Re: [Idr] I-D Action: draft-ietf-idr-route-leak-detection-mitigation-08.txt

"Sriram, Kotikalapudi (Fed)" <kotikalapudi.sriram@nist.gov> Tue, 06 March 2018 17:53 UTC

Return-Path: <kotikalapudi.sriram@nist.gov>
X-Original-To: idr@ietfa.amsl.com
Delivered-To: idr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DA4FF12D956; Tue, 6 Mar 2018 09:53:20 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=nistgov.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UPgo0WQ9VT79; Tue, 6 Mar 2018 09:53:18 -0800 (PST)
Received: from gcc01-CY1-obe.outbound.protection.outlook.com (mail-cy1gcc01on071d.outbound.protection.outlook.com [IPv6:2a01:111:f400:fd00::71d]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9026A129C5D; Tue, 6 Mar 2018 09:53:16 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nistgov.onmicrosoft.com; s=selector1-nist-gov; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=sYYweFN3oRfH3WZFIxgmmby6owY7OKLdDGxqxcdeIVk=; b=ZrvaQZOLqA3zu8FM50rdlxWeRtpjucO3/+lPJYNjysIMw9vteGcw82X3tiNg86bJTClZVF8738H7HAEVQ8VCn/uNxWTC5K9KMFOZ/AkZdkFJPbWrEUTnFahn9kdYvfhmHkxKz2DHZrOH6+3nbFKwo/73lCABniJeYAieF1JjTIU=
Received: from BYAPR09MB2773.namprd09.prod.outlook.com (52.135.224.26) by SN6PR0901MB2512.namprd09.prod.outlook.com (52.132.117.150) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P256) id 15.20.548.13; Tue, 6 Mar 2018 17:53:14 +0000
Received: from BYAPR09MB2773.namprd09.prod.outlook.com ([fe80::d015:9eb2:757:ba95]) by BYAPR09MB2773.namprd09.prod.outlook.com ([fe80::d015:9eb2:757:ba95%13]) with mapi id 15.20.0548.016; Tue, 6 Mar 2018 17:53:14 +0000
From: "Sriram, Kotikalapudi (Fed)" <kotikalapudi.sriram@nist.gov>
To: IDR <idr@ietf.org>
CC: "idr-chairs@ietf.org" <idr-chairs@ietf.org>
Thread-Topic: [Idr] I-D Action: draft-ietf-idr-route-leak-detection-mitigation-08.txt
Thread-Index: AQHTtW/W05Mc9fRe8kCfheRQ+OuQ2A==
Date: Tue, 06 Mar 2018 17:53:14 +0000
Message-ID: <BYAPR09MB2773122B7C5EB5CB7A8323A484D90@BYAPR09MB2773.namprd09.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=kotikalapudi.sriram@nist.gov;
x-originating-ip: [71.255.240.48]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; SN6PR0901MB2512; 7:M6NohU/bkt3FGtiXpetc37H+UuWWQLqW6J28q2lkSbXO8wUIVnwvvetAejFuNl5yWlFpOxW5xmXyRq6Ih9zRNTBvL2YJvmulZPScL7yPj8pqR7S1pEJCfOUSO6dMA1AraEN7M/hEOAaUpQEZaOKlwL29nFqkd90iL4ppP8usc0i5Hp78hSFM3bQKHDRVn6Zbe9kiYJdPgVsNQhqJXNn8rpBJt5eaIOvY78dXl0AG2A6mXnbZb8U8BWmJ2MkbbBcA
x-ms-exchange-antispam-srfa-diagnostics: SSOS;
x-ms-office365-filtering-ht: Tenant
x-ms-office365-filtering-correlation-id: b205fc2e-2782-4d95-89f8-08d5838b2294
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(7020095)(4652020)(48565401081)(5600026)(4604075)(3008032)(4534165)(4627221)(201703031133081)(201702281549075)(2017052603328)(7153060)(7193020); SRVR:SN6PR0901MB2512;
x-ms-traffictypediagnostic: SN6PR0901MB2512:
x-microsoft-antispam-prvs: <SN6PR0901MB251249434270FF77B4EBB17884D90@SN6PR0901MB2512.namprd09.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(120809045254105);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6040501)(2401047)(8121501046)(5005006)(3002001)(3231220)(944501244)(52105095)(93006095)(93001095)(10201501046)(6055026)(6041288)(201703131423095)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123564045)(20161123562045)(20161123560045)(20161123558120)(6072148)(201708071742011); SRVR:SN6PR0901MB2512; BCL:0; PCL:0; RULEID:; SRVR:SN6PR0901MB2512;
x-forefront-prvs: 06036BD506
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(396003)(39380400002)(39860400002)(376002)(346002)(366004)(199004)(189003)(69224002)(6436002)(7736002)(8676002)(478600001)(14454004)(106356001)(81166006)(966005)(66066001)(33656002)(6916009)(59450400001)(186003)(8936002)(81156014)(6116002)(229853002)(3846002)(6246003)(26005)(6506007)(2906002)(102836004)(53936002)(55016002)(6306002)(97736004)(5250100002)(74316002)(9686003)(3660700001)(305945005)(316002)(5660300001)(25786009)(86362001)(105586002)(2900100001)(99286004)(39060400002)(7696005)(4326008)(68736007)(3280700002)(8666007); DIR:OUT; SFP:1102; SCL:1; SRVR:SN6PR0901MB2512; H:BYAPR09MB2773.namprd09.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: nist.gov does not designate permitted sender hosts)
x-microsoft-antispam-message-info: OJiIDdQW0j8v2IXicqywXO0DvINWMfMhTUMBHv55j1tAFgqQVYtUsDvmTwaaPcJknHn3tJW54avnKBvu91NKsBWdQnXrwbW9vQIK+edtoe66ney7FauKWKwtyrE9MUyQWYRimvBpVQRcUWAPfRqEUGf+y6TcnvDwsf/5uvKIQjZ0ytohfLAXjWpPop0Kr77hkE2pqH0M1W0ZgXkNxnJN/sDP+bUEEWcc+q6e2WMNpwXEaiuPlDi52qcmEDpP9BEwFTJVrPfVSCrHpg0qyO9vHiBzmJ+I6dsi/EDRB018XqEITXH86FuaDy/sU11iIFIusawIaXMzilyvlUk9oapFqA==
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: nist.gov
X-MS-Exchange-CrossTenant-Network-Message-Id: b205fc2e-2782-4d95-89f8-08d5838b2294
X-MS-Exchange-CrossTenant-originalarrivaltime: 06 Mar 2018 17:53:14.5552 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 2ab5d82f-d8fa-4797-a93e-054655c61dec
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SN6PR0901MB2512
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/B2ogRNaB3BGtVLe5bTwUQ-gxO60>
Subject: Re: [Idr] I-D Action: draft-ietf-idr-route-leak-detection-mitigation-08.txt
X-BeenThere: idr@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Inter-Domain Routing <idr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/idr>, <mailto:idr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr/>
List-Post: <mailto:idr@ietf.org>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/idr>, <mailto:idr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 06 Mar 2018 17:53:24 -0000

We (the authors) have updated the draft substantially. 

https://tools.ietf.org/html/draft-ietf-idr-route-leak-detection-mitigation-08  
https://datatracker.ietf.org/doc/html/draft-ietf-idr-route-leak-detection-mitigation-08   

1. The draft now focuses on the RLP solution which is inter-AS (multi-hop). 
      (Note: The intra-AS (local AS) solution with eOTC Attribute is provided in the bgp-open-policy draft.) 
2. The main body is now concise since several sections have moved into the Appendices.
3. The sections that appear in the Appendices are:
      A. Related prior-work review 
      B. Intra-AS route leak prevention with Community  (includes inputs from NANOG list) 
      C. Stopgap solution
      D. Design Rationale and Discussion (highlights of IDR/GROW discussions captured here).

Thanks for all the suggestions/discussion so far. Further comments are welcome anytime.

Thank you.
Sriram

---------------------------------------------

Abstract

   Problem definition for route leaks and enumeration of types of route
   leaks are provided in RFC 7908.  This document specifies BGP
   enhancements that significantly extend its route-leak detection and
   mitigation capabilities.  The solution involves carrying a per-hop
   route-leak protection (RLP) field in BGP updates.  The RLP fields are
   carried in a new optional transitive attribute, called BGP RLP
   attribute.  The RLP attribute helps with detection and mitigation of
   route leaks at ASes downstream from the leaking AS (in the path of
   BGP update).  This is an inter-AS (multi-hop) solution mechanism.
   This solution complements the intra-AS (local AS) route-leak
   avoidance solution that is described in ietf-idr-bgp-open-policy
   draft.