Re: [Int-area] Stateless devices and IP fragmentation

Tim Chown <Tim.Chown@jisc.ac.uk> Wed, 21 November 2018 16:52 UTC

Return-Path: <tim.chown@jisc.ac.uk>
X-Original-To: int-area@ietfa.amsl.com
Delivered-To: int-area@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 588FE1274D0 for <int-area@ietfa.amsl.com>; Wed, 21 Nov 2018 08:52:23 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.401
X-Spam-Level:
X-Spam-Status: No, score=-2.401 tagged_above=-999 required=5 tests=[DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=jisc.ac.uk
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id AV5IHXItm07V for <int-area@ietfa.amsl.com>; Wed, 21 Nov 2018 08:52:19 -0800 (PST)
Received: from eu-smtp-delivery-189.mimecast.com (eu-smtp-delivery-189.mimecast.com [146.101.78.189]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id AA224123FFD for <int-area@ietf.org>; Wed, 21 Nov 2018 08:52:18 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=jisc.ac.uk; s=mimecast20170213; t=1542819136; h=from:from:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:cc:mime-version:mime-version: content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=+szPH0tzxvTo+MZi2a7/Nj2LeBtkczQ9d77taKZxCWo=; b=VEs2ZZ7Vt4Kv351OGSXo+I0HywPE+vpWD7mJIlJsFLwv+Kq8qS8rXXAZSSV648Ov3nxYIK0rjSSfoCzGHtVih8NdfymoXyeRXpCbkc6LMoo+pFErOmiGNrI/J9fNs8u03pBnONZsSppVx6aiknc0EGHV6PX/89o94va+w8nwb3w=
Received: from EUR04-VI1-obe.outbound.protection.outlook.com (mail-vi1eur04lp0209.outbound.protection.outlook.com [23.103.133.209]) (Using TLS) by relay.mimecast.com with ESMTP id uk-mta-85-NV2yQaO9MoKKMSn14ZEPGQ-1; Wed, 21 Nov 2018 16:52:12 +0000
Received: from AM0PR07MB4177.eurprd07.prod.outlook.com (52.133.59.156) by AM0PR07MB5569.eurprd07.prod.outlook.com (20.178.82.13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.1361.12; Wed, 21 Nov 2018 16:52:08 +0000
Received: from AM0PR07MB4177.eurprd07.prod.outlook.com ([fe80::c164:2ace:2da0:efa2]) by AM0PR07MB4177.eurprd07.prod.outlook.com ([fe80::c164:2ace:2da0:efa2%7]) with mapi id 15.20.1339.027; Wed, 21 Nov 2018 16:52:08 +0000
From: Tim Chown <Tim.Chown@jisc.ac.uk>
To: Ron Bonica <rbonica@juniper.net>
CC: Brian E Carpenter <brian.e.carpenter@gmail.com>, Tom Herbert <tom@herbertland.com>, Joe Touch <touch@strayalpha.com>, int-area <int-area@ietf.org>
Thread-Topic: [Int-area] Stateless devices and IP fragmentation
Thread-Index: AQHUfFEuW+WFIV0xpUK4oZyP6xiHzKVPsUWAgAAQ89yAAAjRAIABkreAgABm7QCAAL1zAIAARyKAgAd9woCAADVrAA==
Date: Wed, 21 Nov 2018 16:52:07 +0000
Message-ID: <8F9B9A7D-7C27-455F-942E-FAC88AA4DC1F@jisc.ac.uk>
References: <CALx6S37r9yeniZcrUcdrqjDuQXYAB2AoamJTJPDVe4GNOFbbLw@mail.gmail.com> <85B9F5BE-E978-4946-86B8-3138D1742659@strayalpha.com> <BYAPR05MB4245F80B69226ED92E07F740AEC10@BYAPR05MB4245.namprd05.prod.outlook.com> <CALx6S36y80VbqzJF0obuRE3enu176=-y2tXyatC6D5GAsN+8Qg@mail.gmail.com> <BYAPR05MB4245A3105639AC55D753405DAEC10@BYAPR05MB4245.namprd05.prod.outlook.com> <BYAPR05MB42459E4BE7EBC8F76BCB17FAAEC30@BYAPR05MB4245.namprd05.prod.outlook.com> <CALx6S35Htt62PTRi+Yi0YdEkj-_k6_F7fy3UD+pafaD5-Rhn7A@mail.gmail.com> <BYAPR05MB42453EF690EF271C0E5E868BAEC30@BYAPR05MB4245.namprd05.prod.outlook.com> <CALx6S36EsvBSA8Q6B2KDJFHH5GOETOa2fBt+akOX0Q2pFKDtRg@mail.gmail.com> <BYAPR05MB42450FE554E36F855FF7BCF3AEC30@BYAPR05MB4245.namprd05.prod.outlook.com> <BYAPR05MB42459E26264B24E62CBC9A8EAEDC0@BYAPR05MB4245.namprd05.prod.outlook.com> <97d780c6-a4e8-ca31-6679-bef2265a7985@gmail.com> <BYAPR05MB4245C85C1CCB5E5DC7AF3287AEDD0@BYAPR05MB4245.namprd05.prod.outlook.com> <b2a50bce-46a2-a9bb-8d2e-24733cad2c1f@gmail.com> <BYAPR05MB4245F35C552EFD7EAA93A252AEDA0@BYAPR05MB4245.namprd05.prod.outlook.com>
In-Reply-To: <BYAPR05MB4245F35C552EFD7EAA93A252AEDA0@BYAPR05MB4245.namprd05.prod.outlook.com>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-mailer: Apple Mail (2.3445.101.1)
x-originating-ip: [79.7.147.103]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; AM0PR07MB5569; 20:44STzvrMvx8jTy6a3CGZgwqHezO601oloz7+QqLlRscgGnHfQPIP3t32zPt4fYhAHI3yI2ggrVk3IPLS6UiQWvNbgQKNtnXqLgpkMyDpSvQiR1Vk8Q0pu1zuv4DlXZ9mTldiuxKU8x4yb/HQBIgQQk+Xv9jfqrpEt1sAYpSgMZM=
x-ms-exchange-antispam-srfa-diagnostics: SOS;
x-ms-office365-filtering-correlation-id: 2f9b42a7-862a-4cd0-6708-08d64fd1ac7e
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390098)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600074)(711020)(2017052603328)(7153060)(7193020); SRVR:AM0PR07MB5569;
x-ms-traffictypediagnostic: AM0PR07MB5569:
x-microsoft-antispam-prvs: <AM0PR07MB55691EAD94BCD0AD1147944CD6DA0@AM0PR07MB5569.eurprd07.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6040522)(2401047)(8121501046)(5005006)(93006095)(93001095)(3002001)(10201501046)(3231442)(944501410)(52105112)(148016)(149066)(150057)(6041310)(201703131423095)(201702281529075)(201702281528075)(20161123555045)(201703061421075)(201703061406153)(20161123564045)(20161123562045)(20161123558120)(20161123560045)(201708071742011)(7699051)(76991095); SRVR:AM0PR07MB5569; BCL:0; PCL:0; RULEID:; SRVR:AM0PR07MB5569;
x-forefront-prvs: 08635C03D4
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(39850400004)(376002)(396003)(346002)(366004)(136003)(189003)(199004)(2906002)(39060400002)(36756003)(6916009)(476003)(2616005)(1941001)(6306002)(6486002)(57306001)(6116002)(3846002)(229853002)(486006)(53936002)(316002)(74482002)(2900100001)(786003)(68736007)(5660300001)(6246003)(14454004)(54906003)(86362001)(82746002)(6512007)(26005)(186003)(53546011)(6506007)(93886005)(14444005)(256004)(102836004)(99286004)(8676002)(11346002)(81166006)(446003)(33656002)(7736002)(4326008)(83716004)(71190400001)(97736004)(305945005)(71200400001)(8936002)(81156014)(66066001)(966005)(105586002)(106356001)(6436002)(76176011)(478600001)(72206003)(50226002)(25786009); DIR:OUT; SFP:1101; SCL:1; SRVR:AM0PR07MB5569; H:AM0PR07MB4177.eurprd07.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; MX:1; A:1;
x-microsoft-antispam-message-info: Hkd1a49B2C63jyhDNElUhXv8jzW5jBfZO37U6oyOVbob6fVjltDbLfWWwXiMQk2+bSFUD67RlSw4eszJ+8JboIUIrOF6xc8d7kongfXq3Na/eSthQx/qUPLnivVcSNGtBVIhjHgWeXHVi6okFH5mTusywmuexUpBZAyUdRHLNKx5+fvNtEf/l1IYao3iCtS5mB/jipKWDFkN/SIN7Qob8LL5UEq9yA3k/8FHpaz9BW4XsltJhgURdMtaH/hV1VYqrETjfPE6FqwlKW7iqDwAOF2Fpms4Wf7Ck3+PzH0tLocn0GQaJOgIImTaqP5JK7AILyRSI2Uin40nqnZKNlJB9pgPVe3kHtDDdPkyXc6M1i4=
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-ID: <CECC54DC7396DD4CB8BF58CE04EAA2FB@eurprd07.prod.outlook.com>
MIME-Version: 1.0
X-OriginatorOrg: jisc.ac.uk
X-MS-Exchange-CrossTenant-Network-Message-Id: 2f9b42a7-862a-4cd0-6708-08d64fd1ac7e
X-MS-Exchange-CrossTenant-originalarrivaltime: 21 Nov 2018 16:52:07.9107 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 48f9394d-8a14-4d27-82a6-f35f12361205
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM0PR07MB5569
X-MC-Unique: NV2yQaO9MoKKMSn14ZEPGQ-1
Content-Type: text/plain; charset="WINDOWS-1252"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/int-area/xciczAezw47usdlx66mmVHRO29c>
Subject: Re: [Int-area] Stateless devices and IP fragmentation
X-BeenThere: int-area@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: IETF Internet Area Mailing List <int-area.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/int-area>, <mailto:int-area-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/int-area/>
List-Post: <mailto:int-area@ietf.org>
List-Help: <mailto:int-area-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/int-area>, <mailto:int-area-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 21 Nov 2018 16:52:23 -0000

Hi,

> On 21 Nov 2018, at 13:40, Ron Bonica <rbonica@juniper.net> wrote:
> 
> Brian,
> 
> Fair enough. I have worked the 1280 byte requirement into Section 7.4. New text is included below.
> 
>                                                       Ron
> 
> 7.4.  For Network Operators
> 
>   As per RFC 4890, network operators MUST NOT filter ICMPv6 PTB
>   messages unless they are known to be forged or otherwise
>   illegitimate.  As stated in Section 4.6, filtering ICMPv6 PTB packets
>   causes PMTUD to fail.  Operators MUST ensure proper PMTUD operation
>   in their network, including making sure the network generates PTB
>   packets when dropping packets too large compared to outgoing
>   interface MTU.  Many upper-layer protocols rely on PMTUD.
> 
>   As per RFC 8200, network operators MUST NOT deploy IPv6 links whose
>   MTU is less than 1280 bytes.
> 
>   Network operators SHOULD NOT filter IP fragments if they originated
>   at a domain name server or are destined for a domain name server.

There is some similar-ish text in the RFC6434-bis document (in AUTH48 now), see https://tools.ietf.org/html/draft-ietf-6man-rfc6434-bis-09#section-5.7.1

The flip side of your last para is what we say there:

"While an IPv6 link MTU can be set to 1280 bytes, it is recommended
   that for IPv6 UDP in particular, which includes DNS operation, the
   sender use a large MTU if they can, in order to avoid gratuitous
   fragmentation-caused packet drops."

Tim

> 
> 
> 
> 
> 
>> So: I think the document should say much more emphatically that there is no
>> exception to the 1280 requirement for every IPv6 hop.
>> It's mentioned briefly but maybe it should be underlined three times :-).
>> 
>> Amd maybe, since the draft is aimed at BCP, we could even go so far as to
>> change this assumption into a SHOULD, if not a MUST:
>> 
> decisions.
> _______________________________________________
> Int-area mailing list
> Int-area@ietf.org
> https://www.ietf.org/mailman/listinfo/int-area
>