[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: additional comments about draft-ietf-netconf-tls-00.txt



Mohamad Badra wrote:
Can someone please explain to me how NETCONF/TLS could be used in combination with existing user authentication databases on NETCONF servers (e.g., the agents)?

Before answer your question, I will appreciate if you could kindly tell me how HTTP/TLS, "LDAP protocol over TLS/SSL", FTP/TLS and other protocols do that?

Best regards,

HTTP/TLS uses HTTP AUTH to accomplish this task. I don't know much about LDAP, but I suspect there's a SASL or SASL-like transaction somewhere in there. FTP uses the same username/password approaches that existed before TLS. My point: there is no such underlying mechanism in NETCONF.

Eliot

--
to unsubscribe send a message to netconf-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/netconf/>