[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: GSE



On Friday, Feb 21, 2003, at 11:30 America/Montreal, Erik Nordmark wrote:
Part of it being some technical aspects (such as the impact of not
having a checksum on the source locator causing new failures,
That's a tractable implementation detail.

and security issues related to relaxing the binding between identifiers
and locators).
The Security ADs and security-aware IAB folks did not believe that
such issues were real.

An attampt to capture the technical issues is in
http://www.ietf.org/proceedings/99nov/I-D/draft-ietf-ipngwg-esd- analysis-05.txt
And note that a whole lot of folks objected to that being published
as an RFC on grounds that it was analysing something different from
what O'Dell proposed and also because there were sundry incorrect
assertions (including, but not limited to, security claims) inside it.

Note that the security issues due to the relaxation can be solved
by stuff like HIP.
See smb's comments at www.research.att.com, URL posted by someone else
a few days back.  HIP has no special magic in this regard.

Ran
rja@extremenetworks.com