[Mip6-firewall] Detecting support for MIP in FWs
Gabor.Bajko at nokia.com
Gabor.Bajko at nokia.com
Wed Nov 28 09:38:42 EST 2007
Section 6.4 describes that a STUN aware fw asked whether it supports
MIP, can indicate so in the response.
The draft is not about fw discovery, but rather about detecting whether
the fw supports MIP or not. The vendor draft requires the fw to support
MIP.
- gabor
________________________________
From: ext Yaron Sheffer [mailto:yaronf at checkpoint.com]
Sent: Wednesday, November 28, 2007 2:34 AM
To: Bajko Gabor (Nokia-SIR/MtView)
Cc: mip6-firewall at zeke.ecotroph.net
Subject: Re: [Mip6-firewall] Detecting support for MIP in FWs
In fact Sec. 4.1 of that draft only discovers one or more NAT boxes, and
Sec. 4.2 discovers firewalls that implement STUN Control, which is
useless for general detection of firewalls.
Yaron
Gabor.Bajko at nokia.com wrote:
Using
http://tools.ietf.org/html/draft-wing-behave-nat-control-stun-usage-03
<http://tools.ietf.org/html/draft-wing-behave-nat-control-stun-usage-03>
a client may discover/detect if the fw supports MIP or not. It may worth
mentioning this in the vendor draft.
- gabor
Scanned by Check Point Total Security Gateway.
________________________________
_______________________________________________
Mip6-firewall mailing list
Mip6-firewall at zeke.ecotroph.net
https://zeke.ecotroph.net/mailman/listinfo/mip6-firewall
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://zeke.ecotroph.net/pipermail/mip6-firewall/attachments/20071128/b7fa1f8e/attachment-0001.html
More information about the Mip6-firewall
mailing list