[netmod] NBC changes and warnings

Andy Bierman <andy@yumaworks.com> Wed, 20 April 2022 16:29 UTC

Return-Path: <andy@yumaworks.com>
X-Original-To: netmod@ietfa.amsl.com
Delivered-To: netmod@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0E70F3A088D for <netmod@ietfa.amsl.com>; Wed, 20 Apr 2022 09:29:50 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.107
X-Spam-Level:
X-Spam-Status: No, score=-2.107 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=yumaworks.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 49kH8NHnxMNj for <netmod@ietfa.amsl.com>; Wed, 20 Apr 2022 09:29:45 -0700 (PDT)
Received: from mail-yw1-x1130.google.com (mail-yw1-x1130.google.com [IPv6:2607:f8b0:4864:20::1130]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 51AE33A0864 for <netmod@ietf.org>; Wed, 20 Apr 2022 09:29:45 -0700 (PDT)
Received: by mail-yw1-x1130.google.com with SMTP id 00721157ae682-2f18982c255so24223547b3.1 for <netmod@ietf.org>; Wed, 20 Apr 2022 09:29:45 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=yumaworks.com; s=google; h=mime-version:from:date:message-id:subject:to; bh=dnC/mR1O7JMLlqHEjswrBqxdcBpV7ZEGIXG5TrIeiC0=; b=RBnKYJugpFyB+oVNIH8iosnDoWKVgrv5MiiJnm3ewioHSug8Ctb+E7R6qCLlCfgEuc m0jLxsPh4bUO8oxQWHfUzctxRTbAfyMxrKLAzLqsOi/UcbHehyKogVQw7Q8rhAzXhsCf TyoYK/uA7zpFgpFLYbM23544k+acaTqMlR+zoSqaRDMQFdrLSv//5Bls5wC2ej6RjU3c lzqcjxQvD5JRsQCUCw6jqqi9fohiHkkeIhLiYdlo4c5q4VR9VF9ClTrhItAsg91XI0PL HbKG8N0upfUzzCuN3azJq1yQ8h28yBLA8eLKH9Fkupg+WRciMQ1RAfCt5Zfjm63cdnnw tDNw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:from:date:message-id:subject:to; bh=dnC/mR1O7JMLlqHEjswrBqxdcBpV7ZEGIXG5TrIeiC0=; b=bCwAKcE98+XIUdJOjPj6vHD7T8WaJZH5I7/5piSQg/OxstK2PvlwR+NDbtO12o8Lwe NoWNysqWPdrz+3M9cwUnnXHjtiY62G3e5kiSTf1WhD9GiNfF6ZBiMLF7rKQQLWuzwncF eAy93sLMWAfr2MEulQsvdiVpKBER3klrBkggYBS0E/1cAAP4GHJ2Et9KLD56R3qzxpem A/TPlJH98JxG/GeVePO2l+6EDSYp1duI3A6M+4DkEzTu7M3SaGSjFzpBOhV9lc/1Rq9Q j9cBqH8X05QnFquNZNF1SlTsICskFyE9+o0LiI7/TbWVyeqLxyERulYv+ZyQ2ASjAeDX O/mQ==
X-Gm-Message-State: AOAM533GmwhW65tiPcguCfNOJyafubN1XhnGzptn2WQiZ1G6r4XfmxWO V1LF52pXeyJq4yH75o0njadUFgTfum4svwHx1+X6/O8QISU=
X-Google-Smtp-Source: ABdhPJyHVwzxobU34G61eyqLdGCteJbVaA7X4j01ATkHWEcnoCna8xdvGCoQ93AZt3FMB1lGWPkkg9CA9RiZaGEtN9E=
X-Received: by 2002:a81:5dd6:0:b0:2d6:3041:12e0 with SMTP id r205-20020a815dd6000000b002d6304112e0mr21243974ywb.331.1650472183966; Wed, 20 Apr 2022 09:29:43 -0700 (PDT)
MIME-Version: 1.0
From: Andy Bierman <andy@yumaworks.com>
Date: Wed, 20 Apr 2022 09:29:33 -0700
Message-ID: <CABCOCHT=9VYrCRuOcTnX+EbVG-LCWuMUGoHimPQm8NpWYLR=7Q@mail.gmail.com>
To: NetMod WG <netmod@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000003cbeee05dd18800e"
Archived-At: <https://mailarchive.ietf.org/arch/msg/netmod/Jd3GAwGGUJiuTVMAFMg54nL_G3I>
Subject: [netmod] NBC changes and warnings
X-BeenThere: netmod@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: NETMOD WG list <netmod.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netmod>, <mailto:netmod-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/netmod/>
List-Post: <mailto:netmod@ietf.org>
List-Help: <mailto:netmod-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netmod>, <mailto:netmod-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 20 Apr 2022 16:29:50 -0000

Hi,

Before any significant NBC change can be introduced, a process needs
to be in place to minimize the disruption that the NBC change will cause.

Consider the recent change by GitHub to remove support for SSH passwords
and require keys instead.  They warned people for about 2 years this change
was coming.  Not just on the WEB site, but in the tools. Every time
a user logged in over SSH with a password, a warning was printed.

For those willing to read the warning and act upon it, there was no
service disruption at all when SSH passwords were finally turned off.

When NETCONF was introduced in 2006, everything was new.
The NETCONF error-severity=warning did not even work, and nobody cared.
It still doesn't work.

There are other possibilities besides
"We can never make an NBC change because nobody will read the warning
in the description-stmt anyway."  That's true. So let's fix it in the
protocols
and in the YANG language, so they do get the warning.


Andy