Re: [Int-area] FW: Last Call: 'Fragmentation Considered Very Harmful' to Informational RFC (draft-heffner-frag-harmful)
Matt Mathis <mathis@psc.edu> Sat, 14 October 2006 18:24 UTC
Received: from [127.0.0.1] (helo=stiedprmman1.va.neustar.com) by megatron.ietf.org with esmtp (Exim 4.43) id 1GYoBk-0007ms-6X; Sat, 14 Oct 2006 14:24:48 -0400
Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1GYoBi-0007lX-Ns for int-area@ietf.org; Sat, 14 Oct 2006 14:24:46 -0400
Received: from mailer2.psc.edu ([128.182.66.106]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1GYoBg-0006VW-DO for int-area@ietf.org; Sat, 14 Oct 2006 14:24:46 -0400
Received: from tesla.psc.edu (tesla.psc.edu [128.182.58.233]) by mailer2.psc.edu (8.13.8/8.13.3) with ESMTP id k9EIOduS026539 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NO); Sat, 14 Oct 2006 14:24:42 -0400 (EDT)
Received: from localhost.psc.edu (localhost.psc.edu [127.0.0.1]) by tesla.psc.edu (8.13.1/8.13.1) with ESMTP id k9EIOdJd006020; Sat, 14 Oct 2006 14:24:39 -0400
Date: Sat, 14 Oct 2006 14:24:39 -0400
From: Matt Mathis <mathis@psc.edu>
To: Joe Touch <touch@ISI.EDU>
Subject: Re: [Int-area] FW: Last Call: 'Fragmentation Considered Very Harmful' to Informational RFC (draft-heffner-frag-harmful)
In-Reply-To: <453019DE.9040001@isi.edu>
Message-ID: <Pine.LNX.4.58.0610141351350.2581@tesla.psc.edu>
References: <E1GXMkr-00060i-VM@stiedprstage1.ietf.org> <452C71DA.60708@piuha.net> <452CFDC7.4010003@isi.edu> <Pine.LNX.4.58.0610131613520.2581@tesla.psc.edu> <453019DE.9040001@isi.edu>
MIME-Version: 1.0
Content-Type: TEXT/PLAIN; charset="US-ASCII"
X-Spam-Score: 0.0 (/)
X-Scan-Signature: c1c65599517f9ac32519d043c37c5336
Cc: int-area@ietf.org
X-BeenThere: int-area@lists.ietf.org
X-Mailman-Version: 2.1.5
Precedence: list
List-Id: IETF Internet Area Mailing List <int-area.lists.ietf.org>
List-Unsubscribe: <https://www1.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@lists.ietf.org?subject=unsubscribe>
List-Archive: <http://www1.ietf.org/pipermail/int-area>
List-Post: <mailto:int-area@lists.ietf.org>
List-Help: <mailto:int-area-request@lists.ietf.org?subject=help>
List-Subscribe: <https://www1.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@lists.ietf.org?subject=subscribe>
Errors-To: int-area-bounces@lists.ietf.org
On Fri, 13 Oct 2006, Joe Touch wrote: > > (*mostly, because the other route is to strictly enforce the IP ID wrap time > > and fragment lifetimes.) > > I'd prefer that approach to deliberately encourage breaking fragmentation. let me get this straight: you would like to declare all IPv4 TCP connections running at full speed over fast Ethernet and faster to be protocol violations? Some how I don't think others would agree. > > (Ok one caveat: tunnels can also work if they greatly strengthen the IP ID > > and/or do their own fragmentation). > > This is the bigger issue. Tunnels supposed to honor the DF bit, but > basically cannot. There are two alternatives: > > - clear DF in the outer header and take your chances You missed my point (and part of why the problem space starts looking fractal). If you think of the tunnel as a separate protocol that uses additional methods to protect itself from corruption (say by use of IPSEC, or an enhanced fragmentation mechanism, etc.) then it can be designed to support safe fragmentation. The fact that the payload is also IP packets which happen to be tagged DF, becomes irrelevant because they are not participating in the fragmentation itself. They are just opaque payload data. (Note that the tunnel should use it's own IPID space, not copied from the payload.) There is not an easy way to detect if any particular combination of tunnel and endpoint features are safe, except to test if it fails with IPID=0. Unfortunately there are too many false fails to ship products in this configuration. One of the things I have musing about is writing a super jumbo tunnel protocol that would use its own fragmentation to put 64k IP jumbograms into 1500 byte IP packets with FEC (and without using IP fragmentation). Think of the implications.... Thanks, --MM-- ------------------------------------------- Matt Mathis http://www.psc.edu/~mathis Work:412.268.3319 Home/Cell:412.654.7529 ------------------------------------------- Evil is defined by mortals who think they know "The Truth" and use force to apply it to others. _______________________________________________ Int-area mailing list Int-area@lists.ietf.org https://www1.ietf.org/mailman/listinfo/int-area
- [Int-area] FW: Last Call: 'Fragmentation Consider… Jari Arkko
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Pekka Savola
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Joe Touch
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Joe Touch
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Pekka Savola
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Joe Touch
- RE: [Int-area] FW: Last Call: 'Fragmentation Cons… Templin, Fred L
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Pekka Savola
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… John Heffner
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Matt Mathis
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Matt Mathis
- RE: [Int-area] FW: Last Call: 'Fragmentation Cons… Templin, Fred L
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Joe Touch
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Matt Mathis
- Re: [Int-area] FW: Last Call: 'Fragmentation Cons… Joe Touch
- RE: [Int-area] FW: Last Call: 'Fragmentation Cons… Templin, Fred L