Re: [Ila] [5gangip] Fwd: New Version Notification for draft-herbert-ipv6-prefix-address-privacy-00.txt

AshwoodsmithPeter <Peter.AshwoodSmith@huawei.com> Thu, 22 February 2018 15:10 UTC

Return-Path: <Peter.AshwoodSmith@huawei.com>
X-Original-To: ila@ietfa.amsl.com
Delivered-To: ila@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A457F12741D; Thu, 22 Feb 2018 07:10:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.229
X-Spam-Level:
X-Spam-Status: No, score=-4.229 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9EJ6Py06JG9l; Thu, 22 Feb 2018 07:10:24 -0800 (PST)
Received: from huawei.com (lhrrgout.huawei.com [194.213.3.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 94096127136; Thu, 22 Feb 2018 07:10:24 -0800 (PST)
Received: from lhreml704-cah.china.huawei.com (unknown [172.18.7.107]) by Forcepoint Email with ESMTP id ABFC974646E5E; Thu, 22 Feb 2018 15:10:20 +0000 (GMT)
Received: from YYZEML703-CHM.china.huawei.com (10.218.33.73) by lhreml704-cah.china.huawei.com (10.201.108.45) with Microsoft SMTP Server (TLS) id 14.3.361.1; Thu, 22 Feb 2018 15:10:22 +0000
Received: from YYZEML701-CHM.china.huawei.com ([169.254.4.55]) by YYZEML703-CHM.china.huawei.com ([169.254.5.26]) with mapi id 14.03.0382.000; Thu, 22 Feb 2018 10:10:19 -0500
From: AshwoodsmithPeter <Peter.AshwoodSmith@huawei.com>
To: Lorenzo Colitti <lorenzo@google.com>, Tom Herbert <tom@quantonium.net>
CC: "int-area@ietf.org" <int-area@ietf.org>, "ila@ietf.org" <ila@ietf.org>, 5GANGIP <5gangip@ietf.org>, Mikael Abrahamsson <swmike@swm.pp.se>
Thread-Topic: [5gangip] Fwd: New Version Notification for draft-herbert-ipv6-prefix-address-privacy-00.txt
Thread-Index: AQHTqyQF3ya/8VzIb0ucLIqjsI2plaOvVBsAgAAEewCAAKRkgIAAHbOAgABrfvA=
Date: Thu, 22 Feb 2018 15:10:18 +0000
Message-ID: <7AE6A4247B044C4ABE0A5B6BF427F8E239AC19AE@YYZEML701-CHM.china.huawei.com>
References: <151906718318.18731.8986618406430268357.idtracker@ietfa.amsl.com> <CAPDqMeqajavRJ85fUkrdxg1Bjz54kHuWfqbnGgpM7Br7T6MVmQ@mail.gmail.com> <alpine.DEB.2.20.1802211549260.3478@uplift.swm.pp.se> <CAPDqMerU9k4DEQrMi8qyneYB=i=1qnuwRiUf8FQoGrd_QxUmZQ@mail.gmail.com> <alpine.DEB.2.20.1802211654010.3478@uplift.swm.pp.se> <CAPDqMepCnAniuCFPu+TGPJ=qOO9khXUJw3RECPvPDtU8HEAOxw@mail.gmail.com> <CAKD1Yr3p0P3zC_QFzQrGKAh+0eO3-rTG6_ZkWsO36dFHmk8rfQ@mail.gmail.com>
In-Reply-To: <CAKD1Yr3p0P3zC_QFzQrGKAh+0eO3-rTG6_ZkWsO36dFHmk8rfQ@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [10.193.60.241]
Content-Type: multipart/alternative; boundary="_000_7AE6A4247B044C4ABE0A5B6BF427F8E239AC19AEYYZEML701CHMchi_"
MIME-Version: 1.0
X-CFilter-Loop: Reflected
Archived-At: <https://mailarchive.ietf.org/arch/msg/ila/E7mrg4HyJWAorN8NkbDhstbc_NA>
Subject: Re: [Ila] [5gangip] Fwd: New Version Notification for draft-herbert-ipv6-prefix-address-privacy-00.txt
X-BeenThere: ila@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Identifier Locator Addressing <ila.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ila>, <mailto:ila-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ila/>
List-Post: <mailto:ila@ietf.org>
List-Help: <mailto:ila-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ila>, <mailto:ila-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 22 Feb 2018 15:10:28 -0000

Edge devices only store FIB/Mapping entries of things they are talking to, that’s a very tiny fraction of the 1B entries..

Peter


From: 5gangip [mailto:5gangip-bounces@ietf.org] On Behalf Of Lorenzo Colitti
Sent: Wednesday, February 21, 2018 10:38 PM
To: Tom Herbert <tom@quantonium.net>
Cc: int-area@ietf.org; ila@ietf.org; 5GANGIP <5gangip@ietf.org>; Mikael Abrahamsson <swmike@swm.pp.se>
Subject: Re: [5gangip] Fwd: New Version Notification for draft-herbert-ipv6-prefix-address-privacy-00.txt

On Thu, Feb 22, 2018 at 10:51 AM, Tom Herbert <tom@quantonium.net<mailto:tom@quantonium.net>> wrote:
The hidden aggregation method is intended to make scaling possible.
Each assigned block results in on entry in mapping system so total
amount of state is num_hosts*num_blocks per host. e.g. in a network of
10M nodes with 100 blocks per host that's 1B entries in the mapping
system-- should be able to scale that.

I have a fundamental problem with the assertion "should be able to scale to 1B mapping entries" given that a) current routing hardware capabilities are three orders of magnitude away from that, and b) anyone on the Internet can mount a state exhaustion attack on the mapping system simply by originating a packet to any IPv6 address in the domain.

Personally I don't think this work should progress until we have line of sight to a system that can actually do that.