Re: [Int-area] Comment on draft-ietf-intarea-frag-fragile-02

Jen Linkova <furry13@gmail.com> Mon, 12 November 2018 00:02 UTC

Return-Path: <furry13@gmail.com>
X-Original-To: int-area@ietfa.amsl.com
Delivered-To: int-area@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3FF3C124D68 for <int-area@ietfa.amsl.com>; Sun, 11 Nov 2018 16:02:59 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.75
X-Spam-Level:
X-Spam-Status: No, score=-1.75 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_ENVFROM_END_DIGIT=0.25, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YVVY2VDhPlKF for <int-area@ietfa.amsl.com>; Sun, 11 Nov 2018 16:02:58 -0800 (PST)
Received: from mail-qk1-x732.google.com (mail-qk1-x732.google.com [IPv6:2607:f8b0:4864:20::732]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D8421124408 for <int-area@ietf.org>; Sun, 11 Nov 2018 16:02:57 -0800 (PST)
Received: by mail-qk1-x732.google.com with SMTP id o125so10640636qkf.3 for <int-area@ietf.org>; Sun, 11 Nov 2018 16:02:57 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc:content-transfer-encoding; bh=QK1QfNmGMGZ6c0y+rNUor/rRfUOWt42D6013DSdn9y0=; b=D8+hUl4JVcC9kiQgYwg2Yvn/FkIwmzWIP4JpXgCO9KzEXVbVN6saAutoYG/b/EwJ23 1MDrqxGSEWAlZ3fwbzAX0VUZF5mU58rGhxI/8eOvNwGw1x3Rl04yalXNkE8iJ8om3A9B BtSwzL8RiNVJgoAjtJ4uVM1dzJu0X4/iGDN3FOyPcEEHjj0R1H6Eo1chqdcL02hnvZOz VZh2h592ejHtdc/pqV52XYaK0j6NaSG4W/jjQhOk5wHB5/VZhVUXLOCFswfyp0OAPvIg FilTeH/TNKVzKY6PU0ZqyysIx111infarXmN5yFwE+7GEGfLRdu6q2NcWk9NYyea1MVu eYCg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc:content-transfer-encoding; bh=QK1QfNmGMGZ6c0y+rNUor/rRfUOWt42D6013DSdn9y0=; b=k9azCZitETFcQM7POmPlcPY1A1FH5ZfBTk54e4kbCikY46xsOwFGlxjw71Vz+j2wmu 6XZetKMwInaCmJa+84U5F5mmz54dzicboAcv/QRrpGyqupan3HBfY4nzxbpVqG049/2i lf2NjX8qD4yNFDYDdH+A3J3Hn6JoNBEa2O3XBZZ4X2ImiblyTrVfQjRQfvkpnwtW6013 ZGewCddugOS2fgRHR9QE+IViOxTDCre348k/6YDstriOoNEMB6uU0qgm9P2UBzr9J83n bcE4/9xzOYJIDbKlh3SUqumcRxIp7xoYpVpiuQ7fn1xdCFu9RMW8Opr/lhbRFYR8FqQM OxQw==
X-Gm-Message-State: AGRZ1gKX2/R4fB4TS4ZdZnW1l49TvCmEbzk01CuUYurqShnroIvdq1SK CKCq3Ql9n8/IJBvMux5amc1+3y+GZRFFOj7cUNk5CQ==
X-Google-Smtp-Source: AJdET5fEzl+nRQRaamlQxrOiXpszuuY9ii24I4RXvfwV+m1c0aw3Z0YR/Cq12qVOj4n/CS+KJMNgfJ+HSUfx64cWg7c=
X-Received: by 2002:ae9:f80f:: with SMTP id x15mr15382729qkh.341.1541980976594; Sun, 11 Nov 2018 16:02:56 -0800 (PST)
MIME-Version: 1.0
References: <CAFU7BARv90VcSaLsGOkxaSX+epix4Jz6ON2NShTO_fs=utKs0w@mail.gmail.com> <022EB775-2A35-43B9-9981-DEBAFF331370@strayalpha.com>
In-Reply-To: <022EB775-2A35-43B9-9981-DEBAFF331370@strayalpha.com>
From: Jen Linkova <furry13@gmail.com>
Date: Mon, 12 Nov 2018 11:02:43 +1100
Message-ID: <CAFU7BASZFCZFtHDtt=0x9pkJUpXb1V8fuo--H4bGktjEqmyZyw@mail.gmail.com>
To: Joe Touch <touch@strayalpha.com>
Cc: int-area@ietf.org
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/int-area/_0i9xpynQY92zernSwe-l1zwWxg>
Subject: Re: [Int-area] Comment on draft-ietf-intarea-frag-fragile-02
X-BeenThere: int-area@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF Internet Area Mailing List <int-area.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/int-area>, <mailto:int-area-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/int-area/>
List-Post: <mailto:int-area@ietf.org>
List-Help: <mailto:int-area-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 12 Nov 2018 00:02:59 -0000

On Fri, Nov 9, 2018 at 2:32 AM Joe Touch <touch@strayalpha.com> wrote:
> > (https://tools.ietf.org/html/draft-ietf-intarea-frag-fragile-02#section-7.4)
> >
> > recommends that operators do not filter ICMPv6 PTB. I believe it would
> > be beneficial to make an explicit recommendation to permit fragmented
> > packets to/from operator's DNS servers.
>
> Fragment forwarding is a MUST in our standards.

I believe you are talking about routers supporting forwarding
fragmented packets, not about policy decisions. While the
recommendations in the draft (not to filter ICMP PTB messages) are
about policies.
So just another policy-related recommendation makes sense, IMHO.

> This document is BCP and cannot update a standard. It cannot relax that requirement, so the middlebox needs to be updated accordingly.

If we already have a document which is saying 'operators MUST NOT
filter any fragmented packets' then
it would be nice to reference it in the draft.

> *Additionally*, it’s bad practice to indicate “SHOULD” unless the text also explains why it isn’t a MUST, i.e., under what conditions it is OK to not forward fragments.

Sorry, I'm a bit confused. Which standard would need to be updated if
the proposed recommendation is made?

-- 
SY, Jen Linkova aka Furry