Re: Roman Danyliw's Discuss on draft-ietf-6man-spring-srv6-oam-11: (with DISCUSS and COMMENT)
"Zafar Ali (zali)" <zali@cisco.com> Mon, 29 November 2021 06:45 UTC
Return-Path: <zali@cisco.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B1D533A0D09; Sun, 28 Nov 2021 22:45:04 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.595
X-Spam-Level:
X-Spam-Status: No, score=-9.595 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com header.b=aL/UP9QI; dkim=pass (1024-bit key) header.d=cisco.onmicrosoft.com header.b=Z9U4PjDK
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CjsAJwaSwuLW; Sun, 28 Nov 2021 22:44:57 -0800 (PST)
Received: from rcdn-iport-2.cisco.com (rcdn-iport-2.cisco.com [173.37.86.73]) (using TLSv1.2 with cipher DHE-RSA-SEED-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5A6B43A0D05; Sun, 28 Nov 2021 22:44:57 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=cisco.com; i=@cisco.com; l=30055; q=dns/txt; s=iport; t=1638168297; x=1639377897; h=from:to:cc:subject:date:message-id:references: in-reply-to:mime-version; bh=gHtAfooQJ526OqFvGwarCvmHAdr4QNvYkatOwrY+lQg=; b=aL/UP9QIjgVMLJAbU5aItfh59Gd7NXUDLCY0Yb6HrK0TSkYtxOWIF1pF 3sKGS0EVpd5TAskiAN7qJgsf8zlxqVJ66tl/GGVpclNcXC9o8GZChrZ7b Zive5yZo5WckTGzR4bg7KgdizFKVbjU4DROulbgycj+j4KznnHBGN+bb9 o=;
IronPort-PHdr: A9a23:1ugyTRRcxjQu4YhIj9oNv4KZONpso7vLVj580XJvo75Nc6H2+ZPkMQSf4Ph2l1bGUM3d7O4MkOvZta3sGAliqZaMuXwPatpAAhkCj8hFkwkpGsXQD0r9IbbjZDA7G8IXUlhj8jm7PEFZFdy4aUfVpyi57CUZHVP0Mg8mTtk=
IronPort-Data: A9a23:gc9w2qIQ6pPNbbbGFE+RO5clxSXFcZb7ZxGr2PjKsXjdYENS12ACyTMcXmrQOf7ZYmP3eY1/Pozg/UsAuMLXydU1TVQd+CA2RRqmiyZq6fd1j6vI0qj7wvTrFCqL1O1DLImfRCwIZiWE/E70a+Kx9SIUOZygH9IQNsaVYkideic8IMsRoUoLd98R2uaEs/Dga+++kYuaT/nkBbOQ82Uc3lT4RE60gEgHUPza4Fv0t7GlDBxBlAe2e3I9VPrzKUwtRkYUTLW4HsbiLwrC5Kuy8mWc9BA3B5b61L36aUYNBLXVOGBiiFIPBPPk2UcE93d0i/pgXBYfQR8/ZzGhjdl1yf1GtIe7TkEiOaikdOE1AkcJSHEmYvcXkFPACT3l2SCJ9GXHa2Wy6/RjEE9wOpcXks4pBGhIsPcYITEXdTiCiv64hrWhRYFEit4qItWuPY4DtDQ+yDjfSO0+W5HFTODR/8EGmTA5g+hPEOrQIc0DZlJHbRnbbDVON0sZTpUkk4+AnHXzWzZVsk7TorA4i1U/ZiQZPKPFKtHZfJmBQt9Y2xnerWPd9GO/CRYfXOFzAAGtqhqE7tIjVwuiMG7KKICFyw==
IronPort-HdrOrdr: A9a23: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
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: A0DRCQBkdqRh/49dJa1ahAMxUQd3WjcxhEeDRwOFOYUOgwIDmw6BQoERA1QLAQEBDQEBNwoEAQGFBAIXgl8CJTgTAQIEAQEBEgEBBQEBAQIBBgSBCROFaA2GQgEBAQEDEhEdAQE3AQ8CAQgOAwMBAiEKAgICMBQJCAIEAQ0FIoJPAYF+VwMvAQ6jXAGBOgKKH3qBMYEBgggBAQYEBIE2AQMCDkGCfxiCNQMGgTqDDoQcAQGCfoQIJxyBSUSBFSccgmc+gmMBAQEBAYEoARIBQQ2CazeCLpE1BCINDBYCfzElAgMLHREZBgsNkXkUgwBGiRmENptbCoM6gTWJH45KhWcFLYNti3eXTJYWH4xZlBKFAgIEAgQFAg4BAQaBeCRpWBEHcBVlAYIKAQEyURkPjleDO4UUhUp0AgEBNAIGAQoBAQMJkzUBAQ
X-IronPort-AV: E=Sophos;i="5.87,272,1631577600"; d="scan'208,217";a="969380729"
Received: from rcdn-core-7.cisco.com ([173.37.93.143]) by rcdn-iport-2.cisco.com with ESMTP/TLS/DHE-RSA-SEED-SHA; 29 Nov 2021 06:44:52 +0000
Received: from mail.cisco.com (xbe-aln-004.cisco.com [173.36.7.19]) by rcdn-core-7.cisco.com (8.15.2/8.15.2) with ESMTPS id 1AT6iqeE008844 (version=TLSv1.2 cipher=AES256-SHA bits=256 verify=OK); Mon, 29 Nov 2021 06:44:52 GMT
Received: from xfe-rcd-005.cisco.com (173.37.227.253) by xbe-aln-004.cisco.com (173.36.7.19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.986.14; Mon, 29 Nov 2021 00:44:51 -0600
Received: from xfe-rtp-003.cisco.com (64.101.210.233) by xfe-rcd-005.cisco.com (173.37.227.253) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.986.14; Mon, 29 Nov 2021 00:44:51 -0600
Received: from NAM10-DM6-obe.outbound.protection.outlook.com (64.101.32.56) by xfe-rtp-003.cisco.com (64.101.210.233) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.2.986.14 via Frontend Transport; Mon, 29 Nov 2021 01:44:51 -0500
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Yhz1jO/zl4KfXtkjRzLYKTQSwjNhenP8pGgwPUrqVTK2kDqeeOvJ4mcYHCI+h1WwboEjZrhz6SI4ndKmWAxGg5lmxjW73VNXtb0ITY0ebPAcHXzkgF6Xe1p0pKYVTXvsD2AmtezZsnu2qsQQMgfKEmHiLXp/8a7UpIvTX9yqcqbQJ2Egpv/YRq84XhMQR9i7U4X1aVSTzZXzRDwBTwB34FKM/nVDT63dQKj+yv3TlYuY6k8Bu9zxbD1pIyiNxIDTkhApDSs2rSIsOzcSrKmOLFY6rlToIrMNkfDUGg1SBkAIZLnMxGnK2XMsIxuP1afxZ6e094NjpaD5VuMBeO2UEw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=gHtAfooQJ526OqFvGwarCvmHAdr4QNvYkatOwrY+lQg=; b=fwMxXm3p9QzY0jKHKK9Sp+CZXzeE+3yzQpYZu4Xb48F36moW2Yu4toKpBuFJFDSKXJuhF55NrOCnjl3eoVc1vBvnzri2kZuvQ5vAimcaxkm1sgG+D6Y3Ou4tP3hJjpNEcl7nVMKSUsSrQYGhSri2GFA8wK7u5Fg+Ot69B48/mVfxuBDUeAw1scjUWme+cYNCnMKy/S+GuHMOcGwuN0um0AMni5MAIOs+08VM+lmSf6czlfW53W1Q42PMIZHzH2jNrIVnn8058ADCEsTMI14pVN7APk1EZ3kW86gUjuFh4BA0vs8hYyON0Ps4HbBJ9GMgUA/RnuwA7OmI5b9qb/SgYg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.onmicrosoft.com; s=selector2-cisco-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=gHtAfooQJ526OqFvGwarCvmHAdr4QNvYkatOwrY+lQg=; b=Z9U4PjDKLUsFmQBJkfj0D6DWwJkzcL2Xpb0gRAgVz+ed8fVqQ43W3HtBpQ9ciFf29QIwxgIgWns7jO8KGWYEf/l0i976ThSXU9vOl9W+i+nuBZcd+3/ilFrcomdI85U8fdYiSQzzxyEA41oKKf+hGEfGt1BnWX7z88/0l4umPiA=
Received: from DM6PR11MB4692.namprd11.prod.outlook.com (2603:10b6:5:2aa::11) by DM5PR1101MB2267.namprd11.prod.outlook.com (2603:10b6:4:52::23) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4734.23; Mon, 29 Nov 2021 06:44:49 +0000
Received: from DM6PR11MB4692.namprd11.prod.outlook.com ([fe80::54e1:ce:5c4d:276b]) by DM6PR11MB4692.namprd11.prod.outlook.com ([fe80::54e1:ce:5c4d:276b%2]) with mapi id 15.20.4734.024; Mon, 29 Nov 2021 06:44:49 +0000
From: "Zafar Ali (zali)" <zali@cisco.com>
To: Roman Danyliw <rdd@cert.org>, The IESG <iesg@ietf.org>
CC: "draft-ietf-6man-spring-srv6-oam@ietf.org" <draft-ietf-6man-spring-srv6-oam@ietf.org>, "6man-chairs@ietf.org" <6man-chairs@ietf.org>, "ipv6@ietf.org" <ipv6@ietf.org>, Ole Trøan <ot@cisco.com>, "Zafar Ali (zali)" <zali@cisco.com>
Subject: Re: Roman Danyliw's Discuss on draft-ietf-6man-spring-srv6-oam-11: (with DISCUSS and COMMENT)
Thread-Topic: Roman Danyliw's Discuss on draft-ietf-6man-spring-srv6-oam-11: (with DISCUSS and COMMENT)
Thread-Index: AQHXWBnVAYpyjrs2Dk+Trp9PReG92qsCBbGAgRiRQYA=
Date: Mon, 29 Nov 2021 06:44:49 +0000
Message-ID: <0F524F6D-5E23-48F6-9D1D-685E67BE97E7@cisco.com>
References: <162268458965.17417.7198325134163157667@ietfa.amsl.com> <C13F1532-00A1-4787-8846-32D7EDE6F304@cisco.com>
In-Reply-To: <C13F1532-00A1-4787-8846-32D7EDE6F304@cisco.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.55.21111400
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cisco.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: bcc6d835-b70a-4c43-aedd-08d9b303bdb7
x-ms-traffictypediagnostic: DM5PR1101MB2267:
x-microsoft-antispam-prvs: <DM5PR1101MB2267B78C7B4F49A65C62C6B8DE669@DM5PR1101MB2267.namprd11.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:10000;
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DM6PR11MB4692.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(366004)(110136005)(186003)(54906003)(36756003)(8676002)(122000001)(966005)(26005)(107886003)(6486002)(21615005)(4326008)(316002)(8936002)(38100700002)(166002)(33656002)(91956017)(2906002)(66446008)(64756008)(66556008)(66946007)(76116006)(66476007)(2616005)(38070700005)(6506007)(6512007)(83380400001)(53546011)(9326002)(508600001)(71200400001)(5660300002)(86362001)(45980500001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_0F524F6D5E2348F69D1D685E67BE97E7ciscocom_"
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM6PR11MB4692.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: bcc6d835-b70a-4c43-aedd-08d9b303bdb7
X-MS-Exchange-CrossTenant-originalarrivaltime: 29 Nov 2021 06:44:49.7477 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: saz1rNrXLqIg6b0ls9pe+iMrY5ZJ2MyaKiAf3tbgsJK5hhJGvm4wUhU7TTez/pJz
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DM5PR1101MB2267
X-OriginatorOrg: cisco.com
X-Outbound-SMTP-Client: 173.36.7.19, xbe-aln-004.cisco.com
X-Outbound-Node: rcdn-core-7.cisco.com
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/CPq4HrUZcWVvE_3tFjx7E1rzjXw>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 29 Nov 2021 06:45:05 -0000
Hi Roman, Many thanks for your detailed review and the suggested text; highly appreciated! I am sorry for the late follow-up on these comments (due to some personal reasons) We have addressed your comments in the revision 12 (https://datatracker.ietf.org/doc/html/draft-ietf-6man-spring-srv6-oam-12) Summary of how your comments are addressed is as follows: * A section on “Privacy Considerations” has been added with the text suggested by you; Thanks! * We have updated the security section with the text suggested by you Please also see details in-lined with [ZA] Thanks Regards … Zafar From: Roman Danyliw via Datatracker <noreply@ietf.org> Reply-To: Roman Danyliw <rdd@cert.org> Date: Wednesday, June 2, 2021 at 9:43 PM To: The IESG <iesg@ietf.org> Cc: "draft-ietf-6man-spring-srv6-oam@ietf.org" <draft-ietf-6man-spring-srv6-oam@ietf.org>, "6man-chairs@ietf.org" <6man-chairs@ietf.org>, "ipv6@ietf.org" <ipv6@ietf.org>, "ot@cisco.com" <ot@cisco.com>, "ot@cisco.com" <ot@cisco.com> Subject: Roman Danyliw's Discuss on draft-ietf-6man-spring-srv6-oam-11: (with DISCUSS and COMMENT) Resent-From: <alias-bounces@ietf.org> Resent-To: <satoru.matsushima@g.softbank.co.jp>, <zali@cisco.com>, <cfilsfil@cisco.com>, <daniel.voyer@bell.ca>, <mach.chen@huawei.com> Resent-Date: Wednesday, June 2, 2021 at 9:43 PM Roman Danyliw has entered the following ballot position for draft-ietf-6man-spring-srv6-oam-11: Discuss When responding, please keep the subject line intact and reply to all email addresses included in the To and CC lines. (Feel free to cut this introductory paragraph, however.) Please refer to https://www.ietf.org/iesg/statement/discuss-criteria.html for more information about DISCUSS and COMMENT positions. The document, along with other ballot positions, can be found here: https://datatracker.ietf.org/doc/draft-ietf-6man-spring-srv6-oam/ ---------------------------------------------------------------------- DISCUSS: ---------------------------------------------------------------------- The privacy implications of the O-flag needs to be more clearly articulated. It provides a dual use capability -- there is tangible benefit for OAM use cases, but also reduces the friction for surveillance uses cases. The SECDIR review (https://mailarchive.ietf.org/arch/msg/secdir/FeTu7x7-okw7w7-T6dZRFhJHpAo/) pointed this out in -09. The changes made to the Security Considerations in -10 were helpful, but primarily focused on reiterating the security assumptions of the SR domain boundary and the degree of protection of the SRH. My recommendation would be for an explicit Privacy Considerations section with the following (approximate) text: NEW 7. Privacy Considerations The per-packet marking capabilities of the O-flag provides a granular mechanism to collect telemetry. When this collection is deployed by an operator with knowledge and consent of the users, it will enable a variety of diagnostics and monitoring to support the OAM and security operations use cases needed for resilient network operations. However, this collection mechanism will also provide an explicit protocol mechanism to operators for surveillance and pervasive monitoring use cases done contrary to the users’ consent. [ZA] We have added section on privacy consideration with the above mentioned text suggested by you. Thanks! ---------------------------------------------------------------------- COMMENT: ---------------------------------------------------------------------- Thank you to Dan Harkins for the SECDIR review. ** Section 5. Even with the trust assumptions of the SR domain, it would be worth mentioning that: The security properties of the channel used to send exported packets marked by the O-flag will depend on the specific OAM processes used. An on-path attacker able to observe this OAM channel could conduct traffic analysis, or potentially eavesdropping (depending on the OAM configuration), of this telemetry for the entire SR domain from such a vantage point. [ZA] The security consideration section has been updated with your prosed text. Thanks! ** Section 5. Per “Additionally, SRH Flags are protected by the HMAC TLV, as described in Section 2.1.2.1 of [RFC8754]”, I didn’t follow to what this was referring to. Also, isn’t this TLV optional? [ZA] RFC8754 includes SRH.flags field in the HMAC computation. Please see https://datatracker.ietf.org/doc/html/rfc8754#section-2.1.2.1. However, you are right, the use of HMAC in a deployment is optional.
- Roman Danyliw's Discuss on draft-ietf-6man-spring… Roman Danyliw via Datatracker
- Re: Roman Danyliw's Discuss on draft-ietf-6man-sp… Zafar Ali (zali)
- Re: Roman Danyliw's Discuss on draft-ietf-6man-sp… Zafar Ali (zali)
- RE: Roman Danyliw's Discuss on draft-ietf-6man-sp… Roman Danyliw
- Re: Roman Danyliw's Discuss on draft-ietf-6man-sp… Zafar Ali (zali)