Re: [homenet] support for HNCP in IPv6 CE routers

Juliusz Chroboczek <jch@irif.fr> Thu, 26 October 2017 15:22 UTC

Return-Path: <jch@irif.fr>
X-Original-To: homenet@ietfa.amsl.com
Delivered-To: homenet@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 07FB113F4C1 for <homenet@ietfa.amsl.com>; Thu, 26 Oct 2017 08:22:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id MDeu_ZhDIPtJ for <homenet@ietfa.amsl.com>; Thu, 26 Oct 2017 08:22:09 -0700 (PDT)
Received: from korolev.univ-paris7.fr (korolev.univ-paris7.fr [IPv6:2001:660:3301:8000::1:2]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B917413F3FE for <homenet@ietf.org>; Thu, 26 Oct 2017 08:22:08 -0700 (PDT)
Received: from mailhub.math.univ-paris-diderot.fr (mailhub.math.univ-paris-diderot.fr [81.194.30.253]) by korolev.univ-paris7.fr (8.14.4/8.14.4/relay1/75695) with ESMTP id v9QFM1kf019482; Thu, 26 Oct 2017 17:22:01 +0200
Received: from mailhub.math.univ-paris-diderot.fr (localhost [127.0.0.1]) by mailhub.math.univ-paris-diderot.fr (Postfix) with ESMTP id 5C32BEB21F; Thu, 26 Oct 2017 17:22:01 +0200 (CEST)
X-Virus-Scanned: amavisd-new at math.univ-paris-diderot.fr
Received: from mailhub.math.univ-paris-diderot.fr ([127.0.0.1]) by mailhub.math.univ-paris-diderot.fr (mailhub.math.univ-paris-diderot.fr [127.0.0.1]) (amavisd-new, port 10023) with ESMTP id SK2702T79QCL; Thu, 26 Oct 2017 17:22:00 +0200 (CEST)
Received: from lanthane.pps.univ-paris-diderot.fr (unknown [172.23.36.54]) (Authenticated sender: jch) by mailhub.math.univ-paris-diderot.fr (Postfix) with ESMTPSA id 52B19EB21E; Thu, 26 Oct 2017 17:22:00 +0200 (CEST)
Received: from localhost ([::1] helo=lanthane.irif.fr) by lanthane.pps.univ-paris-diderot.fr with esmtp (Exim 4.89) (envelope-from <jch@irif.fr>) id 1e7jyq-0005YZ-1X; Thu, 26 Oct 2017 17:22:00 +0200
Date: Thu, 26 Oct 2017 17:22:00 +0200
Message-ID: <7iwp3i3pev.wl-jch@irif.fr>
From: Juliusz Chroboczek <jch@irif.fr>
To: Gert Doering <gert@space.net>
Cc: HOMENET <homenet@ietf.org>, JORDI PALET MARTINEZ <jordi.palet@consulintel.es>
In-Reply-To: <20171024140034.GS45648@Space.Net>
References: <80D10C70-9411-48EE-8189-87E9401D7F22@consulintel.es> <FFB4541F-0BDB-4D5F-B6BB-647EFD0FE27E@google.com> <20171024140034.GS45648@Space.Net>
User-Agent: Wanderlust/2.15.9
MIME-Version: 1.0 (generated by SEMI-EPG 1.14.7 - "Harue")
Content-Type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: 8bit
X-Greylist: Sender IP whitelisted, not delayed by milter-greylist-4.2.7 (korolev.univ-paris7.fr [194.254.61.138]); Thu, 26 Oct 2017 17:22:01 +0200 (CEST)
X-Miltered: at korolev with ID 59F1FD99.000 by Joe's j-chkmail (http : // j-chkmail dot ensmp dot fr)!
X-j-chkmail-Enveloppe: 59F1FD99.000 from mailhub.math.univ-paris-diderot.fr/mailhub.math.univ-paris-diderot.fr/null/mailhub.math.univ-paris-diderot.fr/<jch@irif.fr>
X-j-chkmail-Score: MSGID : 59F1FD99.000 on korolev.univ-paris7.fr : j-chkmail score : . : R=. U=. O=. B=0.000 -> S=0.000
X-j-chkmail-Status: Ham
Archived-At: <https://mailarchive.ietf.org/arch/msg/homenet/Ucv6SH1MGdvAIWjWoM5OazreYgM>
Subject: Re: [homenet] support for HNCP in IPv6 CE routers
X-BeenThere: homenet@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF Homenet WG mailing list <homenet.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/homenet>, <mailto:homenet-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/homenet/>
List-Post: <mailto:homenet@ietf.org>
List-Help: <mailto:homenet-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/homenet>, <mailto:homenet-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 26 Oct 2017 15:22:11 -0000

> I find the model of "there is a CPE, and behind that CPE, I connect
> another router to get homenet functionality" a bit unsatisfactory.

I think there are two possible deployment models.

1. The « My Friendly ISP » model

Every ISP-provided CPE participates in HNCP.  Each ISP has access to all
the information flooded into the Homenet, including information about
External Links announced by other ISPs.

2. The « My Home, my Castle » model

HNCP ends at the Edge Home Router (EHR).  The CPE is outside the Homenet,
and the link between the CPE and the EHR is treated as External (untrusted)
by HNCP.  Information between the CPE and the Homenet is communicated over
non-Homenet protocols such as DHCPv6-PD.  The CPE has no topology
information about the Homenet, and doesn't even know that the Homenet is
connected to multiple CPEs.

Note that the « My Home, my Castle » model is more general, since it can
implement the « My Friendly ISP » model by co-locating the EHR and the
CPE.  I don't think the opposite is true -- once you've leaked HNCP data
to the ISP, there's no way to unleak it.

-- Juliusz