|
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index] RE: iSCSI extension algorithms (was no subject)David, That is almost perfect although - as the aim is not to force on the community a proprietary new method without allowing a standard one - I would rather choose the following wording: Private or public extension algorithms MAY also be negotiated for authentication methods. Whenever a private or public extension algorithm is offered, the implementer MUST ensure that the administrator may list at least also one of the authentication methods other than None, defined in this document, as an alternative. Furthermore with private and public extensions "None" MUST NOT appear as a single additional choice without explicit action by the administrator (cannot be the implementer default). Regards, Julo -----Original Message----- From: owner-ips@ece.cmu.edu [mailto:owner-ips@ece.cmu.edu] On Behalf Of Black_David@emc.com Sent: 10 January, 2003 22:29 To: ips@ece.cmu.edu Subject: RE: iSCSI extension algorithms (was no subject) Last (I hope) word on this topic. After working through the confusion, the following text appears to be acceptable to all concerned: Private or public extension algorithms MAY also be negotiated for authentication methods. Whenever a private or public extension algorithm is offered, "CHAP" SHOULD be listed as an option in order to guarantee interoperability, unless the administrator has explicitly enabled "None". ("None" MUST NOT appear as a choice without explicit action by the administrator.) This is acceptable to the IESG, it is the basis for what will go into -20, and I believe it takes care of the "loss of administrative control" concern raised by Nick Martin and Bill Stundemund. Thanks, --David ---------------------------------------------------- David L. Black, Senior Technologist EMC Corporation, 176 South St., Hopkinton, MA 01748 +1 (508) 293-7953 **NEW** FAX: +1 (508) 293-7786 black_david@emc.com Mobile: +1 (978) 394-7754 ----------------------------------------------------
Home Last updated: Sat Jan 11 12:18:57 2003 12160 messages in chronological order |