[Mip6-firewall] Detecting support for MIP in FWs

Gabor.Bajko at nokia.com Gabor.Bajko at nokia.com
Wed Nov 28 09:38:42 EST 2007


Section 6.4 describes that a STUN aware fw asked whether it supports
MIP, can indicate so in the response. 
The draft is not about fw discovery, but rather about detecting whether
the fw supports MIP or not. The vendor draft requires the fw to support
MIP.
 
- gabor

________________________________

From: ext Yaron Sheffer [mailto:yaronf at checkpoint.com] 
Sent: Wednesday, November 28, 2007 2:34 AM
To: Bajko Gabor (Nokia-SIR/MtView)
Cc: mip6-firewall at zeke.ecotroph.net
Subject: Re: [Mip6-firewall] Detecting support for MIP in FWs



In fact Sec. 4.1 of that draft only discovers one or more NAT boxes, and
Sec. 4.2 discovers firewalls that implement STUN Control, which is
useless for general detection of firewalls.




    Yaron




Gabor.Bajko at nokia.com wrote:


	Using
http://tools.ietf.org/html/draft-wing-behave-nat-control-stun-usage-03
<http://tools.ietf.org/html/draft-wing-behave-nat-control-stun-usage-03>
a client may discover/detect if the fw supports MIP or not. It may worth
mentioning this in the vendor draft.

	- gabor 



	Scanned by Check Point Total Security Gateway. 
	
	
	
________________________________


	_______________________________________________
	Mip6-firewall mailing list
	Mip6-firewall at zeke.ecotroph.net
	https://zeke.ecotroph.net/mailman/listinfo/mip6-firewall
	  

-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://zeke.ecotroph.net/pipermail/mip6-firewall/attachments/20071128/b7fa1f8e/attachment-0001.html 


More information about the Mip6-firewall mailing list