RE: SRH insertion vs SRH insertion + encapsulation

Ron Bonica <rbonica@juniper.net> Mon, 09 September 2019 16:02 UTC

Return-Path: <rbonica@juniper.net>
X-Original-To: ipv6@ietfa.amsl.com
Delivered-To: ipv6@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 9B6F41201EA; Mon, 9 Sep 2019 09:02:01 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.699
X-Spam-Level:
X-Spam-Status: No, score=-2.699 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=juniper.net
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Pg-BE0hnvckv; Mon, 9 Sep 2019 09:01:59 -0700 (PDT)
Received: from mx0b-00273201.pphosted.com (mx0b-00273201.pphosted.com [67.231.152.164]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C2FCE1201B7; Mon, 9 Sep 2019 09:01:59 -0700 (PDT)
Received: from pps.filterd (m0108162.ppops.net [127.0.0.1]) by mx0b-00273201.pphosted.com (8.16.0.42/8.16.0.42) with SMTP id x89FxC0j021281; Mon, 9 Sep 2019 09:01:55 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=juniper.net; h=from : to : cc : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=PPS1017; bh=gpm/KgOeNA1i2jzBhiSduGCd7dl896Fo2FgOUCNRrA8=; b=tbly3G16JVGWOEfxLNoVC5twQjpUbH0nXPXBspPoUzTe+gGaXvrPrGwHwhsauvW+gox0 ML2HUEWu6XUT3vIwJH4i5Zf6WT0zUDeMXtC36OrG+a+7NdNQI13hz54NaNW/ghJKZRnJ KgDBLLxFYyjSVT+cjP2Ttx03t3PewGJBRqycG/1gxnIi8UAo+684h6ZBoVip5r/WZXYz DsepyA26dZaZa7HD8bAHECJYlC0hiZFQjgw97ImHGbsvjByFcpc3IQmfoZ4JFcLM9ivG HIDxmN3x65Oom4/dyPZxW/HN4PkwqLMpTXT/79FFclDPEzy8GGDBs8Gq70YI86i5eO/w sA==
Received: from nam03-co1-obe.outbound.protection.outlook.com (mail-co1nam03lp2050.outbound.protection.outlook.com [104.47.40.50]) by mx0b-00273201.pphosted.com with ESMTP id 2uvat8k75d-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Mon, 09 Sep 2019 09:01:55 -0700
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=FJRn9gRKBGkVS5OG9yh1uCfajEhZqbcciiH5obyGfH5+ycM59SRC9usZIt2IvNOUNJLd+5djOy+2IE56Gm6A13EVhJNt3OEOoI1f3KfqInqgODpfq+bOjLxJEsKm6rLlD53CK0fxTUXfqExodHMBdHHPuV6pI/ITatu70+GcaMZ+MK0xHcMQ+VyTNcoPf8ln1PcDXtdL9m+hoJxtv1ZX+23v2u1hYSbtMOqoFcqSFzDNZuzhZ28VjjOCOQJYVw5pz0THgCqrzjV6ZFis4cysoF1ieSw6CCgwdgIsuHSPZr8XBasI+h6pZrEQdHYeSZNLFVv0rB8MOLtstfBkNefWaQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=gpm/KgOeNA1i2jzBhiSduGCd7dl896Fo2FgOUCNRrA8=; b=K7YWqwy0uegsnSl7AJIXyMaU6UYHzszUXsa6cQcKi32/MpJE+AkxCPhPyJdJiR3PIDPm1ruYtgiD47I/pYyvlDrdTikHuuR1Uwom2Nix3Xa8niznYpYP40zDsuaMTR8GTsGAPlNosXByrVA+ANk5EE50dFDFZl82/fIeBWVo+aoqvqPpl3Mx6VYeTtPMmiUMIeIwQMo6ZJPnlxHLiqrREUcJmYjXVri06JHGXYkcBAgH3i70zQfL/+M0h+82P+l1J+n26RMlzzQz9ufX6ePehrwuxmykh9NPDNe9oadZk2zUTYQcHSUzOqzI3novhF+0zpGOgnLlbTcCId+pVZCIjg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=juniper.net; dmarc=pass action=none header.from=juniper.net; dkim=pass header.d=juniper.net; arc=none
Received: from BYAPR05MB5463.namprd05.prod.outlook.com (20.177.185.144) by BYAPR05MB6440.namprd05.prod.outlook.com (20.178.232.220) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.2263.6; Mon, 9 Sep 2019 16:01:52 +0000
Received: from BYAPR05MB5463.namprd05.prod.outlook.com ([fe80::f4f2:f284:d49a:890a]) by BYAPR05MB5463.namprd05.prod.outlook.com ([fe80::f4f2:f284:d49a:890a%4]) with mapi id 15.20.2263.005; Mon, 9 Sep 2019 16:01:52 +0000
From: Ron Bonica <rbonica@juniper.net>
To: Ole Troan <otroan@employees.org>
CC: Robert Raszuk <robert@raszuk.net>, Mark Smith <markzzzsmith@gmail.com>, draft-voyer-6man-extension-header-insertion <draft-voyer-6man-extension-header-insertion@ietf.org>, "6man@ietf.org" <6man@ietf.org>
Subject: RE: SRH insertion vs SRH insertion + encapsulation
Thread-Topic: SRH insertion vs SRH insertion + encapsulation
Thread-Index: AQHVZWy1LXGmyD5/0k6niKwz9Ahon6cgHQCAgAALDQCAAKiwwIAASCAAgAJm2BA=
Content-Class:
Date: Mon, 09 Sep 2019 16:01:52 +0000
Message-ID: <BYAPR05MB5463AD77FA21C76C5A68E68BAEB70@BYAPR05MB5463.namprd05.prod.outlook.com>
References: <BYAPR05MB5463306B3328F460C2417764AEB50@BYAPR05MB5463.namprd05.prod.outlook.com> <32ED6621-3D17-4EC8-AC11-AFE64F05E6A9@employees.org>
In-Reply-To: <32ED6621-3D17-4EC8-AC11-AFE64F05E6A9@employees.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Enabled=True; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SiteId=bea78b3c-4cdb-4130-854a-1d193232e5f4; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Owner=rbonica@juniper.net; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_SetDate=2019-09-09T16:01:51.2178349Z; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Name=Juniper Business Use Only; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Application=Microsoft Azure Information Protection; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_ActionId=20a4ea52-0f16-49fa-9334-51c7a989b204; MSIP_Label_0633b888-ae0d-4341-a75f-06e04137d755_Extended_MSFT_Method=Automatic
dlp-product: dlpe-windows
dlp-version: 11.2.0.14
dlp-reaction: no-action
x-originating-ip: [66.129.241.13]
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 4919226d-3a04-459c-284a-08d7353f07ee
x-ms-office365-filtering-ht: Tenant
x-microsoft-antispam: BCL:0; PCL:0; RULEID:(2390118)(7020095)(4652040)(8989299)(4534185)(4627221)(201703031133081)(201702281549075)(8990200)(5600166)(711020)(4605104)(1401327)(4618075)(2017052603328)(7193020); SRVR:BYAPR05MB6440;
x-ms-traffictypediagnostic: BYAPR05MB6440:
x-ms-exchange-purlcount: 2
x-microsoft-antispam-prvs: <BYAPR05MB64409A22D1ADC8E0779CF63DAEB70@BYAPR05MB6440.namprd05.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:5516;
x-forefront-prvs: 01559F388D
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(4636009)(376002)(39860400002)(396003)(366004)(136003)(346002)(199004)(189003)(64756008)(6306002)(66476007)(66556008)(5660300002)(66946007)(54896002)(9686003)(76176011)(6916009)(186003)(26005)(99286004)(478600001)(256004)(229853002)(4326008)(54906003)(6436002)(55016002)(8936002)(8676002)(316002)(81166006)(81156014)(86362001)(53936002)(6246003)(66066001)(6116002)(74316002)(7736002)(25786009)(3846002)(6506007)(53546011)(790700001)(476003)(11346002)(52536014)(2906002)(7696005)(14454004)(446003)(71190400001)(33656002)(486006)(76116006)(102836004)(71200400001)(66446008); DIR:OUT; SFP:1102; SCL:1; SRVR:BYAPR05MB6440; H:BYAPR05MB5463.namprd05.prod.outlook.com; FPR:; SPF:None; LANG:en; PTR:InfoNoRecords; A:1; MX:1;
received-spf: None (protection.outlook.com: juniper.net does not designate permitted sender hosts)
x-ms-exchange-senderadcheck: 1
x-microsoft-antispam-message-info: ecVJtykrmnMGVqHTLtz3aNrCGSMfozvLMgvVmJwR8eqE9kaJcwb8Oferpn56/Z1zPiwuNX3sTFTVX0cYFKG+jmcgHu/390gTK4PuCPQv4xJlSkMS0ufJ6lC7311/M0FuJzKaPiZA6WQrS9MPpB5nx0Xn/u6Q0J8X674uXKEuHbeMuJgQ69HB4Lnqpx5ueF3xN+1lCtpZYNSL/KNy+z8FiSfPdyn2W9ZJmRgw3WJKkqX0hGAher0DG1iR2wVispn7UfbMPyC+VtwajvqvrwEQIzVaHZ0ZvSM6Co0UNBcaiaKq5X8+ABRCa+yfb1F2260Lr5JShZmZbmMG8RJD9N0WxjrjuNbkAwu6zi3Peab4jHluVBgW/F7ccH1w2vU12D2+D/G3TeoTDFPYvrzixckwCnRihqALbcZlgmejH4ae3Ws=
x-ms-exchange-transport-forked: True
Content-Type: multipart/alternative; boundary="_000_BYAPR05MB5463AD77FA21C76C5A68E68BAEB70BYAPR05MB5463namp_"
MIME-Version: 1.0
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-Network-Message-Id: 4919226d-3a04-459c-284a-08d7353f07ee
X-MS-Exchange-CrossTenant-originalarrivaltime: 09 Sep 2019 16:01:52.6535 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: BVvKWDAWZoIG66GaSyrrYe3T7OSfJpfpnHgEhk93E+YK8jdACSuelG4JK2qwiQWHLQ43uOP/w6gNNj/N8BcizQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BYAPR05MB6440
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.70,1.0.8 definitions=2019-09-09_06:2019-09-09,2019-09-09 signatures=0
X-Proofpoint-Spam-Details: rule=outbound_spam_notspam policy=outbound_spam score=0 mlxscore=0 adultscore=0 lowpriorityscore=0 malwarescore=0 bulkscore=0 priorityscore=1501 suspectscore=0 spamscore=0 clxscore=1015 impostorscore=0 phishscore=0 mlxlogscore=999 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-1906280000 definitions=main-1909090161
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipv6/IEqSRCdqpxJxxGEKg4odztmNcHA>
X-BeenThere: ipv6@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "IPv6 Maintenance Working Group \(6man\)" <ipv6.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipv6>, <mailto:ipv6-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipv6/>
List-Post: <mailto:ipv6@ietf.org>
List-Help: <mailto:ipv6-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipv6>, <mailto:ipv6-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 09 Sep 2019 16:02:01 -0000

Ole,

There is a big difference between translating a packet's source/destination address and adding something to a packet. The best way to explain this difference is with an analogy.

Assume the following:


  *   I, Ronald, am conversing with an Italian speaker through a translator
  *   I say to the Italian speaker, through the translator, "your shoe is untied"

It is OK for the translator to tell the Italian speaker, "Aldo says that your shoe is untied". He has translated my name into Italian, but not changed the message.

It is not OK for the translator to tell the Italian speaker, "Aldo says that your shoe is untied, and that you are ugly ".  If he were to do that, he would be originating a message and attributing it to me.

                                                                     Ron




Juniper Business Use Only
From: Ole Troan <otroan@employees.org>
Sent: Saturday, September 7, 2019 11:03 PM
To: Ron Bonica <rbonica@juniper.net>
Cc: Robert Raszuk <robert@raszuk.net>; Mark Smith <markzzzsmith@gmail.com>; draft-voyer-6man-extension-header-insertion <draft-voyer-6man-extension-header-insertion@ietf.org>; 6man@ietf.org
Subject: Re: SRH insertion vs SRH insertion + encapsulation

Ron,

IMHO, EH insertion modifies the semantics of the IPv6 source address. Today, the IPv6 source address indicates the source of an IP packet and *ALL* of its contents. If transit routers are allowed to insert extension headers, downstream routers can no longer identify the source of a packet and all of its contents.

Granted, in some cases, transit routers are allowed to modify a packet (e.g., Hop Count, DHCP, mutable options). But there is a big difference between changing a field whose value is know to me mutable and inserting a new option.

6296?

And I am pointing that out because of what feels like moral righteousness and hypocrisy to me, not because I think header insertion is a good idea or even doable.

Ole