Re: RFC 8200: The Devil's Paragraph

Mark Smith <markzzzsmith@gmail.com> Sat, 29 February 2020 01:31 UTC

Return-Path: <markzzzsmith@gmail.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6D5EE3A08A5 for <ipv6@ietfa.amsl.com>; Fri, 28 Feb 2020 17:31:10 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.598
X-Spam-Level:
X-Spam-Status: No, score=-0.598 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, FROM_LOCAL_NOVOWEL=0.5, HK_RANDOM_ENVFROM=0.001, HK_RANDOM_FROM=0.999, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id U0eTgVc2B08v for <ipv6@ietfa.amsl.com>; Fri, 28 Feb 2020 17:31:09 -0800 (PST)
Received: from mail-oi1-x22e.google.com (mail-oi1-x22e.google.com [IPv6:2607:f8b0:4864:20::22e]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 41E343A0895 for <ipv6@ietf.org>; Fri, 28 Feb 2020 17:31:09 -0800 (PST)
Received: by mail-oi1-x22e.google.com with SMTP id r16so4744102oie.6 for <ipv6@ietf.org>; Fri, 28 Feb 2020 17:31:09 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc:content-transfer-encoding; bh=8S+xfXIf2H6+7y0kWyPgBleYE9GS/6BHB53uRt3WX+0=; b=kbNTnxUZqVSMzlHcjlFGMKCUkmy4xPwFqrr87X5xNSy0Hyg18t/BUDaMtUu8FFqM1+ en2gRSFVSnFWVjY2ZRayjypG2/aXN4wRbDuBcZ88VTDmx9/AEAwZhdopDRDY4Djv7/0M UNCuVY1RrLauDQE9+JcdMp43tW8xlMLURcCOPfGfuMTmREPMuYFe8X7vrki6+dgujUqz w8C2DnQA/DQ4WDxtTu+gX2nfCcZnVSuWBpfARAeOLf4BAHTYnt442oM7BeU+hfzxV8g1 WpVcxVZ/2hcWJTzLb1cXh5vKLT2StZXuNzgbDgMPsboCH19XzBIOcq/x0QpGz6AM1gSJ M7kA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc:content-transfer-encoding; bh=8S+xfXIf2H6+7y0kWyPgBleYE9GS/6BHB53uRt3WX+0=; b=HqIz3xegiYIqzwHlW+wYhmS1MyZC/+7soDDa5+m8z8a0mbYjk5+mQV31lpgkQNcOpf 04uMX7wbDnAkPSiwGqoCqQBoKzq6rrUAjd7qlHvd9OrdBPr51jF/GowVlgYsVzQTJgKP ZXBD0mkTX5Cm+DDYs844/uGPn0TrewcgwkMIp7YrnxVJU+vtrXbj7oJ+/k8CL8uTKbKy NNfcjh6p+mY3uF/TC8/b5+8KQMgFrQr59rgN+NQ/qRo7VPLg/6zNGypJP7tv5dLxEoQH qhkTLwoMNKpC7MG97n8X7amShggMgIH0p+PjwpBVgJXd8AhuEbzCO202OEBgrM+KKXFT oDcw==
X-Gm-Message-State: APjAAAVWXB80rqT/oYSD7Zfrs1wyMqHO26Qu7W02bz427aXuaIQFGR5G DLMpLWe/jv/W695bKUGoo5o244OL9Q4FenEg0Ay6Ij2z
X-Google-Smtp-Source: APXvYqzF7x0DbYmLtAEO9nPtrn4V4nM1v5UJaOXcTNVKRr04JKxVz38v3aNaNwd/w4dV9uAOv3FZPaPkuG+gNbHyQBE=
X-Received: by 2002:a05:6808:916:: with SMTP id w22mr5065580oih.7.1582939868592; Fri, 28 Feb 2020 17:31:08 -0800 (PST)
MIME-Version: 1.0
References: <DM6PR05MB63482DDA36EEA130FF988178AEEB0@DM6PR05MB6348.namprd05.prod.outlook.com> <CAJE_bqebweDDxmMt_C-y+5jdpGs9WpG+nOOvxfn0iQGw2gZq0g@mail.gmail.com> <949cfc153e654e9bb47582034a21872f@boeing.com>
In-Reply-To: <949cfc153e654e9bb47582034a21872f@boeing.com>
From: Mark Smith <markzzzsmith@gmail.com>
Date: Sat, 29 Feb 2020 12:30:42 +1100
Message-ID: <CAO42Z2xz5J6CEzode_T7LaBJ8VWFWVr4Zq5DsqjJ3t_sAHbT1A@mail.gmail.com>
Subject: Re: RFC 8200: The Devil's Paragraph
To: "Manfredi (US), Albert E" <albert.e.manfredi@boeing.com>
Cc: Ron Bonica <rbonica=40juniper.net@dmarc.ietf.org>, 6man WG <ipv6@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/2-YrRXCfPlWk9ELUMb0bvFR_Y1Q>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 29 Feb 2020 01:31:10 -0000

On Sat, 29 Feb 2020 at 07:44, Manfredi (US), Albert E
<albert.e.manfredi@boeing.com> wrote:
>
> Ron Bonica <rbonica=40juniper.net@dmarc.ietf.org> wrote:
>
> > "Extension headers cannot be added to a packet after it has left the its source node and extension headers cannot be removed from a packet until it has arrived at its ultimate destination".
>
> Which is the way I always interpreted the paragraph. The word "processed" I guess causes problems, although I'm not sure if they are real, or just people trying to get away with something.
>
> For what it's worth, in this case where the "penultimate node" must do something strange, before the packet can be delivered to its intended destination, my own approach has always been to address the packet TO THE PENULTIMATE NODE, and then that router knows what to do with it.


Yes.

I'm wondering what the value is of leaving the outer IPv6 tunnel
header there is after the SRHectomy.

If the outer IPv6 tunnel header (with a DA of the "penultimate node")
and the SRH and every other EH for the "penultimate node" were
processed and removed at that node, leaving the original inner IPv6
packet to be then sent on, we'd have an operation as old as the hills
known as "decapsulation".


> This violates nothing. Given that the "penultimate node" has to be specifically configured for this job anyway, it doesn't seem like such an approach limits flexibility or anything else. (Unless I missed something critically imnportant in the long thread.)
>
> Bert
>
> --------------------------------------------------------------------
> IETF IPv6 working group mailing list
> ipv6@ietf.org
> Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
> --------------------------------------------------------------------