> > Of course, anyone with an HTTP server on port XXX will be unreachable
> > from behind such a firewall, and the filter won't block access to IPP
> > servers on other ports. But that's an inherent limitation of
> > firewalls -
> > they can't really filter out all unwanted traffic, they can
> > only filter
> > out most of it.
> >
> Its only an inherent limitation of firewalls/proxies if you
> limit them to filtering based on TCP port.
I see your point, but I'm not going to insist that IPP use PRINT
instead of POST. My position is that this is for the working group
to decide; and I'm prepared to defend the WG's decision to IESG.
Keith