Re: WG Review: Behavior Engineering for Hindrance Avoidance (behave) (fwd)

Pekka Savola <pekkas@netcore.fi> Thu, 23 September 2004 17:48 UTC

Received: from ietf-mx.ietf.org (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id NAA04421; Thu, 23 Sep 2004 13:48:44 -0400 (EDT)
Received: from megatron.ietf.org ([132.151.6.71]) by ietf-mx.ietf.org with esmtp (Exim 4.33) id 1CAXoq-0005Xu-RU; Thu, 23 Sep 2004 13:55:50 -0400
Received: from localhost.localdomain ([127.0.0.1] helo=megatron.ietf.org) by megatron.ietf.org with esmtp (Exim 4.32) id 1CAXbO-0003Ax-S7; Thu, 23 Sep 2004 13:41:54 -0400
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by megatron.ietf.org with esmtp (Exim 4.32) id 1CAXVR-000297-L1 for ietf@megatron.ietf.org; Thu, 23 Sep 2004 13:35:45 -0400
Received: from ietf-mx.ietf.org (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id NAA03528 for <ietf@ietf.org>; Thu, 23 Sep 2004 13:35:42 -0400 (EDT)
Received: from netcore.fi ([193.94.160.1]) by ietf-mx.ietf.org with esmtp (Exim 4.33) id 1CAXcF-0005H7-Mo for ietf@ietf.org; Thu, 23 Sep 2004 13:42:49 -0400
Received: from localhost (pekkas@localhost) by netcore.fi (8.11.6/8.11.6) with ESMTP id i8NHZ0D16211; Thu, 23 Sep 2004 20:35:00 +0300
Date: Thu, 23 Sep 2004 20:35:00 +0300
From: Pekka Savola <pekkas@netcore.fi>
To: Harald Tveit Alvestrand <harald@alvestrand.no>
In-Reply-To: <D1759734E488DBC230119692@askvoll.hjemme.alvestrand.no>
Message-ID: <Pine.LNX.4.44.0409232031350.15671-100000@netcore.fi>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset="US-ASCII"
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 2409bba43e9c8d580670fda8b695204a
Cc: Michael Richardson <mcr@sandelman.ottawa.on.ca>, ietf@ietf.org
Subject: Re: WG Review: Behavior Engineering for Hindrance Avoidance (behave) (fwd)
X-BeenThere: ietf@ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: IETF-Discussion <ietf.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=unsubscribe>
List-Post: <mailto:ietf@ietf.org>
List-Help: <mailto:ietf-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/ietf>, <mailto:ietf-request@ietf.org?subject=subscribe>
Sender: ietf-bounces@ietf.org
Errors-To: ietf-bounces@ietf.org
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 8abaac9e10c826e8252866cbe6766464

On Tue, 21 Sep 2004, Harald Tveit Alvestrand wrote:
> > The point is which kind of applications you can reasonably expect to
> > deploy behind an IPv4 NAT, and be happy.
> >
> > I agree with Harald that v4 NATs are going to be here a decade from
> > now.  But that's irrelevant, if those people using the NAT only use
> > simple client-server applications.
> 
> Well.... my house was behind 2 levels of NAT until last week.
> Once i got rid of one level (the one I don't control), some of my 
> operational problems with keeping SSH sessions up simply went away.
> And SSH is a client-server protocol.
> 
> Don't underestimate the capability of badly implemented and/or configured 
> NATs to make things go boom in the night.

FWIW, I don't think this is something that can be fixed whatever
guidance the IETF would give.  NATs will always need to keep some
state for all the protocols, including TCP, and that state must be
removed after a timeout.

-- 
Pekka Savola                 "You each name yourselves king, yet the
Netcore Oy                    kingdom bleeds."
Systems. Networks. Security. -- George R.R. Martin: A Clash of Kings



_______________________________________________
Ietf mailing list
Ietf@ietf.org
https://www1.ietf.org/mailman/listinfo/ietf