Re: [radext] Fwd: New Version Notification for draft-ietf-radext-radius-fragmentation-05.txt

Benoit Claise <bclaise@cisco.com> Tue, 18 March 2014 10:21 UTC

Return-Path: <bclaise@cisco.com>
X-Original-To: radext@ietfa.amsl.com
Delivered-To: radext@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4C66F1A06D5 for <radext@ietfa.amsl.com>; Tue, 18 Mar 2014 03:21:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.047
X-Spam-Level:
X-Spam-Status: No, score=-10.047 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RP_MATCHES_RCVD=-0.547, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4T7hjEM5ChMy for <radext@ietfa.amsl.com>; Tue, 18 Mar 2014 03:21:53 -0700 (PDT)
Received: from aer-iport-4.cisco.com (aer-iport-4.cisco.com [173.38.203.54]) by ietfa.amsl.com (Postfix) with ESMTP id 75BA91A02D6 for <radext@ietf.org>; Tue, 18 Mar 2014 03:21:52 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=32151; q=dns/txt; s=iport; t=1395138104; x=1396347704; h=message-id:date:from:mime-version:to:subject:references: in-reply-to; bh=HQmrfvaiZgMhy6xGlmWl891TNNI5kJp0a6l0QA/eCnc=; b=C6R5SXT4r0obZiF2F0f4q27/JZCbeEc0/lsAzNH0mBDWMuUPBL9WFSMJ OAJjI7j5WWaLjfnLSJw2lVpdJr330DMwtSUKoL8H07lo8mYymTObVApnE /4SpKQvyx1R1mb5hxt8VX123yq5SURHJ8MAo8BodsgzKmmlKxxUffFYNr k=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AsYHACQdKFOQ/khM/2dsb2JhbABagkJEO1GIabIChm5PgSMWdIImAQEEAQEBKkEJARELIQ8HAQENCQMCAQIBFTAGAQwGAgEBBYdwCAXRSBeOCl8YhCAEmEaBMoUai2SBb4E/PIEs
X-IronPort-AV: E=Sophos;i="4.97,677,1389744000"; d="scan'208,217";a="4928565"
Received: from ams-core-3.cisco.com ([144.254.72.76]) by aer-iport-4.cisco.com with ESMTP; 18 Mar 2014 10:21:43 +0000
Received: from [10.60.67.89] (ams-bclaise-8918.cisco.com [10.60.67.89]) by ams-core-3.cisco.com (8.14.5/8.14.5) with ESMTP id s2IALg2a026564; Tue, 18 Mar 2014 10:21:42 GMT
Message-ID: <53281E36.2020708@cisco.com>
Date: Tue, 18 Mar 2014 11:21:42 +0100
From: Benoit Claise <bclaise@cisco.com>
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:24.0) Gecko/20100101 Thunderbird/24.3.0
MIME-Version: 1.0
To: Alejandro Perez Mendez <alex@um.es>, "radext@ietf.org" <radext@ietf.org>
References: <20140307075126.8756.14600.idtracker@ietfa.amsl.com> <53197B56.10303@um.es>
In-Reply-To: <53197B56.10303@um.es>
Content-Type: multipart/alternative; boundary="------------070007020404000804020705"
Archived-At: http://mailarchive.ietf.org/arch/msg/radext/PLCmQuhzuyLp2kaRabnZLHPrPdI
Subject: Re: [radext] Fwd: New Version Notification for draft-ietf-radext-radius-fragmentation-05.txt
X-BeenThere: radext@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: RADIUS EXTensions working group discussion list <radext.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/radext>, <mailto:radext-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/radext/>
List-Post: <mailto:radext@ietf.org>
List-Help: <mailto:radext-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/radext>, <mailto:radext-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 18 Mar 2014 10:21:57 -0000

Hi,
> As agreed during last RADEXT meeting on Tuesday, we've submitted a new 
> version (05) of the draft, where we have added the following text, 
> related to the no-inclusion of authentication attributes in the first 
> fragment of the pre-authentication phase:
>
> The
>     authors acknowledge this is formally violating [RFC2865], but there
>     are no known operational issues with it.
because ... ? I believe it deserves a little bit more information.

My meeting minutes tells me: because all implementations don't do this 
"An Access-request MUST contain either a User-Password or a 
CHAP-passwork or a State"

Regards, Benoit
> Once this document goes
>     beyond being considered as experimental, it will state it updates
>     [RFC2865].
> Regards,
> Alejandro
>
>
>
> -------- Mensaje original --------
> Asunto: 	New Version Notification for 
> draft-ietf-radext-radius-fragmentation-05.txt
> Fecha: 	Thu, 06 Mar 2014 23:51:26 -0800
> De: 	internet-drafts@ietf.org
> Para: 	Alejandro Perez-Mendez <alex@um.es>, "Alejandro Perez-Mendez" 
> <alex@um.es>, Diego R. Lopez <diego@tid.es>, "Alan DeKok" 
> <aland@networkradius.com>, Alan DeKok <aland@networkradius.com>, 
> "Rafael Lopez" <rafa@um.es>, "Gabriel Lopez-Millan" <gabilm@um.es>, 
> Gabriel Lopez-Millan <gabilm@um.es>, Fernando Pereniguez-Garcia 
> <pereniguez@um.es>, Rafa Marin-Lopez <rafa@um.es>, "Diego R. Lopez" 
> <diego@tid.es>, "Fernando Pereniguez-Garcia" <pereniguez@um.es>
>
>
>
> A new version of I-D, draft-ietf-radext-radius-fragmentation-05.txt
> has been successfully submitted by Alejandro Perez-Mendez and posted to the
> IETF repository.
>
> Name:		draft-ietf-radext-radius-fragmentation
> Revision:	05
> Title:		Support of fragmentation of RADIUS packets
> Document date:	2014-03-07
> Group:		radext
> Pages:		28
> URL:http://www.ietf.org/internet-drafts/draft-ietf-radext-radius-fragmentation-05.txt
> Status:https://datatracker.ietf.org/doc/draft-ietf-radext-radius-fragmentation/
> Htmlized:http://tools.ietf.org/html/draft-ietf-radext-radius-fragmentation-05
> Diff:http://www.ietf.org/rfcdiff?url2=draft-ietf-radext-radius-fragmentation-05
>
> Abstract:
>     The Remote Authentication Dial-In User Service (RADIUS) protocol is
>     limited to a total packet size of 4096 octets.  Provisions exist for
>     fragmenting large amounts of authentication data across multiple
>     packets, via Access-Challenge.  No similar provisions exist for
>     fragmenting large amounts of authorization data.  This document
>     specifies how existing RADIUS mechanisms can be leveraged to provide
>     that functionality.  These mechanisms are largely compatible with
>     existing implementations, and are designed to be invisible to
>     proxies, and "fail-safe" to legacy clients and servers.
>
>                                                                                    
>
>
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org.
>
> The IETF Secretariat
>
>
>
>
>
> _______________________________________________
> radext mailing list
> radext@ietf.org
> https://www.ietf.org/mailman/listinfo/radext