Re: [bess] draft-ietf-bess-mvpn-evpn-aggregation-label-05 shepherd's review

"Jeffrey (Zhaohui) Zhang" <zzhang@juniper.net> Wed, 14 April 2021 01:54 UTC

Return-Path: <zzhang@juniper.net>
X-Original-To: bess@ietfa.amsl.com
Delivered-To: bess@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E002E3A12AE; Tue, 13 Apr 2021 18:54:14 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b=KjQCLCTl; dkim=pass (1024-bit key) header.d=juniper.net header.b=lMyxDQ0M
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3zpLRskbvShu; Tue, 13 Apr 2021 18:54:09 -0700 (PDT)
Received: from mx0a-00273201.pphosted.com (mx0a-00273201.pphosted.com [208.84.65.16]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 96BCC3A12A5; Tue, 13 Apr 2021 18:53:43 -0700 (PDT)
Received: from pps.filterd (m0108159.ppops.net [127.0.0.1]) by mx0a-00273201.pphosted.com (8.16.0.43/8.16.0.43) with SMTP id 13E1oTEs019340; Tue, 13 Apr 2021 18:53:41 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=PPS1017; bh=jvwV0QxJaUpYTyMhryKXrIOseni2mcM7b9qTzZaijIg=; b=KjQCLCTlfNKcPZyJn655lmpGFsHK0uLNzj52WJMNCys6D6GEcsuxbgvNNCfop/TJj0PI nmMPiml6W0PcxKENZ3Gk2PuYtTCpsyNfU9qSDLwVPjvzP0QYz4THdjlxq6xsY0ExkeJ7 xvv7fztZlF29AfxhEYZT/7XM+iQFnrqbtkkYRQhGZUOwPclbYcKohDK7U2+39tujqPR4 WmP5IfNwU5bn2jDgfWNLUJ4aMqUQUk+3mTfoDomxDvVKFbTf4fTzMPCCNePDfydwkic0 EIrD/+tk96Q6SQC+a7Jvr0zPFtaG6LKB5FB9zIq0bSZCTaFSSfOBkhrIYAQHZvGi+JfE Dw==
Received: from nam12-dm6-obe.outbound.protection.outlook.com (mail-dm6nam12lp2173.outbound.protection.outlook.com [104.47.59.173]) by mx0a-00273201.pphosted.com with ESMTP id 37wnck846h-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Tue, 13 Apr 2021 18:53:41 -0700
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=k8AMXx4zsbjOSQElQGWx6ZcLMIBsE0eVHb1+gg21LmYcLPhGFLVrm+oLM8Rn4K7ktZKJAVIwn74zVlPnkZU5TiB94lmUSKTpi+wqEDl88hThGi5u/cB5wbXHl7LHvcuEFmUzN8aeF53uHaPBSLKRA6p3Fj+T7xyKdrNLNNRADs/HTL8kLRWHE2e9YRPHeh06kD3k/YlgoA/gxnv221rAoUzIMg3gNay26Sbql8+uBuZ3/33F/NmerkFWVlC+lYsh9Lsrbos5j3Y22TtG0E2+9OTLaoio45x7mpqilVnwUOgPL3kj8JNUimNswNIMN6fa1MFPUsa5SLUqrrcAz+UO4Q==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=jvwV0QxJaUpYTyMhryKXrIOseni2mcM7b9qTzZaijIg=; b=NDJKK/FaqQFiBqbp40/C20ZmDozdndGbCQF/6OM0MUmBAziN81jiJGiEj66vCNjDAQ9Y0ma8AKL6o6jw+cCSpey0lACsm95+mbrKNgct3jOMjcUE3tNRvhUZvsr1W31Cs6kX1/ABkaf8Zpblx9RmAojMib294zkEO8UHpyY4Vcy7JqoHfBd29cB58iVe+fRCH1U+D+89Vb4eF0AtUytOFuf7qUIWHVAhp0KEcWj1HIYfRC6mynZc4qD4kPwlBlMu/wNRiMsg9NWfoT6SUpQsdxAqnLBP/k92oNoa7B56mG3nAcmsqKbozF7FGvt+wZSoAU0wRLz0EfTv5E9mcPrllw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=jvwV0QxJaUpYTyMhryKXrIOseni2mcM7b9qTzZaijIg=; b=lMyxDQ0McfEszq7rZDLuuYs/pi8HVVBQGDvFxi7qVvSgBqRlpwWcHPZFK9iRiW8J7MGCoWGEirn7JFsjHXnSw4+Npoe0LbHX/zmtDqPCeirF7hkI9DiAjYwIpeZxZH+OdWno0RjIGUuOD8higDwIqfR0ZeKrCHZEcF2n7hg9hMI=
Received: from MN2PR05MB5981.namprd05.prod.outlook.com (2603:10b6:208:c3::15) by MN2PR05MB5982.namprd05.prod.outlook.com (2603:10b6:208:cf::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4042.9; Wed, 14 Apr 2021 01:53:39 +0000
Received: from MN2PR05MB5981.namprd05.prod.outlook.com ([fe80::203e:7f1f:be91:161c]) by MN2PR05MB5981.namprd05.prod.outlook.com ([fe80::203e:7f1f:be91:161c%6]) with mapi id 15.20.4042.013; Wed, 14 Apr 2021 01:53:39 +0000
From: "Jeffrey (Zhaohui) Zhang" <zzhang@juniper.net>
To: "Stephane Litkowski (slitkows)" <slitkows@cisco.com>, "draft-ietf-bess-mvpn-evpn-aggregation-label@ietf.org" <draft-ietf-bess-mvpn-evpn-aggregation-label@ietf.org>
CC: "bess@ietf.org" <bess@ietf.org>
Thread-Topic: draft-ietf-bess-mvpn-evpn-aggregation-label-05 shepherd's review
Thread-Index: AdcvfQQFM/ixh3uoR4qddJb10SgMvwBH84Dg
Date: Wed, 14 Apr 2021 01:53:38 +0000
Message-ID: <MN2PR05MB5981166A55D20B26AE0480AFD44E9@MN2PR05MB5981.namprd05.prod.outlook.com>
References: <SJ0PR11MB5136FBD53EC0393B52C8663AC2709@SJ0PR11MB5136.namprd11.prod.outlook.com>
In-Reply-To: <SJ0PR11MB5136FBD53EC0393B52C8663AC2709@SJ0PR11MB5136.namprd11.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
dlp-product: dlpe-windows
dlp-version: 11.6.0.76
dlp-reaction: no-action
msip_labels: MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ActionId=11adba5f-4cc7-43e3-923f-ca0ff0eef544; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ContentBits=0; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Enabled=true; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Method=Standard; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Name=0633b888-ae0d-4341-a75f-06e04137d755; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SetDate=2021-04-13T19:40:13Z; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SiteId=bea78b3c-4cdb-4130-854a-1d193232e5f4;
authentication-results: cisco.com; dkim=none (message not signed) header.d=none;cisco.com; dmarc=none action=none header.from=juniper.net;
x-originating-ip: [71.248.165.31]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: e72bfbcb-5e0c-44ef-9526-08d8fee81fb2
x-ms-traffictypediagnostic: MN2PR05MB5982:
x-microsoft-antispam-prvs: <MN2PR05MB5982D7F8279892FD40FC5CB2D44E9@MN2PR05MB5982.namprd05.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:5516;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MN2PR05MB5981.namprd05.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(376002)(39850400004)(136003)(396003)(346002)(366004)(55016002)(66946007)(83380400001)(66574015)(66446008)(8676002)(66556008)(66476007)(38100700002)(86362001)(53546011)(52536014)(8936002)(64756008)(122000001)(5660300002)(2906002)(186003)(26005)(110136005)(316002)(4326008)(6506007)(76116006)(71200400001)(7696005)(478600001)(33656002)(9686003); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_MN2PR05MB5981166A55D20B26AE0480AFD44E9MN2PR05MB5981namp_"
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MN2PR05MB5981.namprd05.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: e72bfbcb-5e0c-44ef-9526-08d8fee81fb2
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Apr 2021 01:53:38.8581 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: GQsut1Cy+YrlBYNZNiKNUHoF1NJXFl6Bxd8IRiXP6BVRZ8rpV/ulQ43q2q/O6N0VnRV36v9RjmnfagjACepMIg==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MN2PR05MB5982
X-Proofpoint-GUID: HM0uoIyqFJDt2MKwl8dAxzFmBI6zbEXR
X-Proofpoint-ORIG-GUID: HM0uoIyqFJDt2MKwl8dAxzFmBI6zbEXR
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.391, 18.0.761 definitions=2021-04-13_16:2021-04-13, 2021-04-13 signatures=0
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 bulkscore=0 mlxlogscore=999 spamscore=0 clxscore=1011 mlxscore=0 lowpriorityscore=0 phishscore=0 adultscore=0 suspectscore=0 impostorscore=0 priorityscore=1501 malwarescore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2104060000 definitions=main-2104140011
Archived-At: <https://mailarchive.ietf.org/arch/msg/bess/7oxOSRKHE2UU0bEPWJjBFC_u5FI>
Subject: Re: [bess] draft-ietf-bess-mvpn-evpn-aggregation-label-05 shepherd's review
X-BeenThere: bess@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: BGP-Enabled ServiceS working group discussion list <bess.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/bess>, <mailto:bess-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/bess/>
List-Post: <mailto:bess@ietf.org>
List-Help: <mailto:bess-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/bess>, <mailto:bess-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 14 Apr 2021 01:54:15 -0000

Hi, Stephane,

Thanks you so much for your review!

Please see zzh> below (I skipped all those that will be fixed as you pointed out).

From: Stephane Litkowski (slitkows) <slitkows@cisco.com>
Sent: Monday, April 12, 2021 5:56 AM
To: draft-ietf-bess-mvpn-evpn-aggregation-label@ietf.org
Cc: bess@ietf.org
Subject: draft-ietf-bess-mvpn-evpn-aggregation-label-05 shepherd's review

[External Email. Be cautious of content]

Hi,

Here is my review of the document:

Section 2.2:
s/the DCB MUST not intersect/the DCB MUST NOT intersect/

I don’t fully understand the purpose of the second part of the sentence :

“or those routers MUST be
   considered as part of the "domain".”

I think the DCB must not intersect with any other label block (common, or dynamic), otherwise there will be some issues.
That’s different from SRGB where each node could have a different one. This should be highlighted I think.

Zzh> The complete text is:


   If these PEs share other common

   label blocks (e.g.  SRGB) with other routers, the DCB MUST not

   intersect with those common label blocks or those routers MUST be

   considered as part of the "domain".

Zzh> The DCB can actually be part of a SRGB that is a common block on all routers (then each DCB label will take place of a SID from the SRGB), but we don’t want to simply say that DCB is part of a common SRGB.
Zzh> The PEs can be considered to be in a domain of themselves (separate from the SR domain when all routers use a “common” SRGB – where all those SRGBs are the same) for the purpose of defining “Domain-common Label Block”. Let’s say there are 10 PEs and the DCB is [1000, 2000]. On those 10 PEs the [1000,2000] can’t be used for other purposes, but on internal P-routers, that [1000, 2000] can be used for other purposes and there is no need to set aside that block on those P-routers. In other words, the DCB does not have to, and better not to be part of the SRGB or some other common label blocks of for a larger set of routers. That’s what we try to say – either DCB does not intersect with for example SRGB (red text), or all the routers involved in the SRGB will have be considered as part of the domain for the DCB (purple text).
Zzh> Indeed it’s a bit convoluted, but hopefully now you see what we wanted to say. I’ll try to think of better wording – suggestions are appreciated.

Section 3.2:

“If PE Distiguisher…, they must be allocated” => should this be a MUST be ? Previous sentence is using normative language

“When a PE receives an x-PMSI…, it programs its…” => It should be :”it MUST program”

“The receiving PE then programs…” => It should be “Then, the receiving PE MUST program…”

“A PE MUST ignore a received route” => what do you mean by ignore ? drop the update received ?

zzh> I meant treat as if it was not received from MVPN/EVPN procedure point of view. I did not consider “dropping” it (such that it won’t be further propagated if this router is in the propagation path to more PEs). While I think it is fine if it is dropped because other PEs are supposed to ignore it as well, it may make debugging more difficult because you’d see it advertised by its peer yet kept not on this router.

Zzh> Yes we’ll add a security section 😊 Somehow we missed it.
Zzh> It is always a headache section to me though . Do you have any suggestions or foresee any security concerns?
Zzh> Will share an update once we get all done.
Zzh> Thanks.
Zzh> Jeffrey

“the label in the PTA … is treated as” => MUST be treated as

s/must be followed/MUST be followed


IANA considerations:
Could you rewrite slightly the text with more formal allocation requests (the content is here, it is just the way it is expressed that sounds weird to me). You can reuse the code points from the early allocation:

Example:
“IANA is requested to allocate the followings:

  *   Bit 47 (DCB-Bit) in the “Additional PMSI Tunnel Attribute Flags”  registry



     Bit         Name                             Reference

     ----        --------------                   -------------

     47          DCB-bit                          This document





  *   Sub-type 0x08 from the “Transitive Opaque Extended Community Sub-Types” registry and associated to the “Context Label Space ID Extended Community”


     Bit         Name                                              Reference

     ----        --------------                                    -------------

     0x08        Context Label Space ID Extended Community         This document








Please add a security considerations section

Please update the references of drafts that have become RFCs now.

Here are the list of nits related to references:


  Checking references for intended status: Proposed Standard

  ----------------------------------------------------------------------------



     (See RFCs 3967 and 4897 for information about using normative references

     to lower-maturity documents in RFCs)



  == Missing Reference: 'RFC 8279' is mentioned on line 152, but not defined



  == Missing Reference: 'BIER-MVPN' is mentioned on line 155, but not defined



  == Missing Reference: 'BIER-EVPN' is mentioned on line 155, but not defined



  == Missing Reference: 'RFC 6514' is mentioned on line 235, but not defined



  == Missing Reference: 'EVPN-BUM' is mentioned on line 294, but not defined



  == Unused Reference: 'I-D.ietf-bess-evpn-bum-procedure-updates' is defined

     on line 580, but no explicit reference was found in the text



  == Outdated reference: draft-ietf-bier-mvpn has been published as RFC 8556



  == Outdated reference: draft-ietf-spring-segment-routing has been published

     as RFC 8402



“



Juniper Business Use Only