Re: [mif] declaring interface 'up', with WiFi DNS/HTTP interception (login) proxies [was RE: DNS selection with HE-MIF]

Marc Blanchet <marc.blanchet@viagenie.ca> Fri, 08 February 2013 17:14 UTC

Return-Path: <marc.blanchet@viagenie.ca>
X-Original-To: mif@ietfa.amsl.com
Delivered-To: mif@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B404921F8B47 for <mif@ietfa.amsl.com>; Fri, 8 Feb 2013 09:14:17 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.563
X-Spam-Level:
X-Spam-Status: No, score=-102.563 tagged_above=-999 required=5 tests=[AWL=0.036, BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9Jme3jvs3f25 for <mif@ietfa.amsl.com>; Fri, 8 Feb 2013 09:14:17 -0800 (PST)
Received: from jazz.viagenie.ca (jazz.viagenie.ca [IPv6:2620:0:230:8000::2]) by ietfa.amsl.com (Postfix) with ESMTP id 18F9B21F8B46 for <mif@ietf.org>; Fri, 8 Feb 2013 09:14:17 -0800 (PST)
Received: from mb.lan (modemcable180.211-203-24.mc.videotron.ca [24.203.211.180]) by jazz.viagenie.ca (Postfix) with ESMTPSA id 74B1D40109; Fri, 8 Feb 2013 12:14:16 -0500 (EST)
Mime-Version: 1.0 (Apple Message framework v1283)
Content-Type: text/plain; charset="iso-8859-1"
From: Marc Blanchet <marc.blanchet@viagenie.ca>
In-Reply-To: <20067.1360331334@sandelman.ca>
Date: Fri, 08 Feb 2013 12:14:15 -0500
Content-Transfer-Encoding: quoted-printable
Message-Id: <314C70F4-1E2F-47C8-822E-319DBF38358E@viagenie.ca>
References: <0f2e01ce0556$6698cf60$33ca6e20$@cisco.com> <5113E9EF.5090400@network-heretics.com> <20067.1360331334@sandelman.ca>
To: Michael Richardson <mcr+ietf@sandelman.ca>
X-Mailer: Apple Mail (2.1283)
Cc: mif@ietf.org, Keith Moore <moore@network-heretics.com>
Subject: Re: [mif] declaring interface 'up', with WiFi DNS/HTTP interception (login) proxies [was RE: DNS selection with HE-MIF]
X-BeenThere: mif@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Multiple Interface Discussion List <mif.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mif>, <mailto:mif-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/mif>
List-Post: <mailto:mif@ietf.org>
List-Help: <mailto:mif-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mif>, <mailto:mif-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Feb 2013 17:14:18 -0000

Le 2013-02-08 à 08:48, Michael Richardson a écrit :

> 
>>>>>> "Keith" == Keith Moore <moore@network-heretics.com> writes:
>>> For MIF -- not just HE-MIF, but all of MIF -- we should not
>>> declare an interface "up" until such a validation succeeds.  It
>>> is unfortunate this is not solved at layer 2, where it arguably
>>> belongs.
> 
>    Keith> Would it be worthwhile for MIF to start making a list of
>    Keith> things that really need solutions elsewhere?  Even if there
>    Keith> are hacks or heuristics that are used in the absence of such
>    Keith> solutions?
> 
> Yes.
> 
> In the portal case, we need a DHCP "login required" message.

specially in more open portals, IPv6 deployments may use RA, so it has to also involve RA.

Marc.

> It would be nice if we also had a BCP on how to signal and upgrade
> From HTTP login to some DHCP EAP, perhaps using a EAP-TLS resume 
> From the HTTP session state.  This would permit captive portals to 
> recognize re-logins.
> 
> -- 
> Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works 
> 
> 
> _______________________________________________
> mif mailing list
> mif@ietf.org
> https://www.ietf.org/mailman/listinfo/mif