On Sep 30, 2008, at 3:59 PM, Wojciech Dec (wdec) wrote:
Ted, could you elaborate a bit more on the nonce option, and how you'd see it working with 3118 and IPv4 Forced renew?
The protocol I'm talking about is the Reconfigure Key Authentication Protocol as described in RFC3315 section 21.5. Could you read it over and let us know what you think? Obviously I'm happy to answer any questions you may have.
One of the arguments for removing the 3118 requirement from DHCP Forced Renew is that the cost of implementing and scaling a 3118 implementation with HMAC/MD5 is not trivial and not quite justifiable when it's use isunwarranted.
Right, that was the motivation for the Reconfigure Key authentication protocol! Obviously a protocol that requires each client to be configured with a shared secret doesn't scale, but that's not what we're talking about here.
_______________________________________________ dhcwg mailing list dhcwg at ietf.org https://www.ietf.org/mailman/listinfo/dhcwg