Re: [v6ops] new draft: draft-ietf-v6ops-6204bis

Jeroen Massar <jeroen@unfix.org> Thu, 20 October 2011 16:57 UTC

Return-Path: <jeroen@unfix.org>
X-Original-To: v6ops@ietfa.amsl.com
Delivered-To: v6ops@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9EC7421F8BA8 for <v6ops@ietfa.amsl.com>; Thu, 20 Oct 2011 09:57:32 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -102.599
X-Spam-Level:
X-Spam-Status: No, score=-102.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id nFEeRyiWVdNk for <v6ops@ietfa.amsl.com>; Thu, 20 Oct 2011 09:57:32 -0700 (PDT)
Received: from icaras.de.unfix.org (icaras.de.unfix.org [IPv6:2a01:4f8:130:74c1:5054:ff:fec4:f7d4]) by ietfa.amsl.com (Postfix) with ESMTP id 1CBD321F8B9F for <v6ops@ietf.org>; Thu, 20 Oct 2011 09:57:32 -0700 (PDT)
Received: from yomi.ch.unfix.org (223-95.60-188.cust.bluewin.ch [188.60.95.223]) (using TLSv1 with cipher ECDHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) (Authenticated sender: jeroen) by icaras.de.unfix.org (Postfix) with ESMTPSA id DED45801C2A2; Thu, 20 Oct 2011 18:57:08 +0200 (CEST)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=unfix.org; s=DKIM2009; t=1319129849; bh=MQdVoY5ZuT4lFe/Zuooh/rqIgdH24wo3a26gXgtD22Y=; h=Message-ID:Date:From:MIME-Version:To:CC:Subject:References: In-Reply-To:Content-Type:Content-Transfer-Encoding; b=jp1PwYwsbBoOMtGLVCh9bUh5T5arLpks0kZaEWyadcpND4V02JtGwunQ9BErTDOWR ALss/23Ts/FsCwZYWz36WrVaoy2m9avYJWpEO9uyeZx3OwwdLdmUB4MS2p6M3gcSp8 wLblLa/qZD4uMmE/H3lIx8xYmysDTLx0zgsRZBGAPMnHIRgxeqx6awKgF/r5M5DFcv Cf1ijs1g9Ts8M80ago29Lw0+8ZnNrIO003hCHj1t/h1wnkW2tYv5G+7Bj4X1dtjk+w sly3lnJncQVd3Etg5fPJW9iDKu08FvVBJzOcR4oRblh4/ay2CLLZkHX9JaXihnLXGL eV37jGNIuW63w==
Message-ID: <4EA052E5.5070605@unfix.org>
Date: Thu, 20 Oct 2011 18:57:09 +0200
From: Jeroen Massar <jeroen@unfix.org>
Organization: Unfix
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.7; rv:7.0.1) Gecko/20110929 Thunderbird/7.0.1
MIME-Version: 1.0
To: Jared Mauch <jared@puck.nether.net>
References: <4E974F1A.2030008@forthnetgroup.gr> <5B6B2B64C9FE2A489045EEEADDAFF2C3030A4156@XMB-RCD-109.cisco.com> <5B6B2B64C9FE2A489045EEEADDAFF2C303130390@XMB-RCD-109.cisco.com> <4E98CCB2.2050100@forthnetgroup.gr> <5B6B2B64C9FE2A489045EEEADDAFF2C3031303D8@XMB-RCD-109.cisco.com> <4E994515.6020204@forthnetgroup.gr> <5B6B2B64C9FE2A489045EEEADDAFF2C303130B54@XMB-RCD-109.cisco.com> <5B6B2B64C9FE2A489045EEEADDAFF2C303130C12@XMB-RCD-109.cisco.com> <4E9E8706.6050006@forthnetgroup.gr> <39D5D616-6E56-46B1-B773-437184567E60@employees.org> <CAKD1Yr3SRRjk4fjg1WkUZSQ6rRT2+dY5p-wjtEiA5SFvx4kqGA@mail.gmail.com> <0F5D8352-7A20-46BF-867B-DBBF36CF0B01@apple.com> <4EA04F5F.1010809@unfix.org> <18D34AC6-ABD2-48CB-8F33-EEBEB9BF8263@puck.nether.net>
In-Reply-To: <18D34AC6-ABD2-48CB-8F33-EEBEB9BF8263@puck.nether.net>
X-Enigmail-Version: 1.3.2
Content-Type: text/plain; charset="windows-1252"
Content-Transfer-Encoding: 7bit
Cc: IPv6 Operations <v6ops@ietf.org>, draft-ietf-v6ops-6204bis@tools.ietf.org
Subject: Re: [v6ops] new draft: draft-ietf-v6ops-6204bis
X-BeenThere: v6ops@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: v6ops discussion list <v6ops.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/v6ops>, <mailto:v6ops-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/v6ops>
List-Post: <mailto:v6ops@ietf.org>
List-Help: <mailto:v6ops-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/v6ops>, <mailto:v6ops-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 20 Oct 2011 16:57:32 -0000

On 2011-10-20 18:50 , Jared Mauch wrote:
> 
> On Oct 20, 2011, at 12:42 PM, Jeroen Massar wrote:
> 
>> Maybe the better comment is to definitely not filter ICMP Packet
>> Too Bigs and friends unless really needed.
> 
> This is a long war against the firewall culture that we are unlikely
> to win.  The less clued out there continue to set local security
> policies in a way that break and inhibit the proper use of
> technology.  While this may seem defeatist, we should certainly
> continue to educate these folks.

I fully agree and there is little one can do against stupidity, but that
is why these and other drafts are coming out, the problem with that
though is getting people to actually read them, and say yourself, are
you really reading everything (well, on this list folks might actually ;).

Maybe it would be a good thing to ask the $endors to include a short but
very red "IPv6 Do's and Don't List" with every sale they make?

Then at least folks can't claim they didn't know about it.

Greets,
 Jeroen