1 Aug 2005 07:15
v6ops agenda
At long last, the proposed agenda for today's meeting. We will bash
this in the course of the meeting as well.
First, current document status:
RFC Editor's queue:
- draft-ietf-v6ops-3gpp-analysis-11.txt
- draft-ietf-v6ops-renumbering-procedure-05.txt
- draft-ietf-v6ops-mech-v2-07.txt
- draft-huitema-v6ops-teredo-05.txt
WG Last Call complete:
- draft-ietf-v6ops-onlinkassumption-03.txt
- draft-ietf-v6ops-natpt-to-exprmntl-01.txt
- draft-ietf-v6ops-vlan-usage-00.txt
- draft-ietf-v6ops-bb-deployment-scenarios-03.txt
- draft-ietf-v6ops-security-overview-02.txt
In discussion today with respect to WG last call comments:
- draft-ietf-v6ops-nap-01.txt
- draft-ietf-v6ops-ipsec-tunnels-00.txt
- draft-ietf-v6ops-ent-analysis-03.txt
New proposals:
- draft-vives-v6ops-distributed-security-framework-00.txt
- draft-davies-v6ops-icmpv6-filtering-bcp-00.txt
I'm not sure where these are going:
- draft-chown-v6ops-renumber-thinkabout-02.txt
- draft-palet-v6ops-ipv6security-02.txt
(Continue reading)
1)
I think the most important issue is representation of the requirements and
summing them up. That is, the recommendations should be categorized in
roughly following categories:
* must not drop these messages (e.g., pkt too big)
* should not drop these messages, think twice before you even consider it!
(most other ICMP errors)
* these messages may be dropped but there's really no need to drop them
(redirects, ns/na, rs/ra, etc. -- things that the specifications say MUST be
discarded if they come from with hop count != 255 or link-local address
checks)
* may or may not want to drop these
* should consider dropping these messages (e.g., ICMP name lookups)
secondly, the messages/rules needed at the firewall to ensure its own
link-local messaging works OK should be separated from "transiting" messages
(split in categories like above).
further, the guidance needs to be summarized in some form: e.g., a table at
the end and/or very short pseudo-rules.
2) it may also already have come across above, but IMHO most of the
recommendations right now seem too strict and/or unnecessary. I don't think
RSS Feed