Re: [Idr] Returning draft-ietf-idr-rfc5575bis to WG, new 2 week discussion period

Jeffrey Haas <jhaas@pfrc.org> Fri, 14 June 2019 15:53 UTC

Return-Path: <jhaas@slice.pfrc.org>
X-Original-To: idr@ietfa.amsl.com
Delivered-To: idr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D24C61201D8; Fri, 14 Jun 2019 08:53:48 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7doeao8Ugxux; Fri, 14 Jun 2019 08:53:47 -0700 (PDT)
Received: from slice.pfrc.org (slice.pfrc.org [67.207.130.108]) by ietfa.amsl.com (Postfix) with ESMTP id 4DFCC120296; Fri, 14 Jun 2019 08:53:47 -0700 (PDT)
Received: by slice.pfrc.org (Postfix, from userid 1001) id AC6FE1E2F1; Fri, 14 Jun 2019 11:54:51 -0400 (EDT)
Date: Fri, 14 Jun 2019 11:54:51 -0400
From: Jeffrey Haas <jhaas@pfrc.org>
To: Robert Raszuk <robert@raszuk.net>
Cc: Christoph Loibl <c@tix.at>, John Scudder <jgs=40juniper.net@dmarc.ietf.org>, "draft-ietf-idr-rfc5575bis@ietf.org" <draft-ietf-idr-rfc5575bis@ietf.org>, "idr@ietf. org" <idr@ietf.org>
Message-ID: <20190614155451.GN23231@pfrc.org>
References: <A68BF050-9846-4E14-918D-297548E078A2@juniper.net> <99A607F0-84C5-4D3D-99EF-36B733DE205A@tix.at> <20190613205310.GI23231@pfrc.org> <374ACD0E-45BC-4416-AE8B-8D5C1AF6535D@tix.at> <20190614154743.GL23231@pfrc.org> <CAOj+MMH8gb=6xSG1ju5gBkgAb+EYHLhHknfv+hzh+0vQ9pQKxQ@mail.gmail.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <CAOj+MMH8gb=6xSG1ju5gBkgAb+EYHLhHknfv+hzh+0vQ9pQKxQ@mail.gmail.com>
User-Agent: Mutt/1.5.21 (2010-09-15)
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/PfEikRZE1MODqZWQ8Gz4o8mpV98>
Subject: Re: [Idr] Returning draft-ietf-idr-rfc5575bis to WG, new 2 week discussion period
X-BeenThere: idr@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Inter-Domain Routing <idr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/idr>, <mailto:idr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr/>
List-Post: <mailto:idr@ietf.org>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/idr>, <mailto:idr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 14 Jun 2019 15:53:49 -0000

Robert,

On Fri, Jun 14, 2019 at 05:49:31PM +0200, Robert Raszuk wrote:
> > Juniper's implementation doesn't do useful things when the dest-prefix is
> absence and validation is on.
> 
> I would classify this as deployment misconfiguration.
> 
> If you are using flow spec for other then DDoS use cases you should disable
> validation.

DDoS is mentioned as only one of the applications in the draft.  (See
Abstract, etc.)

The validation procedures don't have an "opt-out".

-oid does have such an opt-out.

-- Jeff