Re: [IPsec] FW: New Version Notification for draft-tran-ipsecme-ikev2-yang-00.txt

Daniel Migault <daniel.migault@ericsson.com> Mon, 28 March 2016 23:31 UTC

Return-Path: <mglt.ietf@gmail.com>
X-Original-To: ipsec@ietfa.amsl.com
Delivered-To: ipsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7494D12D160 for <ipsec@ietfa.amsl.com>; Mon, 28 Mar 2016 16:31:52 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.399
X-Spam-Level:
X-Spam-Status: No, score=-2.399 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FREEMAIL_FORGED_FROMDOMAIN=0.199, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 29t0qnWSQijv for <ipsec@ietfa.amsl.com>; Mon, 28 Mar 2016 16:31:50 -0700 (PDT)
Received: from mail-wm0-x22b.google.com (mail-wm0-x22b.google.com [IPv6:2a00:1450:400c:c09::22b]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 817FB12D0CF for <ipsec@ietf.org>; Mon, 28 Mar 2016 16:31:49 -0700 (PDT)
Received: by mail-wm0-x22b.google.com with SMTP id 20so2513604wmh.1 for <ipsec@ietf.org>; Mon, 28 Mar 2016 16:31:49 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:sender:in-reply-to:references:date:message-id:subject :from:to:cc; bh=S2SPgvNUeTGec0lPRYPR6dtjZnlOzf7415Negl1gt14=; b=FKQi+F+9WxN3LH5poZ4i6i7DTJ0LRr6N0Jb/qUsJkQ3W9LR20L90PtiK7kKK7t9e1S 2PKhk1xgeZ6nE/YFu9Qt8rip4ySRc21tzIpIXsxbdDxTAUEjLoVPQ6H8thQUr1pzpogh EExkCeu4Fv2CbPjvuGWqHl+MdtwcQ8TfJVhN5ky8lhAGycwZz8tqKGpnpo7qyKwbdkAe IZJCgBkFs3GYuZO+0Ib8ushO4FTJHPiYYJ8kSr6srfUjUMRu41ZRiIH1vmPmF+UJ8NsO qERi4o+MXZB1tuyJ2XqBiPvgx/latkwQsMvYXGjd+rFJwspwRyp8GLDdGEeR8c7dePUK oLyg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:sender:in-reply-to:references:date :message-id:subject:from:to:cc; bh=S2SPgvNUeTGec0lPRYPR6dtjZnlOzf7415Negl1gt14=; b=RMACZal33vLlVLkzCAQhcHrjUHurypzkABVHqMOyGpW7G69ts5cNzB/7MYmWKxDliU S4HZ8Qlk1vIMvkic7OPK7jj21TNBy3yToeAIr8FGR4pJB33L99Eer8DUEaQeyIdbAyUD iKYoIOt879Ys0ZUJLySjWTAl/bwD5rGtPgF1BFNmhgrvnU9LSHQGmWlMHFsHu0wuDOcQ wDIYhg3iHp7PuX/6A8ZNr+bFs8zL1uM+cxWenvhrm+demhBjpAxWhznQOLEq9k/wUZ79 if13JGfZcPkq6o5j11dMs076hQkMG2OZfgrqadeDE3exj3idAejSeUmVS9mSoWwgL6HB vrDQ==
X-Gm-Message-State: AD7BkJIXcuhpWmPSd1jCoZBR5BgF7RGcOQwgQDIV9gmgsLHTydkHu2DotjSpXN+48M/NPvtdYHlIi5MpAyXa3A==
MIME-Version: 1.0
X-Received: by 10.194.184.234 with SMTP id ex10mr29224602wjc.8.1459207908077; Mon, 28 Mar 2016 16:31:48 -0700 (PDT)
Sender: mglt.ietf@gmail.com
Received: by 10.194.78.171 with HTTP; Mon, 28 Mar 2016 16:31:47 -0700 (PDT)
Received: by 10.194.78.171 with HTTP; Mon, 28 Mar 2016 16:31:47 -0700 (PDT)
In-Reply-To: <8205E6F5-3B3F-4DF9-BA3A-AE5C5DF6F1A4@nohats.ca>
References: <20160318180059.2743.10884.idtracker@ietfa.amsl.com> <2D1BA3CFD799FD44A1F3650A84C4000F1231AFBC@eusaamb107.ericsson.se> <2DD56D786E600F45AC6BDE7DA4E8A8C11222B1D5@eusaamb108.ericsson.se> <alpine.LFD.2.20.1603271819220.22991@bofh.nohats.ca> <CADZyTknEeWdwE17=PJXs4Z4ae29FQB74psKbxrX82rzNi4Ndpw@mail.gmail.com> <8205E6F5-3B3F-4DF9-BA3A-AE5C5DF6F1A4@nohats.ca>
Date: Mon, 28 Mar 2016 20:31:47 -0300
X-Google-Sender-Auth: 6c4KnWWOK59RHWNabt_MlMSUjd8
Message-ID: <CADZyTknbM+U+QDY4FGZhG9eD5c1yU=FdtdAyxL-ioBe_hc4d=g@mail.gmail.com>
From: Daniel Migault <daniel.migault@ericsson.com>
To: Paul Wouters <paul@nohats.ca>
Content-Type: multipart/alternative; boundary="047d7b86cc1e03bb21052f2451a4"
Archived-At: <http://mailarchive.ietf.org/arch/msg/ipsec/BvSAuUxPQFt_T5ZrRKxiKuPPAA8>
Cc: "ipsec@ietf.org WG" <ipsec@ietf.org>
Subject: Re: [IPsec] FW: New Version Notification for draft-tran-ipsecme-ikev2-yang-00.txt
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec/>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 28 Mar 2016 23:31:52 -0000

With the second as a unit. We cannot do it. However if we set it
millisecond we are fine. We also have a field that specify the policy. This
field should provide the policies of the different implementtation.  Such
feed back is definitely usefull for the next iteration of the draft.

BR
Daniel
On Mar 28, 2016 18:06, "Paul Wouters" <paul@nohats.ca> wrote:

>
>
> Sent from my iPhone
>
> On Mar 28, 2016, at 16:43, Daniel Migault <daniel.migault@ericsson.com>
> wrote:
>
> Hi Paul,
>
> I leave my co-authors to respond on the YANG aspects.
>
> Regarding the initial-retransmission-timeout I think we meant a time in
> second. Do you think we need more options?
>
>
> Libreswan retransmits at 0.5 second and the doubling the interval up to 30
> seconds. So 0.5, 1, 2, 4, 8, 16.
>
> I don't think that you can put that in?
>
> Note I didn't read all the options, there might be others too. I think to
> be sure, you need to look at various implementations and see if it can work.
>
> Paul
>
> BR,
> Daniel
>
> On Mon, Mar 28, 2016 at 11:29 AM, Paul Wouters <paul@nohats.ca> wrote:
>
>> On Sun, 27 Mar 2016, Daniel Migault wrote:
>>
>> Subject: [IPsec] FW: New Version Notification for
>>>     draft-tran-ipsecme-ikev2-yang-00.txt
>>>
>>
>> Please find our first version for the YANG model for IKEv2. Feel free
>>> to post comments. I would be also happy to have face-to-face
>>> discussions on the draft - especially from IKEv2 implementers.
>>>
>>
>> Might be good for me to have a talk about it, especially because I'm
>> not a yang person. . I'm still a bit confused about the syntax. There is
>> code in the document that looks like "ready to use" but also looks like
>> "example to use". like:
>>
>>   description
>>        "This YANG module defines the configuration and operational
>>         state data for Internet Key Exchange version 2 (IKEv2) on
>>         IETF draft.
>>         Copyright (c) 2016 Ericsson AB.
>>         All rights reserved.";
>>
>> All rights reserved? huh? Is that an example? or is this an error?
>>
>> I'm confused about units too, like:
>>
>>   leaf initial-retransmission-timeout {
>>            type uint32;
>>            description
>>              "initial retransmission timeout value";
>>          }
>>
>> look weird to me. What's the unit here? uint32 is not a unit, it is
>> a number Is this seconds? miliseconds? seconds since 1970? Since 1772?
>>
>> Some of it looks like just copying IANA registries? So that would be
>> outdated quickly. How would that get updated? Should we really put
>> chunks of code in RFCs like that?
>>
>> Paul
>>
>>
>> _______________________________________________
>> IPsec mailing list
>> IPsec@ietf.org
>> https://www.ietf.org/mailman/listinfo/ipsec
>>
>
> _______________________________________________
> IPsec mailing list
> IPsec@ietf.org
> https://www.ietf.org/mailman/listinfo/ipsec
>
>
> _______________________________________________
> IPsec mailing list
> IPsec@ietf.org
> https://www.ietf.org/mailman/listinfo/ipsec
>
>