Hi, Melinda,

On 09/17/2015 06:49 PM, Melinda Shore wrote:
> On 9/16/15 9:10 PM, Panos Kampanakis (pkampana) wrote:
>> Also I am not sure about what the "bickering on the topic" refers to.
> 
[...]
> 
> That said, I do think there's value in such a document, for
> several reasons.  One is that over the years there have been
> a number of efforts to abstract firewall behavior as input
> to the design of IETF protocols.  It's a challenge because
> firewall behavior does tend to be highly vendor-specific, and
> we've published several specifications that try to do it
> (nsis's NAT and firewall layer, midcom, etc.).  It would be
> (and would have been useful) to have a document describing
> where we can reasonably expect to have firewalls in the network
> and what we can reasonably expect from their behavior, to
> be able to make better protocol design decisions.  Note that
> this is distinct from a document making deployment
> recommendations (or at least explicit ones).

FWIW, while there are some *very general* recommendations in our
document, our plan is to move such recommendations out into a separate
document. One one hand, to keep the I-D more focused, and on the other
because any recommendations deserver a document on their own.



> I also think that there's value in reasoning about architecture,
> and publishing a document describing that reasoning.  I suspect
> that having it come from the IAB might reduce some of the
> friction in moving the document along, but it might not reduce
> it enough.  But it's quite clear to me that because nearly any
> discussion related to middleboxes has erupted into ideological
> warfare we've been hampered in producing particularly thoughtful
> architectural work on what it means to have them in the network,
> instead knocking out stopgap workaround protocols here and there,
> and that's unfortunate.

That's certainly part of the intent of this doucment.

Thanks so much for chimming in!

Cheers,
-- 
Fernando Gont
SI6 Networks
e-mail: [email protected]
PGP Fingerprint: 6666 31C6 D484 63B2 8FB1 E3C4 AE25 0D55 1D4E 7492




_______________________________________________
OPSAWG mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/opsawg

Reply via email to