I support adoption of this draft and I second all of Andy's comments.

I do believe that we need to be tolerant in the operation of the CA's as
we move forward in adoption of origin validation in routers.

Cheers!

~Carlos

On 4/28/14, 5:14 PM, Andy Newton wrote:
> I support the adoption of this draft, as it makes the operations of a CA less 
> problematic.
> 
> I also 100% disagree with Randy’s view that it adds complexity. To the 
> contrary, it lessens complexity, aids flexibility and decreases fragility.
> 
> -andy
> 
> On Apr 25, 2014, at 3:06 PM, Randy Bush <[email protected]> wrote:
> 
>> i really hate to side with dr kent :)
>>
>> i am unsure of this is a useful work item.  please explain how it is
>> other than a complex (i.e. dangerous) patch to accommodate sloppy
>> operational praactices by a CA.  
>>
>> make the protocol complex and you are vulnerable forever.  sloppy CA
>> ops practices can always be remedied.  so which is the worse problem?
>>
>> randy
>>
>> _______________________________________________
>> sidr mailing list
>> [email protected]
>> https://www.ietf.org/mailman/listinfo/sidr
> 
> _______________________________________________
> sidr mailing list
> [email protected]
> https://www.ietf.org/mailman/listinfo/sidr
> 

_______________________________________________
sidr mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/sidr

Reply via email to