Re: [Anima] services-dns-autoconfig

Brian E Carpenter <brian.e.carpenter@gmail.com> Tue, 16 November 2021 21:15 UTC

Return-Path: <brian.e.carpenter@gmail.com>
X-Original-To: anima@ietfa.amsl.com
Delivered-To: anima@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BA0BC3A094F for <anima@ietfa.amsl.com>; Tue, 16 Nov 2021 13:15:44 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.95
X-Spam-Level:
X-Spam-Status: No, score=-3.95 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, NICE_REPLY_A=-1.852, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id KjlPT3nZdH0N for <anima@ietfa.amsl.com>; Tue, 16 Nov 2021 13:15:40 -0800 (PST)
Received: from mail-pj1-x102a.google.com (mail-pj1-x102a.google.com [IPv6:2607:f8b0:4864:20::102a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2D3933A094B for <anima@ietf.org>; Tue, 16 Nov 2021 13:15:40 -0800 (PST)
Received: by mail-pj1-x102a.google.com with SMTP id j5-20020a17090a318500b001a6c749e697so2935291pjb.1 for <anima@ietf.org>; Tue, 16 Nov 2021 13:15:40 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=subject:to:references:from:message-id:date:user-agent:mime-version :in-reply-to:content-language:content-transfer-encoding; bh=QsntuT3Ww5Zp0TSnWUurS+nI2xw6J+pSAERR7Befu6A=; b=jcBFlN3YIHjk/Xjgi7clYEvnhuyEq6LSfue+Uz27TcbMEOm1fPvGysllns6gvpPjl5 LedAlcEjHKemn0yZ8zPYJBtj5Uq/2EWrvHQbHk8/VvifgOPE7cxQuiZyi0HhVA/Xk1Q+ hCi+UT9Udg1l/2zvDJTZggrDslNefOY8sK7tEsQWQorT+dN5IJfDJuVgePDHrci+rEWg uY91w3h4LGomoJeM0cKEfafZKr/JBiVX6S6AKFTEg1SWs69R93zQW/F0jdKFDlxnKZi1 2dX2zSujGRkk3l0UA2kAVPxAh5PWGPM50IPe4STbwjlpU11UXLmLobLxjSyabfq3F57A KRaQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:subject:to:references:from:message-id:date :user-agent:mime-version:in-reply-to:content-language :content-transfer-encoding; bh=QsntuT3Ww5Zp0TSnWUurS+nI2xw6J+pSAERR7Befu6A=; b=k0F+ckFR/GgoQonrOu29dqyYSPhOSP9shXoqAWjXIJLoNllFBxNub8hmqKtelQwMja 6cwK7RsCEzMpEOfTzVfP830V2a74yZYqprv2BhPllPiWrpX53NM/1mJ31wFx2lEc9unu Kwr921Op+oNH++gBzW7KaTAXkl4+gar8z43gC48O1XkmMVdgXsuTFBPAks2upgQxng4T v+jcOU8lz3wH2WKflIgbNhbSH0g7cKNoGYIWt2CHa/fYcWQF1qFHYfTqiPBzBnOELLCs 34lgLT+8oj25yBPsZccdnsAXfWzb54cheTgmr+RIqLWe3U4h//LfCSyJc9GvofPlORtw 3ixQ==
X-Gm-Message-State: AOAM5325t40nGKSEJ7bQHciJYAsxRybuosyfVt6oTwCM0eHwRMPUQ2fG bvOkaP+eUBPZoWkIHsQMyfMNGiJf9gNKKA==
X-Google-Smtp-Source: ABdhPJw/KKPcqWp5gyCxk+pC4f09oJl4Hl9EtUvWVawTlwMBElKwl6721/FJb5SUFogfWaT/13TgOA==
X-Received: by 2002:a17:90b:3850:: with SMTP id nl16mr2571627pjb.190.1637097339002; Tue, 16 Nov 2021 13:15:39 -0800 (PST)
Received: from ?IPv6:2406:e003:102d:e801:80b2:5c79:2266:e431? ([2406:e003:102d:e801:80b2:5c79:2266:e431]) by smtp.gmail.com with ESMTPSA id d9sm18948948pfh.65.2021.11.16.13.15.37 (version=TLS1_3 cipher=TLS_AES_128_GCM_SHA256 bits=128/128); Tue, 16 Nov 2021 13:15:38 -0800 (PST)
To: Michael Richardson <mcr+ietf@sandelman.ca>, anima@ietf.org
References: <101059.1637067141@dooku>
From: Brian E Carpenter <brian.e.carpenter@gmail.com>
Message-ID: <c3c0408b-533f-4b65-cff4-4b48a8103da4@gmail.com>
Date: Wed, 17 Nov 2021 10:15:35 +1300
User-Agent: Mozilla/5.0 (Windows NT 10.0; Win64; x64; rv:78.0) Gecko/20100101 Thunderbird/78.10.0
MIME-Version: 1.0
In-Reply-To: <101059.1637067141@dooku>
Content-Type: text/plain; charset="utf-8"; format="flowed"
Content-Language: en-US
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/anima/gTrv1bCzGoMQ2yO15sbioGgLFfc>
Subject: Re: [Anima] services-dns-autoconfig
X-BeenThere: anima@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Autonomic Networking Integrated Model and Approach <anima.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/anima>, <mailto:anima-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/anima/>
List-Post: <mailto:anima@ietf.org>
List-Help: <mailto:anima-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/anima>, <mailto:anima-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 16 Nov 2021 21:15:45 -0000

> I think that the goal of this document is to somehow gateway DNS-SD
> requests/replies into GRASP M_FLOOD messages.  But, I'm having to reverse
> engineer that.

They don't need to be floods. My toy implementation uses GRASP negotiation
to proxy a DNS-SD lookup.

https://github.com/becarpenter/graspy/blob/master/AskDNSSD2.py
https://github.com/becarpenter/graspy/blob/master/GetDNSSD2.py

But certainly you could flood something that you felt everybody needs.

Regards
    Brian

On 17-Nov-21 01:52, Michael Richardson wrote:
> 
> I tried to read https://datatracker.ietf.org/doc/html/draft-eckert-anima-services-dns-autoconfig-00
> this afternoon between other appointments.
> 
> I think that the Introduction needs to tell me a lot more about the problem
> space.
> 
> The Day-0/Day-1 stuff, I sort of understood, but not really.
> Is it relevant how the device got onto the ACP, if it wasn't BRSKI?
> 
> I'm really unclear what the first sentence means:
> 
>     This document defines to support the autoconfiguration of Autonomic
>     Control Plane (ACP, [RFC8994]) nodes for fundamental decentralized
>     network services via DNS-SD GRASP, utilizing a new proposal mapping
>     of DNS-SD ([RFC6763]) onto GRASP as its hop-by-hop multicast
>     transport and encoding of messages.
> 
> I don't know what "DNS-SD GRASP" is, and I think I should know all the words
> in the first sentence :-)
> 
> I'm not sure if this is document is providing for autoconfiguration *OF* the
> ACP in nodes, or autoconfiguration of the nodes, once the ACP is configured.
> 
> I think that the goal of this document is to somehow gateway DNS-SD
> requests/replies into GRASP M_FLOOD messages.  But, I'm having to reverse
> engineer that.
> 
> A comment on:
> }2.3.  DNS for operations
> }
> }   Availability of DNS names for network operations/troubleshooting is
> }   today mostly an convenience in network operations, but with IPv6
> }   evolving the need to use DNS names even in CLI based network
> }   diagnostics is raising - because IPv6 addresses often are more
> }   difficult to memorize by operators.  More and more network features
> }   also support configurtion that instead of addresses include domain
> }   names or URLs, and ultimately, any non-fully autoconfigured functions
> }   should rather rely on domain-names and URLs instead of just addresses
> }   for greater flexibility and relilability in the face of address
> }   changes.
> 
> I think that there are three major reason why even CLI tools need to use
> names:
> 1) because SSH, PKIX and other identities of the remote nodes are bound to
>     the name.
> 
> 2) because there are a multitude of IPv{4,6} addresses available for the
>     destination, and the tools need to try them all.
> 
> 3) because picking a source address (and protocol) is going to become more
>     and more difficult as we get into new overlays, and MIF.
>     Where you get the name->IP mapping will affect what source is really allowed.
> 
> We lack the right APIs... getaddrinfo(3) isn't enough.
> 
> 
> 
> --
> Michael Richardson <mcr+IETF@sandelman.ca>, Sandelman Software Works
>   -= IPv6 IoT consulting =-
> 
> 
> 
> 
> _______________________________________________
> Anima mailing list
> Anima@ietf.org
> https://www.ietf.org/mailman/listinfo/anima
>