Re: Better APIs (was: Re: Address privacy)

Tommy Pauly <tpauly@apple.com> Sat, 01 February 2020 21:23 UTC

Return-Path: <tpauly@apple.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BE87612008F for <ipv6@ietfa.amsl.com>; Sat, 1 Feb 2020 13:23:25 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level:
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=apple.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 81sRCqZjhI9Q for <ipv6@ietfa.amsl.com>; Sat, 1 Feb 2020 13:23:24 -0800 (PST)
Received: from ma1-aaemail-dr-lapp01.apple.com (ma1-aaemail-dr-lapp01.apple.com [17.171.2.60]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 19D4F12004A for <ipv6@ietf.org>; Sat, 1 Feb 2020 13:23:24 -0800 (PST)
Received: from pps.filterd (ma1-aaemail-dr-lapp01.apple.com [127.0.0.1]) by ma1-aaemail-dr-lapp01.apple.com (8.16.0.27/8.16.0.27) with SMTP id 011LITU0061782; Sat, 1 Feb 2020 13:23:21 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=apple.com; h=sender : from : message-id : content-type : mime-version : subject : date : in-reply-to : cc : to : references; s=20180706; bh=GK5NOngFJs4kShpdIjjLaFbCtP2zFrmRyiwkhNHTHnY=; b=WQF+WaZSLt3o+SmHET+t1EyAI/gHMi39ubED1CU2fPuJ2qFCYlTY5NSVrEcEw8TxDxNL 5NsoNyC9MSCmywsHd+b0N1X8v3KBCAp9PclDTkRVcs4zHwqwYKx+SWEOjOdRecCUgGKm wDgYosPiGPZpSkG+ZjqeaTbUfiEzEglW7xMIWQ7wo7HNMGV+mlomLuXkrXSCAKmDUuW1 ZTyufO3NpvVbm9sLo7aD3EMi1Q7UvOgenm/3tLZuKarxwEdrQ/4RX6NS878/bDJJq3E3 RI31JTC79LFfEkQ7cwnOCiKAJr2o7I+xjS6E0I/m04WqC/iyF3ODRzManLjPODkMozju 9g==
Received: from rn-mailsvcp-mta-lapp02.rno.apple.com (rn-mailsvcp-mta-lapp02.rno.apple.com [10.225.203.150]) by ma1-aaemail-dr-lapp01.apple.com with ESMTP id 2xw8v6k557-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES128-GCM-SHA256 bits=128 verify=NO); Sat, 01 Feb 2020 13:23:21 -0800
Received: from nwk-mmpp-sz12.apple.com (nwk-mmpp-sz12.apple.com [17.128.115.204]) by rn-mailsvcp-mta-lapp02.rno.apple.com (Oracle Communications Messaging Server 8.1.0.1.20190704 64bit (built Jul 4 2019)) with ESMTPS id <0Q5100DZIKQX1H40@rn-mailsvcp-mta-lapp02.rno.apple.com>; Sat, 01 Feb 2020 13:23:21 -0800 (PST)
Received: from process_milters-daemon.nwk-mmpp-sz12.apple.com by nwk-mmpp-sz12.apple.com (Oracle Communications Messaging Server 8.0.2.4.20190507 64bit (built May 7 2019)) id <0Q5100J00KLDB000@nwk-mmpp-sz12.apple.com>; Sat, 01 Feb 2020 13:23:21 -0800 (PST)
X-Va-A:
X-Va-T-CD: ca59bed23df3f788d3f801d0abd3820b
X-Va-E-CD: d5ff82c8d42613c3a1da6e6ec3008af1
X-Va-R-CD: 0779465a16787576657af3970373cb4d
X-Va-CD: 0
X-Va-ID: 068c897a-e657-4e29-a150-9bf8ae37e04f
X-V-A:
X-V-T-CD: ca59bed23df3f788d3f801d0abd3820b
X-V-E-CD: d5ff82c8d42613c3a1da6e6ec3008af1
X-V-R-CD: 0779465a16787576657af3970373cb4d
X-V-CD: 0
X-V-ID: 658b4d65-d8f9-470a-b6a6-9ef12455e475
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:,, definitions=2020-02-01_07:,, signatures=0
Received: from [17.234.110.125] (unknown [17.234.110.125]) by nwk-mmpp-sz12.apple.com (Oracle Communications Messaging Server 8.0.2.4.20190507 64bit (built May 7 2019)) with ESMTPSA id <0Q51000SDKQUIG70@nwk-mmpp-sz12.apple.com>; Sat, 01 Feb 2020 13:23:18 -0800 (PST)
Sender: tpauly@apple.com
From: Tommy Pauly <tpauly@apple.com>
Message-id: <B9656C4B-6CB8-46E5-9066-35BC57D55D1E@apple.com>
Content-type: multipart/alternative; boundary="Apple-Mail=_3558EE16-4DEB-4411-96DA-2FAD6395BFB1"
MIME-version: 1.0 (Mac OS X Mail 13.4 \(3608.80.7.2.3\))
Subject: Re: Better APIs (was: Re: Address privacy)
Date: Sat, 01 Feb 2020 13:23:18 -0800
In-reply-to: <a123c070-cc82-2553-23bb-f8c60082d02a@si6networks.com>
Cc: Michael Richardson <mcr+ietf@sandelman.ca>, 6man WG <ipv6@ietf.org>
To: Fernando Gont <fgont@si6networks.com>
References: <03C832CE-7282-4320-BF1B-4CB7167FE6BE@employees.org> <1962.1579823388@localhost> <f83ab037-9125-bb74-dbac-68850aeb1020@huitema.net> <CBB23ABE-A7A3-4208-873C-E47EE063E34B@fugue.com> <11855.1579980079@localhost> <CALx6S36V_VjaxhELYcsgDYLWsCkj20p6gtiY9T9Q=9-9Oibyjw@mail.gmail.com> <32626.1580060558@localhost> <CALx6S37prWACD0jv9c-XHD-JtPqZAcgeT2Ax0EZHkiQaDR4t=g@mail.gmail.com> <419b7c7a-e364-7951-5a44-6c39e1da65fb@joelhalpern.com> <CALx6S36802oDaEgojAPq2c6hM_s1BayidXPh1Sc6RZmZa9UHpQ@mail.gmail.com> <6c5ba72d-9289-90ba-a1c9-2307ed29a4da@foobar.org> <a98bf2ab-32e7-459b-14d2-5e0e1c65a229@si6networks.com> <CALx6S36J5TPnXJQyMW2NUbQV6KL_oqUQ01m+BEzBJ+xcHpmQWw@mail.gmail.com> <d763dc26-57bb-c67d-f727-617a6b52d813@foobar.org> <CALx6S36DsttXx-7UWL=iZkGuKG_yNKdADFB5zo87wu2coz8HcQ@mail.gmail.com> <C6E767BC-BB0F-4B47-8DEB-CD04A6EF7D8C@employees.org> <"9f474839-7e6d- 59c6-1941-ebeca5825dab"@si6networks.com> <26636.1580393559@dooku> <a123c070-cc82-2553-23bb-f8c60082d02a@si6networks.com>
X-Mailer: Apple Mail (2.3608.80.7.2.3)
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:, , definitions=2020-02-01_07:, , signatures=0
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/HPpGiLdzFWZefDAYl-CBEb_gY7k>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 01 Feb 2020 21:23:26 -0000

Hi Fernando,

For the record, the TAPS documents have indeed incorporated API recommendations to support this in the current working version of the draft:

https://ietf-tapswg.github.io/api-drafts/draft-ietf-taps-interface.html#name-local-address-preference <https://ietf-tapswg.github.io/api-drafts/draft-ietf-taps-interface.html#name-local-address-preference>

5.2.12. Local Address Preference
Name:
local-address-preference
Type:
Enumeration
This property specifies whether Listeners and Connections should prefer the use of temporary addresses when possible. This is generally used to prevent linking connections over time when a stable address is not needed. Possible values are:

Stable:
Prefer the use of stable (sometimes called "permanent") local addresses
Temporary:
Prefer the use of temporary (sometimes called "privacy") addresses [RFC4941]
The default is to prefer the use of stable local addresses for Listeners and Rendezvous Connections, and to prefer the use of temporary addresses for other Connections.

Thanks,
Tommy

> On Jan 30, 2020, at 10:20 AM, Fernando Gont <fgont@si6networks.com> wrote:
> 
> On 30/1/20 11:12, Michael Richardson wrote:
> [..]
>> I think that we should not oversell the benefits, but that doesn't mean there
>> are none. (I think that the benefits have been oversold within the IETF)
>> I'd like to see 6man look to better APIs for address selection.
> 
> Good grief. We did this: https://tools.ietf.org/id/draft-gont-6man-address-usage-recommendations-04.txt
> 
> This work would have lead to the *real* issues for which some are blaming temporary addresses in this thread.
> 
> I presented it once in 6man, and was suggested it belonged elsewhere. I tried elsewhere (taps), but it seems they believe it belonged elsewhere.
> 
> So I guess the problem we are dealing with with be solved by someone, somewhere (someday? :-) ).
> 
> Thanks,
> -- 
> Fernando Gont
> SI6 Networks
> e-mail: fgont@si6networks.com
> PGP Fingerprint: 6666 31C6 D484 63B2 8FB1 E3C4 AE25 0D55 1D4E 7492
> 
> 
> 
> 
> --------------------------------------------------------------------
> IETF IPv6 working group mailing list
> ipv6@ietf.org
> Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
> --------------------------------------------------------------------