On Thu, 2014-02-20 at 09:46 -0500, Russ Housley wrote:
> Elwyn:
> 
> Nice review.  I'm sure the document will be improved because of your
> efforts. 
:-)

 I'd like to make two comments.
> 
> > s3.1.3: It is stated that placing the NAT64 (middlebox) in a
> centralized location would 'reduce the diversity of  log format'.  I
> guess what is possibly being said that is that the network should
> preferentially use just one NAT64 box centrally placed rather than
> several (smaller) boxes at various edge locations.  I think this needs
> to be explained more clearly (assuming I have it right).  OTOH I would
> rather expect that most network owners would go for a single species
> of NAT64 box so the diversity of log formats is really a side issue.
> 
> In the beginning, yes.  Subsequent procurements cal lead to changing
> vendor.  Mergers also lead to multiple venders.
For sure! And of course you then have to decide whether to modify the 
merged network to conform to the centralized location story.  A little
clarification is, I believe, needed to cover all the bases.
> 
> > s5.2: The problem here is not specifically geo-location - and since
> we normally don't have any mapping between topology and location this
> seems inappropriate - but doing host identification (which is what RFC
> 6967 is about.  Shouldn't this section just be about host
> identification?
> 
> If a law enforcement agency shows up with a subpoena, they really do
> want to know what door to knock down.
Maybe I'd prefer my operator not to know which door - with wi-fi
involved there is no guarantee which door the host is behind in any
case.  It's an interesting point that I had not thought about: Does my
ISP in the UK actually get to know whether the phone number I am paying
for service on is at the same address as on the bills?  Since I provide
my own modem and the ISP has, to the best of my knowledge, never been
near either my house or the exchange where my ADSL line terminates it
depends on whether BT checks the linkage and tells the ISP it is right.
It's so long since I signed up I have no idea what would have happened
if the addresses didn't match. Another PRIVACY issue!

/Elwyn 
> 
> Thanks for listening,
>   Russ
> 

_______________________________________________
Gen-art mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/gen-art

Reply via email to