[IPsec] Proposed changes to draft-ietf-ipsecme-iptfs-07

Valery Smyslov <smyslov.ietf@gmail.com> Mon, 15 March 2021 15:53 UTC

Return-Path: <smyslov.ietf@gmail.com>
X-Original-To: ipsec@ietfa.amsl.com
Delivered-To: ipsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 313443A1486 for <ipsec@ietfa.amsl.com>; Mon, 15 Mar 2021 08:53:47 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.696
X-Spam-Level:
X-Spam-Status: No, score=-0.696 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_COMMENT_SAVED_URL=1.391, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_HTML_ATTACH=0.01, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sQWF_nBNA6HP for <ipsec@ietfa.amsl.com>; Mon, 15 Mar 2021 08:53:42 -0700 (PDT)
Received: from mail-lf1-x136.google.com (mail-lf1-x136.google.com [IPv6:2a00:1450:4864:20::136]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id AA7033A1484 for <ipsec@ietf.org>; Mon, 15 Mar 2021 08:53:41 -0700 (PDT)
Received: by mail-lf1-x136.google.com with SMTP id q25so57617064lfc.8 for <ipsec@ietf.org>; Mon, 15 Mar 2021 08:53:41 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=from:to:subject:date:message-id:mime-version:thread-index :content-language; bh=kb9fASknESWnMre0gZMBXDKH7OHdEWzlH9yPlyu+Dg4=; b=JR3FQ/IPm7S5ph2Mp6QfkZ8HGrrj2JN9CwPQ0aCKRKbIYCekylXSJbrsLAeiut5HBK tmNS1rfSDGoxku8JqO7HcJSDq0xu/TL49YQd2bSr8lRKaPPoaloW3oqCrTxyVOdo5tNJ cXzt3Q9Gok0aMBPt1dlofectk1nY2Znst76qQMaOUFDfKvKk+/w4OYSgK9J7tCKXZdMU lAKaC+GfJ3DGtT/oP636gh/+SPIzdFa8YqEvrx/rX7aP6CPVeu0sdvMOiLz0roaSDPu5 TYvPEde2ETW5F0PAqd1M84f/kDEJvpJaTd37GW0C6r618bF0TzemKQu5W9f65xMC+dyt v+ZA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:from:to:subject:date:message-id:mime-version :thread-index:content-language; bh=kb9fASknESWnMre0gZMBXDKH7OHdEWzlH9yPlyu+Dg4=; b=aWrYXk4YI5hxQgX7HS2DgS2AtTQpOCHIApPFEfD2tlSkuksKZgr/LZLuRwcUGpIcfZ bfVsdBoLPMpaft+fSn/98KvMey29B+6VzJv+Nu8Id3GMxn1yhDJ9mhHZfjhdczd2HvRz Vve1cm2xp51k9iXGx6eOHWrs5O58H0VIqJj8fMpnuZ+2ArWawIXnsLkvwzDFAoPYw8/t Sm2+/Oea0u7UCyq9P1Xx2NK8sSLncDTpn8TFwFid9iLexTnh9EUMGWR6orcy0UuajAfQ 3FevSulJ+srASn0RtiMowDs3Vvmw9IrLq4xdOFaWPS7Q+qXk2Sb6ECsyZijhGSWG8PGT UxbQ==
X-Gm-Message-State: AOAM531Kc/sOpaqqGK0fhF1ZnHIsmpZ4iVTsEdaQt6Xd04RxBOMMFnIZ 3OTpO5ocxBdMtTYRmlpcjCTYl5c04yE=
X-Google-Smtp-Source: ABdhPJyXkLMRixhwz3oJ1ZZzfd8rBsrqDsmlx2pA+XU2JoDdWqKP88ITJyj7CENKk29QAAQLlBsTxw==
X-Received: by 2002:a19:5e14:: with SMTP id s20mr8583889lfb.110.1615823619636; Mon, 15 Mar 2021 08:53:39 -0700 (PDT)
Received: from buildpc ([93.188.44.203]) by smtp.gmail.com with ESMTPSA id h7sm2717190lfg.246.2021.03.15.08.53.37 for <ipsec@ietf.org> (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Mon, 15 Mar 2021 08:53:38 -0700 (PDT)
From: Valery Smyslov <smyslov.ietf@gmail.com>
To: IPsecME WG <ipsec@ietf.org>
Date: Mon, 15 Mar 2021 18:53:38 +0300
Message-ID: <05c801d719b3$5da19570$18e4c050$@gmail.com>
MIME-Version: 1.0
Content-Type: multipart/mixed; boundary="----=_NextPart_000_05C9_01D719CC.82EF1B90"
X-Mailer: Microsoft Outlook 14.0
Thread-Index: AdcZrxbtANXd+YsFRHK0zjCX1gGYZg==
Content-Language: ru
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/tnnD0R9XVhsQZCTQNNOy8-bkUi8>
Subject: [IPsec] Proposed changes to draft-ietf-ipsecme-iptfs-07
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec/>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 15 Mar 2021 15:53:47 -0000

Hi,

as suggested by Tero at IETF110 I've prepared concrete proposal for the text changes in draft-ietf-ipsecme-iptfs-07.
I tried to make minimal changes - mostly they consist of more accurate (as it looks to me) naming
of things and more accurate separation of AGGFRAG and IP-TFS. No bits on the wire are affected.
Document structure and section numbers are not changed. However, the name of the draft
is changed as well as its abstract.

The only technical change is in Section 2.2.3, where I suggest to change:

   When using the AGGFRAG_PAYLOAD in conjunction with replay detection,
   the window size for both MAY be reduced to share the smaller of the
   two window sizes.

to 

   When using the AGGFRAG_PAYLOAD in conjunction with replay detection,
   the window size for both SHOULD be reduced to share the smaller of the
   two window sizes.

I suggested it before but it seemed to be lost in a long list of suggestions.
The rational for this change: if reassembly window size is greater than
replay protection window size, then not yet reassembled packets will never be reassembled,
because needed fragments will never be received. So, having reassembly window longer
than replay protection window is a waste of resources, thus SHOULD instead of MAY.

Instead of long list of small suggested changes in the body of this message I've
edited the .txt version of the draft and fed current and my versions to rfcdiff.
The result is in attachment. Note that I didn't touch ToC.

Regards,
Valery.