <mailto:anonsec@postel.org>
List-Help: <mailto:anonsec-request@postel.org?subject=help>
List-Subscribe: <http://mailman.postel.org/mailman/listinfo/anonsec>, <mailto:anonsec-request@postel.org?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Sender: anonsec-bounces@postel.org
Errors-To: anonsec-bounces@postel.org
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 798b2e660f1819ae38035ac1d8d5e3ab

>>>>> "Nicolas" == Nicolas Williams <Nicolas.Williams@sun.com> writes:

    Nicolas> Solaris creates connection latches for all connected
    Nicolas> sockets by default, whether the application requested it
    Nicolas> or not.

    Nicolas> The just-submitted
    Nicolas> draft-ietf-btns-connection-latching-05.txt says:

    Nicolas>                         Implementations MAY create IPsec
    Nicolas> channels automatically by default when the application
    Nicolas> does not request an IPsec channel.

    Nicolas> But I see no reason not to make that a SHOULD.  Dan
    Nicolas> thinks it should be a SHOULD.

    Nicolas> Others, however, may disagree.

I think you need to have strong support for making it a should;
silence is not enough on this point.

_______________________________________________