[Anima-signaling] Almost final GRASP -08 draft

Brian E Carpenter <brian.e.carpenter@gmail.com> Wed, 26 October 2016 04:33 UTC

Return-Path: <brian.e.carpenter@gmail.com>
X-Original-To: anima-signaling@ietfa.amsl.com
Delivered-To: anima-signaling@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D9E2C1294F2 for <anima-signaling@ietfa.amsl.com>; Tue, 25 Oct 2016 21:33:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.532
X-Spam-Level:
X-Spam-Status: No, score=-1.532 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, HTML_TAG_BALANCE_BODY=1.157, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, T_HTML_ATTACH=0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id X2Y6eeJWHqdK for <anima-signaling@ietfa.amsl.com>; Tue, 25 Oct 2016 21:33:46 -0700 (PDT)
Received: from mail-pf0-x22d.google.com (mail-pf0-x22d.google.com [IPv6:2607:f8b0:400e:c00::22d]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 566511293F0 for <anima-signaling@ietf.org>; Tue, 25 Oct 2016 21:33:46 -0700 (PDT)
Received: by mail-pf0-x22d.google.com with SMTP id s8so131925299pfj.2 for <anima-signaling@ietf.org>; Tue, 25 Oct 2016 21:33:46 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=to:from:subject:organization:message-id:date:user-agent :mime-version; bh=yjury2PlrdFRPtG/ms5l6q2dFShkP/x+MN4v0xCCcMI=; b=PtBU5cnDPrwHTge777ggirLCYDzBh1cSzZLQFjjkkqjwoS2ve1G+NSEawayJjUnYxE eFUvCLzUunGXsPg7Nv3lG1OUitaYyJF8GV3Zf4JRLhVhRjGgfXsKaxKwH9HsJvHWR4Hf GgVnUAZrazN7BPgLB3e3JcL3UxBpvoedl3ki1dDSPN1n4I66pB7heq+G1NxDopWb++T9 ykb72Qj5hyBLeTk0swqXWElQ5lxi1rnLcfNn3YZmXzmiHa5m7Rg+JwpvezGdI3LJjjBo fiPR4E+AeSOdbgr23kr7MXmS4w5UOAeGZDhj3UyMAUtlQGObT2h/GkFzDKBHRw61VFEm GAmQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:to:from:subject:organization:message-id:date :user-agent:mime-version; bh=yjury2PlrdFRPtG/ms5l6q2dFShkP/x+MN4v0xCCcMI=; b=ArbHV1veIuLHqIIM2lnNuOhFYE5uGcF57OIkIYwU/7VITBhejINcuFS00wgKO++EXI 0Dqyut3/KD7Z++m32L+v/UN8LqEMEdtlQDomoP9gbsgR+pq3UcXOl3d6l+B2Oi6iRHWi J2BArHqTGu+F1HmgTilEPAaf8fUv/TuCSX+VISESkl2W6BZCAYKAg8UHa8VaqG+XRqJU 9eiuuWNLf7KX833JAZKs/LvnDYdroBcsXE9tRei3I2czGfHeKC2JR8lVr59IF4i2jbF1 g6l35tWe2xoZYVRDJDWnQtGG1UjMjk+PAjVjH10nA8xMcQYE1SQ7Gcr2RvK08TzlbC3H WX5Q==
X-Gm-Message-State: ABUngvcMghTfg6DVU7l8f1tSvjS2L+80fQ6E64iPv7B/XD9CoFYto1aGZDMqSVOYlQXgDQ==
X-Received: by 10.98.213.132 with SMTP id d126mr436410pfg.182.1477456425666; Tue, 25 Oct 2016 21:33:45 -0700 (PDT)
Received: from ?IPv6:2406:e007:614c:1:28cc:dc4c:9703:6781? ([2406:e007:614c:1:28cc:dc4c:9703:6781]) by smtp.gmail.com with ESMTPSA id d15sm271785pfl.90.2016.10.25.21.33.33 for <anima-signaling@ietf.org> (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Tue, 25 Oct 2016 21:33:44 -0700 (PDT)
To: Anima signaling DT <anima-signaling@ietf.org>
From: Brian E Carpenter <brian.e.carpenter@gmail.com>
Organization: University of Auckland
Message-ID: <71705ef7-b071-101c-599a-bfd1a7e553ee@gmail.com>
Date: Wed, 26 Oct 2016 17:33:37 +1300
User-Agent: Mozilla/5.0 (Windows NT 6.1; WOW64; rv:45.0) Gecko/20100101 Thunderbird/45.4.0
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="------------E40E0C894DE48F929D1431E9"
Archived-At: <https://mailarchive.ietf.org/arch/msg/anima-signaling/SdMRyAvbl2IQiGcAxsk6q5YbpNY>
Subject: [Anima-signaling] Almost final GRASP -08 draft
X-BeenThere: anima-signaling@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Mailing list for the signaling design team of the ANIMA WG <anima-signaling.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/anima-signaling>, <mailto:anima-signaling-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/anima-signaling/>
List-Post: <mailto:anima-signaling@ietf.org>
List-Help: <mailto:anima-signaling-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/anima-signaling>, <mailto:anima-signaling-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 26 Oct 2016 04:33:56 -0000

I think I got everything. For now I have resolved MCR's point about a Session ID
clash by saying that if it happens, we simply drop the incoming request message
if its Session ID is already cached locally. For what should be an incredibly rare
event that seems OK to me. I simulated it in my prototype, and it works OK -
listen_negotiate() reports an error, and any well written ASA will simply try
again. The other end just sees a timeout and tries again.
(Of course this assumes that the session cache is protected by a lock, because
of multithreading, but that is essential anyway.)

So, here is .txt, and html diffs. Summarising the change log:

   Protocol change: Added M_INVALID message.
   Protocol change: Increased Session ID space to 32 bits.
   Enhanced rules to avoid Session ID clashes.
   Corrected and completed description of timeouts for Request messages.
   Improved wording about exponential backoff and DoS.
   Clarified that discovery relaying is not done by limited security instances.
   Corrected and expanded explanation of port used for Discovery Response.
   Added paragraph on extensibility.
   Specified default maxium message size.
   Added Appendix for sample messages.
   Added short protocol overview.
   Editorial fixes, including minor re-ordering for readability.

I'm going to set a timer: if no objections by the end of Friday (in some reasonable
time zone) I'll post the the draft.

I will update the xml on github too.

Rgds, and many thanks to Michael for his detailed review and comments.

   Brian