Re: [Dime] WG adoption call for draft-zorn-dime-rfc4005bis-01

Sebastien Decugis <sdecugis@nict.go.jp> Tue, 17 August 2010 01:26 UTC

Return-Path: <sdecugis@nict.go.jp>
X-Original-To: dime@core3.amsl.com
Delivered-To: dime@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id DB1333A6781 for <dime@core3.amsl.com>; Mon, 16 Aug 2010 18:26:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.009
X-Spam-Level:
X-Spam-Status: No, score=-2.009 tagged_above=-999 required=5 tests=[AWL=0.240, BAYES_00=-2.599, HELO_EQ_FR=0.35]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6w2L7pYLnKKX for <dime@core3.amsl.com>; Mon, 16 Aug 2010 18:26:47 -0700 (PDT)
Received: from sd-11965.dedibox.fr (sd-11965.dedibox.fr [88.191.67.190]) by core3.amsl.com (Postfix) with ESMTP id BB9833A65A5 for <dime@ietf.org>; Mon, 16 Aug 2010 18:26:47 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by sd-11965.dedibox.fr (Postfix) with ESMTP id ACE0727DD0 for <dime@ietf.org>; Tue, 17 Aug 2010 03:27:22 +0200 (CEST)
X-Virus-Scanned: Debian amavisd-new at sd-11965.dedibox.fr
Received: from sd-11965.dedibox.fr ([127.0.0.1]) by localhost (sd-11965.dedibox.fr [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KhgL8d7aPNki for <dime@ietf.org>; Tue, 17 Aug 2010 03:27:17 +0200 (CEST)
Received: from [202.249.37.5] (morbier.koganei.wide.ad.jp [202.249.37.5]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by sd-11965.dedibox.fr (Postfix) with ESMTPSA id E64ED27DCC for <dime@ietf.org>; Tue, 17 Aug 2010 03:27:16 +0200 (CEST)
Message-ID: <4C69E55D.7050100@nict.go.jp>
Date: Tue, 17 Aug 2010 10:26:53 +0900
From: Sebastien Decugis <sdecugis@nict.go.jp>
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 6.0; fr; rv:1.9.2.8) Gecko/20100802 Thunderbird/3.1.2
MIME-Version: 1.0
To: dime@ietf.org
References: <A0A5F8D2-62B7-40BF-A9C2-8ED231D6323E@gmail.com><4C5A5F2D.20508@nict.go.jp> <001c01cb346e$d7f9a460$87eced20$@net> <4C5A6DA9.30309@nict.go.jp> <EDC652A26FB23C4EB6384A4584434A040241C230@307622ANEX5.global.avaya.com> <4C5B69A9.601@nict.go.jp> <001401cb3c67$760f66d0$622e3470$@net> <4C689AC0.4010400@nict.go.jp> <4C690E77.7000806@restena.lu>
In-Reply-To: <4C690E77.7000806@restena.lu>
X-Enigmail-Version: 1.1.1
Content-Type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: 7bit
Subject: Re: [Dime] WG adoption call for draft-zorn-dime-rfc4005bis-01
X-BeenThere: dime@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Diameter Maintanence and Extentions Working Group <dime.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/dime>, <mailto:dime-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dime>
List-Post: <mailto:dime@ietf.org>
List-Help: <mailto:dime-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dime>, <mailto:dime-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 17 Aug 2010 01:26:49 -0000

> It can translate back and forth in many cases, but not all. Example:
> at some point, your Diameter server wants to send Filter-Rule AVPs to
> restrict the client's access to some resources. The total length of
> all filter rules which the Diameter server adds to the reply is 4100
> Bytes long. RADIUS messages can't exceed 4096 Bytes. Translation will
> fail. QED. :-)
Thank you for the real-life example :)
Anyway since the server receives an indication that RADIUS translation
is happening (thanks to Origin-AAA-Protocol AVP) the server is (at
least, should be) able to handle this situation in a not-too-ugly way.
Put otherwise: if we are using pure RADIUS (or RADIA), we face the same
problem to convey this Filter Rule. What is the solution in that case?

Sebastien.

-- 
Sebastien Decugis
Research fellow
Network Architecture Group
NICT (nict.go.jp)