[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: netconf and working "on the box"



Randy Bush wrote:

I'm trying to understand how netconf/xmlconf proposals would
change/work with the way things are currently done. For example,
today, if an ISP has a customer sending DoS traffic, it is common
to get on the router (i.e. log in/enable/whatever) and type commands
to locate and fix the problem. In some situations (network links
saturated by flood traffic) one HAS to do this on the box, via
a CLI, because you can not reach the box via the network.

this discussion belongs on the public list.

why is there a difference coming to the box in-band or out-of-band?
what are the differences?

Because it's concievable, especially during a DoS attack, that you
can't get to the box in-band and it is precicely under those
circumstances that you need to be able to poke around and
change configurations.

---George Jones





--
to unsubscribe send a message to xmlconf-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/xmlconf/>