Re: [Ippm-ioam-ix-dt] For your review: PR to include draft-ioametal-ippm-6man-ioam-ipv6-deployment into draft-ietf-ippm-ioam-ipv6-options

Haoyu Song <haoyu.song@futurewei.com> Mon, 14 September 2020 18:15 UTC

Return-Path: <haoyu.song@futurewei.com>
X-Original-To: ippm-ioam-ix-dt@ietfa.amsl.com
Delivered-To: ippm-ioam-ix-dt@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 656783A0E13 for <ippm-ioam-ix-dt@ietfa.amsl.com>; Mon, 14 Sep 2020 11:15:18 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.543
X-Spam-Level:
X-Spam-Status: No, score=-0.543 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, LH_URI_DOM_IN_PATH=1.446, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, T_SPF_PERMERROR=0.01, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=futurewei.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id M2j4WM8FGOan for <ippm-ioam-ix-dt@ietfa.amsl.com>; Mon, 14 Sep 2020 11:15:16 -0700 (PDT)
Received: from NAM10-MW2-obe.outbound.protection.outlook.com (mail-mw2nam10on2110.outbound.protection.outlook.com [40.107.94.110]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C08313A0E24 for <ippm-ioam-ix-dt@ietf.org>; Mon, 14 Sep 2020 11:14:26 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=NchdewEqAk2fCRWffzcTW1vC5hZOgCAaOoA6jLhwhtdvQ5JYHjhEsIi08BEgGaF82YN0x33EHtQdHaLagyCSAKpyE7e+2XsBvJratsKV6MYWTVbSAqjoI7svlOvsSS9h6FO/bNTkmDWkex/vRKZ+L7re0dzbATN0dhVw+84A2YsawzwoPXjWXFCPkjfiCrRlih4tKow2FQODDFbrW3H2Oo0ngwZ+/DfyHf04XhMcjlwaedKQxZQD/pvxc7HN5uIEzzCfGoeVPE8JUW5T4gany1tTohWQBbZo1bv/T5NKIJHlsb4j9wtxovzhJ7diy+oUYt3MoJt3zZPjxd/AQ8H6/A==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=AdXkawwd2fbpuVm7/wkeLyWnGqPolgukWYAdVaLXPlA=; b=DxxDTSCQnmY1FVddCOvP4cBK7F5wJwlHVfBZbZs6Cfr2qcums/WO8lwwCwwjXQmD/wXIqETxo7qXEgnhBWIxruaAEqq71nbkQjkzNZ6STkntCYRRqPByyEpfy+9oOZF/GTHaM1cHIflq6RH18w/sFsvJXfKoGB7LuoQwfIeFXu3oClQ+Ezbe0EjyB2dipdS11vqfItGUnamshqISxzIHjxRZu94D7WWZyFzuWtrE5Na5S1+DXo7Q02MR3xv9yuQ0yma1XJaycZRrYpF84gqsuYmZyT2G33sR5Bt78pZWImHzOg0Ck8ux3rhJ9DnmZ1Er552dQYJw/BP+7zxFeDiCdg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=futurewei.com; dmarc=pass action=none header.from=futurewei.com; dkim=pass header.d=futurewei.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=Futurewei.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=AdXkawwd2fbpuVm7/wkeLyWnGqPolgukWYAdVaLXPlA=; b=D5aYlncNeVN8Msp80ibnxsnVopjAvp68ZjkGSanymwa1zx2eRD+r6NLhikWhey4QkWIs+52Akcb8DAGNprYc1d77GqrpDiCexAVB/IiX0iIBeynQtd+qSx/UULLCbrucuSfPwX6aXUh0/Oe8og9w7vP6t0If0B6zr8TWqBNKX44=
Received: from DM6PR13MB2762.namprd13.prod.outlook.com (2603:10b6:5:13c::13) by DM5PR13MB1819.namprd13.prod.outlook.com (2603:10b6:3:130::21) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.3391.5; Mon, 14 Sep 2020 18:14:24 +0000
Received: from DM6PR13MB2762.namprd13.prod.outlook.com ([fe80::c997:e1c1:e0cf:b2a8]) by DM6PR13MB2762.namprd13.prod.outlook.com ([fe80::c997:e1c1:e0cf:b2a8%7]) with mapi id 15.20.3391.009; Mon, 14 Sep 2020 18:14:23 +0000
From: Haoyu Song <haoyu.song@futurewei.com>
To: "Frank Brockners (fbrockne)" <fbrockne=40cisco.com@dmarc.ietf.org>, "ippm-ioam-ix-dt@ietf.org" <ippm-ioam-ix-dt@ietf.org>
Thread-Topic: For your review: PR to include draft-ioametal-ippm-6man-ioam-ipv6-deployment into draft-ietf-ippm-ioam-ipv6-options
Thread-Index: AdaE7F/4bnhsWOMgQYCICRQLdMwikgF1H6zQ
Date: Mon, 14 Sep 2020 18:14:23 +0000
Message-ID: <DM6PR13MB27627148472D71F9C1347C7A9A230@DM6PR13MB2762.namprd13.prod.outlook.com>
References: <BYAPR11MB25843610ABD01BA5B8D35C3DDA280@BYAPR11MB2584.namprd11.prod.outlook.com>
In-Reply-To: <BYAPR11MB25843610ABD01BA5B8D35C3DDA280@BYAPR11MB2584.namprd11.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dmarc.ietf.org; dkim=none (message not signed) header.d=none;dmarc.ietf.org; dmarc=none action=none header.from=futurewei.com;
x-originating-ip: [69.149.42.153]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 16233531-899a-4165-108f-08d858da0276
x-ms-traffictypediagnostic: DM5PR13MB1819:
x-microsoft-antispam-prvs: <DM5PR13MB18194A276C1E062DF64061E69A230@DM5PR13MB1819.namprd13.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:6108;
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: ylmK8E+CVsup8SeHDYHWsEEcgFPP+PzUVyWK7XGwRJncXdIOUMm51iAZKoglv9OmqxVhbbul5hBNUFNzYx408UEvBN3/ZMXu8Kr+ITp8i7Du04ZMQB8hWFj2WbGj1BF8JbJT6ATUbb34ZSrsPlqjz8USbyAPzzhJ2ZFqtUaraJRR6MToop4DzaOQ6JVt8UDB7ChgQ34DHOtZNpAavIq4Q63zow4lK7R0ScrZLahzbpwVfWfgZHF0FirBlzM3/IqZFUYDIqBmoS0/D6qeDfxR1V2ulCw4/+j4bOMdw55vD5gShT93e8KOa0Fvzc7QN+lAe8+LWG65WHA0K5XSnZBauN3zK7KuiCGcMezR7h1Qc9Z3rWjQiBvjyLOQ/Hf6b3xkRfNIXoOGNORk6s7CmllDk+quU292IqJkfBbehGH7ReyXhPXAAcHWXuIN4A7lCMtH
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DM6PR13MB2762.namprd13.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(39840400004)(396003)(376002)(136003)(346002)(366004)(9686003)(66446008)(83380400001)(33656002)(66476007)(7696005)(166002)(9326002)(66556008)(66946007)(966005)(8676002)(64756008)(110136005)(316002)(8936002)(186003)(71200400001)(52536014)(76116006)(5660300002)(478600001)(26005)(2906002)(55016002)(53546011)(6506007)(86362001)(44832011); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata: xbTvZw9EbjPRCmF+FJ/oQrhUc0EoPDZpjbu5JrsMbibAPWbCO/kigbnCEcFl8YlvkRHSsGHYh5vJ/j1qZuU+KN4jVZB9GGR2IAwIk5hzKgG9PwbwGdpW+UpWiEX1BMxt0uale4F4fIFMKTbBfOiL43AUODKkR8AMO9QRFmNwVbiiaPhAB2G3JGkGpYFgzvx4Dn9DiYPudZEEwSeZksnjk5iAetW103/iyqcyXQoHDFOuATCwJ5op/8x2GiIg50rG3ffnON9qhGi5x8Qy1QcfQleZKFkOG9NHeM4aQT3mcr8LU7+0mnhkP02brEU8+QfJsJLrC88CBDeD6CPcJfWiZwxRe4sqLjjTWoAFwXpcw/hAb0uWebjJaiVAt7/if7w9Yli0kF4cibnjL9tTbgagGQV64Q/RG19Yh1x8N1SRN6loXt3hM8phMiqrp4EwieTLp3lo/who6cedLzi0Yg0ZqgyxtMuRfUWxlLH/NJ9+xWEhaeWQqNPbYAF6JbEY6t+wKxpK89pTU6nD9kjDGBwHkzh60AwQqwmM2btZ5k87nRRJkE2HZVnH+wxRdgZekzgyfUPGDQfUeUK8O4x1/q506s9yFn+b+K0D7HWnnhBjKylxgt0wU71JdgxWlzSVOhX1PNOg6fbc7/6kCwAUpuasSQ==
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_DM6PR13MB27627148472D71F9C1347C7A9A230DM6PR13MB2762namp_"
MIME-Version: 1.0
X-OriginatorOrg: Futurewei.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM6PR13MB2762.namprd13.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 16233531-899a-4165-108f-08d858da0276
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Sep 2020 18:14:23.8972 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 0fee8ff2-a3b2-4018-9c75-3a1d5591fedc
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: nJTwN3l2uv1g5vyiOHMbi3RSWQO0xZEXF5fNKR1s8pYscAH8CNzxu3t6JJIBMdk3WpxxuyoXO1uisCehvig9vA==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM5PR13MB1819
Archived-At: <https://mailarchive.ietf.org/arch/msg/ippm-ioam-ix-dt/lUCpiZSq_fLw8pX-jIb3n5-F8pE>
Subject: Re: [Ippm-ioam-ix-dt] For your review: PR to include draft-ioametal-ippm-6man-ioam-ipv6-deployment into draft-ietf-ippm-ioam-ipv6-options
X-BeenThere: ippm-ioam-ix-dt@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPPM iOAM Immediate Export \(IX\) design team" <ippm-ioam-ix-dt.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ippm-ioam-ix-dt>, <mailto:ippm-ioam-ix-dt-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ippm-ioam-ix-dt/>
List-Post: <mailto:ippm-ioam-ix-dt@ietf.org>
List-Help: <mailto:ippm-ioam-ix-dt-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ippm-ioam-ix-dt>, <mailto:ippm-ioam-ix-dt-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 14 Sep 2020 18:15:18 -0000

Hi Frank,

I have some concerns about the proposed approach. The IPv6-in-IPv6 encapsulation may not meet the requirement C1 (which is the fundamental reason why IOAM is useful) in case the forwarding is not only determined by the DA (e.g., ECMP). Similar issue applies to IP-in-IPv6.

Besides, the encapsulation use the original dest IP address as the outer header dest IP but let the domain egress node remove the extension header, which still violates the RFC8200 (only the node with the destination address are allowed to delete the extension headers)

I don't see how such encapsulation can prevent packet leaking out of the domain as well.

In my opinion, the ultimate solution is to remove the EH limitation imposed by RFC8200 by addressing the potential negative effects for inserting/removing extension header/options within networks. I saw a recent draft from Tom Herbert and believe it's on the right track to solve the problem.

https://datatracker.ietf.org/doc/draft-herbert-6man-eh-attrib/<https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fdraft-herbert-6man-eh-attrib%2F&data=02%7C01%7Chaoyu.song%40futurewei.com%7C6c16e201f26942abf0cb08d8587a6679%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C0%7C637356630020227817&sdata=G7Gbep6zdvhlFmIk5hHC%2FL4G5TE0bEpt7Q5bvjX5gD0%3D&reserved=0>
Best regards,
Haoyu

From: Ippm-ioam-ix-dt <ippm-ioam-ix-dt-bounces@ietf.org> On Behalf Of Frank Brockners (fbrockne)
Sent: Monday, September 7, 2020 12:56 AM
To: ippm-ioam-ix-dt@ietf.org
Subject: [Ippm-ioam-ix-dt] For your review: PR to include draft-ioametal-ippm-6man-ioam-ipv6-deployment into draft-ietf-ippm-ioam-ipv6-options

Hi folks,

Per the discussion in the last IOAM DT meeting: Could you give the PR which is to include draft-ioametal-ippm-6man-ioam-ipv6-deployment into draft-ietf-ippm-ioam-ipv6-options a quick review?
https://github.com/inband-oam/ietf/pull/194<https://nam11.safelinks.protection.outlook.com/?url=https%3A%2F%2Fgithub.com%2Finband-oam%2Fietf%2Fpull%2F194&data=02%7C01%7Chaoyu.song%40futurewei.com%7C276765d495414b6bcee308d853039111%7C0fee8ff2a3b240189c753a1d5591fedc%7C1%7C1%7C637350622097947703&sdata=1ikoblikC0ElQok2eGMqZIKvfapwQZidU%2B9qp%2BEdr3w%3D&reserved=0>

Thanks much

Cheers, Frank