Re: [Isms] comments on draft-nelson-isms-extended-vacm-00
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Isms] comments on draft-nelson-isms-extended-vacm-00
Juergen Schoenwaelder writes...
> I think Randy Presuhn's model was that the RADIUS
> client acts pretty much like an "embedded" SNMP
> manager doing a local set to modify the VACM table.
I think that's the right generic model, except that it isn't the RADIUS client that does this work. (Another modularity discussion.) The RADIUS client is typically isolated from the SNMP engine by PAM and the SSH server. So, something external to the RADIUS client, that is triggered by the actions of the SSH server or the SSH Transport Model, will take the information from the tnStateReference and affect the VACM tables.
Note: Messages sent to this list are the opinions of the senders and do not imply endorsement by the IETF.