Re: [Idr] BGP CAR - multiple color domains

Kaliraj Vairavakkalai <kaliraj@juniper.net> Wed, 23 March 2022 19:20 UTC

Return-Path: <kaliraj@juniper.net>
X-Original-To: idr@ietfa.amsl.com
Delivered-To: idr@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5C2BA3A07AE; Wed, 23 Mar 2022 12:20:05 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.009
X-Spam-Level:
X-Spam-Status: No, score=-2.009 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net header.b=TLdEEN8d; dkim=pass (1024-bit key) header.d=juniper.net header.b=OWYviFij
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pUeyp2sfv71R; Wed, 23 Mar 2022 12:19:59 -0700 (PDT)
Received: from mx0b-00273201.pphosted.com (mx0b-00273201.pphosted.com [67.231.152.164]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9A9E73A07A7; Wed, 23 Mar 2022 12:19:59 -0700 (PDT)
Received: from pps.filterd (m0108162.ppops.net [127.0.0.1]) by mx0b-00273201.pphosted.com (8.16.1.2/8.16.1.2) with ESMTP id 22NFiZKs026527; Wed, 23 Mar 2022 12:19:58 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=PPS1017; bh=Jkwuo09+/Y9+fGa8T5ExaztXZVXTIcZYhi0kpFBhqQE=; b=TLdEEN8dCsYJTpfmBLOtPY1EhH4L+BF5C0hNjjuPYOrqw00ledMD/R/DQQNyaWrhN7AZ 30akBg1nOqrhOxTEp6TbAaYQ5qnMIrRrzzuv5HodXHEDpBh+sRqqsaum3ZJcYwWQto39 4OkEMduI6uN/0pbBN2dBAjyAawESsaEzhUmj1OBIusXhuIl8jKodl3r7bVX3bMt9Hspw CSOU4RxsutZ3uid0222QKyANZKXNwb7iSyNiRFRYtRGr3+sH6BPWIJHV4nOgxBVofWN5 CUl26ElOlUBQ06S4Ez9i4KiinFxBbhj/t83O+1Tl6EgYPKxvy5ZKl8oOXHZk6dfoUyat pQ==
Received: from nam12-dm6-obe.outbound.protection.outlook.com (mail-dm6nam12lp2169.outbound.protection.outlook.com [104.47.59.169]) by mx0b-00273201.pphosted.com (PPS) with ESMTPS id 3eyfrqkwf2-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Wed, 23 Mar 2022 12:19:57 -0700
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=kC28A1r/Q55fqeXLjs/9S9QGwyCDlYBrq+A9QJxT6orr7EhJ7sTxZCocU3eD5DtZDXEQYVEcq3pCHHIRbt8JpIvdGbOJunk3KJNqgRksT6DYr8SwVAfBHL1hEja7f/L4XsiFb393NzwaSTxWSH40++4c6a7itaCq2HwF+lHnmnMTq2RRkk7TusrrAJMR7J3pHI4Lfj6q0V9Ijw1A4HOg42Aax1KxHK27pwepWbMbhRN9A+Mo1jcOjsaDzjQaLuPPVh8NcLfyMCZqy9XHeIt32i8ZXzHKm9+g2ZN7yXuVjLsUFTxvsFVOCqL5MFPZ9BpG2DOf4bmVYp4NVkLBVZJfiA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Jkwuo09+/Y9+fGa8T5ExaztXZVXTIcZYhi0kpFBhqQE=; b=jTLbTXbZGdXb2+3jFZcejLccqUBriBzMH9obOa0m1m4Vp+cFBaXgARBbp4+eLOdoFbifzvdgxAtNcsHlmurBmSZjWyACBcHcharDTboF2H8w5Lvkyu4q3+WWM8gQJS3rgkGhMlPqDPllW2wtK3rxeVJKSNKOocu1c3yHGgN55iH/cOBr3ScfIqEHgYWQXowtoBE5pun0Y4Fci3z2z/5uwwFTU2t8esrWt+t5FyulywDnPOcWW8e7NN5AQJkDjGx06gFQGneVn8LX9EtBXfyOO5S/bOUEohld4+SNerMUu/+RTxNuRMyA0bUJ5HVPxENJhPwUH33D/PDthMHL1k39sg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Jkwuo09+/Y9+fGa8T5ExaztXZVXTIcZYhi0kpFBhqQE=; b=OWYviFijvDTONDgy3/uXrsWhSQgpT8Ed5yKJVrbIjs+44wk5lr+HvlEl9fcHVErdbL9SWu2SrPPG+bdLS0twQ0fz8HMCgFdg4y/fhI4qPfimoOUDc7O/c+HNWrvLNEFW0qCo4g06Ios4t721FnAR/TwgP4P2O5XHMSXodXz7M94=
Received: from SJ0PR05MB8632.namprd05.prod.outlook.com (2603:10b6:a03:394::12) by MN2PR05MB7040.namprd05.prod.outlook.com (2603:10b6:208:18f::25) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5102.7; Wed, 23 Mar 2022 19:19:49 +0000
Received: from SJ0PR05MB8632.namprd05.prod.outlook.com ([fe80::d866:8639:3a03:1ae1]) by SJ0PR05MB8632.namprd05.prod.outlook.com ([fe80::d866:8639:3a03:1ae1%4]) with mapi id 15.20.5102.016; Wed, 23 Mar 2022 19:19:49 +0000
From: Kaliraj Vairavakkalai <kaliraj@juniper.net>
To: Susan Hares <shares@ndzh.com>, 'Kaliraj Vairavakkalai' <kaliraj=40juniper.net@dmarc.ietf.org>, "bruno.decraene@orange.com" <bruno.decraene@orange.com>, "idr@ietf.org" <idr@ietf.org>
Thread-Topic: [Idr] BGP CAR - multiple color domains
Thread-Index: Adg+CfC9Eap44nc+TJqAuMigk/XzCQARo4TJACPq3YAAAhDeHg==
Date: Wed, 23 Mar 2022 19:19:49 +0000
Message-ID: <SJ0PR05MB86324E9E28C6C3DF1CD2A91CA2189@SJ0PR05MB8632.namprd05.prod.outlook.com>
References: <10630_1647971106_623A0B22_10630_297_1_e1284ad83ee8491997b4567d7c5d0631@orange.com> <SJ0PR05MB8632992AAB38550BE45F2CAEA2189@SJ0PR05MB8632.namprd05.prod.outlook.com> <00f501d83ee0$2ebdb290$8c3917b0$@ndzh.com>
In-Reply-To: <00f501d83ee0$2ebdb290$8c3917b0$@ndzh.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Enabled=True; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SiteId=bea78b3c-4cdb-4130-854a-1d193232e5f4; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SetDate=2022-03-23T19:01:39.8851193Z; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ContentBits=0; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Method=Standard
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 9bd4a824-3fef-430a-87bc-08da0d02194d
x-ms-traffictypediagnostic: MN2PR05MB7040:EE_
x-ms-exchange-atpmessageproperties: SA|SL
x-microsoft-antispam-prvs: <MN2PR05MB7040AB79306524FD908316A0A2189@MN2PR05MB7040.namprd05.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SJ0PR05MB8632.namprd05.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230001)(4636009)(366004)(166002)(26005)(186003)(110136005)(508600001)(71200400001)(9686003)(6506007)(7696005)(8936002)(2906002)(38070700005)(86362001)(53546011)(966005)(55016003)(76116006)(33656002)(52536014)(122000001)(5660300002)(38100700002)(66946007)(316002)(91956017)(8676002)(64756008)(66446008)(66476007)(66556008)(83380400001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_SJ0PR05MB86324E9E28C6C3DF1CD2A91CA2189SJ0PR05MB8632namp_"
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SJ0PR05MB8632.namprd05.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 9bd4a824-3fef-430a-87bc-08da0d02194d
X-MS-Exchange-CrossTenant-originalarrivaltime: 23 Mar 2022 19:19:49.1016 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 2UVf3WyHGh/RDhDH75fLoR7eFqA0/O8cpgodIA46Z6FpIY0CMjcD8Q+WC7RInjZMPDkBUuEdimOPqk5bJ1mb3A==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MN2PR05MB7040
X-Proofpoint-GUID: gRDcCrqXlsbDPv1r4SMr9_25whR2klTC
X-Proofpoint-ORIG-GUID: gRDcCrqXlsbDPv1r4SMr9_25whR2klTC
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.205,Aquarius:18.0.850,Hydra:6.0.425,FMLib:17.11.64.514 definitions=2022-03-23_08,2022-03-23_01,2022-02-23_01
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 lowpriorityscore=0 clxscore=1011 bulkscore=0 phishscore=0 impostorscore=0 spamscore=0 suspectscore=0 adultscore=0 malwarescore=0 mlxscore=0 priorityscore=1501 mlxlogscore=999 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2202240000 definitions=main-2203230100
Archived-At: <https://mailarchive.ietf.org/arch/msg/idr/dUETmIkw_UjoNG_NOZM313Qy9p4>
Subject: Re: [Idr] BGP CAR - multiple color domains
X-BeenThere: idr@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Inter-Domain Routing <idr.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/idr>, <mailto:idr-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/idr/>
List-Post: <mailto:idr@ietf.org>
List-Help: <mailto:idr-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/idr>, <mailto:idr-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 23 Mar 2022 19:20:06 -0000

Pls see inline.. KV>

Thanks
Kaliraj
From: Idr <idr-bounces@ietf.org> on behalf of Susan Hares <shares@ndzh.com>
Date: Wednesday, March 23, 2022 at 11:03 AM
To: 'Kaliraj Vairavakkalai' <kaliraj=40juniper.net@dmarc.ietf.org>, bruno.decraene@orange.com <bruno.decraene@orange.com>, idr@ietf.org <idr@ietf.org>
Subject: Re: [Idr] BGP CAR - multiple color domains
[External Email. Be cautious of content]

Kaliraj:

You have two communities for

        (Peer1, C2), LCM(C1).

KV> Here, there is only one community, the LCM(C1). C2 is part of CAR NLRI (Peer1:C2).
KV> Let me use the notation: [ EP:ColorX,  LCM(ColorY)] to identify one CAR route. Where EP:ColorX is NLRI portion. LCM(ColorY) is the optional community carrying effective color.

But C1 becomes the Effective color in both cases.

KV> Yes, both the routes [Peer1:C1] and [Peer1:C2, LCM(C1)]  have the same effective color C1. But the NLRI prefix are not the same (highlighted parts on this line). So CAR BGP RIB prefix is also not the same.

As you can see, Multipath/Protection can no longer be computed on the BGP NLRI prefix (Peer1, Cx). It needs to be computed
based on (Peer1, Effective-color C1).

When you are merging the two paths due LCM, explain why the algorithm is not merging the multipath protection based on LCM?
Where am I lost?

KV> CAR suggests to do the multipath/protection computations based on CAR NLRI key, which are not the same here. So the merging will not happen.
KV> IOW, It is not being done based on LCM.  Like Bruno also confirms in below email.
KV> Also, I see that the CAR documents (draft or the presentation) are underspecified on these aspects.

After I’ve grasp this small point, I’ll go on to the transport questions.

KV> Pls let me know if I got your question right. Thanks.

Sue


From: Idr [mailto:idr-bounces@ietf.org] On Behalf Of Kaliraj Vairavakkalai
Sent: Tuesday, March 22, 2022 9:11 PM
To: bruno.decraene@orange.com; idr@ietf.org
Subject: Re: [Idr] BGP CAR - multiple color domains

Hi Bruno,

Please consider the following topology.

Two parallel Cores Domain2, Domain3. Domain1 having ingress node PE1. EBGP peer Peer1 multihomed to two core domains as shown below.

Traffic direction is PE1->Peer1. In each domain left side is ingress, right side is egress.

Usecase is: EPE forwarding towards Peer1.

Domain2, Domain3 egress ASBRs originate Peer1/32 route in the Transport-family (CAR for this discussion).
Similar to how we do with BGP-LU today (BGP-LU EPE1).

                                          Color C1
                                     +----------------+
                                     |  Core Domain2  |
                                    /+----------------+\
            +--------------------+/                     \+--------+
            |  Ingress  Domain1  |                       | Peer1  |
           PE1                   |                       +--------+
            +--------------------+\                     /
                Color  C1          \+-- --------------+/
                                    |   Core Domain3  |
                                    +-----------------+
                                          Color C2


Domain1, Domain2 use color C1 value to indicate a certain Transport-class (eg. 'high-bandwidth'). Domain3 uses C2 for same.

Now, the ingress ASBRs in Domain3 will use LCM(Color=C2) in (Peer1, C2) advertisement towards Domain1, such that Domain1
will remap to LCM(C1). So Domain1 egress ASBR will have the following routes in the BGP-RIB for CAR family:

        (Peer1, C1)
        (Peer1, C2), LCM(C1).

As you can see, Multipath/Protection can no longer be computed on the BGP NLRI prefix (Peer1, Cx). It needs to be computed
based on (Peer1, Effective-color C1). This is what I was trying to point out.

Further, Ingress PE1 will have the same information at transport-layer. And when resolving a Service-route received with
Nexthop Peer1, Color:0:C1, it cannot use just the BGP-NLRI prefix (Peer1, C1) as the resolving route. Doing so will miss
the Multipath/Protection. It will need to resolve over the (Peer1, Effective color C1). So that the service prefix gets
Multipath/Protection towards the two domains Domain2, Domain3.

Similar usecase can be constructed for Anycast EP in Domain2, Domain3 also.

So, though one may argue that EPE and Anycast Endpoints are not the common-case, I strongly believe such deployment scenarios
should be supported. Thanks to Ben for bringing up EPE as a use-case customers are interested in.

What we think of as corner case or may not happen - will certainly happen in the field. Nature has its way! Murphys Law!. :)

Thanks
Kaliraj

1 BGP-LU EPE: https://datatracker.ietf.org/doc/html/draft-gredler-idr-bgplu-epe-14<https://urldefense.com/v3/__https:/datatracker.ietf.org/doc/html/draft-gredler-idr-bgplu-epe-14__;!!NEt6yMaO-gk!SWHz_E5D6LnjRWtWKEUuLcEWYgMxzZPW35IVqn9NSPQiZu5db0DvNHHeRpz1fbNh$>

From: Idr <idr-bounces@ietf.org> on behalf of bruno.decraene@orange.com <bruno.decraene@orange.com>
Date: Tuesday, March 22, 2022 at 10:45 AM
To: idr@ietf.org <idr@ietf.org>
Subject: [Idr] BGP CAR - multiple color domains
[External Email. Be cautious of content]

Hi BGP CT authors,

As the subject is a bit vast, I’d like to better understand your operational concern with multiple colors domains.

At your convenience, I think that three texts could be used to support our discussion

  1.  Please feel free to explain the issue your seeing with you own text.
  2.  This 1 page is probably a good start https://datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-03#section-2.8<https://urldefense.com/v3/__https:/datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-03*section-2.8__;Iw!!NEt6yMaO-gk!VQI-5zbHY7CE6clhUhOhP9Z_PljSz_MeeS11L5-pq_RckcjiDJdGhd0N2atrcsQQ$>
  3.  I’ve tried to describe the whole route journey in the below text using an example from a requirement document https://datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-problem-statement#section-1.2.9<https://urldefense.com/v3/__https:/datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-problem-statement*section-1.2.9__;Iw!!NEt6yMaO-gk!VQI-5zbHY7CE6clhUhOhP9Z_PljSz_MeeS11L5-pq_RckcjiDJdGhd0N2ZKQ6JLD$> and you can raise the issue when you see it.


So below is option 3 text. It’s much longer and painful so if “2” is good enough you could skip the below text.

Please note that I’ll use a terminology from https://datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-problem-statement#section-1.2<https://urldefense.com/v3/__https:/datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-problem-statement*section-1.2__;Iw!!NEt6yMaO-gk!VQI-5zbHY7CE6clhUhOhP9Z_PljSz_MeeS11L5-pq_RckcjiDJdGhd0N2QNUDSgu$> and that colored route are not to be confused with color-aware route.

Let’s consider option C with 2 domains:


     +----------------+  +----------------+
     |            E3  |  |                | V/v with C1
     |----+          +----+          +----|/
     | E1 |          | N2 |          | E2 |\
     |----+          +----+          +----| W/w with C2
     |                |  |                |
     |    Domain 1    |  |    Domain 3    |
     +----------------+  +--- ------------+


   *  Service routes MUST be colored using BGP Color Extended-Community
      to request intent

      -  V/v via E, colored with C

   *  Colored service routes MUST be automatically steered on an
      appropriate color-aware path

      -  V/v via E with C is steered via (E, C)


First color resolution seem the above one.
A priori the color from the VPN route (V/v via E with C) is the same as the color from the transport route (E, C) as both are chosen by the Egress domain (Domain 3).
Agreed or am I missing something?

Now in domain 1 and let’s assume that domain 1 uses color C to mean “high bandwidth” while domain 3 use color C to mean “low delay”
First, let’s notice that key is (E,C) so we are not going to mix/compare color C between (E2, C) and (E3, C). We are interested in different colors to reach a specific destination E, and all colors for that destination are consistent (defined in the domain of E). So I don’t see any issue with ECMP or protection that have been raised during the meeting.


Let’s continue with next steps



   *  Color-aware routes MAY resolve recursively via other color-aware

      routes



      -  (E, C) via N recursively resolves via (N, C)


Here I can see the mismatch as C from (E,C) from domain 3 while C from (N,C) is from domain 1 and hence may not be directly comparable without a mapping. So mapping is needed (I think all solutions will require a (re)mapping).
Except for this remapping, is there a big issue such as confusion?

Coming back to the remapping, this seems to depend on the internal routing solution used in Domain 1:
- If FlexAlgo, N2 can probably do the mapping : N2, C1 is advertised in Domain 1 FA associated with the right meaning (e.g. low delay)
- worst case we need to re-color i.e. express that the color-aware route (E,C) need to be resolved using a specific color. Personally, I’m not sure why the same BGP Color Extended community can’t be reused just like https://datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-problem-statement#section-1.2.3<https://urldefense.com/v3/__https:/datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-problem-statement*section-1.2.3__;Iw!!NEt6yMaO-gk!VQI-5zbHY7CE6clhUhOhP9Z_PljSz_MeeS11L5-pq_RckcjiDJdGhd0N2X3yl744$>

but that’s a detail and defining a different community Local-Color-Mapping-Extended-Community https://datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-03#section-2.8<https://urldefense.com/v3/__https:/datatracker.ietf.org/doc/html/draft-dskc-bess-bgp-car-03*section-2.8__;Iw!!NEt6yMaO-gk!VQI-5zbHY7CE6clhUhOhP9Z_PljSz_MeeS11L5-pq_RckcjiDJdGhd0N2atrcsQQ$>  which seems to indicate the same thing (the color of the color-aware route to use when resolution is done).

That’s all for the route journey. Hopefully all that text will be useful to pinpoint the issue that you have in mind.

--Bruno

_________________________________________________________________________________________________________________________



Ce message et ses pieces jointes peuvent contenir des informations confidentielles ou privilegiees et ne doivent donc

pas etre diffuses, exploites ou copies sans autorisation. Si vous avez recu ce message par erreur, veuillez le signaler

a l'expediteur et le detruire ainsi que les pieces jointes. Les messages electroniques etant susceptibles d'alteration,

Orange decline toute responsabilite si ce message a ete altere, deforme ou falsifie. Merci.



This message and its attachments may contain confidential or privileged information that may be protected by law;

they should not be distributed, used or copied without authorisation.

If you have received this email in error, please notify the sender and delete this message and its attachments.

As emails may be altered, Orange is not liable for messages that have been modified, changed or falsified.

Thank you.


Juniper Business Use Only


Juniper Business Use Only