Re: Confirmation to advance: draft-ietf-6man-ipv6only-flag-05

Joel Jaeggli <joelja@bogus.com> Mon, 13 May 2019 04:56 UTC

Return-Path: <joelja@bogus.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9120F120119 for <ipv6@ietfa.amsl.com>; Sun, 12 May 2019 21:56:55 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.9
X-Spam-Level:
X-Spam-Status: No, score=-6.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_HI=-5] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tY39LiEMIxHM for <ipv6@ietfa.amsl.com>; Sun, 12 May 2019 21:56:54 -0700 (PDT)
Received: from nagasaki.bogus.com (nagasaki.bogus.com [IPv6:2001:418:1::81]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4CDD6120114 for <ipv6@ietf.org>; Sun, 12 May 2019 21:56:54 -0700 (PDT)
Received: from [172.19.248.59] ([104.153.224.167]) (authenticated bits=0) by nagasaki.bogus.com (8.15.2/8.15.2) with ESMTPSA id x4D4tiuN054862; Mon, 13 May 2019 04:56:41 GMT (envelope-from joelja@bogus.com)
X-Authentication-Warning: nagasaki.bogus.com: Host [104.153.224.167] claimed to be [172.19.248.59]
Content-Type: text/plain; charset="us-ascii"
Mime-Version: 1.0 (Mac OS X Mail 12.4 \(3445.104.8\))
Subject: Re: Confirmation to advance: draft-ietf-6man-ipv6only-flag-05
From: Joel Jaeggli <joelja@bogus.com>
In-Reply-To: <1a255a35-4909-3adf-13df-eec7c825bf11@gmail.com>
Date: Sun, 12 May 2019 21:55:34 -0700
Cc: Gyan Mishra <hayabusagsm@gmail.com>, 6man WG <ipv6@ietf.org>
Content-Transfer-Encoding: quoted-printable
Message-Id: <BF7B8446-E642-41B0-901A-1CB4C4294E72@bogus.com>
References: <F8BFFCAD-E58E-4736-8A1C-56579B6F6032@employees.org> <a2465e81-a17f-ab48-efda-20fe12a70077@foobar.org> <30239E0C-C444-4A7E-8342-AEE47BF8A2BB@employees.org> <8b9fd743-bfcc-525c-98f6-154f3fa713cc@foobar.org> <CAO42Z2zEWvt9NyemMb8H0AEvPvmNSDGa4wcXiS6n5yRxNFCHQg@mail.gmail.com> <c7e18765-be04-6494-8193-984dbccb520b@foobar.org> <CANMZLAYh+V57yrWOzmUyjSMK0g95u1D5_GZmyZBMOMKAZnrnCg@mail.gmail.com> <3F474511-6FE3-4A0A-9B84-7C37F08FBB5D@steffann.nl> <E352C226-C708-4418-BCDE-10525CAB109A@jisc.ac.uk> <652fb10e-b8ce-0151-a9a0-62d2378caed2@gmail.com> <0079c716-d56c-7199-f493-f5e56e1307ae@foobar.org> <b33de303-eaca-f7f6-804e-2c9343eb92a1@gmail.com> <6C4ABEF1-2565-4BA9-9FC5-5B3C45A719AD@gmail.com> <8750C633-C2AF-48B2-A96D-1A571B55613E@gmail.com> <1a255a35-4909-3adf-13df-eec7c825bf11@gmail.com>
To: Brian E Carpenter <brian.e.carpenter@gmail.com>
X-Mailer: Apple Mail (2.3445.104.8)
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/0BoCsMotmFYcPGNe3D33uiqz-zI>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 13 May 2019 04:56:56 -0000


> On May 3, 2019, at 13:15, Brian E Carpenter <brian.e.carpenter@gmail.com> wrote:
> 
> I don't expect to see Send in widespread use anytime soon, but again it's irrelevant. That's a general defence against a wide range of malicious attacks, all of which are easier than attacking the ipv6only flag.

Send is a bit of a red herring.  You're  either on a network you can trust and it's therefore irrelevant, or you're on a network which you cannot, and it will not be offered, or will be offered by an unstrustworthy actor, anchoring it to the RPKI  as 6494 does doesn't change that, it just means untrustworthy actors are resource holders.


> Regards
>   Brian
>