Skip to main content

Remote Direct Memory Access Transport for Remote Procedure Call
draft-ietf-nfsv4-rpcrdma-09

Yes

(Lars Eggert)

No Objection

(David Ward)
(Jari Arkko)
(Magnus Westerlund)
(Mark Townsley)
(Ron Bonica)
(Ross Callon)
(Russ Housley)
(Tim Polk)

Note: This ballot was opened for revision 09 and is now closed.

Lars Eggert Former IESG member
Yes
Yes () Unknown

                            
Chris Newman Former IESG member
No Objection
No Objection (2008-06-26) Unknown
I support Lisa's discuss comment.
David Ward Former IESG member
No Objection
No Objection () Unknown

                            
Jari Arkko Former IESG member
No Objection
No Objection () Unknown

                            
Lisa Dusseault Former IESG member
(was Discuss) No Objection
No Objection (2008-06-26) Unknown
This comment is a revision of what was originally a DISCUSS which I held while trying to understand the authentication model for this document.

I never quite managed to understand the authentication model of combining RDMA, RPC and NFS as described in this document.  I thought that use of this suite would be in practice be limited to trusted situations where an administrator explicitly sets up a data transfer or a synchronization relationship between two servers --  I can see this being useful in contexts where you basically want superuser access to a file system.  However, the authors inform me that this can be used securely over the Internet.  

What I don't understand is how implementations know what authentication to prompt for, how the user knows what domain's authentication information is being asked for, how to tie authentication at different layers together, and how to tie authenticated identities at this layer to NFS ACE principals. These may well all be implementation problems, and I'm clearing my DISCUSS because I can't be sure that they aren't. 

I had been thinking of an applicability statement, but now that I've learned that this ought to be securely usable on the Internet, I no longer think an applicability statement would be helpful.
Magnus Westerlund Former IESG member
No Objection
No Objection () Unknown

                            
Mark Townsley Former IESG member
No Objection
No Objection () Unknown

                            
Ron Bonica Former IESG member
No Objection
No Objection () Unknown

                            
Ross Callon Former IESG member
No Objection
No Objection () Unknown

                            
Russ Housley Former IESG member
No Objection
No Objection () Unknown

                            
Tim Polk Former IESG member
No Objection
No Objection () Unknown