Re: [Idr] [Responses for the comments during the IETF108] New Version Notification for draft-wang-idr-rd-orf-01.txt

Aijun Wang <wangaijun@tsinghua.org.cn> Tue, 11 August 2020 01:52 UTC

Return-Path: <wangaijun@tsinghua.org.cn>
X-Original-To: idr@ietfa.amsl.com
Delivered-To: idr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D431A3A0EB7 for <idr@ietfa.amsl.com>; Mon, 10 Aug 2020 18:52:46 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_MSPIKE_H2=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id g8iMsut-OZuv for <idr@ietfa.amsl.com>; Mon, 10 Aug 2020 18:52:42 -0700 (PDT)
Received: from mail-m127101.qiye.163.com (mail-m127101.qiye.163.com [115.236.127.101]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 253193A0EB6 for <idr@ietf.org>; Mon, 10 Aug 2020 18:52:41 -0700 (PDT)
Received: from DESKTOP2IOH5QC (unknown [219.142.69.75]) by mail-m127101.qiye.163.com (Hmail) with ESMTPA id 6081F4805A; Tue, 11 Aug 2020 09:52:37 +0800 (CST)
From: Aijun Wang <wangaijun@tsinghua.org.cn>
To: 'Gert Doering' <gert@space.net>
Cc: 'Robert Raszuk' <robert@raszuk.net>, 'idr' <idr@ietf.org>, 'Keyur Patel' <keyur@arrcus.com>, 'John E Drake' <jdrake=40juniper.net@dmarc.ietf.org>, wangw36@chinatelecom.cn, "'UTTARO, JAMES'" <ju1738@att.com>
References: <CAOj+MME=-sC30LSEi9sdMZAwN-iWi-ATR7oT0n_4KeG5-o98ZQ@mail.gmail.com> <00ae01d66c58$de4da280$9ae8e780$@tsinghua.org.cn> <CAOj+MMH47cvi4YZCrgb_tDt6ttaL7M9_TS6fdFAX6GvFxs6LGA@mail.gmail.com> <DM5PR05MB3388C9D4EC80F129F67D6934C7490@DM5PR05MB3388.namprd05.prod.outlook.com> <CABNhwV0x2Nscniw0=pdUBinWmstv8MyyqKVy9evKnSNG2zeL6Q@mail.gmail.com> <67ef32c7d3aa43419382f9398ce1dc69@att.com> <CABNhwV2iTr6P7OwDYk5oLVfrA7Zt-j3WtHSdLF4T6gHoZJ3V1g@mail.gmail.com> <009201d66eb9$cad23ff0$6076bfd0$@tsinghua.org.cn> <CAOj+MMEufX1fjFk_R19=t2P7+49oJtYQH2rVB95U70KqxLwgqg@mail.gmail.com> <003701d66ef7$6d79bac0$486d3040$@tsinghua.org.cn> <20200810092841.GA2485@Space.Net>
In-Reply-To: <20200810092841.GA2485@Space.Net>
Date: Tue, 11 Aug 2020 09:52:34 +0800
Message-ID: <006501d66f82$15503d20$3ff0b760$@tsinghua.org.cn>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AQE6x4llTvqxF6q0GB1ILj0zUv9xoALPM6CZAfO5bkUCWLj1vwI8vEi2AgXg6U4BzkoregGff63SAO6QoHYB8AVuawEJzJ5XqdPL4TA=
Content-Language: zh-cn
X-HM-Spam-Status: e1kfGhgUHx5ZQUpXWQgYFAkeWUFZS1VLWVdZKFlBSkxLS0o3V1ktWUFJV1 kPCRoVCBIfWUFZGEpPTE1KHUIYSUgeVkpOQkxKSktMTkxMTklVEwETFhoSFyQUDg9ZV1kWGg8SFR 0UWUFZT0tIVUpKS09ISFVKS0tZBg++
X-HM-Sender-Digest: e1kMHhlZQR0aFwgeV1kSHx4VD1lBWUc6Ogw6Shw*DD8qE01COBUtCwoQ ChMKFDpVSlVKTkJMSkpLTE5DSUlPVTMWGhIXVQwaFRwaEhEOFTsPCBIVHBMOGlUUCRxVGBVFWVdZ EgtZQVlJSkJVSk9JVU1CVUxOWVdZCAFZQU9ITU03Bg++
X-HM-Tid: 0a73db38291c9865kuuu6081f4805a
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/Slyy0dTOonHB64GQOl2EgNcVhuI>
Subject: Re: [Idr] [Responses for the comments during the IETF108] New Version Notification for draft-wang-idr-rd-orf-01.txt
X-BeenThere: idr@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Inter-Domain Routing <idr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/idr>, <mailto:idr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr/>
List-Post: <mailto:idr@ietf.org>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/idr>, <mailto:idr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 11 Aug 2020 01:52:47 -0000

Hi, Gert:

What dangerous are you worrying then?
RD-ORF mechanism is enhancing the anti-attack capabilities of the network.
It enhances also the quick-reaction capability of network.   


Best Regards

Aijun Wang
China Telecom


-----Original Message-----
From: Gert Doering [mailto:gert@space.net] 
Sent: Monday, August 10, 2020 5:29 PM
To: Aijun Wang <wangaijun@tsinghua.org.cn>
Cc: 'Robert Raszuk' <robert@raszuk.net>; 'idr' <idr@ietf.org>; 'Keyur Patel'
<keyur@arrcus.com>; 'John E Drake' <jdrake=40juniper.net@dmarc.ietf.org>;
wangw36@chinatelecom.cn; 'UTTARO, JAMES' <ju1738@att.com>
Subject: Re: [Idr] [Responses for the comments during the IETF108] New
Version Notification for draft-wang-idr-rd-orf-01.txt

Hi,

On Mon, Aug 10, 2020 at 05:20:02PM +0800, Aijun Wang wrote:
> ???Prefix Limit??? mechanism can only protect the edge between PE-CE,
can???t be deployed within PE that peered via RR.  We should not rely solely
on the edge protection.

You must have proper edge protection in place.

If you do not have this, everything else is bandaid at best, and dangerous
at worst.

Gert Doering
        -- NetMaster
--
have you enabled IPv6 on something today...?

SpaceNet AG                      Vorstand: Sebastian v. Bomhard, Michael
Emmer
Joseph-Dollinger-Bogen 14        Aufsichtsratsvors.: A. Grundner-Culemann
D-80807 Muenchen                 HRB: 136055 (AG Muenchen)
Tel: +49 (0)89/32356-444         USt-IdNr.: DE813185279