Re: [Dime] Comments on draft-ietf-dime-erp-03.txt

Qin Wu <sunseawq@huawei.com> Thu, 11 March 2010 04:17 UTC

Return-Path: <sunseawq@huawei.com>
X-Original-To: dime@core3.amsl.com
Delivered-To: dime@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 21ABA3A6A35 for <dime@core3.amsl.com>; Wed, 10 Mar 2010 20:17:46 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.645
X-Spam-Level:
X-Spam-Status: No, score=-0.645 tagged_above=-999 required=5 tests=[AWL=-0.150, BAYES_00=-2.599, FH_RELAY_NODNS=1.451, HELO_MISMATCH_COM=0.553, RDNS_NONE=0.1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id iTa5uvatgM6F for <dime@core3.amsl.com>; Wed, 10 Mar 2010 20:17:45 -0800 (PST)
Received: from szxga01-in.huawei.com (unknown [119.145.14.64]) by core3.amsl.com (Postfix) with ESMTP id 2F20A3A67E1 for <dime@ietf.org>; Wed, 10 Mar 2010 20:17:45 -0800 (PST)
Received: from huawei.com (szxga01-in [172.24.2.3]) by szxga01-in.huawei.com (iPlanet Messaging Server 5.2 HotFix 2.14 (built Aug 8 2006)) with ESMTP id <0KZ300I91NXFCS@szxga01-in.huawei.com> for dime@ietf.org; Thu, 11 Mar 2010 12:17:40 +0800 (CST)
Received: from huawei.com ([172.24.2.119]) by szxga01-in.huawei.com (iPlanet Messaging Server 5.2 HotFix 2.14 (built Aug 8 2006)) with ESMTP id <0KZ300L2HNXFIJ@szxga01-in.huawei.com> for dime@ietf.org; Thu, 11 Mar 2010 12:17:39 +0800 (CST)
Received: from w53375 ([10.164.12.38]) by szxml06-in.huawei.com (iPlanet Messaging Server 5.2 HotFix 2.14 (built Aug 8 2006)) with ESMTPA id <0KZ300E90NXFB9@szxml06-in.huawei.com> for dime@ietf.org; Thu, 11 Mar 2010 12:17:39 +0800 (CST)
Date: Thu, 11 Mar 2010 12:17:39 +0800
From: Qin Wu <sunseawq@huawei.com>
To: Glen Zorn <gwz@net-zen.net>, dime@ietf.org
Message-id: <056b01cac0d1$c9b57250$260ca40a@china.huawei.com>
MIME-version: 1.0
X-MIMEOLE: Produced By Microsoft MimeOLE V6.00.2900.3350
X-Mailer: Microsoft Outlook Express 6.00.2900.3598
Content-type: text/plain; charset="iso-8859-1"
Content-transfer-encoding: 7bit
X-Priority: 3
X-MSMail-priority: Normal
References: <001501cac04d$390cdec0$ab269c40$@net>
Subject: Re: [Dime] Comments on draft-ietf-dime-erp-03.txt
X-BeenThere: dime@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Diameter Maintanence and Extentions Working Group <dime.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/dime>, <mailto:dime-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/dime>
List-Post: <mailto:dime@ietf.org>
List-Help: <mailto:dime-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dime>, <mailto:dime-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 11 Mar 2010 04:17:46 -0000

> Section 4 says:
>   If there is an ER server in the same domain as the authenticator
>   (local domain), Diameter routing MUST
> 
>   QUESTION:
>      Should this say "SHOULD: instead of "MUST"?
> 
>   be configured so that this ERP/DER message reaches this server, even
>   if the Destination-Realm is not the local domain.
> I wonder what the purpose of this paragraph might be: why would it be
> necessary to configure Diameter routing at all?  Actually, it seems like
> this passage could break the ERP app, since the very next paragraph says
> that the message should be routed to the bootstrapped ER server in the
> re-authentication case.  This seems like the correct behavior, so why modify
> it?
 
[Qin]: Not sure the ER server can terminate the ERP/DER message based on *Diameter ERP application*, 
when the Destination-Realm of the message received from the peer is not the local domain.
In my understanding, Normally Destination-Realm or Realm part of NAI is chosen by the peer and determine 
how the Diameter message is routed. Maybe the destination-Realm can be changed by the Diameter intermediate node.
But the only example I can image is Dedicated NAI is used, the Diameter proxy in the visited realm can replace the
destination-realm of message with home realm name rather than vistited realm name or local realm name.
What am I missing?

_______________________________________________
> DiME mailing list
> DiME@ietf.org
> https://www.ietf.org/mailman/listinfo/dime