Re: [ieee-ietf-coord] draft-richardson-anima-ipv6-lldp

"Rob Wilton (rwilton)" <rwilton@cisco.com> Wed, 15 April 2020 13:51 UTC

Return-Path: <rwilton@cisco.com>
X-Original-To: ieee-ietf-coord@ietfa.amsl.com
Delivered-To: ieee-ietf-coord@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BDD273A0844 for <ieee-ietf-coord@ietfa.amsl.com>; Wed, 15 Apr 2020 06:51:38 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.619
X-Spam-Level:
X-Spam-Status: No, score=-9.619 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=Pqo8mSJm; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=C7m8jrE5
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6C3bGx-y6LfT for <ieee-ietf-coord@ietfa.amsl.com>; Wed, 15 Apr 2020 06:51:01 -0700 (PDT)
Received: from rcdn-iport-5.cisco.com (rcdn-iport-5.cisco.com [173.37.86.76]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 05D803A0842 for <ieee-ietf-coord@ietf.org>; Wed, 15 Apr 2020 06:51:00 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=11860; q=dns/txt; s=iport; t=1586958661; x=1588168261; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=qGA6lb+hPFciCzZioMdD/4oy0QWvEP/ivdZqlop2J3A=; b=Pqo8mSJma3QHljCA2YqWF7LiUeSPwtu0gMayxf6i49zdSykPCjPGHMJj DvsezPl4m5gt7BXJpcyzkCKOJIDVtU/ChddC4YgWPbuPeoBwXC0GlQdMX 3Lyjzfb3ibLYHfr8iTncjflYM8OyjjTuSvTa6YSaHuxRcjNTsmcwGk5tF w=;
IronPort-PHdr: 9a23:WXcOvh1UFuEBQDKcsmDT+zVfbzU7u7jyIg8e44YmjLQLaKm44pD+JxKHt+51ggrPWoPWo7JfhuzavrqoeFRI4I3J8RVgOIdJSwdDjMwXmwI6B8vQE1L6KOLtaQQxHd9JUxlu+HToeUU=
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0CTAAB+EJde/5hdJa1mGwEBAQEBAQEFAQEBEQEBAwMBAQGBagMBAQELAYEkL1AFbFggBAsqCoQSg0YDimmCX5NEhGCCUgNUCgEBAQwBARgBCgoCBAEBhEQCF4FtJDcGDgIDAQELAQEFAQEBAgEFBG2FVgyFcAEBAQEDAQEQEQoTAQEsCwEPAgEIEQQBASgDAgICJQsUCQgCBAENBQgagwWBfk0DLgEDC6NJAoE5iGJ1gTKDAAEBBYUkGIIOAwaBOAGCYolTGoFBP4ERQ4FPfj6CZwEBgWcrCYJcMoItjk6CUoYNmjgKgkKSKQaFQYJUjS2MLY9cnFQCBAIEBQIOAQEFgWgjRIETcBU7gmlQGA2RWINzhRSFQXSBKY0MAYEPAQE
X-IronPort-AV: E=Sophos;i="5.72,387,1580774400"; d="scan'208,217";a="501845525"
Received: from rcdn-core-1.cisco.com ([173.37.93.152]) by rcdn-iport-5.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 15 Apr 2020 13:50:58 +0000
Received: from XCH-ALN-003.cisco.com (xch-aln-003.cisco.com [173.36.7.13]) by rcdn-core-1.cisco.com (8.15.2/8.15.2) with ESMTPS id 03FDovLD025899 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=FAIL); Wed, 15 Apr 2020 13:50:58 GMT
Received: from xhs-rtp-002.cisco.com (64.101.210.229) by XCH-ALN-003.cisco.com (173.36.7.13) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Wed, 15 Apr 2020 08:50:57 -0500
Received: from xhs-aln-002.cisco.com (173.37.135.119) by xhs-rtp-002.cisco.com (64.101.210.229) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Wed, 15 Apr 2020 09:50:57 -0400
Received: from NAM12-MW2-obe.outbound.protection.outlook.com (173.37.151.57) by xhs-aln-002.cisco.com (173.37.135.119) with Microsoft SMTP Server (TLS) id 15.0.1497.2 via Frontend Transport; Wed, 15 Apr 2020 08:50:57 -0500
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Gmc1sLRH9H7V2pu1SnO5hGqaIHkOOkRls99dkvPEEJdwc83Lzvf41FTbnZHKI4/oRP5GLaU1pW2ui6yHjXhPUFjHnhoYSIwpDRxu0wugP11rSF6ABltomwbi6S1sgfyUIhlnbw9fkd41qTaU+BIVX/X2eqd9TptoVP2MELtdIq7ZnM6Y3m7vWxfn/8ByJXiACblsGlTWO5tLUG2RmKlT8QJBgoCa31K+jVhvxylDB60eMYfkU33TW2HTMEpSSnzT4MsAt0TOQ4Ey7/zlJ22F188T7pFg+jCnJuxtLkWZxCf/rYGAVkj5au/qtU9J9Zz0EieaGxq7jLqD26azBkjVXA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=qGA6lb+hPFciCzZioMdD/4oy0QWvEP/ivdZqlop2J3A=; b=XkNHz8Svh0iVHFvc3tx309WzDVeRxZpHZDKGlOJuiFogPsiklWzZBs+XrtQN++SuAi2yWuzHfzOGRp6g01iLApDenpERN+YQ5LpvvoMQeNfH0wStOoxCMXEpjtz0Kx+VB8po1Aw2Nl7IMpJ1dxBtTPH23f/Xl/JRvqKWixegK0H3w1bqfF6wTEfIMkTGp54sx/aQHp376yC2K06QArrmLTBu3V0Pp7+kP36ftch4gYx8tlxiKB9GCbkja0ZQz9/7jtGuwY3keDtijxq8704+gQWjXweaXsc3pmmTNNL9kiOgwqD0fg6ogmKu+ByQbGG9ojJxXaGtWNc4Nywi1NmC5Q==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=qGA6lb+hPFciCzZioMdD/4oy0QWvEP/ivdZqlop2J3A=; b=C7m8jrE5SJORPvBMzEEaS/Lo+9iOd2zk5sMp9Vu2EQKQiwKixm8ve511ryyGA7lMc2kpaceTN9ntp8FobrkIbWggZ8kkCZkaPo4lwzuMIL2Xrb0PZ7/8VpN3zeizEq5nhSIdXrbws7anN81Q3kpiQJ9ejLL4RtcbK/OZgon+u7Y=
Received: from MN2PR11MB4366.namprd11.prod.outlook.com (2603:10b6:208:190::17) by MN2PR11MB4382.namprd11.prod.outlook.com (2603:10b6:208:18c::32) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2900.26; Wed, 15 Apr 2020 13:50:56 +0000
Received: from MN2PR11MB4366.namprd11.prod.outlook.com ([fe80::3:2164:a8e2:33b3]) by MN2PR11MB4366.namprd11.prod.outlook.com ([fe80::3:2164:a8e2:33b3%5]) with mapi id 15.20.2900.028; Wed, 15 Apr 2020 13:50:55 +0000
From: "Rob Wilton (rwilton)" <rwilton@cisco.com>
To: Paul Congdon <paul.congdon@tallac.com>, Russ Housley <housley@vigilsec.com>
CC: "<ieee-ietf-coord@ietf.org>" <ieee-ietf-coord@ietf.org>
Thread-Topic: [ieee-ietf-coord] draft-richardson-anima-ipv6-lldp
Thread-Index: AQHWDp9f8vDQgjwBnkiD4moUHuSEgahxK5qAgAkOi1A=
Date: Wed, 15 Apr 2020 13:50:55 +0000
Message-ID: <MN2PR11MB43661DD9704273889493B6B0B5DB0@MN2PR11MB4366.namprd11.prod.outlook.com>
References: <7F19C4AD-733D-47A2-9240-37E2DF609AF0@vigilsec.com> <CAAMqZPtSc+5pProos=xKVwhpByTiLKyTnq88tsE3gQwrfxQfXg@mail.gmail.com>
In-Reply-To: <CAAMqZPtSc+5pProos=xKVwhpByTiLKyTnq88tsE3gQwrfxQfXg@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=rwilton@cisco.com;
x-originating-ip: [82.15.79.32]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 32aa36f6-3912-4cfa-d787-08d7e1440548
x-ms-traffictypediagnostic: MN2PR11MB4382:
x-microsoft-antispam-prvs: <MN2PR11MB43827CD396A39C1FD396E18CB5DB0@MN2PR11MB4382.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:8882;
x-forefront-prvs: 0374433C81
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:MN2PR11MB4366.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFTY:; SFS:(10009020)(4636009)(376002)(346002)(39860400002)(366004)(396003)(136003)(4326008)(966005)(9326002)(71200400001)(8936002)(2906002)(478600001)(66574012)(8676002)(66946007)(81156014)(55016002)(66476007)(64756008)(52536014)(53546011)(66446008)(66556008)(76116006)(5660300002)(9686003)(316002)(7696005)(6506007)(186003)(26005)(110136005)(33656002)(86362001); DIR:OUT; SFP:1101;
received-spf: None (protection.outlook.com: cisco.com does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-ms-exchange-antispam-messagedata: Q7FsPcvj75Gn0xsw7pmpiYfkm8C5I28GmdsQYLIPXc3kQC9+JiLd01IqkHX0VZZ5P25HLsAPBCfOh+U2YyKusUxa8Ver/rA2Jg2m3l77fRdJNJfk1rYzcMVPp5gFwIVEpIeyHwA3u0tqMWI7tFKgaw==
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_MN2PR11MB43661DD9704273889493B6B0B5DB0MN2PR11MB4366namp_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-Network-Message-Id: 32aa36f6-3912-4cfa-d787-08d7e1440548
X-MS-Exchange-CrossTenant-originalarrivaltime: 15 Apr 2020 13:50:55.6791 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: PJ9SIqxM1px9Awh4Nc0OxMLQjgQCcfjNWhLkn4p+dEyOOGRkB2b9/epajHjKXHoVxdiI6fO4OwLzxWS7w8F8lQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MN2PR11MB4382
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.36.7.13, xch-aln-003.cisco.com
X-Outbound-Node: rcdn-core-1.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/ieee-ietf-coord/18B7M6Ht8c0C79uPbOiQ5KQX7Ck>
Subject: Re: [ieee-ietf-coord] draft-richardson-anima-ipv6-lldp
X-BeenThere: ieee-ietf-coord@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Management-level discussions between IEEE and IETF on topics of interest to both SDOs <ieee-ietf-coord.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ieee-ietf-coord>, <mailto:ieee-ietf-coord-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ieee-ietf-coord/>
List-Post: <mailto:ieee-ietf-coord@ietf.org>
List-Help: <mailto:ieee-ietf-coord-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ieee-ietf-coord>, <mailto:ieee-ietf-coord-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 15 Apr 2020 13:51:39 -0000

Hi Paul,

Thanks for reviewing the draft.  I hadn’t read it previously (new AD), but having done so, I can certainly understand your concerns!

Would you like to provide the feedback direct to the ANIMA WG and the authors, or would you like me to relay your comments?

Regards,
Rob


From: ieee-ietf-coord <ieee-ietf-coord-bounces@ietf.org> On Behalf Of Paul Congdon
Sent: 09 April 2020 20:24
To: Russ Housley <housley@vigilsec.com>
Cc: <ieee-ietf-coord@ietf.org> <ieee-ietf-coord@ietf.org>
Subject: Re: [ieee-ietf-coord] draft-richardson-anima-ipv6-lldp

I've had a brief look at this draft.   My personal belief is that this is a gross miss-use of the LLDP protocol.  LLDP is NOT a general L2 transport protocol.   It is intended to exchange a 'relatively' static local database with neighbors.   When an LLDP agent receives a frame, it is supposed to compare what it received with what it received the last time and if anything is different, it will throw away all of the previous information, replace the database with the most recently received information and 'wake-up' the higher layers to process the changes.  The expectation (and design center for the protocol) is that things do NOT change frequently.  Assuming the IPv6 packets are intending to implement their own protocol and will be changing frequently, encapsulating an IPv6 packet inside an LLDP TLV would signal a change on each transmission and possibly cause an SNMP TRAP on each packet received by a traditional implementation.   If I understand the use case correctly, the draft is seriously miss-using the protocol and I believe others within 802.1 would agree with me.

Paul


On Thu, Apr 9, 2020 at 11:47 AM Russ Housley <housley@vigilsec.com<mailto:housley@vigilsec.com>> wrote:
There was a discussion of draft-richardson-anima-ipv6-lldp on the ANIMA WG virtual interim meeting earlier today.  It would be great if someone familiar with LLDP could take a look at the Internet-Draft and let the group know if there is a better way to proceed.

Russ

_______________________________________________
ieee-ietf-coord mailing list
ieee-ietf-coord@ietf.org<mailto:ieee-ietf-coord@ietf.org>
https://www.ietf.org/mailman/listinfo/ieee-ietf-coord