ietf
[Top] [All Lists]

Re: secdir review of draft-ietf-netconf-partial-lock-09.txt

2009-08-14 17:06:37
On Thu, 13 Aug 2009 08:26:54 -0700, Andy Bierman 
<ietf(_at_)andybierman(_dot_)com> said:

AB> discard-changes only works because authorization is ignored,
AB> otherwise the agent would be deadlocked.

Huh????  why would discard-changes be authorization ignorant???  That's
just as unsafe (unless you're only discarding your own changes).

AB> Only the global lock operation defined in RFC 4741
AB> can prevent this problem.

The global lock has different issues.

The problem isn't with the locking.  Locking, and partial locking are
good.  It's with the global-level commit operation.
-- 
Wes Hardaker
Cobham Analytic Solutions
_______________________________________________
Ietf mailing list
Ietf(_at_)ietf(_dot_)org
https://www.ietf.org/mailman/listinfo/ietf