The other point that's been missed here is that the security-by-hiding
argument is only part of the story. Stable address space for intermittently connected networks, unambiguous address space for VPNs,
and stable identifiers for multihoming, are also needed. Whatever your religion on the hiding argument, these other needs have to be met,
and are not met by PA prefixes.
And to be frank, Brian, I am not convinced that even this argument has been thought out well. For instance, how will systems be restricted from having both types of IP addresses? Will it be a host policy or a network policy? If it's a network policy, how does that work with stateless autoconfiguration?
Eliot
-------------------------------------------------------------------- IETF IPng Working Group Mailing List IPng Home Page: http://playground.sun.com/ipng FTP archive: ftp://playground.sun.com/pub/ipng Direct all administrative requests to [EMAIL PROTECTED] --------------------------------------------------------------------