Re: Limited Domains:

Brian E Carpenter <brian.e.carpenter@gmail.com> Mon, 12 April 2021 23:55 UTC

Return-Path: <brian.e.carpenter@gmail.com>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 779133A1766; Mon, 12 Apr 2021 16:55:29 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, NICE_REPLY_A=-0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4zp-kox4JyEQ; Mon, 12 Apr 2021 16:55:27 -0700 (PDT)
Received: from mail-pj1-x1035.google.com (mail-pj1-x1035.google.com [IPv6:2607:f8b0:4864:20::1035]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BE71D3A1768; Mon, 12 Apr 2021 16:55:26 -0700 (PDT)
Received: by mail-pj1-x1035.google.com with SMTP id em21-20020a17090b0155b029014e204a81e6so363165pjb.1; Mon, 12 Apr 2021 16:55:26 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=subject:to:cc:references:from:message-id:date:user-agent :mime-version:in-reply-to:content-language:content-transfer-encoding; bh=WYQkecezQmyQboxlkzkRZm8kyMmagOFgVbf0yuafGvo=; b=HsTwtbqUBly9lh0e8wDBm/1Oxw6FQofDtYswpCfF5SLKjenkugnpjj38T/6ADb5EcY 6X3OLz4nhEux9TcGnTt+9BShLPJebg8tLtAmv6ruGofYFEb+m9/sykwnqoahj4oc/zmH 3TAOYo27d44mF3gQ1tYgxji9ZX1hF587KVQ4Io0yVGx01XngkSsrTadKPw6fmuw3RJ9H PMqmbuyrUpabOZ8YBCSHdvHgdhPNWoCg4ZWqybDUvgaDBNJmuiTVOWyibT59k9cKDzEM xJOBn2tUhSCfJVkTwdGdlfU5dY4NQs+quUPVknPFfeVXU0VGVMKGa+vVZjHn0imH1nf6 TpxA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:subject:to:cc:references:from:message-id:date :user-agent:mime-version:in-reply-to:content-language :content-transfer-encoding; bh=WYQkecezQmyQboxlkzkRZm8kyMmagOFgVbf0yuafGvo=; b=dJcX721O280uH0zFT4+6seeds0DP5w6svlscht2QvgBvV9nRoMGgz3yjhcuXVRs+S0 NwX4pYb4+amXecGc3LiKrj0md/5DtrAVFUgU8RtQMUTZQtNI2eF8DBDjUiNBK19lS2EQ cSGSom6DEfz1oYYNSJogvQIDqLvsuL4hb1y8vKjUsmdn6k0vRrG6nU7jnOGaaad1/XbD ndnSOf9h+22NXvhWSWi9+vzXPMok8W504od8GPcjwsVoPF5OeknUPAiLV8LAiMXfDOOO WMs3wLX7ZFQHo1nIUxxl/x+zxR55K7bGpQkSKxDubhOQWV+s6JOl6Qx02sq4xjVYX5hU B+jQ==
X-Gm-Message-State: AOAM530cNItb8oFOUTgkveq/vUPksRx2OMso60nevbKtL1mTzVA4MJP7 G2ttaMP1gfO2swwEPj417x8=
X-Google-Smtp-Source: ABdhPJzXmGNgoU562KfwIZ6x1aQJ7FM5HgBuqaFMtYUqIZie1vyU6MPKKbz6pdJONjhkdmlV9jNf0A==
X-Received: by 2002:a17:902:165:b029:e7:3753:65e1 with SMTP id 92-20020a1709020165b02900e7375365e1mr29386639plb.10.1618271725195; Mon, 12 Apr 2021 16:55:25 -0700 (PDT)
Received: from [192.168.178.20] ([151.210.131.14]) by smtp.gmail.com with ESMTPSA id a13sm12717465pgm.43.2021.04.12.16.55.22 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Mon, 12 Apr 2021 16:55:24 -0700 (PDT)
Subject: Re: Limited Domains:
To: Tom Herbert <tom@herbertland.com>
Cc: Fred Baker <fredbaker.ietf@gmail.com>, "6man@ietf.org" <6man@ietf.org>, "draft-filsfils-6man-structured-flow-label@ietf.org" <draft-filsfils-6man-structured-flow-label@ietf.org>, "Ahmed Abdelsalam (ahabdels)" <ahabdels=40cisco.com@dmarc.ietf.org>
References: <BL0PR05MB5316991D4124AD85BC69392AAE709@BL0PR05MB5316.namprd05.prod.outlook.com> <1697a0f8-b3cd-9f7d-d610-305b5305c9a1@gmail.com> <4077E736-0092-44C6-80D1-E094F468C00C@gmail.com> <12878114-5c26-86f9-89c3-bcfa10141684@gmail.com> <CALx6S35NBfVJmjqVwhNV3nui2avUOXn6ySMG3cxx2AvGkwr_Ow@mail.gmail.com>
From: Brian E Carpenter <brian.e.carpenter@gmail.com>
Message-ID: <8c179900-ea63-f6d1-f097-a9766bc5ff20@gmail.com>
Date: Tue, 13 Apr 2021 11:55:20 +1200
User-Agent: Mozilla/5.0 (Windows NT 10.0; WOW64; rv:60.0) Gecko/20100101 Thunderbird/60.9.1
MIME-Version: 1.0
In-Reply-To: <CALx6S35NBfVJmjqVwhNV3nui2avUOXn6ySMG3cxx2AvGkwr_Ow@mail.gmail.com>
Content-Type: text/plain; charset="utf-8"
Content-Language: en-US
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/IBA7QnRI37ByfC3emV0wOnVMoRc>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 12 Apr 2021 23:55:30 -0000

On 13-Apr-21 10:20, Tom Herbert wrote:
> On Mon, Apr 12, 2021 at 3:10 PM Brian E Carpenter
> <brian.e.carpenter@gmail.com> wrote:
>>
>> On 13-Apr-21 08:52, Fred Baker wrote:
>>>
>>>
>>>> On Apr 12, 2021, at 1:51 PM, Brian E Carpenter <brian.e.carpenter@gmail.com> wrote:
>>>>
>>>> In other words, a redefined flow label could be used pairwise between hosts that have determined that they are both members of a particular limited domain.
>>>
>>> Which would eliminate the use of the flow label by systems that are not part of that domain.
>>
>> No, it would create two sets of nodes: nodes using RFC6437 between themselves, and nodes using some other interpretation of the flow label between themselves. Ships in the night, really just like running IPX and CLNP on the same network. We used to do that a lot.
> 
> Brian,
> 
> The problem is that there's no code point that  discriminates between
> the different interpretations of the flow label. So in a limited
> domain the deployment of the new implementation must be perfect, lest
> there is at least one router that is inadvertently run with the legacy
> interpretation, then that router may process the flow label and ECMP
> per the standard leading to situations where packets of some flow are
> unexpectedly going over different paths. Since there's nothing in the
> packet that states what's happening, such problems can be really
> difficult to debug.

I completely agree. I was thinking about how to code this safely, and
it's a mess, especially if you want routers to detect it at line speed.

    Brian

> 
> Tom
> 
>>
>> I'm not advocating this, just pointing out that it's possible.
>>
>>    Brian
>>
>>
>> --------------------------------------------------------------------
>> IETF IPv6 working group mailing list
>> ipv6@ietf.org
>> Administrative Requests: https://www.ietf.org/mailman/listinfo/ipv6
>> --------------------------------------------------------------------
>