Re: [Ideas] WG Review: IDentity Enabled Networks (ideas)

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



Yes, authentication is necessary to modify the entries. (Whether one should be authenticated before reading varies from case to case.)

But authentication does not require a separate identity. Exactly what it requires depends upon how the system is constructed.

Uma was arguing that they need an identity. I am arguing that such a thing is counter-productive.

Yours,
Joel

On 10/4/17 9:37 PM, Benjamin Kaduk wrote:
On Wed, Oct 04, 2017 at 09:35:38PM -0400, Joel M. Halpern wrote:
Uma,
      It simply does not follow that you need an identity in order to be
able to update the mapping system.  You do need authentication.
       If you use DNS, then mechanissm such as the authentication used
with dynamic DNS suffice.
       If you use LISP, then the keying associated with the delegation of
the identifier works.
       If you use MobileIP, then you need the authentication with your
home register.

      There is no need for any special Identity.

My reading of the claim was that authentication is needed in order to
change the actual map itself, which does seem like a true statement,
in general.  Authentication is not necessarily needed just to consume
the map.

-Ben





[Index of Archives]     [IETF Annoucements]     [IETF]     [IP Storage]     [Yosemite News]     [Linux SCTP]     [Linux Newbies]     [Fedora Users]