Re: [dhcwg] I-D Action: draft-ietf-dhc-dhcpv6-pd-relay-requirements-00.txt

"Bernie Volz (volz)" <volz@cisco.com> Wed, 08 April 2020 14:24 UTC

Return-Path: <volz@cisco.com>
X-Original-To: dhcwg@ietfa.amsl.com
Delivered-To: dhcwg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D07AD3A0D11; Wed, 8 Apr 2020 07:24:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.6
X-Spam-Level:
X-Spam-Status: No, score=-9.6 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=mfjFu/3w; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=tgQ/1hYU
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id RpvVWOtBxCNT; Wed, 8 Apr 2020 07:24:25 -0700 (PDT)
Received: from alln-iport-5.cisco.com (alln-iport-5.cisco.com [173.37.142.92]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7B78C3A0D05; Wed, 8 Apr 2020 07:24:25 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=2530; q=dns/txt; s=iport; t=1586355865; x=1587565465; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-transfer-encoding:mime-version; bh=TJkmAWlArguQbTxOhb3Jsm5mhdsQ5jz2ORfdVg9dULA=; b=mfjFu/3w0wj7VPwwrZr4UFcWnRXUl7GoUMexsBjBkV2TqdsTXORDl9hM Sk3DIVNY0XLAIoZk126YRcZdN1SyAeMSQ19YAQDr6119hNFhKaPKQjj21 YVL4yq9OUDSvFuJS4lC4In/HjXQqUuDO3Bc2dLQSpKoeSdztnKkDl19Av s=;
IronPort-PHdr: 9a23:eOc32BI7weUM3EUWQNmcpTVXNCE6p7X5OBIU4ZM7irVIN76u5InmIFeCuKd2lFGcW4Ld5roEkOfQv636EU04qZea+DFKa5lQT1kAgMQSkRYnBZubDknpBPXrdCc9Ws9FUQwt8g==
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0CuAABf3o1e/4kNJK1mHAEBAQEBBwEBEQEEBAEBgWkFAQELAYFTUAWBRCAECyoKhBKDRQOKa4JfmCCBLoEkA1QKAQEBDAEBLQIEAQGERAIXgXAkNgcOAgMBAQsBAQUBAQECAQUEbYVWAQuFcAEBAQECARIREQwBATcBBAcEAgEIEQQBAQMCJgICAjAVCAgCBA4FCBqFUAMOIAGlZAKBOYhidYEygn8BAQWFRBiCDQmBDioBjDIaggCBVIJNPoQlK4MQMoIskQ2fLXoKgj2XUpwIjzycKwIEAgQFAg4BAQWBWAEygVdwFYMkUBgNkSIMF4NQilV0gSmLZoEzAYEPAQE
X-IronPort-AV: E=Sophos;i="5.72,358,1580774400"; d="scan'208";a="469579038"
Received: from alln-core-4.cisco.com ([173.36.13.137]) by alln-iport-5.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 08 Apr 2020 14:24:24 +0000
Received: from XCH-RCD-004.cisco.com (xch-rcd-004.cisco.com [173.37.102.14]) by alln-core-4.cisco.com (8.15.2/8.15.2) with ESMTPS id 038EOOrP029028 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Wed, 8 Apr 2020 14:24:24 GMT
Received: from xhs-rcd-001.cisco.com (173.37.227.246) by XCH-RCD-004.cisco.com (173.37.102.14) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Wed, 8 Apr 2020 09:24:24 -0500
Received: from xhs-rcd-003.cisco.com (173.37.227.248) by xhs-rcd-001.cisco.com (173.37.227.246) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Wed, 8 Apr 2020 09:24:23 -0500
Received: from NAM10-DM6-obe.outbound.protection.outlook.com (72.163.14.9) by xhs-rcd-003.cisco.com (173.37.227.248) with Microsoft SMTP Server (TLS) id 15.0.1497.2 via Frontend Transport; Wed, 8 Apr 2020 09:24:23 -0500
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=kQHg16Rrt1xR6z8znKiK0I3TokfNqCKmN9nGv67RzO3wAy215vXh+FJKz+ZBcsBB1EMGJSILZmOkDj8SHq57i7q+eNBo5nE655KUdYWHCM7GyaUim+Z4ByrEdqnQwEFI7X3Ssjh3Eb3QlPQ4InYoa8oN78OnW1vjjMXpL2UvPeG66yMX7h/ZqdoCuChJJnIvV2v2K1ytfESGsl9ptsE2Nuxf7T4QCh7YmVwsBT1vFkW7JBDNdSjXKO68Gc+XCJrQvhuhAF1dPK2nyXSLzCndOoOzRjv6sReVd0mpLY4Br6Km6e4atN0z1YNWEX2Si83QeJlTWTrmBIFAU8ndL53JXw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=TJkmAWlArguQbTxOhb3Jsm5mhdsQ5jz2ORfdVg9dULA=; b=AHXKmsNS8AgKfoXvqWPrP6gnRgnI3CtrPr3Gv9FpmJ/g4gZjOlNO+75/xn4+bBz6RaGSNn2UH/1WqH6/57lUyKZdZeft8SbbNPwdZYhKDDpBWSwmTgROMfq7PHKj3rNTV3QfjUrTUi4uNfSUfw7yZBu1fGnGrZrTZuySS4S5pRXZPHNtmfgOWEqradkY9aZnQa8melupoAnqb0+igfkWffIgpvRcFIGYgDAIxcGiLmr1A4+A+Czc7B2rYsoZQkjEoQdVU+e5S+uCnxLQtmEjmTVyjHuV5EZbHaUUzZTbD4/zliCk/UdS6/a88cNZ288KwdXbMbq+UxKtn5OSHmoM3A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=TJkmAWlArguQbTxOhb3Jsm5mhdsQ5jz2ORfdVg9dULA=; b=tgQ/1hYUNrE23Y4Nk7pZItVWptAc/4L8fpIpc9pmK1XEM3D+ZJT+fZdTbfd/BqleggcaGYmUrJ5RJt1lkJYF8qI6QmvmGNm9QlakWyoxkxbn2dXD/1aRVlJJ24zZbUgP4qlh6AVNxdEC4NByiDYYD1WUv3AEMeW867awDUbWmF8=
Received: from BN7PR11MB2547.namprd11.prod.outlook.com (2603:10b6:406:af::18) by BN7PR11MB2612.namprd11.prod.outlook.com (2603:10b6:406:b4::21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2878.15; Wed, 8 Apr 2020 14:24:19 +0000
Received: from BN7PR11MB2547.namprd11.prod.outlook.com ([fe80::29d4:9c08:fa95:c26e]) by BN7PR11MB2547.namprd11.prod.outlook.com ([fe80::29d4:9c08:fa95:c26e%7]) with mapi id 15.20.2878.018; Wed, 8 Apr 2020 14:24:19 +0000
From: "Bernie Volz (volz)" <volz@cisco.com>
To: "otroan@employees.org" <otroan@employees.org>
CC: Timothy Winters <tim@qacafe.com>, "draft-ietf-dhc-dhcpv6-pd-relay-requirements@ietf.org" <draft-ietf-dhc-dhcpv6-pd-relay-requirements@ietf.org>, "dhcwg@ietf.org" <dhcwg@ietf.org>
Thread-Topic: [dhcwg] I-D Action: draft-ietf-dhc-dhcpv6-pd-relay-requirements-00.txt
Thread-Index: AQHV98bEC9/aF5Xkw028jQpGj8sRqKhDn3CQgAGc4gD//8IOgIARUXJQgANV7eCAAY4agP//65+AgAmXzwCAAALb0IAKp6oAgAAHjaCAAAajgIAAAH4Q
Date: Wed, 08 Apr 2020 14:24:19 +0000
Message-ID: <BN7PR11MB25476BB741AA9BE8073F5157CFC00@BN7PR11MB2547.namprd11.prod.outlook.com>
References: <158346050095.14620.2547383825421375669@ietfa.amsl.com> <CANFmOt=21NNyYom9KtVQ7x5mTE6rR2GAAg8DwAdaptuOWAJLrQ@mail.gmail.com> <BN7PR11MB2547E17639F673343B5210BBCFFC0@BN7PR11MB2547.namprd11.prod.outlook.com> <CANFmOtnWHJzNtw8-aj+Dqgbqh0aeDMVtXcnib0RC4Bpi+OW0eg@mail.gmail.com> <43727BCE-732F-4629-8BCD-EBCDE2507B82@cisco.com> <BN7PR11MB2547273DA5E1D5F39F26629ACFF00@BN7PR11MB2547.namprd11.prod.outlook.com> <BN7PR11MB254754D841622448F49B021ACFCE0@BN7PR11MB2547.namprd11.prod.outlook.com> <98E34F29-CAB3-4FC3-9B53-AB17AF811683@gmx.com> <75369E25-F0D9-47A5-A94C-EF40736656FC@cisco.com> <D847C596-F3D0-4165-BA5B-32E0D4E7BA35@gmx.com> <BN7PR11MB254768A96E2FCD8A56C92138CFC90@BN7PR11MB2547.namprd11.prod.outlook.com> <CAJgLMKs+v-NF4n7Jg+2LxA965e=FtYt-i9OA7XuWMFkum9VC+w@mail.gmail.com> <BN7PR11MB254798D6651138C6A1614072CFC00@BN7PR11MB2547.namprd11.prod.outlook.com> <DD7C9190-F204-42BE-A210-BEFD3B6AE534@employees.org>
In-Reply-To: <DD7C9190-F204-42BE-A210-BEFD3B6AE534@employees.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=volz@cisco.com;
x-originating-ip: [173.38.117.78]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: a64093fa-5a3b-4cf0-d28f-08d7dbc886bf
x-ms-traffictypediagnostic: BN7PR11MB2612:
x-microsoft-antispam-prvs: <BN7PR11MB2612EDD526CEF0A971CFA8D2CFC00@BN7PR11MB2612.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:7219;
x-forefront-prvs: 0367A50BB1
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BN7PR11MB2547.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFTY:; SFS:(10009020)(4636009)(39860400002)(366004)(346002)(376002)(396003)(136003)(2906002)(71200400001)(81156014)(8676002)(52536014)(9686003)(186003)(55016002)(316002)(33656002)(8936002)(26005)(4326008)(5660300002)(66946007)(66446008)(86362001)(66574012)(478600001)(6916009)(54906003)(53546011)(76116006)(81166007)(6506007)(66556008)(7696005)(64756008)(66476007); DIR:OUT; SFP:1101;
received-spf: None (protection.outlook.com: cisco.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: R3xg5HKsCZ+V6wfnuP5RgsE5VSkvOfEig3fTXIdwgUilqJVzSZv7fQTjir4EkoojNM7oFvszRst97lPTKA1y22d5eCp4xO07Z2gCefMEZjL8iI/yaVkznpr3Y5Xh8cyzri0oqhDAIwGgQ7/NLyhsRUCnhr9XWUo7aDJJzmYBIyVNofiXg2YzshylRzcy3UZZefGVpJJZ6RcQB5L6WUfFPeaTq6E7WMYzd0MZZJjcxf3/9lhvegaT4XgUXDqauNf2umCxo7xmwKMEINSPaMa5C9NER8NTmpegdKSkrgL/Tbjed2ocWUey7Fqf93mTyOnyRIUhI3GF04n+uQVG4Tk/6AsysgDN1XbuFqtcqTg6sjLaWK7OwZU3mZwK5N7qjWVYC9XId4YJnAykHI+PA9tDUieTTqRPt0RB4fdbnyBRUBkZFiUTyBRQceK9qYgMkjJz
x-ms-exchange-antispam-messagedata: WmjsN3SNRpmzBInRmTSt5p4Klkubj6ezFLIzBlwfB3mnU5O+1vJl+OFjD9Vi3KHIHPiW7vG0bBC2F9JYom2WHJTbm/nGUanTqEyb1vdS/d8LisxUvqthGhF8MmIjBsyDJiBI6uZC5Hb8rhChTKvdCA==
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-Network-Message-Id: a64093fa-5a3b-4cf0-d28f-08d7dbc886bf
X-MS-Exchange-CrossTenant-originalarrivaltime: 08 Apr 2020 14:24:19.5985 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: j36JccJEyBkoRrQ9QxeyobsPFHs56VNaR+7rmw681qA95lC8fM3+kp9jIRl46pmE
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN7PR11MB2612
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.37.102.14, xch-rcd-004.cisco.com
X-Outbound-Node: alln-core-4.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/dhcwg/RAe0yWDObRIMmzUp5Zu0vH31e80>
Subject: Re: [dhcwg] I-D Action: draft-ietf-dhc-dhcpv6-pd-relay-requirements-00.txt
X-BeenThere: dhcwg@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: <dhcwg.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dhcwg/>
List-Post: <mailto:dhcwg@ietf.org>
List-Help: <mailto:dhcwg-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dhcwg>, <mailto:dhcwg-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 08 Apr 2020 14:24:30 -0000

> A more specific rule for that is in 7084 and possibly in 3633, requiring a blockhole route on the requesting router for the delegated prefix.

But Tim is talking about BEFORE the PD is assigned?

Do you know which requirement that is in 7084? My quick glance/search at the document did not turn up such a requirement? 

I doubt 3633 applies because that is only about PD and not what happens before PDs are assigned?

And as Tim raised it, seems likely that it must be happening frequently enough that whatever may be there is not clear enough?

Is there ever a case where a CPE should forward a packet received on the WAN interface back out the WAN interface? Probably not as it is designed to be router between the WAN and LAN interfaces only.

- Bernie

-----Original Message-----
From: otroan@employees.org <otroan@employees.org> 
Sent: Wednesday, April 8, 2020 10:13 AM
To: Bernie Volz (volz) <volz@cisco.com>
Cc: Timothy Winters <tim@qacafe.com>; draft-ietf-dhc-dhcpv6-pd-relay-requirements@ietf.org; dhcwg@ietf.org
Subject: Re: [dhcwg] I-D Action: draft-ietf-dhc-dhcpv6-pd-relay-requirements-00.txt

> Sounds like a useful issue to try to address – the DHC connection is because of the DHCP issues.
>  
> And, I assume looping occurs because packets cycle between SP router and CPE until TTL/HOP expires?
>  
> Do you have a suggestion as to what the CPE should do in this case? For example, are you suggesting that the CPE drop received traffic (except for DHCP and perhaps some other limited traffic addressed to it)?

A CPE should never provide transit.
I.e it should never forward a packet received on it's WAN interface back out the WAN interface.

A more specific rule for that is in 7084 and possibly in 3633, requiring a blockhole route on the requesting router for the delegated prefix.

Ole