Re: [Ice] Benjamin Kaduk's Discuss on draft-ietf-ice-pac-04: (with DISCUSS and COMMENT) - COMMENT

Christer Holmberg <christer.holmberg@ericsson.com> Fri, 24 April 2020 07:16 UTC

Return-Path: <christer.holmberg@ericsson.com>
X-Original-To: ice@ietfa.amsl.com
Delivered-To: ice@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 93D883A0DEC; Fri, 24 Apr 2020 00:16:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.101
X-Spam-Level:
X-Spam-Status: No, score=-2.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 8PrAHrdcSNHd; Fri, 24 Apr 2020 00:16:58 -0700 (PDT)
Received: from EUR03-AM5-obe.outbound.protection.outlook.com (mail-eopbgr30086.outbound.protection.outlook.com [40.107.3.86]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 861383A0DEB; Fri, 24 Apr 2020 00:16:57 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=d+L0aSXn+zqzJ0VGDsIen3HmwMxAjE0DajGwZcSMOKewOD7Qt8ABtmgJYNPBrmj31lXVSPR8khcaEYT0gBb0fGnzwosGJjp9VLGoidxEic4R/eLBitUvyrYyU/J74zIms9SsSCd4nyG/KafSDxwvjZmd3JgUXWo0dn6lcLY7upzBQTqN1XO7jMqiTfZx5D6Tul+hdDKko5S7VGglxbA7cKzUQcDYXKHL/5tMYku37Esordm0hKKddXIRa9n2rLN8KgM+aVzw4cHa0PZ8ZU5+dtbwwQ4j6axBoImCKTaMKtBZBxuQiXer2RMEEOTWYqCkIqmbtyGZpxkmlDNA7hd7wA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=cfTiCvdAf4J0TjWN5HJ6mRMoUUGmet1NMyOWT01MQvA=; b=CdyW7Ca/UhbhJSqsXA38CnFrpwW6MhNj6g+61vb6+snfMJGtR4QQckawFb21zgZp40/l5++C7FQMmCIZI0e9CyGmPb3TXAOwVgrjoyPsOolYHCwTCxU8Mne1p06X2a+Lggb/ajQhrj+eTEGduKp+lpZEo0nzn0slWqKtFKK9w5jo/eRml6ESDQ3nooxjqNBzzIh79SdvHYtOOyu3A7/ewvERsbGDk5vYPx34kxn7oX2a84ew5mrwS2ors47XPR1hF+/djuVMEl250JRgiWOlSFc0ASL5NghlOmbwHp4Q5J/ugzj2juHFWJ6TuyM43/ErkAhtmIcN7nKF5SUy4rzD2Q==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=cfTiCvdAf4J0TjWN5HJ6mRMoUUGmet1NMyOWT01MQvA=; b=AcBU7tR2jdAkxlE+YZuNg7a9waDtahJlHqrYfgVM+0WtVNognRA891SWbW3tzZnFKFQfwpTVZpjx+WEyzEy5RId9blfVXcnwR07sS3D+XDAHEcEIx4Z3fmSEyIZjBRLvz+aYcCHUxSj5UTeP+IV1/sqOJMpXI70Zh4au/w2Ifvc=
Received: from AM0PR07MB3987.eurprd07.prod.outlook.com (2603:10a6:208:46::31) by AM0PR07MB5491.eurprd07.prod.outlook.com (2603:10a6:208:10b::16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2937.11; Fri, 24 Apr 2020 07:16:54 +0000
Received: from AM0PR07MB3987.eurprd07.prod.outlook.com ([fe80::b929:4e5c:6b46:3ccc]) by AM0PR07MB3987.eurprd07.prod.outlook.com ([fe80::b929:4e5c:6b46:3ccc%7]) with mapi id 15.20.2937.020; Fri, 24 Apr 2020 07:16:54 +0000
From: Christer Holmberg <christer.holmberg@ericsson.com>
To: Benjamin Kaduk <kaduk@mit.edu>
CC: The IESG <iesg@ietf.org>, "draft-ietf-ice-pac@ietf.org" <draft-ietf-ice-pac@ietf.org>, "ice-chairs@ietf.org" <ice-chairs@ietf.org>, "ice@ietf.org" <ice@ietf.org>, Nils Ohlmeier <nohlmeier@mozilla.com>
Thread-Topic: Benjamin Kaduk's Discuss on draft-ietf-ice-pac-04: (with DISCUSS and COMMENT) - COMMENT
Thread-Index: AQHWGJ/Y4A/WcviANkSOtezds/34XqiHjhaAgACDngA=
Date: Fri, 24 Apr 2020 07:16:54 +0000
Message-ID: <51ABFD4D-4CC0-4523-BD37-D062876910EA@ericsson.com>
References: <D2659A05-4833-4A07-B512-7143025CCB81@ericsson.com> <20200424022549.GT27494@kduck.mit.edu>
In-Reply-To: <20200424022549.GT27494@kduck.mit.edu>
Accept-Language: en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/10.1e.0.191013
authentication-results: spf=none (sender IP is ) smtp.mailfrom=christer.holmberg@ericsson.com;
x-originating-ip: [188.127.223.154]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: d88065a4-f70c-4985-0a4f-08d7e81f77b8
x-ms-traffictypediagnostic: AM0PR07MB5491:
x-microsoft-antispam-prvs: <AM0PR07MB54918644C2B0D3BC8DEAF27D93D00@AM0PR07MB5491.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-forefront-prvs: 03838E948C
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:AM0PR07MB3987.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFTY:; SFS:(4636009)(39860400002)(136003)(396003)(366004)(346002)(376002)(8676002)(81156014)(316002)(186003)(4326008)(54906003)(36756003)(6506007)(44832011)(6916009)(26005)(966005)(2906002)(66574012)(64756008)(33656002)(66946007)(66446008)(66556008)(86362001)(6486002)(66476007)(76116006)(478600001)(6512007)(2616005)(71200400001)(5660300002)(91956017)(8936002); DIR:OUT; SFP:1101;
received-spf: None (protection.outlook.com: ericsson.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-ms-exchange-antispam-messagedata: N/rrD2FiCKk/SlGJrHHmLlp7nkqknVERycbQZVee2aDkwcZoRnbyUT7Qq33LBj0iZ9dlN5j8csLY14BTdiKFgUGoE+r3RGVnInEMPk5wrpb/I/BE3akqCZLdfQfsqInAf7mZzyC9F3RGyBVGpy3G4Q==
x-ms-exchange-transport-forked: True
Content-Type: text/plain; charset="utf-8"
Content-ID: <03A6CDC16258174F890B604BCDBC68DD@eurprd07.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-Network-Message-Id: d88065a4-f70c-4985-0a4f-08d7e81f77b8
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Apr 2020 07:16:54.5225 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: QzDzzAOh5Aq/VezEofoKbwf4UXhWZBN7jZg+RpnU74yswJtUtOHKfapS2khX682jR85sAErItxxSCdFVgSvMhQp8MjSxwouzYlkxwNA5Luc=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM0PR07MB5491
Archived-At: <https://mailarchive.ietf.org/arch/msg/ice/EqXrJmy8zUzp040m9kAZ7ZDup_U>
Subject: Re: [Ice] Benjamin Kaduk's Discuss on draft-ietf-ice-pac-04: (with DISCUSS and COMMENT) - COMMENT
X-BeenThere: ice@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Interactive Connectivity Establishment \(ICE\)" <ice.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ice>, <mailto:ice-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ice/>
List-Post: <mailto:ice@ietf.org>
List-Help: <mailto:ice-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ice>, <mailto:ice-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 24 Apr 2020 07:17:00 -0000

Hi,

    >> In this reply I will address your COMMENT issues.
    >>     
    >>     ----------------------------------------------------------------------
    >>     COMMENT:
    >>     ----------------------------------------------------------------------
    >>     
    >> >    [I also had Éric's question about the Updates relationship, so thanks for
    >> >    that thread.]
    >> >    
    >> >    Section 4
    >> >    
    >> >       While the timer is running, the ICE agent MUST NOT set the state of a
    >> >       checklist to Failed, even if the checklist has no pairs left to
    >> >       check.  As a result, the ICE agent will not remove any data streams
    >> >       or set the state of the ICE session to Failed as long as the timer is
    >> >       running.
    >> >    
    >> >    This is, IIUC, the crux of the Discuss point -- how does this affect Setion
    >> >    7.2.5.4 of RFC 8445?
    >>   
    >> Please see my other reply. Section 7.2.5.4 is what the draft modifies.
       
    ---
     
    >> >       When the timer eventually elapses, the ICE agent MUST resume typical
    >> >       ICE processing, including setting any checklists containing only
    >> >       Failed pairs to the Failed state, as usual, and handling any
    >> >    
    >> >    I don't think "containing only Failed pairs" is exactly the criterion used
    >> >    by RFC 8445.
    >>   
    >> Correct. 
    >> 
    >> What about the following suggested text:
    >> 
    >>    "When the timer eventually elapses, the ICE agent MUST resume typical
    >>    ICE processing, including setting the state of a checklist to Failed if there
    >>    are no pairs left to check,  and handling any consequences as indicated
    >>    in [RFC8445], Section 8.1.2.  Naturally, if there are no such checklists,
    >>    no action is necessary."
    >
    > I don't see any obvious problems with this.  (I think when I made this
    > comment I was looking at "For each checklist in the checklist set, if all
    > of the candidate pairs are in either Failed or Succeeded state, and if
    > there is not a valid pair in the valid list for each component of the data
    > stream associated with the checklist, the state of the checklist is set to
    > Failed." from https://tools.ietf.org/html/rfc8445#section-7.2.5.4 but your
    > new text covers relevant things.)
    
   Ok.

    ---
     
    >> >       One consequence of this behavior is that in cases where ICE should
    >> >       fail, e.g., where both sides provide candidates with unsupported
    >> >       address families, ICE will no longer fail immediately, and only fail
    >> >       when the PAC timer expires.  However, because most ICE scenarios
    >> >       require an extended period of time to determine failure, the fact
    >> >       that some specific scenarios no longer fail fast should have minimal
    >> >       application impact, if any.
    >> >   
    >> >   Are there any scenarios that are guaranteed to fail both with and without
    >> >    PAC that could be special-cased to still fail fast?  (The example given of
    >> >    "unsupported address families" does not seem like it is one, off the top of
    >> >    my head.)
    >>   
    >> ICE-PAC does not guarantee success. ICE-PAC only makes an ICE agent wait for additional candidates in cases where it currently would
    >> declare Failure, but such additional candidates may of course never come.
    >> 
    >> Also, as described in Section 8.1.1 of RFC 8445, and ICE agent can decide to terminate the ICE processing whenever it wants, and it could of course do that before there are valid pairs for all streams - no matter if the
    >> PAC timer is used or not. But, ICE-PAC addresses that in the last paragraph of Section 4 (related to your comment below).
    >
    > Thanks for these clarifications.  (To be clear, I was just wondering if the
    > "some specific scenarios [that] no longer fail fast" could be optimized by
    > special-casing a specific case that will always fail even with PAC, so as
    > to still fail fast, but I don't think there's anything to do here.)
    
     Ok.

    ---
       
    >> >       MAY use the PAC timer to do so.  As always, the controlling ICE agent
    >> >       retains full discretion, and MAY decide, based on its own criteria,
    >> >       to nominate pairs prior to the timer elapsing.
    >> >    
    >> >    nit(?): I'd consider going with "PAC timer" again here at the end of the
    >> >    sentence.
    >>     
    >> I can do that.
    
    ---
         
    Regards,
     
    Christer