Re: [netmod] Last Call: draft-ietf-netmod-snmp-cfg-03 (20131220)

"Randy Presuhn" <randy_presuhn@mindspring.com> Fri, 17 January 2014 07:17 UTC

Return-Path: <randy_presuhn@mindspring.com>
X-Original-To: netmod@ietfa.amsl.com
Delivered-To: netmod@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id CBCED1ADF9C for <netmod@ietfa.amsl.com>; Thu, 16 Jan 2014 23:17:34 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dGZebz6-ZfX7 for <netmod@ietfa.amsl.com>; Thu, 16 Jan 2014 23:17:33 -0800 (PST)
Received: from elasmtp-mealy.atl.sa.earthlink.net (elasmtp-mealy.atl.sa.earthlink.net [209.86.89.69]) by ietfa.amsl.com (Postfix) with ESMTP id EC8BC1ADF9B for <netmod@ietf.org>; Thu, 16 Jan 2014 23:17:32 -0800 (PST)
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=dk20050327; d=mindspring.com; b=NR0J6Yu5jkRkF+mX6P4JUXJQcMoq6pptQrp6GU6J7QZjtJK8OAY36KSY5X11m0JN; h=Received:Message-ID:From:To:References:Subject:Date:MIME-Version:Content-Type:Content-Transfer-Encoding:X-Priority:X-MSMail-Priority:X-Mailer:X-MimeOLE:X-ELNK-Trace:X-Originating-IP;
Received: from [99.101.142.209] (helo=oemcomputer) by elasmtp-mealy.atl.sa.earthlink.net with esmtpa (Exim 4.67) (envelope-from <randy_presuhn@mindspring.com>) id 1W43g7-0000Kx-Ca for netmod@ietf.org; Fri, 17 Jan 2014 02:17:19 -0500
Message-ID: <001a01cf1354$9befd340$6b01a8c0@oemcomputer>
From: Randy Presuhn <randy_presuhn@mindspring.com>
To: netmod@ietf.org
References: <11032708.1389917066287.JavaMail.root@elwamui-rustique.atl.sa.earthlink.net> <20140117070119.GA4945@elstar.local>
Date: Thu, 16 Jan 2014 23:20:31 -0800
MIME-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
X-Priority: 3
X-MSMail-Priority: Normal
X-Mailer: Microsoft Outlook Express 6.00.2800.1478
X-MimeOLE: Produced By Microsoft MimeOLE V6.00.2800.1478
X-ELNK-Trace: 4488c18417c9426da92b9037bc8bcf44d4c20f6b8d69d8889e105617274a0edba9e240394ad0fea99a98140eac01aa08350badd9bab72f9c350badd9bab72f9c
X-Originating-IP: 99.101.142.209
Subject: Re: [netmod] Last Call: draft-ietf-netmod-snmp-cfg-03 (20131220)
X-BeenThere: netmod@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: NETMOD WG list <netmod.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/netmod>, <mailto:netmod-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/netmod/>
List-Post: <mailto:netmod@ietf.org>
List-Help: <mailto:netmod-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/netmod>, <mailto:netmod-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 17 Jan 2014 07:17:35 -0000

Hi -

> From: "Juergen Schoenwaelder" <j.schoenwaelder@jacobs-university.de>
> To: "Randy Presuhn" <randy_presuhn@mindspring.com>
> Cc: <netmod@ietf.org>
> Sent: Thursday, January 16, 2014 11:01 PM
> Subject: Re: [netmod] Last Call: draft-ietf-netmod-snmp-cfg-03 (20131220)
>

> On Thu, Jan 16, 2014 at 04:04:26PM -0800, Randy Presuhn wrote:
> > Hi -
> > 
> > >From: Juergen Schoenwaelder <j.schoenwaelder@jacobs-university.de>
> > >Sent: Jan 16, 2014 3:21 AM
> > >To: Randy Presuhn <randy_presuhn@mindspring.com>
> > >Cc: netmod@ietf.org
> > >Subject: Re: [netmod] Last Call: draft-ietf-netmod-snmp-cfg-03 (20131220)
> > >
> > >On Thu, Jan 09, 2014 at 04:45:30PM -0800, Randy Presuhn wrote:
> > >> Hi -
> > >> >
> > >> >But you can't delete vacmGroupName.3.3.b.o.b with SNMP either.
> > >> 
> > >> Yes you can, but that's irrelevant. 
> > >
> > >I do wonder how though (even though it might be irrelevant).
> > 
> > Setting vacmSecurityToGroupStatus.3.3.b.o.b to 'destroy'
> > will get rid of the reference,
> > setting vacmAccessStatus.3.bob.* will get rid of the group.
> 
> In other words, you have to delete and re-create the user in order to
> set him to no group (or you have to set the group to a magic value
> that does not match anything to mean no group).

No "magic value" required.  If there are no corresponding entries in
vacmAccessTable, then there's a reference but no group, from a
data model perspective if not from the quirkily-defined ASI.  Likewise,
setting vacmAccessStatus.3.bob.* to 'destroy' will get rid of the group

Randy