Re: [homenet] Status of draft-tldm-simple-homenet-naming CFA

Ted Lemon <mellon@fugue.com> Thu, 10 August 2017 21:59 UTC

Return-Path: <mellon@fugue.com>
X-Original-To: homenet@ietfa.amsl.com
Delivered-To: homenet@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DB9BF132445 for <homenet@ietfa.amsl.com>; Thu, 10 Aug 2017 14:59:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=fugue-com.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3tO4Nin5nRR8 for <homenet@ietfa.amsl.com>; Thu, 10 Aug 2017 14:59:03 -0700 (PDT)
Received: from mail-qk0-x22c.google.com (mail-qk0-x22c.google.com [IPv6:2607:f8b0:400d:c09::22c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6327D1321C6 for <homenet@ietf.org>; Thu, 10 Aug 2017 14:59:03 -0700 (PDT)
Received: by mail-qk0-x22c.google.com with SMTP id u139so11833023qka.1 for <homenet@ietf.org>; Thu, 10 Aug 2017 14:59:03 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=fugue-com.20150623.gappssmtp.com; s=20150623; h=from:message-id:mime-version:subject:date:in-reply-to:cc:to :references; bh=KjMMlCdOMPj88SPyY2Sdk48jfot3TuaGxbJb1lpWsqY=; b=t0r8Nd+gib60LIlXYN9Zn4N6APchFT03fuyEWEWRK1JaUJJ/nKmRQM+1yMX7ujtNk7 CFurlUm6Few50ieHwumGBPbdnRJ3yk5hdBkvhXElWYhy7nnlxEQovPP0qiH6N0zp0U0O N2V0XL42Lpjg3XJAscSA7cj/PFYlYQ37o7E1s7TH4t5oL8IzdRMaeI9UXjQsQ+8AacQO TsUKNArHYWfbbwCdjeAtgg6kuP6beSH/LoO8TSvhJi8Cq6pbc0QriNgm6BYcc+FN0bNm LNq5+B0ipOnBVD28aaYbgdKThpK1OmDJuOqeo+fW160dqIXR7roBsU5v9UA5XqJkPCil 8cMA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:message-id:mime-version:subject:date :in-reply-to:cc:to:references; bh=KjMMlCdOMPj88SPyY2Sdk48jfot3TuaGxbJb1lpWsqY=; b=OtWryr4bJd3UZiUgXkixMvKoQZzf/QYbEZ9HVpXfdGFBxceVZPtUd7f1yLhxOE9+2o JOHhoQjpdNN6iuhvyG6oplqvORTlT7PXUKAc/Dyxd3cz7yf5sLqJrDFL7tg3jhvOQkAt MjQRVaH4ujlXznt0SP7Pa18eklJr7oUoEADj1388GPStZG79PyjVVnlzNFV+OlbUZbLf y5DnAj0ycofbke7eK1yW1P2SKRzWS4k49A2En/qbei/5Dnm2EBLAK2JC7KW/u1ei1rqa 6N3L6Mk8dE8N2ZA/uMzQ6O09EiTQrs9iPbn8zpM3wa/A5ns9n9h9NmAWA9LdUD1Eja1u hr/w==
X-Gm-Message-State: AHYfb5gSHUyyNI2TmglSEIIY50EUvmcS2pYbV/CHEnhCZzulZqitmX6Q 0hVG+wLhcPl0mBly
X-Received: by 10.55.52.201 with SMTP id b192mr16068558qka.213.1502402342301; Thu, 10 Aug 2017 14:59:02 -0700 (PDT)
Received: from [10.0.30.153] (c-73-167-64-188.hsd1.ma.comcast.net. [73.167.64.188]) by smtp.gmail.com with ESMTPSA id y66sm3182975qke.21.2017.08.10.14.59.01 (version=TLS1_2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128/128); Thu, 10 Aug 2017 14:59:01 -0700 (PDT)
From: Ted Lemon <mellon@fugue.com>
Message-Id: <0F31651E-77F1-433F-831D-424B21D6CDA4@fugue.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_9BDE46C0-956E-4BEE-8D9C-A811A28C7E60"
Mime-Version: 1.0 (Mac OS X Mail 10.3 \(3273\))
Date: Thu, 10 Aug 2017 17:59:00 -0400
In-Reply-To: <296D97E1-29AA-4D25-A559-BF9D4F7D2023@iki.fi>
Cc: BARBARA H STARK <bs7652@att.com>, "homenet@ietf.org" <homenet@ietf.org>
To: Markus Stenberg <markus.stenberg@iki.fi>
References: <2D09D61DDFA73D4C884805CC7865E6114DBF5904@GAALPA1MSGUSRBF.ITServices.sbc.com> <296D97E1-29AA-4D25-A559-BF9D4F7D2023@iki.fi>
X-Mailer: Apple Mail (2.3273)
Archived-At: <https://mailarchive.ietf.org/arch/msg/homenet/zDIrTTPoaFgyEbsC4C-RPsAkP7g>
Subject: Re: [homenet] Status of draft-tldm-simple-homenet-naming CFA
X-BeenThere: homenet@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: IETF Homenet WG mailing list <homenet.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/homenet>, <mailto:homenet-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/homenet/>
List-Post: <mailto:homenet@ietf.org>
List-Help: <mailto:homenet-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/homenet>, <mailto:homenet-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 10 Aug 2017 21:59:06 -0000

On Aug 10, 2017, at 5:48 PM, Markus Stenberg <markus.stenberg@iki.fi> wrote:
> - 3.3
> - it implies that homenet exposes DNS outside home (by default?) and uses instead custom dns server logic to handle .home.arpa from ‘outside’; why not just firewall it and be done with it (or listen only on e.g. ULA prefix)

No, it doesn't say that.

> - why filter out global IPs?

Because if you don't, then when you lose your global prefix, you lose access to your printer.

> - 3.5 (PVD madness)
> - WHY? can’t we get just rid of split horizon DNS madness and use _a_ DNS instead of N DNS servers?

If you tell me how to implement that, I will be excited.   Otherwise, not solving this problem will produce brokenness.   The simplest way to solve it is to have the network advertise only one external prefix on the homenet if the homenet is multiply-homed.   Is that your preferred solution?

Also, this isn't necessarily split-horizon madness.   It's valid for the same query to yield different answers; this is operationally normal, and trying to do something to stop it in homenet isn't going to work.   Like you, I would prefer to do CDNs in a way that doesn't involve all of this brokenness, but if you want to watch Netflix on your homenet, we need to make this work.

> - round-robin = bad (think why happy eyeballs came up for example of why)

DNS resolvers use round-robining.   That's how the protocol works.   I can think of ways to improve on that, but they all involve changing the DNS packet format.   So I don't think that's in scope.   The draft just specifies how DNS round robining should work in the context of mpvd on a homenet—it didn't invent it.