Re: [IPsec] #123: Proposal to remove the IANA tables from IKEv2bis

Yaron Sheffer <yaronf@checkpoint.com> Tue, 24 November 2009 21:30 UTC

Return-Path: <yaronf@checkpoint.com>
X-Original-To: ipsec@core3.amsl.com
Delivered-To: ipsec@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id DC0123A68DD for <ipsec@core3.amsl.com>; Tue, 24 Nov 2009 13:30:00 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.512
X-Spam-Level:
X-Spam-Status: No, score=-3.512 tagged_above=-999 required=5 tests=[AWL=0.087, BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9BQczypx3AQF for <ipsec@core3.amsl.com>; Tue, 24 Nov 2009 13:30:00 -0800 (PST)
Received: from michael.checkpoint.com (michael.checkpoint.com [194.29.32.68]) by core3.amsl.com (Postfix) with ESMTP id B60FD3A68D5 for <ipsec@ietf.org>; Tue, 24 Nov 2009 13:29:59 -0800 (PST)
Received: from il-ex01.ad.checkpoint.com (localhost [127.0.0.1]) by michael.checkpoint.com (8.12.10+Sun/8.12.10) with ESMTP id nAOLToGo014223; Tue, 24 Nov 2009 23:29:50 +0200 (IST)
Received: from il-ex01.ad.checkpoint.com ([126.0.0.2]) by il-ex01.ad.checkpoint.com ([126.0.0.2]) with mapi; Tue, 24 Nov 2009 23:29:55 +0200
From: Yaron Sheffer <yaronf@checkpoint.com>
To: Paul Hoffman <paul.hoffman@vpnc.org>, IPsecme WG <ipsec@ietf.org>
Date: Tue, 24 Nov 2009 23:29:52 +0200
Thread-Topic: [IPsec] #123: Proposal to remove the IANA tables from IKEv2bis
Thread-Index: AcptK+v6YHda9NGSQHmH54lCRQSKeQAH8dKg
Message-ID: <7F9A6D26EB51614FBF9F81C0DA4CFEC801BDF88E0010@il-ex01.ad.checkpoint.com>
References: <p06240847c730db1c447f@[10.20.30.158]> <19211.60135.834509.954897@fireball.kivinen.iki.fi> <p06240860c731c8863b5c@[10.20.30.158]>
In-Reply-To: <p06240860c731c8863b5c@[10.20.30.158]>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
acceptlanguage: en-US
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Subject: Re: [IPsec] #123: Proposal to remove the IANA tables from IKEv2bis
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipsec>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 24 Nov 2009 21:30:01 -0000

Hi Paul,

I have marked below with an asterisk those that I think should stay in the document, because they are important to understanding/implementing the protocol.

Overall, I'm not sure this exercise is worth our time. In particular if we strip tables of their values, there's a high risk of introducing inconsistencies between the document and the IANA registry.

Thanks,
	Yaron

> -----Original Message-----
> From: ipsec-bounces@ietf.org [mailto:ipsec-bounces@ietf.org] On Behalf Of
> Paul Hoffman
> Sent: Tuesday, November 24, 2009 19:31
> To: IPsecme WG
> Subject: Re: [IPsec] #123: Proposal to remove the IANA tables from
> IKEv2bis
> 
> Yes, I should have worked this out more fully before posting.
> 
> In all cases, I would add a reference to the IANA registry.
> 
> Only lists code points: remove the whole table
>   2.22: IPComp Tranform IDs
>   3.1: Exchange types [*]
>   3.3.1: Protocol ID [*]
>   3.3.2: Encryption, PRF, integrity, DH group, ESN
>   3.3.5: Transform attributes [* ??]
>   3.15: CFG type [*]
> 
> Lists semantics, remove the code points but leave the semantics:
>   3.5: Identification types 
>   3.10.1: Notify messages
>   3.13.1: Traffic selectors
> 
> Other:
>  3.2: Next payload type -- remove value
>  3.3.2: Transform type -- remove type number
>  3.3.3: Transform types by protocol -- leave in whole table
>  3.6: Certificate encoding -- remove type number, leave in UNSPECIFIED
>  3.15.1: Attribute types -- remove type number
> 
> 
> --Paul Hoffman, Director
> --VPN Consortium
> _______________________________________________
> IPsec mailing list
> IPsec@ietf.org
> https://www.ietf.org/mailman/listinfo/ipsec
> 
> Scanned by Check Point Total Security Gateway.