[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

RE: Evaluation: draft-ietf-netconf-ssh-05.txt to Proposed Standar d [I06-051127-0011]



Hi Sharon, Eliot, et al,

You've all misreprented the choices - actual options are:

(1) IANA-assigned "Well Known Port" (0 to 1023)
    - approximately 70% are now assigned 
    - very scarce resource

(2) IANA-assigned "Registered Port" (1024 to 49151)
    - approximately %12 are now assigned 
    - plentiful resource

(3) Unregistered "Dynamic or Private Port" (49152 to 65535)
    - not a reasonable choice for NetConf or any standard service

Option (2) is obviously the prudent choide.

It is not possible to use NetConf (or SHOULD NOT be) without
strong authentication - in any case, security professionals
do NOT accept the pseudo-security of "well known ports" based
on their numeric values.

Cheers,
- Ira

Ira McDonald (Musician / Software Architect)
Blue Roof Music / High North Inc
PO Box 221  Grand Marais, MI  49839
phone: +1-906-494-2434
email: imcdonald@sharplabs.com

> -----Original Message-----
> From: owner-netconf@ops.ietf.org [mailto:owner-netconf@ops.ietf.org]On
> Behalf Of Sharon Chisholm
> Sent: Thursday, March 16, 2006 1:20 PM
> To: Netconf (E-mail)
> Subject: RE: Evaluation: draft-ietf-netconf-ssh-05.txt to Proposed
> Standar d [I06-051127-0011]
> 
> 
> hi
> 
> Just to clarify, the options are the following?
> 
> 1) Standards assignment < 1024
> 2) Informal assignment > 1023
> 3) Say nothing
> 
> Sharon
> 
> -----Original Message-----
> From: owner-netconf@ops.ietf.org 
> [mailto:owner-netconf@ops.ietf.org] On
> Behalf Of Eliot Lear
> Sent: Thursday, March 16, 2006 11:53 AM
> To: Andy Bierman
> Cc: Phil Shafer; Wijnen, Bert (Bert); 'Margaret Wasserman (E-mail)';
> 'Netconf (E-mail)'; iana-drafts@icann.org; IANA
> Subject: Re: Evaluation: draft-ietf-netconf-ssh-05.txt to Proposed
> Standar d [I06-051127-0011]
> 
> 
> Sorry- we are talking about CONFIGURATION OF THE DEVICE.  WHAT BETTER
> REASON TO MAKE THE PORT PRIVILEGED?!!
> 
> Eliot
> 
> --
> to unsubscribe send a message to netconf-request@ops.ietf.org with the
> word 'unsubscribe' in a single line as the message text body.
> archive: <http://ops.ietf.org/lists/netconf/>
> 
> 
> --
> to unsubscribe send a message to netconf-request@ops.ietf.org with
> the word 'unsubscribe' in a single line as the message text body.
> archive: <http://ops.ietf.org/lists/netconf/>
> 

--
to unsubscribe send a message to netconf-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.
archive: <http://ops.ietf.org/lists/netconf/>