[bess] Re: My question/comment aboutdraft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Wei Wang <weiwang94@foxmail.com> Mon, 04 August 2025 08:31 UTC
Return-Path: <weiwang94@foxmail.com>
X-Original-To: bess@mail2.ietf.org
Delivered-To: bess@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 8C79F4F5A01A; Mon, 4 Aug 2025 01:31:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: 1.09
X-Spam-Level: *
X-Spam-Status: No, score=1.09 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_ENVFROM_END_DIGIT=0.25, FREEMAIL_FROM=0.001, FROM_EXCESS_BASE64=0.001, HELO_DYNAMIC_IPADDR=1.951, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H4=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_VALIDITY_SAFE_BLOCKED=0.001, RDNS_DYNAMIC=0.982, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (1024-bit key) header.d=foxmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id mSuqpcW_ob4e; Mon, 4 Aug 2025 01:31:36 -0700 (PDT)
Received: from out203-205-221-173.mail.qq.com (out203-205-221-173.mail.qq.com [203.205.221.173]) (using TLSv1.2 with cipher ECDHE-ECDSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 30A7D4F5A00A; Mon, 4 Aug 2025 01:31:33 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=foxmail.com; s=s201512; t=1754296277; bh=6XfPYT5NhaHNWGEr+wFc10vP1YIqBtEC6r8XxMvEcZw=; h=From:To:Subject:Date:References:In-Reply-To; b=Gc11d5z8cjwS1kbBKAWE6Y/sa3AS8ocXaO+lMCHh4sXIv+f7JgA7JciTYu6RQfqT0 Qwp1+JZwtI6yXdYxtH+16uzunoGn85Pugacaihe0Xp8cG4ezfoE/0FogfLn1Wbm8IF ekKyq77q9BWejEmy1WRUvG0ioDYMLPngqIrGil2Q=
X-QQ-XMRINFO: NI4Ajvh11aEj8Xl/2s1/T8w=
X-QQ-XMAILINFO: Ncpnai4dwVTHop42afzis+Mp4eFJRV5U5LaEv/hCGPyxNZ0dztpmR8L/bfiUUE MTVUMROdwG23IFGn/Q781wOmtZb/ePNfPPHHuqngU/dkUdQRy3DJNNbvGuqX8VdIAtYANpDZPuS7J dDpQcPehgdsl14rl51ekrTZ47ctC0Dt6MFYza3suMyjLNhlXr4r1nlLiMUB/fScRwhmzSJVK6Q4bD BylS0jMfFt8f7Fdk1OR/XAGsUi/epozRBXD1qZIMdvhWEJOg4tfw48gNCkCgpmJKSx++0R/B/VXRH CuKa9RGn+xpCvaZCaWnLcy2forvlLI6j0ly/35h6ziMjYts8sz2/0wWVFnFWAjRuWWwg0ZeQXoWUG f8TjIRebHRP7K9lTZv4xRANcd52xVcJ5XEzkuR7cW0/aMu026T+JgizSzwpqNxzq6/Pj+gClhKl6Q Qc/jdOoKLVKl7egMbyWZlSQYrCLJMCV+1uQFhiUCL1qE0tz2y2JG3SMNQZit9LRnBCQeczOPXGfSK FzPfawSFC0X7sdcJXJWALh8Xba9cc6ARumalmt5zGYQFNkdXx08CgKUjrDhaCzujgtGPaCil2oA28 g1YhYbZhnNdBpisePIkqttKb6cFODIqTnNxMDpLPkgxZ1zMw9xOsNXDYXt3Q4SmKKV77tEhBLHnjA hLWaEFOKcwI2BASsn+SbygMJOk5ltxfmyByvDNPvlPI9IqO7oKxa5NhzM1FklzRlSrwp9Gzs0BRKZ TvNH0grACs79o5Kq2tlERroacLq6GqFehysZfZ8PIs9kL6hpZfTARuSCr2I1Xz8oZFXeuU/wDLGMR clKLK4dbutsSojt4PbULAlVg0zfaHFm07qf0RKJ33GxWZfSRv958vK4xaKJ60mvPB44JPvdGY18Fv xoKjpecXIzsnoOTOd4olcHpTvNk8Nbk7Ul8puavUQ1bIEVP9pnCRQGdhZKvdpQn1Qrt2WH8l8bEHi HGw0lV3YiDUEnLPvQ48ZQphgc8aU/dwuhHfvP0BVXjldopdUUTCCvtLbVvRVxAsq4h1XTqOQrmGbb EQ7FYL4f5/xi/fVf2Zjwg+JltWjQrqqlcDjN9YEdPIktWCvO9oq9lDEC/qQ==
From: Wei Wang <weiwang94@foxmail.com>
To: "Ali Sajassi (sajassi)" <sajassi@cisco.com>, Aijun Wang <wangaijun@tsinghua.org.cn>, 'Alexander Vainshtein' <alexander.vainshtein@rbbn.com>, "bess@ietf.org" <bess@ietf.org>, "draft-wang-bess-l3-accessible-evpn.authors@ietf.org" <draft-wang-bess-l3-accessible-evpn.authors@ietf.org>
Mime-Version: 1.0
Content-Type: multipart/alternative; boundary="----=_NextPart_68906FD4_8F64F460_28D6A35E"
Content-Transfer-Encoding: 8bit
Date: Mon, 04 Aug 2025 16:31:16 +0800
X-Priority: 3
Message-ID: <tencent_4A9DAD25532B2AA34DBF3D4C8F742E6CFE05@qq.com>
X-QQ-MIME: TCMime 1.0 by Tencent
X-Mailer: QQMail 2.x
X-QQ-Mailer: QQMail 2.x
References: <PH0PR03MB6300A94D728B1EB828D0F44AF65EA@PH0PR03MB6300.namprd03.prod.outlook.com> <015301dbfcc3$e8f9aa20$baecfe60$@tsinghua.org.cn> <DS0PR11MB7734F924711A1574855DD370B05EA@DS0PR11MB7734.namprd11.prod.outlook.com> <001301dbfd41$2fad26e0$8f0774a0$@tsinghua.org.cn> <DS0PR11MB77342C403B0C8D70321CA49DB059A@DS0PR11MB7734.namprd11.prod.outlook.com> <tencent_FD629459DB473B8FDED8DCD37C3F5B752606@qq.com> <DS0PR11MB7734661096EE00BF0D4B8AF8B027A@DS0PR11MB7734.namprd11.prod.outlook.com> <tencent_17C17C19DB71A66354611B417B9C1EE19C06@qq.com> <DS0PR11MB77342780F5688818EA3DB5D9B026A@DS0PR11MB7734.namprd11.prod.outlook.com>
In-Reply-To: <DS0PR11MB77342780F5688818EA3DB5D9B026A@DS0PR11MB7734.namprd11.prod.outlook.com>
X-QQ-mid: xmseza31-0t1754296276tnuppoyy3
Message-ID-Hash: G2OBSDM4NFRHHVMSX2QDNVV6F5ZCK4O4
X-Message-ID-Hash: G2OBSDM4NFRHHVMSX2QDNVV6F5ZCK4O4
X-MailFrom: weiwang94@foxmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-bess.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [bess] Re: My question/comment aboutdraft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
List-Id: BGP-Enabled ServiceS working group discussion list <bess.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/bess/fv72yYe0zxC3-mGHhwI_rsobvrM>
List-Archive: <https://mailarchive.ietf.org/arch/browse/bess>
List-Help: <mailto:bess-request@ietf.org?subject=help>
List-Owner: <mailto:bess-owner@ietf.org>
List-Post: <mailto:bess@ietf.org>
List-Subscribe: <mailto:bess-join@ietf.org>
List-Unsubscribe: <mailto:bess-leave@ietf.org>
Hi Ali,
Customer service segmentation is based on the Logical Access Identifier (LSI, i.e., access VNI) rather than the VLAN information in the original customer data. The main reasons are as follows:
1) The original customer data may not contain VLAN information. If this field is to be reused, it would be necessary to convert LSI/VNI to VLAN on the ingress PE side and then convert VLAN back to LSI/VNI on the egress PE side. Such conversions also require extensions in the control plane to transmit the corresponding relationship between LSI/VNI and VLAN. In addition, at the forwarding plane, the VLAN space is limited, making it unable to accommodate more branch customers under the same EVPN.
2) In our solution, service segmentation is based on branch sites within each metropolitan area network, rather than the VLAN information within the sites.
Best Regards,
Wei
原始邮件
发件人:Ali Sajassi (sajassi) <sajassi@cisco.com>
发件时间:2025年8月2日 02:17
收件人:Wei Wang <weiwang94@foxmail.com>, Aijun Wang <wangaijun@tsinghua.org.cn>, 'Alexander Vainshtein' <alexander.vainshtein@rbbn.com>, bess@ietf.org <bess@ietf.org>, draft-wang-bess-l3-accessible-evpn.authors@ietf.org <draft-wang-bess-l3-accessible-evpn.authors@ietf.org>
主题:Re: [bess] Re: My question/comment aboutdraft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Hi Wei,
What you want to do is already supported by current RFCs and specifications.
Use EVPN-VPWS service to setup a PW identified by the access VNI to carry your VLANs traffic to your core PE. This PWs carries traffic for several VIDs and it is terminated on the core PE.
The core PE uses the concept of EVPN vES to map each VID to a different BD.
For encapsulation over the core network for VLAN-aware bundle service, you have two options: a) to use core-VNI+VID to identify the BD on the receiving core PE or b) to use core-VNI alone to identify the BD. In the latter case, each BD gets mapped to a core-VNI. The choice is up to the receiving PE and transparent to the transmitting PE!
Therefore, I don’t see any need for a new encapsulation and your proposal.
Cheers,
Ali
From: Wei Wang <weiwang94@foxmail.com>
Date: Friday, August 1, 2025 at 12:50 AM
To: Ali Sajassi (sajassi) <sajassi@cisco.com>, Aijun Wang <wangaijun@tsinghua.org.cn>, 'Alexander Vainshtein' <alexander.vainshtein@rbbn.com>, bess@ietf.org <bess@ietf.org>, draft-wang-bess-l3-accessible-evpn.authors@ietf.org <draft-wang-bess-l3-accessible-evpn.authors@ietf.org>
Subject: Re: [bess] Re: My question/comment about draft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Hi Ali and Sasha,
Let’s use VLAN-aware bundle to clarify why we need both Access VNI (LSI) and Core VNI in one VxLAN header.
In traditional VLAN-aware bundle ([RFC7432]), multiple VIDs map to a single EVI. Isolation relies on VIDs (e.g., VID 10 vs. 20) to separate broadcast domains, even with overlapping MACs.
In our Layer 3 scenario (LSI-aware bundle, the L3 equivalent), VIDs are replaced by LSIs (Access VNIs) to retain that "broadcast domain ID" role, while the core EVI maps to a Core VNI.
If we only include Core VNI (no LSI), the core PE loses the LSI (like losing VID) and can’t distinguish traffic from overlapping MACs in shared Core VNI—breaking isolation, just as losing VID would in VLAN-aware bundle.
Since standard VxLAN has only one VNI field, we extend it to carry both: Core VNI (for EVI) and LSI (for "VID-like" isolation).
Best regards,
Wei
原始邮件
发件人:Ali Sajassi (sajassi) <sajassi=40cisco.com@dmarc.ietf.org>
发件时间:2025年8月1日 00:59
收件人:Wei Wang <weiwang94@foxmail.com>, Aijun Wang <wangaijun@tsinghua.org.cn>, 'Alexander Vainshtein' <alexander.vainshtein@rbbn.com>, bess@ietf.org <bess@ietf.org>, draft-wang-bess-l3-accessible-evpn.authors@ietf.org <draft-wang-bess-l3-accessible-evpn.authors@ietf.org>
主题:[bess] Re: My question/comment about draft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Wei,
You said: "the critical challenge lies in how to physically encapsulate both in a single VxLAN packet to ensure end-to-end traffic isolation and correct mapping in a Layer 3 access scenario, which is not addressed by existing specifications.”
Please elaborate - i.e., give detailed explanation and use cases as to why both VNI need to be encapsulated in the same VxLAN packet. PWs are only stretched over access network (and NOT core network) and are terminated onto service VRF. Therefore, they are not needed between VRFs over the core network!
Cheers,
Ali
From: Wei Wang <weiwang94@foxmail.com>
Date: Wednesday, July 30, 2025 at 6:34 PM
To: Ali Sajassi (sajassi) <sajassi@cisco.com>, Aijun Wang <wangaijun@tsinghua.org.cn>, 'Alexander Vainshtein' <alexander.vainshtein@rbbn.com>, bess@ietf.org <bess@ietf.org>, draft-wang-bess-l3-accessible-evpn.authors@ietf.org <draft-wang-bess-l3-accessible-evpn.authors@ietf.org>
Subject: Re: [bess] Re: My question/comment about draft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Hi Ali,
Thanks for your perspective. While we agree that the access EVPN-VPWS VNI and backbone VxLAN VNI are logically independent in terms of their roles—similar to MPLS labels or Q-tags—the critical challenge lies in how to physically encapsulate both in a single VxLAN packet to ensure end-to-end traffic isolation and correct mapping in a Layer 3 access scenario, which is not addressed by existing specifications.
Our proposal addresses this by extending the VxLAN header with an "S" flag and a 16-bit LSI field. When the "S" flag is set, the LSI field carries the access PW VNI, while the original VNI field retains the backbone VNI—enabling both identifiers to coexist in one packet . This extension is precisely to bridge the gap between logical independence and practical encapsulation requirements in Layer 3 access scenarios.
Best Regards,
Wei
原始邮件
发件人:Ali Sajassi (sajassi) <sajassi=40cisco.com@dmarc.ietf.org>
发件时间:2025年7月26日 01:03
收件人:Aijun Wang <wangaijun@tsinghua.org.cn>, 'Alexander Vainshtein' <alexander.vainshtein@rbbn.com>, bess@ietf.org <bess@ietf.org>, draft-wang-bess-l3-accessible-evpn.authors@ietf.org <draft-wang-bess-l3-accessible-evpn.authors@ietf.org>
主题:[bess] Re: My question/comment about draft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Hi Aiju,
The answer to your question is very easy. The access EVPN-VPWS VNI (representing a PW) is independent from the backbone EVPN VxLAN VNI representing ELAN, E-TREE, or IRB service just like the access MPLS label for PW is independent from backbone EVPN MPLS label representing ELAN, E-TREE, or IRB service, just like Q-tag or Q-in-Q tag in the access is independent from VNI or MPLS label in the backbone.
You should keep in mind that VNI does NOT need to be global. It can be domain specific and even down-stream assigned!
Cheers,
Ali
From: Aijun Wang <wangaijun@tsinghua.org.cn>
Date: Friday, July 25, 2025 at 1:50 AM
To: Ali Sajassi (sajassi) <sajassi@cisco.com>, 'Alexander Vainshtein' <Alexander.Vainshtein@rbbn.com>, bess@ietf.org <bess@ietf.org>, draft-wang-bess-l3-accessible-evpn.authors@ietf.org <draft-wang-bess-l3-accessible-evpn.authors@ietf.org>
Subject: RE: [bess] Re: My question/comment about draft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Hi, Ali:
It’s relatively easy to incorporate the MPLS based pseudowire into EVPN, as that described in RFC9784.
But, it is not easy to incorporate the VxLAN based PW into EVPN, although they are all VPWS.
draft-wang-bess-l3-accessible-evpn wants just to fit the gap.
Or else, would you like to tell us how to encapsulate the access PW VNI information, together with the backbone VxLAN VNI information in the normal VxLAN packet?
Best Regards
Aijun Wang
China Telecom
From: forwardingalgorithm@ietf.org <forwardingalgorithm@ietf.org> On Behalf Of Ali Sajassi (sajassi)
Sent: Friday, July 25, 2025 1:10 AM
To: Aijun Wang <wangaijun@tsinghua.org.cn>; 'Alexander Vainshtein' <Alexander.Vainshtein=40rbbn.com@dmarc.ietf.org>; bess@ietf.org; draft-wang-bess-l3-accessible-evpn.authors@ietf.org
Subject: [bess] Re: My question/comment about draft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Sasha,
Thanks for your question as I couldn’t figure out what this draft was trying to do on my quick glance ☺
Aijun,
EVPN-VPWS (RFC8214) applies to both MPLS and VxLAN as described in the document. Furthermore, although RFC9784 is written with MPLS access network as an example, it can easily be applied to VxLAN access since a VPWS instance can be either per RFC8214.
So, in light of these two RFCs, are there anything that you want to do that is not covered by these two RFCs?
Cheers,
Ali
From: Aijun Wang <wangaijun@tsinghua.org.cn>
Date: Thursday, July 24, 2025 at 10:54 AM
To: 'Alexander Vainshtein' <Alexander.Vainshtein=40rbbn.com@dmarc.ietf.org>, bess@ietf.org <bess@ietf.org>, draft-wang-bess-l3-accessible-evpn.authors@ietf.org <draft-wang-bess-l3-accessible-evpn.authors@ietf.org>
Subject: [bess] Re: My question/comment about draft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Hi, Sasha:
Using the concept of virtual segment in RFC 9784 to access the core EVPN service is similar with our proposal.
The difference is that in RFC 9784, the access network is one MPLS based network, the PW can be identified by the corresponding MPLS label.
But, in our proposal, the access network is one Layer 3 Native IP network, there is no MPLS deployed in the access network.
Then, some new solution (especially how to identify the logical session, how to transfer them via the control plane and how to encapsulate them in the VxLAN packet should be defined.
Does the above explanation address your concerns?
If so, we can add some procedure description for our proposal according to another expert’s comments.
Thanks!
Best Regards
Aijun Wang
China Telecom
From: forwardingalgorithm@ietf.org <forwardingalgorithm@ietf.org> On Behalf Of Alexander Vainshtein
Sent: Thursday, July 24, 2025 5:48 PM
To: bess@ietf.org; draft-wang-bess-l3-accessible-evpn.authors@ietf.org
Subject: [bess] My question/comment about draft-wang-bess-l3-accessible-evpn-10 at the BESS WG session today
Hi all,
Just to repeat my question/comment asked at the BESS WG session in Madrid today:
I have asked whether the authors considered using the PWs crossing the L3 domains as Virtual Ethernet Segments as described in Section 1.3 of RFC 9784?
At the first glance, this could address all the problems with which this draft tries to cope.
Regards,
Sasha
Disclaimer
This e-mail together with any attachments may contain information of Ribbon Communications Inc. and its Affiliates that is confidential and/or proprietary for the sole use of the intended recipient. Any review, disclosure, reliance or distribution by others or forwarding without express permission is strictly prohibited. If you are not the intended recipient, please notify the sender immediately and then delete all copies, including any attachments.
- [bess] Re: My question/comment about draft-wang-b… Aijun Wang
- [bess] My question/comment about draft-wang-bess-… Alexander Vainshtein
- [bess] Re: My question/comment about draft-wang-b… Ali Sajassi (sajassi)
- [bess] Re: My question/comment about draft-wang-b… Aijun Wang
- [bess] Re: My question/comment about draft-wang-b… Ali Sajassi (sajassi)
- [bess] Re: My question/comment about draft-wang-b… Wei Wang
- [bess] Re: [EXTERNAL] Re: Re: My question/comment… Alexander Vainshtein
- [bess] Re: [EXTERNAL] Re: Re: My question/comment… Ali Sajassi (sajassi)
- [bess] Re: My question/comment about draft-wang-b… Ali Sajassi (sajassi)
- [bess] Re: My question/comment about draft-wang-b… Wei Wang
- [bess] Re: [EXTERNAL] Re: Re: My question/comment… Alexander Vainshtein
- [bess] Re: [EXTERNAL] Re: Re: My question/comment… Alexander Vainshtein
- [bess] Re: My question/comment about draft-wang-b… Ali Sajassi (sajassi)
- [bess] Re: My question/comment aboutdraft-wang-be… Alexander Vainshtein
- [bess] Re: My question/comment aboutdraft-wang-be… Wei Wang
- [bess] Re: My question/comment aboutdraft-wang-be… Ali Sajassi (sajassi)
- [bess] Re: My question/comment aboutdraft-wang-be… Aijun Wang
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Alexander Vainshtein
- [bess] Re: My question/comment aboutdraft-wang-be… Ali Sajassi (sajassi)
- [bess] Re: My question/comment aboutdraft-wang-be… Aijun Wang
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Alexander Vainshtein
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Aijun Wang
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Alexander Vainshtein
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Aijun Wang
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Ali Sajassi (sajassi)
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Aijun Wang
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Alexander Vainshtein
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Jeffrey (Zhaohui) Zhang
- [bess] Re: My question/comment about draft-wang-b… Aijun Wang
- [bess] Re: My question/comment about draft-wang-b… Alexander Vainshtein
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Wei Wang
- [bess] Re: [EXTERNAL] RE: Re: My question/comment… Gyan Mishra