Re: [Int-area] Re: I-D ACTION:draft-fenner-iana-exp-2780-01.txt

Brian E Carpenter <brc@zurich.ibm.com> Thu, 12 January 2006 16:13 UTC

Received: from localhost.cnri.reston.va.us ([127.0.0.1] helo=megatron.ietf.org) by megatron.ietf.org with esmtp (Exim 4.32) id 1Ex54h-0000QP-H2; Thu, 12 Jan 2006 11:13:19 -0500
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by megatron.ietf.org with esmtp (Exim 4.32) id 1Ex54g-0000QK-7c for int-area@megatron.ietf.org; Thu, 12 Jan 2006 11:13:18 -0500
Received: from ietf-mx.ietf.org (ietf-mx [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id LAA27850 for <int-area@ietf.org>; Thu, 12 Jan 2006 11:11:56 -0500 (EST)
Received: from mtagate2.de.ibm.com ([195.212.29.151]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1Ex5Bn-0000T8-NX for int-area@ietf.org; Thu, 12 Jan 2006 11:20:41 -0500
Received: from d12nrmr1607.megacenter.de.ibm.com (d12nrmr1607.megacenter.de.ibm.com [9.149.167.49]) by mtagate2.de.ibm.com (8.12.10/8.12.10) with ESMTP id k0CGCUI5238666 for <int-area@ietf.org>; Thu, 12 Jan 2006 16:12:31 GMT
Received: from d12av01.megacenter.de.ibm.com (d12av01.megacenter.de.ibm.com [9.149.165.212]) by d12nrmr1607.megacenter.de.ibm.com (8.12.10/NCO/VERS6.8) with ESMTP id k0CGC9wA218924 for <int-area@ietf.org>; Thu, 12 Jan 2006 17:12:09 +0100
Received: from d12av01.megacenter.de.ibm.com (loopback [127.0.0.1]) by d12av01.megacenter.de.ibm.com (8.12.11/8.13.3) with ESMTP id k0CGC855020713 for <int-area@ietf.org>; Thu, 12 Jan 2006 17:12:08 +0100
Received: from sihl.zurich.ibm.com (sihl.zurich.ibm.com [9.4.16.232]) by d12av01.megacenter.de.ibm.com (8.12.11/8.12.11) with ESMTP id k0CGC8da020683; Thu, 12 Jan 2006 17:12:08 +0100
Received: from zurich.ibm.com (sig-9-145-133-214.de.ibm.com [9.145.133.214]) by sihl.zurich.ibm.com (AIX4.3/8.9.3p2/8.9.3) with ESMTP id RAA50126; Thu, 12 Jan 2006 17:12:06 +0100
Message-ID: <43C67FD4.2040403@zurich.ibm.com>
Date: Thu, 12 Jan 2006 17:12:04 +0100
From: Brian E Carpenter <brc@zurich.ibm.com>
Organization: IBM
User-Agent: Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.6) Gecko/20040113
X-Accept-Language: en, fr, de
MIME-Version: 1.0
To: Stewart Bryant <stbryant@cisco.com>
Subject: Re: [Int-area] Re: I-D ACTION:draft-fenner-iana-exp-2780-01.txt
References: <E1Ew6m1-0000B8-Py@newodin.ietf.org> <43C6513F.8060606@zurich.ibm.com> <43C6700B.5020003@cisco.com>
In-Reply-To: <43C6700B.5020003@cisco.com>
Content-Type: text/plain; charset="us-ascii"; format="flowed"
Content-Transfer-Encoding: 7bit
X-Spam-Score: 0.0 (/)
X-Scan-Signature: b19722fc8d3865b147c75ae2495625f2
Content-Transfer-Encoding: 7bit
Cc: int-area@ietf.org
X-BeenThere: int-area@lists.ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: IETF Internet Area Mailing List <int-area.lists.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@lists.ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/int-area>
List-Post: <mailto:int-area@lists.ietf.org>
List-Help: <mailto:int-area-request@lists.ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@lists.ietf.org?subject=subscribe>
Sender: int-area-bounces@lists.ietf.org
Errors-To: int-area-bounces@lists.ietf.org

Stewart Bryant wrote:
> Brian E Carpenter wrote:
> 
>> Some personal comments on this.
>>
>> I'm in favour of making these assignments. I think they will allow
>> innovation and deflect some of the pressure for assignments for
>> essentially private use.
>>
>> I'd actually question whether we shouldn't state explicitly that
>> it's OK to use these values in production in a private network.
> 
> 
> I think that might be dangerous - sooner or later someone is going
> to willfully disregard 3692.
> 
> There needed to be 3692 warnings in both this draft and right
> next to the entries in the IANA registry.

But are they any different from the warnings appropriate to "private
use" assignments? A private protocol becomes an experiment if it
gets out onto the Internet. I'm not sure I see a distinction. I'm
all in favour of the warnings.

> There may be a good case for recommending that firewalls and
> NAT default to dumping these packets.

That's fairly much the intention of the Security Considerations,
I think - I'm not sure there is much we can teach firewall and
IDS vendors about failsafe defaults.

     Brian


_______________________________________________
Int-area mailing list
Int-area@lists.ietf.org
https://www1.ietf.org/mailman/listinfo/int-area