--On onsdag, januar 19, 2005 07:21:40 -0500 Scott Bradner <[EMAIL PROTECTED]> wrote:

  Answered requests for review and their responses are made public.
-------------------------------------------------------

why not make public all requests (i.e. remove "Answered" from the
last line)

because:
1) some requests are an embarassment to the sender, and the sender doesn't really want an answer
2) anything that's got a requirement to "do something" is a DoS vector, even if trivial - so I bent over backwards to prevent that.


I still feel that this leaves things too open (specifically it does not
set expectations about the possible results of a review ) to a DoS
attack but as I said before I can live with this as-is.

I still don't understand how not setting expectations opens to a DoS attack - setting expectations would be such an opening.


Want to try to explain?




_______________________________________________ Ietf mailing list Ietf@ietf.org https://www1.ietf.org/mailman/listinfo/ietf

Reply via email to