Patrick Frejborg allegedly wrote on 07/02/2009 3:41 AM: > NAPT devices have to keep track of both IP addresses and ports, the > binding can become quite complex. But if the connection also have host > identifiers in the header of the datagrams the NAPT box doesn't need > to keep track of the ports - the connection can be tracked with the > help of the host identifier.
There are privacy concerns with host identifiers. If an identifier associated with an endpoint is persistent over a long time, regardless of where the node might be, its behavior is easier to track and analyze. Session identifiers of various sorts are transient. Even security associations are rekeyed periodically. _______________________________________________ rrg mailing list [email protected] http://www.irtf.org/mailman/listinfo/rrg
