Yoav Nir writes:
> I am not trying to create a complete taxonomy of cluster types.

I think it is worth adding more defined terms, just to show which we
are not talking about too. 

> I should also note that we don't really have a term for a single
> "thing" that does IKE and IPsec. Our documents use terms like
> "gateway" and "peer", but "gateway" does not encompass VPN clients
> and hosts, and "peer" is not just any implementation, it's the
> *other* implementation. "Implementation" is a little too long.

I would use host, or implementation, and I do not think implementation
is too long... 

> Anyway, draft-ietf-ipsecme-ipsec-ha is not out to make a complete
> taxonomy of clusters. We only define what we need to discuss the
> problems. All the clusters that are of interest to us provide the
> ability for another member to take over the work of a failed member.

I do not think that was clear from the terminology section. For
example the "load sharing cluster" and "cluster" does not really say
that.

If we add terms that describe different cluster types better, then we
can more clearly describe what we are really talking about.

One of the problems we have when talking about the ipsec-ha is that
people use different terms and they interpret them meaning different
things. Thats why I think it would be needed for this document to
define good and extensive terminology for this area and use those
terms consitently inside the document. 

> Since this is common to all the clusters that we are considering, we
> don't need to define this specially.

How can someone know that this is generic for all clusters, if you do
not define it?

> The only difference that matters is whether or not more than one
> member is handling traffic with the same peer at the same time.
> 
> So the only terminology that we need, the only taxonomy that we
> need, is for these two mutually-exclusive types of cluster:

I disagree. We do need much more extensive terminology to explain
also things we are not talking about, just to clarify that we do not
mean them. 
-- 
kivi...@iki.fi
_______________________________________________
IPsec mailing list
IPsec@ietf.org
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to