[bess] Re: A question about duplicate MAC detection in Section 15.1 of draft-ietf-bess-rfc7432bis

"Jorge Rabadan (Nokia)" <jorge.rabadan@nokia.com> Thu, 30 January 2025 17:19 UTC

Return-Path: <jorge.rabadan@nokia.com>
X-Original-To: bess@ietfa.amsl.com
Delivered-To: bess@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 115A0C15152D; Thu, 30 Jan 2025 09:19:30 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.25
X-Spam-Level:
X-Spam-Status: No, score=-2.25 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.148, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_VALIDITY_SAFE_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=nokia.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2-3EIUb3T5xW; Thu, 30 Jan 2025 09:19:26 -0800 (PST)
Received: from NAM12-DM6-obe.outbound.protection.outlook.com (mail-dm6nam12on2087.outbound.protection.outlook.com [40.107.243.87]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-384) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C5851C14F6A3; Thu, 30 Jan 2025 09:19:25 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=EeCNuUGi9CJB7qL6iji0hVObTMZL4MyOnxBCrWZxxTTmbpW/vYU3uI8SSKNUcpK+QE1A/xwKgC8SVQNoq1/uM+V9KfpHo/a8pI1OpTUsAQlYTLA9crKHE/ORaGstjMzfQB2rzDv4uBOg0R9Ox/l3KTctWMPVv6k7769hPVG6xzoV0OhVK3Yp0BHMXXXC+aYoL+SznmeF1NnhSfkqUynfSOhEsrBKGJo1Rzho6XQo66auMm87z0DE28BMGqSQEqNVWIdL0cF/KMYba9HPvBGsb/XU4gpk+QYvKliOV2eZhJNIGHLUbRxUI6VSiwrjeNKE5wn1J+mI1u5/adAJJORkkQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=b7CCrj8DHeklSptEIapWNO0TaK3mxgcqfAjnLZGXqe0=; b=yqNzNAamA+I9c2tLy2rjTYkQuOVfre5D9iQmSTCXH95LDsTdHW+AD5lvkh5Z0Qo+igHO27PU3tCMzMxPjf+x0mEcIrgALPGq1wQCgKPIAgtTIePQ+S79N5iqukSIT4Su7xXu3bRfyue4gvFbQ7BpsoNOxjbgJPSTDohQS9LBcWRn4qCpkG2mwySyU8NLmS+Tqw3NMQmIK5Es+pwciGKJXn/gCYQ3pCWuU9h/YXGqBXW75W5BCM6cNCkb9NnxOagVE8e/K9c0ZXWw7+P8degWECEtT/7FTd0g/jraF+7AU+odViEK0lguubxNIAtZI0smrQwU/BtEpJZ+G9bDqb4Now==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=nokia.com; dmarc=pass action=none header.from=nokia.com; dkim=pass header.d=nokia.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nokia.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=b7CCrj8DHeklSptEIapWNO0TaK3mxgcqfAjnLZGXqe0=; b=fUYJ+4EOzW6nYPEzQWHNK96EEDNV8mAiGdq3hoIO2WFZMA10vdPtU+TctpByt49IBm7VOMsUMLnNV3VZoE0FbddPyvS+fImdKX1+MjS40Ek2gVJi3xMAB/YnTKKniUw2ILmeBmuhujBsAeNRiaSdfrdeg9exIirBuJmxlI02TntWVC6FDgXuk3yMB640DpDPAfEZN+AM0YnKqXs/ojgyxuqMvwnsKrn4p9CJ4ZDFljBrjPGKf4ZBP7ySbvimKKXXpyz6eNw/dugoop+3F9Vw+xvthWSFIqMv6PaIuQT8nPXvX81qot93BrfzxqpKA+L9gNaQWRAqlkGJazb0lbgwsA==
Received: from SA1PR08MB7215.namprd08.prod.outlook.com (2603:10b6:806:1a9::17) by SA2PR08MB6571.namprd08.prod.outlook.com (2603:10b6:806:119::10) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.8398.18; Thu, 30 Jan 2025 17:19:22 +0000
Received: from SA1PR08MB7215.namprd08.prod.outlook.com ([fe80::b10c:f208:adaa:c369]) by SA1PR08MB7215.namprd08.prod.outlook.com ([fe80::b10c:f208:adaa:c369%6]) with mapi id 15.20.8398.018; Thu, 30 Jan 2025 17:19:22 +0000
From: "Jorge Rabadan (Nokia)" <jorge.rabadan@nokia.com>
To: Alexander Vainshtein <Alexander.Vainshtein@rbbn.com>, "draft-ietf-bess-rfc7432bis@ietf.org" <draft-ietf-bess-rfc7432bis@ietf.org>
Thread-Topic: A question about duplicate MAC detection in Section 15.1 of draft-ietf-bess-rfc7432bis
Thread-Index: AdtnEcJD7S5AIiysTlS3XYKPiL95ugDRopaQAAk4FgACL12iug==
Date: Thu, 30 Jan 2025 17:19:22 +0000
Message-ID: <SA1PR08MB7215418458AA0BD51B025049F7E92@SA1PR08MB7215.namprd08.prod.outlook.com>
References: <PH0PR03MB63000592782B2FDF91211A03F6192@PH0PR03MB6300.namprd03.prod.outlook.com> <PH0PR03MB6300286F5FB8763F1F1D601EF6E42@PH0PR03MB6300.namprd03.prod.outlook.com> <PH0PR03MB63002B05846BC6055E7F7BD8F6E42@PH0PR03MB6300.namprd03.prod.outlook.com>
In-Reply-To: <PH0PR03MB63002B05846BC6055E7F7BD8F6E42@PH0PR03MB6300.namprd03.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-reactions: allow
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=nokia.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: SA1PR08MB7215:EE_|SA2PR08MB6571:EE_
x-ms-office365-filtering-correlation-id: f76cd776-039a-4775-837f-08dd41523d39
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|366016|1800799024|376014|7053199007|8096899003|38070700018;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:SA1PR08MB7215.namprd08.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(366016)(1800799024)(376014)(7053199007)(8096899003)(38070700018);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_SA1PR08MB7215418458AA0BD51B025049F7E92SA1PR08MB7215namp_"
MIME-Version: 1.0
X-OriginatorOrg: nokia.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SA1PR08MB7215.namprd08.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: f76cd776-039a-4775-837f-08dd41523d39
X-MS-Exchange-CrossTenant-originalarrivaltime: 30 Jan 2025 17:19:22.6508 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5d471751-9675-428d-917b-70f44f9630b0
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: ppWyBtFm3L4E42i7w0cjzGHuWUo8wWJImdy1L68oghXEbTYXWrxah3dFOHSJJmfNcrIXuKuK8LEBqvT+zuB4AA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SA2PR08MB6571
Message-ID-Hash: XLGKWZJY6W374Y4GTES2J3WLDT5NECRC
X-Message-ID-Hash: XLGKWZJY6W374Y4GTES2J3WLDT5NECRC
X-MailFrom: jorge.rabadan@nokia.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-bess.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: "bess@ietf.org" <bess@ietf.org>, "Matthew Bocci (Nokia)" <matthew.bocci@nokia.com>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [bess] Re: A question about duplicate MAC detection in Section 15.1 of draft-ietf-bess-rfc7432bis
List-Id: BGP-Enabled ServiceS working group discussion list <bess.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/bess/2I_EenLNglFkdr8RJs4dJkL3LHU>
List-Archive: <https://mailarchive.ietf.org/arch/browse/bess>
List-Help: <mailto:bess-request@ietf.org?subject=help>
List-Owner: <mailto:bess-owner@ietf.org>
List-Post: <mailto:bess@ietf.org>
List-Subscribe: <mailto:bess-join@ietf.org>
List-Unsubscribe: <mailto:bess-leave@ietf.org>

Hi Sasha,

That’s what the implementations I know do as well.
The section suggests that mobility events occur between local learning events and received MAC/IP Advertisement routes.

Thanks.
Jorge

From: Alexander Vainshtein <Alexander.Vainshtein@rbbn.com>
Date: Sunday, January 19, 2025 at 6:22 AM
To: draft-ietf-bess-rfc7432bis@ietf.org <draft-ietf-bess-rfc7432bis@ietf.org>
Cc: bess@ietf.org <bess@ietf.org>, Matthew Bocci (Nokia) <matthew.bocci@nokia.com>
Subject: RE: A question about duplicate MAC detection in Section 15.1 of draft-ietf-bess-rfc7432bis


CAUTION: This is an external email. Please be very careful when clicking links or opening attachments. See the URL nok.it/ext for additional information.


Hi all,
Some corrections.
The

Regards,
Sasha

From: Alexander Vainshtein
Sent: Sunday, January 19, 2025 11:59 AM
To: draft-ietf-bess-rfc7432bis@ietf.org
Cc: bess@ietf.org; Bocci, Matthew (Nokia - GB) <matthew.bocci@nokia.com>
Subject: RE: A question about duplicate MAC detection in Section 15.1 of draft-ietf-bess-rfc7432bis
Importance: High

Hi,
More of the same:
My colleagues and I have identified at least one implementation in which EVPN PEs only count MAC Move events detected via local learning does not count MAC Move events between different remote PEs affecting duplicate MAC address detection.

If this is indeed the intention of Section 15.1, can you please update the text accordingly?

Regards, and lots of thanks in advance,
Sasha

From: Alexander Vainshtein
Sent: Wednesday, January 15, 2025 8:25 AM
To: draft-ietf-bess-rfc7432bis@ietf.org<mailto:draft-ietf-bess-rfc7432bis@ietf.org>
Cc: bess@ietf.org<mailto:bess@ietf.org>; Bocci, Matthew (Nokia - GB) <matthew.bocci@nokia.com<mailto:matthew.bocci@nokia.com>>
Subject: A question about duplicate MAC detection in Section 15.1 of draft-ietf-bess-rfc7432bis
Importance: High

Hi,
I have a question about the rule for detection of duplicate MAC addresses in Section 15.1 of draft-ietf-bess-rfc7432bis<https://datatracker.ietf.org/doc/html/draft-ietf-bess-rfc7432bis-10#section-15.1>.

The problematic text is copied below (with the relevant fragments highlighted) admits two  interpretations:

a PE that detects a MAC mobility event via local learning starts an M-second timer (with a default value of M = 180), and if it detects N MAC moves before the timer expires (with a default value of N = 5), it concludes that a duplicate-MAC situation has occurred

I.e.:

·       The first MAC Move event that triggers the PE attempt to detect duplication MUST be detected via local learning (and therefore results in increment of the sequence number for the corresponding MAC address by the PE in question)

·       There is no explicit “via local learning” qualification for the consequent MAC Move events that are counted to decide whether the MAC address in question is duplicate or not.

IMHO this ambiguity may result in different decisions by the affected PEs. Please consider the following scenario:

1.      An EVPN BD is instantiated in PE-1, PE-2 and PE-3. In each of these PEs it is attached to a single-homed Ethernet segment via a single AC

2.      Initially MAC address X is locally learned by PE-1

3.      Then X is locally learned by PE-2 that starts the M-seconds timer

4.      After that X is locally learned by PE-3, PE-1, PE-3, PE- 1 and so on - but not by PE-2 – while the M-seconds timer in PE-2 is still running. All these events are identified by PE-2 as MAC Move events – but not via local learning:

a.      If PE-2 counts these MAC Move events for the purpose of duplicate MAC detection, it declares X as duplicate and alerts the operator  - even if it did not participate in in

b.      Otherwise, PE-2 does not declare X as duplicate.

I understand that the example above is a corner case, but. IMHO and FWIW, it should be resolved.
Can you please clarify, which of the above interpretations of the rule is correct and, in any case, clarify this point in the next revision of the draft?

Regards, and lots of thanks in advance,
Sasha




Disclaimer

This e-mail together with any attachments may contain information of Ribbon Communications Inc. and its Affiliates that is confidential and/or proprietary for the sole use of the intended recipient. Any review, disclosure, reliance or distribution by others or forwarding without express permission is strictly prohibited. If you are not the intended recipient, please notify the sender immediately and then delete all copies, including any attachments.