Re: draft-ietf-v6ops-cpe-simple-security-04 WGLC

james woodyatt <jhw@apple.com> Fri, 24 April 2009 18:52 UTC

Return-Path: <owner-v6ops@ops.ietf.org>
X-Original-To: ietfarch-v6ops-archive@core3.amsl.com
Delivered-To: ietfarch-v6ops-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 722873A6999 for <ietfarch-v6ops-archive@core3.amsl.com>; Fri, 24 Apr 2009 11:52:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -105.265
X-Spam-Level:
X-Spam-Status: No, score=-105.265 tagged_above=-999 required=5 tests=[AWL=-0.770, BAYES_00=-2.599, FH_RELAY_NODNS=1.451, HELO_MISMATCH_COM=0.553, RCVD_IN_DNSWL_MED=-4, RDNS_NONE=0.1, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id WARQ5WBYjbrW for <ietfarch-v6ops-archive@core3.amsl.com>; Fri, 24 Apr 2009 11:52:45 -0700 (PDT)
Received: from psg.com (psg.com [IPv6:2001:418:1::62]) by core3.amsl.com (Postfix) with ESMTP id 94D243A6E0E for <v6ops-archive@lists.ietf.org>; Fri, 24 Apr 2009 11:52:45 -0700 (PDT)
Received: from majordom by psg.com with local (Exim 4.69 (FreeBSD)) (envelope-from <owner-v6ops@ops.ietf.org>) id 1LxQVP-000EDY-Pc for v6ops-data0@psg.com; Fri, 24 Apr 2009 18:52:11 +0000
Received: from [17.254.13.22] (helo=mail-out3.apple.com) by psg.com with esmtps (TLSv1:AES256-SHA:256) (Exim 4.69 (FreeBSD)) (envelope-from <jhw@apple.com>) id 1LxQVD-000EBz-UE for v6ops@ops.ietf.org; Fri, 24 Apr 2009 18:52:05 +0000
Received: from relay13.apple.com (relay13.apple.com [17.128.113.29]) by mail-out3.apple.com (Postfix) with ESMTP id 621AA5E69E6B; Fri, 24 Apr 2009 11:51:59 -0700 (PDT)
Received: from relay13.apple.com (unknown [127.0.0.1]) by relay13.apple.com (Symantec Brightmail Gateway) with ESMTP id 3933C2809D; Fri, 24 Apr 2009 11:51:59 -0700 (PDT)
X-AuditID: 1180711d-a66f0bb000000259-12-49f20a4f29c2
Received: from il0602f-dhcp171.apple.com (il0602f-dhcp171.apple.com [17.206.50.171]) (using TLSv1 with cipher AES128-SHA (128/128 bits)) (No client certificate requested) by relay13.apple.com (Apple SCV relay) with ESMTP id 1C7E12809F; Fri, 24 Apr 2009 11:51:59 -0700 (PDT)
Cc: Dan Wing <dwing@cisco.com>
Message-Id: <159D69A1-72DD-43CC-8168-9149EE81AB6A@apple.com>
From: james woodyatt <jhw@apple.com>
To: IPv6 Operations <v6ops@ops.ietf.org>
In-Reply-To: <016701c9c506$97ff5ae0$c5f0200a@cisco.com>
Content-Type: text/plain; charset="US-ASCII"; format="flowed"; delsp="yes"
Content-Transfer-Encoding: 7bit
Mime-Version: 1.0 (Apple Message framework v930.3)
Subject: Re: draft-ietf-v6ops-cpe-simple-security-04 WGLC
Date: Fri, 24 Apr 2009 11:51:58 -0700
References: <32129337-7BED-4D7A-AF06-BC5ABB37D994@cisco.com> <18034D4D7FE9AE48BF19AB1B0EF2729F27F2C05DC3@NOK-EUMSG-01.mgdnok.nokia.com> <016701c9c506$97ff5ae0$c5f0200a@cisco.com>
X-Mailer: Apple Mail (2.930.3)
X-Brightmail-Tracker: AAAAAA==
Sender: owner-v6ops@ops.ietf.org
Precedence: bulk
List-ID: <v6ops.ops.ietf.org>

On Apr 24, 2009, at 11:00, Dan Wing wrote:
>
> Two hours seems a long time to leave your door open.
>
> A longer timeout could be negotiated between the the host and its  
> CPE router
> using whatever protocol exists and becomes a defacto standard on  
> IPv6 networks
> (e.g., draft-woodyatt-ald, UPnP IGD version 2).


Alternatively, the "simple" security functions could be disabled to  
facilitate applications that can't afford to send keep-alive packets.


--
james woodyatt <jhw@apple.com>
member of technical staff, communications engineering