[Idr] Invite comments on updated AS_SET deprecation draft

"Sriram, Kotikalapudi (Fed)" <kotikalapudi.sriram@nist.gov> Wed, 25 January 2023 17:17 UTC

Return-Path: <kotikalapudi.sriram@nist.gov>
X-Original-To: idr@ietfa.amsl.com
Delivered-To: idr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DD288C15153C; Wed, 25 Jan 2023 09:17:51 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.687
X-Spam-Level:
X-Spam-Status: No, score=-0.687 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_INVALID=0.1, DKIM_SIGNED=0.1, FROM_GOV_SPOOF=1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, T_SPF_TEMPERROR=0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=neutral reason="invalid (public key: DNS error: SERVFAIL)" header.d=nist.gov
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2scv6_g1MIzx; Wed, 25 Jan 2023 09:17:41 -0800 (PST)
Received: from NAM11-DM6-obe.outbound.protection.outlook.com (mail-dm6nam11on2116.outbound.protection.outlook.com [40.107.223.116]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 25956C15152D; Wed, 25 Jan 2023 09:17:11 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=TdE2tQenrUVJlcI+z6IrD67gnI0n7ffrgMN+3/U+M6zNguuedxmYDL2DW+QWQ7D+3c+/ty9A8WGOVWk/fhnQzHSPBiSnVOqWdV9ySPT9Xm7RsoScxXlMxXZATifBF1r6j2Fl4ct91yZTdV5OgdtsIJt5NuwPdFXALDh5R8DtrpTXabRO9yYbf2z+tZIyQZB95W1gLCAsye9IRfOirqZqUUvgiPc0GGVhnSq2Hhe1Vs9bvOWoeyNMraL/w0BrR4yBKCkTm7ncQ0REqWFDIIxTsHcyw5VUDJyEVdOUM5So0k3bwDVcJykbB/MTwkQv0ywkPWAGKgoPng+rOv+fuaqXmg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=5KJtXUOKA37GxjJ0Qc4nzyFKJ+JjKK37MUvw/u2garQ=; b=E0hFwzeGkgrHtZwZAM2pLJcPKXMrfPqFplqEkW+BqFHLBvlbg4cQCVt2my2NOqDYjC67lo7310eT6RQyfzZ+5N3RxSoPfsGFqcNC/YIHPP4T6D4o9Mg3PNPCRgBVjSaytObY0rWVo2g0+VU/O6yUKL00atw1+MLG7oiCObvWZ5KPhoT+pSKb5sDjiUrsJ25pOnFjgLKWwH6QVdmU1QLHNxCAqtmyyK+XyZftuiImKCBFz3+Kh7RorP2tZr40BuZFWtivc6WUVdJXvLPo4Ut9xzYfFYHh2vDEEdAL9uxXfd8FbU0KhgCejuST2hxIURbOST8fCOn3hfFy8C6r+pf9eA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=nist.gov; dmarc=pass action=none header.from=nist.gov; dkim=pass header.d=nist.gov; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=nist.gov; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=5KJtXUOKA37GxjJ0Qc4nzyFKJ+JjKK37MUvw/u2garQ=; b=YWqCSqxDCfjmktOlP7MtyAweDWaOSD/mn/anRV2Pe/wm0z+pX/2zgNNcOmKlLwXo+mjSmEFGfHXB1CLLJKkzmnm5tFG2BX+rj9uAR1089tkwC+2IZa652D1OCIOmYwGiyX1KWegM7pAbjsHcOAhObniI32Z6HKWFN5bAPlO1k0hvUK5s1IrLRj69/yIRbrSoHwqaeOfYQNp4yWH5hFpBmWPRxbdGynsaHxZdaFy8eScjkYWQ6v4vIQ1TiOzpzkG6lU3dVp7oSgFk4NB2h2VA5VsHnT9cciaV28Kpucoo0zXcJh1Lp5zgzFuRK+CVizWZhOwY5hu7ezbRCjNhR3pCUQ==
Received: from SA1PR09MB8142.namprd09.prod.outlook.com (2603:10b6:806:171::8) by SA9PR09MB5711.namprd09.prod.outlook.com (2603:10b6:806:4f::12) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6043.21; Wed, 25 Jan 2023 17:17:09 +0000
Received: from SA1PR09MB8142.namprd09.prod.outlook.com ([fe80::5b68:69d9:e45b:6cfc]) by SA1PR09MB8142.namprd09.prod.outlook.com ([fe80::5b68:69d9:e45b:6cfc%5]) with mapi id 15.20.6043.021; Wed, 25 Jan 2023 17:17:09 +0000
From: "Sriram, Kotikalapudi (Fed)" <kotikalapudi.sriram@nist.gov>
To: "idr@ietf.org" <idr@ietf.org>, "grow@ietf.org" <grow@ietf.org>
CC: "draft-ietf-idr-deprecate-as-set-confed-set@ietf.org" <draft-ietf-idr-deprecate-as-set-confed-set@ietf.org>
Thread-Topic: Invite comments on updated AS_SET deprecation draft
Thread-Index: AdkwFOONXMbD+TM5Qy6rgXnzTHdQ4gAyn+Tw
Date: Wed, 25 Jan 2023 17:17:08 +0000
Message-ID: <SA1PR09MB814253A3F593917A81094A0484CE9@SA1PR09MB8142.namprd09.prod.outlook.com>
References: <SA1PR09MB81421F871DE2272D8F6AEDAD84CE9@SA1PR09MB8142.namprd09.prod.outlook.com>
In-Reply-To: <SA1PR09MB81421F871DE2272D8F6AEDAD84CE9@SA1PR09MB8142.namprd09.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=nist.gov;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: SA1PR09MB8142:EE_|SA9PR09MB5711:EE_
x-ms-office365-filtering-correlation-id: 93d3687d-c8a2-4890-2694-08dafef7fd7e
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SA1PR09MB8142.namprd09.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230025)(4636009)(366004)(451199018)(122000001)(38100700002)(86362001)(55016003)(33656002)(38070700005)(110136005)(82960400001)(2906002)(15650500001)(66476007)(76116006)(4326008)(66556008)(8936002)(66946007)(450100002)(8676002)(52536014)(64756008)(66446008)(5660300002)(186003)(9686003)(26005)(2940100002)(6506007)(4743002)(7696005)(71200400001)(83380400001)(966005)(498600001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 9C8AHOSGhC3D4cEXsKX/2hAvz0xgczbP2e0Ibn3WHcsehSPxOFScsVPSU1UcwtVq9xJffq6ewyhu8tXfkFVMSqBb6p/P4srCYMst3QuGfs2Bk/0dMPJ0kfBauFVQlZCyFsfASOJY9lhDxxbT1rl0rZ6Dhkxa1jLvDq/KCEzCLLiOpAddcvRoiksJVigzxyGuz9ToHwV7Nuc70iseGMuDJJZKH8isOjNBeD7Z2BghI3TSqM7v40zxOYPPmkCQXtKog8vih0iSsalhRdYG9Ov5onA94fWk9Juukzln+ANAGbV67Kpv3ywm8omjyoC3kvew7x1XalSTBYkEr19IYojcKN/AZxELdzRf2tfWL/Tm13n8U1vbpA94jq5xDqWVnLr+z/lfA/svcu4Sn1cKcImbHirSJx5qMOe5T5HmTsLOlTEyeI9e0AyLpGEomEBYiLBlTjC/RUYmcbYcevLrlaG/n6Pg4sgxvPg0pj3F5e5zvWn5ii8F/dvRMikPrSf2iFlobwb2kTCuiNaO3WxGXoGeH0FcgVqLsABUtCrAQ6QvrJRN3hvUghh8At46c8gGg7p8x/1U3mFc1qrHgyjbHpb2wJRM1hMPbd7uTzMvJFdN+7wA1h1SZo+/3BwKej6Z0uXU7yYFV0Io8N2XrhLwmuaDUFl73gTNj3GNWPS8yaqkzBop8h/qjc5vgPYODNGzMAUe2u00sUaiX081M37hY8EIuBH2pUWs7nLjoWixsvrGeGVGo1Zwo5DkvWq5lYb+FV4vw7m6n8Mt1LRuR9910q4xjhaywlGmfKqRx7huFJVAViaEhx0ZmT5HBQP56s2yPWq6G/EuZsWRNeqOy4ZDASgNk8IlIlJPmlBuq1nJeS0WMl1qeRVm1fLW1V146h1588fHJ5bXr/0EKNNNdfYCP+3cdE5SmbyBpTjDoaJsjdeXiFlVBtN91PZkaLyiFSgkGqvKiQHKfYLJZWFPhd4I6eURTrfceTcbKMreaiVFDnvieLkEuIq03zFoQH0kIiqNdUY9qIYAElJVMmf2gJ6k/geGsfi9XfD5lofo9DegKJJNdUi+TJmfhJF1dnxEzypxQ2mA5JiBZhg9OhXrjDCYMWk4VeZefj/5NSXlBLYlcgSHdQgRE19XciBWsgxuviNwedMfan3Ro6BXOrKACuVUlTl4gqJEQ7uNDrmQdsfnDOJGj5joySFQPI7+/I3VWXhkigA+E+xi69qxAA2QysZZvhVbIVIUOImGltpTG3dH35qlc3tw4zWP6w/FDO3U2BcOlyhSpcmMW0KFp9UWmBt1Ip3ynbC1LVNDvKOG5SqXYm3x6iWi5RV7KgRvgjvb92mtV9Zul8BBdcmuuyoiAGg9LYeStwaeeyDUCLEFNvQTNOgJLnLkFdYa2lWFreAqAbk8c0VsmqrAoRje/PSXu9rg1dLWeg/0LWQARrIueOnXszklAB2zI1DQaec+BZW+s8R35uFqhSQT5NSemWrmL0UDgxT+ou9jKx+l8lQ1M1d+/IQ1MhEw6/yAIEzLwVl6HT/bbPu5dnBOg3xz5rcHt0BjHIFGjDy0d5AgAKDZd02H8HkXLIQ=
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: nist.gov
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SA1PR09MB8142.namprd09.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 93d3687d-c8a2-4890-2694-08dafef7fd7e
X-MS-Exchange-CrossTenant-originalarrivaltime: 25 Jan 2023 17:17:08.9001 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 2ab5d82f-d8fa-4797-a93e-054655c61dec
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SA9PR09MB5711
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/ZzolzbD7u1UiULPaKxeMEqfByX4>
Subject: [Idr] Invite comments on updated AS_SET deprecation draft
X-BeenThere: idr@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Inter-Domain Routing <idr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/idr>, <mailto:idr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr/>
List-Post: <mailto:idr@ietf.org>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/idr>, <mailto:idr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 25 Jan 2023 17:17:52 -0000

Hi all,

We (authors) recently published an updated version of "Deprecation of AS_SET and AS_CONFED_SET..." draft:
https://datatracker.ietf.org/doc/html/draft-ietf-idr-deprecate-as-set-confed-set-10  

Please give it a read and let us know if you have some comments before we go to WGLC.

The following two paragraphs (Section 3, Recommendations) are kind of central to the document:

   "BGP speakers conforming to this document (i.e., conformant BGP
   speakers) SHOULD NOT locally generate BGP UPDATE messages containing
   AS_SETs or AS_CONFED_SETs.  Conformant BGP speakers SHOULD NOT send
   BGP UPDATE messages containing AS_SETs or AS_CONFED_SETs.  Upon
   receipt of such messages, conformant BGP speakers SHOULD use the
   "treat-as-withdraw" error handling behavior as per [RFC7606]."

   "The document uses normative language such as "SHOULD NOT send" rather
   than "MUST NOT send" with the intention of allowing some transition
   time for existing implementations and avoiding abrupt disruptions for
   the operators currently using AS_SETs or AS_CONFED_SETs.  However, it
   is strongly urged that operators stop sending UPDATEs with AS_SETs or
   AS_CONFED_SETs as quickly as possible to avoid having UPDATEs dropped
   by BGP security mechanisms such as RPKI-ROV and BGPsec."

We have added new Appendices A and B which describe how to avoid data plane loops while performing "brief" aggregation and how to avoid origin AS ambiguity for creating a ROA for the aggregate. Included are changes to how brief aggregation is performed.   

Please let us also know if you would have interest in providing an implementation.

Thank you.

Sriram