Re: [port-srv-reg] [tsvwg] draft-ietf-tsvwg-iana-ports-02
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [port-srv-reg] [tsvwg] draft-ietf-tsvwg-iana-ports-02



-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1



Fernando Gont wrote:
...
> I wrote the patch to expand the ephemeral port number range in FreeBSD,
> and the reason for which FreeBSD's ephemeral port range ended up being
> 10000-65535 (rather than 1024-65535) was to avoid using those port
> numbers used for X, http-proxy, etc. (This was a quick hack... a more
> clean approach is described in draft-ietf-tsvwg-port-randomization). --
> OpenBSD does implement that approach.

That technique doesn't expand the ephemeral range. It uses the reserved
range as ephemeral, which will cause problems when ports in that range
are allocated and you're already running a service on it.

It's not clean at all, and should be avoided, IMO.

Joe
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (MingW32)

iEYEARECAAYFAkrbvakACgkQE5f5cImnZrtWJACdH//N8618FVm8jzCOsuxtS70u
28wAoKOpIiUDZoFFt+mJz28Jhk1QyB2F
=SCmB
-----END PGP SIGNATURE-----

Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.