Re: [Hipsec] Suresh Krishnan's Discuss on draft-ietf-hip-dex-13: (with DISCUSS)

Suresh Krishnan <Suresh@kaloom.com> Thu, 05 March 2020 19:00 UTC

Return-Path: <Suresh@kaloom.com>
X-Original-To: hipsec@ietfa.amsl.com
Delivered-To: hipsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BA2513A09AF; Thu, 5 Mar 2020 11:00:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.1
X-Spam-Level:
X-Spam-Status: No, score=-2.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=kaloom.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vU-hpRpxs24j; Thu, 5 Mar 2020 11:00:25 -0800 (PST)
Received: from CAN01-QB1-obe.outbound.protection.outlook.com (mail-eopbgr660103.outbound.protection.outlook.com [40.107.66.103]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 7C9003A09A9; Thu, 5 Mar 2020 11:00:25 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Talp6PXFcruZF7mKjDpziJqrVrQT9ahhGEMD+TN4mS6BGXAdC68ygQkXeS9ZnAe0SWq054N4tSt6Hj7t5EFoIz/x1WLq0YmWe+qDkUpr5v34gSI+5a+lFaO+CzFYMveW2X1EchgQQSqfgyt0tdhwdG6zGRS3Ae9U7uGV/o7bf8gV7oLr1Zt0UQ45VZe39KCowXrtXRFL2pm55rhqfUdQ+VI+gJqhes3Jlj4NfJAiTc8CSsRdYhc3yyL5lM4MNaX+54hOwzkSqfu1wKVIYNN50kZK7e+sZSx2l359PT67/zoqYlHziRGAxpoZUeOvvfiDKp+p7EVo5DMHK2cVzBNEYA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;bh=7C1VhL5MOKXbm6VpeQQrQZQTMK2P1BYIemRMPTK+NuI=; b=YxXgC9gMHbp3W5cHkIOlvLitEeMK9fpsJYXi7/uaPvnfg7Cr6fINPVbb7HaFfXvuCZtNahUdrgzCOD+9RWEab/03ZJ/TltMM2MZiNLuLfwrAovmyRLMcHElmAlVI2xWTTgZ2MOu5oMf9ZLkfcm1VLBXsHM+NhRNMlgjM+ziqvUn1veVBFz5IEtzaW/rvpdgLkvF55G89wI/syf7rv+j+NYOfkzLMdV/nn3w+HkIl9iNktLb/QEoDEIXpKAgCkOXZHNfC1KY5oWh+6Sd7PZqYrARc7Mza7GSNht8LJozChTDwDJQ2KKmteBD71KoP8jjyXG2VtoNceP2okmYKYpkE+A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=kaloom.com; dmarc=pass action=none header.from=kaloom.com; dkim=pass header.d=kaloom.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=kaloom.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;bh=7C1VhL5MOKXbm6VpeQQrQZQTMK2P1BYIemRMPTK+NuI=; b=oH0mMwPyJLd0XkTkJd9EEYzkY7uYMcxKzYsniEweahYF6UZY2dfElzXQP+iN3yd08YFiExVmfkInHjro2wI8N1um6cxqDeEXJzZW9kAwn7DeDXzA6JBvz4s9MJ4dlHyb6KpOIYspF+3pnj7lgwekl59znCCd4erL6bnSPYiyiQM=
Received: from QB1PR01MB3219.CANPRD01.PROD.OUTLOOK.COM (52.132.84.225) by QB1PR01MB2386.CANPRD01.PROD.OUTLOOK.COM (52.132.86.160) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2772.14; Thu, 5 Mar 2020 19:00:22 +0000
Received: from QB1PR01MB3219.CANPRD01.PROD.OUTLOOK.COM ([fe80::88eb:95a3:1188:b54a]) by QB1PR01MB3219.CANPRD01.PROD.OUTLOOK.COM ([fe80::88eb:95a3:1188:b54a%6]) with mapi id 15.20.2772.019; Thu, 5 Mar 2020 19:00:22 +0000
From: Suresh Krishnan <Suresh@kaloom.com>
To: Robert Moskowitz <rgm@labs.htt-consult.com>
CC: The IESG <iesg@ietf.org>, "draft-ietf-hip-dex@ietf.org" <draft-ietf-hip-dex@ietf.org>, "j.ahrenholz@tempered.io" <j.ahrenholz@tempered.io>, "hip-chairs@ietf.org" <hip-chairs@ietf.org>, Gonzalo Camarillo <gonzalo.camarillo@ericsson.com>, "hipsec@ietf.org" <hipsec@ietf.org>
Thread-Topic: Suresh Krishnan's Discuss on draft-ietf-hip-dex-13: (with DISCUSS)
Thread-Index: AQHV8we7/KY/NzbOrUi2xrBWanKnkag6WpOA
Date: Thu, 05 Mar 2020 19:00:22 +0000
Message-ID: <9336814E-6390-47B1-AD35-38F09A6147AE@kaloom.com>
References: <158329724383.7687.5696211532188484676@ietfa.amsl.com> <ae384776-b0ba-ce43-5fa9-c279f0b91bd4@labs.htt-consult.com>
In-Reply-To: <ae384776-b0ba-ce43-5fa9-c279f0b91bd4@labs.htt-consult.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Suresh@kaloom.com;
x-originating-ip: [118.185.168.202]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 78889f38-466b-4007-7376-08d7c13774d7
x-ms-traffictypediagnostic: QB1PR01MB2386:
x-microsoft-antispam-prvs: <QB1PR01MB2386AC1C45D78DF01631D24EB4E20@QB1PR01MB2386.CANPRD01.PROD.OUTLOOK.COM>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-forefront-prvs: 03333C607F
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(346002)(376002)(366004)(396003)(39850400004)(136003)(199004)(189003)(81166006)(5660300002)(91956017)(66946007)(6486002)(508600001)(33656002)(36756003)(76116006)(81156014)(316002)(86362001)(64756008)(8676002)(66556008)(6512007)(966005)(66476007)(66446008)(2906002)(4326008)(2616005)(8936002)(26005)(6506007)(6916009)(71200400001)(54906003)(53546011)(186003); DIR:OUT; SFP:1102; SCL:1; SRVR:QB1PR01MB2386; H:QB1PR01MB3219.CANPRD01.PROD.OUTLOOK.COM; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: kaloom.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: Scgs1JqeX0gqAtMoU6MaJDzqvt2rWDWe7gQ5ymeA1nO2HyNo9fncAeWwciTbIBENfqjmelN9aNOl/GG6yBxL/3I+0KiKY/XQ5egML7wD11ZddsbT2N9WpCBqcLo20puYg+TohDtsUUMTJeHr2kQHBTNzM0Ean6sCmNwirREFu5XDmwLhf4GV6QLC2CCbV0whdYNNoEdkF4dcHa4k6wkfeS6KQJ3bLWYvsqfSB45wjNiicTnVKoo8n+dLjaGldOSCYsMPCPia8TFs7fH4GVCh4zMGc8fY9vD5qFAp3cb3yWmkRSr5BqHRnGxdxh+03VCt/rB+rvJVMTDkqE+kzdAoVHMknqVa9cbfbbX6lSNAUu8Mlb8kmB++SSkPPFwfooWLx0+XhvKRZpjtHbOX/bveGptO9kcmELmTGDWQV7xMbp+DyBPIMGTEpUYfr/7Dq/ljX42w+5c9YRA6cPvRjvubwh20oWr8xml6/W5FacjTV+VeI6vx0BHUJDXtLYNjyk3O9cB8rg3hNQyoHjXGL2rRiA==
x-ms-exchange-antispam-messagedata: vLtnsfkWiuWR15Oao01zRuxp+hGc4GCbDeSgt6zGByt728blkBGLG8kxF55lpaNNEM/uJTuvHGvNsWNoiySbhZa0PkX6SmDuKCdzMPlTswnuLc/+eJmnTm5hBViKGTDC8xL7qCVxEJM5LqGoGRKIXQ==
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="us-ascii"
Content-ID: <CC7CA5D285EF00499E67D7E02BC6CA8D@CANPRD01.PROD.OUTLOOK.COM>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: kaloom.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 78889f38-466b-4007-7376-08d7c13774d7
X-MS-Exchange-CrossTenant-originalarrivaltime: 05 Mar 2020 19:00:22.3193 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 47d58e26-f796-48e8-ac40-1c365c204513
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: ZjliqF0QIUrOqzFI3ZscgtD6+Q2CEFSqdDzknKmjms4+gq0re3PfUpV24dwm7eevDQmWhP8TOl2O6c1tpq1mMQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: QB1PR01MB2386
Archived-At: <https://mailarchive.ietf.org/arch/msg/hipsec/KE0_0wOdab66-jAOh3haJyOUUaA>
Subject: Re: [Hipsec] Suresh Krishnan's Discuss on draft-ietf-hip-dex-13: (with DISCUSS)
X-BeenThere: hipsec@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "This is the official IETF Mailing List for the HIP Working Group." <hipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/hipsec>, <mailto:hipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/hipsec/>
List-Post: <mailto:hipsec@ietf.org>
List-Help: <mailto:hipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/hipsec>, <mailto:hipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 05 Mar 2020 19:00:29 -0000

Hi Bob,
  This text works for me. I will clear as soon as the new revision hits.

Regards
Suresh

> On Mar 5, 2020, at 11:04 AM, Robert Moskowitz <rgm@labs.htt-consult.com> wrote:
> 
> Here is the text I put together for revising sec 5.4 (see below).
> 
> On 3/3/20 11:47 PM, Suresh Krishnan via Datatracker wrote:
>> Suresh Krishnan has entered the following ballot position for
>> draft-ietf-hip-dex-13: Discuss
>> 
>> When responding, please keep the subject line intact and reply to all
>> email addresses included in the To and CC lines. (Feel free to cut this
>> introductory paragraph, however.)
>> 
>> 
>> Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html
>> for more information about IESG DISCUSS and COMMENT positions.
>> 
>> 
>> The document, along with other ballot positions, can be found here:
>> https://datatracker.ietf.org/doc/draft-ietf-hip-dex/
>> 
>> 
>> 
>> ----------------------------------------------------------------------
>> DISCUSS:
>> ----------------------------------------------------------------------
>> 
>> This should be pretty straightforward to resolve.
>> 
>> * Section 5.4.:
>> 
>> The ICMPv6 Parameter Problem messages to be sent need a Code field to be set in
>> addition to the Pointer. What Code should be used in this message? Please
>> specify this.
>> 
>> 
>> 
>> 
>> 
> 
> 5.4.  ICMP Messages
> 
>    When a HIP implementation detects a problem with an incoming packet,
>    and it either cannot determine the identity of the sender of the
>    packet or does not have any existing HIP association with the sender
>    of the packet, it MAY respond with an ICMP packet.  Any such reply
>    MUST be rate-limited as described in [RFC4443].  In most cases, the
>    ICMP packet has the Parameter Problem type (12 for ICMPv4, 4 for
>    ICMPv6) and Code of 0.  The Pointer field pointing to the field that
>    caused the ICMP message to be generated, for example to the first 8
>    bytes of a UDP payload for "SPI is Unknown".  The problem cases
>    specified in Section 5.4. of [RFC7401] also apply to HIP DEX.
>