Re: [bess] Mirja Kühlewind's No Objection on draft-ietf-bess-evpn-df-election-framework-07: (with COMMENT)

"Rabadan, Jorge (Nokia - US/Mountain View)" <jorge.rabadan@nokia.com> Tue, 15 January 2019 15:49 UTC

Return-Path: <jorge.rabadan@nokia.com>
X-Original-To: bess@ietfa.amsl.com
Delivered-To: bess@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 08E37130E78; Tue, 15 Jan 2019 07:49:49 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.454
X-Spam-Level:
X-Spam-Status: No, score=-6.454 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-4.553, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=nokia.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1l8voi1vhhuh; Tue, 15 Jan 2019 07:49:46 -0800 (PST)
Received: from EUR01-DB5-obe.outbound.protection.outlook.com (mail-eopbgr150138.outbound.protection.outlook.com [40.107.15.138]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 37538130E66; Tue, 15 Jan 2019 07:49:46 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nokia.onmicrosoft.com; s=selector1-nokia-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Tf6aNlc7YeM0oTPldEEh5bUWL2X0TgExsm4bYsXNw9I=; b=QkWpF2VEFxBpTL2qMYN1Emu3olfzywjsIHHHh6Q3yRI+Tus74LMFVvMFtDyiJkHX/jaIAiPmo2DkjGDu7sJM+kLDzHFp75VSSuuRGQtU9Bbsz+vjA6UIZc8l9ecJykdwHsuOdT99fiaTwqxHLe419Y5IA0nvzKLFbAqf0rYI+GQ=
Received: from AM0PR07MB3844.eurprd07.prod.outlook.com (52.134.82.20) by AM0PR07MB4563.eurprd07.prod.outlook.com (52.135.151.32) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1537.16; Tue, 15 Jan 2019 15:49:42 +0000
Received: from AM0PR07MB3844.eurprd07.prod.outlook.com ([fe80::a043:32e8:b786:3486]) by AM0PR07MB3844.eurprd07.prod.outlook.com ([fe80::a043:32e8:b786:3486%5]) with mapi id 15.20.1537.018; Tue, 15 Jan 2019 15:49:42 +0000
From: "Rabadan, Jorge (Nokia - US/Mountain View)" <jorge.rabadan@nokia.com>
To: Mirja Kühlewind <ietf@kuehlewind.net>, The IESG <iesg@ietf.org>
CC: "draft-ietf-bess-evpn-df-election-framework@ietf.org" <draft-ietf-bess-evpn-df-election-framework@ietf.org>, Stephane Litkowski <stephane.litkowski@orange.com>, "bess-chairs@ietf.org" <bess-chairs@ietf.org>, "bess@ietf.org" <bess@ietf.org>
Thread-Topic: Mirja Kühlewind's No Objection on draft-ietf-bess-evpn-df-election-framework-07: (with COMMENT)
Thread-Index: AQHUqNXpNXzO3DF7MEGEF5HUTuJwLKWwSc4A
Date: Tue, 15 Jan 2019 15:49:42 +0000
Message-ID: <9E27CDD8-B8F8-4B81-8FA5-430C7D874CF7@nokia.com>
References: <154711897687.30744.6994568426872803131.idtracker@ietfa.amsl.com>
In-Reply-To: <154711897687.30744.6994568426872803131.idtracker@ietfa.amsl.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.15.0.190108
authentication-results: spf=none (sender IP is ) smtp.mailfrom=jorge.rabadan@nokia.com;
x-originating-ip: [135.245.20.26]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; AM0PR07MB4563; 6:U+mZCzMwAzE3CS8dP9Ua7e25cTgFVARX5HtsaKEBNm+ns5pwSM4N4RYJVkcMAUgeU5xIvZLmkGZRyf5XXDz1mNy60Zx0FXlsi6ypO/BvEDo4Es9vUo5qGYtqmNrd2YXycMOj9osKgGxCWcZwby9a9WH5VYoc+5foCwlvrrApT9HL8gZEuBLwvgdi+PEBol7ZCuF8qkYD4n3SQ2ahqpmbVwj1G3zMz4uP/7FpOdnHNSs+mY7r1ozv89P81oTIYxPNdBwt776Lue/sjSZA9ei2CRL4thAfafTYe+SgZMbcvfBIOU/00UF34O6MO0fMzNEtwdPTkTQtd+5MS7N+GSEfQbQ6rTSIUJgPE/asxS1pcQxWtx89XRU6kMbj8r0e6Ll9vw3QjirI+ZOizXdQkwGUq3ieNqI1kMgCUlza92JlSOcsgjLJ4I+iVqqeSddHD/C4C2KvMH5Qu2pITrYGeDIvCA==; 5:uQkkLcLv8UTi8hlL9GZXDsb5dLnHUNp15Z5523QXF3ihJ7CenxhAfCOC9PBFcIF9/H5169LG1UDx+ENiOGSZ1UoRAmWKHM8SKSpmldcO4LKr/uafFTVCRoTtNsnDi27h4YV9fb9oMvq8tGr7TXYFIRfGTG8U15/DJITaYRc4nKH3xtWg0IgXMbtQWjwCzEYryXjP+vdn1kTZ54oxUB9JkA==; 7:Z0OKxLo8G74IzPMvKGxp82NNT3s1Mmiw2AR5P58uSUfiU4RtU4ynn9OlmaXxNU0P2geBl6SSHuNdQpqr+WKvFPprNOQUnzRqQtDjWdFe9yHP0UA1rIB9ND2Zi71buoUDlx0gr3zWqyaRhVBHlJiDsg==
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-ms-office365-filtering-correlation-id: 2445f248-6376-43c7-a2f8-08d67b0110d2
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600109)(711020)(4618075)(2017052603328)(7193020); SRVR:AM0PR07MB4563;
x-ms-traffictypediagnostic: AM0PR07MB4563:
x-microsoft-antispam-prvs: <AM0PR07MB4563A76C3B08CA9B3984A7BFF7810@AM0PR07MB4563.eurprd07.prod.outlook.com>
x-forefront-prvs: 0918748D70
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(396003)(376002)(346002)(366004)(136003)(39860400002)(199004)(189003)(13464003)(486006)(106356001)(224313004)(14454004)(105586002)(8936002)(224303003)(82746002)(66066001)(99286004)(33656002)(3846002)(6116002)(68736007)(5660300001)(14444005)(256004)(36756003)(305945005)(6436002)(4326008)(446003)(25786009)(66574012)(97736004)(58126008)(6512007)(7736002)(966005)(2616005)(229853002)(2906002)(476003)(110136005)(86362001)(6486002)(478600001)(102836004)(54906003)(186003)(316002)(26005)(81166006)(53936002)(6306002)(71200400001)(83716004)(11346002)(71190400001)(81156014)(6246003)(6506007)(53546011)(76176011); DIR:OUT; SFP:1102; SCL:1; SRVR:AM0PR07MB4563; H:AM0PR07MB3844.eurprd07.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: nokia.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: QW1P2rY9/qWApl1Q4YcahQuU+Mkt8f09V1odMYY3dc+6IAHxhV00Kmo3yBjvL3e8zmupTaekDImdTY1JEWZ17oTv8R7BaP0o9sXRjAjwREX1MLPIsmFA+Ez+hfxlOmQ2nqt7pc+ysrhQLnVpTJdBKRVizNhaUP2wp+zCMaDbDS9++6RwT1FzzvyazvqP+vh6WTqkowTVjTY7Bl4GUQ8Nrypvd0WY2MEkz9vEbl1M+2ApoEtLd1x+4XMkI0gITBR9OWGRQOdYQefw9LzOeLjAymHtIYBZvRXY34Lu41EP+XPyfe/aRvt1tQs3jknKetFqzQQh6UTHjWOHzE6MTBlw1ILCTm9ZO3pThPKa0KQWb+qOi9x3GebGWaMHhcLj8/zh+dX0DcDxXtluj8HAbRvMguCk977smiDqkyLmVRzpBs4=
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-ID: <DA37A31D3C2C91499B4C1C9FA15F9108@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: nokia.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 2445f248-6376-43c7-a2f8-08d67b0110d2
X-MS-Exchange-CrossTenant-originalarrivaltime: 15 Jan 2019 15:49:42.5976 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5d471751-9675-428d-917b-70f44f9630b0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM0PR07MB4563
Archived-At: <https://mailarchive.ietf.org/arch/msg/bess/PInylxhlvUEuQDncPGKCpvGwB3E>
Subject: Re: [bess] Mirja Kühlewind's No Objection on draft-ietf-bess-evpn-df-election-framework-07: (with COMMENT)
X-BeenThere: bess@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: BGP-Enabled ServiceS working group discussion list <bess.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/bess>, <mailto:bess-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/bess/>
List-Post: <mailto:bess@ietf.org>
List-Help: <mailto:bess-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/bess>, <mailto:bess-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 15 Jan 2019 15:49:49 -0000

Mirja,

Thank you very much for reviewing.
Please see in-line with [JORGE].
Thx
Jorge

-----Original Message-----
From: Mirja Kühlewind <ietf@kuehlewind.net>
Date: Thursday, January 10, 2019 at 12:16 PM
To: The IESG <iesg@ietf.org>
Cc: "draft-ietf-bess-evpn-df-election-framework@ietf.org" <draft-ietf-bess-evpn-df-election-framework@ietf.org>, Stephane Litkowski <stephane.litkowski@orange.com>, "bess-chairs@ietf.org" <bess-chairs@ietf.org>, "stephane.litkowski@orange.com" <stephane.litkowski@orange.com>, "bess@ietf.org" <bess@ietf.org>
Subject: Mirja Kühlewind's No Objection on draft-ietf-bess-evpn-df-election-framework-07: (with COMMENT)
Resent-From: <alias-bounces@ietf.org>
Resent-To: <jorge.rabadan@nokia.com>, <satyamoh@cisco.com>, <sajassi@cisco.com>, <jdrake@juniper.net>, <kiran.nagaraj@nokia.com>, <senthil.sathappan@nokia.com>
Resent-Date: Thursday, January 10, 2019 at 12:16 PM

    Mirja Kühlewind has entered the following ballot position for
    draft-ietf-bess-evpn-df-election-framework-07: No Objection
    
    When responding, please keep the subject line intact and reply to all
    email addresses included in the To and CC lines. (Feel free to cut this
    introductory paragraph, however.)
    
    
    Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
    for more information about IESG DISCUSS and COMMENT positions.
    
    
    The document, along with other ballot positions, can be found here:
    https://datatracker.ietf.org/doc/draft-ietf-bess-evpn-df-election-framework/
    
    
    
    ----------------------------------------------------------------------
    COMMENT:
    ----------------------------------------------------------------------
    
    First one minor editorial comment:
    Sec 3.2 "Otherwise if even a single advertisement for the type-4 route is
           not received with the locally configured DF Alg and capability,
           the Default DF Election algorithm (modulus) algorithm MUST be
           used as in [RFC7432]."
    I believe you meant a single advertisement is received without the configured
    DF Alg and capability (or a different one I guess), and not that the
    advertisement is not received at all (because that might be hard to check),
    right? Maybe you can rephrase this sentence a bit to make the intention more
    clear!
[JORGE] we changed it to the following:
" - Otherwise if even a single advertisement for the type-4 route is received without the locally configured DF Alg and capability, the Default DF Election..."
    
    However, think about this further, I wondering if there is something here that
    such be discussed in the security considerations, e.g. how easy would it be for
    an attacker to disturb the algo selection and cause a fallback to the default
    scheme...?
[JORGE] yep, good point. We added this in the security section, also based on the comments from another reviewer:
"Note that the network will not benefit of the new procedures if the DF Election Alg is not consistently configured on all the PEs in the ES (if there is no unanimity among all the PEs, the DF Election Alg falls back to the Default [RFC7432] DF Election)."