ietf-nntp LIST EXTENSIONS caching

Russ Allbery rra at stanford.edu
Sat Oct 11 20:18:42 PDT 2003


Charles Lindsey <chl at clerew.man.ac.uk> writes:

> Actually, what you should be saying is that people who design security
> extensions SHOULD include requirements to check the security state of the
> link.

This isn't the business of the base NNTP standard, I think.  That's a
policy statement about security protocols, and is somewhat outside the
scope of what we're writing here.

It's more the sort of thing that one would put into a BCP for writing
security RFCs.  You're not saying anything specific about NNTP; you're
just making a general statement like "when writing security protocols,
don't do something stupid."

-- 
Russ Allbery (rra at stanford.edu)             <http://www.eyrie.org/~eagle/>



More information about the ietf-nntp mailing list