Re: [v6ops] draft-ietf-v6ops-balanced-ipv6-security WGLC

"Fred Baker (fred)" <fred@cisco.com> Thu, 14 November 2013 19:39 UTC

Return-Path: <fred@cisco.com>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 20A2C11E8163 for <v6ops@ietfa.amsl.com>; Thu, 14 Nov 2013 11:39:57 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -110.446
X-Spam-Level:
X-Spam-Status: No, score=-110.446 tagged_above=-999 required=5 tests=[AWL=0.153, BAYES_00=-2.599, RCVD_IN_DNSWL_HI=-8, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wbylVqxibqcL for <v6ops@ietfa.amsl.com>; Thu, 14 Nov 2013 11:39:45 -0800 (PST)
Received: from rcdn-iport-5.cisco.com (rcdn-iport-5.cisco.com [173.37.86.76]) by ietfa.amsl.com (Postfix) with ESMTP id D643921F9A5F for <v6ops@ietf.org>; Thu, 14 Nov 2013 11:39:18 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=967; q=dns/txt; s=iport; t=1384457958; x=1385667558; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=D3iFgM4/5Qe1gu+Tyg5wVsjlnSksH4miUIiFh0Bm50Q=; b=Ym9A/qV0K81QEOSRj2Ao9oyYs9KLEjOu5FyiejFRVQqj2Ysmpucly0j0 QHLgfbMb9OXV8mlDFo/3/l2rMk8ZFBPXXMbcxhwI+LLlaS0MWfeRPmjR7 E01Gyba0sqZXPRhVKKxl1J6bUkxSx2KjghKmefbyZrMyIeEWq6a8MvqsV c=;
X-Files: signature.asc : 195
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AggFAIElhVKtJXG8/2dsb2JhbABbgweBC78ZgSEWdIIlAQEBAwFlFAULAgEIDjgyJQIEDgUOh20GwGKPXweDIIERA5AwgTCGMJIMgyiCKg
X-IronPort-AV: E=Sophos; i="4.93,701,1378857600"; d="asc'?scan'208"; a="284927345"
Received: from rcdn-core2-1.cisco.com ([173.37.113.188]) by rcdn-iport-5.cisco.com with ESMTP; 14 Nov 2013 19:39:18 +0000
Received: from xhc-aln-x15.cisco.com (xhc-aln-x15.cisco.com [173.36.12.89]) by rcdn-core2-1.cisco.com (8.14.5/8.14.5) with ESMTP id rAEJdIh0007547 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=FAIL); Thu, 14 Nov 2013 19:39:18 GMT
Received: from xmb-rcd-x09.cisco.com ([169.254.9.122]) by xhc-aln-x15.cisco.com ([173.36.12.89]) with mapi id 14.03.0123.003; Thu, 14 Nov 2013 13:39:17 -0600
From: "Fred Baker (fred)" <fred@cisco.com>
To: Mikael Abrahamsson <swmike@swm.pp.se>
Thread-Topic: [v6ops] draft-ietf-v6ops-balanced-ipv6-security WGLC
Thread-Index: AQHO4XE0jhYl6Coh40iOo9fsCqroFw==
Date: Thu, 14 Nov 2013 19:39:17 +0000
Message-ID: <00D470BB-E92E-4E1E-A293-B715A4C22818@cisco.com>
References: <201311101900.rAAJ0AR6025350@irp-view13.cisco.com> <CAB0C4xOfz_JAjEEJZ-Zz7MBEyZhVzrAE+8Ghf1ggC3+9pyHmNg@mail.gmail.com> <989B8ED6-273E-45D4-BFD8-66A1793A1C9F@cisco.com> <alpine.DEB.2.02.1311130329180.26054@uplift.swm.pp.se> <CAB0C4xOd-ryBXe4O3XoLTLDw-XuOV==X0nkRg5y3aPXCtf+Gow@mail.gmail.com> <alpine.DEB.2.02.1311140639140.5805@uplift.swm.pp.se> <5FC5FC3F-B933-4ACE-A7A9-00A1E275B4EF@cisco.com> <CAB0C4xMhxnev+NHx_Vzdjvrp9zE0jj7avsb9zUFGRKhQFne14A@mail.gmail.com> <alpine.DEB.2.02.1311140935510.5805@uplift.swm.pp.se>
In-Reply-To: <alpine.DEB.2.02.1311140935510.5805@uplift.swm.pp.se>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
x-originating-ip: [10.19.64.121]
Content-Type: multipart/signed; boundary="Apple-Mail=_E2F91391-545E-4B06-A9B7-801CB697D0C9"; protocol="application/pgp-signature"; micalg="pgp-sha1"
MIME-Version: 1.0
Cc: "v6ops@ietf.org WG" <v6ops@ietf.org>
Subject: Re: [v6ops] draft-ietf-v6ops-balanced-ipv6-security WGLC
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/v6ops>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 14 Nov 2013 19:39:57 -0000

On Nov 14, 2013, at 12:56 AM, Mikael Abrahamsson <swmike@swm.pp.se>
 wrote:

> By accepting SYN packets on port 80, you're soliciting connections. 

No. You are allowing someone else to successfully solicit (SYN) a connection to you. Sending a SYN is soliciting a connection.