On Wed, Mar 26, 2014 at 5:31 PM, Randy Bush <[email protected]> wrote:
>> 2.3 in the draft:
>>
>> "Interface ping: if an interface doesn't have a routable address, it
>>     can only be pinged from a node on the same link.  Therefore, it is
>>     not possible to ping a specific link interface remotely."
>>
>> So I don't really understand what Randy has against this document and what
>> other warnings he wants to have in it.
>
> what is missing is "therefore all monitoring, diagnostic, management,
> ... tools will not work.  you will be unable to maintain your network.

unless you can always be assured of testing from the device which is
having problems.

You could imagine an NMS/tool-set which knows: "Login to device before testing!"
This also doesn't work of routing protocols for the device fail...

-chris
(for the record I also think it's folly to do the process in the doc,
but figured grownups understood that, and less-grown-up-folks would
listen or learn the hard way)

_______________________________________________
OPSEC mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/opsec

Reply via email to