Re: [Dots] Robert Wilton's No Objection on draft-ietf-dots-multihoming-11: (with COMMENT)

"Rob Wilton (rwilton)" <rwilton@cisco.com> Thu, 21 April 2022 08:40 UTC

Return-Path: <rwilton@cisco.com>
X-Original-To: dots@ietfa.amsl.com
Delivered-To: dots@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id ADEDF3A112E; Thu, 21 Apr 2022 01:40:31 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.606
X-Spam-Level:
X-Spam-Status: No, score=-9.606 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_MSPIKE_H5=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=JEX5Fk33; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=MlRya8Jp
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CDsTg2XZhBrK; Thu, 21 Apr 2022 01:40:26 -0700 (PDT)
Received: from alln-iport-6.cisco.com (alln-iport-6.cisco.com [173.37.142.93]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 79EF83A110E; Thu, 21 Apr 2022 01:40:26 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=9402; q=dns/txt; s=iport; t=1650530426; x=1651740026; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-transfer-encoding:mime-version; bh=YsQe1yHK7Di5S4SerJXNBofnsTKIo5ilrudxTeuiPrg=; b=JEX5Fk33cO1TST74jY4EWStWyZx0ObMjEOgUWYjMEDWXjkjl+TjCCqxB nG8JKFNfqSG1xMLBFaRiaJ1vHLqsfHMSkPrELYM7LekMOWHcepYDlTe0G OyUoctBYNLeOKxLKY7S+b9v/OM6zkcF0OzF+T32ST9g7rO55Wc1LS9U7M c=;
X-IPAS-Result: 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
IronPort-PHdr: A9a23:VOQNABzx6kBUmTfXCzPZngc9DxPP8534PQ8Qv5wgjb8GMqGu5I/rM 0GX4/JxxETIUoPW57Mh6aLWvqnsVHZG7cOHt3YPI5BJXgUO3MMRmQFoCcWZCEr9efjtaSFyH MlLWFJ/uX+hNk0AE8flbFqUqXq3vlYv
IronPort-Data: A9a23:RebbMKmsevis7vT036Y9aYno5gx4JkRdPkR7XQ2eYbSJt1+Wr1Gzt xIcWGuFOfbbMGOgc4glPIWy9UMH6sXdxt42SlRq+Ck9Q1tH+JHPbTi7wugcHM8zwunrFh8PA xA2M4GYRCwMZiaA4E/raNANlFEkvU2ybuKU5NXsZ2YgHWeIdA970Ug5w7Jj29Yx6TSEK1rlV e3a8pW31GCNg1aYAkpMg05UgEoy1BhakGpwUm0WPZinjneH/5UmJM53yZWKEpfNatI88thW6 Ar05OrREmvxp3/BAz4++1rxWhVirrX6ZWBihpfKMkSvqkAqm8A87ko0HPU+b1pQjzWYpYtay 4R3paS3ET43HqKZzYzxUzEAe81/FaRC/LmCKn+lvInPiUbHaHDrhf5pCSnaP6VBpb0xWj8Ir KdecWtSBvyAr7reLLaTUPZtgtgkKuHgPZgUvTdryjSx4fMOEcCSHPibuocCtNs2rvBgPNTDZ vBCUjtAcT7EPgARHXE8LbtryY9EgVGmI2EH9zp5v5Ef/WHXwRZg+KPoIcHRfcLMQ8hJ9m6Uo X7d12X0Hh9cM8aQoRKJ9W63w+TPlCLhQ6oTGaG2sPlwjzW7ynYaBgFTVFanr7y1jVKlHtdCL 1AV+i0rrK493E2mUte7WAe3yFaFswUTc9tdD+N87xuCooLR5AaQA2UICDRGddcvuMY3XxQtz FaPkN6vDjtq2IB5UlqU8rOS6Di1IyVQcSkJZDQPSk0O5NyLTJwPYgznQfRlDamxjszPQhrzk gqalC9mvqszgptev0mkxmzvjzWpr5nPawc64ATLQ26ohj+Vgqb4OeREDnCGsZ59wJalokqp5 yNdwpfAhAwaJdTcynLSEbxl8KSBva7tDdHKvbJ483DNHRyE/3que+i8CxkheR8waa7oldIVC XI/VCtY4JtVeXCtd6IyP8S6Ct8hyu7rEtGNuhHogjhmP8UZmOyvpXwGiausM4bFyxVEfUYXY szzTCpUJSxGYZmLNRLvLwvn7Zclxzol2UTYTo3hwhKs3NK2PSDIEetdaQrTNrpjsstoRTk5F f4CaKNmLD0CD4XDjtX/reb/0HhTdyFgXMCqwyCpXrfffVYO9J4d5w/5mON9JNMNc1V9nebT9 Xb1QV5D1Ff6nhX6xfaiNBhehEfUdc8n9xoTZHV0VX7xgiRLSdv/vc83KspsFZF6pbML5aAvF ZEtJZ7fasmjvxyaoVzxm7Gn8tw7HPlq7CrTVxeYjM8XIsAwGlSVqoO1FuYtnQFXZheKWQIFi +XI/mvmrVArHmyO0O6+hCqT8m6M
IronPort-HdrOrdr: A9a23:duGbU65GSizROdMg1gPXwWmBI+orL9Y04lQ7vn2ZFiY6TiXIra +TdaoguSMc0AxhJE3Jmbi7Sc29qADnhOFICO4qTPmftWjdySSVxeRZjLcKrAeQYxEWmtQtt5 uINpIOdeEYbmIKzPoSgjPIaOrIqePvmMvD6IeurEuFDzsaEZ2IhD0JbTpzZ3cGPTWucqBJcq Z0iPA3wgaISDAyVICWF3MFV+/Mq5ngj5T9eyMLABYh9U2nkS6owKSSKWnZ4j4uFxd0hZsy+2 nMlAL0oo+5teug9xPa32jPq7xLhdrazMdZDsDksLlXFtyssHfrWG1SYczHgNkHmpDp1L/sqq iLn/4UBbU315oWRBDtnfKi4Xi57N9k0Q6d9bbRuwqTnSW+fkNgNyKE7rgpLycwLCEbzYtBOe twrhGkX5Y7N2KxoA3to9fPTB1kjUyyvD4rlvMSlWVWVc8EZKZWtpF3xjIeLH4sJlOz1GkcKp gkMCgc3ocgTXqKK3TC+mV/yt2lWXo+Wh+AX0gZo8SQlzxbhmpwwUcUzNEW2i5ozuNwd7BUo+ Dfdqh4nrBHScEbKap7GecaWMOyTmjAWwjFPm6eKUnuUKsHJ3XOoZjq56hd3pDmRLUYiJ8p3J jRWlJRsmA/P0roFM2VxZVOtgvARW2sNA6dg/22J6IJzIEUaICbRBFrEmpe4fdIi89vdvHmZw ==
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="5.90,278,1643673600"; d="scan'208";a="889759702"
Received: from alln-core-4.cisco.com ([173.36.13.137]) by alln-iport-6.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 21 Apr 2022 08:40:25 +0000
Received: from mail.cisco.com (xfe-rtp-001.cisco.com [64.101.210.231]) by alln-core-4.cisco.com (8.15.2/8.15.2) with ESMTPS id 23L8eOdL028827 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=OK); Thu, 21 Apr 2022 08:40:24 GMT
Received: from xfe-rcd-001.cisco.com (173.37.227.249) by xfe-rtp-001.cisco.com (64.101.210.231) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.986.14; Thu, 21 Apr 2022 04:40:23 -0400
Received: from NAM04-DM6-obe.outbound.protection.outlook.com (72.163.14.9) by xfe-rcd-001.cisco.com (173.37.227.249) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.986.14 via Frontend Transport; Thu, 21 Apr 2022 03:40:23 -0500
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=fUdLDjD772asqgwxC2knQuoXkt1xpOCSZbrSD1TIafpkgVjqU2WhpiRrmZhPNeZFvASfbODi1nx31g01KDDWx28yaczFEActkDIThY9Ow0MneWq3qGvE4cCPOhWiE1DEw8YVIPbnenBykE7TgaCH2VviCu9Wrl6sa1JQrdAwRn2bHzzASOnxrO51qOHOKIb7dbVYyOCi21vzLT/me19WJfmbO353yyzn9w74rVZpHxAvMYSMGgva5XeFaTEv1TtyNGsQoU6mKGlh7ZOOqRe9lezsAc7nQoWNGq1TXuf1qzBr9VrMqYKwTExSbdoQGp36JKvuSqah5ixP9drqXsC30Q==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=YsQe1yHK7Di5S4SerJXNBofnsTKIo5ilrudxTeuiPrg=; b=jXbayFa11Gi/4tko0t7Q4NYmKF4hRZf8YsxuaaAxAaqkOas4tMyiOT86KCs4PaEpxpb4tt3VCYtm4X9745HH9lcRYfTMTzbOPlobLPpRndEigQXDC7hWv+aoXI9SXHgtsTPK9Xvt60KrOTj5r3jvWxQg0xqOopJe4OAkYiQKDPYY/N8D9f44kWl92NIXD1FJVsSS72/hNtmDj3KFwKNpqo1WSclglZfFuA0h406RZHQ2ZA8xkUcYzoWwDLxOffTYy/JN+I8DgPKD13f+WwIxU3XvM/CID+Ek517VHFZBzpGj+cf0Whf7dd7XJk/0iuY30jfuTUjUlVXZexfdBY4yEQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=YsQe1yHK7Di5S4SerJXNBofnsTKIo5ilrudxTeuiPrg=; b=MlRya8JpgG68++Arx65QuCBd+sf7NlIZ81asUs6p4B6G7cw7tln1mZu+chVRxhOv7JHz2LD+ZhiNukeoDxvK7pvOU1DO1kkByuSr4QL9ZL1TXY14wY2qx/ei/c8dWTSO7VrF7W+8/8d2ltWaRU8Q82SJ7B5FOeQAfSk7/TXEV6g=
Received: from BY5PR11MB4196.namprd11.prod.outlook.com (2603:10b6:a03:1ce::13) by DM6PR11MB3116.namprd11.prod.outlook.com (2603:10b6:5:6b::29) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5164.20; Thu, 21 Apr 2022 08:40:22 +0000
Received: from BY5PR11MB4196.namprd11.prod.outlook.com ([fe80::b9eb:9cb1:5ee0:169e]) by BY5PR11MB4196.namprd11.prod.outlook.com ([fe80::b9eb:9cb1:5ee0:169e%5]) with mapi id 15.20.5164.026; Thu, 21 Apr 2022 08:40:22 +0000
From: "Rob Wilton (rwilton)" <rwilton@cisco.com>
To: "mohamed.boucadair@orange.com" <mohamed.boucadair@orange.com>, The IESG <iesg@ietf.org>
CC: "draft-ietf-dots-multihoming@ietf.org" <draft-ietf-dots-multihoming@ietf.org>, "dots-chairs@ietf.org" <dots-chairs@ietf.org>, "dots@ietf.org" <dots@ietf.org>, "valery@smyslov.net" <valery@smyslov.net>
Thread-Topic: Robert Wilton's No Objection on draft-ietf-dots-multihoming-11: (with COMMENT)
Thread-Index: AQHYVNb2uevtQUyTnUqGYSQ6f2i0DKz55v4AgAAlYrA=
Date: Thu, 21 Apr 2022 08:40:21 +0000
Message-ID: <BY5PR11MB41960043CEAC05A3B9EF65C5B5F49@BY5PR11MB4196.namprd11.prod.outlook.com>
References: <165047351251.9467.7586201632352226367@ietfa.amsl.com> <23737_1650522218_6260F86A_23737_290_1_b243598c987d4ab2ac6a5701e819f245@orange.com>
In-Reply-To: <23737_1650522218_6260F86A_23737_290_1_b243598c987d4ab2ac6a5701e819f245@orange.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Enabled=true; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SetDate=2022-04-21T05:24:56Z; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Method=Privileged; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_Name=unrestricted_parent.2; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_SiteId=90c7a20a-f34b-40bf-bc48-b9253b6f5d20; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ActionId=63e39e62-327e-42eb-ac12-ab92b87b6bf4; MSIP_Label_07222825-62ea-40f3-96b5-5375c07996e2_ContentBits=0
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cisco.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 057d8771-c89f-464c-89bf-08da237292b0
x-ms-traffictypediagnostic: DM6PR11MB3116:EE_
x-microsoft-antispam-prvs: <DM6PR11MB31160C43282B1F19FD3F0846B5F49@DM6PR11MB3116.namprd11.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BY5PR11MB4196.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230001)(366004)(26005)(8676002)(76116006)(83380400001)(55016003)(186003)(71200400001)(86362001)(2906002)(122000001)(966005)(508600001)(9686003)(52536014)(8936002)(66476007)(110136005)(4326008)(66556008)(66946007)(38100700002)(33656002)(66574015)(5660300002)(66446008)(64756008)(38070700005)(7696005)(316002)(6506007)(54906003)(53546011); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: HbtJWY6BxzTvRGP3JEm2BudgD46B9QgMrUhNzsf0SzbknHRJAXv9Bsx+miS4CVE7x3hP+m6hPzOIYuCxaK+wYwEDCp5pfoSYJHmw+4v5fiPyBZhA45kSjE3Ir3BsqIdzcajNmDLhUDLogv5PzsRFKEo6pZTGqnLx2CGfrbvYWDBs+ymRrmXlPCNY1ah9//kh6schUdmJCSTyhK5DHqgTCzQ5Yoan/9iHwTn/d93MOulESTGVfcbxaao1oV3NUGvQU1zEvdMAG8pzY3KRQFnaH2M9XbaQQDpAI14x8uYNoVJZpPIZSoMJTmRN8pyauwmO/GLEYY7ynjk56mFC0ZgPiORfO2NHh9jxlPZF/LDETf9kAw22Xa4ZKwCEmqLH+8CUL3Jl6v+n8iI1YBE9QMO9Sc04v8+793BN4cX9am6/Gbxu1oMT8SwGYSJF4o4rUuO01GKCRbUAcub2Izn0KSob1azBVpAygbf69+OEQLzHHR60DddGkCPelGUvWHpCGC+g6Idj/2lCJ4o4+mpEYspfrXzP0K7LejkuzyA2U7peHcQ+i5ig0EoP6Ks+HPwqmyYgA5aIHAI3BqFIycK/0OVLxgN7vpK1ajzYFwWtdjaZrEkM4SDcsAJU82nRw4iIFbb8MfDKaFnEe0vXPU8jvhwNHVq+Y2z+B3zRtzAgh+YdrjEtIltGYYK5CU1O6JNTbc8Ozf0g4jRbvtlgjSc32QBtTuCPPAe6kOMadtKAUaQsW4jdmHs85L5Zh9EguJ+ZKojdtSGRVnjgazp4a7DelxFLgIH+Kh/7a32MYhiEGrXpv2olKU8xRRxQVLDM0RepsLp+WCXZdcqIRtniyYoF4KFh1HXMLeC0iyMWpIyPiQhC16+ESFim4JNJFON4Ds4hAYfBcNrllavIOxN0L7hlgjpVQ6h49PUoM6/0d1zSVOOATKruQB9xVvXWvq3zWnWAKevgXzeFaxaEwGQiZnjqfHDKX4vjKz4Us4j8HT1J9Hc+JN2UGAUFIkKdrDfQssyqVt9qYhRLxCxED0WZ8XdTgfAk+GOADosUYPmvBZafQ4fm6WmU/bBphkv7KJ2Hj312OMrbKwYeD74i7w17Nw9dnGvqmFkcWnOlIBlCvBJZd1pnrBNWXe3+74jJGoi7Ev2lJkxlk69FY4hQVxV2/Bvp2fsZP+WJPSwnDbs0PVxNNwZ4UHdBwb0KtRTvs/N405MQD7hUb//acZxCpeR/avAV9gqooSlh21if0bG/iB6WbugIKyoseeGfYVuEPqKrLWpE5r8SndIYy60rqZP9WGqY1hBOeZykNs5JYx6emAWcwG7Oskn2Sbrjy8noiqPeytOTXFT4fYIYCvUDUdr0u7RTtFh/D7OaUCE/216uo/lTP6GEQ+RxfmfnhvT9XuVQ5eQEIn/U8Jav8PwqaZafRi+733DMhdjPy0BtKcVhFqS15VfxKRcGSAme9MAKwCrq6i4wNSnDE6Hd33FM8YX+8tTru72WBjNZV1F/YWTr7Hna7H5+czwkpKgkl7Xakx4bH17WdjheY8Q4HQ4pYNPG5yOQcbacJev+OHXZB6me75lcUHe4N9k+XcLR2kD2PBOoMiqqWwy3FHi2dSGPwn3+HFpUECNOWrmJduyBZQiXmsQrmrMPMbRD9cdjDd1Gl4mtF0lSg2CF2NvVbHW4hWPK3orvqtM9TKFiqDN8TzgTI2O5nc2O6+bjCC2LgOERQ8pOjxUfBV+3NttHKgpkrWq38bnBtYdYjw==
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: BY5PR11MB4196.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 057d8771-c89f-464c-89bf-08da237292b0
X-MS-Exchange-CrossTenant-originalarrivaltime: 21 Apr 2022 08:40:21.9696 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: Y5/5fsvQhyuvK1MHtEkfZQsl3iOPADbGBan3boumhqzM1Dr8y/0zTK1QfwCciPXBGrduIL9Ad7G1pEt+0FYI1g==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM6PR11MB3116
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 64.101.210.231, xfe-rtp-001.cisco.com
X-Outbound-Node: alln-core-4.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/dots/IFpKXdM6Yw5Whj0-jsFd-vFmaqQ>
Subject: Re: [Dots] Robert Wilton's No Objection on draft-ietf-dots-multihoming-11: (with COMMENT)
X-BeenThere: dots@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "List for discussion of DDoS Open Threat Signaling \(DOTS\) technology and directions." <dots.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dots>, <mailto:dots-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dots/>
List-Post: <mailto:dots@ietf.org>
List-Help: <mailto:dots-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dots>, <mailto:dots-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 21 Apr 2022 08:40:32 -0000

Hi Med,

Thanks for the explanations.

Rob

> -----Original Message-----
> From: mohamed.boucadair@orange.com
> <mohamed.boucadair@orange.com>
> Sent: 21 April 2022 07:24
> To: Rob Wilton (rwilton) <rwilton@cisco.com>; The IESG <iesg@ietf.org>
> Cc: draft-ietf-dots-multihoming@ietf.org; dots-chairs@ietf.org;
> dots@ietf.org; valery@smyslov.net
> Subject: RE: Robert Wilton's No Objection on draft-ietf-dots-multihoming-11:
> (with COMMENT)
> 
> Hi Rob,
> 
> Thanks for the review.
> 
> Please see inline.
> 
> Cheers,
> Med
> 
> > -----Message d'origine-----
> > De : Robert Wilton via Datatracker <noreply@ietf.org>
> > Envoyé : mercredi 20 avril 2022 18:52
> > À : The IESG <iesg@ietf.org>
> > Cc : draft-ietf-dots-multihoming@ietf.org; dots-chairs@ietf.org;
> > dots@ietf.org; valery@smyslov.net; valery@smyslov.net
> > Objet : Robert Wilton's No Objection on draft-ietf-dots-
> > multihoming-11: (with COMMENT)
> >
> > Robert Wilton has entered the following ballot position for
> > draft-ietf-dots-multihoming-11: No Objection
> >
> > When responding, please keep the subject line intact and reply to
> > all email addresses included in the To and CC lines. (Feel free to
> > cut this introductory paragraph, however.)
> >
> >
> > Please refer to
> > https://www.ietf.org/about/groups/iesg/statements/handling-ballot-
> > positions/
> > for more information about how to handle DISCUSS and COMMENT
> > positions.
> >
> >
> > The document, along with other ballot positions, can be found
> > here:
> > https://datatracker.ietf.org/doc/draft-ietf-dots-multihoming/
> >
> >
> >
> > ------------------------------------------------------------------
> > ----
> > COMMENT:
> > ------------------------------------------------------------------
> > ----
> >
> > Hi,
> >
> > Thanks for this document.
> >
> > Two comments on section 5.1:
> >
> > 1.
> >    The DOTS client MUST resolve the DOTS server's name provided by
> > each
> >    provisioning domain using either the DNS servers learned from
> > the
> >    respective provisioning domain or from the DNS servers
> > associated
> >    with the interface(s) for which a DOTS server was explicitly
> >    configured (Section 4).
> >
> > It wasn't clear to me why the DNS lookup MUST be done relative to
> > each
> > provisioning domain?
> >
> 
> [Med] This is because randomly using any available DNS server may lead to
> failures or exacerbate resolution delays. Note that the name may be local to
> an attachment network.
> 
> > 2.
> >    DOTS signaling
> >    session to a given DOTS server must be established using the
> >    interface from which the DOTS server was provisioned.
> >
> > If I have read and understood the draft correctly that it also
> > seems that
> > requests to ask a DOTS server to mitigate an attack must also be
> > done on the
> > same interface on which that attack is occurring.  Is my
> > understanding correct,
> 
> [Med] I guess you noted that no normative language is used in that text. The
> base requirement is that the mitigation request is sent to the DOTS server
> that is responsible for managing the resources under attack:
> 
>    When conveying a mitigation request to protect the attack target(s),
>    the DOTS client MUST select an available DOTS server whose network
>    has assigned the IP prefixes from which target prefixes/addresses are
>    derived.
> 
> Depending on the location of the DOTS client, the available paths to reach
> that server may be constrained (or not). The text you quoted is in reference
> to the residential CPE case, where the ** DOTS client is on the CPE **:
> 
> * If a DOTS server was provisioned by an upstream network using
> DHCP/PCE/etc., then the same interface must be used. There are
> considerations related to the use of private addressing, filters at upstream
> networks to let pass only mitigation requests received from customer-facing
> interfaces not Internet-facing ones, etc.
> * If a DOTS server is explicitly configured and no interface restriction is
> provided, then any active interface can be used to place the mitigation
> request as per:
> 
>    If a DOTS server is explicitly configured, it is assumed that an
>    interface is also provided to bind the DOTS service to an
>    interconnection link.  If no interface is provided, this means that
>    the DOTS server can be reached via any active interface.
> 
> Please note that the use of the same interface from where an attack traffic
> may be observed is required in cases where automatically triggering
> mitigations on signal loss is enabled (see the following text from RFC9132):
> 
> ==
>    trigger-mitigation:  If the parameter value is set to 'false', DDoS
>       mitigation will not be triggered for the mitigation request unless
>       the DOTS signal channel session is lost.
> 
>       If the DOTS client ceases to respond to heartbeat messages, the
>       DOTS server can detect that the DOTS signal channel session is
>       lost.  More details are discussed in Section 4.7.
> 
>       The default value of the parameter is 'true' (that is, the
>       mitigation starts immediately).  If 'trigger-mitigation' is not
>       present in a request, this is equivalent to receiving a request
>       with 'trigger-mitigation' set to 'true'.
> ==
> 
> > and if so, why is this a requirement?  I.e., communicating to a
> > DOTS server via
> > a separate link that isn't under attack would seem to be
> > beneficial (when that
> > is possible).  Is the reasoning here that these are stub networks
> > and hence
> > will only be routable via the interface provided by the ISP's
> > gateway?
> >
> > Regards,
> > Rob
> >
> >
> 
> 
> ________________________________________________________________
> _________________________________________________________
> 
> Ce message et ses pieces jointes peuvent contenir des informations
> confidentielles ou privilegiees et ne doivent donc
> pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce
> message par erreur, veuillez le signaler
> a l'expediteur et le detruire ainsi que les pieces jointes. Les messages
> electroniques etant susceptibles d'alteration,
> Orange decline toute responsabilite si ce message a ete altere, deforme ou
> falsifie. Merci.
> 
> This message and its attachments may contain confidential or privileged
> information that may be protected by law;
> they should not be distributed, used or copied without authorisation.
> If you have received this email in error, please notify the sender and delete
> this message and its attachments.
> As emails may be altered, Orange is not liable for messages that have been
> modified, changed or falsified.
> Thank you.