[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: mdns-08 draft



Bernard,

Bernard Aboba wrote:
> > A host configured to not be a "responder" cannot be a "sender".
> >
> > > Why?  This is an arbitrary rule.  I can imagine a very simple client
> > > that might not need a responder.  Every feature costs.
> 
> How about this?
> 
> "A host configured to not be a responder SHOULD NOT be a "sender". While
s/SHOULD NOT/SHOULD

---

> How about this?
> 
> "However, after receiving an initial response, the sender is not required
> to wait for LMDNS_TIMEOUT for additional responses."

I like it.
 
> >>"If... senders on that network are configured with the key for the top
> >> zone "local.arpa."...
> >
> > Why is this still here? Shouldn't the last sentence be removed?
> 
> How about this?
> 
> "The mechanism specified in this draft does not require use of DNSSEC. As
> a result, responses to LMDNS queries MAY NOT be authenticated. If
s/MAY NOT/may not

This text expresses a possibility not a requirement.  It should be
written in lower case.

> authentication is desired, and a pre-arranged security ocnfiguration is
> possible, then IPsec ESP with a null transform MAY be used to authenticate
> LMDNS responses. In a small network without a certificate authority, this
> can be most easily accomplished through configuration of a group
> pre-shared key for trusted hosts."

Groovy.

Erik


to unsubscribe send a message to namedroppers-request@ops.ietf.org with
the word 'unsubscribe' in a single line as the message text body.