Re: [Detnet] Secdir last call review of draft-ietf-detnet-mpls-over-udp-ip-06

"Grossman, Ethan A." <eagros@dolby.com> Thu, 01 October 2020 17:43 UTC

Return-Path: <eagros@dolby.com>
X-Original-To: detnet@ietfa.amsl.com
Delivered-To: detnet@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id C6FB63A1181; Thu, 1 Oct 2020 10:43:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.101
X-Spam-Level:
X-Spam-Status: No, score=-2.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=dolby.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id q5NKrz2K2iGJ; Thu, 1 Oct 2020 10:43:58 -0700 (PDT)
Received: from NAM12-DM6-obe.outbound.protection.outlook.com (mail-dm6nam12on2109.outbound.protection.outlook.com [40.107.243.109]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 563CF3A1180; Thu, 1 Oct 2020 10:43:58 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=PdItf1ZY61oiWgm+13MdVlAdt6Bxw2sxkGDN1sFLawaTZESJHCPgEAqayIF8IfnN7oxq8S98vU/3thKHh2tT4CKHBowMqgNs2FLnE0hkNcc8IMXBzBg12URV0WVQPQnWuYI2L9JOg/bmnsuv5THP/mNRSw79FrpVLCgkCtrsMzRQxs5h/mLMGn9GvxWfNaVoxoCpEJSfPJkt6dQLl98Rdn4Vmm6bD1ag6j0O4TnCfydUFrgHj0c6SR5Am5UK2vPCqUAnBl0bYdCEz/VlSHT8LqLIr2NRQljw/OYlTIRYav9GQJHKHhdzKd31zcc45SIxpuphoziJ/Ybx3lFoTSxgEw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=CNbLkrWaUlyCC8ZlJtVTPcVRZxj8hnJM+fudrQQzQc4=; b=QlvzBvPodHkyHG/sqzmTlQh6wEfCX7+C8lH4w/nfgxkPoebDAPmbvCZ5n1ZgPWSgzOPJ1mKaEtv28eTIsCOru+vFm56UGIjV/uiGsBT3v7QWdyPcyosDEEKvZ3jkEISXy0qopQQaDpYxxlAmzkJuSJfLwCSkZbgDxnFdoIvZyg+MEfDawjLmK/KOC02znGQ/p1OjMvLaRXzcLxUQrD+IePpxYbkIreoIhv4HBwTc0pVOX/KlqfToqdue0lbhYSLX+nUOmZUbwizV3VEh/AHFeaDQr+qfe6Xnpys6ENiE5uY+ICI/QhDHFxOeIHovD+LchNvPnW5v5qbr+2EVqGyCeg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=dolby.com; dmarc=pass action=none header.from=dolby.com; dkim=pass header.d=dolby.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=dolby.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=CNbLkrWaUlyCC8ZlJtVTPcVRZxj8hnJM+fudrQQzQc4=; b=CbgFD0wbfmsmzdJ1mRAEMj3RTPg9eOFuWZekTA58PuZo6dDWQVyPODgvGTzzxN/voPmwllDGn+ai1n9HM2zjz7SRG7eotGmoLqoS8hkhtfdW2njriqDMYWHofdHJuWNYNLCYctfTbXf4kmb6KUsBtnrn+A6qzN4DNAhUlAFq4B8=
Received: from BY5PR06MB6611.namprd06.prod.outlook.com (2603:10b6:a03:23d::20) by BYAPR06MB5206.namprd06.prod.outlook.com (2603:10b6:a03:c1::23) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3412.25; Thu, 1 Oct 2020 17:43:55 +0000
Received: from BY5PR06MB6611.namprd06.prod.outlook.com ([fe80::6d84:5adb:4cb5:f730]) by BY5PR06MB6611.namprd06.prod.outlook.com ([fe80::6d84:5adb:4cb5:f730%8]) with mapi id 15.20.3433.038; Thu, 1 Oct 2020 17:43:55 +0000
From: "Grossman, Ethan A." <eagros@dolby.com>
To: Stewart Bryant <stewart.bryant@gmail.com>
CC: Stephen Farrell <stephen.farrell@cs.tcd.ie>, "secdir@ietf.org" <secdir@ietf.org>, "last-call@ietf.org" <last-call@ietf.org>, "detnet@ietf.org" <detnet@ietf.org>, "draft-ietf-detnet-mpls-over-udp-ip.all@ietf.org" <draft-ietf-detnet-mpls-over-udp-ip.all@ietf.org>
Thread-Topic: [Detnet] Secdir last call review of draft-ietf-detnet-mpls-over-udp-ip-06
Thread-Index: AQHWkp7QtLhjU0mW50S8oNMAEUQjo6l4Ol6ggAqq8oCAABDtoA==
Date: Thu, 01 Oct 2020 17:43:54 +0000
Message-ID: <BY5PR06MB66117B12B58117596F9C68BFC4300@BY5PR06MB6611.namprd06.prod.outlook.com>
References: <160097130665.26261.15986068503995393539@ietfa.amsl.com> <BY5PR06MB6611BE0705F79CB6C4FE8883C4390@BY5PR06MB6611.namprd06.prod.outlook.com> <3D90BF69-C0F5-4538-B029-D6D189463100@gmail.com>
In-Reply-To: <3D90BF69-C0F5-4538-B029-D6D189463100@gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: gmail.com; dkim=none (message not signed) header.d=none;gmail.com; dmarc=none action=none header.from=dolby.com;
x-originating-ip: [104.129.202.58]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 9fcd0191-ee5c-456e-f526-08d866319171
x-ms-traffictypediagnostic: BYAPR06MB5206:
x-microsoft-antispam-prvs: <BYAPR06MB5206212CC6CFEBB4E1F697F6C4300@BYAPR06MB5206.namprd06.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 63aZzuR4vXn23ylhdgHJx1r30xNSvVK+GjTkoPX4esISuUAkUuBAvpRR4GWYirPvb5pQd/YOISjdxkH18i62xxz0AGfJ8GKssuwWAcMSQpovzi/cr+OJXox+j6uJEV+Vj/QYaf/D5s6JO3XV+OFS4JUl8CTPgzz9ADeoET1GnWT5bFbkhCokMKXHLmNhqXYraGV5ec694DaGgKYHi4Y16dxHtJq3oIs/xL2amImggxXl9WXADJAH5NLrF/8scFU+kyoB8e8UD2UpLSS2KQXSaMZYRxrObxSthYXcTY+SwDK+WGDa77uUwtTvefwQGWA4dVNQIs2JUlkSYC5OC4W68RFfmFuHHbG8ConfkwX6cqkDcHqt9upac9ZbnpTyOY3+
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BY5PR06MB6611.namprd06.prod.outlook.com; PTR:; CAT:NONE; SFS:(39850400004)(366004)(136003)(376002)(396003)(346002)(5660300002)(83380400001)(33656002)(8936002)(8676002)(6916009)(54906003)(66946007)(86362001)(76116006)(53546011)(55236004)(26005)(64756008)(2906002)(66476007)(9686003)(66446008)(55016002)(66556008)(71200400001)(52536014)(7696005)(4326008)(478600001)(316002)(186003)(6506007); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata: 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
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: dolby.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BY5PR06MB6611.namprd06.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 9fcd0191-ee5c-456e-f526-08d866319171
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 Oct 2020 17:43:55.0648 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 05408d25-cd0d-40c8-8962-5462de64a318
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: sqZDfzJZUcxO6Nz/EncoQr9JAa5abOs/yJvfws0Ke6XNJaea9tHD34D6JSBoR6Kw6WukVX3iQa7vbDo0L4uEZA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BYAPR06MB5206
Archived-At: <https://mailarchive.ietf.org/arch/msg/detnet/yHTBBdpg5pb4SEokUQcTAKrFsTk>
Subject: Re: [Detnet] Secdir last call review of draft-ietf-detnet-mpls-over-udp-ip-06
X-BeenThere: detnet@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Discussions on Deterministic Networking BoF and Proposed WG <detnet.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/detnet>, <mailto:detnet-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/detnet/>
List-Post: <mailto:detnet@ietf.org>
List-Help: <mailto:detnet-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/detnet>, <mailto:detnet-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 01 Oct 2020 17:44:00 -0000

Yeah the thought occurred to me "why would we mention anything above IP at all?" I checked the Security draft and there is actually no relevant mention of TCP or UDP. So I think this is a no-op as far as the Security draft is concerned. Of course I could be missing something, so please correct me if necessary, but that's my current understanding. 
Ethan.

-----Original Message-----
From: Stewart Bryant <stewart.bryant@gmail.com> 
Sent: Thursday, October 1, 2020 8:12 AM
To: Grossman, Ethan A. <eagros@dolby.com>
Cc: Stewart Bryant <stewart.bryant@gmail.com>; Stephen Farrell <stephen.farrell@cs.tcd.ie>; secdir@ietf.org; last-call@ietf.org; detnet@ietf.org; draft-ietf-detnet-mpls-over-udp-ip.all@ietf.org
Subject: Re: [Detnet] Secdir last call review of draft-ietf-detnet-mpls-over-udp-ip-06



> On 24 Sep 2020, at 21:28, Grossman, Ethan A. <eagros@dolby.com> wrote:
> 
> Thanks Stephen. FWIW it isn't too late to add some text to the DetNet Security draft regarding DetNet over UDP, if someone can think up something useful to say. I suppose one could simply mention UDP in the same breath as TCP (implying that the same general security guidelines apply, if that's our stance). 
> Any thoughts (from anyone)? 

Ethan

I would be rather surprised if anyone tried to run a deterministic application over TCP.

TCP would undo all the temporal determinism and or course it looks after packet loss.

- Stewart