Re: [bess] draft-mohanty-bess-evpn-bum-opt-00 - clarification on problem description

"Ali Sajassi (sajassi)" <sajassi@cisco.com> Sat, 24 March 2018 16:53 UTC

Return-Path: <sajassi@cisco.com>
X-Original-To: bess@ietfa.amsl.com
Delivered-To: bess@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 016C212D7E6 for <bess@ietfa.amsl.com>; Sat, 24 Mar 2018 09:53:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.511
X-Spam-Level:
X-Spam-Status: No, score=-14.511 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4lUTjbUqFqUE for <bess@ietfa.amsl.com>; Sat, 24 Mar 2018 09:53:45 -0700 (PDT)
Received: from rcdn-iport-5.cisco.com (rcdn-iport-5.cisco.com [173.37.86.76]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2E41C126D05 for <bess@ietf.org>; Sat, 24 Mar 2018 09:53:45 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=19636; q=dns/txt; s=iport; t=1521910425; x=1523120025; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=P05jlgnSqlrOecX4rDJJiqz68DL9LIRm8JuIoMwgYQo=; b=CecKpP4D++xJP8lIsm/WhrvkXFeIw8OgfzTyZF2mUG3oV4AYuC9potPl O+zXi6rgX05YM7IY3kV61AOV/3afnrVD4Ud0yuULYji2GNz/nnl9sdINe QYvD8rO/lfvQGcuaHI8kgriUSa0iNChKX38CPryE41YSvgf154Yse076M 4=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0BgAQA1grZa/5RdJa1dGQEBAQEBAQEBAQEBAQcBAQEBAYJNdGFwKAqDUogAjQ6BUyGBEY1shGUUgXILhQUCGoNWITQYAQIBAQEBAQECayiFJQEBAQQjVhACAQgRAwECFhUCAgIwHQgCBAENBR6EDGSqF4IgiD+CGoU+ghqCFIEMIgyCWYQuEgELBwE2CR+CQjCCJAOIDIg+hnUIAogfhhAKgSaEKIZhhyaELIN9AhETAYEkARw4YXFwFWQBghgJghgYEo4FbwGOJwUKGIEIgRcBAQ
X-IronPort-AV: E=Sophos;i="5.48,355,1517875200"; d="scan'208,217";a="154082918"
Received: from rcdn-core-12.cisco.com ([173.37.93.148]) by rcdn-iport-5.cisco.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 24 Mar 2018 16:53:41 +0000
Received: from XCH-RTP-003.cisco.com (xch-rtp-003.cisco.com [64.101.220.143]) by rcdn-core-12.cisco.com (8.14.5/8.14.5) with ESMTP id w2OGrfxK010844 (version=TLSv1/SSLv3 cipher=AES256-SHA bits=256 verify=FAIL); Sat, 24 Mar 2018 16:53:41 GMT
Received: from xch-rtp-005.cisco.com (64.101.220.145) by XCH-RTP-003.cisco.com (64.101.220.143) with Microsoft SMTP Server (TLS) id 15.0.1320.4; Sat, 24 Mar 2018 12:53:40 -0400
Received: from xch-rtp-005.cisco.com ([64.101.220.145]) by XCH-RTP-005.cisco.com ([64.101.220.145]) with mapi id 15.00.1320.000; Sat, 24 Mar 2018 12:53:40 -0400
From: "Ali Sajassi (sajassi)" <sajassi@cisco.com>
To: "Rabadan, Jorge (Nokia - US/Mountain View)" <jorge.rabadan@nokia.com>, Eric C Rosen <erosen@juniper.net>, Sandy Breeze <sandy.breeze@eu.clara.net>, "bess@ietf.org" <bess@ietf.org>
CC: "Ali Sajassi (sajassi)" <sajassi@cisco.com>
Thread-Topic: [bess] draft-mohanty-bess-evpn-bum-opt-00 - clarification on problem description
Thread-Index: AQHTwTLSpKI1nWgbp0ukIa0wdFUT3aPcjBmAgAAQ+ICAAputgA==
Date: Sat, 24 Mar 2018 16:53:40 +0000
Message-ID: <ECF669F4-780E-4063-BEE0-5D2201729C68@cisco.com>
References: <53C24F41-B86F-4FE1-8041-721C95C7E7F0@nokia.com> <b4272e23-0b57-bc23-0840-4a4eb0991966@juniper.net> <373D0F59-2947-4370-9BDC-081E03867B2E@nokia.com>
In-Reply-To: <373D0F59-2947-4370-9BDC-081E03867B2E@nokia.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.b.0.180311
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.24.22.103]
Content-Type: multipart/alternative; boundary="_000_ECF669F4780E4063BEE05D2201729C68ciscocom_"
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/bess/m_VZWWAykq26DdTxRafKihABVq8>
Subject: Re: [bess] draft-mohanty-bess-evpn-bum-opt-00 - clarification on problem description
X-BeenThere: bess@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: BGP-Enabled ServiceS working group discussion list <bess.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/bess>, <mailto:bess-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/bess/>
List-Post: <mailto:bess@ietf.org>
List-Help: <mailto:bess-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/bess>, <mailto:bess-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 24 Mar 2018 16:53:48 -0000

Eric, Jorge,

At the time I wrote RFC 7432, I had an implicit assumption that IMET routes advertisement is based on EVI/BD configuration only and thus it is not dependent on failure scenario, single-homing scenario, etc. If there was not a better option to solve Sandy’s use case, then I would have been OK with IMET advertisement suppression but I think there is (refer to my previous email). So, let’s evaluate all our options here.

Cheers,
Ali

From: BESS <bess-bounces@ietf.org> on behalf of "Rabadan, Jorge (Nokia - US/Mountain View)" <jorge.rabadan@nokia.com>
Date: Thursday, March 22, 2018 at 7:58 AM
To: Eric C Rosen <erosen@juniper.net>, Sandy Breeze <sandy.breeze@eu.clara.net>, "bess@ietf.org" <bess@ietf.org>
Subject: Re: [bess] draft-mohanty-bess-evpn-bum-opt-00 - clarification on problem description

Eric,

The way the draft is described makes me think there are no IRB interfaces and this is limited to Ingress Replication. But should be clarified.

Also my interpretation of RFC7432 is that IMET routes are mandatory to enable the handling of multi-destination traffic in a BD. But in a non-DF PE for a given ES and with no other ACs in the BD, assuming Ingress Replication, there is no such multi-destination traffic (Tx or Rx). So one could interpret that RFC7432 is ok with withdrawing the IMET route in that case.

Assuming the above, my reasoning is that advertising/withdrawing an IMET route does not change any procedures or modifies any routes.

Other than that, I fully agree with you this is a corner case scenario. And if this goes one, it must explain clearly what the use-case is.

Thank you.
Jorge

From: Eric C Rosen <erosen@juniper.net>
Date: Thursday, March 22, 2018 at 1:57 PM
To: "Rabadan, Jorge (Nokia - US/Mountain View)" <jorge.rabadan@nokia.com>, Sandy Breeze <sandy.breeze@eu.clara.net>, "bess@ietf.org" <bess@ietf.org>
Subject: Re: [bess] draft-mohanty-bess-evpn-bum-opt-00 - clarification on problem description

On 3/21/2018 12:36 PM, Rabadan, Jorge (Nokia - US/Mountain View) wrote:


This scenario definitively helps understand the use-case better. Still a bit specific but I think you should add this scenario to the draft, and again, make it Informational since there is no control plane change for this.

If I understand correctly, the draft does make a control plane change, since it describes situations in which IMET routes should not be originated.  This contradicts RFC 7432, and so would have to be considered a update to that, and hence a standards track document.

Since I wasn't at the BESS meeting (but did watch the video), it's possible I missed some of the discussion, but from my reading of the draft, I have the following concerns.

I'm not sure the draft properly describes the situations in which one may omit the IMET route.  It describes the situation in which a PE doesn't need to propagate, on any of its ACs, BUM traffic that it receives from the backbone.  However, if the PE has IRB interfaces, doesn't it need to receive some of the BUM traffic in order to process that traffic itself?  For example, if a PE is configured to be  a PIM router attached to two Broadcast Domains, BD1 and BD2, won't it need to receive PIM Hellos from BD1, even if it doesn't actually propagate those out the local AC attaching it to BD1?

At the meeting a DF election scheme was proposed in which, for a given <ES,BD> pair, there could be a different DF for each(S,G)  multicast flow.  I don't think the draft takes this into account.  I wonder how many other scenarios there are which the draft fails to consider.

Many EVPN drafts have been written on the presumption that IMET routes will always be originated.  Some of the drafts add flags or communities to the IMET routes to advertise capabilities of one sort or another.  Every one of those drafts would need to be checked to see if it still works when some nodes do not originate IMET routes.

As future EVPN drafts are written, the authors (and reviewers) will now have to remember that they cannot presume that all the PEs attached to a given BD are originating IMET routes for that BD.   This creates more complexity, more corner cases, and ultimately, more specification bugs.

Still, one might consider adopting this complication if it were a big win.  But it only seems to apply to one specific (and not very common) scenario, and from the discussion at the microphone it wasn't clear to me that the co-authors are even on the same page about just what that scenario is (recall the discussion about whether the diagram in the draft does or does not depict the intended use case).