[dhcwg] Restrictions of information flow in leasequery messages
Ralph Droms <rdroms@cisco.com> Thu, 08 April 2004 23:09 UTC
Received: from optimus.ietf.org (optimus.ietf.org [132.151.1.19]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id TAA05681 for <dhcwg-archive@odin.ietf.org>; Thu, 8 Apr 2004 19:09:39 -0400 (EDT)
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1BBie1-0003zj-El for dhcwg-archive@odin.ietf.org; Thu, 08 Apr 2004 19:09:13 -0400
Received: (from exim@localhost) by www1.ietf.org (8.12.8/8.12.8/Submit) id i38N9DiJ015353 for dhcwg-archive@odin.ietf.org; Thu, 8 Apr 2004 19:09:13 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1BBie1-0003zX-AF for dhcwg-web-archive@optimus.ietf.org; Thu, 08 Apr 2004 19:09:13 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id TAA05624 for <dhcwg-web-archive@ietf.org>; Thu, 8 Apr 2004 19:09:08 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 1BBidx-0001sO-00 for dhcwg-web-archive@ietf.org; Thu, 08 Apr 2004 19:09:09 -0400
Received: from exim by ietf-mx with spam-scanned (Exim 4.12) id 1BBhmS-0003h1-00 for dhcwg-web-archive@ietf.org; Thu, 08 Apr 2004 18:13:55 -0400
Received: from [65.246.255.50] (helo=mx2.foretec.com) by ietf-mx with esmtp (Exim 4.12) id 1BBfnJ-00031O-00 for dhcwg-web-archive@ietf.org; Thu, 08 Apr 2004 16:06:37 -0400
Received: from optimus22.ietf.org ([132.151.6.22] helo=optimus.ietf.org) by mx2.foretec.com with esmtp (Exim 4.24) id 1BBffE-0007pG-IV for dhcwg-web-archive@ietf.org; Thu, 08 Apr 2004 15:58:16 -0400
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1BBfez-00053p-CQ; Thu, 08 Apr 2004 15:58:01 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1BBfee-00052i-U9 for dhcwg@optimus.ietf.org; Thu, 08 Apr 2004 15:57:40 -0400
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id PAA15431 for <dhcwg@ietf.org>; Thu, 8 Apr 2004 15:57:38 -0400 (EDT)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 1BBfed-0002Ad-00 for dhcwg@ietf.org; Thu, 08 Apr 2004 15:57:39 -0400
Received: from exim by ietf-mx with spam-scanned (Exim 4.12) id 1BB22O-0001Wu-00 for dhcwg@ietf.org; Tue, 06 Apr 2004 21:39:34 -0400
Received: from rtp-iport-1.cisco.com ([64.102.122.148]) by ietf-mx with esmtp (Exim 4.12) id 1BB0m4-0001y6-00 for dhcwg@ietf.org; Tue, 06 Apr 2004 20:18:36 -0400
Received: from rtp-core-1.cisco.com (64.102.124.12) by rtp-iport-1.cisco.com with ESMTP; 06 Apr 2004 17:28:06 -0700
X-BrightmailFiltered: true
Received: from flask.cisco.com (IDENT:mirapoint@flask.cisco.com [161.44.122.62]) by rtp-core-1.cisco.com (8.12.10/8.12.6) with ESMTP id i370I4cp009014 for <dhcwg@ietf.org>; Tue, 6 Apr 2004 20:18:04 -0400 (EDT)
Received: from rdroms-w2k01.cisco.com (che-vpn-cluster-1-83.cisco.com [10.86.240.83]) by flask.cisco.com (Mirapoint Messaging Server MOS 3.3.6-GR) with ESMTP id AHK36195; Tue, 6 Apr 2004 20:18:03 -0400 (EDT)
Message-Id: <4.3.2.7.2.20040406201536.01f62c28@flask.cisco.com>
X-Sender: rdroms@flask.cisco.com
X-Mailer: QUALCOMM Windows Eudora Version 4.3.2
Date: Tue, 06 Apr 2004 20:16:37 -0400
To: dhcwg@ietf.org
From: Ralph Droms <rdroms@cisco.com>
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"; format="flowed"
Subject: [dhcwg] Restrictions of information flow in leasequery messages
Sender: dhcwg-admin@ietf.org
Errors-To: dhcwg-admin@ietf.org
X-BeenThere: dhcwg@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=unsubscribe>
List-Id: <dhcwg.ietf.org>
List-Post: <mailto:dhcwg@ietf.org>
List-Help: <mailto:dhcwg-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=subscribe>
X-Spam-Checker-Version: SpamAssassin 2.60 (1.212-2003-09-23-exp) on ietf-mx.ietf.org
X-Spam-Status: No, hits=0.0 required=5.0 tests=AWL autolearn=no version=2.60
Ted Hardie:
Discuss:
This whole method has "invitation to mischief" printed in large, block
letters across its
shirt. After being told repeatedly that there is no restriction on the use
cases for this
mechanism, this text:
For this query, the requester supplies only an IP address in the
DHCPLEASEQUERY message. The DHCP server will return any
information that it has on the most recent client to have been
assigned that IP address.
sets off lots of alarm bells. If I read this right, *any information*
associated
with that IP address is returned? If information used to construct a location
object is present (as in the geopriv dhcp-li draft), that would get returned?
That seems kind of excessive for an access concentrator, but very, very nice
for a black hat. This whole section on Parameter Request List options:
The Parameter Request List option (option 55) SHOULD be set to
the options of interest to the requester. The interesting
options are likely to include the IP Address Lease Time option
(option 51), the Relay Agent Information option (option 82) and
possibly the Vendor class identifier option (option 60). In the
absence of a Parameter Request List option, the server SHOULD
return the same options it would return for a DHCPREQUEST
message which didn't contain a DHCPLEASEQUERY message, which
includes those mandated by [RFC 2131, Section 4.3.1] as well as
any options which the server was configured to always return to
a client.
has no restrictions of any type on the return of any data. Why is all
of this data being made available via this method?
It's too bad that SNMP is off the table here, as that would give you a
realistic
way to limit data to specific queries and queriers.
Limiting the protocol to a very specific use that fits the
demonstrated need seems like it would make getting the security
mechanisms right easier; if this is meant to be truly general purpose,
it needs a general purpose mechanism that would give it the same level
of security as SNMP would for this same purpose.
_______________________________________________
dhcwg mailing list
dhcwg@ietf.org
https://www1.ietf.org/mailman/listinfo/dhcwg
- [dhcwg] Restrictions of information flow in lease… Ralph Droms
- Re: [dhcwg] Restrictions of information flow in l… Kim Kinnear
- RE: [dhcwg] Restrictions of information flow in l… Bernie Volz
- RE: [dhcwg] Restrictions of information flow in l… Richard Barr Hibbs