Re: [Idr] WG adoption call - draft-li-idr-flowspec-srv6-05,txt

"Ketan Talaulikar (ketant)" <ketant@cisco.com> Fri, 30 July 2021 12:19 UTC

Return-Path: <ketant@cisco.com>
X-Original-To: idr@ietfa.amsl.com
Delivered-To: idr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B11983A2841; Fri, 30 Jul 2021 05:19:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.595
X-Spam-Level:
X-Spam-Status: No, score=-9.595 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=dnJyOjaG; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=AOHJdiJm
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7Kf2M0cCrdcs; Fri, 30 Jul 2021 05:18:58 -0700 (PDT)
Received: from alln-iport-6.cisco.com (alln-iport-6.cisco.com [173.37.142.93]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EFF243A2840; Fri, 30 Jul 2021 05:18:57 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=12782; q=dns/txt; s=iport; t=1627647538; x=1628857138; h=from:to:subject:date:message-id:references:in-reply-to: mime-version; bh=TY0Dev3m3ZzhbZUJGQ+PuRw2x0X3pJCnLLX2hpkSRZg=; b=dnJyOjaGkbYgbwD6mq95R17CDtimk5NBZE7yd0eCLU7yctyXc1IE19R3 5+2h60NV9hBA2YOVyog7pcxNY/ya3V58AlNlSUGv62ZXHCD8XP1Wpc8aK yo9g9NV9WE9txvHRM6STX/hkhGN7LfKhXn9T6Ij1Md5kFARa0qvOSM9jv A=;
X-IPAS-Result: A0DJAgDl7QNhl4ENJK1agQmBWYEjMFF+WjcxiA8DhTmIXgOVM4UAgS6BJQNUCwEBAQ0BATUMBAEBhFgCgn8CJTYHDgECBAEBAQEDAgMBAQEBBQEBBQEBAQIBBgQUAQEBAQEBAQGBCIVoDYZCAQEBBBILEBMBATgPAgEIDgMEAQEvMh0IAQEEARIIGoJPAYF+VwMvAQ6efgGBOgKKH3iBM4EBggcBAQYEBIE6Ag5BgxgYgjQDBoE6gnyCchNASIVdgQgnHIFJRIEVQ4JiPoJiAQECAYFfK4Mggi6CLGtqBFECgVoEASUQCxNFkUOLdp9TCoMniSOBFZQpEoNji2CXJJYOjDiTVBOEdAIEAgQFAg4BAQaBZwYsgVtwFYMkUBkOjisNCYNPhRSFSnM4AgYLAQEDCYpQAQE
IronPort-PHdr: A9a23:ev5hkhxIN7kBZe3XCzPFngc9DxPP853yMhwVrJEgjuEGfqei+sHkO 0rSrbVogUTSVIrWo/RDl6LNsq/mVGBBhPTJsH0LfJFWERNQj8IQkl8mDNyFT0b8Ka2iYykzB s8XUlhj8jmyOlRUH8CrYVrUrzWy4DceFw+5OxByI7H+G5XZiIK80OXhk6A=
IronPort-HdrOrdr: A9a23:iFu4naEVKaIIZ2YzpLqFQ5HXdLJyesId70hD6qkvc31om52j+f xGws516fatskdsZJhSo6H+BEDgewKTyXcR2+ks1NiZLXHbUQeTXeRfBM7ZskDd8k7Fh69gPM VbAtND4bTLZDAQ56uXkWrIcerIguP3ipxA7t2uqEuFODsaEp2ImD0JbDpzfHcGIDVuNN4cLt 6x98BHrz2vdTA8dcKgHEQIWODFupniiI/mSQRuPW9m1CC+yReTrJLqGRmR2RkTFxlVx605zG TDmwvloo2+rvCAzAPG3WO71eUUpDKh8KoAOCW/sLlQFtzesHfuWG2nYczFgNkBmpDr1L/tqq iUn/5vBbUq15qbRBDKnfKk4XiQ7N9p0Q649bdd6kGT/PAQg1kBepB8bMtiA2vkwltls9dm3K 1R2WWF85JREBPbhSz4o8PFThdwiyOP0DAfeMMo/jRiuLElGfRsRE0kjTdoOYZFGDi/5JEsEe FoAs2Z7PFKcUmCZ3ScumV02tSjUnk6Ax/DGyE5y4Co+ikTmGo8w1oTxcQZkHtF/JUhS4Nc7+ CBNqhzjrlBQsIfcKo4DuYcRsm8DHDLXHv3QS+vCEWiELtCN2PGqpbx7rlw7Oa2eIYQxJ93g5 jFWEMwjx96R6svM7z54HRvyGGDfIyQZ0We9ihu3ekPhlSnfsuZDcSqciFar/ed
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-AV: E=Sophos;i="5.84,281,1620691200"; d="scan'208,217";a="775919312"
Received: from alln-core-9.cisco.com ([173.36.13.129]) by alln-iport-6.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 30 Jul 2021 12:18:53 +0000
Received: from mail.cisco.com (xbe-aln-004.cisco.com [173.36.7.19]) by alln-core-9.cisco.com (8.15.2/8.15.2) with ESMTPS id 16UCIqgN007521 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=OK); Fri, 30 Jul 2021 12:18:52 GMT
Received: from xfe-rcd-002.cisco.com (173.37.227.250) by xbe-aln-004.cisco.com (173.36.7.19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.792.15; Fri, 30 Jul 2021 07:18:52 -0500
Received: from xfe-rtp-003.cisco.com (64.101.210.233) by xfe-rcd-002.cisco.com (173.37.227.250) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.792.15; Fri, 30 Jul 2021 07:18:52 -0500
Received: from NAM12-MW2-obe.outbound.protection.outlook.com (64.101.32.56) by xfe-rtp-003.cisco.com (64.101.210.233) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.792.15 via Frontend Transport; Fri, 30 Jul 2021 08:18:52 -0400
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=bxqLikpn50rFcOh/EW4gOlXUCornC9QkDOyCITQBWW6DBiim2g2QfnWOWPuPk1dMnhaKhmhpx5ThVQjGglORAcgTPdKQRP9K7qp2jrKmrOjLPc9fUKteGuMzP/zq6pMftt6TfFfpTIlcgXv5A6fXqDgGojhyK5oQ7L2d75sxJNc1aG2lWEPJSoxwiPC2+AYeaX61ZvThNUkO5qm/m1ZsQLGjzED6t0dMxMdn+iAxjrThNSA3Yw82nQQRROcMk34VaCg5CzSIpPd6/l8lSyoreSi3oFGH6syGLgQsBFBQr/7LsBxbQ+Wwhq+GSKaK6Zi/9BsxFSLYW5JD/0J8jjwigw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=VKObxnrbooGsc5vuOYAAwUvsY95wkZiGs3/qFAnUYow=; b=Gnk2t4lsRSbXfTU+jyejsfxv6UPEl5d6vkheobqwArQD/a64uiVotfp/weATSVyUO4FTJGFBuQGuhzp8SLfTG9lYMky36EzH97t/ZlD92lRyz8yQl6iC5Rs9bwWoTZ8mujURPh3+KcSrZVfxJfXiR4RtdGdqxBdL9sr8dGV+eyIfzfR0DAXkGAj8sgtqN7h74dmjrdRw9/mlgxGs2OKhTxbgevXe3S0uQ9oF7svtVU3yiEYDxxdVqiyYDjHMmQH5L2+WICs4t4iyq2wIS20ffc+n/R+tOxA3sE/rjXfmqM8crojmJ+S+agR0Z1GXGux7if+7jnKN8GtLs/kpD6Sl/A==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=VKObxnrbooGsc5vuOYAAwUvsY95wkZiGs3/qFAnUYow=; b=AOHJdiJm/KjTz6fd7MuhY0T8b0zH8jPDDN1mkM7zKKM52JfW0bBfwDZnwqUzYUg1YBJ9vh+1UDN0ANsa+4FQ+f9Yt9vbkIt8lswT8QztJzc/VQNUXJwzXUv547M526aKt7Xr/TqPdBJ0+lIyjcfeOhqWud4TFnzta4KTRZmyyQU=
Received: from MW3PR11MB4570.namprd11.prod.outlook.com (2603:10b6:303:5f::22) by CO1PR11MB5010.namprd11.prod.outlook.com (2603:10b6:303:93::9) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4373.21; Fri, 30 Jul 2021 12:18:51 +0000
Received: from MW3PR11MB4570.namprd11.prod.outlook.com ([fe80::7c01:5b00:b7b8:3e87]) by MW3PR11MB4570.namprd11.prod.outlook.com ([fe80::7c01:5b00:b7b8:3e87%4]) with mapi id 15.20.4373.025; Fri, 30 Jul 2021 12:18:50 +0000
From: "Ketan Talaulikar (ketant)" <ketant@cisco.com>
To: Susan Hares <shares@ndzh.com>, "idr@ietf.org" <idr@ietf.org>, "draft-li-idr-flowspec-srv6@ietf.org" <draft-li-idr-flowspec-srv6@ietf.org>
Thread-Topic: [Idr] WG adoption call - draft-li-idr-flowspec-srv6-05,txt
Thread-Index: Add/4sY1y/C0DGrlTPWyZq9XeRllcQFV5TdA
Date: Fri, 30 Jul 2021 12:18:50 +0000
Message-ID: <MW3PR11MB4570125E6DCFC74FAE544041C1EC9@MW3PR11MB4570.namprd11.prod.outlook.com>
References: <022201d77fe3$eb9ba9b0$c2d2fd10$@ndzh.com>
In-Reply-To: <022201d77fe3$eb9ba9b0$c2d2fd10$@ndzh.com>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: ndzh.com; dkim=none (message not signed) header.d=none;ndzh.com; dmarc=none action=none header.from=cisco.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 31124474-3fb0-4aa9-c521-08d9535430bf
x-ms-traffictypediagnostic: CO1PR11MB5010:
x-microsoft-antispam-prvs: <CO1PR11MB5010E83F44D67D94366EF07CC1EC9@CO1PR11MB5010.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MW3PR11MB4570.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(366004)(66446008)(316002)(9686003)(66556008)(55016002)(66946007)(64756008)(66476007)(66574015)(52536014)(33656002)(9326002)(6506007)(38070700005)(7696005)(53546011)(8936002)(2906002)(83380400001)(186003)(76116006)(38100700002)(966005)(166002)(122000001)(86362001)(5660300002)(110136005)(508600001)(71200400001)(8676002)(26005); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_MW3PR11MB4570125E6DCFC74FAE544041C1EC9MW3PR11MB4570namp_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: MW3PR11MB4570.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 31124474-3fb0-4aa9-c521-08d9535430bf
X-MS-Exchange-CrossTenant-originalarrivaltime: 30 Jul 2021 12:18:50.8514 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: O9ObpPsWmKMZBGBjDDWQMF1ud46Db9PTlN98G205tiR4UK6fm0cTB/CrdLfwea3ds7lOwDu6DKiUKbTKK2XNJw==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CO1PR11MB5010
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.36.7.19, xbe-aln-004.cisco.com
X-Outbound-Node: alln-core-9.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/I9xD1Q1ICGoffz3MDmDoyNT-R2s>
Subject: Re: [Idr] WG adoption call - draft-li-idr-flowspec-srv6-05,txt
X-BeenThere: idr@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Inter-Domain Routing <idr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/idr>, <mailto:idr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr/>
List-Post: <mailto:idr@ietf.org>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/idr>, <mailto:idr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 30 Jul 2021 12:19:05 -0000

Hello,

I have reviewed https://datatracker.ietf.org/doc/html/draft-li-idr-flowspec-srv6-05 and have the following questions for the authors before we consider adoption.


  1.  FlowSpec v1 is supposed to be focussed on the DDOS use-case. I don't find any text in the draft that clarifies how/why this is related to DDOS use-case. To me, this seems like something for FlowSpec v2. Per (what I understood to be) WG consensus, this work is then perhaps deferred to v2.
  2.  The draft proposes a new type "Whole SID". My understanding from the text is that this rule applies to the IPv6 DA and not the segments within the SRH. If so, then:
     *   What distinguishes a SID from any other IPv6 address in the DA field?
     *   Why isn't the existing IPv6 DA type not sufficient?
  3.  The draft proposes a new type "Some bits of SID (SBoS)". Again, I believe this applies to the IPv6 DA again - so the same two Qs above apply to this type to. What prevents a router (mistakenly) applying this rule to packets with non-SRv6 SID in their DA.
  4.  When the SBoS type is used, the SRv6 SID structure MUST be indicated as part of the rule. Then the parts of the SID of interest that need to be matched are also given in the space for the SID. Is my understanding correct? If so, the text was not very clear to me.
  5.  The question of why this SBoS type is required again crops us since the base FlowSpec rule for DA does allow pattern matching on the IPv6 DA as well? Perhaps I am mistaken, and if so the document does not provide any text or justification for why these new types are required.
  6.  Finally, there is no text related to the specific applicability scenarios for these extensions. Exactly why it is difficult to determine whether this falls under v1 or v2 scope.

Thanks,
Ketan

From: Idr <idr-bounces@ietf.org> On Behalf Of Susan Hares
Sent: 23 July 2021 22:28
To: idr@ietf.org; draft-li-idr-flowspec-srv6@ietf.org
Subject: [Idr] WG adoption call - draft-li-idr-flowspec-srv6-05,txt

This begins a 2 week WG adoption call for draft-li-idr-flowspec-srv6-05.txt.

I am missing 3 IPR statements (Zhenbin Li , Lei Li , and Lei Liu).
These authors should send in their IPR statements in response to this call.

This draft is targeted for the V2 version of flow specification.
Flow specification v2 draft will be discussed at an interim on 9/13/2021.

If it is adopted, it will be developed as part of the v2 set of drafts.

Please consider if:

1) if this draft is useful for networks,
2) if you wish to adopt this draft prior to adopting flow specification v2.

Cheerily, Susan Hares