[Gen-art] RE: Genart review of draft-ietf-radext-dynauth-server-mib-05 / draft-ietf-radext-dynauth-client-mib-05

"Nelson, David" <dnelson@enterasys.com> Fri, 09 June 2006 15:50 UTC

Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1FojFL-0006Ui-Ld; Fri, 09 Jun 2006 11:50:03 -0400
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1FojFK-0006UY-DZ for gen-art@ietf.org; Fri, 09 Jun 2006 11:50:02 -0400
Received: from is1.enterasys.com ([63.160.138.52]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1FojFF-0006sh-5B for gen-art@ietf.org; Fri, 09 Jun 2006 11:50:02 -0400
Received: from MABOSEVS2.ets.enterasys.com ([134.141.77.30]) by nhrocefe1.ets.enterasys.com with Microsoft SMTPSVC(6.0.3790.1830); Fri, 9 Jun 2006 11:49:56 -0400
X-MimeOLE: Produced By Microsoft Exchange V6.5
Content-class: urn:content-classes:message
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
Date: Fri, 09 Jun 2006 11:49:56 -0400
Message-ID: <3CFB564E055A594B82C4FE89D215656021927A@MABOSEVS2.ets.enterasys.com>
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
Thread-Topic: Genart review of draft-ietf-radext-dynauth-server-mib-05 / draft-ietf-radext-dynauth-client-mib-05
Thread-Index: AcaK5OJHpf/LZqOqRs2mrIzBcVuXugA9rlzw
From: "Nelson, David" <dnelson@enterasys.com>
To: stefaan.de_cnodder@alcatel.be, Ron Bonica <rbonica@juniper.net>
X-OriginalArrivalTime: 09 Jun 2006 15:49:56.0154 (UTC) FILETIME=[5AF269A0:01C68BDC]
X-imss-version: 2.040
X-imss-result: Passed
X-imss-approveListMatch: *@enterasys.com
X-Spam-Score: 0.0 (/)
X-Scan-Signature: d6b246023072368de71562c0ab503126
Cc: gen-art@ietf.org, radiusext@ops.ietf.org
Subject: [Gen-art] RE: Genart review of draft-ietf-radext-dynauth-server-mib-05 / draft-ietf-radext-dynauth-client-mib-05
X-BeenThere: gen-art@ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: "GEN-ART: General Area Review Team" <gen-art.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/gen-art>, <mailto:gen-art-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/gen-art>
List-Post: <mailto:gen-art@ietf.org>
List-Help: <mailto:gen-art-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/gen-art>, <mailto:gen-art-request@ietf.org?subject=subscribe>
Errors-To: gen-art-bounces@ietf.org

> > - Can I assume that it has passed MIB Rx Review? (It compiles
clean).

It has.

> > - Should this MIB *ever* be used in conjuntion with SNMPv1? I know
that
> > you *recommend* against it. But it seems that divulging the
information
> > in this mib to a hostile party might be pretty bad.

I think the standard warning is appropriate.  It SHOULD NOT be used in
conjunction with SNMPv1 in the general case.  There might be some
particular environments, e.g. enterprise LANs with protected management
VLANs, in which the operator is convinced that the use of SNMPv1 does
not give rise to any meaningful security risks.  I think that the
recommendation is appropriate, and one couldn't really mandate what
operators will do, in any event.


_______________________________________________
Gen-art mailing list
Gen-art@ietf.org
https://www1.ietf.org/mailman/listinfo/gen-art