Re: [Idr] I-D Action: draft-ietf-idr-bgpls-segment-routing-epe-17.txt

"Ketan Talaulikar (ketant)" <ketant@cisco.com> Sat, 20 October 2018 03:53 UTC

Return-Path: <ketant@cisco.com>
X-Original-To: idr@ietfa.amsl.com
Delivered-To: idr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 16855130E23 for <idr@ietfa.amsl.com>; Fri, 19 Oct 2018 20:53:03 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -14.502
X-Spam-Level:
X-Spam-Status: No, score=-14.502 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7uN2mkw4HgbM for <idr@ietfa.amsl.com>; Fri, 19 Oct 2018 20:53:00 -0700 (PDT)
Received: from rcdn-iport-7.cisco.com (rcdn-iport-7.cisco.com [173.37.86.78]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8E195127133 for <idr@ietf.org>; Fri, 19 Oct 2018 20:53:00 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=3839; q=dns/txt; s=iport; t=1540007580; x=1541217180; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-transfer-encoding:mime-version; bh=zFpT4APrFmjVBwDnuMygjWQw7JVwSuHXeDMcXCSQ31k=; b=Df3q2bxBd47ZnKn02QiPT1NmoIjGBO9I3pk3mC830l0a6yAfN0TFhtJR ory/npezWMNZ+C71YjVVMqkE0B2EnBKhXyoxlrV97T0tY/81T7hl0S54o uS12Pcb8caU7Uk6A11ezQRTyD7Ay+TpbbLRKUmxaipGl88r79xS5FpZ3e Y=;
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0AEAAA3pcpb/5xdJa1kGgEBAQEBAgEBAQEHAgEBAQGBUQUBAQEBCwGBVS9mfygKjAOOKJcUgXoLAQEYDYRHAoUIITQNDQEDAQECAQECbRwMhToBAQEBAwEBODQLDAQCAQgOAwQBAR8JBycLFAkIAgQOBQiDGoIBD6dehDACDECFH4tPF4FBP4NuNYMbAQECAQEWgROGDgKeQQkChl6KCB+BT0yEJwWJYokkgzGJVwIRFIEmHTiBPg8IcBUaIYJsCYsQhT5viwSBHwEB
X-IronPort-AV: E=Sophos;i="5.54,402,1534809600"; d="scan'208";a="465832210"
Received: from rcdn-core-5.cisco.com ([173.37.93.156]) by rcdn-iport-7.cisco.com with ESMTP/TLS/DHE-RSA-AES256-GCM-SHA384; 20 Oct 2018 03:52:59 +0000
Received: from XCH-ALN-007.cisco.com (xch-aln-007.cisco.com [173.36.7.17]) by rcdn-core-5.cisco.com (8.15.2/8.15.2) with ESMTPS id w9K3qxZ3022120 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Sat, 20 Oct 2018 03:52:59 GMT
Received: from xch-aln-008.cisco.com (173.36.7.18) by XCH-ALN-007.cisco.com (173.36.7.17) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Fri, 19 Oct 2018 22:52:58 -0500
Received: from xch-aln-008.cisco.com ([173.36.7.18]) by XCH-ALN-008.cisco.com ([173.36.7.18]) with mapi id 15.00.1395.000; Fri, 19 Oct 2018 22:52:58 -0500
From: "Ketan Talaulikar (ketant)" <ketant@cisco.com>
To: Susan Hares <shares@ndzh.com>
CC: "idr@ietf.org" <idr@ietf.org>
Thread-Topic: [Idr] I-D Action: draft-ietf-idr-bgpls-segment-routing-epe-17.txt
Thread-Index: AQHUZ7iSS5TT8vh4NkueJgv8Y0aJyqUnIhkAgABeIRA=
Date: Sat, 20 Oct 2018 03:52:58 +0000
Message-ID: <638372ca5df64b148e676b57441354ab@XCH-ALN-008.cisco.com>
References: <153995947824.6550.6797438271064339339@ietfa.amsl.com> <02a701d467ce$dd7715c0$98654140$@ndzh.com>
In-Reply-To: <02a701d467ce$dd7715c0$98654140$@ndzh.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [10.65.95.111]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-Outbound-SMTP-Client: 173.36.7.17, xch-aln-007.cisco.com
X-Outbound-Node: rcdn-core-5.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/O_-7oY5iaMzz1c3XqePVYw5vhwo>
Subject: Re: [Idr] I-D Action: draft-ietf-idr-bgpls-segment-routing-epe-17.txt
X-BeenThere: idr@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Inter-Domain Routing <idr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/idr>, <mailto:idr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr/>
List-Post: <mailto:idr@ietf.org>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/idr>, <mailto:idr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 20 Oct 2018 03:53:03 -0000

Hi Sue,

As discussed in the context of the draft-ietf-idr-bgp-ls-segment-routing-ext, this EPE draft also draws on both the BGP-LS security model in RFC7752 and the SR Security model in RFC8402.

IMO this sufficiently covers the security consideration for this BGP-LS extension and I request you to progress this draft further. 

As discussed earlier, we can evaluate RFC7752 from security perspective and I can help with addressing them via an update or a bis, as necessary.

Thanks,
Ketan

-----Original Message-----
From: Susan Hares <shares@ndzh.com> 
Sent: 19 October 2018 22:42
To: Ketan Talaulikar (ketant) <ketant@cisco.com>
Cc: idr@ietf.org
Subject: FW: [Idr] I-D Action: draft-ietf-idr-bgpls-segment-routing-epe-17.txt

Ketan: 

I do not see any reference to a revised RFC7752 in the security section of
this draft.   

If you agree we need a revised RFC7752 draft, please add this text to the security section.  

"RFC7752 security considerations may need to be expanded to cover the
extensions in this draft.   The need to extend the RFC7752 security is
common to many drafts that utilize BGP-LS defined in  RFC7752 so this work is being undertaken in an RFC7752bis rather than this draft."  

If you add this, I can start the 1 week review on text.  

Cheerily,  Sue 


-----Original Message-----
From: Idr [mailto:idr-bounces@ietf.org] On Behalf Of internet-drafts@ietf.org
Sent: Friday, October 19, 2018 10:31 AM
To: i-d-announce@ietf.org
Cc: idr@ietf.org
Subject: [Idr] I-D Action: draft-ietf-idr-bgpls-segment-routing-epe-17.txt


A New Internet-Draft is available from the on-line Internet-Drafts directories.
This draft is a work item of the Inter-Domain Routing WG of the IETF.

        Title           : BGP-LS extensions for Segment Routing BGP Egress
Peer Engineering
        Authors         : Stefano Previdi
                          Ketan Talaulikar
                          Clarence Filsfils
                          Keyur Patel
                          Saikat Ray
                          Jie Dong
	Filename        : draft-ietf-idr-bgpls-segment-routing-epe-17.txt
	Pages           : 23
	Date            : 2018-10-19

Abstract:
   Segment Routing (SR) leverages source routing.  A node steers a
   packet through a controlled set of instructions, called segments, by
   prepending the packet with an SR header.  A segment can represent any
   instruction, topological or service-based.  SR segments allow
   steering a flow through any topological path and service chain while
   maintaining per-flow state only at the ingress node of the SR domain.

   This document describes an extension to BGP Link State (BGP-LS) for
   advertisement of BGP Peering Segments along with their BGP peering
   node information so that efficient BGP Egress Peer Engineering (EPE)
   policies and strategies can be computed based on Segment Routing.



The IETF datatracker status page for this draft is:
https://datatracker.ietf.org/doc/draft-ietf-idr-bgpls-segment-routing-epe/

There are also htmlized versions available at:
https://tools.ietf.org/html/draft-ietf-idr-bgpls-segment-routing-epe-17
https://datatracker.ietf.org/doc/html/draft-ietf-idr-bgpls-segment-routing-e
pe-17

A diff from the previous version is available at:
https://www.ietf.org/rfcdiff?url2=draft-ietf-idr-bgpls-segment-routing-epe-1
7


Please note that it may take a couple of minutes from the time of submission until the htmlized version and diff are available at tools.ietf.org.

Internet-Drafts are also available by anonymous FTP at:
ftp://ftp.ietf.org/internet-drafts/

_______________________________________________
Idr mailing list
Idr@ietf.org
https://www.ietf.org/mailman/listinfo/idr