Re: [Fwd: [Saad] Some initiating thoughts...]

Pekka Savola <pekkas@netcore.fi> Mon, 27 October 2003 16:57 UTC

Received: from optimus.ietf.org (ietf.org [132.151.1.19] (may be forged)) by ietf.org (8.9.1a/8.9.1a) with ESMTP id LAA24870 for <saad-archive@odin.ietf.org>; Mon, 27 Oct 2003 11:57:28 -0500 (EST)
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1AEAg0-0006yM-H7 for saad-archive@odin.ietf.org; Mon, 27 Oct 2003 11:57:09 -0500
Received: (from exim@localhost) by www1.ietf.org (8.12.8/8.12.8/Submit) id h9RGv83X026796 for saad-archive@odin.ietf.org; Mon, 27 Oct 2003 11:57:08 -0500
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1AEAg0-0006y7-At for saad-web-archive@optimus.ietf.org; Mon, 27 Oct 2003 11:57:08 -0500
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id LAA24850 for <saad-web-archive@ietf.org>; Mon, 27 Oct 2003 11:56:56 -0500 (EST)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 1AEAfz-0000M5-00 for saad-web-archive@ietf.org; Mon, 27 Oct 2003 11:57:07 -0500
Received: from ietf.org ([132.151.1.19] helo=optimus.ietf.org) by ietf-mx with esmtp (Exim 4.12) id 1AEAfy-0000M1-00 for saad-web-archive@ietf.org; Mon, 27 Oct 2003 11:57:06 -0500
Received: from localhost.localdomain ([127.0.0.1] helo=www1.ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1AEAft-0006vb-Af; Mon, 27 Oct 2003 11:57:01 -0500
Received: from odin.ietf.org ([132.151.1.176] helo=ietf.org) by optimus.ietf.org with esmtp (Exim 4.20) id 1AEAf1-0006qk-Bo for saad@optimus.ietf.org; Mon, 27 Oct 2003 11:56:07 -0500
Received: from ietf-mx (ietf-mx.ietf.org [132.151.6.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id LAA24794 for <saad@ietf.org>; Mon, 27 Oct 2003 11:55:55 -0500 (EST)
Received: from ietf-mx ([132.151.6.1]) by ietf-mx with esmtp (Exim 4.12) id 1AEAf0-0000Kp-00 for saad@ietf.org; Mon, 27 Oct 2003 11:56:06 -0500
Received: from netcore.fi ([193.94.160.1]) by ietf-mx with esmtp (Exim 4.12) id 1AEAex-0000KB-00 for saad@ietf.org; Mon, 27 Oct 2003 11:56:04 -0500
Received: from localhost (pekkas@localhost) by netcore.fi (8.11.6/8.11.6) with ESMTP id h9RGt8v13093; Mon, 27 Oct 2003 18:55:08 +0200
Date: Mon, 27 Oct 2003 18:55:07 +0200 (EET)
From: Pekka Savola <pekkas@netcore.fi>
To: Erik Nordmark <Erik.Nordmark@sun.com>
cc: James Kempf <kempf@docomolabs-usa.com>, Leslie Daigle <leslie@thinkingcat.com>, <saad@ietf.org>, <M.Handley@cs.ucl.ac.uk>
Subject: Re: [Fwd: [Saad] Some initiating thoughts...]
In-Reply-To: <Roam.SIMC.2.0.6.1066909006.21069.nordmark@bebop.france>
Message-ID: <Pine.LNX.4.44.0310271850230.12346-100000@netcore.fi>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset=US-ASCII
Sender: saad-admin@ietf.org
Errors-To: saad-admin@ietf.org
X-BeenThere: saad@ietf.org
X-Mailman-Version: 2.0.12
Precedence: bulk
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/saad>, <mailto:saad-request@ietf.org?subject=unsubscribe>
List-Id: Scope Addressing Architecture Discussion <saad.ietf.org>
List-Post: <mailto:saad@ietf.org>
List-Help: <mailto:saad-request@ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/saad>, <mailto:saad-request@ietf.org?subject=subscribe>

On Thu, 23 Oct 2003, Erik Nordmark wrote:
> I don't know if anybody is working on host-assisted approaches.
> I can imagine interesting approaches like hosts on slow links sending 
> "priority lists" upstream (to specify the relative priority of packets - 
> based on a class description - that are destined towards the host) as one
> way of being able to cope with DoS flooding attacks.

Sounds a lot like a potential applicability for DiffServ marking, letting
the users configure (with a few rules) how the ISP should prioritize the
packets going towards the customer?  Do this through a web page, install
the rules on a router, and you're done.

From the IETF perspective, the problem may be that there is no IETF
problem (requiring standards action, etc.) as such..

Btw, I, too, would be interested to hear why the end-host/distributed 
firewalling BOF/WG died off..  it had a lot of promise (but a lot of 
difficult problems, as well)..

-- 
Pekka Savola                 "You each name yourselves king, yet the
Netcore Oy                    kingdom bleeds."
Systems. Networks. Security. -- George R.R. Martin: A Clash of Kings



_______________________________________________
Saad mailing list
Saad@ietf.org
https://www1.ietf.org/mailman/listinfo/saad