Re: [Idr] Adoption and IPR call for draft-wang-idr-vpn-prefix-orf-03.txt (8/16 to 8/30)

John E Drake <jdrake@juniper.net> Wed, 31 August 2022 14:47 UTC

Return-Path: <jdrake@juniper.net>
X-Original-To: idr@ietfa.amsl.com
Delivered-To: idr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6DDCAC1526EC for <idr@ietfa.amsl.com>; Wed, 31 Aug 2022 07:47:54 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.576
X-Spam-Level:
X-Spam-Status: No, score=-7.576 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.571, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b=uMZjM0lu; dkim=pass (1024-bit key) header.d=juniper.net header.b=MDZAxvUf
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id j3b1Wq7Dp5Y9 for <idr@ietfa.amsl.com>; Wed, 31 Aug 2022 07:47:50 -0700 (PDT)
Received: from mx0b-00273201.pphosted.com (mx0b-00273201.pphosted.com [67.231.152.164]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id DC314C15259E for <idr@ietf.org>; Wed, 31 Aug 2022 07:47:48 -0700 (PDT)
Received: from pps.filterd (m0108163.ppops.net [127.0.0.1]) by mx0b-00273201.pphosted.com (8.17.1.5/8.17.1.5) with ESMTP id 27V84coC022335; Wed, 31 Aug 2022 07:47:44 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=PPS1017; bh=HUIRWTv+8xbEk4e1pOVq4+jVdWw9ooSXGlWA8hw5AVY=; b=uMZjM0luZnNT1Pkx+Ccbuaa5pNvDRFD8OudIiW+zb11SXirkR1/sg1CSH4UjIPSDtF0S AJb1GesZ5dunhauRvI8xxGz3xQCx1AS0frO5R+yGEGSkxrQ7n6R2QYSivyggoknUs8cU +ZW83pJggQHIbCnKc3iuJTe0a0NctGZ0twgxiaQA4Kz39zoD9CYag5G1Vr1KFKS84sjD kdnWpKxEt5ilCq81rCAGFKA0M/ZniTwxKH91KeMIcnHaf7gkrxlnqmS70t4kZdxetJA/ z3Kkcr6bSWIvtQhYsLfRI2vBObQRbr2dVjZiw4xYDYPw3B9Lt2/FcpoHC9RGAtxY11wg Sg==
Received: from nam02-dm3-obe.outbound.protection.outlook.com (mail-dm3nam02lp2043.outbound.protection.outlook.com [104.47.56.43]) by mx0b-00273201.pphosted.com (PPS) with ESMTPS id 3ja3tjrkej-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Wed, 31 Aug 2022 07:47:43 -0700
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=IMegxmhK+i01e37qKAhy2ZJEqCXaTvyPvtBVtzw6K7o1G1vkd0UX0h74Z6CmMSnQqiznbqrW4WIB1Od7IcG7D8PmndDgYi3T1nD7one4hwvGF780rve3TYUsuhguaCmnO5Qzoqb3IwX6kuc7YiLWtu8y6eL5cBKHi4YgSkwQ4mluLpPGcVo2MA/FgjvCk2esvgSr7SorWEmtEvPNH8Dbg/Uo+2O641CBlTvt1QwHNEEiF2XXfyjeO8oepkd+a8IgS+65kDtg8CLPZYkojQ1Cf0dcYR/PUsCTroJSQ37J6VrMG3XLUQ56ugO8tQSitOv0U5l490nOqPxbMzLMoUlpxQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=HUIRWTv+8xbEk4e1pOVq4+jVdWw9ooSXGlWA8hw5AVY=; b=MbQ17yE4X4Xk8cqbzTR3hJjjjolyWHB1GFERyeIjUg0jGJA7u0UHbwoCBW7fBa/J/vpA0IdcJH5dffYhvuMy5S6PBhHQbjKNkPDHimmSKMpatjZNnMk3NzMmoB9laqFeMWlzyH0Fy+mjI+1xodUPHE77/mYRpVmcGMEDgRshq9iAmqA5dLuApFp8ndzi1lrT5iAvwrDqjyyAb6E2TtSaIezLUFGoazJOJRmMMLgd2Xmdxc38QmqE3f5ozdohuaNxV1AT0S//qhgWHgXcFYfjKCnlGA33GPwBVGm1O0i8fRHS4MUzDMOtgRc8xHEhdlLTBGc44qnIKvsusPn3dWNYHA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=HUIRWTv+8xbEk4e1pOVq4+jVdWw9ooSXGlWA8hw5AVY=; b=MDZAxvUf4fk7aa/tgMc/ER8U7gU5w0hJZdf8wqep5gIo0NGGhm9wibMMvR3Js9G6b3MvJV7VbBVb5Q0DnUenQkzyeE0fFNxarxaIPbvAdjVHaewtIulOi+FlkyHDm8MTF8cW2vU+1XliVISynJNc2A9eFVE+Zoaqvcap2g4j/jM=
Received: from BY3PR05MB8081.namprd05.prod.outlook.com (2603:10b6:a03:366::15) by BN8PR05MB6049.namprd05.prod.outlook.com (2603:10b6:408:61::19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5588.10; Wed, 31 Aug 2022 14:47:39 +0000
Received: from BY3PR05MB8081.namprd05.prod.outlook.com ([fe80::e1cb:1c8d:833d:e94]) by BY3PR05MB8081.namprd05.prod.outlook.com ([fe80::e1cb:1c8d:833d:e94%5]) with mapi id 15.20.5612.005; Wed, 31 Aug 2022 14:47:39 +0000
From: John E Drake <jdrake@juniper.net>
To: Robert Raszuk <robert@raszuk.net>, Wei Wang <weiwang94@foxmail.com>
CC: idr <idr@ietf.org>, Sue Hares <shares@ndzh.com>
Thread-Topic: [Idr] Adoption and IPR call for draft-wang-idr-vpn-prefix-orf-03.txt (8/16 to 8/30)
Thread-Index: AQHYvMvK72wOqlQr9kaQXcvjzx/aBq3IkPcAgAAzfgCAADXlAIAAFKOAgAAIAoA=
Date: Wed, 31 Aug 2022 14:47:39 +0000
Message-ID: <BY3PR05MB80816E4FB27B070AB73DB5BFC7789@BY3PR05MB8081.namprd05.prod.outlook.com>
References: <20220831072731.5F2309000AF@hmail-m121149.qiye.163.com> <E413E79B-A819-48AE-9014-BDCF77ADA2EA@tsinghua.org.cn> <CAOj+MMHsNnnvhh=WZP6cw4LZY5PTy727uy3jsHqgnXfbN1R-uA@mail.gmail.com> <CAEfhRrwUYOUmZuaPhdF8m92iedRYeXaEpSXhUTTT5UmXFDyHqA@mail.gmail.com> <tencent_2EF9A30EDA26DA25F5F2E6E4E71DD81C3209@qq.com> <CAOj+MMHgKa7obp_SdOG-ikt9FWyjLPi4_MWs9nT-38AYjDTdfw@mail.gmail.com>
In-Reply-To: <CAOj+MMHgKa7obp_SdOG-ikt9FWyjLPi4_MWs9nT-38AYjDTdfw@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Enabled=true; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SetDate=2022-08-31T14:47:37Z; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Method=Standard; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Name=0633b888-ae0d-4341-a75f-06e04137d755; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SiteId=bea78b3c-4cdb-4130-854a-1d193232e5f4; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ActionId=1dd713bb-c917-4821-aa4e-4701e51de1dc; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ContentBits=2
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: BY3PR05MB8081:EE_|BN8PR05MB6049:EE_
x-ms-office365-filtering-correlation-id: ab5c2531-dcdc-4b9e-cd6e-08da8b5fc064
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:BY3PR05MB8081.namprd05.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(376002)(346002)(366004)(136003)(396003)(39860400002)(9686003)(26005)(71200400001)(38100700002)(2906002)(122000001)(7696005)(53546011)(6506007)(55016003)(186003)(33656002)(83380400001)(4326008)(8676002)(66946007)(66446008)(66476007)(66556008)(64756008)(5660300002)(76116006)(110136005)(966005)(316002)(166002)(52536014)(54906003)(86362001)(8936002)(38070700005)(41300700001)(478600001)(48020200002); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_BY3PR05MB80816E4FB27B070AB73DB5BFC7789BY3PR05MB8081namp_"
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BN8PR05MB6049
X-Proofpoint-GUID: K90T60qsE9BozjRGpu-fC5xThYQtSoOs
X-Proofpoint-ORIG-GUID: K90T60qsE9BozjRGpu-fC5xThYQtSoOs
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.205,Aquarius:18.0.895,Hydra:6.0.517,FMLib:17.11.122.1 definitions=2022-08-31_09,2022-08-31_03,2022-06-22_01
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 priorityscore=1501 spamscore=0 phishscore=0 adultscore=0 clxscore=1011 bulkscore=0 impostorscore=0 mlxlogscore=999 suspectscore=0 lowpriorityscore=0 mlxscore=0 malwarescore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2207270000 definitions=main-2208310074
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/DoQ_upwOXR0MCk2ZZ_lzJUWjPBw>
Subject: Re: [Idr] Adoption and IPR call for draft-wang-idr-vpn-prefix-orf-03.txt (8/16 to 8/30)
X-BeenThere: idr@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Inter-Domain Routing <idr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/idr>, <mailto:idr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr/>
List-Post: <mailto:idr@ietf.org>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/idr>, <mailto:idr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 31 Aug 2022 14:47:54 -0000

Robert,

I had previously alluded to your point:  "Further, I think the idea of statically configuring per [VPN, PE] state on every PE in a VPN is a failed IQ test."

Yours Irrespectively,

John



Juniper Business Use Only
From: Idr <idr-bounces@ietf.org> On Behalf Of Robert Raszuk
Sent: Wednesday, August 31, 2022 10:17 AM
To: Wei Wang <weiwang94@foxmail.com>
Cc: idr <idr@ietf.org>; Sue Hares <shares@ndzh.com>
Subject: Re: [Idr] Adoption and IPR call for draft-wang-idr-vpn-prefix-orf-03.txt (8/16 to 8/30)

[External Email. Be cautious of content]

Wei,

I just want to highlight one important principle in respect to your point #1 about the new quota which I believe was not observed so far during this discussion and this is a very important change.

In BGP based LxVPNs architecture when you provision and delete a VPN site or a VRF you are not required to touch configuration of any other node in the network other than your immediately adjacent PE.

Your quota violates this principle completely by requiring you to modify the <RD,src PE> value or even if the value remains the same to add such <RD,src PE> pair to the list on each remote PE when you add new VRF or new sites to existing VPNs.

Regards,
Robert


On Wed, Aug 31, 2022 at 3:03 PM Wei Wang <weiwang94@foxmail.com<mailto:weiwang94@foxmail.com>> wrote:
Hi All,


    The updated draft is the fruit of previous intense discussions, we have analyzed various possible situations. Let me explain some major concerns again:


1) About the quota:
   Actually, the quota is not exist in the original version, but we found there are some problems during the discussions in the mailing list. So, we add the quota to improve the drop strategies after the VPN Prefix ORF mechanism is triggered. We can't drop all the routes(from all sources) belong to the VPNs when the VRF limit is exceed because one of the rogue PE.
    The reason that quota is set for every PE is that in real network the number of customer routes in each VPN under different PEs may be different. So, the quota value should be set depend on the customer scale.
   For more information about quota, I think you can refer the discussion: https://mailarchive.ietf.org/arch/msg/idr/uoQO8vqSA82UCrfXppFjwNbMg1A/<https://urldefense.com/v3/__https:/mailarchive.ietf.org/arch/msg/idr/uoQO8vqSA82UCrfXppFjwNbMg1A/__;!!NEt6yMaO-gk!EHHc7Z2KZAwai4Vbbo3RcwpyVEKt0aRGlNx94SStnmvJq_PnsTFqscUCTPCI5MELs0rSQsTWJ8J1D-k$>