Re: [mif] New Version Notification for draft-reddy-mif-dhcpv6-precedence-ops-02.txt

"Tirumaleswar Reddy (tireddy)" <tireddy@cisco.com> Sat, 20 October 2012 03:03 UTC

Return-Path: <tireddy@cisco.com>
X-Original-To: mif@ietfa.amsl.com
Delivered-To: mif@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B1BE421F8885 for <mif@ietfa.amsl.com>; Fri, 19 Oct 2012 20:03:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.598
X-Spam-Level:
X-Spam-Status: No, score=-10.598 tagged_above=-999 required=5 tests=[AWL=-0.000, BAYES_00=-2.599, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-8]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id V2PAe98nk9YZ for <mif@ietfa.amsl.com>; Fri, 19 Oct 2012 20:03:32 -0700 (PDT)
Received: from rcdn-iport-3.cisco.com (rcdn-iport-3.cisco.com [173.37.86.74]) by ietfa.amsl.com (Postfix) with ESMTP id C12DF21F8871 for <mif@ietf.org>; Fri, 19 Oct 2012 20:03:32 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=7051; q=dns/txt; s=iport; t=1350702213; x=1351911813; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=cVNRGTdS/tPAfa9d6g1x7z8SBz4gV191QQ8OrMfbnY0=; b=HOOUR3LO4nfeb6/thxtLTGczhf0Jwllyzgsq/podTcftF0dZ+MoErX+B h8tKuunmJVmXrGpDdCsvjhKC54kFQ4dtklbWJ6SdNOhSUnkPvJ3f/hXjb +/Q4Mmj9gkep/AJw0Qf3kcqVnj4eyniY0DyuQy1xeFbWt4YuP3HDNVrKt g=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AgAFAAcUglCtJV2d/2dsb2JhbABFgkq+Q4EIgiABAQEDARIBGkoCBQcEAgEIEQQBAQsdBzIUCQgCBA4FCAEZh1wGC5wRn3uLWhqFdWADpDyBa4JvgVoJFwQa
X-IronPort-AV: E=Sophos; i="4.80,618,1344211200"; d="scan'208,217"; a="133664206"
Received: from rcdn-core-6.cisco.com ([173.37.93.157]) by rcdn-iport-3.cisco.com with ESMTP; 20 Oct 2012 03:03:32 +0000
Received: from xhc-aln-x15.cisco.com (xhc-aln-x15.cisco.com [173.36.12.89]) by rcdn-core-6.cisco.com (8.14.5/8.14.5) with ESMTP id q9K33Wnr005534 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL); Sat, 20 Oct 2012 03:03:32 GMT
Received: from xmb-rcd-x10.cisco.com ([169.254.15.91]) by xhc-aln-x15.cisco.com ([173.36.12.89]) with mapi id 14.02.0318.001; Fri, 19 Oct 2012 22:03:31 -0500
From: "Tirumaleswar Reddy (tireddy)" <tireddy@cisco.com>
To: Ted Lemon <Ted.Lemon@nominum.com>
Thread-Topic: [mif] New Version Notification for draft-reddy-mif-dhcpv6-precedence-ops-02.txt
Thread-Index: AQHNqwBu7RP4kWipA0qEvbLMwC6QFpe++/4QgABdlgD//67RUA==
Date: Sat, 20 Oct 2012 03:03:31 +0000
Message-ID: <913383AAA69FF945B8F946018B75898A148124F2@xmb-rcd-x10.cisco.com>
References: <913383AAA69FF945B8F946018B75898A1480EDFA@xmb-rcd-x10.cisco.com> <7E99AA25-66C2-4A4D-B251-0E71F31FBA26@nominum.com>
In-Reply-To: <7E99AA25-66C2-4A4D-B251-0E71F31FBA26@nominum.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.65.82.198]
x-tm-as-product-ver: SMEX-10.2.0.1135-7.000.1014-19284.002
x-tm-as-result: No--44.302900-8.000000-31
x-tm-as-user-approved-sender: No
x-tm-as-user-blocked-sender: No
Content-Type: multipart/alternative; boundary="_000_913383AAA69FF945B8F946018B75898A148124F2xmbrcdx10ciscoc_"
MIME-Version: 1.0
Cc: "mif@ietf.org" <mif@ietf.org>
Subject: Re: [mif] New Version Notification for draft-reddy-mif-dhcpv6-precedence-ops-02.txt
X-BeenThere: mif@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Multiple Interface Discussion List <mif.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mif>, <mailto:mif-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/mif>
List-Post: <mailto:mif@ietf.org>
List-Help: <mailto:mif-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mif>, <mailto:mif-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 20 Oct 2012 03:03:33 -0000

> -----Original Message-----

> From: Ted Lemon [mailto:Ted.Lemon@nominum.com]

> Sent: Thursday, October 18, 2012 6:11 PM

> To: Tirumaleswar Reddy (tireddy)

> Cc: mif@ietf.org

> Subject: Re: [mif] New Version Notification for draft-reddy-mif-dhcpv6-

> precedence-ops-02.txt

>

> On Oct 18, 2012, at 8:32 AM, Tirumaleswar Reddy (tireddy) <tireddy@cisco.com<mailto:tireddy@cisco.com>>

> wrote:

> > These options can also be used to conditionally disable IPv6 temporary

> addresses in a managed network for selective hosts without authentication

> supplicant.

>

> How would that work?



Hi Ted,



For e.g. In Enterprise premises hosts with EAP kind of supplicants can be tracked even when the IP address changes but for guests, BYOD (Bring your Own Device) without such supplicants IP address based authentication is still required for such users. When Address-based authentication is used, re-

authentication occurs for each new address obtained by the host, which can create a lot of authentication transactions. Switches acting as DHCP relay agent can influence the DHCP server not to assign temporary addresses. It's explained in detail in section 3.2.1 "Avoiding Excessive IP-Based Authentication" of this draft.



> Have you raised this in 6man ?



The above point was discussed in 6man specific to privacy addresses http://www.ietf.org/mail-archive/web/ipv6/current/msg15710.html



--Tiru.