Re: Some suggestions for draft-ietf-v6ops-cpe-simple-security-03

Rémi Després <remi.despres@free.fr> Wed, 27 August 2008 08:13 UTC

Return-Path: <owner-v6ops@ops.ietf.org>
X-Original-To: ietfarch-v6ops-archive@core3.amsl.com
Delivered-To: ietfarch-v6ops-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 9703D3A6BEB for <ietfarch-v6ops-archive@core3.amsl.com>; Wed, 27 Aug 2008 01:13:21 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.398
X-Spam-Level:
X-Spam-Status: No, score=-0.398 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, FH_RELAY_NODNS=1.451, HELO_EQ_FR=0.35, MIME_8BIT_HEADER=0.3, RDNS_NONE=0.1]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id lWSyfCeNiPel for <ietfarch-v6ops-archive@core3.amsl.com>; Wed, 27 Aug 2008 01:13:19 -0700 (PDT)
Received: from psg.com (psg.com [IPv6:2001:418:1::62]) by core3.amsl.com (Postfix) with ESMTP id 86F143A693D for <v6ops-archive@lists.ietf.org>; Wed, 27 Aug 2008 01:13:19 -0700 (PDT)
Received: from majordom by psg.com with local (Exim 4.69 (FreeBSD)) (envelope-from <owner-v6ops@ops.ietf.org>) id 1KYG4O-000FDA-Mr for v6ops-data@psg.com; Wed, 27 Aug 2008 08:08:00 +0000
Received: from [212.27.42.30] (helo=smtp4-g19.free.fr) by psg.com with esmtp (Exim 4.69 (FreeBSD)) (envelope-from <remi.despres@free.fr>) id 1KYG4B-000FBZ-AE for v6ops@ops.ietf.org; Wed, 27 Aug 2008 08:07:52 +0000
Received: from smtp4-g19.free.fr (localhost.localdomain [127.0.0.1]) by smtp4-g19.free.fr (Postfix) with ESMTP id 4779F3EA0B0; Wed, 27 Aug 2008 10:07:46 +0200 (CEST)
Received: from ordinateur-de-remi-despres.local (per92-10-88-166-221-144.fbx.proxad.net [88.166.221.144]) by smtp4-g19.free.fr (Postfix) with ESMTP id 2EEC83EA0FA; Wed, 27 Aug 2008 10:07:44 +0200 (CEST)
Message-ID: <48B50B10.9090005@free.fr>
Date: Wed, 27 Aug 2008 10:06:40 +0200
From: Rémi Després <remi.despres@free.fr>
User-Agent: Thunderbird 2.0.0.16 (Macintosh/20080707)
MIME-Version: 1.0
To: Brian E Carpenter <brian.e.carpenter@gmail.com>
CC: Dan Wing <dwing@cisco.com>, 'Mark Smith' <ipng@69706e6720323030352d30312d31340a.nosense.org>, jhw@apple.com, 'IPv6 Operations' <v6ops@ops.ietf.org>
Subject: Re: Some suggestions for draft-ietf-v6ops-cpe-simple-security-03
References: <20080824204553.08131c65.ipng@69706e6720323030352d30312d31340a.nosense.org> <48B1CCE8.1070305@gmail.com> <01af01c9065b$b4602440$c2f0200a@cisco.com> <48B23391.1090503@gmail.com> <01cd01c90672$a57c8790$c2f0200a@cisco.com> <48B31DA3.6080001@gmail.com> <07d201c906f7$50a85e30$c2f0200a@cisco.com> <48B32B43.5010103@gmail.com> <084c01c906fe$f9bf1840$c2f0200a@cisco.com> <48B33430.40704@gmail.com> <08b901c90710$4064aa60$c2f0200a@cisco.com> <48B354FA.7040601@gmail.com>
In-Reply-To: <48B354FA.7040601@gmail.com>
Content-Type: text/plain; charset="ISO-8859-1"; format="flowed"
Content-Transfer-Encoding: 7bit
Sender: owner-v6ops@ops.ietf.org
Precedence: bulk
List-ID: <v6ops.ops.ietf.org>

Brian E Carpenter   (m/j/a) 8/26/08 2:57 AM:
> On 2008-08-26 12:11, Dan Wing wrote:
>> Brian E Carpenter wrote:
>>> But blocking tunnels by default, although it's simple, also
>>> blocks innovation. That worries me.
>> Would your worry go away if the IETF initiated a standards effort around
>> something like Apple's ALD (draft-woodyatt-ald-03.txt)?
> 
> I believe that something like that is needed.

I also support that remote control of packet filtering should be 
standardized.

IMO, its scope should cover both:
- CPE control by hosts
- control of ISP provided filtering devices by customer sites.

RD