Re: [Idr] IETF LC for IDR-ish document <draft-ietf-grow-bgp-reject-05.txt> (Default EBGP Route Propagation Behavior Without Policies) to Proposed Standard

Robert Raszuk <robert@raszuk.net> Fri, 21 April 2017 16:01 UTC

Return-Path: <rraszuk@gmail.com>
X-Original-To: idr@ietfa.amsl.com
Delivered-To: idr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9821412786A for <idr@ietfa.amsl.com>; Fri, 21 Apr 2017 09:01:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.698
X-Spam-Level:
X-Spam-Status: No, score=-1.698 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FREEMAIL_FORGED_FROMDOMAIN=0.199, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2DQUYx6kXks2 for <idr@ietfa.amsl.com>; Fri, 21 Apr 2017 09:01:38 -0700 (PDT)
Received: from mail-io0-x229.google.com (mail-io0-x229.google.com [IPv6:2607:f8b0:4001:c06::229]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3AD55127735 for <idr@ietf.org>; Fri, 21 Apr 2017 09:01:38 -0700 (PDT)
Received: by mail-io0-x229.google.com with SMTP id r16so119238247ioi.2 for <idr@ietf.org>; Fri, 21 Apr 2017 09:01:38 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:sender:in-reply-to:references:from:date:message-id :subject:to:cc; bh=olqWVvSvKQfKkFbhpgk/S5D06JoNkATMUMU5/CUM270=; b=nNzWh8NkeOOBF5eImxqs7KA8Binfzberl+sCfGWFqnwWNNVOW9ZP4kRpWyLOitc6gV ZB2wc8OqD8pBuSfQmrqMBOd+FdOZP1gZu3yuEy8sOCQ+sfv8a7PHO4kYLs8yuyg0WAja kKwqs2Ou2UPgdlmSMfGIGE0gwMQoMlPDHpzDD5saaB+Omy/Xi1SLfKmeL8vGcG6LwUSq 4ZasFd5SGZyhH1f6Lbr1Q/kKGou68GDtm2agn5OZ/oCyt99H8XNUevluUBu2lC1npWp+ F3zhqTtfPWCggVSNVrroPLeW6vAIozMS3oBqH47N0jfoW69y8+9dZf8afDQTcqJTf7Tf Hutw==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:sender:in-reply-to:references:from :date:message-id:subject:to:cc; bh=olqWVvSvKQfKkFbhpgk/S5D06JoNkATMUMU5/CUM270=; b=oVTK/cIxHga5gqljg2LFx5E/bHvZg0HIKv/jNFsuiKep8I0Ll65us+WjKCHmFWncY4 CCbiVIjjk+7myYlO7w/qNI3KAu2xBzdZdcbrL6InKWEiFqYgV6XgAMqVoe8VawaVvScA Nxm1F4TeLK63lSxmRcengnvjnfepF/Fzm5DZBPgS7lGzUXvwfijTi5LoeBl46FIsuoXP 448MWi9Y4uCYy/T8RQRvwcBSiJ1iZ/CVg8hVRgRdecpYnuY9hLi3QMRlIMPNflx/ZHbH hTt5jBcDB1XBoEGp3gTJE+BjQkOCAYh+X0NCt6t+W9NQwFzqsADVTq4hfLtpLomM8Qnn wvTw==
X-Gm-Message-State: AN3rC/7+zOBt1e15+4eAilKZPcRrfq9/e2HpWlnzvi1X+NtIT+Zwfqp0 EeQzwVNppxLjYB1R77HHJ4nUfCZDc2gr
X-Received: by 10.107.140.10 with SMTP id o10mr17512665iod.139.1492790422917; Fri, 21 Apr 2017 09:00:22 -0700 (PDT)
MIME-Version: 1.0
Sender: rraszuk@gmail.com
Received: by 10.79.170.4 with HTTP; Fri, 21 Apr 2017 09:00:21 -0700 (PDT)
Received: by 10.79.170.4 with HTTP; Fri, 21 Apr 2017 09:00:21 -0700 (PDT)
In-Reply-To: <20170421153741.GT25069@Space.Net>
References: <75AC1A50-3DF8-4852-8FC6-BC302B121946@cisco.com> <CAH1iCirf=ha1mrw8EUzPp34R-DF=4J+=aFyMwVn2udi1UKNifw@mail.gmail.com> <CA+wi2hMPYcwbNhHtuWKWUXb4Lg3x81p786yLqeNEHFV1okGRvg@mail.gmail.com> <dc04fe80-f844-29b1-2676-8f2bbda0ecbe@juniper.net> <28014_1492762849_58F9C0E0_28014_6541_1_53C29892C857584299CBF5D05346208A31CC3773@OPEXCLILM21.corporate.adroot.infra.ftgroup> <20170421090145.f5yuhimb4qg7knrf@Vurt.local> <19977_1492775899_58F9F3DB_19977_3102_1_53C29892C857584299CBF5D05346208A31CC3DAC@OPEXCLILM21.corporate.adroot.infra.ftgroup> <20170421124011.mdxpyoijvfh7eus4@Vurt.local> <1334_1492785121_58FA17E1_1334_3109_1_53C29892C857584299CBF5D05346208A31CC4307@OPEXCLILM21.corporate.adroot.infra.ftgroup> <CA+b+ERn1vX_b20CGyNbck+_Gm0Dt=fqnxqWzdqHmHiPKNTWD_Q@mail.gmail.com> <20170421153741.GT25069@Space.Net>
From: Robert Raszuk <robert@raszuk.net>
Date: Fri, 21 Apr 2017 18:00:21 +0200
X-Google-Sender-Auth: MH_JoZtezdmueDbbTrP5jw_5De8
Message-ID: <CA+b+ER=5+nwTZLLu7WsU47q0JN=qA8YqU8BfgRve7C-=k1tDmA@mail.gmail.com>
To: Gert Doering <gert@space.net>
Cc: idr wg <idr@ietf.org>, bruno.decraene@orange.com
Content-Type: multipart/alternative; boundary="94eb2c06084ce1dd7e054daf5a34"
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/bW5t6ybGbIGFBKLlKgkigkMKXm0>
Subject: Re: [Idr] IETF LC for IDR-ish document <draft-ietf-grow-bgp-reject-05.txt> (Default EBGP Route Propagation Behavior Without Policies) to Proposed Standard
X-BeenThere: idr@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Inter-Domain Routing <idr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/idr>, <mailto:idr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr/>
List-Post: <mailto:idr@ietf.org>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/idr>, <mailto:idr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 21 Apr 2017 16:01:40 -0000

Gert & Nick

Your answer perfectly proves that what we need is education on how to write
proper BGP policy.

Enforcing by RFC someting which everyone else considers a big secret and
private data is and will be of no solution to the root of the problem.

I am to proceed with this draft fwd if in the same time in the draft itself
we document what proper bgp policy is.

Otherwise it is like enforcing something which those who (in spite of their
good intentions) do not do today will continue not doing tomorrow.

Cheers
R.

On Apr 21, 2017 17:37, "Gert Doering" <gert@space.net> wrote:

> Hi,
>
> On Fri, Apr 21, 2017 at 05:19:28PM +0200, Robert Raszuk wrote:
> > Are we really that bad in Internet NOCs ? Do we need configuration
> > enforcement and RFCs like this ?
>
> Yes, and yes.
>
> Even if I cannot discern whether this was meant as rhetoric questions -
> the answer is still yes.  If you assume that 40.000 of those ASes have
> noone on-site who has any idea how BGP works, you are likely still too
> optimistic about the level of understanding out there.
>
> Gert Doering
>         -- NetMaster
> --
> have you enabled IPv6 on something today...?
>
> SpaceNet AG                        Vorstand: Sebastian v. Bomhard
> Joseph-Dollinger-Bogen 14          Aufsichtsratsvors.: A. Grundner-Culemann
> D-80807 Muenchen                   HRB: 136055 (AG Muenchen)
> Tel: +49 (0)89/32356-444           USt-IdNr.: DE813185279
>